Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28.04.2019 Ran by meryglez (29-04-2019 13:35:30) Running from C:\Users\meryglez\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2014-09-30 18:00:43) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-3820194532-172373095-3644825477-500 - Administrator - Disabled) HomeGroupUser$ (S-1-5-21-3820194532-172373095-3644825477-1010 - Limited - Enabled) Invitado (S-1-5-21-3820194532-172373095-3644825477-501 - Limited - Enabled) meryglez (S-1-5-21-3820194532-172373095-3644825477-1001 - Administrator - Enabled) => C:\Users\meryglez ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Disabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AV: Kaspersky Free (Enabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8} AS: Kaspersky Free (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Microsoft Security Essentials (Disabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.010.20099 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.171 - Adobe) Apple Application Support (32 bits) (HKLM-x32\...\{49F7DD82-FC83-48BF-86C6-CFE6E1E233E1}) (Version: 7.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{1FA68E27-2951-42E8-9F57-1A7F6581B4FD}) (Version: 7.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5FA8C4BE-8C74-4B9C-9B49-EBF759230189}) (Version: 12.1.0.25 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.) AutoFirma (HKLM-x32\...\AutoFirma) (Version: 1.5.0 - Gobierno de España) AVerHybridTV (HKLM-x32\...\{F3A6EBFE-414C-4DC3-8931-83BD03784658}) (Version: 1.00.0001 - Your Company Name) Hidden AVerTV Hybrid + FM PCI (HKLM-x32\...\{4B4D344D-A71D-41EC-9FAB-1110A19B8296}) (Version: 6.00.0000 - AVerMedia Technologies, Inc.) Hidden AVerTV Hybrid + FM PCI (HKLM-x32\...\InstallShield_{4B4D344D-A71D-41EC-9FAB-1110A19B8296}) (Version: 6.00.0000 - AVerMedia Technologies, Inc.) BitTorrent (HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\BitTorrent) (Version: 7.10.4.44847 - BitTorrent Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.56 - Piriform) Configurador_FNMT (HKLM-x32\...\{438D4C4C-B703-4971-9C3D-33FF8A010ADB}) (Version: 3.5 - FNMT-RCM) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Dell System Detect (HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\d24084d039586cae) (Version: 8.11.0.3 - Dell) Dropbox (HKLM-x32\...\Dropbox) (Version: 71.4.108 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.189.1 - Dropbox, Inc.) Hidden Eines de correcció del Microsoft Office 2013: català (HKLM\...\{90150000-001F-0403-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Estudio para la mejora del producto HP DeskJet 3700 series (HKLM\...\{C55AD4A8-6C23-4FBC-95A1-C8054F251FD9}) (Version: 40.2.1085.16258 - HP Inc.) Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM\...\{90150000-001F-0456-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Galería de fotos (HKLM-x32\...\{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 74.0.3729.108 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.7 - Google LLC) Hidden HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) honestech VHS to DVD 2.0 SE (HKLM-x32\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech) HP DeskJet 3700 series Ayuda (HKLM-x32\...\{CD8639D1-1F7A-49D9-AA09-5D24DD6D8CDF}) (Version: 40.0.0 - HP) HP DeskJet 3700 series Software básico del dispositivo (HKLM\...\{45A556B7-46D5-4308-9882-B5839B4CAE53}) (Version: 40.2.1085.16258 - HP Inc.) HP Dropbox Plugin (HKLM-x32\...\{7BEBB31E-58C4-4FA5-9AD1-ACBE32BF0D12}) (Version: 36.0.41.58587 - HP) HP Google Drive Plugin (HKLM-x32\...\{63BD9C12-5CE9-4294-B1C3-A09F971FAFB5}) (Version: 36.0.41.58587 - HP) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) ImagXpress (HKLM-x32\...\{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}) (Version: 7.0.74.0 - Nero AG) Hidden Instalable DNIe (HKLM\...\{D2CE0562-13E0-4FC9-85F2-CA3D0392310E}) (Version: 14.0.2 - Cuerpo Nacional de Policía) Instalable módulo criptográfico DNIe 2_5_3 (HKLM-x32\...\{C7B3EC99-DABA-4861-B496-DD428787B86C}) (Version: - ) Intel(R) Computing Improvement Program (HKLM\...\{D40D4164-EEDB-4F0F-85C6-2058A9E34CC7}) (Version: 2.4.04370 - Intel Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) iTunes (HKLM\...\{AD1C6D89-91BE-43C3-B8FB-01D27E56E7DB}) (Version: 12.9.1.4 - Apple Inc.) Kaspersky Free (HKLM-x32\...\{718613F4-492D-4272-ACC3-D04A8EF0F883}) (Version: 19.0.0.1088 - Kaspersky Lab) Hidden Kaspersky Free (HKLM-x32\...