Web Safety Extension en Instlación de Brave

Buenas tardes,

reabro un hilo que tuve abierto hace unos años ya que mi problema persiste. Estoy interesado en instalar el navegador Brave pero cada vez que lo hago se instala una extensión molesta llamada “Web Safety”. Al analizarlo con MalwareBytes no aparece nada… Agradecería si alguien tuvo un problema similar.

Saludos,

Toni

Hola @tonilg

Estas utilizando el instalador de la pagina oficial?

Saludos

Buenas,

Correcto, instalador oficial de Brave.

Hola @tonilg

Realiza lo siguiente

Realiza los siguientes pasos:

(Mantén conectados todos tus dispositivos externos que tengas como: USBs, discos duros externos, etc).

Por favor, descarga todo el software de los enlaces que pongo/de sus respectivos manuales.

Ahora ejecutarás una serie de herramientas respetando el orden los pasos con todos los programas cerrados incluidos los navegadores.

Conectas todos tus dispositivos externos (todos los discos duros externos que tengas, así como todas las USB que tengas y discos duros externos si también tienes.

Realiza los pasos que te pongo a continuación, sin cambiar el orden y síguelos al pie de la letra:

0) Descarga Ccleaner . Aquí te dejo su manual: Manual de CCleaner , para que sepas como usarlo y configurarlo correctamente.

Lo instalas y lo ejecutas. En la pestaña Limpieza personalizada dejas la configuración predeterminada. Haces clic en Analizar y esperas a que termine. Seguidamente haz clic en Ejecutar Limpiador. Clic en la pestaña Registro > clic en Buscar Problemas esperas que termine. Finalmente clic en Reparar Seleccionadas y realizas una Copia de Seguridad del registro de Windows.

1) Descarga, instala, actualiza y ejecuta Malwarebytes’ Anti-Malware. Aquí te dejo su manual: Manual de Malwarebytes , para que sepas como usarlo y configurarlo correctamente.

  • Realizas un Análisis Personalizado, marcando Todas las casillas (menos la que dice analizar rootkits) de la Derecha y de la Izquierda, actualizando si te lo pide. Es decir: conectas todos tus dispositivos externos (todos los discos duros externos que tengas, así como todas las USB que tengas y marcas todas las unidades de disco disponibles y las siguientes casillas:
  1. Analizar objetos en memoria
  2. Analizar configuracion de inicio y registro
  3. Analizar dentro de los archivos
  • Pulsar en “Eliminar Seleccionados” para enviar las infecciones a la cuarentena y Reinicias el ordenador.
  • Para acceder posteriormente al informe del análisis te diriges a: Informes >> Registro de análisis >> pulsas en Exportar >> Copiar al Portapapeles y pones el informe en tu próxima respuesta.

2) Descarga Adwcleaner en el escritorio.

  • Desactiva tu antivirus :arrow_forward: Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad que tengas activado.
  • Ejecuta Adwcleaner.exe (Si usas Windows Vista/7/8 u 10 presiona clic derecho y selecciona “Ejecutar como Administrador.”)
  • Pulsar en el botón Analizar Ahora, y espera a que se termine el análisis. Inmediatamente pulsa sobre el botón Iniciar Reparación.
  • Espera a que termine y sigue las instrucciones que te aparezcan. Si te pidiera Reiniciar, pues reinicias el ordenador pulsando en Aceptar.
  • Si no encuentra nada, pulsa en Omitir Reparación.
  • El log lo encontrarás en la pestaña Informes, volviendo a abrir el programa, si es necesario o en la siguiente ubicación: C:\AdwCleaner\Logs\AdwCleaner[C0].txt.
  • Para más información aquí te dejo su manual: Manual de Adwcleaner.
  • Activa de nuevo tu antivirus y cualquier programa de seguridad que tengas activado.

3) Descarga, instala y ejecuta ZHP Cleaner siguiendo su manual , lo descargas, instalas y ejecutas. Cuando termine, elimina todo lo que encuentre.

4) Descarga FMRS a tu escritorio

  • Desactiva tu antivirus :arrow_forward: Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad que tengas activado.
  • Ejecuta FMRS.exe (Presiona clic derecho y selecciona “Ejecutar como Administrador.”)
  • Aceptas los disclaimers que aparezcan.
  • Esperas que termine.
  • Al finalizar generara un reporte que deberás pegar en tu próxima respuesta.
  • Activa nuevamente tu antivirus

5) Utiliza nuevamente CCleaner tal como te dije en el punto 0.

Pegas los reportes de Malwarebytes, AdwCleaner, ZHP Cleaner y FMR comentas como va el problema inicial planteado por el cual abriste este tema. También responde a las preguntas que te haya realizado a lo largo de este Post, siempre que te haya hecho alguna, si no, no

NOTA IMPORTANTE

Por Favor, mientras estemos desinfectando tu maquina o terminando de hacerlo:

  • No realices pasos/acciones que NOSOTROS no te hayamos indicado.
  • No descargues NADA de Internet y/o conectes dispositivos externos a tu equipo.
  • No instales NADA (programas/software/complementos/extensiones del navegador…).
  • No ejecutes otros programas de seguridad (Antivirus, Antimalware, ANTINADA…).
  • No realices por tu cuenta otros procedimientos.
  • Usa tu equipo EXCLUSIVAMENTE para desinfectarlo siguiendo nuestras indicaciones.

:warning: Muy Importante :warning: Coloca los diferentes reportes que te he pedido como se muestra en la siguiente imagen:

Salu2.

1 me gusta

El programa persiste y después de realizar todos los paso se reinicio google chrome y por un momento también apareció! En algun momento he visto algo de un programa lavasoft, creo que son los propietarios de la extensión

MALWAREBYTES:

Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 09/04/2025
Hora del análisis: 18:49
Archivo de registro: 9c586532-1562-11f0-9b5a-dc7196cc8bdd.json

-Información del software-
Versión: 5.2.8.173
Versión de los componentes: 128.0.5184
Versión del paquete de actualización: 1.0.97909
Licencia: Gratis

-Información del sistema-
SO: Windows 10 (Build 19045.5608)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-ATH1JVF\Toni

-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 1482610
Amenazas detectadas: 0
Amenazas en cuarentena: 0
Tiempo transcurrido: 13 min, 15 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 0
(No hay elementos maliciosos detectados)

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

ZHP:

~ ZHPCleaner v2025.3.10.4 by Nicolas Coolman (2025/03/10)
~ Run by Toni (Administrator)  (09/04/2025 19:19:14)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparar
~ Report : C:\Users\Toni\Desktop\ZHPCleaner (R).txt
~ Quarantine : C:\Users\Toni\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : OK
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit  (Build 19045)


---\\  Alternate Data Stream (ADS). (1)
MOVIDO carpeta ADS: C:\Users\Toni\Downloads\WirelessInSite.2.8.1.15.45765.Win64.NET2010.exe:com.dropbox.attrs  =>.SUP.FileADS


---\\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Navegadores de Internet (0)


---\\  Hosts carpeta (1)
~ El archivo hosts es legítimo (27)


---\\  Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Explorador ( Archivos, Carpetas ) (12)
MOVIDO carpeta: C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\History    =>.SUP.BrowserHistoric
MOVIDO carpeta: C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default\History    =>.SUP.BrowserHistoric
MOVIDO carpeta: C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Preferences    =>Préférences Chromium
MOVIDO carpeta: C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default\Preferences    =>Préférences Chromium
MOVIDO carpeta: C:\Users\Toni\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Preferences    =>Préférences Chromium
MOVIDO carpeta: C:\Users\Toni\Downloads\DiscordSetup.exe [Discord Inc. - Discord - https://discord.com/]  =>.SUP.Discord
MOVIDO archivo: C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data  =>.SUP.BrowserCache
MOVIDO archivo: C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data  =>.SUP.BrowserCache
MOVIDO archivo: C:\Users\Toni\AppData\Local\Chromium\User Data\Default\Cache\Cache_Data  =>.SUP.BrowserCache
MOVIDO archivo: C:\Program Files (x86)\DummyDir  =>.SUP.Empty
MOVIDO archivo: C:\Users\Toni\AppData\Roaming\DiskDefrag  =>SUP.Optional.AuslogicsDiskDefrag
MOVIDO archivo: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc  =>.SUP.Discord


---\\  Registro ( Claves, Valores, Datos) (6)
BORRADOS clave*: HKEY_USERS\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Discord []  =>.SUP.Discord
BORRADOS clave*: HKEY_USERS\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Classes\Discord [URL:Discord Protocol]  =>.SUP.Discord
BORRADOS clave**: HKCU\Software\Discord []  =>.SUP.Discord
BORRADOS clave*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Discord [Discord Inc.]  =>.SUP.Discord
BORRADOS clave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\17535F16F229DC35EB4031B8B3C571A9 [C:\Program Files\MakeMusic\Finale\27\Help Files\Finale Quick Reference Guide for Windows.pdf]  =>PUP.Optional.QuickRef
BORRADOS valor: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Discord ["C:\Users\Toni\AppData\Local\Discord\Update.exe" -]  =>.SUP.Discord


---\\  Resumen de elementos en su estación de trabajo (8)
https://nicolascoolman.eu/2018/01/04/ads-alternate-data-stream/  =>.SUP.FileADS
https://nicolascoolman.eu/2023/07/18/les-caches-et-historiques-de-navigateurs/  =>.SUP.BrowserHistoric
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/  =>Préférences Chromium
https://nicolascoolman.eu/forum/Topic/discord-logiciel-lps/  =>.SUP.Discord
https://nicolascoolman.eu/2023/07/18/les-caches-et-historiques-de-navigateurs/  =>.SUP.BrowserCache
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/  =>.SUP.Empty
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/  =>SUP.Optional.AuslogicsDiskDefrag
https://nicolascoolman.eu/2017/10/06/adware-vitruvian/  =>PUP.Optional.QuickRef


---\\ Limpieza adicional. (0)
~ Clave de registro Tracing borrados (0)
~ Quitar los antiguos informes de ZHPCleaner. (0)


---\\ Resultado de la reparación.
~ Reparación llevada a cabo con éxito
~ Google Chrome OK
~ Microsoft Edge OK
~ Microsoft Internet Explorer OK
~ Chromium OK


---\\ STATISTIQUES
~ Items escaneado : 2214
~ Items encontrado : 0
~ artículos cancelados : 0
~ Ahorro de espacio (bytes) : 0
~ Items opciones : 10/18


---\\ OPCIONES NO ACTIVAS
~ Análisis temporal de archivos
~ Análisis temporal de carpetas
~ Análisis de CLSID de carpetas vacías
~ Vaciar otro análisis de carpetas
~ Análisis de carpetas locales vacías
~ Análisis de carpetas locales vacías
~ Análisis de archivos de instalación obsoleto
~ Iniciar navegadores con extensiones eliminadas





~ End of clean in 00h00mn21s

---\\  Reporte (2)
ZHPCleaner-[S]-09042025-19_17_11.txt
ZHPCleaner-[R]-09042025-19_19_35.txt

FMRS:

# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #
# Furtivex Malware Removal Script v6.7.2
# https://furtivex.net
# OS: Microsoft Windows 10 Pro x64 22H2 Español (Spanish) - 0C0A - 1252 - 850
# Nombre de usuario: Toni (S-1-5-21-2910916927-680416450-2052498628-1001)
# Fecha: 2025_04_09__19_24_52
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #



# Procesos:

# Controladores:

# Servicios:

# Archivos:

C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
C:\Users\Toni\AppData\Local\Resmon.ResmonCfg
C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data (240)
C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js (361)
C:\Users\Toni\AppData\Local\Microsoft\TokenBroker\Cache (17)
C:\Users\Toni\AppData\Local\oobelibMkey.log
C:\Users\Toni\AppData\Local\Steam\htmlcache\Code Cache\js (1002)
C:\Users\Toni\AppData\LocalLow\FIN25B8.tmp
C:\Users\Toni\AppData\LocalLow\FIN25B9.tmp
C:\Users\Toni\AppData\LocalLow\FIN32A2.tmp
C:\Users\Toni\AppData\LocalLow\FIN32A3.tmp
C:\Users\Toni\AppData\LocalLow\FIN5AA9.tmp
C:\Users\Toni\AppData\LocalLow\FIN5AAA.tmp
C:\Users\Toni\AppData\LocalLow\FIN6537.tmp
C:\Users\Toni\AppData\LocalLow\FIN6538.tmp
C:\Users\Toni\AppData\LocalLow\FINA8F5.tmp
C:\Users\Toni\AppData\LocalLow\FINA8F6.tmp
C:\Users\Toni\AppData\LocalLow\FINCE1D.tmp
C:\Users\Toni\AppData\Roaming\discord\Cache\Cache_Data (1358)
C:\Users\Toni\AppData\Roaming\discord\Code Cache\js (2325)
C:\WINDOWS\Fonts\checkFonts.vbs
C:\WINDOWS\System32\perfc009.dat
C:\WINDOWS\System32\perfc00A.dat
C:\WINDOWS\System32\perfh009.dat
C:\WINDOWS\System32\perfh00A.dat
C:\WINDOWS\Tasks\CCleanerCrashReporting.job
C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\MATLAB R2021b Startup Accelerator.job

