Desconozco el uso que le daba el antiguo propietario, pero tengo una vaga idea de que se dedicaba a reparar telefonos y por los archivos que tenia en todo el equipo. Actualmente me muestra la carpeta vacía, pero es cierto que está ocupando 1 GB
Hola buenas @Vikenz
Ya he revisado así por encima de nuevo tu tema con todo lo nuevo que has traído.
Los siguientes días no te podré dar continuidad, ya que dispondré de MUY poco tiempo (literalmente 0 tiempo).
P.D.: A partir del sábado día 22 de Junio podré seguir con el tema. Seguiremos con tu caso hasta el final. Hasta entonces, que vaya
Recuérdame en que te dé respuesta este Sábado. De todas formas voy a poner un reflote automático de este tema para el Sábado, así el sistema me avisará automáticamente y seguro que no se me pasará por alto.
Hola, buenas @Vikenz
Primero de todo mis disculpas por no haber dicho nada. Digamos que estos días he tenido unos contratiempos importantes que aún no están resueltos, pero bueno, vamos allá.
Ok pues debido a su procedencia formatea esta unidad E.
Respecto al error que te da de descargar el Dr Web CureIt. Prueba ahora a descargarlo de:
Está totalmente operativo y no debería darte ningún problema. Lo he probado ahora mismo y funciona correctamente.
Me comentas.
Ya realice el formateo
Reporte Dr Web
Start curing
C:\Program Files\IObit\IObit Uninstaller\IUMenuRight.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\drivers\win10_x86\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll - quarantined
C:\program files\iobit\iobit uninstaller\iuservice.exe - quarantined
C:\program files\iobit\iobit uninstaller\uninstallmonitor.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\AutoUpdate.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\AUpdate.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\CrRestore.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\datastate.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\DSPut.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Feedback.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\filectl.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\cbtntips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\DPMRCTips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\DataRecoveryTips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\HdProm.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\InfoHelp.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\IObitDownloader.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\IUProtip.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\libcrypto-1_1.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\libssl-1_1.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\madbasic_.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\maddisAsm_.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\madexcept_.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\NoteIcon.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\PluginHelper.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\PPUninstaller.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\iush.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\ProductNews2.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\ProductStatistics3.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\ProductStat3.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\repstp.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\RegisterCom.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\rtl120.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\ScreenShot.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\SendBugReportNew.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\SpecUTool.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\rgfpctl.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\sqlite3.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\forcedelctl.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\SysRest.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\unins000.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\vclx120.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\UninstallPromote.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\webres.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\Backup\AutoUpdate.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Backup\RegisterCom.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\vcl120.bpl - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win10_amd64\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win10_ia64\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_amd64\IURegistryFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_amd64\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_amd64\IUForceDelete.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_amd64\IUFileFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_ia64\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_ia64\IUFileFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_ia64\IUForceDelete.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_ia64\IURegistryFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_x86\IUFileFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_x86\IUForceDelete.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_x86\IUProcessFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Drivers\win7_x86\IURegistryFilter.sys - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\IEasyPop.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\IEDRCTips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\imsctadn.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\mfap.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\PubPlatform.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\PDFTRTips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\sqlite3.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\Pub\SafeTips.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\TaskbarPin\ICONPIN64.exe - quarantined
C:\Program Files\IObit\IObit Uninstaller\TaskbarPin\ICONPIN32.dll - quarantined
C:\Program Files\IObit\IObit Uninstaller\TaskbarPin\ICONPIN32.exe - quarantined
C:\Temp\flashtool- - quarantined
Total 77949648772 bytes in 410688 files scanned (561110 objects)
Total 410225 files (560509 objects) are clean
Total 74 files (79 objects) are infected
Total 74 files are neutralized
Total 518 files (519 objects) are raised error condition
Scan time is 05:25:37.714
Dr.Web Scanner SE for Windows v9.1.6.04261
(c) Doctor Web, Ltd., 1992-2021
Scan session started 2024/06/26 00:33:35
Module location : C:\Users\washa\AppData\Local\Temp\C2B7FC66-6919C132-6C220202-225EEF42\
OPTION [Automatic Apply Actions] NO
OPTION [Turn Off Computer After Scan] NO
OPTION [Use Sound Alerts] NO
OPTION [Block Network] NO
OPTION [Protect Process] NO
OPTION [Protect Raw Disk] NO
Time from server is: 2024-06-26 08:33:59
Using language: "Spanish (Español)"
Available instances: 4
Instances used: 4
Platform: Windows 10 Professional x86 (Build 19045)
API Version: 2.2
Scanning Engine version:
Virus Finding Engine version:
Total 326 virus bases are loaded from C:\Users\washa\AppData\Local\Temp\C2B7FC66-6919C132-6C220202-225EEF42\
02vyBvWoU8z 12.0 2a0f10c552d831b2a0a0556532b576a261df35e6 2016/09/04 23:14:39 16956 records - OK
04bcwCMbd 12.0 f9c00f5955db99104a47c6f768181db1079771f4 2020/07/06 01:11:31 9931 records - OK
0AZP8dVJ9ukT 12.0 609d1a91e891de719111d1c29c9f89182eea100f 2019/03/26 09:05:21 8775 records - OK
0H1iojQC2W 12.0 495b81e14c4f1318068b5001403fb9fd136985c6 2016/09/25 23:12:20 25345 records - OK
0I57HA1N8OZ28 12.0 ddcaf48cbf072b84460a1b819d689016c591bded 2021/11/08 01:21:28 17986 records - OK
0URriOOWiBlCWXR 12.0 ccd75c1cc7bc8a989572e9f6396016555729f516 2020/07/20 01:15:58 21215 records - OK
0USt58cgotWWu 12.0 a216f856d29ad5e51041d12c6160485dbff6981f 2019/03/17 23:14:25 45042 records - OK
0VnLXkeN3NXcu0Q 12.0 29c8cfff53123a19e74013a3055a203061d011f5 2022/07/18 01:21:47 33409 records - OK
1Bxo2Xay8oVn 12.0 042c08946ecb9e4db04db5859125805216dbf572 2017/12/31 23:14:18 13711 records - OK
1HjamFXh 12.0 d566bbea81debc911c254684ef9f570d2ee1ae23 2023/06/06 03:09:58 2585 records - OK
1knwruR0OA 12.0 a4b019ac8f4c1d7fd653a7dc24d692b699848c92 2020/06/22 01:12:01 22016 records - OK
