Xml.sunnycoast.xyz - virus?

Hola comunidad!

Hace años que no entro al foro, pero siempre que tengo un problema aqui encuentro la solucion.

Esta vez tengo un problema en Google Chrome, se abren ventanas emergentes que se bloquean automaticamente “pwz2 . com” (pero molesta la aparicion de una nueva pestaña y luego que se cierre y vuelva al lugar, 2 o 3 veces seguidas) y muchas veces abre una que no se bloquea y me redirige a paginas de youtube, paginas xxx, etc y esta es la pagina: http : // xml . sunnycoast . xyz/.

Muchos sitios hablan de eliminarla, proponen pagar antivirus (ultima alternativa que voy a evaluar) o eliminarlo manualmente (pero no ha funcionado).

En caso de que tengan alguna forma de ayudarme, se los agradeceria.

Saludos a todos!

Hola @Federico_Severini

[email protected] nuevamente al Foro!!

Una consulta tienes sincronizado tu navegador Google Chrome con otros dispositivos.?

Por el momento no instales nada que no te digamos.

Realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga, instala y/o actualiza a las siguientes herramientas:

3.- Ejecutas respetando el orden los pasos con todos los programas cerrados incluido los navegadores

CCleaner

Usando su opción Limpiador de acuerdo su Manual:

  • Para borrar Cookies, temporales de Internet y todos los archivos que este te muestre como obsoletos.
  • Cuando lo instales destilda las casillas para no permitir la instalación de Ccleaner Browser/Avast Browser o similar…
  • NO necesitamos este reporte

AdwCleaner

Lo ejecutas.

  • Pulsa en el botón Escanear y espera a que se realice el proceso. Luego pulsa sobre el botón Limpiar.
  • Espera a que se complete. Si te pidiera reiniciar el sistema Aceptas.
  • Guarda el reporte que le aparecerá para copiarlo y pegarlo en tu próxima respuesta.
  • El informe también puede encontrarse en “C:\AdwCleaner\AdwCleaner.txt”

ZHPCleaner

  • Siguiendo su manual, lo instalas y ejecutas. Cuando termine, elimina todo lo que encuentre.

Malwarebytes Versión 4

  • Lo ejecutas siguiendo los pasos de su Manual.
  • Realizas un Análisis Personalizado
  • Revisa especialmente como salvar el reporte.

4.- Luego de finalizar todo lo anterior y reiniciar vuelve a desactiva temporalmente tu antivirus y cualquier programa de seguridad.

5.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan/Analizar y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio, debes adjuntar ambos

Guía: Como Ejecutar FRST

6.- En tu próxima respuesta, pegas todos los reportes generados, si no entran en un Post, revisa el Método 4 de la Guía o utilizas mas mensajes.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

# -------------------------------
# Malwarebytes AdwCleaner 8.0.7.0
# -------------------------------
# Build:    07-22-2020
# Database: 2020-07-20.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    08-16-2020
# Duration: 00:00:03
# OS:       Windows 7 Home Basic
# Cleaned:  57
# Failed:   0


***** [ Services ] *****

Deleted       ReimageRealTimeProtector

***** [ Folders ] *****

Deleted       C:\Program Files (x86)\OneSystemCare
Deleted       C:\Program Files\Reimage
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\reimage repair
Deleted       C:\ProgramData\Reimage Protector
Deleted       C:\Users\Fede\AppData\Roaming\DRPSu
Deleted       C:\Users\Fede\AppData\Roaming\Jetmedia
Deleted       C:\Users\Fede\AppData\Roaming\One System Care
Deleted       C:\rei

***** [ Files ] *****

Deleted       C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk
Deleted       C:\Windows\Reimage.ini

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted       HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\drp.su
Deleted       HKCU\Software\OneSystemCare
Deleted       HKCU\Software\PRODUCTSETUP
Deleted       HKCU\Software\ProductSetup\Uninstall\0B2U2Z1P0F1P1G1R1P1V0A1Q1Q0O1G
Deleted       HKCU\Software\ProductSetup\Uninstall\0S1P1T1C1R1MtT0P1C1F2X1L1Q1P1QtT1S2UtT0Y1T1M1F1F
Deleted       HKCU\Software\Reimage
Deleted       HKCU\Software\csastats
Deleted       HKCU\Software\drpsu
Deleted       HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Deleted       HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
Deleted       HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Reimage.exe
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{78558E34-960C-48B0-954F-EC468E918F70}
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{B247981D-E8C9-4BCF-801C-C0032AE568BD}
Deleted       HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Deleted       HKLM\Software\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Deleted       HKLM\Software\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
Deleted       HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Deleted       HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted       HKLM\Software\Classes\REI_AxControl.ReiEngine
Deleted       HKLM\Software\Classes\REI_AxControl.ReiEngine.1
Deleted       HKLM\Software\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Deleted       HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Reimage
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C0441F5E-0761-4D2C-84D7-1ACAB0DF077A}_is1
Deleted       HKLM\Software\Reimage
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\REI_AxControl.DLL
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted       HKLM\Software\Wow6432Node\\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Deleted       HKLM\Software\Wow6432Node\\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\App Paths\Reimage.exe
Deleted       HKLM\Software\Wow6432Node\drpsu
Deleted       HKLM\Software\drpsu
Deleted       HKLM\Software\xsc-pr
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{16BFA971-939B-49A4-8244-718E43529192}|NameServer - "82.163.142.9"
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{16BFA971-939B-49A4-8244-718E43529192}|NameServer - "95.211.158.137"
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{44AB7441-741F-43C2-A73E-39659D151D21}|NameServer - "82.163.142.9"
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{44AB7441-741F-43C2-A73E-39659D151D21}|NameServer - "95.211.158.137"
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters|NameServer - "82.163.142.9"
Deleted       HKLM\System\CurrentControlSet\Services\Tcpip\Parameters|NameServer - "95.211.158.137"

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [6996 octets] - [16/08/2020 13:50:01]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
~ ZHPCleaner v2020.8.14.223 by Nicolas Coolman (2020/08/14)
~ Run by Fede (Administrator)  (16/08/2020 14:13:49)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparar
~ Report : M:\Escritorio\ZHPCleaner (R).txt
~ Quarantine : C:\Users\Fede\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : 
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Home Basic, 64-bit Service Pack 1 (Build 7601)


---\\  Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Hosts carpeta (1)
~ El archivo hosts es legítimo (21)


---\\  Tareas automáticas programadas. (1)
BORRADOS tareas: [Yahoo! Powered derom] [C:\Windows\Tasks\Yahoo! Powered derom.job (Not File) ]  =>Adware.YahooPowered


---\\  Explorador ( Archivos, Carpetas ) (245)
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Roaming\Riromonular.exe    =>Adware.Pirrit
MOVIDO carpeta: C:\Windows\Tasks\Yahoo! Powered derom.job    =>Adware.YahooPowered
MOVIDO carpeta: C:\Windows\Prefetch\REIMAGE.EXE-4681D307.pf    =>SUP.Optional.ReimageRepair
MOVIDO carpeta: C:\Windows\Prefetch\REIMAGEAPP.EXE-AB01F03F.pf    =>SUP.Optional.ReimageRepair
MOVIDO carpeta: C:\Windows\Prefetch\REIMAGEPACKAGE.EXE-6B1B7E03.pf    =>SUP.Optional.ReimageRepair
MOVIDO carpeta: C:\Windows\Prefetch\REIMAGEREPAIR.EXE-55829E90.pf    =>SUP.Optional.ReimageRepair
MOVIDO carpeta: C:\Windows\Prefetch\REIMAGEREPAIR.EXE-644F243E.pf    =>SUP.Optional.ReimageRepair
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\AmpSearchServiceLocalList.json    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\background.html    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\e_.json    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\index.html    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\manifest.json    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\responseConfig.json    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_metadata\verified_contents.json    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\bundle.v0.0.1.min.css    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\HelveticaNeueLT-Roman.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\HelveticaNeue-Thin.otf    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\neue.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\neue-bold.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\_enhanced_google.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\_gmx_large.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\alot.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\angle-arrow-down.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bg-joystick.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bing.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bing_large.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bluesky-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\brush.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bt.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\clock.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\cloud.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\cupcake-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\desk-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\doodle.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\down.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\enhanced_google.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\eyeglass.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\eyeglass_transparent.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\gmail-circle.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\gmx_large.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\google.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\google_large.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\grid-world.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\group.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\hero-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\inuvo-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\just-the-box.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\just-the-box-empty.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mail-black-envelope-symbol.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mailru.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mountain-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\outlook-circle.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\pointer2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\radio-selected.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\radio-unselected.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sea-bg.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\search-D7D7D7.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\search-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\settings.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\smallMagnifier.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\star.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\star-unselected.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\todoc.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\toggle-off.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\toggle-on.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\topdf.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\transparent_img.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\triangle.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo_large.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo-circle.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yandex.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\zapmeta.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\close-FF8A5A.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\collection-9B9B9B.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\collection-FF691E.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\doc-icon-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\error-FF691E.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\loader-FF8A5A.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-2-doc-9B9B9B.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-2-doc-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-icon-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\success-FF8A5A.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\tab-arrow-FF691E.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\upload-FF691E.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers\gmail-icon.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers\outlook.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers\yahoo.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\amazon.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\amazon-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\arrow-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\arrows.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\close.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\enlarge-000000-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\enlarge-FFCA00-000000.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\hulu.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\hulu-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\minimize-000000-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\netflix.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\netflix-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\play.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\refresh-FFFFFF-000000.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\reload-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shrink-FFCA00-000000.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shuffle-000000.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shuffle-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\vudu.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\vudu-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\addicting.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\shockwave.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\y8.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\128.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\16.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\48.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\close.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\favicon.ico    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\trends.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\bing-maps-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\from-to-icon-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\google-maps-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\location-icon-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\search-4A4A4A.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\search-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\switch-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\tab-arrow-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\whereto-logo-8881FF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\whereto-logo-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\aliexpress.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\aliexpress_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\amazon.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\amazon_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\booking.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\booking_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\ebay.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\ebay_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\expedia.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\expedia_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\facebook.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\facebook_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail_new.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\google-translate-icon-FFFFFF.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gtranslte.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\outlook-mail.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\pinterest.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\pinterest_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\twitter.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\twitter_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\wix.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\wix_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\yahoo.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\yahoo_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\yahoo-mail.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\youtube.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\youtube_tile_v2.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\DOC-to-PDF.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\PDF-to-DOC.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\Translation.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\View-PDF.jpg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\01d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\01n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\02d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\02n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\03d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\03n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\04d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\04n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\09d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\09n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\10d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\10n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\11d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\11n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\13d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\13n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\50d.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\50n.svg    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\css\style.css    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\HelveticaNeueLT-Roman.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\HelveticaNeue-Thin.otf    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\neue.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\neue-bold.woff    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome\websafe-awesome.css    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome\websafe-awesome.woff2    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\background.v0.0.1.min.js    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\common.v0.0.1.min.js    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\common.v0.0.1.min.js.LICENSE    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\index.v0.0.1.min.js    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin\icons\16.png    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor\md5.min.js    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor\react-with-addons.min.js    =>SUP.Optional.SearchManager
MOVIDO carpeta: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\fonato    =>PUP.Optional.WinYahoo
MOVIDO carpeta^: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove    =>PUP.Optional.WinYahoo
MOVIDO carpeta: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\temese    =>PUP.Optional.WinYahoo
MOVIDO carpeta: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\uninst.exe    =>PUP.Optional.WinYahoo
MOVIDO carpeta: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\uninstp.dat    =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\oonbcpdabjcggcklopgbdagbfnkhbgbe  =>.SUP.Orphan
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Roaming\DRPNPS  =>.SUP.DriverPack
MOVIDO archivo: C:\Program Files\Adroit System Care_Fede  =>.SUP.AdroitSystemCare
MOVIDO archivo: C:\ProgramData\Adroit System Care_Fede  =>.SUP.AdroitSystemCare
MOVIDO archivo: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adroit System Care_Fede  =>.SUP.AdroitSystemCare
MOVIDO archivo: C:\Users\Fede\AppData\Roaming\Adroit System Care_Fede  =>.SUP.AdroitSystemCare
MOVIDO archivo: C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time  =>.SUP.PopcornTime
MOVIDO archivo: C:\Users\Fede\AppData\LocalLow\Good Free Games To Play  =>PUP.Optional.ScriptHost
MOVIDO archivo: C:\Users\Fede\AppData\Local\Popcorn-Time  =>.SUP.PopcornTime
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_metadata  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\css  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin\icons  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor  =>SUP.Optional.SearchManager
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\chromium-min.jpg  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\control panel-min-min.JPG  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\down.png  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\ff menu.JPG  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\ff search engine-min.png  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\HowToRemove.html  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\hp-min ff.png  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\hp-min ie.png  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\search engine.gif  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\setup pages.gif  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\sp-min.png  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\start-min.jpg  =>PUP.Optional.WinYahoo
MOVIDO archivo: C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}\HowToRemove\up.png  =>PUP.Optional.WinYahoo


---\\  Registro ( Claves, Valores, Datos) (7)
BORRADOS clave*: HKEY_USERS\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Adroit System Care_Fede []  =>.SUP.AdroitSystemCare
BORRADOS clave**: HKCU\Software\Adroit System Care_Fede []  =>.SUP.AdroitSystemCare
BORRADOS clave*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Popcorn-Time [Popcorn Time]  =>.SUP.PopcornTime
BORRADOS clave*: [X64] HKLM\SOFTWARE\Adroit System Care_Fede []  =>.SUP.AdroitSystemCare
BORRADOS clave^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Yahoo! Powered derom []  =>Adware.YahooPowered
BORRADOS clave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BitLord [House of Life]  =>SUP.Optional.Conduit
BORRADOS clave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8C8C644C-DC0C-B5CC-6D8C-C54CBD0C16CC} [Web Search (Yahoo! Provided)]  =>Adware.YahooPowered


---\\  Resumen de elementos en su estación de trabajo (11)
https://nicolascoolman.eu/forum/Topic/yahoopowered-logiciel-publicitaire-adware-2/  =>Adware.YahooPowered
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>SUP.Optional.SearchManager
https://nicolascoolman.eu/2017/02/25/adware-pirrit/  =>Adware.Pirrit
https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/  =>SUP.Optional.ReimageRepair
https://nicolascoolman.eu/forum/Topic/winyahoo-logiciel-optionnel-potentiellement-indesirable-pup-lpi/  =>PUP.Optional.WinYahoo
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/  =>.SUP.Orphan
https://nicolascoolman.eu/2018/07/04/sup-driverpack/  =>.SUP.DriverPack
https://nicolascoolman.eu/2019/07/07/sup-adroitsystemcare/  =>.SUP.AdroitSystemCare
https://nicolascoolman.eu/2017/02/26/superfluous-popcorntime/  =>.SUP.PopcornTime
https://nicolascoolman.eu/forum/Topic/scripthost-logiciel-publicitaire-adware/  =>PUP.Optional.ScriptHost
https://nicolascoolman.eu/2017/02/06/superfluous-conduit/  =>SUP.Optional.Conduit


---\\ Limpieza adicional. (3)
~ Clave de registro Tracing borrados (3)
~ Quitar los antiguos informes de ZHPCleaner. (0)


---\\ Resultado de la reparación.
~ Reparación llevada a cabo con éxito
~ Google Chrome OK
~ Internet Explorer OK
~ El sistema ha sido reiniciado.