# Carpetas:

C:\Users\Toni\AppData\Local\BitTorrentHelper
C:\ProgramData\Blizzard Entertainment\Battle.net\Cache (6)
C:\Users\Toni\AppData\Local\D3DSCache (15)
C:\Users\Toni\AppData\Local\Microsoft\Windows\INetCache\IE (4)
C:\WINDOWS\System32\config\systemprofile\AppData\Local (1428)
C:\WINDOWS\System32\config\systemprofile\AppData\Local\D3DSCache (4)

# Tareas:

# Registro:

HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SubscribedContent-338388Enabled
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SubscribedContent-338389Enabled
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SystemPaneSuggestionsEnabled [1] => [0]
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Smart Cleaning
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\CCXProcess
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\com.squirrel.Teams.Teams
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\electron.app.Bitwarden
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\MicrosoftEdgeAutoLaunch_B9906C7C134792477CF165EA8145E9E6
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\LogiOptions
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Logitech Download Assistant
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ccleaner_emergency_update
HKLM\System\CurrentControlSet\Control\CrashControl\\AutoReboot [1] => [0]
HKLM\System\CurrentControlSet\Control\Terminal Server\\fDenyTSConnections [0] => [1]
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0B4905D3-13FE-48C4-892A-36EE5C078890}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1000E233-E51F-4372-84D4-886842D20FDD}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{14F6311D-5052-4503-B2C0-1058A700F54D}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1A4400EC-45C8-4129-93B3-F6FC546AD41A}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1DDEFB51-0E04-4ED3-B351-3C9C9B571E8A}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2CC1B7A0-E856-4F1F-9A54-F843E39D4D22}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3733C119-1880-4B14-80FB-07BAD8DB820B}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{42ABB1E2-3206-4603-964D-8CFFEE581296}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5FDEC986-5835-4663-B78E-CCF4A2914640}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7FF62279-FE2E-426C-8B5E-9F3C1B338F9C}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A05CF931-1656-40F2-A22A-ECEBF211DFB0}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AB7562D6-BCCF-4AD5-A6DF-C6F83AE2F4FC}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B853E2D0-ACD4-4EF4-8CDB-75B0122D306F}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BAF36D15-D5A0-4E30-B00C-BB7A1D895944}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BFB56A4B-7D37-440A-AB46-B7781EB73163}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C9A6F943-3DBA-4E3F-9741-D8BDE20183D6}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CFE57C7C-8285-4C89-AFBE-16B24F43345B}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D068ACA2-E43E-4F7E-9D26-C7EF709D4AF6}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DC8191F9-37AD-4FB5-BE89-A9AA7716AFAF}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DCDCE82C-1655-4776-B29C-F4D8253476E1}

# Misceláneo:

AntiVirus Software: Windows Defender
Punto de restauración: Furtivex Malware Removal Script - Creado

HKLM\Software\Microsoft\Windows Defender\Exclusions\Extensions

HKLM\Software\Microsoft\Windows Defender\Exclusions\IpAddresses

HKLM\Software\Microsoft\Windows Defender\Exclusions\Paths

HKLM\Software\Microsoft\Windows Defender\Exclusions\Processes

HKLM\Software\Microsoft\Windows Defender\Exclusions\TemporaryPaths

C:\Users\Toni\AppData\Local\CrashDumps\Malwarebytes\mbamtray.exe.10124.dmp		<186542850>		<2022-02-27 12:06:20>
C:\Users\Toni\AppData\Local\CrashDumps\Malwarebytes\mbamtray.exe.7096.dmp		<194305880>		<2022-04-10 21:15:05>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\KillerProviderDataHelperService.exe.20460.dmp		<754261>		<2024-11-18 18:24:13>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\KillerProviderDataHelperService.exe.27948.dmp		<753389>		<2024-11-18 18:23:48>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.3116.dmp		<3187887>		<2024-06-30 11:08:10>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\RdrServicesUpdater2_x64.exe.21496.dmp		<885511>		<2024-09-20 13:20:31>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\RdrServicesUpdater2_x64.exe.36004.dmp		<889407>		<2024-09-25 08:42:31>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\RdrServicesUpdater2_x64.exe.7772.dmp		<885783>		<2024-09-16 09:38:55>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\WaaSMedicAgent.exe.18092.dmp		<1063964>		<2024-12-09 17:39:58>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\WavesSysSvc64.exe.5496.dmp		<1316225>		<2025-01-27 20:47:29>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\WavesSysSvc64.exe.6460.dmp		<1328937>		<2024-07-13 22:14:15>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\WavesSysSvc64.exe.6468.dmp		<1682074>		<2024-11-11 13:31:07>


# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #

1 me gusta

Hola @tonilg

Realiza lo siguiente

:one: Desactive temporalmente su antivirus. ¿Cómo deshabilitar temporalmente su Antivirus?

:two: Por favor, descargue Farbar Recovery Scan Tool de acuerdo a su tipo de sistema y guárdelo en el Escritorio del sistema.

  • Haga clic con el botón derecho sobre él y seleccionar “Ejecutar como Administrador”, para ejecutar la herramienta con permisos de administrador.
  • Cuando la herramienta se abra, haga clic en para aceptar el Disclaimer/ Descargo de responsabilidad.
  • Haga clic en el botón Scan (Analizar) y espere a que termine.
  • La herramienta creará dos informes FRST.txt y Addition.txt ubicados en el mismo directorio desde el que se ejecuta la herramienta.
  • Por favor, traiga el contenido de estos reportes en su próxima respuesta.

¿Como Pegar Reportes en el Foro?

Saludos

FRST:

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 01-04-2025
Ejecutado por Toni (administrador) sobre DESKTOP-ATH1JVF (Dell Inc. XPS 15 7590) (09-04-2025 19:43:05)
Ejecutado desde C:\Users\Toni\Desktop\FRST64.exe
Perfiles cargados: Toni
Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.5608 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(cmd.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe <5>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <14>
(explorer.exe ->) (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/) C:\Program Files\TortoiseGit\bin\TGitCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <5>
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Dell Inc. -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_8a3f88e34f6b8385\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fafb1d329fdfe2c6\aesm_service.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_6df896a138b9b806\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c607c18cb15933d8\RtkAudUService64.exe <2>
(services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2512.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.5676_none_7dfafd007c9b4e44\TiWorker.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c607c18cb15933d8\RtkAudUService64.exe [1958816 2023-10-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_b4d0b189ff2aba03\WavesSvc64.exe [1774584 2021-02-19] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [10752424 2025-01-14] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Stream Deck] => C:\Program Files\Elgato\StreamDeck\StreamDeck.exe [22485416 2024-12-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9238408 2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779440 2021-04-12] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-03] (Adobe Inc. -> )
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (Ningún archivo)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Ningún archivo)
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\Run: [Volume Controller SD plugin] => C:\Program Files\Elgato\Volume Controller\ElgatoAudioControlServerWatcher.exe [108072 2023-09-18] (Corsair Memory, Inc. -> )
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45018016 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\Run: [MicrosoftEdgeAutoLaunch_B9906C7C134792477CF165EA8145E9E6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4418088 2025-04-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\MountPoints2: {ee72e81c-517e-11ee-b977-dc7196cc8bdd} - "E:\OnePlus_setup.exe" /s
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\135.0.7049.43\Installer\chrmstp.exe [2025-04-09] (Google LLC -> Google LLC)

==================== Tareas programadas (Lista blanca) =================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {D08278A2-7E4C-497E-A0E4-9E84D35C12F3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.)
Task: {11C2E52C-E6E3-4549-9219-BD03C98750A3} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [10752424 2025-01-14] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {E6498AFA-A46A-460B-9F35-D232596A3B23} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [11065256 2025-01-14] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {23D6F72C-D705-42C0-9A71-803448D1075C} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {1E7EC687-7987-44AF-AC9E-2748B5998BF3} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "cb0ccdbc-6a99-4950-a9ba-a885fb8a1ef9" --version "6.21.10918" --silent
Task: {DF709E4A-6B5B-48C0-AB4B-548722EDB468} - System32\Tasks\CCleanerSkipUAC - Toni => C:\Program Files\CCleaner\CCleaner.exe [38778272 2024-02-05] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {CEC6D483-F5C1-4BDA-A872-77E2B8BCF00C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem136.0.7079.0{54FDCBB4-4087-4BBF-8663-FD424CAF98A1} => C:\Program Files (x86)\Google\GoogleUpdater\136.0.7079.0\updater.exe [7017568 2025-03-20] (Google LLC -> Google LLC)
Task: {7A29F7E5-5368-4AA9-B8A5-AF7425C2EB5A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28610288 2025-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {777F8EC6-ADBB-4A93-B453-B7871744CFDB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28610288 2025-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {8F6EB004-1412-43CF-9257-23A023175A79} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2025-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {4BB89648-1BCF-4F38-903D-D01B83AB29EC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2025-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {C504A39F-4F95-4440-BA78-B96AB8E67ABD} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [187024 2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {CDDE54ED-A095-4BD8-B316-EB131E8F1EAF} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4466064 2025-01-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {8E09D480-9053-4088-AC60-1BE9296AA9F4} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Disable (Ningún archivo)
Task: {A1AAE0F8-87E6-4286-80FD-E94BC51E0CAB} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Warning (Ningún archivo)
Task: {A5B1195D-B226-4C55-B796-3BACBC538BC9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpCmdRun.exe [1745192 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CB4C1A59-6D9D-459C-900F-C672FA62FAE1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpCmdRun.exe [1745192 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DD06FBDF-84FC-402F-896A-B75F6A2740E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpCmdRun.exe [1745192 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A7C0B61C-D7E2-48FF-ACDB-C4C60F17E208} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpCmdRun.exe [1745192 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {427D74BD-DD7F-40B7-94E7-353D9B2D63B5} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {88D2486D-5763-45B0-93A3-4490C9F73487} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341312 2021-12-09] (Nvidia Corporation -> NVIDIA Corporation)
Task: {C0323DC7-DDAC-4286-A34E-82D281313ABA} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649216 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {F7169E55-E63C-414B-BE8C-0A528722AF22} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {912E82E4-1763-4AFA-9525-8D37192597A7} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {4203641F-9ECD-40BC-BF2A-52AD774F5523} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {71110BEE-D7DB-4111-B575-B82C33425C60} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {02804BD8-141E-4940-AA11-1EB9B681C03A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {CD74A450-D452-436A-88F0-FE21A0E0EF03} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {64E71BA8-DDFC-4FB9-AFF7-9393D9839F7C} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223792 2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {87760351-D54D-4C04-8DCC-4BD30BA2B2D1} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2910916927-680416450-2052498628-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223792 2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {842233BA-F370-432C-AB51-1370896D2487} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2910916927-680416450-2052498628-1001 => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\OneDriveLauncher.exe [673600 2025-04-08] (Microsoft Corporation -> Microsoft Corporation)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}: [DhcpDomain] home
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}\1457C65637D61637475627: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}\5505347657563747: [DhcpNameServer] 10.83.0.1 10.83.0.2 84.88.84.88
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}\5505347657563747: [DhcpDomain] upc.edu
Tcpip\..\Interfaces\{521d0b4e-36bb-4a6e-a578-0b758da024ea}\F4E65605C65737025345: [DhcpNameServer] 192.168.43.231
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}: [DhcpDomain] home
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\1457C65637D61637475627: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\449734162756: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\449734162756: [DhcpDomain] home
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\56465727F616D6: [DhcpNameServer] 10.83.0.1 10.83.0.2 84.88.84.88
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\56465727F616D6: [DhcpDomain] upc.edu
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\84F64756C6026556E656369616: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\E41333C4D223: [DhcpNameServer] 192.168.88.1
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\F4E65605C65737025345: [DhcpNameServer] 192.168.43.103
Tcpip\..\Interfaces\{ca20d6e8-5494-4ef9-b34f-8d9b50cb8988}\F4E65605C657375345: [DhcpNameServer] 192.168.43.67

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-09]
Edge Extension: (Documentos de Google sin conexión) - C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-28]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\Toni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-03-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-04-12] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-04-12] (Adobe Inc. -> Adobe Systems)