1YPhOQ1kHOJAFEh 12.0 9100091a42f0a02d1849eca80632cf80714c48df 2017/07/30 23:31:07 5550 records - OK
29yHSRmoHNdg 12.0 001b7d3b05d861db8cd7b03e3a157bee7b5431c8 2020/06/08 01:18:12 23732 records - OK
2DRVqPC7 12.0 69cdea67688545a86c54afbd3feb2358b1165937 2022/12/19 01:21:42 17001 records - OK
2rVbTFe3I 12.0 c52fea6db05e0c7742146311e23beb749386a197 2023/10/23 01:21:03 28559 records - OK
2vHFEGiUpITVEms 12.0 e271c6e75572a33ce37071e6e5ec404c0b427200 2017/06/04 23:16:13 8115 records - OK
2xjKK8cyGFd 12.0 fbac5a4ebcf8cd0df572db3f146d2d773f76544b 2017/06/11 23:13:12 8325 records - OK
3AoJZxal2ZZ 12.0 d991c1993b78fb432c990771f68b37d8cd8d6614 2018/10/21 23:17:53 28026 records - OK
3ZqWx28C 12.0 89e748a7f10767c068639bae8e2a6cddc43f3cc1 2017/12/10 23:11:57 16502 records - OK
4lduQQO5PV 12.0 4cc36eaec80d1c585ac81df84777b91aee09adc7 2019/11/11 01:19:37 37517 records - OK
4muQKwYn6m 12.0 49d8c46aa13879ff88c32f4d207ba8e39f0ef8bd 2017/10/29 23:15:55 8604 records - OK
4OYW3VSht 12.0 022b324bb9a473d5eef24bfea5b8f4613aa0193f 2021/05/24 01:24:05 76551 records - OK
4PAhi3dkgc 12.0 e2950baa28d19e87a34b5d96f7539f9ae76c9749 2016/07/31 23:13:02 14357 records - OK
4PXbPBD49 12.0 bad9e30babf0ddf417d81c6e8d8a007d863b0970 2024/06/25 15:39:34 3552 records - OK
4u1doIHpp 12.0 6f6d0503a5d201d741788de8a1937881dc6afaeb 2021/12/20 01:26:41 34526 records - OK
52GXOYRS 12.0 0d68fbd4edac958fbc2eecbc5bdb7154496b1a94 2017/10/16 23:17:29 11687 records - OK
5czEWngwS 12.0 f9c7729fb5528283ea98034161af66a1398f6dc4 2018/12/30 23:12:43 12392 records - OK
5edWshHtyJ 12.0 eb20693a8638cd465574bc310e50b414a4867496 2021/07/20 04:17:49 2816 records - OK
5jFuTy9YMWQys 12.0 cd5b2ec4826ab4faed0d0f484890a0286304f4ab 2018/12/16 23:32:11 8857 records - OK
5QPcITUs 12.0 758d35aee728b1fa1546c724c6939dd38ca2b61e 2016/03/31 19:00:00 128578 records - OK
5UtUCCSi 12.0 011fbd63477aa6369ecf8a368928a4c5bef6950c 2016/03/31 23:00:00 775706 records - OK
64NZKAZBe 12.0 aa5eb295ef34166d1f92098a0ac95cc429bd25c7 2023/02/27 01:19:00 26637 records - OK
6ANt66LJGuwG 12.0 b1b5dc07129ae9b15a1f6e56a2dea9c536c7c319 2017/08/06 23:12:25 14196 records - OK
6Nqj1HfklVlR4dl 12.0 4d546d858c5246bfcff882933d76a4b674331e3e 2023/10/09 01:19:17 31082 records - OK
6qnyUvk9Qrw2t9h 12.0 817f3e4e2a79559512a3715da76ade6cad5b52c1 2016/10/30 23:15:47 12793 records - OK
75trM0iLe6K 12.0 daf9c7ce563242a36385e05be2fdca498c8bc9e9 2018/02/04 23:16:28 12627 records - OK
7Gvzjhld 12.0 4bb0727c3695f67951d701dc28abb20b2824ca6f 2024/05/20 01:15:24 28320 records - OK
7z6dNhTH9S 12.0 7ac7e4540dad1b013dc19f838e818430d811228b 2019/04/01 01:13:40 25151 records - OK
82zhDghUxX 12.0 30566b964b4c73230b2eef76dac5f40d2c59aba8 2019/07/22 01:12:39 46163 records - OK
8DMdx1x7T4SaIr 12.0 a24bc01c97ebd6d7e9563d979c40b8eb977ce90e 2016/05/09 03:16:10 21130 records - OK
97whXV3wzas8 12.0 dfdab47d76c035dc03fa4e6cee83cef028bc1ab8 2017/01/23 11:40:32 16090 records - OK
97Yk547C 12.0 f6284152e32e06f396f2eea98297da0356307fe5 2022/11/21 01:23:13 21796 records - OK
9cHHorX9g 12.0 3c2a0334661647121916dbaef1ade831c7f83f3d 2016/08/14 23:12:00 14866 records - OK
9X6KFulp7V4 12.0 5ad23c90de5b123d2484637b621294a72b7a3c80 2021/09/13 01:22:00 112920 records - OK
9z2HO2g7E 12.0 9a88df3fe700e2b0ec19e229478c8aade71f5f47 2023/10/31 03:02:55 2275 records - OK
a2JVdyVdcJTL 12.0 0ef1c2244c1fb3e5e833c94c6613bcd0bdbc5ea1 2022/09/26 01:25:33 21832 records - OK
a89z8ltMn4kVToV 12.0 bffecdc5522ad017347c36e670c4a9452372ac29 2020/10/26 01:20:50 52629 records - OK
AcFvDe640xY 12.0 c280d05b5cad77acebfaebbb81a1361d68175161 2016/08/21 23:14:54 18482 records - OK
aDVHsH8ksiGpm 12.0 4313a75a6db1fe0106bb050ce93b48fdbfbd2a44 2016/07/03 23:11:23 9387 records - OK
AFUoaEd3QaDBd 12.0 402e374186e63f143da322d346edebb977b7008d 2020/01/15 04:28:06 178 records - OK
AKI8lxps 12.0 e8da533b8118de98ceabd45a8e1dbbc37e71f49e 2018/01/14 23:12:41 13079 records - OK
AlUwbQWu4QB 12.0 59248475b63b8d06a7e5f270d720e7d36b3cdeab 2024/02/26 01:13:58 60017 records - OK
aN7PAxic9 12.0 70db4b0ee1dea881ad89deeecddc310003095f22 2018/07/15 23:35:03 8787 records - OK
APjUsirm 12.0 3d0e1b42c21643d3a02400deb5bdb147a593edb0 2017/09/03 23:15:06 12965 records - OK
AwPFf3Fhd2f 12.0 d67f8610b1af799d62376e4a6a6d8ad3e756d4a0 2017/04/30 23:10:35 9507 records - OK
AYzESa6l 12.0 0ed8d983f3e40d48bd632df4968f2b60621f3f4c 2021/01/19 03:35:53 4242 records - OK
b3Xcm5Wo 12.0 4b7e22eeac42ccc529c841ec55ebbaddfd421e84 2019/01/06 23:10:23 6029 records - OK
B4wo7HjLPg 12.0 2a642786d5e1bccffce582dde46d7f16c8352b42 2021/06/07 01:23:41 28573 records - OK
B5xZhUa74bZi5 12.0 c9fe925445c7677c1595d79ae057e7673e03ee61 2020/07/21 04:41:44 2191 records - OK
b96PzmtZUS 12.0 07ccfcc30cbab0ea2df95af5ca98dfe1c2102290 2023/03/27 01:25:52 33476 records - OK
bAy8OWhsLtER 12.0 ed385fdbca41d914c65015e95f8f983c9ef56954 2016/03/31 20:00:00 47996 records - OK
BB42BJyyK 12.0 2719641465af8b73f49668d408aeb844d59850c7 2017/09/24 23:14:15 11599 records - OK
BEltdnYa 12.0 3170c677b01016fc13b0c004644d62d78c09eaac 2017/01/29 23:06:17 8650 records - OK
BHLBZ2fucwswk 12.0 839037a47ad114b9848f0a0f88d8fd556748326e 2024/06/03 01:14:35 23557 records - OK
bHWY03PX2iKL 12.0 700b6f7d1408c598115241f87357bf475b425777 2017/01/15 23:18:08 13543 records - OK
BiSV4JVMsY3kCS 12.0 883017f3bf26b2af92c92ec60b1bab8f73b94198 2018/07/15 23:17:02 27733 records - OK
BjjKgrvWHyZb 12.0 ad03fc6f417adbd7aad323556d1633b613011669 2019/10/28 01:19:33 49024 records - OK
Bt7fJtY2g3rP 12.0 79baef188b05ede082b73a90fb2202cab77a0ae8 2024/06/25 01:05:09 51827 records - OK
bx6bRltADIJ 12.0 8788e2615c695ae15a822889f42fd2e2590a280e 2023/12/04 01:09:21 31808 records - OK
BZZ90H059QfaQF 12.0 718c4781aac156703df759cee881d845f0449787 2017/12/17 23:17:34 10540 records - OK
c0Ly8E4K4a5BDEw 12.0 d19d82907320647b35bd1b3c7ea43163e8350f87 2018/12/16 23:18:07 19857 records - OK
c0y5rSbd8 12.0 9ab1d651eabb636d8ebc753ee86d39e7ae84d975 2023/04/24 01:23:52 21167 records - OK
c5CuOck9pxx 12.0 bb507a05287a407c2674c4cc7c3231ed7c0afdf2 2024/04/22 01:14:05 36319 records - OK
C5MY8hK4LVIaXD 12.0 4e23a9ce3cc0bcf66d43d57659d89c701ef70dc8 2016/07/24 23:13:52 12575 records - OK
cerfM37wpxkY 12.0 1a57409bbb366b367f591d2079f881525636523a 2016/06/05 23:14:26 15850 records - OK
ckgYZ2RPkqSjU18 12.0 a0bd2eb9ed82073ef9efbdef1a30cf596aa50acd 2019/07/17 14:33:56 9231 records - OK
cKoO0zqk 12.0 b7d493aba20d1bca0ff9099c36ffc31fd609cdc8 2021/11/22 01:24:34 50035 records - OK
Cnv9CFv1 12.0 2b26520be32842f1c31e51f694e295ee95cf4cd3 2020/10/12 01:16:09 26110 records - OK
coUbjeQbjFv 12.0 a4a7252b9f33765acfc777e9f4f41a1affa53e98 2016/09/18 23:17:28 12920 records - OK
cq9dYNvXqT 12.0 e9238da7ef5087e6291835af42c53cd41b0f5001 2022/05/03 02:53:31 4311 records - OK
cuAl004o 12.0 736ceb335c656c5064c90f8ce0d4262952f48252 2019/02/17 23:12:36 24876 records - OK
cUCcnyTw 12.0 94c1d148a2e0dc873d6517c36dfdcb275f878c62 2016/12/04 23:12:46 16062 records - OK
cveLtCGR 12.0 65638f24c8884d65f140d96e160986c8b80ff8d4 2020/02/26 19:02:05 7061 records - OK
CVeX6zW3H7kuGgF 12.0 29f6f6f79e6ea788cde56859f1d9c9b97a494a21 2021/09/21 03:01:47 3663 records - OK
Cx6EDSMpI 12.0 3596898a27b015ee0f8825832ca700599cff6bcc 2016/11/27 23:16:29 21672 records - OK
D4KvxiQ7qF 12.0 824f5dd8c9f916ad0bc8c4a79f676c110b7fe2fa 2022/10/24 01:21:00 21845 records - OK
DAXUjIMbIL 12.0 01d086ee1c790ded80398fb724c4fdfcdb8f8cd6 2016/08/28 23:15:28 14858 records - OK
dCLherQd 12.0 c569442b72ff7a616f3d49dea57c884aa7749f27 2021/08/16 01:26:45 55604 records - OK
dl1NO1gPbLFaa 12.0 c0386fd4f8a982bef0667222ea3357b78fc274bc 2017/07/23 23:16:35 12176 records - OK
dlvGtBuCXTJuD 12.0 4e74f849da4f52e78a538277404f59921ce3ba76 2018/01/07 23:16:57 6198 records - OK
DNd8n44b 12.0 aa46602ddaf7a623e835a93b8eab128b6bac0823 2016/08/07 23:16:03 14048 records - OK
do9GHcDer 12.0 5e9af78db27589d31bc20da9b829fa3d42941b4d 2023/01/02 01:28:52 13189 records - OK
DqDBvY2cJgp9y 12.0 857e319379bd64783132c5720caac0a7d0a3cb58 2017/10/08 23:16:08 11157 records - OK
dT9TKJjWu 12.0 c51f27ed36e7b6c018bdfce109b783bc357e1da7 2017/04/02 23:14:36 28503 records - OK
dvYjnwTES 12.0 418f07b1e11b9b47cf5fc54eedcf4f636ac1e913 2020/09/08 04:44:47 2736 records - OK
DXR1MDNZezIm 12.0 f47e3def4372bf24eca9bc8dfa47d0c11ea403cd 2017/02/12 23:13:06 9893 records - OK
