Fix result of Farbar Recovery Scan Tool (x64) Version: 24.10.2018 Ran by Usuario_2 (04-11-2018 01:45:45) Run:1 Running from C:\Users\Usuario_2\Desktop Loaded Profiles: Usuario_2 (Available Profiles: Usuario_2 & Invitado) Boot Mode: Safe Mode (minimal) ============================================== fixlist content: ***************** START CREATERESTOREPOINT: CLOSEPROCESSES: ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File Task: {4CC7A129-52BE-4E26-A9C7-29E8128DC5BF} - System32\Tasks\{6959BDC1-CB93-4175-B34F-C3F20232E238} => C:\Windows\system32\pcalua.exe -a C:\Users\usuario\Desktop\Secuencias_Siemens_v4.exe -d C:\Users\usuario\Desktop Task: {9BECCC31-5F7D-4D1C-B50B-74CBF81CF2CB} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-11-02] (AVAST Software) HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-21-3143936811-926489178-1697714602-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> Startup: C:\Users\Usuario_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\611b56ec4869990a84c02d88db3715cf.lnk [2018-07-11] ShortcutTarget: 611b56ec4869990a84c02d88db3715cf.lnk -> C:\EQUIPO_1\hnxoaruvfs.exe (AutoIt Team) BootExecute: GroupPolicyScripts: Restriction <==== ATTENTION U3 aswbdisk; no ImagePath C:\EQUIPO_1\hnxoaruvfs.exe HOSTS: REMOVEPROXY: EMPTYTEMP: CMD: netsh winsock reset CMD: ipconfig /renew CMD: ipconfig /flushdns CMD: bitsadmin /reset /allusers CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state ON CMD: netsh int ipv4 reset CMD: netsh int ipv6 reset END ***************** Error: Restore point can only be created in normal mode. Processes closed successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4CC7A129-52BE-4E26-A9C7-29E8128DC5BF} => removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CC7A129-52BE-4E26-A9C7-29E8128DC5BF} => removed successfully C:\Windows\System32\Tasks\{6959BDC1-CB93-4175-B34F-C3F20232E238} => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6959BDC1-CB93-4175-B34F-C3F20232E238} => removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{9BECCC31-5F7D-4D1C-B50B-74CBF81CF2CB}" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9BECCC31-5F7D-4D1C-B50B-74CBF81CF2CB}" => removed successfully C:\Windows\System32\Tasks\Avast Software\Overseer => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => removed successfully "HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE" => removed successfully "HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE" => removed successfully "HKU\S-1-5-21-3143936811-926489178-1697714602-1004\Control Panel\Desktop\\SCRNSAVE.EXE" => removed successfully "HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE" => removed successfully C:\Users\Usuario_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\611b56ec4869990a84c02d88db3715cf.lnk => moved successfully C:\EQUIPO_1\hnxoaruvfs.exe => moved successfully HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully C:\Windows\system32\GroupPolicy\Machine => moved successfully C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully HKLM\System\CurrentControlSet\Services\aswbdisk => removed successfully aswbdisk => service removed successfully "C:\EQUIPO_1\hnxoaruvfs.exe" => not found C:\Windows\System32\Drivers\etc\hosts => moved successfully Hosts restored successfully. ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully "HKU\S-1-5-21-3143936811-926489178-1697714602-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully "HKU\S-1-5-21-3143936811-926489178-1697714602-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully ========= End of RemoveProxy: ========= ========= netsh winsock reset ========= El cat logo Winsock se restableci¢ correctamente. Debe reiniciar el equipo para completar el restablecimiento. ========= End of CMD: ========= ========= ipconfig /renew ========= Configuraci¢n IP de Windows ========= End of CMD: ========= ========= ipconfig /flushdns ========= Configuraci¢n IP de Windows No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n. ========= End of CMD: ========= ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 [ 7.7.9600 ] BITS administration utility. (C) Copyright 2000-2006 Microsoft Corp. BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows. Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets. Unable to connect to BITS - 0x8007042c No se puede iniciar el servicio o grupo de dependencia. ========= End of CMD: ========= ========= netsh advfirewall reset ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo. ========= End of CMD: ========= ========= netsh advfirewall set allprofiles state ON ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo. ========= End of CMD: ========= ========= netsh int ipv4 reset ========= No hay valores configurados por el usuario para restablecer. ========= End of CMD: ========= ========= netsh int ipv6 reset ========= No hay valores configurados por el usuario para restablecer. ========= End of CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 93432242 B Java, Flash, Steam htmlcache => 34129712 B Windows/system/drivers => 172799 B Edge => 0 B Chrome => 153202 B Firefox => 51905924 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 128 B systemprofile32 => 0 B LocalService => 174632 B NetworkService => 0 B UpdatusUser => 0 B Usuario_2 => 47241435 B Invitado => 0 B RecycleBin => 113725 B EmptyTemp: => 216.8 MB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 01:46:14 ====