\InstallWIX_{718613F4-492D-4272-ACC3-D04A8EF0F883}) (Version: 19.0.0.1088 - Kaspersky Lab) Kaspersky Secure Connection (HKLM-x32\...\{F10AA188-7166-430E-8810-FEAB2AD73DE3}) (Version: 19.0.0.1088 - Kaspersky Lab) Hidden Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{F10AA188-7166-430E-8810-FEAB2AD73DE3}) (Version: 19.0.0.1088 - Kaspersky Lab) KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - ) KWorld TV713X BDA Driver (HKLM-x32\...\KWorld TV713X BDA Driver_is1) (Version: - ) Malwarebytes versión 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes) Microsoft .NET Framework 4.7.2 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.7.03062 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 66.0.3 (x86 es-ES) (HKLM-x32\...\Mozilla Firefox 66.0.3 (x86 es-ES)) (Version: 66.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 66.0.3 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NEF Codec (HKLM-x32\...\{D6506521-0959-4FA3-875F-E2E28830B0D2}) (Version: 1.30.0 - Nikon Corporation) Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation) PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Realtek AC'97 Audio (HKLM-x32\...\{FB08F381-6533-4108-B7DD-039E11FBC27E}) (Version: 5.37 - Realtek Semiconductor Corp.) REALTEK DTV USB DEVICE (HKLM-x32\...\{DDBB7C89-1A09-441E-AA0F-6AA465755C17}) (Version: 1.00.0000 - Realtek) Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM\...\{90150000-001F-0416-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Skype versión 8.20 (HKLM-x32\...\Skype_is1) (Version: 8.20 - Skype Technologies S.A.) SlimDrivers (HKLM-x32\...\{6DF079D7-2A57-4710-81B1-064649FF86FC}) (Version: 2.3.2 - Slimware Utilities Holdings, Inc.) Hidden SMI Grabber Device (HKLM-x32\...\{B03B98E3-2795-48F6-BA33-793BBF5DF685}) (Version: 1.0.0.29 - Somagic) Software para dispositivos de chipset Intel® (HKLM-x32\...\{98f335cd-0a32-4b3f-b74c-ef9480e834f0}) (Version: 10.0.27 - Intel(R) Corporation) Hidden TotalMedia (HKLM-x32\...\{268CF0B8-CA38-4E20-9E99-514A07F7C1F1}) (Version: - ArcSoft) Update for Skype for Business 2015 (KB4462207) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{E91507E0-38E5-4415-BAAB-932075CDE00C}) (Version: - Microsoft) Update for Skype for Business 2015 (KB4462207) 64-Bit Edition (HKLM\...\{90150000-012B-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{E91507E0-38E5-4415-BAAB-932075CDE00C}) (Version: - Microsoft) Update for Skype for Business 2015 (KB4462207) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{E91507E0-38E5-4415-BAAB-932075CDE00C}) (Version: - Microsoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN) Windows Deployment Tools (HKLM-x32\...\{BFC9778E-9765-C94C-C082-C2514F8DEB9B}) (Version: 8.59.25584 - Microsoft) Windows Driver Package - Dirección General de la Policía (UMPass) SmartCard (04/08/2018 1.0.2.8) (HKLM\...\7B3391C6362BF89258FE123715A1CB82A8286DF6) (Version: 04/08/2018 1.0.2.8 - Dirección General de la Policía) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows PE x86 x64 (HKLM-x32\...\{F89D69CA-6EE1-E037-DD3B-08CDDE1BED1C}) (Version: 8.59.25584 - Microsoft) Windows PE x86 x64 wims (HKLM-x32\...\{85F4ACB1-E7DC-C3C6-F4FD-BB936DF2695E}) (Version: 8.59.25584 - Microsoft) WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => -> No File ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [AmitiAntivirus] -> {1763C0A7-C7BF-4a16-9A20-8207A5D6A00F} => -> No File ContextMenuHandlers1: [Baidu_Scan] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CB} => -> No File ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => -> No File ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers1: [Kaspersky Anti-Virus 19.0.0] -> {755D388B-420B-4692-A974-84AAF0E577D3} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 19.0.0\x64\ShellEx.dll [2019-04-26] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [Baidu_Scan] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CB} => -> No File ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => -> No File ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers2: [Kaspersky Anti-Virus 19.0.0] -> {755D388B-420B-4692-A974-84AAF0E577D3} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 19.0.0\x64\ShellEx.dll [2019-04-26] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [AmitiAntivirus] -> {1763C0A7-C7BF-4a16-9A20-8207A5D6A00F} => -> No File ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => -> No File ContextMenuHandlers4: [Kaspersky Anti-Virus 