e9XyYLHC4s5IKG 12.0 42bd25dc83e3a7428855a21bfd635c5ec387d853 2022/01/17 01:24:18 53917 records - OK
Ejs6XQunL7 12.0 e64b2f7eafea670fb4b45b36281dc66a08446863 2016/11/13 23:12:38 14696 records - OK
EJU50ZZPu 12.0 2a1de5a9115c4852931b0b51411941dd87fea7c3 2024/06/25 15:39:49 221 records - OK
ekU5idU74KKtm 12.0 805175b450fb719bcbe7d78d055187df3f0a1758 2019/08/06 08:40:53 3816 records - OK
Em9sN27i6 12.0 5108a9a38eb8dff2dec545e4ad2d5cb4aeda4697 2019/10/22 04:34:53 3406 records - OK
epxi02eE1r8 12.0 aa63e222155ab7ba91f088efb55690bcce457e41 2021/08/30 01:22:27 51445 records - OK
ERxx1Jssk4NvX 12.0 d108fb1658e2e0abe30e44bf0622ab1070b7957c 2019/01/20 23:12:56 16682 records - OK
eZRU9q7iXp96 12.0 0f608eb3707608ad70d8125e3d430ce5d3e34312 2023/09/25 01:20:23 45161 records - OK
f5kLEEY7y8vnnE0 12.0 d01ef770639796561516914c4d9291e675b0560b 2020/11/23 01:16:47 114247 records - OK
F90AJl32p2gE 12.0 2c53a50f373e7f467b72d15834cdb9a8d57c9078 2019/10/01 03:48:28 2550 records - OK
FdeJsnq3pRdUgD 12.0 0cf82eb0ca872d7f00cb43fd7dfa9de583ebf67d 2022/06/27 01:26:03 143821 records - OK
FHv7mlR4 12.0 5cc8e5b815c71ad4c76d5892f9d1558500d4e256 2016/04/01 01:00:00 489620 records - OK
fkg2k7oj 12.0 88f9e790f9306019805d891e476b3766a4c5b4c4 2018/10/07 23:19:29 28568 records - OK
fLcd5hOdAcCw5 12.0 14dafb7038ee3ca3fdd49902e684a33162f8c586 2021/01/18 01:22:38 10468 records - OK
fQRzjVN1L7p 12.0 711ff60f23bf18c5ecda2e10891867b3743a5112 2017/09/10 23:15:20 10046 records - OK
frk7TF3JsavEp 12.0 bee8b6e0e3713fbf544956d673fa913b9d0f5187 2017/01/01 23:17:54 12267 records - OK
frvL1JpK7GypD3R 12.0 6b3a09609e5c1e3f6dc170838a31f46410301b44 2017/03/05 23:12:47 7186 records - OK
fuVDgndkE 12.0 4529fc118278232e40aa4b9487e44ff896849b36 2021/01/04 01:19:35 15960 records - OK
FyijdMU8qG4PCv 12.0 6baf9184f6fd18cb7f8dc07b73a749eb7c9e3c29 2020/06/09 03:52:18 2404 records - OK
g0PWReNV 12.0 2d0344aa6a3fba850bc1687b6413b372871962b0 2017/12/24 23:15:22 17896 records - OK
G2LeaocI 12.0 2c6e84bd7b92bd872dbe8440f1f4789273c314ee 2017/07/30 23:11:05 11516 records - OK
G6rewIE5MaQ6hJE 12.0 ea6aa0431912be5adf4aff3d292680826d7c23ab 2018/02/25 23:17:33 8833 records - OK
g6WQO7XuRWw32d 12.0 c8fc2a35dcbe2a7588daed29db1fc4b4edd3b525 2023/09/05 03:35:55 2522 records - OK
g7zswvw9vab 12.0 c2977571dea15b5fbd63fb230430b00db0e1333c 2019/05/27 01:15:52 22930 records - OK
GGhpGTos6d 12.0 cb201ad4a8cffffce4634af857c165e0e9c80b1d 2017/04/23 23:16:37 9860 records - OK
gn4VBWJ4SCJwayc 12.0 23df4cbf831338dfb2126a57d2f64845fa10e869 2016/10/09 23:13:50 17266 records - OK
GOngtV16l 12.0 b80a4f3321f62dd99e389d0a2c2595d77bab1ecc 2024/03/25 01:18:13 3242 records - OK
gpcHVcCN 12.0 7882320117e423559b2f58685b904fbded1c213c 2016/09/11 23:11:41 18447 records - OK
GwN6BFRd8pv 12.0 fe6b0f435b5664eece0637b4ddc8ff31d45be3e3 2019/12/09 01:18:56 32389 records - OK
h2ZPnPQv5I0 12.0 a775c3461304a050a207507dd4a88a6c04577aae 2020/11/17 04:14:49 2098 records - OK
h3Oghi3xrVsO6 12.0 b60347092a84ee121acd7b1b2fbee5f6947b047a 2022/02/08 03:12:15 3065 records - OK
h5pv55DkRMTBBl4 12.0 8f418011ac4a178b812f50d3ececce16db0f10f6 2018/11/22 04:42:45 38775 records - OK
hBfVByNWbMyJ 12.0 ddfab613f7745f0116c7feb94013d572c5b9ce68 2017/05/07 23:15:34 10566 records - OK
hdHzUvsl 12.0 88ce31b5748c7ea1e780ab3c7ad88f2580424bad 2020/12/07 01:20:41 39204 records - OK
hFLROLz8WMqUM 12.0 42f9119206b741898ca117172c3bee7ded468360 2017/11/12 23:16:43 7739 records - OK
HLBS0GfmGT3tiTn 12.0 7d5df13bfc2f0e86c85271891cc27cf3022d65e4 2024/05/06 01:10:20 41141 records - OK
hlXGtGnNGV 12.0 d78eec6858bfff32d9422c45727741bcb122a845 2017/11/26 23:16:03 24762 records - OK
HTB5RSiB8 12.0 cbb27c4a92f6d08cbad26c742cfa77bc55aa0680 2020/04/27 01:17:54 43316 records - OK
HuiCQqcuNja 12.0 557dad93f0d57ba57e083199d57b56995be40413 2017/06/25 23:14:11 6495 records - OK
Hw1QUITh 12.0 feb7aaf5cc25ae8b76aa58ce4557b0c329d1ff15 2023/07/03 01:23:52 22802 records - OK
hXhRzRDV 12.0 d91f82046c816bb9a3ca2e9e4fc9bf1d705768ac 2016/09/25 23:31:18 6603 records - OK
HxIJXXMHHlxXla 12.0 4f0e859735afdf855160e9f538936663db7eabad 2017/07/09 23:13:30 8464 records - OK
IDAItpOcc 12.0 5eba6f4f4502f1dce99344bd74279ea65b01edae 2016/03/31 22:00:00 955227 records - OK
iPrjWCqmuaKL 12.0 5b2d86b34e2d7511a3f11e9067c55c2a3f811335 2023/01/16 01:18:52 11339 records - OK
isZxuXR7G3I 12.0 3ee767c0b0e9df0a07e0ffd90e908f3af0ef3d59 2018/06/03 23:16:31 21001 records - OK
IvGy2QbK 12.0 8cc6f9b6925b9126207597c52718ca9a0fcc2d0c 2018/04/08 23:13:44 13981 records - OK
iyUl1rTk 12.0 bd9ce6d380d813f029d6fbad1d90f9b647e744d8 2021/02/15 01:23:19 12432 records - OK
j7NJuO4K 12.0 169c26955e664675b7db8f5dd80bd8413c633b8e 2021/08/10 04:05:19 2560 records - OK
jDbfELgqsmt91s 12.0 eb28f908da7941a595c814297f0da37451629c0a 2020/08/03 01:14:36 45910 records - OK
JEnkSdxfIZHm4N 12.0 9be3f6dc892708489008f5900f87b71bebb44252 2024/01/29 01:11:46 96028 records - OK
jNfniUnf8x 12.0 21d65dcd227969e73e50256d1ff007fdb0eeaf56 2023/01/30 01:25:10 16422 records - OK
jnTjqtn6Xd8 12.0 61c09b56078729715bc72a41179c1c1e418f3013 2016/05/22 23:10:39 20038 records - OK
jo2tdNco 12.0 90e0bd26f4586a44d9cca78872dc1588d9f2404d 2018/01/21 23:14:10 6690 records - OK
JUDXjwlAD7CgIcN 12.0 26e33af3b23175718fb63d4ecf40b6c904f0989a 2024/01/16 03:21:53 2415 records - OK
K2OkLpBMn5 12.0 c033c8af3a69f09ada55df87f1b15ff7468c7770 2020/04/13 01:17:29 38889 records - OK
K4D9R4t2HQxm 12.0 cb059d85b024312b25f5ed75bfbd027923c8c217 2016/10/16 23:13:16 18370 records - OK
k7XCZ2gC2OLq4Y 12.0 d3b9f137c0ee3dcdeecd05ed020f0807dbdd1845 2024/06/25 15:38:57 1438 records - OK
k8j1hIFyupJZtL 12.0 ba3796958c3c9120ace2a2e5bafc421890868622 2023/02/14 03:29:17 2433 records - OK
K8KBrVsJ 12.0 459ed2a509ec2cdd769a16d5cc5f304357c373cf 2021/03/02 03:40:59 2574 records - OK
KaYlWdtUPSXCQ 12.0 f3383ca21501220e9abdf5088caaac4ed2450c0f 2019/05/13 01:16:18 28535 records - OK
KceR97h5F2ZGu 12.0 983bfc2bab31dde9bfba175dbfa7640ba4a2dd7a 2022/03/22 02:59:24 3124 records - OK
keAnB8fb 12.0 5c20f1120d8c66db67eae6fca617f3cc6a023e24 2022/03/01 02:57:26 3421 records - OK
KFect0lGV 12.0 d46a3911171c8025fb4f67f51b08a6b1bcebb85a 2018/04/15 23:23:18 5748 records - OK
KGAydE39e0qblQF 12.0 29fe5510ef97600e285b716e38918e1056662b7b 2023/02/13 01:21:03 30027 records - OK
kh81iUwNrs 12.0 8ecdc5990c30e2612b0d7b682f7fb77863806b89 2016/06/26 23:29:38 6325 records - OK
KiAl2wJsbXbK9 12.0 4750970cb0ac8e9aee1d03ebc1359c14d8d57b6c 2023/11/06 01:23:30 38374 records - OK
kiO8fGoLI 12.0 fd1f59e96db2320001c7566e403de01be34292b3 2018/05/20 23:16:55 21110 records - OK
KnYRbDyoVXOdHS 12.0 26bd03f7347b1fd9beedca6724bc308f78a63ea6 2016/12/25 23:16:34 13205 records - OK
KQcjSIPQD8ugU 12.0 b720c8df0a6ee9a4ace184a72ab80d7f3c208afb 2022/08/15 01:22:12 31282 records - OK
kQj0FIUBiL 12.0 2c6a2d101f824d9d1f8d0f5bf50d913738cdf2c0 2017/10/01 23:15:59 12062 records - OK
kQo933fFj5c6 12.0 4bf291615b12df33c6d182e25ac8cc5148022049 2018/12/02 23:16:39 11483 records - OK
La3d4ieSSxNa 12.0 24f863c7366866b2011aebe85e542f695af033fe 2024/03/11 01:08:56 63261 records - OK
LfGD6ncvNU 12.0 bcd20473c4d2eff5695116ddd95f518fbc0edb05 2018/01/28 23:18:38 12461 records - OK
lnhFeGfCLMH 12.0 77650f70d86171bfb4d02a74b03fff13b54cfab4 2022/11/07 01:22:29 21133 records - OK
LNlaL8sFn2xAJ 12.0 4ccb075ccf98d663243dc49ab0c8ab8103b70322 2016/10/02 23:15:59 15148 records - OK
loLi6m66JcTf 12.0 10f1727370510bb1496d9646e30038bdb885aeab 2019/08/19 01:15:51 53276 records - OK
lPDaHjSW 12.0 eb89db09370a2ab570c9f7e3b46c8455930b6e9d 2020/08/04 04:39:44 2682 records - OK
Lq9qGzTkKHC 12.0 cdd100daece2287052915001c5247b046676c70e 2022/06/28 03:23:41 2724 records - OK
LTm1wf57w2IUf 12.0 6233dd6e77b35ca9af5ebe5b54192655dedaa3c4 2016/04/01 02:00:00 337095 records - OK
LtR5Efv7XSvT 12.0 4a95838d6e79ef1a6b5c0baaa6a84cebb99ef2ad 2021/07/05 01:24:27 78956 records - OK
lU9sMrwR 12.0 a792887baa0b44854cc3082313e8037d84ac721b 2024/03/25 01:17:54 48351 records - OK
LWxf2Qk2Kkt 12.0 02477aa89eaef95b0b67ae3109f467a90872c8e9 2022/01/31 01:18:56 13971 records - OK
M4bQER0i5yVQ2 12.0 ab3e73a9600b88cbdf8cb8dc1e727db984eecacd 2023/07/31 01:23:03 21379 records - OK
M4tk8h071RyV 12.0 e26dd92a46290dd381c5d640dce72f6f1c985379 2019/09/02 01:14:45 67852 records - OK
MC9zd81m8dQ 12.0 a79c3b076119dbea0d240fdbd3e94f385ada6222 2019/06/10 09:43:32 41312 records - OK