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default [2025-04-09]
CHR HomePage: Default -> hxxp://www.elmundo.es/
CHR StartupUrls: Default -> "hxxp://www.elmundo.es/"
CHR Extension: (Just Black) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2021-04-22]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-04-09]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-04-09]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (VT4Browsers) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\efbjojhplkelaegfbieplglfidafgoka [2024-04-18]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-09]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-04-09]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-09]hxxps://clients2.google.com/service/update2/crx
CHR Extension: (Bitwarden - Administrador de contraseñas) - C:\Users\Toni\AppData\Local\Google\Chrome\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2025-04-09]hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842416 2021-04-12] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14046392 2025-03-22] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [48528 2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [59616 2025-01-31] (Dell Inc. -> )
S2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [301768 2019-05-29] (Dell Inc -> Dell Inc.)
S2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [50392 2024-01-27] (Dell Inc -> )
S2 DellFFDPWmiService; C:\WINDOWS\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> )
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\221.4.5365\DropboxElevationService.exe [1659280 2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncHelper.exe [3535680 2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
S2 FusionService; C:\Program Files\Dell\Fusion\FusionService.exe [26792 2023-02-13] (Dell Inc -> Dell Inc.)
S3 KAPSService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [78248 2024-10-29] (Intel Corporation -> Intel® Corporation)
S2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2456000 2024-10-29] (Intel Corporation -> Intel)
S2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2614720 2024-10-29] (Intel Corporation -> Intel)
S2 Killer Provider Data Helper Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerProviderDataHelperService.exe [1212352 2024-10-29] (Intel Corporation -> Intel)
S3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [78272 2024-10-29] (Intel Corporation -> Intel® Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [9484384 2025-03-27] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2024-12-20] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MpDefenderCoreService.exe [1968320 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_6df896a138b9b806\Display.NvContainer\NVDisplay.Container.exe [1274992 2024-07-21] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [22384 2023-11-22] (Microsoft Windows -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.046.0310.0005\OneDriveUpdaterService.exe [3882816 2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2022-10-04] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2022-10-04] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.)
S2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [254112 2021-07-14] (Intel Corporation -> Intel Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13273104 2020-10-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [794544 2024-05-02] (Oracle America, Inc. -> Oracle and/or its affiliates)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\NisSrv.exe [4464024 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MsMpEng.exe [270040 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [214464 2024-10-29] (Intel Corporation -> Rivet Networks, LLC.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [278960 2025-04-01] (Microsoft Windows -> Microsoft Corporation)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [234072 2025-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 ScrHIDDriver3; C:\WINDOWS\System32\drivers\ScrHIDDriver3.sys [63296 2021-10-01] (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [254352 2024-05-02] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [265224 2024-05-02] (Oracle Corporation -> Oracle and/or its affiliates)
R1 VBoxSup; C:\WINDOWS\system32\DRIVERS\VBoxSup.sys [1063752 2024-05-02] (Oracle Corporation -> Oracle and/or its affiliates)
R0 vmci; C:\WINDOWS\System32\drivers\vmci.sys [104888 2022-07-03] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [60344 2021-04-30] (VMware, Inc. -> VMware, Inc.)
R3 VMnetAdapter; C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys [31128 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [53656 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 VMnetuserif; C:\WINDOWS\system32\DRIVERS\vmnetuserif.sys [30664 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 vmx86; C:\WINDOWS\system32\DRIVERS\vmx86.sys [100776 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [88976 2022-07-03] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20016 2025-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [601520 2025-04-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-01] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) (Lista blanca) =========

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2025-04-09 19:43 - 2025-04-09 19:43 - 000030793 _____ C:\Users\Toni\Desktop\FRST.txt
2025-04-09 19:42 - 2025-04-09 19:43 - 000000000 ____D C:\FRST
2025-04-09 19:41 - 2025-04-09 19:42 - 002404864 _____ (Farbar) C:\Users\Toni\Desktop\FRST64.exe
2025-04-09 19:37 - 2025-04-09 19:37 - 001276704 _____ (BraveSoftware Inc.) C:\Users\Toni\Downloads\BraveBrowserSetup-BRV010.exe
2025-04-09 19:26 - 2025-04-09 19:26 - 000003380 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-04-09 19:26 - 2025-04-09 19:26 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-04-09 19:25 - 2025-04-09 19:25 - 000008202 _____ C:\FMRS_2025_04_09__19_24_52.txt
2025-04-09 19:24 - 2025-04-09 19:24 - 001452664 _____ (Furtivex) C:\Users\Toni\Downloads\FMRS.exe
2025-04-09 19:09 - 2025-04-09 19:19 - 000000000 ____D C:\Users\Toni\AppData\Roaming\ZHP
2025-04-09 19:09 - 2025-04-09 19:09 - 000000876 _____ C:\Users\Toni\Desktop\ZHPCleaner.lnk
2025-04-09 19:09 - 2025-04-09 19:09 - 000000000 ____D C:\Users\Toni\AppData\Local\ZHP
2025-04-09 19:08 - 2025-04-09 19:08 - 003366088 _____ (Nicolas Coolman) C:\Users\Toni\Downloads\ZHPCleaner.exe
2025-04-09 19:04 - 2025-04-09 19:06 - 000000000 ____D C:\AdwCleaner
2025-04-09 19:04 - 2025-04-09 19:04 - 009568256 _____ (Malwarebytes) C:\Users\Toni\Downloads\adwcleaner.exe
2025-04-09 18:41 - 2025-04-09 19:36 - 000000000 ____D C:\Program Files\CCleaner
2025-04-09 18:41 - 2025-04-09 18:41 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-04-09 18:41 - 2025-04-09 18:41 - 000002900 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Toni
2025-04-09 18:41 - 2025-04-09 18:41 - 000000825 _____ C:\Users\Public\Desktop\CCleaner.lnk
2025-04-09 18:41 - 2025-04-09 18:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2025-04-09 18:40 - 2025-04-09 18:41 - 079157808 _____ (Piriform Software Ltd) C:\Users\Toni\Downloads\ccsetup621.exe
2025-04-09 18:39 - 2025-04-09 19:36 - 000000000 ____D C:\Users\Toni\Desktop\Informes_Brave
2025-04-09 17:59 - 2025-04-09 17:59 - 000000000 ___HD C:\$WinREAgent
2025-04-09 16:14 - 2025-04-09 17:01 - 000000000 ____D C:\Users\Toni\Desktop\Mazda_CX5
2025-04-09 14:51 - 2025-04-09 14:51 - 000160104 _____ C:\Users\Toni\Desktop\2025 04 07 TONI LOPEZ GIMENEZ.pdf
2025-04-04 13:54 - 2025-04-04 13:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2025-04-04 13:51 - 2025-04-04 13:54 - 000348155 _____ C:\Users\Toni\Downloads\POLIZA_SOCIEDAD.pdf
2025-04-02 13:05 - 2025-04-02 13:05 - 000048528 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2025-03-27 13:16 - 2025-03-27 13:16 - 000074653 _____ C:\Users\Toni\Downloads\justificantePago_ca_180219503786.pdf
2025-03-27 13:15 - 2025-03-27 13:15 - 000063516 _____ C:\Users\Toni\Downloads\Resultat _ CaixaBank.pdf
2025-03-19 20:16 - 2025-03-19 20:16 - 000000000 ____D C:\ProgramData\obs-studio
2025-03-19 20:16 - 2025-03-19 20:16 - 000000000 ____D C:\Program Files\Elgato
2025-03-12 12:56 - 2025-03-12 12:56 - 000199006 _____ C:\Users\Toni\Desktop\20250219-informe.pdf
2025-03-12 12:56 - 2025-03-12 12:56 - 000032639 _____ C:\Users\Toni\Downloads\20241023-informe.pdf
2025-03-12 12:55 - 2025-03-12 12:55 - 000030141 _____ C:\Users\Toni\Downloads\20250225-informe.pdf
2025-03-12 12:54 - 2025-03-12 12:54 - 000030228 _____ C:\Users\Toni\Downloads\20250311-informe.pdf
2025-03-11 23:02 - 2025-03-11 23:32 - 000000000 ____D C:\Users\Toni\Desktop\Jaume

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2025-04-09 19:42 - 2023-01-31 19:35 - 000000000 ____D C:\Program Files (x86)\BraveSoftware
2025-04-09 19:42 - 2022-01-03 16:58 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-04-09 19:40 - 2019-09-04 11:42 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2025-04-09 19:37 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-09 19:37 - 2019-09-14 16:33 - 000000000 ____D C:\Users\Toni\AppData\Local\D3DSCache
2025-04-09 19:34 - 2023-07-04 12:48 - 000000000 ____D C:\Users\Toni\AppData\Roaming\discord
2025-04-09 19:34 - 2023-07-04 12:48 - 000000000 ____D C:\Users\Toni\AppData\Local\Discord
2025-04-09 19:34 - 2022-11-06 21:24 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Code
2025-04-09 19:25 - 2019-09-04 11:42 - 000000000 ____D C:\ProgramData\NVIDIA
2025-04-09 19:24 - 2019-10-02 10:36 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2025-04-09 18:57 - 2023-05-13 16:29 - 000000000 ____D C:\Users\Toni\AppData\Local\Malwarebytes
2025-04-09 18:44 - 2019-12-23 22:15 - 000000000 ____D C:\Program Files (x86)\Steam
2025-04-09 18:44 - 2019-09-14 16:11 - 000000000 ____D C:\Users\Toni\AppData\Local\CrashDumps
2025-04-09 18:38 - 2023-01-13 20:34 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Bitwarden
2025-04-09 18:38 - 2021-04-19 00:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-04-09 18:08 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-04-09 18:01 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-09 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-04-09 17:37 - 2019-10-02 10:36 - 000000000 ____D C:\Users\Toni\AppData\Roaming\TeamViewer
2025-04-09 17:19 - 2022-11-06 21:24 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2025-04-09 14:53 - 2020-02-26 18:48 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2025-04-09 14:51 - 2019-09-14 13:30 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-04-09 14:51 - 2019-09-14 13:30 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-04-08 18:06 - 2020-07-06 10:39 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-08 18:06 - 2020-07-06 10:39 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-04-08 13:58 - 2025-02-06 10:35 - 000003546 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2910916927-680416450-2052498628-1001
2025-04-08 13:58 - 2023-02-11 18:39 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-04-08 13:58 - 2023-02-10 14:35 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2910916927-680416450-2052498628-1001
2025-04-08 13:58 - 2023-02-10 14:35 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-04-08 13:58 - 2023-02-10 14:35 - 000002128 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-08 13:55 - 2021-04-19 00:26 - 000003708 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-08 13:55 - 2021-04-19 00:26 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-04 13:55 - 2019-09-14 13:45 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Dropbox
2025-04-04 13:55 - 2019-09-14 13:44 - 000000000 ____D C:\Users\Toni\AppData\Local\Dropbox
2025-04-04 13:54 - 2019-09-14 13:44 - 000000000 ____D C:\Program Files (x86)\Dropbox
2025-04-01 20:01 - 2019-09-04 11:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-03-27 13:31 - 2024-11-11 21:40 - 000000000 ____D C:\Users\Toni\.gk
2025-03-27 11:02 - 2020-07-11 12:15 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Telegram Desktop
2025-03-26 19:39 - 2024-01-25 23:16 - 000000000 ____D C:\Users\Toni\AppData\Roaming\jupyter
2025-03-24 23:30 - 2023-06-20 16:34 - 000000000 ____D C:\Users\Toni\Desktop\Programming
2025-03-22 21:32 - 2023-02-10 14:33 - 000000000 ____D C:\Program Files\Microsoft Office
2025-03-21 20:01 - 2022-10-15 11:33 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-03-21 20:01 - 2022-10-15 11:33 - 000002023 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2025-03-21 20:01 - 2021-04-19 00:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-03-20 19:49 - 2024-06-24 18:47 - 000000000 ____D C:\Users\Toni\AppData\Local\TortoiseGit
2025-03-19 20:17 - 2021-04-19 00:31 - 001781868 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-03-19 20:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-03-19 20:16 - 2023-06-29 20:20 - 000001107 _____ C:\Users\Public\Desktop\Stream Deck.lnk
2025-03-19 20:13 - 2023-02-12 20:12 - 000000000 ____D C:\Users\Toni\AppData\Roaming\Microsoft\Teams
2025-03-19 18:36 - 2019-09-14 13:11 - 000000000 ____D C:\Users\Toni\AppData\Local\Packages
2025-03-19 18:33 - 2019-09-14 13:11 - 000000000 __SHD C:\Users\Toni\IntelGraphicsProfiles
2025-03-19 18:32 - 2023-07-05 17:59 - 000001591 _____ C:\WINDOWS\system32\config\VSMIDK
2025-03-19 18:32 - 2021-08-07 16:29 - 000000000 ____D C:\ProgramData\VMware
2025-03-19 18:32 - 2021-04-19 00:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-03-19 18:32 - 2021-04-19 00:20 - 000534856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-03-19 18:32 - 2021-04-19 00:20 - 000008192 ___SH C:\DumpStack.log.tmp
2025-03-19 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-03-19 18:32 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2025-03-19 18:32 - 2019-09-04 11:40 - 000000000 ____D C:\ProgramData\Goodix
2025-03-19 18:32 - 2019-09-04 11:39 - 000000000 ____D C:\Intel
2025-03-19 18:31 - 2022-03-13 23:17 - 000000000 ___SD C:\WINDOWS\system32\lxss
2025-03-19 18:31 - 2019-12-07 16:58 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-03-19 18:31 - 2019-12-07 16:56 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-03-19 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-03-19 18:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-03-13 11:13 - 2021-04-19 00:23 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-03-10 20:12 - 2022-10-05 00:00 - 000022120 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys

==================== Archivos en la raíz de algunos directorios ========

2023-07-01 10:16 - 2024-06-24 19:30 - 000000128 _____ () C:\Users\Toni\AppData\Local\PUTTY.RND
2020-12-15 11:51 - 2020-12-15 11:51 - 000002904 _____ () C:\Users\Toni\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================

Addition 1:

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 01-04-2025
Ejecutado por Toni (09-04-2025 19:45:14)
Ejecutado desde C:\Users\Toni\Desktop
Microsoft Windows 10 Pro Versión 22H2 19045.5608 (X64) (2021-04-18 22:26:52)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

(Si una entrada es incluida en el fixlist, será eliminada.)