---\\ STATISTIQUES
~ Items escaneado : 2054
~ Items encontrado : 0
~ artículos cancelados : 0
~ Ahorro de espacio (bytes) : 0
~ Items opciones : 8/15


---\\ OPCIONES NO ACTIVAS
~ Análisis temporal de archivos
~ Análisis temporal de carpetas
~ Análisis de CLSID de carpetas vacías
~ Vaciar otro análisis de carpetas
~ Análisis de carpetas locales vacías
~ Análisis de carpetas locales vacías
~ Análisis de archivos de instalación obsoleto





~ End of clean in 00h03mn38s

---\\  Reporte (2)
ZHPCleaner-[S]-16082020-14_11_22.txt
ZHPCleaner-[R]-16082020-14_17_27.txt
Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 16/8/20
Hora del análisis: 14:37
Archivo de registro: 270bddaa-dfe7-11ea-91e5-94de80a78c16.json

-Información del software-
Versión: 4.1.2.73
Versión de los componentes: 1.0.1003
Versión del paquete de actualización: 1.0.28571
Licencia: Prueba

-Información del sistema-
SO: Windows 7 Service Pack 1
CPU: x64
Sistema de archivos: NTFS
Usuario: Fede-PC\Fede

-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 234865
Amenazas detectadas: 274
Amenazas en cuarentena: 274
Tiempo transcurrido: 2 min, 50 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 22
PUP.Optional.PCVARK, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Adroit System Care_Fede, En cuarentena, 528, 702106, 1.0.28571, , ame, , , 
PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\NAHHMPBCKPGDIDFNMFKFGIFLPJIJILCE, En cuarentena, 439, 440037, , , , , , 
PUP.Optional.SearchManager, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\NAHHMPBCKPGDIDFNMFKFGIFLPJIJILCE, En cuarentena, 439, 440037, , , , , , 
PUP.Optional.SearchManager, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\nahhmpbckpgdidfnmfkfgiflpjijilce, En cuarentena, 439, 440037, 1.0.28571, , ame, , , 
PUP.Optional.TTab, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\OONBCPDABJCGGCKLOPGBDAGBFNKHBGBE, En cuarentena, 2634, 591237, , , , , , 
PUP.Optional.TTab, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\OONBCPDABJCGGCKLOPGBDAGBFNKHBGBE, En cuarentena, 2634, 591237, , , , , , 
PUP.Optional.TTab, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\oonbcpdabjcggcklopgbdagbfnkhbgbe, En cuarentena, 2634, 591237, 1.0.28571, , ame, , , 
PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\PILPLLOABDEDFMIALNFCHJOMJMPJCOEJ, En cuarentena, 439, 183362, , , , , , 
PUP.Optional.SearchManager, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\PILPLLOABDEDFMIALNFCHJOMJMPJCOEJ, En cuarentena, 439, 183362, , , , , , 
PUP.Optional.SearchManager, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, En cuarentena, 439, 183362, 1.0.28571, , ame, , , 
PUP.Optional.Reimage, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\LOCAL APPWIZARD-GENERATED APPLICATIONS\Fixer - Windows Problem Relief., En cuarentena, 388, 709541, 1.0.28571, , ame, , , 
Adware.ForcedNotifications.ChrPRST, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME, En cuarentena, 6620, -1, 0.0.0, , action, , , 
Adware.ForcedNotifications.ChrPRST, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\CHROME, En cuarentena, 6620, -1, 0.0.0, , action, , , 
Adware.ForcedNotifications.ChrPRST, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\POLICIES\GOOGLE\CHROME, En cuarentena, 6620, -1, 0.0.0, , action, , , 
PUP.Optional.PCVARK, HKLM\SOFTWARE\WOW6432NODE\Adroit System Care_Fede, En cuarentena, 528, 702105, 1.0.28571, , ame, , , 
PUP.Optional.SelectedSearch, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\EGENICDIAFGBHOGABODHPFCBCGNPOCIP, En cuarentena, 289, 793066, , , , , , 
PUP.Optional.SelectedSearch, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\EGENICDIAFGBHOGABODHPFCBCGNPOCIP, En cuarentena, 289, 793066, , , , , , 
PUP.Optional.SelectedSearch, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\egenicdiafgbhogabodhpfcbcgnpocip, En cuarentena, 289, 793066, 1.0.28571, , ame, , , 
PUP.Optional.PCVARK, HKLM\SOFTWARE\QWRyb2l0IFN5c3RlbSBDYXJl, En cuarentena, 528, 702107, 1.0.28571, , ame, , , 
Adware.Adposhel.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BCE7A64A-5364-A4B1-BAB1-4EFAC35481B0, En cuarentena, 3777, 701906, , , , , , 
Adware.Adposhel.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7A0180B7-F930-488C-BD79-8AAB443D4B2E}, En cuarentena, 3777, 701906, , , , , , 
Adware.Adposhel.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{7A0180B7-F930-488C-BD79-8AAB443D4B2E}, En cuarentena, 3777, 701906, , , , , , 

Valor del registro: 3
Adware.ForcedNotifications.ChrPRST, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\POLICIES\GOOGLE\CHROME\NOTIFICATIONSALLOWEDFORURLS|1, En cuarentena, 6620, 787272, 1.0.28571, , ame, , , 
Adware.ForcedNotifications.ChrPRST, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME\NOTIFICATIONSALLOWEDFORURLS|1, En cuarentena, 6620, 786859, 1.0.28571, , ame, , , 
Adware.ForcedNotifications.ChrPRST, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\CHROME\NOTIFICATIONSALLOWEDFORURLS|1, En cuarentena, 6620, 786859, 1.0.28571, , ame, , , 

Datos del registro: 3
PUP.Optional.WinYahoo, HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Sustituido, 240, 293459, 1.0.28571, , ame, , , 
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Sustituido, 240, 293461, 1.0.28571, , ame, , , 
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Sustituido, 240, 293461, 1.0.28571, , ame, , , 

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 51
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\pt_BR, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\vi, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\fr, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\en, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\hi, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin\icons, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_metadata, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\css, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin\icons, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_metadata, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\skin, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\css, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0, En cuarentena, 439, 453140, , , , , , 
PUP.Optional.SearchManager, C:\USERS\FEDE\APPDATA\LOCAL\CHROMIUM\USER DATA\Default\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, En cuarentena, 439, 453140, 1.0.28571, , ame, , , 
PUP.Optional.WinYahoo.TskLnk, C:\PROGRAMDATA\{B7117272-3D53-F8B4-BB95-66F621D7ED38}, En cuarentena, 900, 484243, 1.0.28571, , ame, , , 