Mca8bFThdUtEo 12.0 b3474c897e51b7197e7384ee4b404b5e7b5b2871 2021/03/29 01:25:40 68219 records - OK
mHenUqVm3jp3 12.0 790f348ccdc78eeedf9bba444098020b99bb9e53 2022/10/11 03:09:11 2449 records - OK
mrhIKccgt 12.0 0f98d8f6ca8194f03d7b5a59f5ac74ec7778f566 2020/02/03 01:12:16 41921 records - OK
MwEYmTpIIceLnM8 12.0 5611bcf89e2396b99a7f0c092d6004a79488b7c0 2019/12/23 01:18:05 100156 records - OK
MyEfo7GWTsG 12.0 5a2249dab0cc70d124d4c7a3e95eaebe194f7847 2020/04/21 04:28:09 2979 records - OK
n254MQgnK7Q 12.0 99b1b5de1ac3b5ebc128810feebebcd984cec077 2016/11/06 23:17:41 16317 records - OK
N4dZa0EWpIF 12.0 81538fc10da43ef13449a9b765c3cf5a2992c4ec 2022/01/25 03:30:14 3017 records - OK
N7BBiQVixIN 12.0 167df3925843be6cc5dc930332f1bfb97bccda74 2021/08/02 01:23:05 27919 records - OK
n82Y8lnZ5 12.0 aef8246304183bb516b190abe8582401e11a2979 2019/12/27 01:15:23 60276 records - OK
n8wPkX0a1arkM 12.0 9f7e4abadcaf6041043c26b0f780d34866ad1c7a 2016/04/01 03:00:00 939674 records - OK
nAb41zPqhL8 12.0 b117a3794b65d54fb23e8551546cfaa434c3c9e9 2020/11/16 01:33:15 6826 records - OK
NaFImv1vtPAw 12.0 dfe0245455e3ea6b15951a8f99bbc06e9893bd96 2018/04/01 23:16:40 29643 records - OK
Nge50Tl3bUE 12.0 3306f977e38b6bb18350fb49155b027eed74a528 2019/12/11 10:20:06 7434 records - OK
Nol6ALPchnb 12.0 a3f77730e5779caa6feecd89df86103cb83b9e4f 2022/10/11 06:45:28 7432 records - OK
NSBdMa5LHyUO 12.0 d7738aad2a86f6b54ae6079e971fbad13ca33929 2021/03/15 09:40:02 80302 records - OK
NVE9GrLpZFf4OEX 12.0 a658f0cd430dea407784de9d3fe61a128483939a 2018/04/01 23:32:14 9735 records - OK
NWsaHqM8d72LLQ 12.0 bc921d36545f1d208a60088f5c59543ec84dead3 2018/07/01 23:17:26 25925 records - OK
o2cftofhnf3qY 12.0 82b4917e76492e8892b23dd61b03ece542739d2c 2024/02/12 01:14:17 93269 records - OK
oIxe8upthSQ 12.0 0ca85e99a65851b24637aa33b4667f767aae4c07 2019/03/07 00:31:11 739 records - OK
onlhmAlJQCsEMo 12.0 3f9fb7b8f553cce404e0f8131134109660229929 2017/02/05 23:09:26 8482 records - OK
OraIzTsyca 12.0 d8c775ee71c67d7dfce14f066547e104378b5224 2020/03/16 01:12:08 69074 records - OK
OSW2I9ITKB4 12.0 d431284169762f7dcf492274e11f2081987b7bc0 2017/12/03 23:21:45 32102 records - OK
oyaEtP3CE7Vyh 12.0 89273804dd84a27c426f352a40a8091f9444154c 2024/06/25 15:39:06 705 records - OK
OzSK2w56FK8xFz 12.0 a98c1643d55cfe8cccf19977418bbd4452ad1e44 2018/03/04 23:32:19 8716 records - OK
PBRAMXgz88n 12.0 f5ad621d808f482dbeccce3abaefb4408d4a6c53 2017/05/28 23:17:19 27389 records - OK
pccS3iqQyGY1 12.0 410e3c9b2d975df840708926ad981a754574f57b 2017/03/12 23:13:34 14177 records - OK
PnDRMOWzzSF3SOv 12.0 82adf948e42339f1663506b164df1d27c214322d 2017/07/16 23:14:09 11822 records - OK
POdjOhtTVyXJxh 12.0 79d171b46b291307dd5c9c4105814adc6947257b 2018/05/07 07:55:54 41390 records - OK
pqWDUhHb7RRSi 12.0 cc5dc6bf42e1a45f36456e32c2abf11bdafdb93a 2017/10/22 23:24:13 5096 records - OK
PU9jK5YRsVm3hwU 12.0 eb1a2bacbc81df8a5d94e8c83092a05e30bf14d3 2020/05/11 01:17:20 29796 records - OK
pYAQYLRA1UO1 12.0 5a55e0446561df1964117b9a3b8b9399587137df 2024/05/14 01:29:24 2803 records - OK
pZqFSyRC0qwA 12.0 2c3e91aba034735e0a5994ae51c486695b8ba3d3 2016/06/12 23:13:55 13868 records - OK
Q4NrCrNRR8r 12.0 793a3e4650735e5b8671d9bee679c0d8fdce5411 2019/08/05 01:10:57 53552 records - OK
Q4wCRZgPn6oCx 12.0 86bea9e9a5c67b44555da7bad6e34807e5373319 2018/03/04 23:16:41 17534 records - OK
qCaVeGGKawg 12.0 1e507094aaba4659c79ff32619721df6f6c9ad77 2019/09/16 01:13:57 74453 records - OK
Qjpml2rNsL4D 12.0 6b6d4a1739ae9e895b118939f3ab178c1fdbd00f 2019/09/03 03:59:27 3001 records - OK
qtpEMgwzJf0y 12.0 aa4c4d4b966a51b4eaed9b5de4109869cca01105 2020/01/20 01:15:58 57391 records - OK
RFM2cj5UE 12.0 8bd68e58378df7a4da42bc5d05ecbf2d1d973bf4 2019/04/15 01:09:49 22799 records - OK
rhG1yMvYza 12.0 9ac20da484c3bfbfc58bb79ad3f377177fc2491f 2019/01/27 23:19:04 5044 records - OK
RkMks3LRLj 12.0 86217a179423b6646db3229f56dac3252e464b69 2016/05/29 23:10:16 17099 records - OK
rsIA42JAxHH 12.0 720bcd982703c2506d29d07186ee4b8d605881e7 2019/04/29 01:09:30 27649 records - OK
RtNmIGz507de 12.0 a7b6b4d15e43554e2aa57bf7fcba94de2286d455 2021/09/27 01:19:28 18899 records - OK
rU2Z244URY 12.0 8d689174ec8c45dad4f8a881130668a5e3f9df1c 2016/04/01 04:00:00 687630 records - OK
rv6xQzPPM8sB0 12.0 f69a794f30bd0611bbd0cbca118ad24a63cdc84e 2019/02/17 23:28:25 9296 records - OK
rXuIrmQy 12.0 d0c741944800993a05ff769a4996d7b3a260efbd 2019/12/30 01:23:39 3715 records - OK
rzQdz6hEkvXqA 12.0 4224193c113d5259246f618883d4bf79f351d535 2020/12/21 01:19:54 8599 records - OK
s4utlXy9QUIeNE 12.0 e65500a4693cb79911416499be4a019905c5733d 2016/12/25 23:31:12 7314 records - OK
saIme1se1dA 12.0 5ac82c69939c22e1f0821157193e491fad9b7eb4 2018/08/26 23:24:09 96728 records - OK
scboysICq 12.0 50c4ff5c6a5c1f7045e3d4017a74505a270f5002 2018/09/09 23:21:44 27967 records - OK
sdEvfklrxq 12.0 a430ced4e998639106f1f58b6366fc20727e02aa 2019/09/30 01:17:28 37416 records - OK
SIb86d5Rz 12.0 5c1c59b9ce02f2e668349c0733289f71e0c673c9 2017/08/13 23:11:39 13476 records - OK
sKgeZ4IZoCE 12.0 2cd466891c614e8208eedea2b7eb20af1c199b08 2020/08/31 01:11:10 69661 records - OK
sPVgSqFfAoiE 12.0 048e4daadafb5524a6963441df0e0183c12e2d47 2017/03/26 23:13:29 11595 records - OK
SqXnokY1baoqR 12.0 80b96fc689e3461fd958f627e55a0f5242a0b019 2017/06/18 23:25:00 4058 records - OK
SrjtddiUgP 12.0 5725f1e4ceb63fe7fe9277e4d717b8609dfe3967 2022/01/11 03:37:11 3793 records - OK
stfyOtAOtW2PofI 12.0 97a756c7ed1a50af843b3fd8dcaf0cf41eb10dbc 2024/04/02 01:26:48 2664 records - OK
sZBRS6RTLjD6 12.0 2953acd0ff38ce3853884ec7194824d56cff85db 2023/09/11 01:23:31 44493 records - OK
SZY1mIFUBF3uSF 12.0 9ca9b8cc3f0da18d3bd1ed7212e628539c2ddba6 2018/02/18 23:13:10 23137 records - OK
T2He6WZGJH 12.0 b246e3ba234d6d3efb1ed94a142d1b17c0375f6d 2023/12/18 01:08:13 35940 records - OK
Tcwg9cRM1e0RO 12.0 661440aef5eb802597b012f56cbcff807ee7a025 2022/08/01 01:22:59 20173 records - OK
TiDuv5GYHxyi 12.0 45891c6e7a20d9db0253c977c50cee17eba4862a 2023/08/28 01:20:18 36154 records - OK
timw5dUTVt 12.0 d03ce1992c34a5cb686593e1611d3ea38484de82 2019/03/07 00:31:01 177730 records - OK
TKA1Kv5Uw9cEle 12.0 2f126c8feae2a8d30fedff3cb433f26f261fa176 2023/06/05 01:22:55 15233 records - OK
TLj8tKqKomFQ 12.0 b0fb114d44f3c1cff8cdd49607864d0525c88869 2019/07/08 01:45:24 51640 records - OK
tP6qGHsR3X7s 12.0 f8fea7abb3ce568e7df02d26ea389cfb22fe99c5 2021/05/04 04:05:09 2833 records - OK
TszxjwXD6CZ7 12.0 25556421608ff3011da9263cbadd906150bcf9c6 2016/06/26 23:15:25 23760 records - OK
tuRyyfS3Mrg 12.0 eaa458e5fe6cefbdf22712339f6896a57b036b74 2017/11/19 23:19:24 10046 records - OK
u1rJIZmKz 12.0 b5e1c850ae376e8dcffe7dcc4c00e408886fe27d 2021/04/26 01:24:53 22076 records - OK
u1uQ6IMyTotAxtO 12.0 5c4d0a9f5be0df424f0d7577daff8060b1c9f31c 2023/07/18 02:53:01 2531 records - OK
U2hZbsHAbMKlh 12.0 d59cb2fe90332f116c8340f0bf9a66624130f18d 2021/06/21 01:24:56 29792 records - OK
u7sLfjBAqXkPel 12.0 52144c5fd0dc152a102bf7bc6cd35e1d2e377250 2022/09/12 01:22:48 21959 records - OK
U7VeI6FMFa2S5k 12.0 1d9f8f9ce3b631e59f8952985795068f43445f89 2016/11/20 23:14:47 16440 records - OK
UN6PjeeMTwyU4m 12.0 2cbfc37ba5e2bee96ad897a9e0e5bbe3c8fe61d1 2023/11/20 01:25:02 37709 records - OK
uQOZh9HDtyyu 12.0 dcccde9c08dd069087c667d9422db08c04c95858 2017/02/19 23:08:25 14892 records - OK
UR4i8YMl5 12.0 8df45cfe9c2e3cdd095a4ed0d06bd01886bd1b80 2018/03/11 23:16:31 17975 records - OK
uuHJPyzMeIEC 12.0 b6e879e62a95d22b1d8ebb8b49eb76d2e4545cfc 2018/02/11 23:19:48 12996 records - OK
uuZi3kIA4 12.0 ea9d0aad82d59dc1d3408186107ca119ae4a0c72 2023/05/08 01:24:53 17182 records - OK
UxuAmwVyoxxl3Y 12.0 b2c809c2635e91fdd2b954dec7c351741dd145fb 2019/06/24 01:14:21 38682 records - OK
UYAucFjWvJ7x 12.0 4ff281cf564bcd5bb8591e083bad64fc6698c2fb 2017/09/17 23:16:45 11332 records - OK
V0cXx8taKW 12.0 47f8e88b8b769f0f693e581933342e437b277de7 2023/05/22 01:23:54 19459 records - OK
v6HPv9RlRr 12.0 346bdbac574aca02a81bc75bbcf504637dc59005 2021/10/25 01:30:06 32922 records - OK
vakU50KAA 12.0 a1803bea0a6943f6014472b4d1a15736d66ace80 2017/07/02 23:16:18 8278 records - OK
vB9Vvn3ll3Ztuwg 12.0 174a7b7a4d88aaaaa798e9ebebde25f611e24452 2021/07/19 01:21:31 45858 records - OK
Vbd4Tl2Hg 12.0 22912b4e7584cc8186d4598ba3b6fdc079654900 2021/10/19 03:14:59 2858 records - OK