Administrador (S-1-5-21-2910916927-680416450-2052498628-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2910916927-680416450-2052498628-503 - Limited - Disabled)
Invitado (S-1-5-21-2910916927-680416450-2052498628-501 - Limited - Disabled)
Toni (S-1-5-21-2910916927-680416450-2052498628-1001 - Administrator - Enabled) => C:\Users\Toni
WDAGUtilityAccount (S-1-5-21-2910916927-680416450-2052498628-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1034-1033-7760-BC15014EA700}) (Version: 25.001.20435 - Adobe)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.4.3.544 - Adobe Inc.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.6.0.79 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601108}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Aplicaciones de Microsoft 365 para empresas - es-es (HKLM\...\O365ProPlusRetail - es-es) (Version: 16.0.17928.20468 - Microsoft Corporation)
Arduino IDE 2.2.1 (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\459fc68c-eb53-59f8-8957-9913bc627af3) (Version: 2.2.1 - Arduino SA)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.61.1 - Asmedia Technology)
AutoFirma (HKLM\...\AutoFirma) (Version: 1.8.2 - Gobierno de España)
Bitwarden (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\173a9bac-6f0d-50c4-8202-4744c69d091a) (Version: 2025.2.1 - Bitwarden Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.21 - Piriform)
Comprobación de estado de PC Windows (HKLM\...\{8B474A92-CE3A-4F46-B6F1-6DFA1390F826}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Configurador FNMT (HKLM\...\ConfiguradorFnmt) (Version: 4.0.2 - FNMT-RCM)
Dell Digital Delivery Services (HKLM-x32\...\{E9CD23E0-FC9B-4AE6-83A1-067FC62A39E7}) (Version: 5.5.0.0 - Dell Inc.)
Dell Mobile Connect Driver (HKLM\...\{6F9CB82D-BC34-4FC1-B90D-AFFAC5C85E7B}) (Version: 4.1.7498 - Screenovate Technologies Ltd.)
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM\...\{0B884FA0-BBEE-4573-B696-426AA39ED913}) (Version: 5.5.7.18773 - Dell Inc.) Hidden
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM-x32\...\{2600102a-dac2-4b2a-8257-df60c573fc29}) (Version: 5.5.7.18773 - Dell Inc.)
Dell SupportAssist Remediation (HKLM\...\{8FA6BC9C-CF6A-45E7-92BD-1585DFAFB32C}) (Version: 4.4.1.9851 - Dell Inc.) Hidden
Dell SupportAssist Remediation (HKLM-x32\...\{5f9ca6e9-c7d9-49c9-88fa-196d35d8eb82}) (Version: 4.4.1.9851 - Dell Inc.)
Dell Update for Windows Universal (HKLM\...\{183DEF89-F000-4745-81FD-3B43101D5B9F}) (Version: 5.2.0 - Dell Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 221.4.5365 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
Dynamic Application Loader Host Interface Service (HKLM\...\{2DF0E6F6-1C0E-4AF3-BD8C-2DBD0A8A770F}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Elgato Stream Deck (HKLM\...\{D06C11F3-DA1E-4040-9DE9-CCC93F3D41F7}) (Version: 6.8.1.21263 - Corsair Memory, Inc.)
Finale (HKLM\...\{BDB4E5AC-4378-4CA3-BADB-FCD6F6DD097E}) (Version: 27.4.1.114 - MakeMusic)
Fusion Service (HKLM\...\{93D141B9-9B5E-485B-8ED1-97DE741EE768}) (Version: 2.2.14.0 - Dell.Inc) Hidden
Fusion Service (HKLM-x32\...\{6e578348-d226-4341-a69f-26274feac293}) (Version: 2.2.14.0 - Dell.Inc)
Git (HKLM\...\Git_is1) (Version: 2.37.3 - The Git Development Community)
Goodix Fingerprint Driver (HKLM\...\{60FAB781-18F2-4D2B-A8E7-B3AADD327955}_is1) (Version: 2.1.32.800 - Goodix, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 135.0.7049.43 - Google LLC)
Intel(R) Chipset Device Software (HKLM\...\{148D6ED8-24B8-443D-9C5B-5D6BF506671B}) (Version: 10.1.17903.8106 - Intel Corporation) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.5.10103.7263 - Intel Corporation)
Intel(R) Icls (HKLM\...\{D404A759-EC9F-4C95-A9FD-2CC8EFF89E03}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2345.5.42.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{DD4C55D7-B644-4274-AEC9-77AAB3FB00F2}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{6204E232-6522-4B6E-B22C-4F0DF7CCA27C}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME WMI Provider (HKLM\...\{5C67AF85-8F17-49C9-854F-8E40208ECFBE}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.6911 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000000-0210-1034-84C8-B8D95FA3C8C3}) (Version: 21.00.0.4 - Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM\...\HAXM) (Version: 7.6.5 - Intel Corporation)
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{93989715-4970-47CC-83A0-12E01431EEFA}) (Version: 17.2.7.1028 - Intel Corporation)
KiCad 7.0 (HKLM-x32\...\KiCad 7.0) (Version: 7.0.8 - KiCad)
Killer Performance Driver Suite UWD (HKLM\...\{BF49A380-1FC2-4A84-9D85-CF0D5E883948}) (Version: 2.2.1466 - Rivet Networks)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-IE) (HKLM-x32\...\{998D5259-3BED-4710-98FF-D63387B5429E}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-NZ) (HKLM-x32\...\{07FC9CAD-FCEC-4186-BB83-EF7CCC9372BA}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-ES) (HKLM-x32\...\{F49AF755-A5C3-4252-A190-5772B2669C3B}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (es-MX) (HKLM-x32\...\{E8F3B154-03CE-4120-8B9D-9E83ED5F3AD7}) (Version: 11.0.7400.336 - Microsoft Corporation)
Logitech Options (HKLM\...\LogiOptions) (Version: 10.22.14 - Logitech)
Malwarebytes version 5.2.8.173 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.8.173 - Malwarebytes)
MATLAB R2021b (HKLM\...\Matlab R2021b) (Version: 9.11 - MathWorks)
Microsoft .NET Host - 7.0.7 (x64) (HKLM\...\{E914E975-A0B1-49F7-AB71-28DACD495C44}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.8 (x64) (HKLM\...\{3BA242F8-BDB5-4096-9FBC-333CD663BBAD}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.7 (x64) (HKLM\...\{62A9DE14-DB7A-41D9-9D7E-ED494E6FCBAF}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.7 (x64) (HKLM\...\{ECCA3DB0-6DEF-42CD-A21A-F2F7B918FB59}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft 365 Apps for enterprise - en-gb (HKLM\...\O365ProPlusRetail - en-gb) (Version: 16.0.17928.20468 - Microsoft Corporation)
Microsoft ASP.NET Core 7.0.7 - Shared Framework (x64) (HKLM-x32\...\{4a749a1a-b799-41b4-a328-33a7b2355e76}) (Version: 7.0.7.23274 - Microsoft Corporation)
Microsoft ASP.NET Core 7.0.7 Shared Framework (x64) (HKLM\...\{5ECA54B7-62F2-39EE-9514-31F7DFFFC968}) (Version: 7.0.7.23274 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 135.0.3179.54 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 25.046.0310.0005 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Server Speech Recognition Language - TELE (en-IN) (HKLM-x32\...\{3B06AC90-DE68-44A9-95EB-0A3C1AF1514F}) (Version: 11.0.7400.335 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\Teams) (Version: 1.7.00.156 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{BD515BA9-A4E0-40EB-829A-8960477ADFA6}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{F2FB7D67-A4CE-448B-BC59-4C6DBD9F7ECB}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.99.1 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM\...\{593F16DC-C2D3-4740-ABD4-A171B4E32B06}) (Version: 56.31.61651 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM-x32\...\{e875fc20-9a37-4344-b046-0bb037cb2d57}) (Version: 7.0.7.32525 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
MMFonts (HKLM\...\{B1DA8D2C-7DC0-4D90-A9F0-44F224C242E7}) (Version: 27.0.0.1 - MakeMusic, Inc.)
MSYS2 (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\{a6dd225f-dcfa-4003-adbe-3c47f120c9d5}) (Version: 20240113 - The MSYS2 Developers)
MuseScore Studio 4 (HKLM\...\{00A8D7D3-9E31-40CF-BF8D-6602610CE46A}) (Version: 4.4.2.242570931 - MuseScore Limited)
Node.js (HKLM\...\{DA5C7599-681B-43F8-B8A6-20D986C704F9}) (Version: 20.11.1 - Node.js Foundation)
NVIDIA Controlador de gráficos 555.99 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 555.99 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.2.4999.30397803 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.4999.30397803 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.24.0.126 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.24.0.126 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17928.20216 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17928.20468 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.17928.20216 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 7.0.18 (HKLM\...\{7431991E-0534-4E1E-89C8-2AF6968C017C}) (Version: 7.0.18 - Oracle and/or its affiliates)
Python 3.11.4 (64-bit) (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\{3d45edf4-44bb-483f-9e08-43c38c81e118}) (Version: 3.11.4150.0 - Python Software Foundation)
Python 3.11.4 Core Interpreter (64-bit) (HKLM\...\{FEF98C01-0C8A-4A0F-88AE-F164A787286C}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Development Libraries (64-bit) (HKLM\...\{1C6E1CE6-CA4E-4B38-BAFF-32BD94DBFFEF}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Documentation (64-bit) (HKLM\...\{FABA3DAC-829C-4C83-BC27-F3AFFD27B465}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Executables (64-bit) (HKLM\...\{DA4B94FB-D8BB-4DB9-85A7-FA5067A5CEDF}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 pip Bootstrap (64-bit) (HKLM\...\{D86BDA9F-D389-445E-B3E6-C35EF9FD41C7}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Standard Library (64-bit) (HKLM\...\{7EB8F17E-4AA7-4F9E-B908-42A28799523A}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Tcl/Tk Support (64-bit) (HKLM\...\{A32FE961-D579-4E46-B3D6-0B777F8F51E8}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Test Suite (64-bit) (HKLM\...\{52DE4CC1-22CF-498B-B50F-E66877E4850B}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.11.4 Utility Scripts (64-bit) (HKLM\...\{90A235DF-4CF1-415D-AD85-6AC578B5DFB4}) (Version: 3.11.4150.0 - Python Software Foundation) Hidden
Python 3.9.6 (64-bit) (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\{178e8fd0-1b1d-4cdf-8e5c-f5f53d25e0e4}) (Version: 3.9.6150.0 - Python Software Foundation)
Python 3.9.6 Core Interpreter (64-bit) (HKLM\...\{C4B7FF79-1195-436F-AA85-28EE995151B7}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Development Libraries (64-bit) (HKLM\...\{D6580352-5B95-49A9-B2F3-313D12D13968}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Documentation (64-bit) (HKLM\...\{2994270E-FE74-49E5-98BB-E65F5F0EC304}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Executables (64-bit) (HKLM\...\{9BE9E7F0-F9F1-487B-A2FC-790CD2898388}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 pip Bootstrap (64-bit) (HKLM\...\{69BCB7EC-54AF-47F2-A891-D335CE44A530}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Standard Library (64-bit) (HKLM\...\{4DD10049-CC97-48AE-BE76-4CB6E3111F7B}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Tcl/Tk Support (64-bit) (HKLM\...\{7C56D977-225C-4EBA-8308-E47DF9FA867F}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Test Suite (64-bit) (HKLM\...\{5C5B7907-C4E8-4E09-8CD6-3E844C7D65E2}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python 3.9.6 Utility Scripts (64-bit) (HKLM\...\{511119D2-41C4-48E1-A3DA-0A6A1E68AC76}) (Version: 3.9.6150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{23514291-DEF3-42FD-A67C-A96E35C92F24}) (Version: 3.11.4150.0 - Python Software Foundation)
R for Windows 4.2.1 (HKLM\...\R for Windows 4.2.1_is1) (Version: 4.2.1 - R Core Team)
RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9228.1 - Realtek Semiconductor Corp.)
Realtek USB Audio (HKLM-x32\...\{0A46A65D-89AC-464C-8026-3CD44960BD04}) (Version: 6.3.9600.2299 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.4.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.2 - VS Revo Group, Ltd.)
RStudio (HKLM-x32\...\RStudio) (Version: 2022.07.2+576 - RStudio)
Rtools 4.2 (4.2.0.1) (HKLM\...\Rtools42_is1) (Version: 4.2 - The R Foundation)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.7.59.0 - Samsung Electronics Co., Ltd.)
Software para dispositivos de chipset Intel® (HKLM-x32\...\{70281077-96c3-4f75-938c-dc4746110c00}) (Version: 10.1.17903.8106 - Intel(R) Corporation)
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.10.0093 - ST Microelectronics)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.5.0.30767 - Microsoft Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.11.6 - TeamViewer)
Telegram Desktop (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 5.13.1 - Telegram FZ-LLC)
TortoiseGit 2.17.0.2 (64 bit) (HKLM\...\{01FAC96A-A140-440B-BACE-0318CB99722A}) (Version: 2.17.0.2 - TortoiseGit)
TypeScript SDK (HKLM-x32\...\{EEFC32F7-3CCC-4AB9-815A-6CFDC64098A1}) (Version: 5.3.1.0 - Microsoft Corporation) Hidden
TypeScript SDK 5.3.1.0 (HKLM-x32\...\{7b18ffa7-3c81-4a80-9e3b-2aba421c5023}) (Version: 5.3.1.0 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
VirtViewer 3.0-256 (64-bit) (HKLM\...\{234ECCF5-C375-4137-AA40-101D4645D948}) (Version: 3.0.256 - Virt Manager Project)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 134.0.3124.93 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)