Archivo: 195
PUP.Optional.SearchManager, C:\USERS\FEDE\APPDATA\LOCAL\CHROMIUM\USER DATA\DEFAULT\LOCAL STORAGE\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage, En cuarentena, 439, 260989, 1.0.28571, , ame, , 6E1AB52E7DC834DAB013BD08841983F1, 31C29EBF2F548BA67F5EA3A64A04014D1986C97E7BF0A24DE632683F6C4947E3
PUP.Optional.WinYahoo, C:\WINDOWS\TASKS\Yahoo! Powered derom.job, En cuarentena, 240, 308966, 1.0.28571, , ame, , F12633ECCF70363FDD1FEF9D16188F7B, 07F46F4A2982ADF2E5317AF29915D7123B0B2D0B4A7E43B31A61406989741C5C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\HelveticaNeue-Thin.otf, En cuarentena, 439, 453140, , , , , C5A5CBF4DBCAA7064F2BC77F52101AEC, 6F6F5810C0E6D178304860E89D6F665727BC72CB9CD9F96A91C2291A2BB17C53
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\HelveticaNeueLT-Roman.woff, En cuarentena, 439, 453140, , , , , E5D3501D500D07B0A1E952B0F8A81D78, C1FC1D23CA5632B0F8C494247569B7D0442DB6A154BEA1386D8CF7463F5294D1
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\neue-bold.woff, En cuarentena, 439, 453140, , , , , 2BFC185BE71F44CD73AC81511FC1F5A5, CAC0586C980357E4DF7737EEB1FE52DCC81EAD29408D981930EE192EEF8A87B9
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\fonts\neue.woff, En cuarentena, 439, 453140, , , , , B495E340F4EF8924FEA0284C1BF9E7AC, 5FF3D9ABCFCFB4AABCA0D78A830FFC3D650BF349096D8430081C706A4CF39F5A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\close-FF8A5A.svg, En cuarentena, 439, 453140, , , , , 4A80D58205AB774FC4976388D3307AEC, 88127044FB595C8394319F08EBBB93C760745ADBB5A58F572E0BC0FDB322F392
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\collection-9B9B9B.svg, En cuarentena, 439, 453140, , , , , A0DA96A1D553D4F0B0891CE9386B2306, D2D662A38C4F87ADD457FCB563C6843F0310FC2442C73A4BC99B32931E9AB7F9
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\collection-FF691E.svg, En cuarentena, 439, 453140, , , , , 61039C5B2DF7A6F186D32C7915628916, 70CDC53A7F805D6970A87FD9015682AD20CA0FD50504028862ACA5B6CC27A6D4
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\doc-icon-FFFFFF.svg, En cuarentena, 439, 453140, , , , , F83B70A29C69822FD97017715DD061DE, F2C087C73FA37454008814417290468F906CDFBBEFB69D4C24D5A9CB99C4ABC0
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\error-FF691E.svg, En cuarentena, 439, 453140, , , , , 875D30CB485CCE372F6A699A823DAC8D, B78B0A1117A7897F3393D24AD8EC8A95331B163FEB1EB291E5170C019B9A7F64
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\loader-FF8A5A.svg, En cuarentena, 439, 453140, , , , , 309EF3D46EEB8688365853F9E0611D27, D72E05730E0B3490DD25AF0A70F1466C7F36F731ABD60A7E8EFB1C4DF0071A97
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-2-doc-9B9B9B.svg, En cuarentena, 439, 453140, , , , , 71AD638CAA9A2CAFBC0C7C6ECE2F90B1, BB00C1BAD2A1EA371E732C652BFB53669B6CD9174634771EB62EAE23915993E4
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-2-doc-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 653A6365B411A5990678067EC504BB78, 1C5C56DF2B074DE6E0290E3EE990E8393F588C0F52C4A6391F194677709F4611
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\pdf-icon-FFFFFF.svg, En cuarentena, 439, 453140, , , , , A76D5DAC86629427E2366538BA2C3BEC, B1C3F9E763861193B5E15B35475F1824D5BC6728DC35F0614C2157AB26816B39
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\success-FF8A5A.svg, En cuarentena, 439, 453140, , , , , A9DD730CE87BA837AA6A8E7B9C67E982, FB4FD1B22C5A6D4CB5C2384C363DCC60EDEF1D17FE40EED023C155F8650AD545
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\tab-arrow-FF691E.svg, En cuarentena, 439, 453140, , , , , DA3ACA5622DFF36FA4C5A1F8028EF115, 000730DA40A16A291F6D1BB0232DC7D7C11B7EE2D0A67710AC9B403FD689BFC1
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\converter\upload-FF691E.svg, En cuarentena, 439, 453140, , , , , C45824C444FFD555151AEB666F846251, 1439CE5FCD02B4B1B44DE668EC4EC107F4D532C1D63D9BCB04E18E9316B9C638
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers\gmail-icon.png, En cuarentena, 439, 453140, , , , , F24A32734A17F218F76A25B27D253FD0, 8FCDAF059148F2187D27C02B2D74DC65EA33E66C39E7CA2D7E4A4D401FE8AFB3
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\email_providers\outlook.png, En cuarentena, 439, 453140, , , , , B32AC4D373912BDAA20974978E3184AA, F1595686210A7DE8D68EB0D581C2F4EA6AA94BC9DE39B154BE1F1D7A92EFF56C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\amazon-FFFFFF.svg, En cuarentena, 439, 453140, , , , , BB9FF4712213AD26BD06AA81071FE017, C684AB1E96F1462454E35629057E1CD783AADF62F945B711C8AB5FAF9CFF5000
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\amazon.svg, En cuarentena, 439, 453140, , , , , E72A1F268048B5F58550E3587FD5B0D7, BF0398F2096F971F7E556C3BA3224964D40AC14B1B546252107EFF065A646D1D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\arrow-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 887B666DD65E7C1CE2DD10913485F86F, B31439DF4B3C85C5484004E7DEEB4C82EF9490791EC9E3BDCA6CBCE403780854
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\arrows.svg, En cuarentena, 439, 453140, , , , , A46787006D0DC5375C07AF3FF0F823B1, 4C68F5164499463C602050B639DC017127D5E71A5C47A6968048A579932CD576
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\close.svg, En cuarentena, 439, 453140, , , , , F84AB4F984CE341B3D4A0D4BDE6EC2E8, 5308DE2F145F02270C009AFA096BB3B8EF825F486FFF5283FAF305A9F5988671
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\enlarge-000000-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 5191E0D3C851E628141D946C7BF14C34, 66D54F97A63CAEB0C7A23C94747499A7FC8B7C7A21EEEFCCA855FD1F88D71765
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\enlarge-FFCA00-000000.svg, En cuarentena, 439, 453140, , , , , 94C7911BD57130A963F0E29C25684886, 320C790D1D83842A12639C2578D8AA672430265F33CBA4CD62D7485B5CADF1A6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\hulu-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 17E3B3E41B38D24943EC931711E73662, 89DDFA5C2FE951F79A9A6440778BAEEC239954C4092600049661BBF0565BEBCD
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\hulu.svg, En cuarentena, 439, 453140, , , , , 7AF3830E6160EB9AB5F9D3B4E5F886F8, 80E86C9554204A440E2B2DBC97AA0CF14AB7E39BF1200FEBB4ECC8131EB012EB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\minimize-000000-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 8C9A28F42421F90034B7505C78DC53E0, 608CF1868EFA14A5EEC1819DC65F2111B10429AD58F156107BD3DAE895E93ECC
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\netflix-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 9CF15EE2EE8B63417CBC6FF4A28C333E, 7093D0C9D386A229BBAA54E3DE3276E6683D25DA98581659E3B8E6EC0C87406B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\netflix.svg, En cuarentena, 439, 453140, , , , , 3DA6DF8CAC415FC86C150A3485D30A6F, 68E5F3920092BF85E0043D7B8EBB280946425F17376C04D8AC1C30D7D70673FC
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\play.svg, En cuarentena, 439, 453140, , , , , F95FA985E0722185A9A3373D9B9780E3, A381FD91C06FF85EB6F05616893AD2C3107C32CD4598C9AEBE3DE56B09C35557
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\refresh-FFFFFF-000000.svg, En cuarentena, 439, 453140, , , , , D61458D1C6EF7EAA7EF49BEF3315A249, B2B287EEFF784177EE8D4E2A4B1F1AB1D224F920060BFF85ADB06E939E6039DB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\reload-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 6005D723ACFC00C537FB21B00203A6A2, DE299CBACB740DF8E27F1AFF128FD6593FFCC519E68B8D974787DC8D7C310DEB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shrink-FFCA00-000000.svg, En cuarentena, 439, 453140, , , , , 6E709724C9C0E5211BFB534F67C14340, BBE6F1C1E35A6DD90E3CA292DD45229C897A574E11CA59D62A1F856F3FDDA0E8
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shuffle-000000.svg, En cuarentena, 439, 453140, , , , , 5A13A63D26126ADD1DEEEC5E282F923B, B5A963389F99AB949FAC37C52E2FA31382BAF4A16A38C68227852C8C5464B42A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\shuffle-FFFFFF.svg, En cuarentena, 439, 453140, , , , , DD6FCB16BEE7BC93CC5C9EDDB367CD75, 459A5B3DA41FA3430364897E7C3387CB1856F5BD5017A87A31FB47B4212BB817
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\vudu-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 0236474E43DF212DE85B7E16D1806CF0, 433E8DE545A17D3F8946BCEC404D5C37D6111FB034B61B200E700E84DCAEF2AB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films\vudu.svg, En cuarentena, 439, 453140, , , , , 39ED5E296F98B21EFDA2DBF6D61F1391, F487F251091AEC4D957531F223EB65392CC9B6609F84F89DDFF49A14B460FFCD
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\addicting.png, En cuarentena, 439, 453140, , , , , 78C757213DE423CD5757372BD5DB5DC0, 69F03E80BBFF8754CE5EE0140F12CC8C62F00240A4BC031C6878B8EC721BD329
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\shockwave.png, En cuarentena, 439, 453140, , , , , DF0B11256C53CAE52813E23FB1976C3C, BD8FCAE40E0083F75222A27029A0017C6B8EC21C6A47EE4D21CF27A494D86939
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\games\y8.png, En cuarentena, 439, 453140, , , , , 50C92B299EE08E1FF2F0AD2BF8B9A7D1, F0A338A8A2E59F0E0C9B54F71B6EE16AFD7AF92F0F2A9DF710A3742AE7C7AAA6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\128.png, En cuarentena, 439, 453140, , , , , 462993FBF692B7CBEF76FC91BC9A32C6, C0311D29A4EA8A84406C7F3FD9034FEAAFA8DAB204D54C51A5BC59CA2F662AB6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\16.png, En cuarentena, 439, 453140, , , , , D03319C32C3CE8E905C52D3498477CA8, 9A1AACBA33C568AA7C7CCD5FC443DD17D7CCDF109560FC43FCBFB9BA34A254C5
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\48.png, En cuarentena, 439, 453140, , , , , E204205D57A71FBE341B271444D6990E, 257B95A239165C716D740ABEF88647554A05D982306DE5E4F9D2A12457B8F88A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\close.png, En cuarentena, 439, 453140, , , , , 8642A94143685C619E4679AE9636FF15, AF819CA0DDEBBE607B08B10E0E5862C7BE82CF66271EBE934D112CE9AF8EAEF5
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\favicon.ico, En cuarentena, 439, 453140, , , , , E204205D57A71FBE341B271444D6990E, 257B95A239165C716D740ABEF88647554A05D982306DE5E4F9D2A12457B8F88A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\icons\trends.svg, En cuarentena, 439, 453140, , , , , 657D21838DC1D3C0928D86847011F596, 9ED15088EEB3CB84D9093EF48B60AAB855ECEB011B37E2CAEA77D45DBD903751
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\bing-maps-FFFFFF.svg, En cuarentena, 439, 453140, , , , , D39CF5209547821286C8372F3503E11C, 1BAA97E80E6C6882AEBCCA9060B4387B9CF5CC481F60BFD82B1FCD2339FF8413
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\from-to-icon-8881FF.svg, En cuarentena, 439, 453140, , , , , E291D962B7170CE66EC950440709F704, 5FF60A2E4769D3D8818C2610038FB8058196FF24D49BF6C3840057244C2ABE1E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\google-maps-FFFFFF.svg, En cuarentena, 439, 453140, , , , , B151F8D2E4F960AC54459A69007C3836, 2555F948D1112BC8E1CF74CD2C445046104CB4F7D983EACB7DF8B30827C6F69F
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\location-icon-8881FF.svg, En cuarentena, 439, 453140, , , , , F55950ED454A241F73482F9BD8DFA050, BFAFA3B30E66650D65A9386AB7AB84EF7DA302D190701A3A62679DF90116B958
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\search-4A4A4A.svg, En cuarentena, 439, 453140, , , , , BE360FB402403AC6D760842F5646885D, C3F09FA31008DD68EE311771389E0F8CE48E27E40535DC1EC3AD986245376BBD
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\search-8881FF.svg, En cuarentena, 439, 453140, , , , , 747C7F63FB92636BD954A10A92A5991E, 4227E1796A1D6B0B4FFDBE0F2B5E4888E5BC6160714C30BAC7BAE18FDB7D759A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\switch-8881FF.svg, En cuarentena, 439, 453140, , , , , 0689E9D7DA4523E4B4EFE2AAF58C4501, BC142AD1E9B5BFFEFB7B979D7F4639E4639B508776DC9E17F053A3F124409041
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\tab-arrow-8881FF.svg, En cuarentena, 439, 453140, , , , , AC9807F702C11066CDA4BD6811020FC2, 8F649D2499BB6D828322B1EE0549C4E735AF0ED02CB80804AADFAFC9AB285455
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\whereto-logo-8881FF.svg, En cuarentena, 439, 453140, , , , , D1D2CD7D1B66B4153ECFCF5CE85F34D9, 2C18A57A4369E5126201C97EA7B69202AD52FFAB94A25C5BE7C607E2284BF93F
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\maps\whereto-logo-FFFFFF.svg, En cuarentena, 439, 453140, , , , , D652D518ABFF7B46805134E4A9076532, 2E7FB42651DCE99D30E59EE2CE8DC6DD9EC4F5BC71C01A0C07398029C7C04953
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\aliexpress.png, En cuarentena, 439, 453140, , , , , 686FA95429D24EBF5E4A3BE0C573D65A, C8D128BB3C4ABB2932550DB155DCA4EFBD83C7E9AC696D4CC7F345BE3F866CCE
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\aliexpress_tile_v2.png, En cuarentena, 439, 453140, , , , , 752DE76BF27550AFB406A686A6B4687E, BEC86D637E035CE3583E0B237544A35BB03B0A278BAABE651AE42DBE3EDDA459
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\amazon.png, En cuarentena, 439, 453140, , , , , 74B8BA5E8F84EB83D1117D70E2AB915D, 964A0DA8545116A699015D4C18A2BD83D86D9F735ABA5659B06AE09525ADF925
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\amazon_tile_v2.png, En cuarentena, 439, 453140, , , , , E1ACDBE0E1ECC41F1856FDAF3ECE859C, 1E614B9810FF190640DEBFBB7D7EAFBE7C64BCCC4F8B68AF1707D14BC9069BEA
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\booking.png, En cuarentena, 439, 453140, , , , , 28BB2450BAD16664D554D64927FC1DD6, F15059CEC25772272A6DB34A66916FDAF9856F57BE17297BA9338E6FAF3EAF3E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\booking_tile_v2.png, En cuarentena, 439, 453140, , , , , 962F714A1042586ABF2DA2878EBC76FC, C29BF914A616B24287B7E7C7C1B00FD26785F390034C8138B45340A2C0A64AEB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\ebay.png, En cuarentena, 439, 453140, , , , , A71801E96288F2EA581E1E57CE081400, 447D931F309E98A9A35B4E4BBA6952EF49DE62F23E4CE7BFF35306A6AB739E4A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\ebay_tile_v2.png, En cuarentena, 439, 453140, , , , , B410CD3C54D84D9BE0F6C8B43D708F1A, CADD4680EC639684080FE8C6A77B1E3CBBAE8098FF7CB1281EFB005E100AFF01
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\expedia.png, En cuarentena, 439, 453140, , , , , 683CBA1E14E075D072D3FB44767E4A47, A6A1D2A18AE420ED4A1964CDEE6F83E3CEFFF1B29D12BC0509B7191CD641D086
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\expedia_tile_v2.png, En cuarentena, 439, 453140, , , , , 27148C4238B988F9BD30F9C1FB7AB3B1, F8F64F15C3407BD9BF66262A93FB7BFFBD69E85A4C09AD367766B58830B99B9D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\facebook.png, En cuarentena, 439, 453140, , , , , 464610302E3E9D30C00C6CA3FFAA0BDE, CBDCFA7648795152BBBB8B055D6A31A5F1A1942E93B5C758BA01E1EC92F4F8FE
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\facebook_tile_v2.png, En cuarentena, 439, 453140, , , , , 89C370427B295B609327E56B510D31B1, 7946C0EF42E8728666B2CD949418019A1FE77475935D729E0E78E970F9BAB43D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail.png, En cuarentena, 439, 453140, , , , , A5537892B5B5689BAD51B05C969A3E88, 4CEF5CF01D0487581495A123E99238E7805E09A4B3D65348A7AA765D080E1310
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail_new.png, En cuarentena, 439, 453140, , , , , 6C48F7848B8E74D3AFBCBCD4A711706F, 2847DE460ADB91F775996DC747C92EBC50859F583784B848A3404F3878C5584B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gmail_tile_v2.png, En cuarentena, 439, 453140, , , , , 118D9A4F0B0FD0789319B68B658EC7C9, 0A5536D5AF109B7F269EC8B06BF66195DC530955F072496A20707202CFDFD8FC
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\google-translate-icon-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 84A5A793F7401D68D1DC805DD57680A1, 6F341FB2D6A3FFA427171E7D23AE1D8F7336667F0286DE20D7C3F3C428A657CD
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\gtranslte.png, En cuarentena, 439, 453140, , , , , C4C3B1448C740CB7527AD96BCFF78B3C, ABB886B7D12FAC6DB5C4D2CEECEE7472C0AE930C031039A3B29AF6B75BF92683
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\outlook-mail.png, En cuarentena, 439, 453140, , , , , DB1C02AA7A6533E358C106DFB4789D97, FD59C0FA80F550EF14DAEDC62175FC0346A30871664D7B93E8B190A4A164B845
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\pinterest.png, En cuarentena, 439, 453140, , , , , 98FECD4F7A9338031525ED6257F81EA6, 51EB2ECC4D4E1E30937CD8AC76EF37C126B8D1CD8742E0FB679C9E77D0F1686B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\pinterest_tile_v2.png, En cuarentena, 439, 453140, , , , , ED4CAF9EFEC9D9407588E129193EAB84, 9BE8DDF066AB615124503240ED2658F80EBADB1B2BA6E569B597AF360A4EFD3D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\twitter.png, En cuarentena, 439, 453140, , , , , 78544CAF48C1C5F4BFCE8A4067AE489A, 776CC749B522946FF0643116CEF457CF824BE65BA6C94E0A0E79C1855651138C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\twitter_tile_v2.png, En cuarentena, 439, 453140, , , , , 31308263C25231ED49C6176B3B43D01E, 4CEF37D0D20120AA5F11967FC86489B5254069F0308B60395B156F38FF8B0E40
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\wix.png, En cuarentena, 439, 453140, , , , , C3A8D9011FB16BF0971A5654413673BC, 8718260341BB297591C8E25D121A75ADBD83F37C654D18AC6C03337F1ED4FFB7
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\wix_tile_v2.png, En cuarentena, 439, 453140, , , , , 5583B6F85590829DF86B0F9C725B887A, 9D825C8FA7FE85473427560C7AED7109259E434A06684AC497056110F892B6B7
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\yahoo-mail.png, En cuarentena, 439, 453140, , , , , 1509C53C639713CF1EAE88AD5F84BBC3, A4EAF9C825DD0505F9E2C33C3D77FF4F0F331D80B4341970B3349807E9052F9D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\yahoo_tile_v2.png, En cuarentena, 439, 453140, , , , , 5FDDAEFFC94EE59047CD316AC29D5436, 75F0F8566F4C1B645B17CF849CB8F7CE300EBCFB44AC18D23DF869BC9E3BD378
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\youtube.png, En cuarentena, 439, 453140, , , , , A70A1A00BE74CC25D63E69FF9FCBF326, 84FE00F1E1F9D7ABD1B0FAA96A7C2FB8BD1B8D36DC274F4CC5F5E3F4875E5C41
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sitesThumbnails\youtube_tile_v2.png, En cuarentena, 439, 453140, , , , , 45F0F899A22D1DD08B12BC5C1CE5A95D, CE52651611E978674422B4BEB8711048F310FDCE60A6C8C5D68FCBC9899E4A62
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\DOC-to-PDF.jpg, En cuarentena, 439, 453140, , , , , D5E2C08361C1631A07A37F80AEBAB82F, 870EEBFB15F896262E0C14794F8552D7566DD1C0734D2F224BFC6B086B8C725B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\PDF-to-DOC.jpg, En cuarentena, 439, 453140, , , , , 5C33F457B28E23FA227C45C71E11AAD1, 93679E40968244D8B01D22E74CC01668D6F99330088BCB86CC6D38355E044A03
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\Translation.jpg, En cuarentena, 439, 453140, , , , , 59E53F622A25B5C9D216087B0BC42817, 8206211E3BE7C6F3A36A29130DD786A080745D49A6C7B087C69C0C5CA20D2736
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\tiles\View-PDF.jpg, En cuarentena, 439, 453140, , , , , CD4308B06D2C39743A3C88407C2F38F5, A5401BD3DD854688D2272F535BC9773C475871EE63469227E5299E25C675B593
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\01d.svg, En cuarentena, 439, 453140, , , , , 91BF569906A08540DD30B87603DD14C0, 7F877B248F3FF20B65CF8B04328BFD35AAE658D7901F4C375722D1B6C781E6C4
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\01n.svg, En cuarentena, 439, 453140, , , , , 3A5675A4A8797216EEA87EB651685FBD, CF200BB32A0475E47D63FA692CBFF221B12A40B6650460923C455C3E72B417BD
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\02d.svg, En cuarentena, 439, 453140, , , , , A9EE40BC8EA6482ECF3217BBAD2C0DBB, 86B8F0EA51C1BE197C2A228CE7BBC3368B973F2AF93A786AD26E1FFBBA808392
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\02n.svg, En cuarentena, 439, 453140, , , , , FA89FFBBA65F0FCC2085EB10E037C8C4, 7877EB3F89B1D9600AAA7ADF1B4678EC49BB362E70BD96E95267098555B870D1
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\03d.svg, En cuarentena, 439, 453140, , , , , 4D92354654B34FBC13D54009055350FE, 8DC413FB4089E93564D87BBE3452026B9CA169A96876CF9C04018D3710240611
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\03n.svg, En cuarentena, 439, 453140, , , , , EA8CE541BD81A497DB154C45576BDC64, 4C28521358132AE4C14DF9EA1C78D7A2EDCAAAD7B1BFAAD14B32B4A8B20ED8C8