19.0.0] -> {755D388B-420B-4692-A974-84AAF0E577D3} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 19.0.0\x64\ShellEx.dll [2019-04-26] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-04-23] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2009-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers6: [AmitiAntivirus] -> {1763C0A7-C7BF-4a16-9A20-8207A5D6A00F} => -> No File ContextMenuHandlers6: [Baidu_Scan] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CB} => -> No File ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers6: [Kaspersky Anti-Virus 19.0.0] -> {755D388B-420B-4692-A974-84AAF0E577D3} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 19.0.0\x64\ShellEx.dll [2019-04-26] (Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2014-10-01 19:19 - 2010-11-20 15:26 - 000503296 _____ (Microsoft Windows -> Microsoft Corporation) [File not signed] C:\Windows\system32\imapi2.dll 2009-07-14 01:55 - 2009-07-14 03:40 - 000053248 _____ (Microsoft Corporation) [File not signed] C:\Windows\System32\AltTab.dll 2014-10-01 19:19 - 2010-11-20 15:27 - 001808384 _____ (Microsoft Corporation) [File not signed] C:\Windows\System32\pnidui.dll 2014-10-01 19:16 - 2010-11-20 15:24 - 000721408 _____ (Microsoft Corporation) [File not signed] C:\Windows\System32\bthprops.cpl 2017-07-26 09:58 - 2017-07-26 09:58 - 000192200 _____ (Huawei Software Technologies Co., LTD. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\dell.com -> dell.com IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\fnmt.es -> hxxp://fnmt.es IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\fnmt.es -> hxxps://fnmt.es IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\fnmt.gob.es -> hxxps://fnmt.gob.es IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\fnmt.gob.es -> hxxp://fnmt.gob.es IE trusted site: HKU\S-1-5-21-3820194532-172373095-3644825477-1001\...\localhost -> localhost ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2016-06-09 16:29 - 000000035 _____ C:\Windows\system32\drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files\AutoFirma\AutoFirma;C:\Program Files (x86)\AOMEI Backupper HKU\S-1-5-21-3820194532-172373095-3644825477-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\meryglez\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == If an entry is included in the fixlist, it will be removed. MSCONFIG\Services: BsrSvc => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk => C:\Windows\pss\TMMonitor.lnk.CommonStartup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: CCleaner Monitoring => MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Dropbox => "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup MSCONFIG\startupreg: GoogleChromeAutoLaunch_21D46F547B6A55BB173786BE090FBD6F => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 MSCONFIG\startupreg: GUDelayStartup => "D:\Glary Utilities 5\StartupManager.exe" -delayrun MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: MSC => "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{0424451A-ECF0-4FF8-8DD7-408F8471EBB3}] => (Allow) D:\TotalMedia.exe (ArcSoft, Inc.) [File not signed] FirewallRules: [{85F44B3A-C332-43D0-ACE6-E1731895848D}] => (Allow) D:\TotalMedia.exe (ArcSoft, Inc.) [File not signed] FirewallRules: [{9BE2636F-2C3E-4D50-AF46-85F5D9119441}] => (Allow) C:\Users\meryglez\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{0AFE1D9C-ED8C-4F37-8029-40764751F3B4}] => (Allow) C:\Users\meryglez\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{2D06B236-FAB7-4535-BEE6-B006AB1AECE5}G:\descargass\emule\emule.exe] => (Allow) G:\descargass\emule\emule.exe No File FirewallRules: [UDP Query User{0C785867-5C6C-4E3F-B966-6E2871209E40}G:\descargass\emule\emule.exe] => (Allow) G:\descargass\emule\emule.exe No File FirewallRules: [{A247B668-4499-40C2-A6F5-997DBC435C03}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B4EA54BC-2548-4270-BA5C-FDC56AF1421B}] => (Allow) LPort=2869 FirewallRules: [{0C8C7F09-2F80-4D0C-97B8-94C2AA2E5DE8}] => (Allow) LPort=1900 FirewallRules: [{EB58FE34-DB38-48A0-B495-F23DD4F57485}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0DF730DA-1B7A-45F8-974C-2BF15F39BF66}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{5C0D258B-25F7-4A8D-A46C-4F0D7CDC92F3}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F171DD54-7DF2-4C12-AD7D-BCB4CAFFC5CF}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{822B254D-45B0-46A0-AA0B-3A55AA546B2D}] => (Allow) LPort=1688 FirewallRules: [{531A2F23-320D-40EC-B836-6931F5ADAD86}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{52FC5FC3-2A7E-49AE-BB4E-F7E4D120D3C5}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{8EEB97C4-069C-40AF-8B7A-7064CADE8116}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0CEC7FD4-2D6B-47B5-8942-8622CD9FB2DC}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{E87D0A2E-5593-4641-A553-7378B7A0B94A}C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.7_42331.exe] => (Allow) C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.7_42331.