Chrome apps:
============
Gmail (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\94eee1b4841271550fe3c1a7822724d1) (Version: 1.0 - Google\Chrome)
Google Calendar (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\8e1c8769d7f684ebf14970ab5f43f2eb) (Version: 1.0 - Google\Chrome)
Google Drive (HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\60acb91a25b865255dd0d0385bf36031) (Version: 1.0 - Google\Chrome)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-12-17] ()
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2020-07-10] (Adobe Systems Incorporated)
Adobe XD -> C:\Program Files\WindowsApps\Adobe.CC.XD_39.0.12.12_x64__adky2gkssdxte [2021-04-18] (Adobe Systems Incorporated)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_9.10.1.0_x64__kgqvnymyfvs32 [2025-03-26] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_4.10.1.0_x64__kgqvnymyfvs32 [2025-04-02] (king.com)
Centro de comando de gráficos Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-01-27] (INTEL CORP) [Startup Task]
Centro de control Thunderbolt™ -> C:\Program Files\WindowsApps\AppUp.ThunderboltControlCenter_1.0.37.0_x64__8j3eq9eme6ctt [2023-10-21] (INTEL CORP)
Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-11-22] (Microsoft Corporation)
Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-04-18] (Microsoft Corporation)
Dell CinemaColor -> C:\Program Files\WindowsApps\PortraitDisplays.DellCinemaColor_2.4.78.0_x64__2dgmkzkw4h30c [2022-08-11] (Portrait Displays)
Dell Customer Connect -> C:\Program Files\WindowsApps\DellInc.DellCustomerConnect_5.5.5.0_x64__htrsf667h5kn2 [2025-01-30] (Dell Inc)
Dell Digital Delivery -> C:\Program Files\WindowsApps\DellInc.DellDigitalDelivery_5.5.0.0_x64__htrsf667h5kn2 [2025-03-05] (Dell Inc)
Dell Free Fall Data Protection -> C:\Program Files\WindowsApps\STMicroelectronicsMEMS.DellFreeFallDataProtection_1.0.27.0_x64__rp6h1c31mfy1y [2025-01-30] (STMICROELECTRONICS S.R.L.)
Dell Mobile Connect 3.3 -> C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.3.9809.0_x64__0vhbc3ng4wbp0 [2025-01-30] (Screenovate Technologies) [Startup Task]
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_5.2.64.0_x86__htrsf667h5kn2 [2024-02-25] (Dell Inc)
Dolby Vision -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionHDR_2.20400.722.0_x64__rz1tebttyb220 [2024-09-13] (Dolby Laboratories)
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2025-04-04] (Dropbox Inc.)
Escritorio remoto de Microsoft -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.2.4008.0_x64__8wekyb3d8bbwe [2025-02-23] (Microsoft Corporation)
F5 Access -> C:\Program Files\WindowsApps\F5Networks.vpn.client_1.3.0.0_x64__btcnfmkykcjs2 [2025-01-30] (F5 Networks)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2022-06-21] (INTEL CORP)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1041.0_x64__8j3eq9eme6ctt [2025-01-30] (INTEL CORP)
Killer Intelligence Center -> C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1624.1026.0_x64__rh07ty8m5nkag [2025-01-30] (INTEL CORP) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-04-18] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-04-18] (Microsoft Corporation) [MS Ad]
My Dell -> C:\Program Files\WindowsApps\DellInc.MyDell_2.2.6.0_x64__htrsf667h5kn2 [2025-01-30] (Dell Inc)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2024-11-17] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-27] (NVIDIA Corp.)
Spotify: música y pódcasts -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0 [2025-04-09] (Spotify AB) [Startup Task]
Waves MaxxAudio Pro for Dell 2019 -> C:\Program Files\WindowsApps\WavesAudio.MaxxAudioProforDell2019_2.0.54.0_x64__fh4rh281wavaa [2019-09-04] (Waves Audio)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2512.2.0_x64__cv1g1gvanyjgm [2025-03-28] (WhatsApp Inc.) [Startup Task]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{04271989-C4D2-81D1-A5A8-C062BEA934EE} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{0BAD39CB-DD3E-4F21-9156-649B0156C28E}\localserver32 -> C:\Windows\System32\DriverStore\FileRepository\wavesapo8de.inf_amd64_b4d0b189ff2aba03\WavesSvc64.exe (Waves Inc -> Waves Audio Ltd.)
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.)
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> C:\Users\Toni\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\Toni\Dropbox [2019-09-14 13:48]
CustomCLSID: HKU\S-1-5-21-2910916927-680416450-2052498628-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [     OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [     Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [     Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [    DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [    DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-04-21] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [   AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-04-21] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [   AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-04-21] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-03-25] () [Archivo no firmado] [El archivo está en uso]
ShellIconOverlayIdentifiers: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [     OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [     OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-04-21] (Adobe Inc. -> )
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [TortoiseGit] -> {10A0FDD2-B0C0-4CD4-A7AE-E594CE3B91C8} => C:\Program Files\TortoiseGit\bin\TortoiseGitStub.dll [2024-10-30] (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [TortoiseGit] -> {10A0FDD2-B0C0-4CD4-A7AE-E594CE3B91C8} => C:\Program Files\TortoiseGit\bin\TortoiseGitStub.dll [2024-10-30] (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-12-20] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-03-25] () [Archivo no firmado] [El archivo está en uso]
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [TortoiseGit] -> {10A0FDD2-B0C0-4CD4-A7AE-E594CE3B91C8} => C:\Program Files\TortoiseGit\bin\TortoiseGitStub.dll [2024-10-30] (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.046.0310.0005\FileSyncShell64.dll [2025-04-08] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.78.0.dll [2025-04-02] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_6df896a138b9b806\nvshext.dll [2024-07-21] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [TortoiseGit] -> {10A0FDD2-B0C0-4CD4-A7AE-E594CE3B91C8} => C:\Program Files\TortoiseGit\bin\TortoiseGitStub.dll [2024-10-30] (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-04-21] (Adobe Inc. -> )
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-12-20] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [TortoiseGit] -> {10A0FDD2-B0C0-4CD4-A7AE-E594CE3B91C8} => C:\Program Files\TortoiseGit\bin\TortoiseGitStub.dll [2024-10-30] (Open Source Developer, Sven Strickroth -> hxxps://tortoisegit.org/)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Gmail (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm
ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Gmail.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm
ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Google Calendar (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=kjbdgfilnfhdoflbpgamdcdgpehopbep
ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Google Calendar.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=kjbdgfilnfhdoflbpgamdcdgpehopbep
ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Google Drive.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak
ShortcutWithArgument: C:\Users\Toni\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos cargados (Lista blanca) =============

2019-03-25 11:37 - 2019-03-25 11:37 - 000126976 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files\Intel\OptaneShellExtensions\iaStorAfsServiceApi.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\43990787.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\73881398.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\43990787.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\73881398.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer (Lista blanca) =============

HKU\S-1-5-21-2910916927-680416450-2052498628-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
SearchScopes: HKU\S-1-5-21-2910916927-680416450-2052498628-1001 -> DefaultScope {4DC77513-E3C2-4406-B904-5EC6FECD66F0} URL = 
SearchScopes: HKU\S-1-5-21-2910916927-680416450-2052498628-1001 -> {4DC77513-E3C2-4406-B904-5EC6FECD66F0} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-30] (Microsoft Corporation -> Microsoft Corporation)

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE trusted site: HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\sharepoint.com -> hxxps://alumnosunir-files.sharepoint.com

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2019-03-19 06:49 - 2023-07-05 17:55 - 000001056 _____ C:\WINDOWS\system32\drivers\etc\hosts
192.168.1.24 host.docker.internal
192.168.1.24 gateway.docker.internal
127.0.0.1 kubernetes.docker.internal

2021-04-13 18:48 - 2021-04-13 18:48 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

Addition2:



==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\VMware\VMware Player\bin\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\MATLAB\R2021b\bin;C:\Program Files\Git\cmd;C:\Users\Toni\AppData\Local\Programs\Python\python311;C:\Program Files\AutoFirma\AutoFirma;C:\Program Files\nodejs\;C:\Program Files\dotnet\;C:\Program Files\TortoiseGit\bin
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Toni\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\25-02-2006 12-17-09_0029.JPG
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.

Network Binding:
=============
Ethernet 3: VirtualBox Host-Only Ethernet Adapter -> VBoxNetAdp6.sys
Wi-Fi: Killer(R) Wi-Fi 6 AX1650x 160MHz Wireless Network Adapter (200NGW) -> Netwtw10.sys
Ethernet: VMware Virtual Ethernet Adapter for VMnet1 -> vmnetadapter.sys
Ethernet 2: VMware Virtual Ethernet Adapter for VMnet8 -> vmnetadapter.sys
Conexión de red Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys

vmware_bridge: VMware Bridge Protocol
vms_vsf: Filtro de extensión del conmutador virtual de Hyper-V
oracle_VBoxNetLwf: VirtualBox NDIS6 Bridged Networking Driver
ms_vfpext: Microsoft Azure VFP Switch Extension
vms_vsp: Protocolo de extensión del conmutador virtual de Hyper-V