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\04d.svg, En cuarentena, 439, 453140, , , , , 802A7898EE61A2495FF0829503034B82, DE52D064B40DF002BF2C5477B0A1E94639905BBB339409E9DF161732750AEB97
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\04n.svg, En cuarentena, 439, 453140, , , , , 7C73AAC0F8F8726BD296AB78952F2E4C, 189C4A18855CCDB88074CCC192BAF403FDF8CCE4D7266DC1AF0D0F3C139CEB16
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\09d.svg, En cuarentena, 439, 453140, , , , , E3D5A78C7FD6D635FA37364EEC497AD1, AC35DCBBDDA08309B98B43ACD63B48795A339D8535A44693A99F312A20D4A245
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\09n.svg, En cuarentena, 439, 453140, , , , , E3D5A78C7FD6D635FA37364EEC497AD1, AC35DCBBDDA08309B98B43ACD63B48795A339D8535A44693A99F312A20D4A245
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\10d.svg, En cuarentena, 439, 453140, , , , , 43E644FBC32C233DAE81CF8867BCA186, 74BDE29BE4A31C0E977566E3A2DD5AFD8C0089932199E3F99DA9B1C624E45271
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\10n.svg, En cuarentena, 439, 453140, , , , , 6DF6F1350FE882002BBFA9CA8D3CA155, E19BB435B53D88C78A74B479716B321945A58A9D983AD8E00D6CA076E62B3078
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\11d.svg, En cuarentena, 439, 453140, , , , , F09DDA9845543AE2851296CD61F9010D, 0D25EB3D591139E3F83FAF4D9A338CD7253A76A456190E191B302611A9157BD2
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\11n.svg, En cuarentena, 439, 453140, , , , , F09DDA9845543AE2851296CD61F9010D, 0D25EB3D591139E3F83FAF4D9A338CD7253A76A456190E191B302611A9157BD2
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\13d.svg, En cuarentena, 439, 453140, , , , , 4DBC85BDB2EA21F811FBB529C5AB92C5, 84B036879F2552EFE8B2FBFEF6B4BD2C94524B865C79CE74D636CF5208CE6268
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\13n.svg, En cuarentena, 439, 453140, , , , , 4DBC85BDB2EA21F811FBB529C5AB92C5, 84B036879F2552EFE8B2FBFEF6B4BD2C94524B865C79CE74D636CF5208CE6268
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\50d.svg, En cuarentena, 439, 453140, , , , , 60D739B46B108111B80BE45EB0FFCED0, 2C224A297B9EDABC64AF357DBF9DC251F55F51642008D270987C25A1D62D6E16
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\weather\50n.svg, En cuarentena, 439, 453140, , , , , 60D739B46B108111B80BE45EB0FFCED0, 2C224A297B9EDABC64AF357DBF9DC251F55F51642008D270987C25A1D62D6E16
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\alot.png, En cuarentena, 439, 453140, , , , , 8CA097909979D35F3258763BBDF9E89F, 1A681F585B730E262896CB8711B4090136A28D5E6C67FE212EE7D66E6FD8C9C6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\angle-arrow-down.png, En cuarentena, 439, 453140, , , , , 425C99F0A3D4F8DB303A12F9EF28EAAF, 825307A95824D83485CFB8C015BFAD064E6B2A3FD03425A668C56992337BC44A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bg-joystick.jpg, En cuarentena, 439, 453140, , , , , 459335DBAF967F869435D7B78AE9134F, 83AE0DA8594DD99FA30E8F4A862C87BF76D4AA36D6604692B8DC75EBADECCA28
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bing.png, En cuarentena, 439, 453140, , , , , BB17EF823996DC8DE713736CD542D2A3, 9A37C0A4AF294D70BBE1F751FA8A49F494268920EAB512112B129D92B75146A4
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bing_large.png, En cuarentena, 439, 453140, , , , , EEF8B72DCABE1A740BEA89B19723628C, 96FF5E05A7DDFEBF34154A502AD7B1DCE914314FF334897FBB86DCA49D5AC092
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bluesky-bg.jpg, En cuarentena, 439, 453140, , , , , 264E6A188FCC47A9A69169FC8130A383, B212BEBCCF4D150CA6F718EEC38B78A99A75F716450DA700C5BDE472949D0010
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\brush.png, En cuarentena, 439, 453140, , , , , 5AB11CB242F23ABFFA4A597012F36854, F4111CBF2E0CA5B0DF7E6EFB6406C8C53A937D2C36121DC89AA934409F54A3B6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\bt.png, En cuarentena, 439, 453140, , , , , A366EEBA3F55C0DD73DC77D6A8ADB8E2, 22D73AFB1BC0026D0B666754990BBB0C1B36301ECD72775A92833D2FA60E18C6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\clock.png, En cuarentena, 439, 453140, , , , , E010C449FDF59B76A6B0483668EF78A7, D17A6D266FB38258BDAF28366E9B4F518F8F2CC5E7BA7E6D88831A4A7FE5797F
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\cloud.png, En cuarentena, 439, 453140, , , , , 1A77D783C753E3E031BEA93C4DCCDDC1, 046CEF5985AEFFBAAA9ED1F281292004B8ED3DCF0CEAE3CAFDD3AB91098F93A8
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\cupcake-bg.jpg, En cuarentena, 439, 453140, , , , , 66A2DB7F8D36B709EEF6D8D0C590B542, BFAF8F20A6E24D552AB35E6339C8DEF9E78DB28572D92FDEDB34095EF32A7CC0
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\desk-bg.jpg, En cuarentena, 439, 453140, , , , , 928C12FA79DAD8915196CC3F8CFE40EC, BE63CC05CDE965AE1A55841934B9A1B8BA044068F9D974F4AD6704AFC8476B7D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\doodle.png, En cuarentena, 439, 453140, , , , , D4958E87C7CE522E342F931A333970AE, B56A6859E8D7FA04C6F955310C013F5F9D97102897BC6D90A04BDDC3443941A7
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\down.png, En cuarentena, 439, 453140, , , , , BD28C167E200A3B28D65FAD11067F767, 782AEE35F1473A0818E85C7888276AB1A92A2C6650420A6914C11D4A87017959
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\enhanced_google.png, En cuarentena, 439, 453140, , , , , 364BB39FBF5998C2A3FE3214381D80C1, 8E84EED478A13A032A53FEDF865CA0C0ECD3F9ECF5C7694FBF8064B87040BD5B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\eyeglass.png, En cuarentena, 439, 453140, , , , , A3439A6B9105E00273F1D64303A973B9, B38E3C8DD6057C196276910F7BEF8C9C11523326BE86A61879EA774B51315569
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\eyeglass_transparent.png, En cuarentena, 439, 453140, , , , , 43804807859A46D65476FC45006A796F, 17AB3F7E7371CB4579EF03BC91A05DA6758251B279AFE8D37823EA1780600993
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\films-bg.jpg, En cuarentena, 439, 453140, , , , , F7C4374342884D0B10235C566555B495, C90A08E39D547A2264B68FCF65440F2CEAB340D0E2FE56DC4AB1EFB79F0355D7
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\gmail-circle.svg, En cuarentena, 439, 453140, , , , , 1D0B9EC0D39870F2DA3649F4A0444E21, CDDB6636DFF59BE5C0E5A1BAF5EBAF97A71CF6B2A5E8EAE90DDE63B13ACBC412
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\gmx_large.png, En cuarentena, 439, 453140, , , , , 364BB39FBF5998C2A3FE3214381D80C1, 8E84EED478A13A032A53FEDF865CA0C0ECD3F9ECF5C7694FBF8064B87040BD5B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\google.png, En cuarentena, 439, 453140, , , , , B7AF6C6DEC49F72B92F3BD2B79028D50, BBB2591E5F1582FBFA19D4E03AE972C45DB07737FDB491A588017F35DDF80406
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\google_large.png, En cuarentena, 439, 453140, , , , , 9BD876775DA12C05DBAF6CB4B6FCD2CD, 141E34B9AF4159CC8540E271D38754B40CFB78BF924D495952E02DBE34ED411E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\grid-world.png, En cuarentena, 439, 453140, , , , , 79038BC04B0EA4D2BBDEBCAC50570D0B, 6C28479BC508CC6D99F4658325A7B339FA3E23120AB40E27C15A11BF333EA04B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\group.svg, En cuarentena, 439, 453140, , , , , 55559CF783AAB04379A73CD1B5B4A028, D747A916DBB49058C5B651464FEE3D640B2221D0AC70C74E285EDA2957BE8FAC
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\hero-bg.jpg, En cuarentena, 439, 453140, , , , , A60D5FC412E50DD41C0E898311C73140, 11AFA541FED390CC0327837DB980F3D8DD4845BB6597AE8DD9AECCC7C8E04294
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\inuvo-bg.jpg, En cuarentena, 439, 453140, , , , , 58E1A9800E2CCF60BD927567949CE507, 05E2B35521717EA1F5C0A944B4982B0A31F847C8DABAFB092B05CC82F8CC566D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\just-the-box-empty.png, En cuarentena, 439, 453140, , , , , 2BE8B0A2019B6C84150804B0DDA8B275, 77D66810FA5B6EFD0F889F2BBE623F3977D05063D7B692E292447D5EAD6E932C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\just-the-box.png, En cuarentena, 439, 453140, , , , , 1394F3CBAFB588010ADFB3DF8475894F, CABD24BAA737764D90312F2757F8E87B0E4276989124BD0EA12D1143D5E5F0BB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mail-black-envelope-symbol.svg, En cuarentena, 439, 453140, , , , , 44A4F6DC3B2BDE0A1FB496617273E170, AF8708680D411B05320A71E9ABD2AA0458879722545A0874B9C03D9E42718543
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mailru.svg, En cuarentena, 439, 453140, , , , , 944113E0FA3815755A84FFF5FA1B1DA1, 3E6F3B6AC8C6E17B7228A4A8669129AEC24D042361B09ABDCDF67AA8F72EB52C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\mountain-bg.jpg, En cuarentena, 439, 453140, , , , , F8252134BCD456FA6DF7B24DE42A48E3, 1FD249649EB1FCA9D6DDA8D994AD5D29BEC0904767BB65BFB223235784BBB0A9
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\outlook-circle.svg, En cuarentena, 439, 453140, , , , , 1C4B4DF746C7B6202DFDE4C7E8298793, 86FBC394397C4811D1A1CFA1226D1070517FEE21F759BBE1A80CE3C86B332E00
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\pointer2.png, En cuarentena, 439, 453140, , , , , 1FCF977389DE9A23148D1331C353F7EF, 15D5E0C3C9F03DFF71B48658CDA7D6A0E13D269CC9CCC781953BA68161386497
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\radio-selected.svg, En cuarentena, 439, 453140, , , , , 70E45B0BFB992497BF11A446724954BB, A3299F958735F69A46AB58E56B254B7DBAF99175E5F5D40B086B1ACED1E6379B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\radio-unselected.svg, En cuarentena, 439, 453140, , , , , 013641C182F47244720ABBB0BD24459F, BD33D6EBD2F0C2D1D8BF68C6630CB54C15610FA9D49B9AECD5DE0050BEAB7137
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\sea-bg.jpg, En cuarentena, 439, 453140, , , , , 237E09A65D3A9D21025A3D12069319F4, E2FC4CAB37A53B9C10CD8E123DDFC731D66771E2E118D7C8EB851C760B833065
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\search-D7D7D7.svg, En cuarentena, 439, 453140, , , , , 09D1DBEF450964EE0D48FA91F1A7F026, D8BF6C078F1EBD655598BD8177D2909AFF8A1E84335A5150F5E02C449E754CFE
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\search-FFFFFF.svg, En cuarentena, 439, 453140, , , , , 18DEE1D2DB2E666F0BA96A48768E8486, CBC9B0FC62718B2B8C4557310EA2B6DDF6A20CD846A6C1D322FC8F00F5CFC59B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\settings.png, En cuarentena, 439, 453140, , , , , 134CDABFEB143F1F90B4AEEB67F64A8F, E6A3573AB0A3266185BBFD967D5AEBD99DA20D60F33C3BB98E79CFA3521EA19E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\smallMagnifier.png, En cuarentena, 439, 453140, , , , , EBB15FE6852AE93EAE662EC0A844C8E4, 8530D04C0CF9A33F7C05343A13F01D07211556D51372BAD944A2A74640C48673
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\star-unselected.svg, En cuarentena, 439, 453140, , , , , 3B9BC34A38EC1B79B06714E104BDA7A0, 95F223CB4ED1028E0FA2745C975F1F19AF6E6B56E1F9A0270C06DF56FBE2B3C6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\star.svg, En cuarentena, 439, 453140, , , , , 277D4BA11CDE0B393D4D38DFECD3115F, 1FE906900C0A8AF9842598F70FADBF2251A0E149A419CB7E1D8137FB445B0ABA
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\todoc.png, En cuarentena, 439, 453140, , , , , B4FD8B927FE39C15EF1BDC6C84A94851, E94A4FC440834E3F57835F7CB903AAFB4C148CD42E99FB8ED622AD598112718A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\toggle-off.svg, En cuarentena, 439, 453140, , , , , 728DAC4DF75D600C748D0804E66F0EFC, 894152ACAA320CC76411645082471C4673E74118D58E67D68CEA30C0C95B683C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\toggle-on.svg, En cuarentena, 439, 453140, , , , , C65FB3F5FAE84AD74D71CAC290215363, 129156E0B9797107E26587699AB7BF2C582EBFF2F23448D4E6627FBCA1FE6284
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\topdf.png, En cuarentena, 439, 453140, , , , , 3A17D321390C29AB1C2340E8C4AAD65F, 96BC94E0163503CA81EDC1C503DA8D3D3279B33CE33E86947CF9CA4AAC59CEE9
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\transparent_img.png, En cuarentena, 439, 453140, , , , , ABA92128C4A2D1D5AA5263EC172BCAE0, 1E6E780B8183DA128B32DD6C5E572BE5411EF11A97D467EF04BFFCB92652AEE5
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\triangle.svg, En cuarentena, 439, 453140, , , , , 93070EFC6FB545CD219A606DF3C5D137, 74EC962E748CBB3E1D77541D4AC982FFB4F6CF6449E37B21A315D19FEDACA6C4
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo-circle.svg, En cuarentena, 439, 453140, , , , , 16A951F663D7F2336CDA40B45CD0AC54, 4D88A06382C0A1CF444D68B0B547D89A781ACAD81934E3203344CF20BC714C26
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo.png, En cuarentena, 439, 453140, , , , , 08280FBE06730FCC42C42125CF413EFE, C74A1BC0CB45B8019EAC63C6E34B4487689AD5B1DE01459931DB278DAC503C64
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo.svg, En cuarentena, 439, 453140, , , , , C356F831B4B51C9EBD037D15F9B7043D, 79A57D4E90223AEF02E08127F527411C734385F631B1D79BDA8AD67E89BB8C60
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yahoo_large.png, En cuarentena, 439, 453140, , , , , 91A19F74F2FF8A10168FE45BE4CCCF09, 55CD76BC20E66B75B2E6E529E33101830A247972B969AD64CB3679A2F12733B6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\yandex.png, En cuarentena, 439, 453140, , , , , DE26DBC6FAB21ECEE503986B92D0F2C4, 514A606D4ED87109E668E9AC5B3C751F280E9D58B18B530C63426234333DAAC1
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\zapmeta.png, En cuarentena, 439, 453140, , , , , CA2BA732685368EC2DD02AB074C5354B, 888F4830E90B5BA785CE826CCBAA9F9E68E083888F9F4A006CCA7F33F407BE95
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\_enhanced_google.png, En cuarentena, 439, 453140, , , , , 04D4914F9CC2EA1826B7FBB302401A88, 545A20533ABEECA889A9F99702EE3F4A8D8B143CD5011E4B46CC5A775D5FA225
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\images\_gmx_large.png, En cuarentena, 439, 453140, , , , , 02F3BC0B4806AFDEF155B36F99107394, 729C219E269E52B58961BF974710F56AC01B9B918FBCEE2EC01385EFE2254C35
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\content\bundle.v0.0.1.min.css, En cuarentena, 439, 453140, , , , , A95C1009DB71CE7D68A973799FF85E73, 36D7EE3CA2E783ED7779696D68A2BA720C3328071E2BC2DE34CF81CDDD48BF1A
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\css\style.css, En cuarentena, 439, 453140, , , , , 49CD88B3E2A0C80820F601738F2CFA77, 24D79022CFDC333A51E1598E8DED48FCC3F393F80A544CF1E29CC61EEA7B0B96
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome\websafe-awesome.css, En cuarentena, 439, 453140, , , , , 6C9D531B635B78D2AA661139FA7104BC, 35C2CAB3D490376D96C6A74F5225AF5652B8370467D3EBAB3C938B42C89C4EC6
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\fonts\websafe-awesome\websafe-awesome.woff2, En cuarentena, 439, 453140, , , , , 139F3B698D1FC128182B60470772A1CE, 3A289ADB86DB7D2B863C8431B9ED4D7AA417D755A5FDF6EEEF84E3BEFE9AE441
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\background.v0.0.1.min.js, En cuarentena, 439, 453140, , , , , 9D3669E1FF4414402464B37F8AEBC615, BD5F7E9399FEF3F9C985201E8C27B428F2D6C2C51C1DA916D8C7753388234D2D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\common.v0.0.1.min.js, En cuarentena, 439, 453140, , , , , A2A787D23D2E4FA8D5EACA3B2E5EE121, C30A642A0AAB4538588E9B7864E979746AE1730100BCA176915BAB1AC1D5B19E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\common.v0.0.1.min.js.LICENSE, En cuarentena, 439, 453140, , , , , F3F52B12053D5EA44EF6F926CFAE776F, 192454982F9B00BE84DAD33AB2A2635B14D853896EFB911F0E5E0962711B6625
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\js\index.v0.0.1.min.js, En cuarentena, 439, 453140, , , , , 689DE87EAF7022846CD89F41D8782EFB, 4668AA4475EF49C32729196EE74372CEB7C65553108CA967C77ED9ACF01936B3
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor\md5.min.js, En cuarentena, 439, 453140, , , , , C3A7222388987B8D12694736F6EF1595, 31D57206075645A34F442E3A56D5D2B445E437CF99739889BC1D65662B02BC31
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\vendor\react-with-addons.min.js, En cuarentena, 439, 453140, , , , , 8F3E13A0CADB06A9F31CE589E89C717A, 88DFBC11D37000F060F5F6DE85EB38C7B024C09A8B7126152D17E8C8F277B653
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_metadata\verified_contents.json, En cuarentena, 439, 453140, , , , , DAE53159157DC6DFB0FF1800D6E65917, 45AE8D1A75DE4A0205C484EDDF47B938DAA79367BD74B0AA4ED27703FD33AB8D
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\AmpSearchServiceLocalList.json, En cuarentena, 439, 453140, , , , , AAED728A398424DEC853D15FB4C7BB37, 776DEE83E392750D26F9952F306335930F15A832DFEBD53B5DFDC645A3D734FB
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\background.html, En cuarentena, 439, 453140, , , , , 17435D356E2FA263A8833FEB3D133374, DEF66C84C3DEBAD56E7C629506E1E97EFCEA5C54B13DC5745B7A59118E210711
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\e_.json, En cuarentena, 439, 453140, , , , , A4517DFAE71482BADCA2BDD507FA1FFE, B9D10D794AC7E6E1AE54E1CF0CD8623F7116B268FC7A3DD39455959833AE865E
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\index.html, En cuarentena, 439, 453140, , , , , 13A4658CD018D11333F587192F663F6B, 0BF3AF98F58FBC43BECB077E91AF4B78BC2F470140DA303AB4CC82558E71BD07
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\manifest.json, En cuarentena, 439, 453140, , , , , DE70067CE7237C41AA2C22A0034F4CCF, 815B944244BA67220E3923B5D855712B7BA04858896595A4EA4D356831AA360B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\responseConfig.json, En cuarentena, 439, 453140, , , , , 4EF91EC44811ECEE4DB7DF102C77D382, AD5D0F95AFC4E21C042ABC0F257E669149F997F4A3F5D15062762F7147C9C906
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\en\messages.json, En cuarentena, 439, 453140, , , , , 097F1938247E6E1B4C4204DFA859CB4D, 2D041F4572E002735D2D0AF4BC33AFF0BFFCE69A0DDE01128AF8307827B9564C
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\fr\messages.json, En cuarentena, 439, 453140, , , , , 3F3681E1030F417CA21B91EB8034ECE7, 32A5A3172F696B53D8CEF78DCFF1DA1EA95A931534DCCF005827A4BE25B825F7
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\hi\messages.json, En cuarentena, 439, 453140, , , , , 9D18797391C96190EDBD73D963112D3A, 169D91EBA382D0AA3BF5F5F4A27762DCF72178FA81FFBA480EBF33A09AED0D6B
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\pt_BR\messages.json, En cuarentena, 439, 453140, , , , , BA0F4CF80D9845B49E566D7E954A0C66, 78EAAE095CD6889CF30D9D9EA7EE24109B9853B1DE74D9FD9837F2296BEA7CC8
PUP.Optional.SearchManager, C:\Users\Fede\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\pilplloabdedfmialnfchjomjmpjcoej\10.1.4.55_0\_locales\vi\messages.json, En cuarentena, 439, 453140, , , , , 136730EF55C8BB5D97AEBBFB8E2A1CA6, E19069A53DC755603AEA5922A918709883787DFA7AE6841BCF52AE2B6E5BC821
PUP.Optional.WinYahoo.TskLnk, C:\PROGRAMDATA\{B7117272-3D53-F8B4-BB95-66F621D7ED38}\refe, En cuarentena, 900, 484243, 1.0.28571, , ame, , 87712F80906897E6C6782C5F0DAA5955, 7018AAEA2CC1EFB82221C13C9DE6FEFC6E0A1394C1F760AEB52D9C07422C32AE
PUP.Optional.WinYahoo.TskLnk, C:\ProgramData\{B7117272-3D53-F8B4-BB95-66F621D7ED38}\aowLC, En cuarentena, 900, 484243, , , , , , 
PUP.Optional.WinYahoo.TskLnk, C:\ProgramData\{B7117272-3D53-F8B4-BB95-66F621D7ED38}\hdat1, En cuarentena, 900, 484243, , , , , E23CC9D22ACF50F6A9C66769E2C71186, 5ECA6D13AC7762C46B1392EA3C93B9830368ADE7FC9FB0681817A86ADBD902DF
PUP.Optional.WinYahoo.TskLnk, C:\ProgramData\{B7117272-3D53-F8B4-BB95-66F621D7ED38}\hdat2, En cuarentena, 900, 484243, , , , , FDBF3F6C874F598C130C043899101B60, 88ED52ECD4B5019495C50D5EDCD60C3199A2214AE601FB05221EF630D32BDC9E
PUP.Optional.WinYahoo.TskLnk, C:\ProgramData\{B7117272-3D53-F8B4-BB95-66F621D7ED38}\TTTTT, En cuarentena, 900, 484243, , , , , A964658EF75EC66DF480BCAE54B5766F, 9A45CAB746D0017D8377FC901A2634877F095A62ECB1C0D552BC520FA724DA9B
Adware.Adposhel.Generic, C:\WINDOWS\SYSTEM32\TASKS\BCE7A64A-5364-A4B1-BAB1-4EFAC35481B0, En cuarentena, 3777, 701906, 1.0.28571, , ame, , BC8B369D430C795710A6144673FA3C63, 00DA379F07B394AE933C9744ACAB13D1492B07239A1A97F1752CC2AD30E5C854
PUP.Optional.PCVARK, C:\PROGRAM FILES\ADROIT SYSTEM CARE_FEDE\UNINS001.EXE, En cuarentena, 528, 702110, 1.0.28571, , ame, , A7B315C2A02D5E15E726DE5D08412292, A5BC02EF9C4F3FFDBFAEE2A3E0292FF4071CE25D930C8CB98D5356ADB6D9DE7C
PUP.Optional.Reimage, M:\DOWNLOADS\REIMAGEREPAIR.EXE, En cuarentena, 388, 331559, 1.0.28571, , ame, , 2CB8703D2ABE5F4F5A5480D450E29204, D817015E2F1A6BE55B297A34FB8ECD44630B2FBFB4EA7EE941D23908A88106E5