vcBPnHB421 12.0 d84ba015ee3aeb1af88b34e91cebb5ab54270bc7 2024/06/18 01:28:54 2778 records - OK
VdrxrdAYL3g 12.0 3aad6d1deaa02253fc423106279fd28cf73ceb24 2019/11/12 04:05:59 3306 records - OK
VeeCrYyAw 12.0 c77b242861ec15674e903891b0f118bfdca3a33b 2016/12/11 23:16:38 16127 records - OK
VeIr1Kc6x0jNL3 12.0 dda30f834cf69922992eb376fc35dc97079e6e32 2018/07/29 23:20:05 26359 records - OK
VFojunV89eUuFj 12.0 858df48cfb15d07319ab080e7d1fa4872b9a4e0f 2016/04/01 00:00:00 881416 records - OK
vGGcxqU1OPUFF 12.0 7140d0b45d1aad51133c38b39e5d7d6a531fa266 2016/04/26 06:55:54 1 record - OK
VJc8CFZg7M 12.0 42b6c764427c9ba74d4f15ae72b2a053f44ab6df 2022/07/19 03:19:33 2784 records - OK
vKr3OiAVx4 12.0 4319d024547bea602f854a23d9ae0adf8b2ee220 2017/03/19 23:12:56 16705 records - OK
VqOWvR593 12.0 f5355ae9dfa6e1fee46d2b46b0883d13b710671b 2017/08/27 23:16:09 14553 records - OK
vqQi302zx 12.0 9f13880b64f8b32cb93eeb4fa5195f3b77b94767 2017/03/02 04:05:16 22794 records - OK
VqzbKZg89ymoeB 12.0 e3bc0aaddfa2206283ab80bc221d33e787f49726 2017/01/08 23:14:28 13002 records - OK
VRGm2JXhyQHcj 12.0 fef58d3dcd2b8682c950f2155ae839564bbb8aed 2022/03/11 06:12:14 85034 records - OK
VuY4nj2b5kafiB 12.0 78c978eb06574c44924198470b618a4f97a6bc6c 2017/08/20 23:16:03 11786 records - OK
vVNwJkyjP9 12.0 94ddd6579341021c714acab0565cf02c7eaedd68 2022/02/14 01:28:56 22796 records - OK
vWqUGuH0IpI 12.0 08fe0d3093e6c76eda94e3ed4b5fdc9a5529475e 2016/05/15 23:10:40 21375 records - OK
vXm31KwIIdMwT 12.0 083fc1272131cdb2dec04478edea7a0174255339 2021/12/06 01:24:09 39563 records - OK
Vy2Xc67hZ 12.0 fe1358c432315073f0d3f37413818ba6cdea7d82 2023/04/10 01:21:46 27110 records - OK
W721GJiNj52 12.0 240b403bcd293bf4ae5c188f63f073263a36bf7e 2016/07/17 23:12:56 15777 records - OK
wAI7dDd6JLA 12.0 6509ebbc6f0ca260d06b2eaff01eb2b9e1ae6138 2020/09/14 01:15:29 61796 records - OK
WAUeXCNSbWiiq4O 12.0 bfe4aa0b60d714512433bdd8243004928b3e0560 2023/07/17 01:19:56 20392 records - OK
wD5ZsyooyPl 12.0 063f0277283d6341d03b1e924ebef631c15952b0 2020/09/28 01:12:25 49869 records - OK
wFGiUU13DNq4n7 12.0 8e38a5aaaa9e5ba22e4aff0b32450e3f7a75979d 2019/02/03 23:10:01 20157 records - OK
WnvQZpnu8 12.0 d25fb0649abc8599abf4551e24f01b544f005ed7 2017/06/18 23:21:18 5436 records - OK
wNyGMsJbkGO 12.0 26754aafc08bab41c1700506c59f93dd0c5ddf09 2018/09/23 23:18:40 26467 records - OK
wPIkdiAmWbmPAuO 12.0 9a83ac1293a11e5766da08f4547876fdf305e9d3 2018/06/17 23:16:28 23696 records - OK
WUALdQMA 12.0 ca851bd45aa66e29f939050c39b3ad32083a3b90 2017/11/05 23:19:15 10683 records - OK
wz9nHSKy 12.0 a9722c3ca088b63e56f3f7dc279c63bcc1ef9499 2024/01/15 01:15:09 77012 records - OK
x3P4JBlbJ 12.0 1e7b848e84d3078a7849836e8abf1220478236d0 2018/04/22 23:20:06 37369 records - OK
x6c4oiAn4ud 12.0 af47edc74e292aaed6cd4adfc5490a07de67e87f 2016/07/10 23:15:57 13479 records - OK
x8dLP6VGdj 12.0 280ed49d5c401cce8c96d993386fa43ee33343ed 2024/01/01 01:11:20 38958 records - OK
xCLk8S8fBdDI 12.0 17bdd62535f35e1b23fadefe6648ccf550a6773d 2021/02/01 01:21:39 8904 records - OK
XctFuCPNmsHk 12.0 06dc3c4b60f3cf9ccb7d2e5caecd8305e56d8cb8 2023/04/25 03:44:58 2980 records - OK
XGEruydy7R71Co 12.0 9d282e2e1635812322346238b52401643f567651 2019/10/14 01:30:32 6948 records - OK
xipg8WRwA5rwG 12.0 ff47a0f6d39c4205bce21263fe1021f9efed29b4 2019/10/14 01:12:36 40845 records - OK
xm8F5cECp0dADv 12.0 ae6968d323e1cd46a9bf7726477da0c1f33910ad 2022/08/29 01:20:51 20585 records - OK
xP20sqJq 12.0 f86cc2cf03fc68654a3c4e47a334e9c76353f385 2021/05/10 01:18:38 53709 records - OK
XPtIKOdVzC8bz 12.0 f9c96ddfcd8d7edc9aa47c6a8644850911ac3acc 2016/04/26 06:45:00 1 record - OK
xsHUKaCaE 12.0 528bac2294918e1303b0ba9f98c1cd6cc43f3a9e 2021/04/12 01:22:30 37703 records - OK
XT86S9UYKM7FR 12.0 16268ba3f294f1b250494ed9e463ef8d947d3d06 2022/10/10 02:50:54 22972 records - OK
y2RgEl3wd9xn6AD 12.0 95d22efe849f4adf862b3002d92d51fdc41ceeb0 2023/03/13 01:23:17 21281 records - OK
Y76y1k7lXO 12.0 d2e54a2f39e46bca70040ddc34f3ce02c86d05c7 2020/11/09 01:18:11 52882 records - OK
yEw4UnYOoIHPJp 12.0 a493a861ccc2a45fa1d418f5c81639d406a1340a 2024/04/08 01:09:58 47820 records - OK
YIbR1aeV05i 12.0 d6fc13d8d85956b92b183389dfd117e16c7f7db9 2016/06/19 23:16:59 12534 records - OK
YiC8eQwftpJ 12.0 51d9e61caaf57731283f7fcfc2eb0b894290cdc9 2022/01/24 05:50:08 5832 records - OK
YivAlY6EfsgPyB5 12.0 c2c943987402266893a0d950134505b86a7ac678 2021/10/11 01:22:52 27467 records - OK
YQE3ClvX6gB 12.0 efef8ae7fbbf684ff076f554ad3235b4a8453c08 2018/03/18 23:19:39 18357 records - OK
YqjOxPwNI7nVCgk 12.0 959c81dc87bee3451323142f40855660dbd7108b 2020/02/17 01:16:23 45235 records - OK
yR923OJjBcUD4 12.0 73ad4b4edc50f9c0defb376b5ea1e02ada7cccfe 2022/12/05 01:26:45 22914 records - OK
YUdCPaikkf6 12.0 0abf159f6ac5b36fee33b172b807d8879026a27a 2020/05/25 01:15:14 47213 records - OK
yUiOeSZ0V0 12.0 c2db519fb697c92d3fc14ae30d0e8164adceeae0 2023/06/19 01:21:17 19866 records - OK
Z0cGPOYA 12.0 eaab02ea886223b49cca0d60399062d1ec60bfdd 2016/10/23 23:16:47 13483 records - OK
z6opHeuknyw 12.0 8abfcda240b5f17174c785e11131e7d0bb1c5037 2017/04/16 23:18:32 16750 records - OK
Z7SirDYgH 12.0 520f464b087321f8f00dedead6f55a182ab35820 2016/12/18 23:13:45 12226 records - OK
Z8hXmlKnJM7cxD 12.0 3451d66ddff00a269869a830287baf1737c9211f 2020/03/30 01:14:18 29181 records - OK
zcRSqV7mO2 12.0 d30e18c142bc327b9ea7bfbe833956b8bcfa6eb1 2021/03/03 12:53:11 63358 records - OK
ZgpC06e4K6bdPM 12.0 0383c89b433f688ca7d89a45e43db107e54be840 2021/12/07 02:44:10 3014 records - OK
Zh4NtfcRrmcZ 12.0 540d65fe377bc92ac4c54263b1f297d033f7e3ab 2019/11/25 14:09:37 27006 records - OK
zppjIC8f7E 12.0 c60a8fe7f1d6370342735b017eaa82588a0bcf31 2023/08/14 01:23:59 19361 records - OK
zQULwMkBlndQbQJ 12.0 e4bf926ebee40ef0abd683b62eaeeb51ec8bf3e8 2022/12/06 03:33:07 2370 records - OK
ZWSMxMZELb 12.0 ac44ab6e653d3bccbe192ea8ef0781ae922c6405 2017/04/09 23:16:02 13952 records - OK
ZY45IcdLP 12.0 11726292145f4653bbd3ae03497094a413f1d6ef 2018/08/13 11:22:27 21477 records - OK
Total records count: 12773864
Anti-rootkit module version ( ver: 12.6.202403300, api: 9.01 )
Using 149797591 as Dr.Web (R) Key file
Hola buenas de nuevo @Vikenz
¿Cómo sigue el problema inicial planteado por el cual abriste este tema?
Realizo el examen y vuelve a mostrar eso
Le doy a Iniciar acciones y vuelve a mostrar lo de la imagen anterior, y asi sucede en bucle
Hola buenas @Vikenz
OK vamos allá.
Desactivas tu antivirus Como deshabilitar temporalmente un antivirus y cualquier programa de seguridad que tengas activado.
Descargas Farbar Recovery Scan Tool MUY IMPORTANTE >> seleccionas la versión adecuada para la arquitectura correspondiente de tu Ordenador (32 o 64 bits). ¿Cómo saber si mi Windows es de 32 o 64 bits.?
Una vez descargado FRST, desconectas tu equipo de completamente de Internet (apagas el router) >> Super Importante. Acto seguido, cierras también cualquier otro programa que tengas abierto.
Farbar Recovery Scan Tool
Ejecutas el FRST.exe (Si utilizas Windows Vista/7/8 o 10, presionas clic derecho y seleccionas Ejecutar como Administrador).
Aparecerá una ventana con un mensaje de Disclaimer/Responsabilidad, presionas sobre Sí o Yes.
En la ventana principal del programa, presionas sobre Analizar/Scan y esperas a que finalice el análisis.
Aparecerán dos logs/reportes que serán: Frst.txt y Addition.txt, estos quedarán guardados en el escritorio.
Activas de nuevo tu antivirus y cualquier programa de seguridad que tengas activado. También conectas nuevamente tu equipo a Internet.
Pegas los reportes de FRST.txt y Addition.txt. Debes de poner ambos reportes todos enteros con absolutamente todo su contenido. Deberás de realizar varios mensajes si recibes un mensaje de error/advertencia indicando que es muy largo dicho reporte que formará el mensaje (más de 50.000 caracteres aprox.).
Por Favor, mientras estemos desinfectando tu maquina o terminando de hacerlo:
- No realices pasos/acciones que NOSOTROS no te hayamos indicado.
- No descargues NADA de Internet y/o conectes dispositivos externos a tu equipo.
- No instales NADA (programas/software/complementos/extensiones del navegador…).
- No ejecutes otros programas de seguridad (Antivirus, Antimalware, ANTINADA…).
- No realices por tu cuenta otros procedimientos.
- Usa tu equipo EXCLUSIVAMENTE para desinfectarlo siguiendo nuestras indicaciones.