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\StartupApproved\Run: => "Docker Desktop"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{37DBE4FC-D233-4CD3-8AD9-2CD6F0E61335}] => (Block) C:9\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{F6191B2C-89B4-4571-9293-36D7D901938D}] => (Block) C:9\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{98777AEA-C88C-4E49-B6BA-1621EDE987F0}C:9\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:9\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{9E3ECD40-8AD0-4226-A0F6-966CC2756DE8}C:9\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:9\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{07CF8822-6F93-4FD5-91C8-57DB76E13F87}] => (Allow) C:9\GAMES\Origin_games\FIFA 21\FIFASetup\fifaconfig.exe => Ningún archivo
FirewallRules: [{19629861-EA47-4AEE-B13D-17632CBA3F7D}] => (Allow) C:9\GAMES\Origin_games\FIFA 21\FIFASetup\fifaconfig.exe => Ningún archivo
FirewallRules: [{9A184BA4-035D-46AB-A1E8-D05DB450174E}] => (Block) C:8\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{61D18FC4-17E1-43BF-8915-08A6D1ABB895}] => (Block) C:8\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{C2EEFFD6-D1FA-43E8-A1DA-20223C59C0DA}C:8\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:8\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{0997D46C-CFFA-438F-9CB8-8D0D92857F50}C:8\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:8\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{F38E6A1C-F47B-4F3F-9C0E-8A1CC11FD621}] => (Block) C:7\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{C5ED7D9A-2504-45EE-A922-77B790E6815C}] => (Block) C:7\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{B462E01D-14EF-4BD2-AB3C-9664EF44D0F1}C:7\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:7\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{70780A54-ED59-436D-837E-629F9218CFAA}C:7\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:7\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{49EA0973-1A25-4C11-BC94-65201855C986}] => (Block) C:6\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{0A37836D-5A56-4453-BDFD-D0DDA47D0AC6}] => (Block) C:6\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{E9F744C0-F6E7-4399-BA77-2C88719C9E5A}C:6\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:6\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{0F61149A-0114-49B4-A9DD-8D1F505AEBB1}C:6\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:6\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{3B545670-73E5-4E04-9EF1-4D464500DB71}] => (Block) C:5\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{B9CACAD0-E63F-46CC-8BD5-D32177D88292}] => (Block) C:5\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{F095D03E-4097-40CD-A363-1D6869DC9001}C:5\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:5\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{D7045734-B388-48D7-9074-6F703D41E647}C:5\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:5\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{0F0E8FA8-83ED-4A1E-A5BF-C2D355805A12}] => (Block) C:4\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{544AF5B8-74A8-49B0-B94D-CCB2E7CE1875}] => (Block) C:4\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{2797C4B0-7122-4620-B9B0-D1213CA26134}C:4\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:4\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{74E2750F-C70A-4998-A3EC-378E218836C0}C:4\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:4\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{A39D4593-DF0C-4B9A-BFBF-0BC5AA57CF83}] => (Block) C:2\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{376755EE-1C4F-4429-8811-D2BD6AFA110C}] => (Block) C:2\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{94D52C22-80ED-4A7A-955D-367C7F297B1B}C:2\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:2\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{03A1C6DE-1066-47AF-A390-304B98B5EBAA}C:2\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:2\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{1AB5203C-D3BF-492B-A2C3-6D675D9D5AD2}] => (Block) C:1\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{52DF662B-6208-4591-A148-61ED285B08D2}] => (Block) C:1\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{FF7808D9-B2F4-42D8-B24A-8F240964A965}C:1\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:1\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{8BAC866B-8C6B-45E1-AA4C-4A06A2A5EDAB}C:1\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:1\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{4A877704-45F3-4EC2-8AD4-4A377DBFF617}] => (Block) C:0\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{668FD418-1994-4A10-9507-D4AAB4FAC4BE}] => (Block) C:0\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{224FB0B3-4430-422A-BCC9-85468564A7BF}C:0\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:0\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{15BC356D-235A-435A-8779-080A4CA1F038}C:0\games\origin_games\fifa 21\fifa21.exe] => (Allow) C:0\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{B4462181-801B-4DEE-B1AA-F4189C8C5DF5}] => (Block) D:\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{1681800D-141F-480C-81EF-3C6EA31340C6}] => (Block) D:\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [UDP Query User{2ABE2496-EDC4-4D89-96A9-FDC80A0090FB}D:\games\origin_games\fifa 21\fifa21.exe] => (Allow) D:\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [TCP Query User{66CBB38D-9E90-4CA1-A097-ADBF2313B0F7}D:\games\origin_games\fifa 21\fifa21.exe] => (Allow) D:\games\origin_games\fifa 21\fifa21.exe => Ningún archivo
FirewallRules: [{21C6B280-CDB5-4D2C-9318-DBD740CA4B60}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{70A2B712-0BAA-4276-962E-761D45AA6A66}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{CC0320F5-4FB2-4FAF-82D3-F6AB0B01BB4B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{89EF41B1-F4A4-44C9-8957-E6D64B20B681}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{19B332AF-6733-4B57-8BC3-F2ED510CC655}] => (Block) D:\games\battle_games\call of duty modern warfare\modernwarfare.exe => Ningún archivo
FirewallRules: [{645ABF8C-BF65-4F31-BEF3-FFBA0525E6B9}] => (Block) D:\games\battle_games\call of duty modern warfare\modernwarfare.exe => Ningún archivo
FirewallRules: [UDP Query User{1FB20117-4059-4936-BE67-044ACECA77B1}D:\games\battle_games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\battle_games\call of duty modern warfare\modernwarfare.exe => Ningún archivo
FirewallRules: [TCP Query User{1A90CAB2-C4F1-4D0D-99AE-1113B0F7E1D5}D:\games\battle_games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\battle_games\call of duty modern warfare\modernwarfare.exe => Ningún archivo
FirewallRules: [{AB9437E0-FE7C-42EF-B878-A51EB281C57E}] => (Allow) D:\GAMES\Steam_Games\steamapps\common\F1 2019\F1_2019.exe => Ningún archivo
FirewallRules: [{5B216F77-D0A1-46D2-8093-32E718ADE941}] => (Allow) D:\GAMES\Steam_Games\steamapps\common\F1 2019\F1_2019.exe => Ningún archivo
FirewallRules: [{81DF7D34-6FB2-408F-968B-B66C9CAC7246}] => (Allow) D:\GAMES\Steam_Games\steamapps\common\F1 2019\F1_2019_dx12.exe => Ningún archivo
FirewallRules: [{2220F4D4-738D-4ED7-A30F-FB21163F1BB1}] => (Allow) D:\GAMES\Steam_Games\steamapps\common\F1 2019\F1_2019_dx12.exe => Ningún archivo
FirewallRules: [{41DBA22B-428A-43FB-8878-4B9B376DA8F6}] => (Block) D:\games\origin_games\fifa 20\fifa20.exe => Ningún archivo
FirewallRules: [{07D335A6-49C6-4A0A-83C2-9016347AFCEF}] => (Block) D:\games\origin_games\fifa 20\fifa20.exe => Ningún archivo
FirewallRules: [UDP Query User{1FDC4342-12A7-4BED-A85F-033B47193A6A}D:\games\origin_games\fifa 20\fifa20.exe] => (Allow) D:\games\origin_games\fifa 20\fifa20.exe => Ningún archivo
FirewallRules: [TCP Query User{765C5A8E-2C25-4A08-B625-A55CF544DB6B}D:\games\origin_games\fifa 20\fifa20.exe] => (Allow) D:\games\origin_games\fifa 20\fifa20.exe => Ningún archivo
FirewallRules: [{2E72CBD0-FEE9-487F-B43A-D0FB5476EF72}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BCD21854-D20A-4841-AFDD-DEDBEA224629}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F384AC95-C18B-4CF3-9D58-E2BC8D1BA8FD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{30C3D700-CFB7-4C35-BB01-91DCBC7FBC3C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{26023EF4-F889-487A-8618-32F59BE26A3B}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{799B1D9A-A05D-4C17-A700-B088B080FB45}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{2F6E9F97-B41C-4085-85E5-4E2B6EED1E2D}] => (Block) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{5C1EA623-AF1C-41C3-8424-5C6D76EA8DD1}] => (Block) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{E8903F4C-0305-4AA4-9D10-246EE982259A}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.3.9809.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (6B081F61-C764-4F21-995F-B463D0640577 -> Screenovate Technologies Ltd.)
FirewallRules: [{299CF8C8-C275-455F-837A-FB349534E4EE}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.3.9809.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (6B081F61-C764-4F21-995F-B463D0640577 -> Screenovate Technologies Ltd.)
FirewallRules: [TCP Query User{98F4FAF0-9881-40D2-999B-CB6DEED3D2D3}C:\program files\matlab\r2021b\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\matlab.exe (The MathWorks, Inc. -> The MathWorks Inc.)
FirewallRules: [UDP Query User{AE1F4C7C-7751-47D3-A1CD-C2DFB7455123}C:\program files\matlab\r2021b\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\matlab.exe (The MathWorks, Inc. -> The MathWorks Inc.)
FirewallRules: [{E454BF2E-2B6A-4818-BD92-F68A3B2F9DD5}] => (Block) C:\program files\matlab\r2021b\bin\win64\matlab.exe (The MathWorks, Inc. -> The MathWorks Inc.)
FirewallRules: [{674283C6-D541-4C73-B409-7A7310C179E1}] => (Block) C:\program files\matlab\r2021b\bin\win64\matlab.exe (The MathWorks, Inc. -> The MathWorks Inc.)
FirewallRules: [TCP Query User{23E69BF1-7149-4915-8363-E6A4747D25C7}C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [UDP Query User{A9121EB2-CA2F-4FBD-8C50-ECDEFF555EB1}C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [{E3186CD6-9165-4080-B3CF-3CBCF815C4A7}] => (Block) C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [{FAAD3446-5021-437F-920C-9C78871ED913}] => (Block) C:\program files\matlab\r2021b\bin\win64\addonproductinstaller.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [TCP Query User{3BE3E593-A0B1-477F-96EE-0CB65F7A5682}C:\program files\matlab\r2021b\bin\win64\update_installer.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\update_installer.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [UDP Query User{5C505A31-0905-4CEA-83FA-CD07D0AF0542}C:\program files\matlab\r2021b\bin\win64\update_installer.exe] => (Allow) C:\program files\matlab\r2021b\bin\win64\update_installer.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [{888326C0-1EBF-4B57-8F7A-8B62417C1428}] => (Block) C:\program files\matlab\r2021b\bin\win64\update_installer.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [{E08DE9DD-B824-43E8-A6B4-370080BCD94C}] => (Block) C:\program files\matlab\r2021b\bin\win64\update_installer.exe (The MathWorks, Inc. -> The MathWorks, Inc)
FirewallRules: [TCP Query User{CD388889-B72C-47F7-9CAC-FFE2EB0779F1}C:\program files\rstudio\bin\rsession-utf8.exe] => (Allow) C:\program files\rstudio\bin\rsession-utf8.exe (RStudio, PBC) [Archivo no firmado]
FirewallRules: [UDP Query User{E529621F-9F7F-4CDA-9A15-3B2BE9E91A97}C:\program files\rstudio\bin\rsession-utf8.exe] => (Allow) C:\program files\rstudio\bin\rsession-utf8.exe (RStudio, PBC) [Archivo no firmado]
FirewallRules: [{63961E31-2C80-4FAD-8AF6-51F6FEE7F7C8}] => (Block) C:\program files\rstudio\bin\rsession-utf8.exe (RStudio, PBC) [Archivo no firmado]
FirewallRules: [{DF3E2D06-35F9-4DD8-A297-0DB266DDC3AB}] => (Block) C:\program files\rstudio\bin\rsession-utf8.exe (RStudio, PBC) [Archivo no firmado]
FirewallRules: [{DC052E6A-380A-464B-9FC6-904513243310}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3E1A1ECF-E90C-41C2-B76E-C173ED569D07}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D9A80601-2542-4120-90FD-496E33B21C30}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B1EE5C98-389B-4776-A174-21473E51078C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{E802437F-96AC-4BA8-9C8B-C06F1BA0A466}C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{6AF83689-1801-43B2-A5F2-A9C5C04F751A}C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe () [Archivo no firmado]
FirewallRules: [{D9B9ABC0-B574-42F7-84AE-5FD4CFA7AC69}] => (Block) C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe () [Archivo no firmado]
FirewallRules: [{48E26E1A-8814-41C5-9359-AE229A059882}] => (Block) C:\users\toni\appdata\local\android\sdk\platform-tools\adb.exe () [Archivo no firmado]
FirewallRules: [{2830905B-0D06-40A7-A648-C19B2310CAC4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{61117237-4FAD-4CA4-AFBA-2316C14769EA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8080BFCE-1E76-470D-B451-B4AA1DE0A142}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.206.863.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5D6490FE-8E8E-497C-81A8-22C36D8744B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.206.863.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E85780E6-CB46-46C3-AA39-DA3E380338F6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.206.863.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{77B154DE-C6FF-432F-BC3F-7FD9835F7655}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.206.863.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6E472951-F2C4-4D0D-991E-43D4B08C87A6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.206.863.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [TCP Query User{1BF089EC-EB28-4ECA-81C7-31A3D89D39BD}C:\users\toni\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\toni\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{06455D9B-052B-4573-9788-07113878BC2F}C:\users\toni\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\toni\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{93784CDF-6636-490E-958B-0BE8E26DB480}] => (Block) C:\users\toni\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D04CBED7-4EA0-4464-AB2A-5601789F8C0D}] => (Block) C:\users\toni\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{62D1B442-4942-4328-996F-9D44E9EFC02A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.207.1277.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A2C83BED-C02C-4D34-B9CB-1B4AA39BEC26}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.207.1277.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1B987483-2C6D-4912-B9D5-2DEAC1FD34DA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.207.1277.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{24282993-AA62-41FE-BCC8-F302195ADBBE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.207.1277.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AF8B23CD-0163-46C8-9995-C006AEF5C1C7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.207.1277.0_x86__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [TCP Query User{1A9583C6-ED44-4AA3-9DB6-92CC156BFAEE}C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe] => (Allow) C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{0147CC83-0DF7-4D04-8612-F29BF4031D14}C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe] => (Allow) C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe () [Archivo no firmado]
FirewallRules: [{66022A0F-4497-4BE5-AADD-2A8398216589}] => (Block) C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe () [Archivo no firmado]
FirewallRules: [{923EBDE4-1512-4432-9B43-5EDF3A1F7D35}] => (Block) C:\users\toni\appdata\local\arduino15\packages\builtin\tools\mdns-discovery\1.0.9\mdns-discovery.exe () [Archivo no firmado]
FirewallRules: [{D3B8C493-4E5E-43BD-AED9-A54982E32B98}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{E550E609-0BCC-485F-9605-EFB50EEF47E4}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [TCP Query User{C1219CA7-8D66-43DE-9930-AEF8DFE032B6}C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe] => (Allow) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe
FirewallRules: [UDP Query User{86C4B68F-8C07-41DA-9F94-D6F0E98BAC21}C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe] => (Allow) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe
FirewallRules: [{DA79BAFB-998E-4FFB-A327-4F0F6AB74998}] => (Block) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe
FirewallRules: [{31B5BFC0-3596-4F79-BC2C-B51D0225A012}] => (Block) C:\program files\configuradorfnmt\configuradorfnmt\jre\bin\javaw.exe
FirewallRules: [{2E866D0F-0C79-408D-87B6-238006ABDEB9}] => (Allow) C:\Program Files\WindowsApps\MSTeams_23306.3315.2560.6525_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{55A53899-FCC3-48F0-9D02-91F89B542CA6}] => (Allow) C:\Program Files\WindowsApps\MSTeams_23306.3315.2560.6525_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{93FD4343-E6B3-430F-B1A7-2F44EF6462CE}C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe] => (Allow) C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe (Arduino SA -> Arduino SA)
FirewallRules: [UDP Query User{219827D2-52CA-416D-B6E5-6721023D674A}C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe] => (Allow) C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe (Arduino SA -> Arduino SA)
FirewallRules: [{14A8C583-8979-4104-823B-D12F51151529}] => (Block) C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe (Arduino SA -> Arduino SA)
FirewallRules: [{99A44DC1-E3C2-452A-834F-E672DB40641B}] => (Block) C:\users\toni\appdata\local\programs\arduino ide\arduino ide.exe (Arduino SA -> Arduino SA)
FirewallRules: [TCP Query User{903C624D-B5D6-4C45-8CE3-2975AE9C23C3}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [UDP Query User{2788A617-72D8-401E-A365-E819D940313D}C:\program files\autofirma\autofirma\jre\bin\javaw.exe] => (Allow) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [{021B5BB2-ABE7-4778-9DAB-6813863DFAC5}] => (Block) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [{0A593FC3-0AC8-479A-BC10-1F7457F0BE93}] => (Block) C:\program files\autofirma\autofirma\jre\bin\javaw.exe
FirewallRules: [TCP Query User{691C36A8-60F5-4556-BD4F-D9A1E1EE5E1E}C:\users\toni\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\toni\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{23203E87-DD97-4E0A-AFA8-6F1E22C6CF78}C:\users\toni\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\toni\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{262702D5-2AC0-4394-9B94-48D9E328026A}] => (Block) C:\users\toni\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3C6E0A5B-E3DE-40CA-B22C-3E69E90A51DE}] => (Block) C:\users\toni\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{809FEEEF-39A3-4452-AE64-7D39E2CE2446}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{AAA67FB9-1492-40CA-99E1-4BF111B1400F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C2B3398-DE0E-4E2A-BE9E-E845CF1D8A8A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{35E95AE7-990C-4123-A678-6AAA75C93C91}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DD6CCD5A-8314-47E2-9040-AA4A20EDF86C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{49015B4F-02B5-4E46-8704-9C0F506C331D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A0A5EBB7-655F-452F-9010-5D30054A22A9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C57A4001-2D88-4AA0-B4DE-A6D6CD0BFD87}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0D06C5E2-3084-4540-96AA-0188AA774A20}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8DBC8AF6-9E17-4158-AD94-3018DE72AB80}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.259.514.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1B9887BE-C223-4310-A0FE-7A1C52114AD5}] => (Allow) C:\Program Files\Elgato\Volume Controller\ElgatoAudioControlServer.exe (Corsair Memory, Inc. -> )
FirewallRules: [{6B6BA96C-F062-4A74-BA38-D4F664644C15}] => (Allow) C:\Program Files\Elgato\StreamDeck\StreamDeck.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.)
FirewallRules: [{677B5228-1AF9-49F6-987F-C5732D1C98E5}] => (Allow) C:\Program Files\Elgato\StreamDeck\node\node20.exe (OpenJS Foundation -> Node.js)
FirewallRules: [{3D440FB8-E78D-469C-9868-CA002CAC9E8E}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)

==================== Puntos de Restauración =========================

09-04-2025 19:18:51 ZHPcleaner
09-04-2025 19:33:39 Revo Uninstaller's restore point - Brave
09-04-2025 19:40:16 Revo Uninstaller's restore point - Brave

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (04/09/2025 07:33:35 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al consultar la interfaz IVssWriterCallback. HR = 0x80070005, Acceso denegado..A menudo ocurre por una configuración de seguridad incorrecta en el proceso de escritura o de solicitud.