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 12-08-2020
Ejecutado por Fede (administrador) sobre FEDE-PC (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (16-08-2020 14:57:20)
Ejecutado desde M:\Downloads
Perfiles cargados: Fede
Platform: Windows 7 Home Basic Service Pack 1 (X64) Idioma: Español (España, internacional)
Internet Explorer Versión 8 (Navegador predeterminado: Chrome)
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Autodesk, Inc. -> ) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3>
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\104.4.175\QtWebEngineProcess.exe <2>
(GlavSoft LLC. -> GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <34>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18382824 2017-08-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [tvncontrol] => C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC. -> GlavSoft LLC.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7651840 2020-08-11] (Dropbox, Inc -> Dropbox, Inc.)
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\Run: [EPSON TX133 TX135 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJB.EXE [232448 2010-12-07] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\Run: [Voobly] => C:\Program Files (x86)\Voobly\voobly.exe [172032 2020-05-23] (Voobly) [Archivo no firmado]
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\RunOnce: [Adobe Speed Launcher] => 1597599951
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: F - F:\setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b2787-1739-11e9-a6a4-94de80a78c16} - F:\Setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b27a0-1739-11e9-a6a4-94de80a78c16} - G:\RunGame.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {ad559877-ef75-11e8-8e07-94de80a78c16} - F:\iLinker.exe
HKLM\...\Print\Monitors\EPSON TX133 TX135 Series 64MonitorBB: C:\Windows\system32\E_ILMHJB.DLL [118784 2008-11-12] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\...\AppCompatFlags\Custom\1602.exe: [{b7082f5b-b3cc-44ac-a030-69ef3e35225d}.sdb] -> GOG.com Anno 1602
HKLM\Software\...\AppCompatFlags\Custom\1602Edit.exe: [{b7082f5b-b3cc-44ac-a030-69ef3e35225d}.sdb] -> GOG.com Anno 1602
HKLM\Software\...\AppCompatFlags\InstalledSDB\{b7082f5b-b3cc-44ac-a030-69ef3e35225d}: [DatabasePath] -> C:\Windows\AppPatch\Custom\{b7082f5b-b3cc-44ac-a030-69ef3e35225d}.sdb [2015-07-28]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.125\Installer\chrmstp.exe [2020-08-12] (Google LLC -> Google LLC)
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
CHR HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {0F3C06EF-0F45-4AAD-9CAA-6F9EE1D4219F} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-17] (Dropbox, Inc -> Dropbox, Inc.)
Task: {2A4FD529-FF00-41E6-B8D9-0440A86D97D4} - System32\Tasks\{D2AB55CA-34B0-4010-9CA1-F04C57FE8B9A} => C:\Program Files (x86)\Rockstar Games\GTA San Andreas\gta_sa.exe
Task: {3033D8BA-783D-4C37-BE0B-C249EFC2F5D3} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe [1471032 2020-08-11] (Adobe Inc. -> Adobe)
Task: {4C7E5116-DCF0-4D6F-A189-960583778F32} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-10] (Google Inc -> Google Inc.)
Task: {57C6EFB7-FBB1-433E-9764-B052CFB10C4C} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Femat => C:\Users\Fede\AppData\Local\Rumihas\Femat.exe [0 2013-04-23] ()
Task: {639BA6F3-9230-4C1D-99D3-A3783A23E68E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13769584 2018-09-19] (Piriform Ltd -> Piriform Ltd)
Task: {75A625DA-5003-4F94-8A30-6125E642297E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-17] (Dropbox, Inc -> Dropbox, Inc.)
Task: {7F491962-F27C-45A6-A566-CE1DD9E7E5A1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8B528D8B-3FFC-4805-B0F5-216345B58095} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [1255736 2018-10-10] () [Archivo no firmado]
Task: {A0578506-81EB-429B-AB96-4DC98BE09DDC} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [752136 2020-06-18] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {C5281BC1-3E7B-4440-AA09-7711DF09A578} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {DB24C92E-2243-4DEB-816D-5C8B6337C044} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Falohoril => C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE
Task: {DBE7C5E9-475A-4DF2-B874-7056446598EC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-11] (Adobe Inc. -> Adobe)
Task: {ED10667B-7BE5-44D5-811E-8EF9D47B8085} - System32\Tasks\{59EA990A-B962-4F7D-B638-A27AF6603A6A} => C:\Program Files (x86)\Rockstar Games\GTA San Andreas\gta_sa.exe
Task: {F93EDBE5-942A-4E9E-BD41-6D8690F9F355} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-10] (Google Inc -> Google Inc.)