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{E0E728A8-A380-428F-A1D2-88C871B299E1}C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.7_42331.exe] => (Allow) C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.7_42331.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{198BB079-CB56-439C-9FEF-9C3C842E7B5D}C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.9_42974.exe] => (Block) C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.9_42974.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{37D4A527-2DC6-4EA4-A771-990968B8C131}C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.9_42974.exe] => (Block) C:\users\meryglez\appdata\roaming\bittorrent\updates\7.9.9_42974.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{EDDA2B4D-22B3-473A-B213-471BE69EEE3B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B9B93287-3F17-469E-B952-227C3A318959}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{A5020342-A229-4014-9BF5-CE3AC4E1B028}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E10282C1-B137-4D6B-8D44-04330CE007BF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{B1CC1D17-E5EF-404E-8EF6-328184EE9F74}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [UDP Query User{82F0561B-A148-416E-8B88-EDF611AF7DE0}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{6383BFA3-4DAD-4620-9A8E-1B9EC5334CFC}] => (Allow) C:\Program Files\HP\HP DeskJet 3700 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.) FirewallRules: [{BEB46EA7-C0BA-4EED-BE32-FD55CECD182C}] => (Allow) LPort=5357 FirewallRules: [{F4E88682-CBAC-4E40-B49E-50419865B331}] => (Allow) C:\Program Files\HP\HP DeskJet 3700 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [{D41E602C-C18B-41A7-B1FA-F536F785A37E}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{33011905-4CB8-4082-8536-FB17DB1F179A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [TCP Query User{778771EB-884F-45A9-BBF1-E96CAC870933}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [UDP Query User{17BA037D-5CD0-4573-8EDD-BA519A05D126}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{8005633C-F969-4E2C-8631-A397F44C9FC0}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{792121B3-13C0-4EF7-B7C0-ABC9B87B5564}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{F18FD50B-4AF3-43C7-A10C-7AB78F0FA448}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{7C91D2E8-DD0C-400B-819E-FA0DFB38749B}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{2E3EBCF5-901C-428A-9F7C-3CE396A78CA4}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{E37CF83D-DEED-4D90-935A-8A17507063D3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{34A86F64-ABD0-40E6-816B-3BADF6CAB5AA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BA619A84-EC94-45FE-8FBC-DE28A27C049D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) ==================== Restore Points ========================= 28-04-2019 17:29:11 Windows Update 29-04-2019 13:41:35 Copias de seguridad de Windows ==================== Faulty Device Manager Devices ============= Name: MpKsl5aeeb8ce Description: MpKsl5aeeb8ce Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: MpKsl5aeeb8ce Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (04/29/2019 01:24:42 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (04/29/2019 01:21:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa FRST64.exe, versión 28.4.2019.