Muy Importante Coloca los diferentes reportes que te he pedido como se muestra en la siguiente imagen:
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x86) Versión: 23.06.2024
Ejecutado por Gaby (administrador) sobre DESKTOP-CMR41D6 (Dell Inc. Inspiron 5458) (29-06-2024 14:33:47)
Ejecutado desde C:\Users\washa\Downloads\FRST (1).exe
Perfiles cargados: Gaby
Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.4529 (X86) Idioma: Español (México)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe <3>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
(Intel Corporation - pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.111.0602.0003\Microsoft.SharePoint.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft\Edge\Application\msedge.exe <5>
(services.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe
(services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21968.0_x86__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21968.0_x86__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\System32\AggregatorHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [7557880 2015-08-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [1032952 2015-08-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4693008 2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\washa\AppData\Local\Microsoft\Teams\Update.exe [2593856 2024-06-09] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Run: [MicrosoftEdgeAutoLaunch_867BEF82582F5A942BA8828BCE575FF2] => "C:\Program Files\Microsoft\Edge\Application\msedge.exe" --win-session-start [3012152 2024-06-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Run: [Spotify] => C:\Users\washa\AppData\Roaming\Spotify\Spotify.exe [26706760 2024-06-08] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [39449504 2024-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\126.0.6478.127\Installer\chrmstp.exe [2024-06-29] (Google LLC -> Google LLC)
==================== Tareas programadas (Lista blanca) =================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {7C89AB24-DAD6-4F9D-AB58-9E7029D5CF2D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {00773823-38A6-41F5-A435-68E35696C9B2} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4615584 2024-06-07] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "408b0a87-203a-4557-b22a-d2b7499029e8" --version "6.25.11093" --silent
Task: {9B5D7CED-4DCB-47F8-B1D9-B178AA9721F8} - System32\Tasks\CCleanerSkipUAC - Gaby => C:\Program Files\CCleaner\CCleaner.exe [39449504 2024-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {61C2FC81-F0C9-4924-8F73-BA395664E2DA} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\washa\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15145336 2024-06-09] (ESET, spol. s r.o. -> ESET)
Task: {20366C4F-C1F1-478D-A931-F4FD433DA697} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\washa\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15145336 2024-06-09] (ESET, spol. s r.o. -> ESET)
Task: {AD2F2D39-A343-4FC1-9625-FEDE0429DF9C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{8117D988-4026-4103-B38E-51BC9785BC20} => C:\Program Files\Google\GoogleUpdater\128.0.6537.0\updater.exe [4623976 2024-06-13] (Google LLC -> Google LLC)
Task: {F6F09F41-5349-45C7-9508-9CECB0C405D5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22938304 2024-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3BA8FA4-1464-4395-A649-8D90B692ABBF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22938304 2024-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {F9FCE2F7-384F-442B-A6C5-1FB6CE6B0E6C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-06-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {58E02B1F-3826-42FC-BF45-C9599FE660BF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-06-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {B7476504-6421-4ADC-A75A-83B0A80283E3} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => %windir%\System32\RemoteFXvGPUDisablement.exe Disable (Ningún archivo)
Task: {B6F1CA9A-5EAA-422F-8D1F-278F07A29A48} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => %windir%\System32\RemoteFXvGPUDisablement.exe Warning (Ningún archivo)
Task: {81BF92FA-C429-4A37-BEFE-1BB4974BD3F3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1342880 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {655C3CBA-ED07-45DE-923A-39DDCD6A19FB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1342880 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0BCE9FBA-723D-4DAC-95AA-20FDE6735D86} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1342880 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {40C727AF-527A-4DF5-B56A-438FEC812A2B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1342880 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {12F4D1AE-8BBD-4023-976E-919C1D6383E0} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3205024 2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {E9C01F2E-2C15-428F-AB02-27AE1724946C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1169788715-1317364184-1215898874-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3205024 2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {21DCEB92-3C72-4BF2-8BAB-BE30C27F507D} - System32\Tasks\Uninstaller_SkipUac_Aleja => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [9914736 2024-05-07] (IObit CO., LTD -> IObit) -> C:\Program Files\IObit\IObit Uninstaller\\/UninstallExplorer
Task: {7846195C-734F-4EEA-B7C5-A7E5FE4D3550} - System32\Tasks\Uninstaller_SkipUac_Gaby => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [9914736 2024-05-07] (IObit CO., LTD -> IObit) -> C:\Program Files\IObit\IObit Uninstaller\\/UninstallExplorer
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{135030ff-40fc-4364-8217-4386af5c1b58}: [DhcpNameServer]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}: [DhcpNameServer]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}\0594E414E474F4F55374: [DhcpNameServer]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}\94E4E4F4D20594E414E474F4: [DhcpNameServer]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}\C495D4E45445F505341425D454E4: [DhcpNameServer]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}\C495D4E45445F505341425D454E4: [DhcpDomain]
Tcpip\..\Interfaces\{985d55da-c490-4216-a203-9129f73cce72}\E45445C4946454D2F64767A646D656E6563756373713: [DhcpNameServer]
Edge DefaultProfile: Default
Edge Profile: C:\Users\washa\AppData\Local\Microsoft\Edge\User Data\Default [2024-06-29]
Edge Extension: (Documentos de Google sin conexión) - C:\Users\washa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-25]
Edge Extension: (Edge relevant text changes) - C:\Users\washa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-05-25]
FF Plugin:,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-05-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin:,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-05-25] (Microsoft Corporation -> Microsoft Corporation)
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\washa\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-06-29]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\washa\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-18]
CHR Profile: C:\Users\washa\AppData\Local\Google\Chrome\User Data\System Profile [2024-06-05]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [909216 2024-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10323424 2024-06-11] (Microsoft Corporation -> Microsoft Corporation)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [283024 2015-06-08] (Intel Corporation - pGFX -> Intel Corporation)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncHelper.exe [2629536 2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [433952 2019-04-23] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [297872 2015-06-08] (Intel Corporation - pGFX -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7420824 2024-06-03] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe [1098032 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.111.0602.0003\OneDriveUpdaterService.exe [2908704 2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [272632 2015-08-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [382768 2024-05-25] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [300416 2023-09-25] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe [2138272 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe [91840 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wpscloudsvr; C:\Program Files\Kingsoft\office6\wpscloudsvr.exe [1056000 2021-10-13] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [139808 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 HidSpiCx; C:\WINDOWS\System32\drivers\HidSpiCx.sys [65536 2024-05-25] (Microsoft Windows -> Microsoft Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [219424 2019-04-23] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
S3 IUFileFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win10_x86\IUFileFilter.sys [24136 2024-04-26] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
S3 IURegistryFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win10_x86\IURegistryFilter.sys [32800 2024-04-26] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [41952 2020-08-31] (Travis Lee Robinson -> hxxp://
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [182736 2024-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [18920 2024-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [205272 2024-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MEI; C:\WINDOWS\System32\drivers\TeeDriverW8.sys [178848 2017-10-17] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R0 MsSecCore; C:\WINDOWS\System32\drivers\msseccore.sys [21984 2024-05-25] (Microsoft Windows -> Microsoft Corporation)
S3 MsSecWfp; C:\WINDOWS\System32\drivers\mssecwfp.sys [28640 2024-05-25] (Microsoft Windows -> Microsoft Corporation)
R3 NETwNb32; C:\WINDOWS\system32\DRIVERS\Netwbn02.sys [2864224 2019-05-03] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [755952 2015-08-14] (Realtek Semiconductor Corp -> Realtek)
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [339488 2018-11-23] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [155664 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [46600 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20952 2024-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [442664 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [68904 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [214016 2024-05-25] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
==================== Un mes (creado) (Lista blanca) =========
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2024-06-29 14:31 - 2024-06-29 14:31 - 002093056 _____ (Farbar) C:\Users\washa\Downloads\FRST (1).exe
2024-06-29 14:26 - 2024-06-29 14:26 - 002395648 _____ (Farbar) C:\Users\washa\Downloads\FRST64 (1).exe
2024-06-25 18:02 - 2024-06-26 00:13 - 000000000 ____D C:\Users\washa\Doctor Web
2024-06-25 17:55 - 2024-06-25 17:57 - 322002576 _____ C:\Users\washa\Downloads\sddkctoa.exe
2024-06-17 20:45 - 2024-06-17 20:50 - 000000444 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2024-06-15 08:10 - 2024-06-15 08:10 - 000000000 ___HD C:\$WinREAgent
2024-06-13 22:00 - 2024-06-13 22:00 - 000350831 _____ C:\Users\washa\Downloads\Reporte3.txt
2024-06-13 21:57 - 2024-06-13 21:57 - 000372824 _____ C:\Users\washa\Downloads\Reporte2.txt
2024-06-13 21:53 - 2024-06-13 21:53 - 000412593 _____ C:\Users\washa\Downloads\Reporte1.txt
2024-06-11 16:52 - 2024-06-11 16:52 - 001135752 _____ C:\Users\washa\OneDrive\Escritorio\USB_File_Resc--Reporte_E6.txt
2024-06-11 16:48 - 2024-06-11 16:48 - 000046642 _____ C:\Users\washa\OneDrive\Escritorio\USB_File_Resc--Reporte_D5.txt
2024-06-11 16:23 - 2024-06-11 16:23 - 000710300 _____ (Streuner Corporation) C:\Users\washa\Downloads\usb-file-resc_x86
2024-06-11 16:14 - 2024-06-11 16:14 - 000915612 _____ (Streuner Corporation) C:\Users\washa\Downloads\usb-file-resc_x64
2024-06-10 16:18 - 2024-06-10 16:18 - 000009913 _____ C:\Users\washa\OneDrive\Escritorio\ZHPCleaner (R).html
2024-06-10 16:18 - 2024-06-10 16:18 - 000003217 _____ C:\Users\washa\OneDrive\Escritorio\ZHPCleaner (R).txt
2024-06-10 16:13 - 2024-06-10 16:13 - 000009698 _____ C:\Users\washa\OneDrive\Escritorio\ZHPCleaner (S).html
2024-06-10 16:13 - 2024-06-10 16:13 - 000003100 _____ C:\Users\washa\OneDrive\Escritorio\ZHPCleaner (S).txt
2024-06-10 15:59 - 2024-06-10 16:18 - 000000000 ____D C:\Users\washa\AppData\Roaming\ZHP
2024-06-10 15:59 - 2024-06-10 15:59 - 000000881 _____ C:\Users\washa\OneDrive\Escritorio\ZHPCleaner.lnk
2024-06-10 15:59 - 2024-06-10 15:59 - 000000000 ____D C:\Users\washa\AppData\Local\ZHP
2024-06-10 15:56 - 2024-06-10 15:56 - 003364512 _____ (Nicolas Coolman) C:\Users\washa\Downloads\ZHPCleaner.exe
2024-06-10 06:43 - 2024-06-10 06:43 - 000003856 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2024-06-10 06:43 - 2024-06-10 06:43 - 000003414 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2024-06-10 06:43 - 2024-06-10 06:43 - 000002544 _____ C:\Users\washa\Downloads\Eset.txt
2024-06-09 10:15 - 2024-06-09 15:02 - 000000000 ____D C:\KVRT2020_Data
2024-06-09 10:00 - 2024-06-09 15:03 - 000001282 _____ C:\Users\washa\OneDrive\Escritorio\ESET Online Scanner.lnk
2024-06-08 19:48 - 2024-06-08 19:48 - 000000000 ____D C:\Users\washa\OneDrive\Documents\Plantillas personalizadas de Office
2024-06-08 17:07 - 2024-06-08 17:08 - 111895408 _____ (AO Kaspersky Lab) C:\Users\washa\Downloads\KVRT.exe
2024-06-08 17:05 - 2024-06-08 17:05 - 008389496 _____ (ESET) C:\Users\washa\Downloads\esetonlinescanner (1).exe
2024-06-08 16:54 - 2024-06-08 16:54 - 000002796 _____ C:\Users\washa\OneDrive\Escritorio\MalwareBytes..txt
2024-06-07 23:08 - 2024-06-07 23:08 - 000000000 ____D C:\WINDOWS\system32\%userprofile%
2024-06-05 17:59 - 2024-06-05 17:59 - 000001854 _____ C:\Users\washa\OneDrive\Escritorio\AdwCleaner.txt
2024-06-05 17:44 - 2024-06-05 17:44 - 000002880 _____ C:\Users\washa\OneDrive\Escritorio\Malware.txt
2024-06-03 19:10 - 2024-06-03 19:10 - 000000000 ____D C:\Users\washa\AppData\Local\mbam
2024-06-03 19:09 - 2024-06-03 19:09 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2024-06-03 19:05 - 2024-06-03 19:05 - 000000000 ____D C:\ProgramData\Malwarebytes
2024-06-03 19:05 - 2024-06-03 19:05 - 000000000 ____D C:\Program Files\Malwarebytes
2024-06-03 19:03 - 2024-06-03 19:04 - 001198338 _____ C:\Users\washa\OneDrive\Escritorio\registro ccleaner.reg
2024-06-03 18:52 - 2024-06-03 18:52 - 000000000 ____D C:\ProgramData\Piriform