Operación:
   Recopilando datos del escritor

Contexto:
   Id. de clase del escritor: {e8132975-6f93-4464-a53e-1050253ae220}
   Nombre del escritor: System Writer
   Id. de instancia del escritor: {b3d2b730-02ee-411b-bc59-ed6b100da8a0}


Errores del sistema:
=============

Windows Defender:
================
Date: 2025-04-09 17:58:18
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2025-04-03 09:32:35
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2025-03-28 22:52:08
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2025-03-26 19:12:10
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2025-03-24 15:48:36
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===============
Date: 2025-04-04 13:55:17
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\221.4.5365\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-04-04 13:55:17
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Microsoft signing level requirements.

Date: 2025-03-19 19:38:54
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\220.4.4126\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-03-19 17:35:08
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\219.4.4463\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-03-08 12:14:12
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Dropbox\Client\219.4.4463\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-03-08 12:14:11
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Dropbox\Client\Dropbox.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Microsoft signing level requirements.


==================== Información de la memoria =========================== 

BIOS: Dell Inc. 1.34.0 12/18/2024
Placa base: Dell Inc. 0VYV0G
Procesador: Intel(R) Core(TM) i7-9750H CPU @ 2.60GHz
Porcentaje de memoria en uso: 53%
RAM física total: 16088.46 MB
RAM física disponible: 7441.58 MB
Virtual total: 28653.45 MB
Virtual disponible: 19748.59 MB

==================== Unidades ================================

Drive c: (OS) (Fixed) (Total:460.09 GB) (Free:278.3 GB) (Model: SSDPEMKF512G8 NVMe INTEL 512GB) NTFS
Drive e: (Elements) (Fixed) (Total:931.48 GB) (Free:242.85 GB) (Model: WD Elements 2621 USB Device) NTFS

\\?\Volume{5bfa4c11-7369-4af1-a213-e5e54c125843}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.24 GB) NTFS
\\?\Volume{ef9bd6ad-9297-4ca0-9097-83e9ecb04e40}\ (Image) (Fixed) (Total:13.85 GB) (Free:0.15 GB) NTFS
\\?\Volume{fae25a0d-ffa3-4fbe-87b7-13c93deab6e1}\ (DELLSUPPORT) (Fixed) (Total:1.24 GB) (Free:0.48 GB) NTFS
\\?\Volume{b0e81b7a-08b9-45a9-9961-21a23a79e913}\ (ESP) (Fixed) (Total:0.66 GB) (Free:0.57 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 19197789)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 16F2A91F)

Partition: GPT.

==================== Final de Addition.txt =======================

Hola @tonilg

Tráeme el reporte de adwcleaner que no lo subiste.

Deja instalado brave, no lo elimines con revo.

Realiza lo siguiente

:one: Ahora debes de hacer una COPIA DE SEGURIDAD DEL REGISTRO, para ello:

  • Reinicias el ordenador en Modo Normal.

  • Descargas DelFix en tu escritorio.

  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador)

  • Marcas solamente la casilla de Create registry backup, el resto te aseguras de que no estén seleccionadas.

  • Presionas en Run.

Se abrirá el informe (DelFix.txt), puedes cerrarlo. Pero lo guardas por si en el futuro te lo pido/hace falta.

Seguidamente, CIERRAS TODOS LOS PROGRAMAS, vas a Inicio >> Ejecutar y escribes Notepad.exe

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
Start::
SystemRestore: On
CreateRestorePoint:


VirusScan: C:\Users\Toni\Downloads\BraveBrowserSetup-BRV010.exe

HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (Ningún archivo)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Ningún archivo)
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\MountPoints2: {ee72e81c-517e-11ee-b977-dc7196cc8bdd} - "E:\OnePlus_setup.exe" /s
Task: {8E09D480-9053-4088-AC60-1BE9296AA9F4} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Disable (Ningún archivo)
Task: {A1AAE0F8-87E6-4286-80FD-E94BC51E0CAB} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Warning (Ningún archivo)

CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp]

CMD: DISM /Online /Cleanup-image /Restorehealth
CMD: sfc /scannow
CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
End::

Lo guardas con el nombre de FIXLIST.TXT en tu escritorio (MUY IMPORTANTE). Pues en caso contrario no funcionará el SCRIPT, ambos ficheros (FRST.exe y FIXLIST.TXT ) y deben de estar en la ubicación del ESCRITORIO.

:warning: El anterior Script de reparación es personalizado para la máquina en concreto para la cual se fabricó y está hecho específicamente por un miembro del Staff. Si se tiene un problema parecido, por favor abra su propio tema para recibir ayuda personalizada y específica. Utilizar Scripts de otros Sistemas puede causar daños graves en su ordenador.

Finalmente (OJO, en MODO NORMAL):

  1. Ejecutas nuevamente FRST.exe (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador).

  2. Presionas sobre Fix/Corregir y esperas a que finalice el proceso. No hagas nada con el PC mientras este realizando dichas reparaciones, incluso si parece ser que se ha quedado colgado. No lo toques y esperas.

  3. Cunado finalice, en el ESCRITORIO se creará el fichero FIXLOG.TXT lo traes en tu próxima respuesta.

  4. Reinicias el ordenador en Modo Normal compruebas durante un rato el funcionamiento de este y comentas como sigue el problema inicialmente planteado.

:warning: Muy Importante :warning: Coloca el reporte que te he pedido como se muestra en la siguiente imagen:

Saludos

Reporte de ADWCLEANER, disculpa pensaba lo había copiado! Proceso a realizar lo nuevo solicitado!

# -------------------------------
# Malwarebytes AdwCleaner 8.5.1.601
# -------------------------------
# Build:    03-26-2025
# Database: 2025-04-04.3 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    04-09-2025
# Duration: 00:00:00
# OS:       Windows 10 (Build 19045.5608)
# Cleaned:  4
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted       HKCU\Software\Lavasoft\Web Companion
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted       HKLM\Software\Wow6432Node\Lavasoft\Web Companion

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2463 octets] - [09/04/2025 19:05:15]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Estoy probando el PC después de reiniciar.

Ultimo reporte solicitado:

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 01-04-2025
Ejecutado por Toni (09-04-2025 20:31:25) Run:1
Ejecutado desde C:\Users\Toni\Desktop
Perfiles cargados: Toni
Modo de Inicio: Normal
==============================================

fixlist contenido:
*****************
Start::
SystemRestore: On
CreateRestorePoint:


VirusScan: C:\Users\Toni\Downloads\BraveBrowserSetup-BRV010.exe

HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (Ningún archivo)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Ningún archivo)
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\...\MountPoints2: {ee72e81c-517e-11ee-b977-dc7196cc8bdd} - "E:\OnePlus_setup.exe" /s
Task: {8E09D480-9053-4088-AC60-1BE9296AA9F4} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Disable (Ningún archivo)
Task: {A1AAE0F8-87E6-4286-80FD-E94BC51E0CAB} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => %windir%\System32\RemoteFXvGPUDisablement.exe  Warning (Ningún archivo)

CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp]

CMD: DISM /Online /Cleanup-image /Restorehealth
CMD: sfc /scannow
CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
End::
*****************

SystemRestore: On => completado
El punto de restauración fue creado correctamente.
Virusscan: C:\Users\Toni\Downloads\BraveBrowserSetup-BRV010.exe => https://virusscan.jotti.org/filescanjob/9eabo60wex
"HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Update Binary" => no encontrado
"HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Standalone Update Binary" => no encontrado
HKU\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ee72e81c-517e-11ee-b977-dc7196cc8bdd} => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{8E09D480-9053-4088-AC60-1BE9296AA9F4}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E09D480-9053-4088-AC60-1BE9296AA9F4}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1AAE0F8-87E6-4286-80FD-E94BC51E0CAB}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1AAE0F8-87E6-4286-80FD-E94BC51E0CAB}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask" => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mfhcmdonhekjhfbjmeacdjbhlfgpjabp => eliminado correctamente

========= DISM /Online /Cleanup-image /Restorehealth =========


Herramienta Administraci¢n y mantenimiento de im genes de implementaci¢n
Versi¢n: 10.0.19041.3636

Versi¢n de imagen: 10.0.19045.5737


[==                         3.8%                           ] 

[==                         4.8%                           ] 

[===                        5.7%                           ] 

[===                        6.7%                           ] 

[====                       7.7%                           ] 

[=====                      8.7%                           ] 

[=====                      9.7%                           ] 

[======                     10.6%                          ] 

[======                     11.6%                          ] 

[=======                    12.6%                          ] 

[=======                    13.6%                          ] 

[========                   14.6%                          ] 

[=========                  15.5%                          ] 

[=========                  16.1%                          ] 

[=========                  17.1%                          ] 

[==========                 18.0%                          ] 

[===========                19.0%                          ] 

[===========                20.0%                          ] 

[============               21.0%                          ] 

[============               22.0%                          ] 

[=============              22.9%                          ] 

[=============              23.9%                          ] 

[==============             24.9%                          ] 

[==============             25.1%                          ] 

[==============             25.1%                          ] 

[==============             25.2%                          ] 

[==============             25.3%                          ] 

[==============             25.3%                          ] 

[==============             25.4%                          ] 

[==============             25.4%                          ] 

[===============            26.4%                          ] 

[===============            27.4%                          ] 

[================           28.4%                          ] 

[=================          29.4%                          ] 

[=================          30.3%                          ] 

[==================         31.3%                          ] 

[==================         32.3%                          ] 

[==================         32.5%                          ] 

[===================        33.1%                          ] 

[===================        33.5%                          ] 

[===================        33.5%                          ] 

[===================        34.4%                          ] 

[====================       35.4%                          ] 

[=====================      36.4%                          ] 

[=====================      37.4%                          ] 

[======================     38.3%                          ] 

[======================     39.3%                          ] 

[=======================    40.3%                          ] 

[=======================    41.2%                          ] 

[========================   42.2%                          ] 

[========================   42.5%                          ] 

[=========================  43.4%                          ] 

[=========================  43.7%                          ] 

[=========================  44.3%                          ] 

[========================== 45.2%                          ] 

[========================== 45.7%                          ] 

[========================== 46.2%                          ] 

[===========================46.7%                          ] 

[===========================47.2%                          ] 

[===========================47.6%                          ] 

[===========================47.9%                          ] 

[===========================48.0%                          ] 

[===========================48.2%                          ] 

[===========================48.4%                          ] 

[===========================48.7%                          ] 

[===========================49.4%                          ] 

[===========================49.5%                          ] 

[===========================50.1%                          ] 

[===========================51.0%                          ] 

[===========================52.0%                          ] 

[===========================53.0%                          ] 

[===========================54.0%                          ] 

[===========================54.9%                          ] 

[===========================55.4%                          ] 

[===========================55.5%                          ] 

[===========================55.5%                          ] 

[===========================55.7%                          ] 

[===========================55.7%                          ] 

[===========================55.8%                          ] 

[===========================55.8%                          ] 

[===========================55.8%                          ] 

[===========================55.8%                          ] 

[===========================55.9%                          ] 

[===========================56.0%                          ] 

[===========================56.1%                          ] 

[===========================56.2%                          ] 

[===========================56.2%                          ] 

[===========================56.3%                          ] 

[===========================56.4%                          ] 

[===========================56.5%                          ] 

[===========================56.5%                          ] 

[===========================56.6%                          ] 

[===========================56.7%                          ] 

[===========================56.8%                          ] 

[===========================56.9%=                         ] 

[===========================56.9%=                         ] 

[===========================57.0%=                         ] 

[===========================57.0%=                         ] 

[===========================57.1%=                         ] 

[===========================57.1%=                         ] 

[===========================57.1%=                         ] 

[===========================57.1%=                         ] 

[===========================57.2%=                         ] 

[===========================57.2%=                         ] 

[===========================57.3%=                         ] 

[===========================57.4%=                         ] 

[===========================57.4%=                         ] 

[===========================57.4%=                         ] 

[===========================57.5%=                         ] 

[===========================57.7%=                         ] 

[===========================57.8%=                         ] 

[===========================58.0%=                         ] 

[===========================58.0%=                         ] 

[===========================58.1%=                         ] 

[===========================58.3%=                         ] 

[===========================58.3%=                         ] 

[===========================58.3%=                         ] 

[===========================58.4%=                         ] 

[===========================58.7%==                        ] 

[===========================59.7%==                        ] 

[===========================62.3%====                      ] 

[===========================84.9%=================         ] 

[==========================100.0%==========================] 
La operaci¢n de restauraci¢n finaliz¢ correctamente.
La operaci¢n se complet¢ correctamente.