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 200.49.130.47 200.42.4.203
Tcpip\..\Interfaces\{16BFA971-939B-49A4-8244-718E43529192}: [DhcpNameServer] 200.42.4.207 200.49.130.44
Tcpip\..\Interfaces\{3331BEAF-6364-4F47-9E7E-CFA25A386972}: [DhcpNameServer] 192.168.0.24
Tcpip\..\Interfaces\{44AB7441-741F-43C2-A73E-39659D151D21}: [DhcpNameServer] 200.49.130.47 200.42.4.203

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/es-ar/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Archivo no firmado]
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Archivo no firmado]
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default [2020-08-16]
CHR Notifications: Default -> hxxps://mail.google.com; hxxps://web.whatsapp.com
CHR Extension: (Presentaciones) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-10]
CHR Extension: (Documentos) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-10]
CHR Extension: (Google Drive) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-10]
CHR Extension: (YouTube) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-10]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-08-07]
CHR Extension: (Hojas de cálculo) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-10]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-16]
CHR Extension: (Gmail) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-06]
CHR Extension: (Chrome Media Router) - C:\Users\Fede\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-22]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-11] (Adobe Inc. -> Adobe)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] (Autodesk, Inc. -> )
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-17] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-17] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44552 2020-08-11] (Dropbox, Inc -> Dropbox, Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272592 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6970968 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13086224 2020-07-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC. -> GlavSoft LLC.)
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1255736 2018-10-10] () [Archivo no firmado]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Windows -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-03-26] (Bluestack Systems, Inc -> Bluestack System Inc.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30352 2019-01-13] (Disc Soft Ltd -> Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2020-08-16] (Malwarebytes Corporation -> Malwarebytes)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [216056 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [197264 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73368 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [119920 2020-08-16] (Malwarebytes Inc -> Malwarebytes)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
S3 netr28ux; C:\Windows\System32\DRIVERS\netr28ux.sys [867328 2009-06-10] (Microsoft Windows -> Ralink Technology Corp.)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
S3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [416768 2009-06-10] (Microsoft Windows -> Realtek Semiconductor Corporation)
S1 qdknedqg; \??\C:\Windows\system32\drivers\qdknedqg.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-08-16 14:57 - 2020-08-16 14:57 - 000000000 ____D C:\FRST
2020-08-16 14:44 - 2020-08-16 14:44 - 000197264 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2020-08-16 14:44 - 2020-08-16 14:44 - 000073368 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2020-08-16 14:43 - 2020-08-16 14:43 - 000119920 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2020-08-16 14:33 - 2020-08-16 14:33 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-08-16 14:33 - 2020-08-16 14:33 - 000216056 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-08-16 14:33 - 2020-08-16 14:33 - 000001960 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-08-16 14:33 - 2020-08-16 14:33 - 000000000 ____D C:\Users\Fede\AppData\Local\mbam
2020-08-16 14:33 - 2020-08-16 14:32 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-08-16 14:32 - 2020-08-16 14:32 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-08-16 14:32 - 2020-08-16 14:32 - 000000000 ____D C:\Program Files\Malwarebytes
2020-08-16 14:22 - 2020-08-16 14:22 - 000000000 ____D C:\Users\Fede\AppData\Local\{6DE85BB4-4940-370C-24D8-12E400B0EE7C}
2020-08-16 14:05 - 2020-08-16 14:29 - 000000000 ____D C:\Users\Fede\AppData\Roaming\ZHP
2020-08-16 14:05 - 2020-08-16 14:05 - 000000000 ____D C:\Users\Fede\AppData\Local\ZHP
2020-08-16 13:48 - 2020-08-16 13:54 - 000000000 ____D C:\AdwCleaner
2020-08-15 19:51 - 2020-08-15 19:51 - 000002560 _____ C:\Windows\_MSRSTRT.EXE
2020-08-14 22:31 - 2020-08-14 22:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-08-11 22:35 - 2020-08-11 22:35 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2020-08-11 22:35 - 2020-08-11 22:35 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2020-08-11 22:35 - 2020-08-11 22:35 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2020-08-11 22:35 - 2020-08-11 22:35 - 000044552 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2020-07-27 21:18 - 2020-07-27 21:18 - 000000000 ____D C:\Users\Fede\AppData\Local\EpicGamesLauncher

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-08-16 14:47 - 2018-10-10 10:20 - 000003970 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{0CB44DCD-73A3-44CF-97D9-D7C3065DD775}
2020-08-16 14:43 - 2020-02-22 11:26 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-08-16 14:43 - 2018-10-17 21:42 - 000000984 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2020-08-16 14:43 - 2009-07-14 02:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-08-16 14:29 - 2018-10-17 21:42 - 000000988 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2020-08-16 14:21 - 2018-10-17 21:53 - 000000000 ___RD C:\Users\Fede\Dropbox
2020-08-16 14:15 - 2020-04-24 17:50 - 000000000 ____D C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time
2020-08-16 14:13 - 2019-06-27 23:03 - 000000000 ____D C:\Program Files\Adroit System Care_Fede
2020-08-16 13:41 - 2009-07-14 02:32 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-08-16 13:41 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\inf
2020-08-15 21:49 - 2020-02-18 19:14 - 000000000 ____D C:\Program Files (x86)\Steam
2020-08-15 20:35 - 2020-04-14 17:54 - 000000000 ____D C:\Users\Fede\AppData\Local\CrashDumps
2020-08-15 20:35 - 2020-02-22 11:26 - 000000000 ____D C:\Users\Fede\AppData\Roaming\TeamViewer
2020-08-15 20:35 - 2019-01-13 13:09 - 000000000 ____D C:\Users\Fede\AppData\Roaming\DAEMON Tools Lite
2020-08-15 19:51 - 2019-03-06 21:51 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2020-08-15 19:39 - 2020-03-15 12:57 - 000000000 ____D C:\Program Files (x86)\Microsoft Games
2020-08-15 02:38 - 2020-04-05 20:57 - 000000000 ____D C:\Users\Fede\AppData\Roaming\Mumble
2020-08-14 22:31 - 2018-10-17 21:41 - 000000000 ____D C:\Program Files (x86)\Dropbox
2020-08-12 19:04 - 2018-10-10 10:46 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-08-12 00:18 - 2009-07-14 01:45 - 000022528 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-08-12 00:18 - 2009-07-14 01:45 - 000022528 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-08-11 17:47 - 2020-07-14 20:18 - 004510264 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2020-08-11 17:47 - 2019-12-09 10:55 - 000004290 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater
2020-08-11 17:47 - 2019-03-06 21:51 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-08-11 17:47 - 2019-03-06 21:51 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-08-11 17:47 - 2019-03-06 21:51 - 000004496 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier
2020-08-11 17:47 - 2019-03-06 21:51 - 000000000 ____D C:\Windows\system32\Macromed
2020-07-24 19:24 - 2018-10-17 21:42 - 000003984 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA
2020-07-24 19:24 - 2018-10-17 21:42 - 000003732 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore

==================== Archivos en la raíz de algunos directorios ========

2019-07-15 19:59 - 2019-07-15 19:59 - 000188678 _____ () C:\Users\Fede\AppData\Roaming\Bofog
2019-04-04 18:15 - 2019-04-04 18:15 - 000326623 _____ () C:\Users\Fede\AppData\Roaming\Gefetesudi
2019-08-08 10:59 - 2019-08-08 10:59 - 000123185 _____ () C:\Users\Fede\AppData\Roaming\Pekatacar
2019-05-28 19:47 - 2019-05-28 19:47 - 000361200 _____ () C:\Users\Fede\AppData\Roaming\Petirah
2019-06-30 22:59 - 2019-06-30 22:59 - 000317445 _____ () C:\Users\Fede\AppData\Roaming\Riromonular
2019-06-30 22:59 - 2019-06-30 22:59 - 000184320 _____ () C:\Users\Fede\AppData\Roaming\Riromonular.exe
2019-05-06 22:15 - 2019-05-06 22:15 - 000299997 _____ () C:\Users\Fede\AppData\Roaming\Rohoditeh
2018-11-21 06:38 - 2019-08-08 10:59 - 000000391 _____ () C:\Users\Fede\AppData\Roaming\WB.CFG
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 ____H () C:\Users\Fede\AppData\Local\BITA221.tmp
2020-01-13 19:45 - 2020-01-13 19:45 - 000326427 _____ () C:\Users\Fede\AppData\Local\TTTTTT
2018-12-06 23:49 - 2018-12-06 23:49 - 000000000 _____ () C:\Users\Fede\AppData\Local\{6CCFA95F-A921-4354-8C33-836F90B0AEE8}
2018-12-03 22:48 - 2018-12-03 22:48 - 000000000 _____ () C:\Users\Fede\AppData\Local\{B5CA75A0-CBC3-4FAA-A559-B46DC50A28B0}
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 _____ () C:\Users\Fede\AppData\Local\{F9D3AC17-2B3D-4FA2-B3CE-5BDD80778F96}

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

C:\Windows\system32\User32.dll
[2010-11-21 00:24] - [2018-10-10 11:25] - 001008640 _____ (Microsoft Corporation) 2C353B6CE0C8D03225CAA2AF33B68D79

C:\Windows\SysWOW64\User32.dll
[2010-11-21 00:24] - [2018-10-10 11:25] - 000833024 _____ (Microsoft Corporation) 861C4346F9281DC0380DE72C8D55D6BE