2024-06-03 18:47 - 2024-06-29 14:14 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2024-06-03 18:47 - 2024-06-26 00:22 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-06-03 18:47 - 2024-06-25 17:55 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-06-03 18:47 - 2024-06-03 18:47 - 000002900 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Gaby
2024-06-03 18:47 - 2024-06-03 18:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2024-06-03 18:46 - 2024-06-29 14:14 - 000000000 ____D C:\Program Files\CCleaner
2024-06-03 18:23 - 2024-06-05 17:52 - 008790880 _____ (Malwarebytes) C:\Users\washa\Downloads\adwcleaner (1).exe
2024-06-03 18:22 - 2024-06-03 18:22 - 002588568 _____ (Malwarebytes) C:\Users\washa\Downloads\MBSetup (3).exe
2024-06-03 18:21 - 2024-06-03 18:22 - 079157808 _____ (Piriform Software Ltd) C:\Users\washa\Downloads\ccsetup621.exe
2024-05-30 19:47 - 2024-05-30 19:47 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
==================== Un mes (modificado) ==================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2024-06-29 14:36 - 2024-05-27 15:16 - 000019386 _____ C:\Users\washa\Downloads\FRST.txt
2024-06-29 14:35 - 2024-05-27 15:15 - 000000000 ____D C:\FRST
2024-06-29 14:28 - 2021-12-19 16:50 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-06-29 14:28 - 2019-08-02 19:31 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-06-29 14:27 - 2024-05-25 09:50 - 000000000 ____D C:\Users\washa\AppData\Local\Spotify
2024-06-29 14:19 - 2024-05-25 09:47 - 000000000 ____D C:\Users\washa\AppData\Roaming\Spotify
2024-06-29 14:19 - 2019-08-02 18:42 - 000000000 ___RD C:\Users\washa\OneDrive
2024-06-29 14:18 - 2021-06-21 08:29 - 000000000 ____D C:\Users\washa\AppData\Roaming\Microsoft\Teams
2024-06-29 14:14 - 2024-05-27 23:29 - 000000000 ____D C:\Users\washa\AppData\Local\Malwarebytes
2024-06-29 14:12 - 2019-08-02 18:42 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2024-06-27 18:41 - 2021-06-28 14:22 - 000000000 ____D C:\Users\washa
2024-06-27 18:38 - 2019-12-07 01:12 - 000000000 ____D C:\ProgramData\
2024-06-26 00:23 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-06-26 00:22 - 2021-06-28 14:53 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-06-26 00:22 - 2021-06-28 14:35 - 000008192 ___SH C:\DumpStack.log.tmp
2024-06-26 00:21 - 2024-05-25 09:34 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-06-26 00:21 - 2019-12-07 01:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2024-06-26 00:20 - 2019-12-07 01:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-06-26 00:19 - 2019-08-27 21:51 - 000000000 ____D C:\Temp
2024-06-25 20:02 - 2019-12-07 01:12 - 000000000 ___HD C:\Program Files\WindowsApps
2024-06-25 19:37 - 2024-05-25 09:35 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-06-25 19:37 - 2021-12-11 14:55 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1169788715-1317364184-1215898874-1001
2024-06-25 19:36 - 2024-05-25 09:35 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-06-25 18:04 - 2021-06-22 10:24 - 000002386 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-06-25 17:40 - 2021-06-28 14:47 - 001677940 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-06-25 17:40 - 2019-12-07 07:26 - 000748106 _____ C:\WINDOWS\system32\perfh00A.dat
2024-06-25 17:40 - 2019-12-07 07:26 - 000144928 _____ C:\WINDOWS\system32\perfc00A.dat
2024-06-25 17:40 - 2019-12-07 01:10 - 000000000 ____D C:\WINDOWS\INF
2024-06-17 21:21 - 2024-05-25 12:49 - 000000000 ____D C:\ProgramData\ProductData3
2024-06-17 21:21 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2024-06-17 21:14 - 2021-06-28 14:35 - 000296264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-06-17 21:10 - 2019-12-07 07:26 - 000000000 ____D C:\WINDOWS\es-MX
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\SystemResources
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\system32\setup
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\system32\es-MX
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2024-06-17 21:10 - 2019-12-07 01:12 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-06-17 20:46 - 2024-05-27 11:07 - 000000000 ____D C:\Users\washa\AppData\Local\CrashDumps
2024-06-17 17:53 - 2020-07-13 18:07 - 000000000 ____D C:\USB File Resc
2024-06-17 17:52 - 2019-08-02 20:20 - 000416976 __RSH C:\bootmgr
2024-06-15 07:56 - 2019-08-02 20:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-06-13 21:37 - 2019-08-02 20:49 - 193319184 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-06-13 20:52 - 2021-10-13 18:00 - 000000000 ____D C:\Program Files\Microsoft Office
2024-06-10 17:29 - 2024-05-28 20:41 - 000002554 _____ C:\WINDOWS\system32\pubfreeware.ini
2024-06-10 06:28 - 2021-06-28 14:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-06-09 15:30 - 2019-09-06 17:29 - 000000000 ____D C:\Program Files\MMO TOOL V1.2 BETA
2024-06-09 15:03 - 2024-05-28 20:35 - 000001382 _____ C:\Users\washa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2024-06-09 12:00 - 2021-09-07 07:41 - 000002368 _____ C:\Users\washa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2024-06-09 12:00 - 2021-09-07 07:41 - 000002366 _____ C:\Users\washa\OneDrive\Escritorio\Microsoft Teams.lnk
2024-06-09 10:56 - 2019-08-27 21:51 - 000000000 ___HD C:\backupsys
2024-06-08 19:44 - 2024-05-25 09:38 - 000000000 ____D C:\Users\washa\AppData\Roaming\Microsoft\Excel
2024-06-08 19:44 - 2024-05-25 09:37 - 000000000 ____D C:\Users\washa\AppData\Roaming\Microsoft\Word
2024-06-07 23:08 - 2024-05-25 09:35 - 000000000 ___RD C:\Users\Default\OneDrive
2024-06-07 23:03 - 2021-06-28 14:53 - 000003624 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-06-07 23:03 - 2021-06-28 14:53 - 000003500 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-06-06 20:09 - 2019-08-02 18:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-06-03 19:08 - 2019-12-07 01:12 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
==================== SigCheck ============================
(No existe una corrección automática para los archivos que no pasan la verificación.)
testsigning: ==> 'testsigning' está establecido. Verifique para posible controlador no firmado <==== ATENCIÓN
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x86) Versión: 23.06.2024
Ejecutado por Gaby (29-06-2024 14:38:06)
Ejecutado desde C:\Users\washa\Downloads
Microsoft Windows 10 Pro Versión 22H2 19045.4529 (X86) (2021-06-28 19:54:14)
Modo de Inicio: Normal
==================== Cuentas: =============================
(Si una entrada es incluida en el fixlist, será eliminada.)
Administrador (S-1-5-21-1169788715-1317364184-1215898874-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1169788715-1317364184-1215898874-503 - Limited - Disabled)
Gaby (S-1-5-21-1169788715-1317364184-1215898874-1001 - Administrator - Enabled) => C:\Users\washa
Invitado (S-1-5-21-1169788715-1317364184-1215898874-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1169788715-1317364184-1215898874-504 - Limited - Disabled)
==================== Centro de Seguridad ========================
(Si una entrada es incluida en el fixlist, será eliminada.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Programas instalados ======================
(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)
Alcor Micro Smart Card Reader Driver (HKLM\...\{F24F876B-7D71-4BD6-88E9-614D3BB84226}) (Version: - Alcor Micro Corp.) Hidden
Alcor Micro Smart Card Reader Driver (HKLM\...\SZCCID) (Version: - Alcor Micro Corp.)
BLUR versión PC_XTREME (HKLM\...\{624C5721-8C65-440D-B583-F831BA4C4812}_is1) (Version: PC_XTREME - Activision, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.25 - Piriform)
Flashtool (HKLM\...\Flashtool) (Version: - Androxyde)
Google Chrome (HKLM\...\Google Chrome) (Version: 126.0.6478.127 - Google LLC)
IObit Uninstaller 13 (HKLM\...\IObitUninstall) (Version: - IObit)
Malwarebytes version (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: - Malwarebytes)
Microsoft Edge (HKLM\...\Microsoft Edge) (Version: 126.0.2592.68 - Microsoft Corporation)
Microsoft Office LTSC Professional Plus 2024 - es-es (HKLM\...\ProPlus2024Volume - es-es) (Version: 16.0.17628.20148 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.111.0602.0003 - Microsoft Corporation)
Microsoft Project Professional 2024 - es-es (HKLM\...\ProjectPro2024Volume - es-es) (Version: 16.0.17628.20148 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Teams) (Version: - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{8F99DEF4-B09B-40D7-9EF5-58DB00C1E053}) (Version: - Microsoft Corporation)
Microsoft Visio LTSC Professional 2024 - es-es (HKLM\...\VisioPro2024Volume - es-es) (Version: 16.0.17628.20148 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60830 (HKLM\...\{F68B404C-0E04-337F-A132-796508EE337A}) (Version: 11.0.60830 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60830 (HKLM\...\{50AF8559-F490-381F-A6E7-06A07DE227DC}) (Version: 11.0.60830 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
MMO TOOL V1.2 BETA gcbv versión 1.2 (HKLM\...\{CC35D065-E38E-44FC-9FB0-C2FA14B53F4C}_is1) (Version: 1.2 - Grupo Crack Box Venezuela)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.17628.20116 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-0000-0000000FF1CE}) (Version: 16.0.17628.20148 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.17628.20116 - Microsoft Corporation) Hidden
Paquete de controladores de Windows - DriverCoding Corporation (vcom_modem) Modem (05/26/2014 (HKLM\...\2047AB3E52276300798FF9B5A1ACF4F330E8FE2B) (Version: 05/26/2014 - DriverCoding Corporation)
PL-2303 USB-to-Serial (HKLM\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.3.0 - Prolific Technology INC)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Spotify (HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\...\Spotify) (Version: - Spotify AB)
Update for Windows 10 (KB5001716) (HKLM\...\{14B4CD9F-AAA5-4175-96F5-72DA168A1C68}) (Version: - Microsoft Corporation)
WebView2 Runtime de Microsoft Edge (HKLM\...\Microsoft EdgeWebView) (Version: 126.0.2592.68 - Microsoft Corporation)
WinRAR 5.71 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Candy Crush Saga -> C:\Program Files\WindowsApps\ [2022-02-24] (
Complemento de motor multimedia para Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x86__8wekyb3d8bbwe [2023-04-13] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-06-28] (Microsoft Corporation) [MS Ad]
Roblox -> C:\Program Files\WindowsApps\ROBLOXCORPORATION.ROBLOX_2.578.564.0_x86__55nm5eh3cm0pr [2023-06-02] (ROBLOX Corporation)
==================== Personalizado CLSID (Lista blanca): ==============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00020812-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\et.exe /Automation => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00020820-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\wps.exe /prometheus /et => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00020821-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\wps.exe /prometheus /et => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00020821-0000-0000-C000-000000000046}.ksobak\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe (Zhuhai Kingsoft Office Software Co.,Ltd) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00020906-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\wps.exe /prometheus /wps => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{000209F0-0000-4b30-A977-D214852036FF}\InprocServer32 -> => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{000209FF-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\wps.exe /Automation => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{00024500-0000-0000-C000-000000000046}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\et.exe /Automation => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\washa\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.24130.8\x86\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{23A5B06E-20BB-4E7E-A0AC-6982ED6A6041}\localserver32 -> \washa\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{91493441-5A91-11CF-8700-00AA0060263B}\localserver32 -> C:\Users\washa\AppData\Local\Kingsoft\WPSOFF~1\1120~1.115\office6\wpp.exe /Automation => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{91493443-94BF-4940-926D-4F38FECF2A48}\InprocServer32 -> => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1169788715-1317364184-1215898874-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> C:\Users\washa\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-06-03] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.111.0602.0003\FileSyncShell.dll [2024-06-25] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-06-08] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-06-03] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-1169788715-1317364184-1215898874-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-1169788715-1317364184-1215898874-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => -> Ningún archivo
==================== Codecs (Lista blanca) ====================
==================== Accesos directos & WMI ========================
(Las entradas pueden ser listadas para ser restauradas o eliminadas.)
ShortcutWithArgument: C:\Users\washa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
==================== Módulos cargados (Lista blanca) =============
==================== Alternate Data Streams (Lista blanca) ========
==================== Modo Seguro (Lista blanca) ==================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Asociación (Lista blanca) =================
==================== Internet Explorer (Lista blanca) ==========
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2024-05-25] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-05-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-05-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-05-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-05-30] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts contenido: =========================
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
2018-09-15 00:08 - 2018-09-15 00:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2024-06-17 20:45 - 2024-06-17 20:50 - 000000444 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Otras Áreas ===========================
(Actualmente no existe una corrección automática para esta sección.)
HKU\S-1-5-21-1169788715-1317364184-1215898874-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\washa\Downloads\WhatsApp Image 2024-05-25 at 10.48.12.jpeg
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está habilitado.