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades. Identificador de proceso: 1720 Hora de inicio: 01d4fe7b656864e7 Hora de finalización: 293 Ruta de acceso de la aplicación: C:\Users\meryglez\Desktop\FRST64.exe Identificador de informe: b787e5c2-6a70-11e9-8d27-0014224f0235 Error: (04/28/2019 04:24:10 PM) (Source: ESENT) (EventID: 489) (User: ) Description: taskhost (1644) Al intentar abrir el archivo "C:\Users\meryglez\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" para acceso de sólo lectura se produjo el error de sistema 32 (0x00000020): "El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. ". La operación para abrir el archivo se cerrará con el error -1032 (0xfffffbf8). Error: (04/28/2019 12:12:29 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (04/27/2019 01:47:11 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (04/26/2019 08:35:02 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa IEXPLORE.EXE, versión 11.0.9600.19326, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades. Identificador de proceso: 17a4 Hora de inicio: 01d4fc5d818f1a9e Hora de finalización: 0 Ruta de acceso de la aplicación: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Identificador de informe: Error: (04/26/2019 02:20:55 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (04/25/2019 05:52:28 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 System errors: ============= Error: (04/29/2019 01:07:19 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: El servicio Windows Update no respondió después de iniciar. Error: (04/29/2019 01:01:34 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID {C97FCC79-E628-407D-AE68-A06AD6D8B4D1} y APPID {344ED43D-D086-4961-86A6-1106F4ACAD9B} al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (04/29/2019 01:01:28 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID {C97FCC79-E628-407D-AE68-A06AD6D8B4D1} y APPID {344ED43D-D086-4961-86A6-1106F4ACAD9B} al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (04/29/2019 01:00:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Moon Secure Antivirus Core no pudo iniciarse debido al siguiente error: El sistema no puede encontrar el archivo especificado. Error: (04/29/2019 01:00:21 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: El servicio Microsoft Antimalware Service se cerró con el siguiente error: %%-2147024894 = El sistema no puede encontrar el archivo especificado. Error: (04/28/2019 09:56:34 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: El servidor {752073A1-23F2-4396-85F0-8FDB879ED0ED} no se registró con DCOM dentro del tiempo de espera requerido. Error: (04/28/2019 09:56:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: El servicio Instalador de módulos de Windows se cerró con el siguiente error: Recursos insuficientes en el sistema para completar el servicio solicitado. Error: (04/28/2019 09:37:14 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: El servicio Windows Update no respondió después de iniciar. Windows Defender: =================================== Date: 2019-04-24 15:35:19.830 Description: El examen de Windows Defender se detuvo antes de completarse. Id. de examen:{7BCAF54E-13C2-4B55-A76C-03F1A4CB7C37} Tipo de examen:AntiSpyware Parámetros de examen:Examen rápido Usuario:meryglez-PC\meryglez Date: 2018-08-31 10:32:08.815 Description: El examen de Windows Defender se detuvo antes de completarse. Id. de examen:{63302126-55F2-45BB-905F-DD0C8DAF921A} Tipo de examen:AntiSpyware Parámetros de examen:Examen rápido Usuario:meryglez-PC\meryglez Date: 2018-06-13 13:15:50.381 Description: Windows Defender detectó spyware u otro software potencialmente no deseado. Para obtener más información, consulte lo siguiente: http://go.microsoft.com/fwlink/?linkid=37020&name=SoftwareBundler:Win32/ICLoader&threatid=222548 Nombre:SoftwareBundler:Win32/ICLoader Id.:222548 Gravedad:Alta Categoría:Software que instala varios programas Ruta de acceso encontrada:containerfile:D:\descargas\Amiti_Antivirus_24_0_340.rar;file:D:\descargas\Amiti_Antivirus_24_0_340.rar->Amiti_Antivirus_24_0_340.exe;filelocalcopy:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{518B23F0-79A6-4E94-9E32-505528792A8F}-Amiti_Antivirus_24_0_340.rar;webfile:C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{518B23F0-79A6-4E94-9E32-505528792A8F}-Amiti_Antivirus_24_0_340.rar|http://ec2-18-196-203-238.eu-central-1.compute.amazonaws.com/find/9b147f9fa6258da860fca3d791602670/result-495358845.dl?source=direct&return_url=http{D0AEB633-EFB9-44AB-8205-8CB1CCBA8E81}A6.1.7601.18170F6.1.7601.18170Fdownload.ap.bittorrent.com6.1.7601.18170Ftrack6.1.7601.18170Fstable6.1.7601.18170Fendpoint6.1.7601.18170Futorrent6.1.7601.18170Fos6.1.7601.18170Fwindows;webfile:D:\descargas\Amiti_Antivirus_24_0_340.rar|http://ec2-18-196-203-238.eu-central-1.compute.amazonaws.com/find/9b147f9fa6258da860fca3d791602670/result-495358845.dl?source=direct&return_url=http{D0AEB633-EFB9-44AB-8205-8CB1CCBA8E81}A6.1.7601.18170F6.1.7601.18170Fdownload.ap.bittorrent.com6.1.7601.18170Ftrack6.1.7601.18170Fstable6.1.7601.18170Fendpoint6.1.7601.18170Futorrent6.1.7601.18170Fos6.1.7601.18170Fwindows