LastRegBack: 2020-08-15 18:35
==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 12-08-2020
Ejecutado por Fede (16-08-2020 14:58:52)
Ejecutado desde M:\Downloads
Windows 7 Home Basic Service Pack 1 (X64) (2018-10-10 12:50:23)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-280445973-3083001335-2669547934-500 - Administrator - Disabled)
Fede (S-1-5-21-280445973-3083001335-2669547934-1000 - Administrator - Enabled) => C:\Users\Fede
Invitado (S-1-5-21-280445973-3083001335-2669547934-501 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Microsoft Security Essentials (Disabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Microsoft Security Essentials (Disabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-0015-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-0016-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-0018-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-0019-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001A-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001B-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2CC8520D-6A74-4CCA-9539-8E774E2B50D1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-0403-0000-0000000FF1CE}_ENTERPRISE_{A5B6B786-2D6F-4B75-940F-42B32D01D146}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{430971B1-C31E-45DA-81E0-72C095BAB72C}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-0416-0000-0000000FF1CE}_ENTERPRISE_{669EB263-0AFE-4FCB-A068-DB082CA6273C}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-042D-0000-0000000FF1CE}_ENTERPRISE_{042190ED-F17C-4A8D-95D8-87A37B4095BD}) (Version:  - ) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-0456-0000-0000000FF1CE}_ENTERPRISE_{D3064ADE-5D4C-4AA4-8F71-C63D87D4A263}) (Version:  - ) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{00C5525B-3CB3-467D-8100-2E6FB306CD86}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-002A-0C0A-1000-0000000FF1CE}_ENTERPRISE_{35B14BD6-6042-4A55-B326-58309DC8C72A}) (Version:  - Microsoft) Hidden
2007 Microsoft Office Suite Service Pack 1 (SP1) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}) (Version:  - Microsoft)
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.414 - Adobe)
Adobe Reader XI (11.0.10) - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Anno 1602 - Creation of a New World (HKLM-x32\...\1438168222_is1) (Version: 2.0.0.6 - GOG.com)
Anno 1701 Gold Edition versión 1.04 (HKLM-x32\...\{80CB662E-97C9-4D2C-9E2C-D604A9FAB508}_is1) (Version: 1.04 - Sunflowers)
AutoCAD 2012 - Spanish (HKLM\...\{5783F2D7-A001-040A-0102-0060B0CE6BBA}) (Version: 18.2.51.0 - Autodesk) Hidden
AutoCAD 2012 - Spanish (HKLM\...\AutoCAD 2012 - Spanish) (Version: 18.2.51.0 - Autodesk)
AutoCAD 2012 Language Pack - Spanish (HKLM\...\{5783F2D7-A001-040A-1102-0060B0CE6BBA}) (Version: 18.2.51.0 - Autodesk) Hidden
Autodesk Inventor Fusion 2012 (HKLM\...\{FFF5619F-6669-4EC5-A85E-9994F70A9E5D}) (Version: 1.0.0.79 - Autodesk, Inc.) Hidden
Autodesk Inventor Fusion 2012 (HKLM\...\Autodesk Inventor Fusion 2012) (Version: 1.0.0.79 - Autodesk, Inc.)
Autodesk Inventor Fusion plug-in for AutoCAD 2012 (HKLM\...\Módulo de extensión de Autodesk Inventor Fusion para AutoCAD 2012) (Version: 0.0.1.138 - Autodesk)
Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2012 (HKLM-x32\...\{B5751715-EC10-43D9-8C95-62E1368433EF}) (Version: 2.5.0.8 - Autodesk)
BitLord 2.4 (HKLM-x32\...\BitLord) (Version: 2.4.6-334 - House of Life)
BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.190.0.5002 - BlueStack Systems, Inc.)
Camtasia 2019 (HKLM\...\{FF10C4F0-9186-405F-809D-D2E8D5E39448}) (Version: 19.0.10.17662 - TechSmith Corporation) Hidden
Camtasia 2019 (HKLM-x32\...\{03e048a7-3690-409c-b9c4-27612f78bd68}) (Version: 19.0.10.17662 - TechSmith Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.47 - Piriform)
Champions of Regnum versión 1.24.3 (HKLM-x32\...\{EFDA6485-85BF-4CCA-B062-CD254D7E2CBC}_is1) (Version: 1.24.3 - ngd Studios)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd)
Desinstalador de impresoras EPSON TX133 TX135 Series (HKLM\...\EPSON TX133 TX135 Series) (Version:  - SEIKO EPSON Corporation)
Dropbox (HKLM-x32\...\Dropbox) (Version: 104.4.175 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.335.1 - Dropbox, Inc.) Hidden
EA SPORTS online 2004 (HKLM-x32\...\82A44D22-9452-49FB-00FB-CEC7DCAF7E23) (Version:  - )
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epson Easy Photo Print 2 (HKLM-x32\...\{E65AE514-9C14-48DE-BAE5-64A4F9CB6FE5}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for Windows Live Photo Gallery (HKLM-x32\...\EEPPPlugIn) (Version:  - SEIKO EPSON Corporation)
Epson Easy Photo Print Plug-in for Windows Live Photo Gallery Setup (HKLM-x32\...\{7B7044AE-6D1F-456D-B2BA-28BFFFAF3F71}) (Version: 1.00.0000 - SEIKO EPSON Corporation) Hidden
Epson Event Manager (HKLM-x32\...\{8A17C27D-0325-400C-8AA9-DAA6B16CBD74}) (Version: 2.40.0009 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
FormatFactory 4.3.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.3.0.0 - Free Time)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.125 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.10.255 - Intel Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 4.1.2.73 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.2.73 - Malwarebytes)
Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6215.1000 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Módulo de extensión de Autodesk Inventor Fusion para AutoCAD 2012 (HKLM\...\{EAB3AC1A-68FF-486B-9C6B-E48EBB4B05CC}) (Version: 0.0.1.138 - Autodesk) Hidden
Mumble 1.3.0 (HKLM-x32\...\{6A8EE158-6924-4920-9786-3319889B4CF9}) (Version: 1.3.0 - The Mumble Developers)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Paquete de idioma de Autodesk Inventor Fusion 2012 (HKLM\...\{FFF7F80F-929E-497F-A112-B070DE816128}) (Version: 1.0.0.79 - Autodesk, Inc.) Hidden
Paquete de idioma de Autodesk Inventor Fusion para AutoCAD 2012 (HKLM\...\{E552C39C-C70E-464F-9733-8311331BDD90}) (Version: 0.0.1.138 - Autodesk) Hidden
Popcorn-Time (HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\Popcorn-Time) (Version: 0.4.4 - Popcorn Time)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8224 - Realtek Semiconductor Corp.)
Servicio de contenidos de Autodesk (HKLM-x32\...\{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}) (Version: 2.0.90 - Autodesk)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.8.3 - TeamViewer)
TightVNC (HKLM\...\{D2372F87-7DA2-47F7-A102-AF2181B8EAA2}) (Version: 2.7.10.0 - GlavSoft LLC.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN)
Voobly (HKLM-x32\...\Voobly_is1) (Version: Voobly - Voobly)
Web Search (Yahoo! Provided) (HKLM-x32\...\{8C8C644C-DC0C-B5CC-6D8C-C54CBD0C16CC}) (Version:  - )
Winamp (HKLM-x32\...\Winamp) (Version: 5.8  - Winamp SA)
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-280445973-3083001335-2669547934-1000_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Spanish\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-280445973-3083001335-2669547934-1000_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Spanish\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-280445973-3083001335-2669547934-1000_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Spanish\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-280445973-3083001335-2669547934-1000_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Spanish\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [Archivo no firmado]
CustomCLSID: HKU\S-1-5-21-280445973-3083001335-2669547934-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Spanish\acadficn.dll (Autodesk Development Sarl -> Autodesk, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [Identificador de icono superpuesto para firmas digitales de AutoCAD] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2011-02-04] (Autodesk, Inc -> Autodesk, Inc.) [Archivo no firmado]
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files (x86)\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2011-01-14] (Autodesk, Inc -> Autodesk) [Archivo no firmado]
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.44.0.dll [2020-08-04] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [746496 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\...\Drivers32: [msacm.iac2] => C:\Windows\SysWOW64\iac25_32.ax [197632 2009-07-13] (Microsoft Windows -> Intel Corporation)
HKLM\...\Drivers32: [VIDC.IV41] => C:\Windows\SysWOW64\IR41_32.AX [839680 2009-07-13] (Microsoft Windows -> Intel Corporation)

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Módulos cargados (Lista blanca) =============

2015-06-19 20:52 - 2015-06-19 20:52 - 000111104 _____ (Microsoft Corporation) [Archivo no firmado] [El archivo está en uso] C:\Windows\Microsoft.Net\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
2008-04-11 11:54 - 2008-04-11 11:54 - 000348160 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\MSVCR71.dll
2010-11-21 00:24 - 2018-10-10 11:25 - 001008640 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\system32\USER32.dll
2010-11-21 00:24 - 2018-10-10 11:25 - 000833024 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\syswow64\USER32.dll
2018-10-28 19:50 - 2009-08-24 10:10 - 000430592 _____ (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Archivo no firmado] C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado.)

HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2009-07-13 23:34 - 2009-06-10 18:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 200.49.130.47 - 200.42.4.203
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall de Windows está deshabilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\Services: cphs => 3
MSCONFIG\startupreg: Chromium => "c:\users\fede\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: Dropbox => "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
MSCONFIG\startupreg: EEventManager => "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
MSCONFIG\startupreg: EPSON TX133 TX135 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJB.EXE /FU "C:\Windows\TEMP\E_S6C70.tmp" /EF "HKCU"
MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe"
MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe"
MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe"
MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{F1D5110C-CDDF-4AFB-B446-FDAFA90D08D7}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{EBCA09B9-E6C8-43ED-A91D-778250019973}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{CDE31C75-F6A7-4627-BDE2-9DF151435D06}] => (Allow) C:\Program Files\TightVNC\tvnserver.exe (GlavSoft LLC. -> GlavSoft LLC.)
FirewallRules: [TCP Query User{C3712C93-020C-4F3B-AFCA-A9CB6BBB5206}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [UDP Query User{267E1C0D-33C5-4444-BF79-0A582AB81782}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [{7188A451-25E0-4BEA-921C-918AFA33FD30}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [{83FEDC1A-862F-4342-B39F-16682FF3C56D}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{4DF6848F-F255-40AF-929D-2DFA7E7A506C}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{5359F6B9-8D43-4C39-A8B3-E82A51BBAA9D}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [{5592564F-87B1-4EBD-8148-E579ECA9CA82}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.) [Archivo no firmado]
FirewallRules: [{70CDC02F-1922-4DA4-B72E-D1817CAAC23B}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{9B57059C-22AB-4B88-BB7B-85FF8D818A4C}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.) [Archivo no firmado]
FirewallRules: [{BC5EF5FB-EB69-4B79-BDB9-DD377FA51EEA}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{2F1654DF-2977-454B-A697-6109EACBA1CF}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Package\PTInstOnline.exe (Free Time Co., Ltd. -> Free Time)
FirewallRules: [TCP Query User{11FC20AC-7BE7-49A4-B573-A6A38B9D4B46}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [UDP Query User{00827388-F515-4C7E-9835-01437A617711}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [TCP Query User{04B3DB7E-4414-45A2-826F-116AD781F0CB}C:\program files (x86)\anno 1701 gold edition\anno1701.exe] => (Block) C:\program files (x86)\anno 1701 gold edition\anno1701.exe (Related Designs Software GmbH) [Archivo no firmado]
FirewallRules: [UDP Query User{6DE0571D-D699-4609-B30B-8BC2FA526CCD}C:\program files (x86)\anno 1701 gold edition\anno1701.exe] => (Block) C:\program files (x86)\anno 1701 gold edition\anno1701.exe (Related Designs Software GmbH) [Archivo no firmado]
FirewallRules: [{07424F2E-147A-42D8-8A52-B44214B1E281}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{B62709BA-A267-4BE8-8928-65719345F799}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{43342F67-B6F6-4E83-9B32-28ADEC991047}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{4C7004A8-4530-4F9D-B840-C0A1591C89F3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{D4DB6F38-9F7B-4CF4-93B9-3C3CEEF3F42C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{19BDF50D-F0EE-43E0-9918-8FA73F58B5E8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{0D9C61CB-B2AE-4DA7-AF7B-7B5F188EFC68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{9E60C195-5F05-4271-BD3D-B5CC47CBED2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [TCP Query User{63E2D3D8-DE9D-442B-BAC8-19430C687E1C}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{8737C918-F0AB-4377-B7D8-20CD729A7953}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{BA0665F9-F778-47C1-8E2E-08EE7362FC79}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Archivo no firmado]
FirewallRules: [{7572BB14-7D02-4690-8B34-A4D3CD76781F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Archivo no firmado]
FirewallRules: [{866E659B-A6B1-4811-8B1B-787DE4B251E0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{76238A77-9632-4AE3-A23F-E960C5498D4E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{9E63E298-73AE-40C1-8CE2-9B75A85E3795}C:\program files (x86)\voobly\voobly.exe] => (Allow) C:\program files (x86)\voobly\voobly.exe (Voobly) [Archivo no firmado]
FirewallRules: [UDP Query User{F8D1864D-02D8-4A2F-AC4F-71D4415CE3A9}C:\program files (x86)\voobly\voobly.exe] => (Allow) C:\program files (x86)\voobly\voobly.exe (Voobly) [Archivo no firmado]
FirewallRules: [{03ABB161-2D83-4049-B739-7B4A541AB0EA}] => (Allow) LPort=8320
FirewallRules: [{E7435E99-18F7-4743-9002-728437DC7008}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
FirewallRules: [{31FFED62-31A5-4F03-9963-282FF3C067EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Go Kart Run\Go Kart Run!.exe () [Archivo no firmado]
FirewallRules: [{43C6BD14-E244-41DB-82CB-EC67DFBA3BE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Go Kart Run\Go Kart Run!.exe () [Archivo no firmado]
FirewallRules: [{B203B9CB-C7C4-4BFA-BBF2-A0BE4E9A3142}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Summer Games Heroes\SummerGamesHeroes.exe () [Archivo no firmado]
FirewallRules: [{8B8A97B9-6B1A-4F01-A9CD-7EBCFBD59501}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Summer Games Heroes\SummerGamesHeroes.exe () [Archivo no firmado]
FirewallRules: [{B6CE89E6-E0A3-4026-AF9E-DB666E1036C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe (Valve -> )
FirewallRules: [{6A5F7FDD-E0D8-43BF-AEAC-F444A92354F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe (Valve -> )
FirewallRules: [{11B5C0F9-F899-4624-BBA3-9E163B4C1E9B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{6C36BD6E-799C-43FE-894E-5F24CCA029FE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{5898E0A0-0117-4BD9-8E87-0EF75EB847D6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E5A96B1C-B7BB-4B13-86E9-99EA14DD7B2C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{817A9FE2-ECCD-4011-9ED7-40CC69B25BF9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{3EBCE979-5C21-4CBF-8775-282EA079884C}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)

==================== Puntos de Restauración =========================

01-08-2020 00:38:54 Punto de control programado
08-08-2020 14:39:30 Punto de control programado
13-08-2020 18:16:14 Installed Autodesk Material Library Medium Resolution Image Library 2012.
13-08-2020 18:19:47 Installed Autodesk Material Library Medium Resolution Image Library 2012.
15-08-2020 20:16:10 Removed ChromePlayerPlugin
15-08-2020 20:16:51 Eliminado GTA San Andreas
15-08-2020 20:18:02 Removed NativeDesktopMediaService

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (08/16/2020 02:57:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.

Error: (08/16/2020 02:57:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Error en la extracción de la lista raíz de terceros del archivo .CAB actualizado automáticamente: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> con el error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.
.


Errores del sistema:
=============
Error: (08/16/2020 02:59:16 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Centro de protección contra malware de Microsoft

	Etapa de actualización: Instalar

	Ruta de origen: http://go.microsoft.com/fwlink/?LinkID=121721&clcid=0x409&arch=x64&eng=1.1.16500.1&avdelta=1.305.208.0&asdelta=1.305.208.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094

	Tipo de firma: Antispyware

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\Servicio de red

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x800b0109

	Descripción del error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.

Error: (08/16/2020 02:59:16 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Centro de protección contra malware de Microsoft

	Etapa de actualización: Instalar

	Ruta de origen: http://go.microsoft.com/fwlink/?LinkID=121721&clcid=0x409&arch=x64&eng=1.1.16500.1&avdelta=1.305.208.0&asdelta=1.305.208.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094

	Tipo de firma: Antivirus

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\Servicio de red

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x800b0109

	Descripción del error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.

Error: (08/16/2020 02:58:46 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Servidor de Microsoft Update

	Etapa de actualización: Descargar

	Ruta de origen: http://www.microsoft.com

	Tipo de firma: Antivirus

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\SYSTEM

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x80240022

	Descripción del error: El programa no puede buscar actualizaciones de definiciones.

Error: (08/16/2020 02:58:46 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Servidor de Microsoft Update

	Etapa de actualización: Descargar

	Ruta de origen: http://www.microsoft.com

	Tipo de firma: Antivirus

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\SYSTEM

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x80240022

	Descripción del error: El programa no puede buscar actualizaciones de definiciones.

Error: (08/16/2020 02:45:47 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Centro de protección contra malware de Microsoft

	Etapa de actualización: Buscar

	Ruta de origen: http://go.microsoft.com/fwlink/?LinkID=121721&clcid=0x409&arch=x64&eng=1.1.16500.1&avdelta=1.305.208.0&asdelta=1.305.208.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094

	Tipo de firma: Antispyware

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\Servicio de red

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x80072f78

	Descripción del error: El servidor devolvió una respuesta no válida o no reconocida

Error: (08/16/2020 02:45:47 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Centro de protección contra malware de Microsoft

	Etapa de actualización: Buscar

	Ruta de origen: http://go.microsoft.com/fwlink/?LinkID=121721&clcid=0x409&arch=x64&eng=1.1.16500.1&avdelta=1.305.208.0&asdelta=1.305.208.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094

	Tipo de firma: Antivirus

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\Servicio de red

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x80072f78

	Descripción del error: El servidor devolvió una respuesta no válida o no reconocida

Error: (08/16/2020 02:45:27 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Servidor de Microsoft Update

	Etapa de actualización: Buscar

	Ruta de origen: http://www.microsoft.com

	Tipo de firma: Antivirus

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\SYSTEM

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x80072ee2

	Descripción del error: Se superó el tiempo de espera para la operación

Error: (08/16/2020 02:26:47 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Antimalware de Microsoft ha encontrado un error al intentar actualizar las firmas.