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
==================== Reglas de firewall (Lista blanca) ================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
FirewallRules: [UDP Query User{0BF1F3F6-5514-48A6-A031-093A6851C328}C:\users\washa\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\washa\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{B67BB65F-1E51-4FE2-86B2-EB2D4F118154}C:\users\washa\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\washa\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{E3A6E3A5-CFC8-4119-97C4-AC3299F4E5B0}C:\users\washa\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\washa\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{B295E896-DBF1-40CF-8A83-20649EBBA2B2}C:\users\washa\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\washa\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{3278B5D3-7F72-4640-8FF2-485EA2E6B7A7}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{A71C2FC0-5ED0-456B-A123-9ED23BC7AE5E}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{4190BBB4-B809-465F-B86D-94E5858FF935}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{710264B0-F703-4F74-B1C8-F2B6E68DF826}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{658AC8E3-FAEB-440E-B948-50A79F8F8355}C:\program files\blur\blur.exe] => (Block) C:\program files\blur\blur.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{2286E3E8-0424-4B73-9E89-92DF4A07CAF7}C:\program files\blur\blur.exe] => (Block) C:\program files\blur\blur.exe () [Archivo no firmado]
FirewallRules: [{B4FC2BC1-E50C-453C-9498-9B97BFB82071}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1D253DFB-017E-456A-BA27-EE5E9F5C5B0F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AE347F06-3517-497F-881E-D3D242CCEA6D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{49A32B4D-6D03-4254-9DBB-A9A8084FBADB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0BC73C0A-38A8-4A18-821F-03DAD70DDF4D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{118BBDBD-2AAF-4D95-A47A-B73824043FC1}C:\users\washa\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\washa\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{C3F2D024-D972-4330-B35F-196DB7DB8D01}C:\users\washa\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\washa\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7B135B35-895D-4B28-BEC5-616AD45D853F}] => (Allow) C:\Program Files\Microsoft\EdgeWebView\Application\125.0.2535.92\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7535EFB2-201A-421B-A8E1-2EB5F8F9DF38}] => (Allow) C:\Program Files\Microsoft\EdgeWebView\Application\126.0.2592.68\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6AB523C6-D032-4689-B8ED-9380BA9C16CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.122.3205.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D65DC55C-45DE-43B4-8529-52FE4A39AF23}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.122.3205.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A917A7E3-759C-488B-99F1-32408409C172}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.122.3205.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B2010AF1-945C-4727-8A9D-4E1515631C0B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.122.3205.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A4382732-208C-409F-B31F-0C21AE55602B}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Puntos de Restauración =========================
03-06-2024 21:58:43 Punto de control programado
10-06-2024 16:17:02 ZHPcleaner
15-06-2024 08:06:14 Instalador de Módulos de Windows
15-06-2024 08:26:49 Instalador de Módulos de Windows
==================== Dispositivos defectuosos en el Administrador de dispositivos ============
Class Guid:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Errores del registro de eventos: ========================
Errores de aplicación:
Error: (06/29/2024 02:42:00 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:41:38 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:41:00 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:40:21 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:40:00 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:39:00 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:38:51 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Error: (06/29/2024 02:38:00 PM) (Source: ESENT) (EventID: 447) (User: )
Description: svchost (1776,D,21) SRUJet: A bad page link (error -338) has been detected in a B-Tree (ObjectId: 17, PgnoRoot: 65) of database C:\WINDOWS\system32\SRU\SRUDB.dat (65 => 448, 15).
Tag: BtDownObjid
Fatal: 1
Errores del sistema:
Error: (06/26/2024 12:26:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error:
El servicio no respondió a tiempo a la solicitud de inicio o de control.
Error: (06/26/2024 12:26:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Google Update Servicio (gupdate).
Error: (06/26/2024 12:15:58 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Error en la llamada ScRegSetValueExW para DeleteFlag con el error siguiente:
Acceso denegado.
Error: (06/26/2024 12:15:29 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Error en la llamada ScRegSetValueExW para Start con el error siguiente:
Acceso denegado.
Error: (06/17/2024 09:17:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error:
El servicio no respondió a tiempo a la solicitud de inicio o de control.
Error: (06/17/2024 09:17:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Google Update Servicio (gupdate).
Error: (06/17/2024 09:10:47 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Error de DCOM "1115" al intentar iniciar el servicio UsoSvc con argumentos "No disponible" para ejecutar el servidor:
Error: (06/17/2024 09:10:47 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Error de DCOM "1115" al intentar iniciar el servicio UsoSvc con argumentos "No disponible" para ejecutar el servidor:
Windows Defender:
Date: 2024-06-26 00:43:30
El examen de Antivirus de Microsoft Defender se detuvo antes de completarse.
Id. de examen: {A3A0272F-5BF9-4734-8F1A-E1A52547BF63}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: DESKTOP-CMR41D6\Gaby
Date: 2024-06-25 18:15:54
Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:!ml&threatid=2147735505&enterprise=0
Nombre: Trojan:Win32/Wacatac.B!ml
Id.: 2147735505
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Program Files\MMO TOOL V1.2 BETA\XIAOMI\emmcdl.exe
Origen de detección: Equipo local
Tipo de detección: FastPath
Origen de detección: Protección en tiempo real
Usuario: DESKTOP-CMR41D6\Gaby
Nombre de proceso: C:\Users\washa\AppData\Local\Temp\C020AD70-9A9D0E4D-DF69DB28-E3465916\T8BS9JYvyZMItWu.exe
Versión de inteligencia de seguridad: AV: 1.413.354.0, AS: 1.413.354.0, NIS: 1.413.354.0
Versión de motor: AM: 1.1.24050.5, NIS: 1.1.24050.5
Date: 2024-06-25 17:56:19
El acceso controlado a carpetas impidió que C:\Program Files\CCleaner\CCleaner.exe realizara cambios en la memoria.
Tiempo de detección: 2024-06-25T22:56:19.978Z
Usuario: DESKTOP-CMR41D6\Gaby
Ruta de acceso: \Device\Harddisk0\DR0
Nombre del proceso: C:\Program Files\CCleaner\CCleaner.exe
Versión de inteligencia de seguridad: 1.413.354.0
Versión del motor: 1.1.24050.5
Versión del producto: 4.18.24050.7
Date: 2024-06-25 17:55:35
El acceso controlado a carpetas impidió que C:\Program Files\CCleaner\CCleaner.exe realizara cambios en la memoria.
Tiempo de detección: 2024-06-25T22:55:35.474Z
Usuario: DESKTOP-CMR41D6\Gaby
Ruta de acceso: \Device\Harddisk0\DR0
Nombre del proceso: C:\Program Files\CCleaner\CCleaner.exe
Versión de inteligencia de seguridad: 1.413.354.0
Versión del motor: 1.1.24050.5
Versión del producto: 4.18.24050.7
Date: 2024-06-25 17:55:35
El acceso controlado a carpetas impidió que C:\Program Files\CCleaner\CCleaner.exe realizara cambios en la memoria.
Tiempo de detección: 2024-06-25T22:55:35.473Z
Usuario: DESKTOP-CMR41D6\Gaby
Ruta de acceso: \Device\Harddisk0\DR0
Nombre del proceso: C:\Program Files\CCleaner\CCleaner.exe
Versión de inteligencia de seguridad: 1.413.354.0
Versión del motor: 1.1.24050.5
Versión del producto: 4.18.24050.7
Date: 2024-06-25 18:46:33
Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad:
Versión anterior de inteligencia de seguridad: 1.413.354.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Versión actual del motor:
Versión anterior del motor: 1.1.24050.5
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso.
Date: 2024-06-25 18:46:33
Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad:
Versión anterior de inteligencia de seguridad: 1.413.354.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiSpyware
Tipo de actualización: Completa
Versión actual del motor:
Versión anterior del motor: 1.1.24050.5
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso.
Date: 2024-06-25 18:46:33
Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad:
Versión anterior de inteligencia de seguridad: 1.413.354.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Versión actual del motor:
Versión anterior del motor: 1.1.24050.5
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso.
Date: 2024-06-25 18:43:15
Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad:
Versión anterior de inteligencia de seguridad: 1.413.354.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Versión actual del motor:
Versión anterior del motor: 1.1.24050.5
Código de error: 0x80070102
Descripción del error: Tiempo de espera de la operación de espera agotado.
Date: 2024-06-25 18:43:15
Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad:
Versión anterior de inteligencia de seguridad: 1.413.354.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Versión actual del motor:
Versión anterior del motor: 1.1.24050.5
Código de error: 0x80070102
Descripción del error: Tiempo de espera de la operación de espera agotado.
Date: 2024-06-06 19:56:37
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbamsi32.dll that did not meet the Windows signing level requirements.
Date: 2024-06-06 18:16:34
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae.dll that did not meet the Microsoft signing level requirements.
==================== Información de la memoria ===========================
BIOS: Dell Inc. A02 03/09/2015
Placa base: Dell Inc. 0HGFRM
Procesador: Intel(R) Core(TM) i3-4005U CPU @ 1.70GHz
Porcentaje de memoria en uso: 71%
RAM física total: 3502.68 MB
RAM física disponible: 983.36 MB
Virtual total: 5107.33 MB
Virtual disponible: 866.63 MB
==================== Unidades ================================
Drive c: () (Fixed) (Total:194.45 GB) (Free:124.34 GB) (Model: WDC WD10JPVX-75JC3T0) NTFS ==>[unidad con componentes de arranque (obtenido de BCD)]
Drive d: (Nuevo vol) (Fixed) (Total:97.75 GB) (Free:97.66 GB) (Model: WDC WD10JPVX-75JC3T0) NTFS
Drive e: () (Fixed) (Total:638.38 GB) (Free:638.26 GB) (Model: WDC WD10JPVX-75JC3T0) NTFS
\\?\Volume{b289e3b1-0000-0000-0000-20bc30000000}\ () (Fixed) (Total:0.44 GB) (Free:0.07 GB) NTFS
==================== MBR & Tabla de particiones ====================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: B289E3B1)
Partition 1: (Active) - (Size=194.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=450 MB) - (Type=27)
Partition 3: (Not Active) - (Size=97.8 GB) - (Type=0F Extended)
Partition 4: (Not Active) - (Size=638.4 GB) - (Type=07 NTFS)
==================== Final Addition.txt =======================
Hola buenas @Vikenz
Ya he revisado así por encima de nuevo tu tema con todo lo nuevo que has traído.
Los siguientes días no te podré dar continuidad, ya que dispondré de MUY poco tiempo (literalmente 0 tiempo).
Y tu caso requiere de más tiempo de lo normal.
P.D.: A partir del Viernes día 5 de Julio podré seguir con el tema. Seguiremos con tu caso hasta el final. Hasta entonces, que vaya
Recuérdame en que te dé respuesta este Viernes. De todas formas voy a poner un reflote automático de este tema para el Viernes, así el sistema me avisará automáticamente y seguro que no se me pasará por alto.
Hola buenas @Vikenz
Ya he revisado así por encima de nuevo tu tema con todo lo nuevo que has traído. Tendría que mirar exhaustivamente los logs de FARBAR. Cosa que no he hecho por lo siguiente:
Los siguientes días no te podré dar continuidad, ya que dispondré de MUY poco tiempo (literalmente 0 tiempo).
Y tu caso requiere de más tiempo de lo normal debido a que es entretenido y complejo revisar los logs de FARBAR y no es algo que se haga LITERALMENTE en 5 minutos.
De hecho, ya sé que te dije esto hace unos días:
Pero he tenido la mala suerte de estar enfermo unos días… por suerte he quedado bien. Se me han acumulado cosas y bueno, ahora tengo que sacarlas adelante SÍ o SÍ como SEA y el foro al ser uno de mis hobbies, pues bueno, ahora tengo MUY POCO tiempo para ello (pero en 5 días ya no será así).
Lo que sí te puedo asegurar es lo siguiente:
P.D.: A partir del Domingo día 14 de Julio podré seguir con el tema. Seguiremos con tu caso hasta el final. Hasta entonces, que vaya
Recuérdame en que te dé respuesta este Domingo. De todas formas voy a poner un reflote automático de este tema para el Domingo, así el sistema me avisará automáticamente y seguro que no se me pasará por alto.
P.D.: Cuando hayas leído todo esto, simplemente infórmame de ello en un mensaje en el mismo tema.
Muchas gracias, no te preocupes, cuando tengas el suficiente tiempo.
De nada.
Ok. Perfecto
Ya estoy recuperado en gran parte, ya hago vida normal, me ha quedado alguna pequeña secuela, pero que se me irá en algunos días/semanas.
El problema es que se me han acumulado otras cosas que corren prisa y bueno… me puedo dedicar muy poco al foro y los temas con FARBAR/FRST requieren de tiempo, tiempo que no tengo ahora mismo.
Hasta el Domingo.
Hola, como estas? Espero que mejor