========= Final de CMD: =========


========= sfc /scannow =========



Iniciando examen en el sistema. Este proceso tardará algún tiempo.



Iniciando la fase de comprobación del examen del sistema.


Se completó la comprobación de 0%.
Se completó la comprobación de 1%.
Se completó la comprobación de 1%.
Se completó la comprobación de 2%.
Se completó la comprobación de 2%.
Se completó la comprobación de 3%.
Se completó la comprobación de 3%.
Se completó la comprobación de 4%.
Se completó la comprobación de 5%.
Se completó la comprobación de 5%.
Se completó la comprobación de 6%.
Se completó la comprobación de 6%.
Se completó la comprobación de 7%.
Se completó la comprobación de 7%.
Se completó la comprobación de 8%.
Se completó la comprobación de 8%.
Se completó la comprobación de 9%.
Se completó la comprobación de 10%.
Se completó la comprobación de 10%.
Se completó la comprobación de 11%.
Se completó la comprobación de 11%.
Se completó la comprobación de 12%.
Se completó la comprobación de 12%.
Se completó la comprobación de 13%.
Se completó la comprobación de 14%.
Se completó la comprobación de 14%.
Se completó la comprobación de 15%.
Se completó la comprobación de 15%.
Se completó la comprobación de 16%.
Se completó la comprobación de 16%.
Se completó la comprobación de 17%.
Se completó la comprobación de 17%.
Se completó la comprobación de 18%.
Se completó la comprobación de 19%.
Se completó la comprobación de 19%.
Se completó la comprobación de 20%.
Se completó la comprobación de 20%.
Se completó la comprobación de 21%.
Se completó la comprobación de 21%.
Se completó la comprobación de 22%.
Se completó la comprobación de 23%.
Se completó la comprobación de 23%.
Se completó la comprobación de 24%.
Se completó la comprobación de 24%.
Se completó la comprobación de 25%.
Se completó la comprobación de 25%.
Se completó la comprobación de 26%.
Se completó la comprobación de 26%.
Se completó la comprobación de 27%.
Se completó la comprobación de 28%.
Se completó la comprobación de 28%.
Se completó la comprobación de 29%.
Se completó la comprobación de 29%.
Se completó la comprobación de 30%.
Se completó la comprobación de 30%.
Se completó la comprobación de 31%.
Se completó la comprobación de 31%.
Se completó la comprobación de 32%.
Se completó la comprobación de 33%.
Se completó la comprobación de 33%.
Se completó la comprobación de 34%.
Se completó la comprobación de 34%.
Se completó la comprobación de 35%.
Se completó la comprobación de 35%.
Se completó la comprobación de 36%.
Se completó la comprobación de 37%.
Se completó la comprobación de 37%.
Se completó la comprobación de 38%.
Se completó la comprobación de 38%.
Se completó la comprobación de 39%.
Se completó la comprobación de 39%.
Se completó la comprobación de 40%.
Se completó la comprobación de 40%.
Se completó la comprobación de 41%.
Se completó la comprobación de 42%.
Se completó la comprobación de 42%.
Se completó la comprobación de 43%.
Se completó la comprobación de 43%.
Se completó la comprobación de 44%.
Se completó la comprobación de 44%.
Se completó la comprobación de 45%.
Se completó la comprobación de 46%.
Se completó la comprobación de 46%.
Se completó la comprobación de 47%.
Se completó la comprobación de 47%.
Se completó la comprobación de 48%.
Se completó la comprobación de 48%.
Se completó la comprobación de 49%.
Se completó la comprobación de 49%.
Se completó la comprobación de 50%.
Se completó la comprobación de 51%.
Se completó la comprobación de 51%.
Se completó la comprobación de 52%.
Se completó la comprobación de 52%.
Se completó la comprobación de 53%.
Se completó la comprobación de 53%.
Se completó la comprobación de 54%.
Se completó la comprobación de 55%.
Se completó la comprobación de 55%.
Se completó la comprobación de 56%.
Se completó la comprobación de 56%.
Se completó la comprobación de 57%.
Se completó la comprobación de 57%.
Se completó la comprobación de 58%.
Se completó la comprobación de 58%.
Se completó la comprobación de 59%.
Se completó la comprobación de 60%.
Se completó la comprobación de 60%.
Se completó la comprobación de 61%.
Se completó la comprobación de 61%.
Se completó la comprobación de 62%.
Se completó la comprobación de 62%.
Se completó la comprobación de 63%.
Se completó la comprobación de 63%.
Se completó la comprobación de 64%.
Se completó la comprobación de 65%.
Se completó la comprobación de 65%.
Se completó la comprobación de 66%.
Se completó la comprobación de 66%.
Se completó la comprobación de 67%.
Se completó la comprobación de 67%.
Se completó la comprobación de 68%.
Se completó la comprobación de 69%.
Se completó la comprobación de 69%.
Se completó la comprobación de 70%.
Se completó la comprobación de 70%.
Se completó la comprobación de 71%.
Se completó la comprobación de 71%.
Se completó la comprobación de 72%.
Se completó la comprobación de 72%.
Se completó la comprobación de 73%.
Se completó la comprobación de 74%.
Se completó la comprobación de 74%.
Se completó la comprobación de 75%.
Se completó la comprobación de 75%.
Se completó la comprobación de 76%.
Se completó la comprobación de 76%.
Se completó la comprobación de 77%.
Se completó la comprobación de 78%.
Se completó la comprobación de 78%.
Se completó la comprobación de 79%.
Se completó la comprobación de 79%.
Se completó la comprobación de 80%.
Se completó la comprobación de 80%.
Se completó la comprobación de 81%.
Se completó la comprobación de 81%.
Se completó la comprobación de 82%.
Se completó la comprobación de 83%.
Se completó la comprobación de 83%.
Se completó la comprobación de 84%.
Se completó la comprobación de 84%.
Se completó la comprobación de 85%.
Se completó la comprobación de 85%.
Se completó la comprobación de 86%.
Se completó la comprobación de 87%.
Se completó la comprobación de 87%.
Se completó la comprobación de 88%.
Se completó la comprobación de 88%.
Se completó la comprobación de 89%.
Se completó la comprobación de 89%.
Se completó la comprobación de 90%.
Se completó la comprobación de 90%.
Se completó la comprobación de 91%.
Se completó la comprobación de 92%.
Se completó la comprobación de 92%.
Se completó la comprobación de 93%.
Se completó la comprobación de 93%.
Se completó la comprobación de 94%.
Se completó la comprobación de 94%.
Se completó la comprobación de 95%.
Se completó la comprobación de 95%.
Se completó la comprobación de 96%.
Se completó la comprobación de 97%.
Se completó la comprobación de 97%.
Se completó la comprobación de 98%.
Se completó la comprobación de 98%.
Se completó la comprobación de 99%.
Se completó la comprobación de 99%.
Se completó la comprobación de 100%.


Protección de recursos de Windows encontró archivos dañados y los reparó correctamente.

Para las reparaciones en línea, los detalles se encuentran en el archivo de registro de CBS ubicado en

windir\Logs\CBS\CBS.log. Por ejemplo, C:\Windows\Logs\CBS\CBS.log. Para las reparaciones

sin conexión, los detalles se encuentran en el archivo de registro que proporciona la marca /OFFLOGFILE.



========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 10 mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 12 mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de red Bluetooth mientras los medios
est‚n desconectados.

Adaptador de Ethernet Ethernet 3:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::2436:896:9f0c:f63b%20
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.56.1
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 

Adaptador de LAN inal mbrica Conexi¢n de  rea local* 10:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de LAN inal mbrica Conexi¢n de  rea local* 12:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de Ethernet Ethernet:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::a37e:df77:b837:6cf4%9
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.190.1
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 

Adaptador de Ethernet Ethernet 2:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   V¡nculo: direcci¢n IPv6 local. . . : fe80::c913:3902:b541:18f8%7
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.72.1
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 

Adaptador de LAN inal mbrica Wi-Fi:

   Sufijo DNS espec¡fico para la conexi¢n. . : home
   V¡nculo: direcci¢n IPv6 local. . . : fe80::4eee:9cd7:8d61:a5cb%15
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.1.16
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.1.1

Adaptador de Ethernet Conexi¢n de red Bluetooth:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 


========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

0 out of 0 jobs canceled.


========= Final de CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.



========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar



========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar



========= Final de CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.



========= Final de CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.



========= Final de CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-2910916927-680416450-2052498628-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

FlushDNS => completado
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20173146 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 375623525 B
Windows/system/drivers => 1707925 B
Edge => 0 B
Chrome => 79878771 B
Brave => 6708618 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 98900074 B
systemprofile32 => 98900074 B
LocalService => 98900074 B
NetworkService => 98901254 B
Toni => 381414573 B

RecycleBin => 800553 B
EmptyTemp: => 1.2 GB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 20:44:36 ====

PROBLEMA SOLUCIONADO!!!

No se que hemos hecho realmente en el dispositivo, pero al reiniciar desapareció por completo esa extensión en brave. Probé a desinstalar con REVO y volver a instalar y no aparece por ningún lado.

Mil gracias por su ayuda!!! Por favor agradecería me diga donde podía estar el problema!

Toni

1 me gusta

Hola @tonilg

Adwcleaner hizo el trabajo sucio

***** [ Registry ] *****

Deleted HKCU\Software\Lavasoft\Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion

y con farbar solo elimine lo que quedaba

CHR HKLM-x32...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp]

y repare algunas otras cosas del pc.

Vamos a eliminar las herramientas utilizadas.

Descarga KrPm

  • Ejecútala, acepta el declaimer.
  • Asegurate de que solo esten marcadas las opciones:
    • Delete Tools/ Eliminar herramientas
    • Delete now/Eliminar ahora (área de eliminar cuarentenas).
  • Presiona en Run / Ejecutar

Me comentas

Saludos

Todo realizado como me ha indicado. Presento nuevo log:

# Run at 10/04/2025 0:42:20
# KpRm (Kernel-panik) version 2.18.0
# Website https://kernel-panik.me/tool/kprm/
# Run by Toni from C:\Users\Toni\Downloads
# Computer Name: DESKTOP-ATH1JVF
# OS: Windows 10 X64 (19045) (10.0.19045.5737) 
# Number of passes: 2

- Checked options -

    ~ Delete Tools
    ~ Delete Quarantines

- Delete Tools -


  ## AdwCleaner
     [OK] C:\Users\Toni\Downloads\adwcleaner.exe deleted
     [OK] C:\AdwCleaner deleted

  ## FRST
     [OK] C:\Users\Toni\Desktop\Fixlog.txt deleted
     [OK] C:\Users\Toni\Desktop\FRST64.exe deleted
     [OK] C:\Users\Toni\Desktop\Informes_Brave\R2\Addition.txt deleted
     [OK] C:\Users\Toni\Desktop\Informes_Brave\R2\FRST.txt deleted
     [OK] C:\FRST deleted

  ## FMRS
     [OK] C:\Users\Toni\Desktop\Informes_Brave\R1\FMRS_2025_04_09__19_24_52.txt deleted
     [OK] C:\Users\Toni\Downloads\FMRS.exe deleted

  ## Kaspersky Virus Removal Tool
     [OK] C:\KVRT2020_Data deleted

  ## ZHP Tools
     [OK] C:\Users\Toni\AppData\Local\ZHP deleted
     [OK] HKCU\SOFTWARE\ZHP deleted

  ## ZHPCleaner
     [OK] C:\Users\Toni\Desktop\ZHPCleaner.lnk deleted
     [OK] C:\Users\Toni\Desktop\Informes_Brave\R1\ZHPCleaner (R).txt deleted
     [OK] C:\Users\Toni\Desktop\Informes_Brave\R1\ZHPCleaner (S).txt deleted
     [OK] C:\Users\Toni\Downloads\ZHPCleaner.exe deleted

- Other Lines -


  ## Quarantines never deleted
    ~ C:\Users\Toni\AppData\Roaming\ZHP (ZHP)

-- KPRM finished in 7.15s --

Hola @tonilg

Me confirmas si esta todo ok para dar el tema por solucionado

Saludos

Hola @DanielG , en principio todo ok, si hubiese algún problema me vuelvo a poner en contacto.

1 me gusta

Hola @tonilg

Gracias por confiar en InfoSpyware | Ayuda e información de Malwares en español.

Te invito a leer algunas noticias del mundo del software Recientes Foro de News - ForoSpyware

Y también a responder una encuesta que hice recientemente [Encuesta] Que versión de Windows utilizas - Bienvenidos - ForoSpyware

Un placer ayudarte

Saludos

Este tema se cerró automáticamente 2 días después de la última publicación. No se permiten nuevas respuestas.