	Nueva versión de firma: 

	Versión de firma anterior: 1.305.208.0

	Origen de actualización: Centro de protección contra malware de Microsoft

	Etapa de actualización: Instalar

	Ruta de origen: http://go.microsoft.com/fwlink/?LinkID=121721&clcid=0x409&arch=x64&eng=1.1.16500.1&avdelta=1.305.208.0&asdelta=1.305.208.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094

	Tipo de firma: Antispyware

	Tipo de actualización: Completa

	Usuario: NT AUTHORITY\Servicio de red

	Versión de motor actual: 

	Versión de motor anterior: 1.1.16500.1

	Código del error: 0x800b0109

	Descripción del error: Se procesó correctamente una cadena de certificados, pero termina en un certificado de raíz no compatible con el proveedor de confianza.


CodeIntegrity:
===================================

Date: 2020-04-01 18:02:33.405
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\hamachi.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2020-04-01 18:02:33.405
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\hamachi.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2020-03-23 12:41:35.450
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\hamachi.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2020-03-23 12:41:35.449
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\hamachi.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

==================== Información de la memoria =========================== 

BIOS: American Megatrends Inc. F14 04/17/2013
Placa base: Gigabyte Technology Co., Ltd. B75M-D3H
Procesador: Intel(R) Core(TM) i5-2310 CPU @ 2.90GHz
Porcentaje de memoria en uso: 75%
RAM física total: 8062.73 MB
RAM física disponible: 1970.74 MB
Virtual total: 16123.66 MB
Virtual disponible: 9513.02 MB

==================== Unidades ================================

Drive c: () (Fixed) (Total:164.94 GB) (Free:59.8 GB) NTFS
Drive m: (Datos) (Fixed) (Total:300.72 GB) (Free:192.58 GB) NTFS

\\?\Volume{71568c3a-cc60-11e8-a6a5-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 31A7D38D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=164.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=300.7 GB) - (Type=07 NTFS)

==================== Final de Addition.txt =======================

Escribi todo y no di ni las gracias… perdon

Muchas gracias San!!!

Por ahora desaparecio la molestiaaaaAAAA!!!

elimino todo lo que instale???

GRACIAAAAS

Hola @Federico_Severini

:+1::+1:

No se apure compañero… :upside_down_face: ya te indicare cuando desinstalar, tu equipo estaba muuuuuuuy infectado de variooooooos adwares.

Paso 1:

Desinstala con Revo Uninstaller en su Modo Avanzado:

  • Popcorn-Time
  • Web Search (Yahoo! Provided)
  • Navegador Chromium este si se encontrara.

Manual de Revo Uninstaller.

Paso 2:

Ejecutaste FRST desde un lugar incorrecto:

  • Ejecutado desde M:\Downloads

Corta el ejecutable y pegalo en tu escritorio <<< Esto es Muy Importante. el escritorio de C<. que es donde tienes el sistema Operativo.

Paso 3:

Con mucha atención sigue estos pasos:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga/Ejecuta DelFix desde el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

Luego ve a::

2.- Inicio >>> Ejecutar >>> Escribe notepad.exe o abra un nuevo archivo Notepad y copie y pegue lo siguiente:

Start::
CloseProcesses:
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\RunOnce: [Adobe Speed Launcher] => 1597599951
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: F - F:\setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b2787-1739-11e9-a6a4-94de80a78c16} - F:\Setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b27a0-1739-11e9-a6a4-94de80a78c16} - G:\RunGame.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {ad559877-ef75-11e8-8e07-94de80a78c16} - F:\iLinker.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.125\Installer\chrmstp.exe [2020-08-12] (Google LLC -> Google LLC)
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
CHR HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
Task: {57C6EFB7-FBB1-433E-9764-B052CFB10C4C} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Femat => C:\Users\Fede\AppData\Local\Rumihas\Femat.exe [0 2013-04-23] ()
Task: {DB24C92E-2243-4DEB-816D-5C8B6337C044} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Falohoril => C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE
C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/es-ar/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo]
S1 qdknedqg; \??\C:\Windows\system32\drivers\qdknedqg.sys [X]
2020-08-16 14:15 - 2020-04-24 17:50 - 000000000 ____D C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time
2020-08-16 14:13 - 2019-06-27 23:03 - 000000000 ____D C:\Program Files\Adroit System Care_Fede
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 ____H () C:\Users\Fede\AppData\Local\BITA221.tmp
2018-12-06 23:49 - 2018-12-06 23:49 - 000000000 _____ () C:\Users\Fede\AppData\Local\{6CCFA95F-A921-4354-8C33-836F90B0AEE8}
2018-12-03 22:48 - 2018-12-03 22:48 - 000000000 _____ () C:\Users\Fede\AppData\Local\{B5CA75A0-CBC3-4FAA-A559-B46DC50A28B0}
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 _____ () C:\Users\Fede\AppData\Local\{F9D3AC17-2B3D-4FA2-B3CE-5BDD80778F96}
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
MSCONFIG\startupreg: Chromium => "c:\users\fede\appdata\local\chromium
FirewallRules: [TCP Query User{C3712C93-020C-4F3B-AFCA-A9CB6BBB5206}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [UDP Query User{267E1C0D-33C5-4444-BF79-0A582AB81782}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [TCP Query User{11FC20AC-7BE7-49A4-B573-A6A38B9D4B46}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo
FirewallRules: [UDP Query User{00827388-F515-4C7E-9835-01437A617711}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ningún archivo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guarda bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe/Frst64.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajará.

3.- Inicie su ordenador en >>> Modo Seguro >>> Aplicable a Windows 10. o Windows 7.

  • Ejecute Frst.exe o Frst64.exe. según el caso.
  • Presione el botón Fix/Corregir y aguarde a que termine.
  • La Herramienta guardará el reporte en su escritorio (Fixlog.txt).
  • Reinicia y lo pega en su próxima respuesta.

Nos comentas…

Salu2

# DelFix v1.013 - Logfile created 18/08/2020 at 21:16:46
# Updated 17/04/2016 by Xplode
# Username : Fede - FEDE-PC
# Operating System : Windows 7 Home Basic Service Pack 1 (64 bits)

~ Creating registry backup ... OK

########## - EOF - ##########
Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 12-08-2020
Ejecutado por Fede (18-08-2020 21:33:04) Run:1
Ejecutado desde M:\Escritorio
Perfiles cargados: Fede
Modo de Inicio: Safe Mode (with Networking)
==============================================

fixlist contenido:
*****************
Start::
CloseProcesses:
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\RunOnce: [Adobe Speed Launcher] => 1597599951
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: F - F:\setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b2787-1739-11e9-a6a4-94de80a78c16} - F:\Setup.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {892b27a0-1739-11e9-a6a4-94de80a78c16} - G:\RunGame.exe
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\...\MountPoints2: {ad559877-ef75-11e8-8e07-94de80a78c16} - F:\iLinker.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.125\Installer\chrmstp.exe [2020-08-12] (Google LLC -> Google LLC)
CHR HKLM\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N
CHR HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N
Task: {57C6EFB7-FBB1-433E-9764-B052CFB10C4C} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Femat => C:\Users\Fede\AppData\Local\Rumihas\Femat.exe [0 2013-04-23] ()
Task: {DB24C92E-2243-4DEB-816D-5C8B6337C044} - System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Falohoril => C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE
C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/es-ar/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-280445973-3083001335-2669547934-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled [Ning�n archivo]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ning�n archivo]
S1 qdknedqg; \??\C:\Windows\system32\drivers\qdknedqg.sys [X]
2020-08-16 14:15 - 2020-04-24 17:50 - 000000000 ____D C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time
2020-08-16 14:13 - 2019-06-27 23:03 - 000000000 ____D C:\Program Files\Adroit System Care_Fede
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 ____H () C:\Users\Fede\AppData\Local\BITA221.tmp
2018-12-06 23:49 - 2018-12-06 23:49 - 000000000 _____ () C:\Users\Fede\AppData\Local\{6CCFA95F-A921-4354-8C33-836F90B0AEE8}
2018-12-03 22:48 - 2018-12-03 22:48 - 000000000 _____ () C:\Users\Fede\AppData\Local\{B5CA75A0-CBC3-4FAA-A559-B46DC50A28B0}
2018-11-27 22:57 - 2018-11-27 22:57 - 000000000 _____ () C:\Users\Fede\AppData\Local\{F9D3AC17-2B3D-4FA2-B3CE-5BDD80778F96}
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
MSCONFIG\startupreg: Chromium => "c:\users\fede\appdata\local\chromium
FirewallRules: [TCP Query User{C3712C93-020C-4F3B-AFCA-A9CB6BBB5206}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ning�n archivo
FirewallRules: [UDP Query User{267E1C0D-33C5-4444-BF79-0A582AB81782}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Block) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ning�n archivo
FirewallRules: [TCP Query User{11FC20AC-7BE7-49A4-B573-A6A38B9D4B46}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ning�n archivo
FirewallRules: [UDP Query User{00827388-F515-4C7E-9835-01437A617711}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe => Ning�n archivo

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Procesos cerrados correctamente.
"HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Adobe Speed Launcher" => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{892b2787-1739-11e9-a6a4-94de80a78c16} => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{892b27a0-1739-11e9-a6a4-94de80a78c16} => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ad559877-ef75-11e8-8e07-94de80a78c16} => eliminado correctamente
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\SOFTWARE\Policies\Google => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Policies\Google => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{57C6EFB7-FBB1-433E-9764-B052CFB10C4C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57C6EFB7-FBB1-433E-9764-B052CFB10C4C}" => eliminado correctamente
C:\Windows\System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Femat => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{60A58A19-C689-806E-616F-75645EFF0FEC}\Femat" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DB24C92E-2243-4DEB-816D-5C8B6337C044}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DB24C92E-2243-4DEB-816D-5C8B6337C044}" => eliminado correctamente
C:\Windows\System32\Tasks\{60A58A19-C689-806E-616F-75645EFF0FEC}\Falohoril => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{60A58A19-C689-806E-616F-75645EFF0FEC}\Falohoril" => eliminado correctamente
"C:\Users\Fede\AppData\Local\TECANU~1\FALOHO~1.EXE" => no encontrado
"HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache" => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => valor restaurado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => valor restaurado correctamente
"HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} => eliminado correctamente
HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE => eliminado correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE => eliminado correctamente
HKLM\System\CurrentControlSet\Services\qdknedqg => eliminado correctamente
qdknedqg => servicio eliminado correctamente
"C:\Users\Fede\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time" => no encontrado
C:\Program Files\Adroit System Care_Fede => movido correctamente
C:\Users\Fede\AppData\Local\BITA221.tmp => movido correctamente
C:\Users\Fede\AppData\Local\{6CCFA95F-A921-4354-8C33-836F90B0AEE8} => movido correctamente
C:\Users\Fede\AppData\Local\{B5CA75A0-CBC3-4FAA-A559-B46DC50A28B0} => movido correctamente
C:\Users\Fede\AppData\Local\{F9D3AC17-2B3D-4FA2-B3CE-5BDD80778F96} => movido correctamente
"CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"" => eliminado correctamente
"BVTFilter" => eliminado correctamente
"BVTConsumer" => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Classes\AutoCADScriptFile => eliminado correctamente
HKU\S-1-5-21-280445973-3083001335-2669547934-1000\Software\Classes\.scr => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Chromium => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C3712C93-020C-4F3B-AFCA-A9CB6BBB5206}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe" => no encontrado
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{267E1C0D-33C5-4444-BF79-0A582AB81782}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe" => no encontrado
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{11FC20AC-7BE7-49A4-B573-A6A38B9D4B46}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe" => no encontrado
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{00827388-F515-4C7E-9835-01437A617711}C:\users\fede\appdata\local\popcorn-time\popcorn-time.exe" => no encontrado

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


Adaptador de Ethernet Conexi¢n de  rea local:

   Sufijo DNS espec¡fico para la conexi¢n. . : fibertel.com.ar
   V¡nculo: direcci¢n IPv6 local. . . : fe80::bd47:d32:f551:b0a5%11
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.3
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.0.1

Adaptador de t£nel isatap.fibertel.com.ar:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007042c
No se puede iniciar el servicio o grupo de dependencia.



========= Final de CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-280445973-3083001335-2669547934-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18074591 B
Java, Flash, Steam htmlcache => 442919666 B
Windows/system/drivers => 3763229 B
Edge => 0 B
Chrome => 394058511 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 118335 B
systemprofile32 => 184563 B
LocalService => 316807 B
NetworkService => 259362493 B
Fede => 265758601 B

RecycleBin => 465460830 B
EmptyTemp: => 1.7 GB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 21:34:28 ====

Ahi fueron informes de los puntos 2 y 3!

Cuando tengas novedades me avisas! Muchas gracias por el tiempo dedicado!

Saludos!!!

Hola @Federico_Severini

Perfecto, el Fix se ejecuto correctamente, solo falto que comentes como sientes el equipo??


Para eliminar las herramientas utilizadas:

Descargas/Ejecutas >> Delfix, desde tu escritorio.

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7 /8 /10,presiona clic derecho y selecciona >> “Ejecutar como Administrador”)
  • Marca las casilla Remove disinfection tools y Purgue Sistem Restore
  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

Nos comentas si todo esta en orden para dar por Solucionado el tema.

Salu2.

La compu funciona barbaro!

El problema superrecurrente de los anuncios molestos desapareció.

En cualquier momento vuelvo a por mi notebook viejita, si se solucionó tan rapido esto seguro un empujon le voy a poder dar a esa maquinita.

Muchas gracias @SanMar, muy buen foro! y como siempre los voy a seguir recomendando!

1 me gusta

Hola @Federico_Severini

Genial…:+1:

Cuando quieras abres un nuevo tema, así podrás dejarla a punto.

Gracias a ti por confiar en Forospyware!!!

Para otros problemas, ya sabes donde encontrarnos. :wink:

Tema Solucionado

Salu2.