Tipo de detección:Concreto Origen de detección:Descargas y datos adjuntos Estado:Desconocido Usuario:meryglez-PC\meryglez Nombre de proceso:C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Date: 2016-01-25 10:19:08.794 Description: El examen de Windows Defender se detuvo antes de completarse. Id. de examen:{E1508956-534A-4319-885F-4A857BE37A4A} Tipo de examen:AntiSpyware Parámetros de examen:Examen rápido Usuario:meryglez-PC\meryglez Date: 2016-01-25 10:10:15.681 Description: El examen de Windows Defender se detuvo antes de completarse. Id. de examen:{FBC708D9-68F2-4299-88C6-DE11E6893A16} Tipo de examen:AntiSpyware Parámetros de examen:Examen rápido Usuario:meryglez-PC\meryglez Date: 2018-07-04 13:47:21.336 Description: Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma:1.271.442.0 Versión de firma anterior:1.269.1961.0 Origen de actualización:Usuario Tipo de firma:AntiSpyware Tipo de actualización:Diferencia Usuario:NT AUTHORITY\SYSTEM Versión de motor actual:1.1.15000.2 Versión de motor anterior:1.1.14901.4 Código de error:0x80070666 Descripción de error:Ya está instalada otra versión de este producto. La instalación de esta versión no puede continuar. Para configurar o quitar la versión existente de este producto, use Agregar o quitar programas del Panel de control. Date: 2018-07-04 13:47:21.320 Description: Windows Defender encontró un error al intentar actualizar el motor. Nueva versión de motor:1.1.15000.2 Versión de motor anterior:1.1.14901.4 Origen de actualización:Usuario Usuario:NT AUTHORITY\SYSTEM Código de error:0x80070666 Descripción de error:Ya está instalada otra versión de este producto. La instalación de esta versión no puede continuar. Para configurar o quitar la versión existente de este producto, use Agregar o quitar programas del Panel de control. Date: 2017-03-20 19:05:18.811 Description: El motor de %1 se detuvo debido a un error inesperado. Tipo de error:%5 Código de excepción:%6 Recurso:%3 Date: 2017-03-20 19:03:13.705 Description: El motor de %1 se detuvo debido a un error inesperado. Tipo de error:%5 Código de excepción:%6 Recurso:%3 Date: 2017-03-20 19:03:12.661 Description: El motor de %1 se detuvo debido a un error inesperado. Tipo de error:%5 Código de excepción:%6 Recurso:%3 CodeIntegrity: =================================== Date: 2017-06-22 19:03:43.916 Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Users\meryglez\AppData\Local\Temp\DellBIOS.Sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido. Date: 2017-06-22 19:03:43.774 Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Users\meryglez\AppData\Local\Temp\DellBIOS.Sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido. Date: 2016-06-13 19:44:13.427 Description: Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema. Date: 2016-06-13 19:44:12.933 Description: Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema. Date: 2016-06-13 19:44:12.465 Description: Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema. Date: 2016-06-13 19:44:12.192 Description: Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe porque el conjunto de hashes de imagen por página no se encuentra en el sistema. Date: 2016-06-09 17:31:40.840 Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Users\meryglez\AppData\Local\Temp\DellBIOS.Sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido. Date: 2016-06-09 17:31:40.756 Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Users\meryglez\AppData\Local\Temp\DellBIOS.Sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido. ==================== Memory info =========================== BIOS: Dell Inc. DELL - 7 10/13/2005 Motherboard: Dell Inc. 0F8098 Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz Percentage of memory in use: 90% Total physical RAM: 2038.14 MB Available physical RAM: 186.13 MB Total Virtual: 4463.93 MB Available Virtual: 579.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:149.01 GB) (Free:46.48 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: () (Fixed) (Total:931.36 GB) (Free:693.66 GB) NTFS \\?\Volume{f4ce4f24-9709-11e6-870d-806e6f6e6963}\ ((H:)) (Fixed) (Total:0.15 GB) (Free:0.03 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: EBA6C63F) Partition 1: (Active) - (Size=149 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 149 GB) (Disk ID: AFBE7972) Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================