Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03.03.2019 Ran by Usuario (06-03-2019 17:02:21) Running from C:\Users\Usuario\Downloads Windows 10 Pro Version 1809 17763.316 (X64) (2018-10-03 10:07:14) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-3087908810-4033223051-3795370541-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3087908810-4033223051-3795370541-503 - Limited - Disabled) defaultuser0 (S-1-5-21-3087908810-4033223051-3795370541-1000 - Limited - Disabled) => C:\Users\defaultuser0 Invitado (S-1-5-21-3087908810-4033223051-3795370541-501 - Limited - Disabled) Usuario (S-1-5-21-3087908810-4033223051-3795370541-1001 - Administrator - Enabled) => C:\Users\Usuario WDAGUtilityAccount (S-1-5-21-3087908810-4033223051-3795370541-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 3DMark (HKLM\...\{F611E93B-8EC1-4662-BDFF-6909DB820862}) (Version: 2.2.3509.0 - Futuremark) Hidden 3DMark (HKLM-x32\...\{4bf26510-8c4e-447c-b819-2967aeca2839}) (Version: 2.2.3509.0 - Futuremark) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Actualización de NVIDIA 35.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 35.0.0.0 - NVIDIA Corporation) Hidden Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.142 - Adobe Systems Incorporated) ApoDispatchConfigurator (HKLM\...\{C89CDDB0-B622-4DEA-8605-9315EAFA0BE9}) (Version: 2.3.601 - Nahimic) Hidden Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22391 - Microsoft Corporation) AudioLaunchpadConfigurator (HKLM\...\{67B299E1-08DA-4595-9492-F3E35967FC9C}) (Version: 2.3.601 - Nahimic) Hidden CAM (HKLM-x32\...\{C21748BF-DB1D-489A-917A-88DC670B97DB}) (Version: 3.7.0 - NZXT) cFosSpeed v10.11 (HKLM\...\cFosSpeed) (Version: 10.11 - cFos Software GmbH, Bonn) CheckDevicesConfigurator (HKLM\...\{A10CD3A1-9563-4E5E-8660-19649C41B3F8}) (Version: 2.3.601 - Nahimic) Hidden CPUID CPU-Z MSI 1.77 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.77 - CPUID, Inc.) Discord (HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\Discord) (Version: 0.0.304 - Discord Inc.) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 419.35 - NVIDIA Corporation) Hidden Dragon Eye(x64) (HKLM\...\{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.3 - MSI) Hidden Dragon Eye(x64) (HKLM-x32\...\Installshield_{B746827A-3219-4EF8-8053-CEA5AEC12D33}) (Version: 0.0.2.3 - MICRO-STAR INT'L,.LTD.) FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 6.TTRS.2017 - Thrustmaster) Futuremark SystemInfo (HKLM-x32\...\{E540B871-3230-4C5B-AAD5-A30F64398275}) (Version: 4.48.599.0 - Futuremark) Geeks3D FurMark 1.18.2.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 72.0.3626.121 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden HWiNFO64 Version 5.40 (HKLM\...\HWiNFO64_is1) (Version: 5.40 - Martin Malík - REALiX) Intel Extreme Tuning Utility (HKLM-x32\...\{41E5D953-530A-441B-98D3-92B5D6B80AEB}) (Version: 6.2.0.17 - Intel Corporation) Hidden Intel Extreme Tuning Utility (HKLM-x32\...\{fde8aa07-3912-4bdf-ad35-ff1231bfd00d}) (Version: 6.2.0.17 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation) Intel® Software Guard Extensions Platform Software (HKLM\...\{2DF17C75-9627-4213-8612-17955E92F782}) (Version: 1.6.101.32869 - Intel Corporation) iRacing Setup Sync version 3.0 (HKLM-x32\...\{C9A090AA-AA71-46EE-901E-22A63652BD91}_is1) (Version: 3.0 - Nick Thissen) iRacing.com Race Simulation (HKLM-x32\...\{CBBB3C80-76F5-42B5-92A6-C4BF84796DCB}) (Version: 2.27.0169 - iRacing.com Motorsport Simulations) Java 8 Update 201 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180201F0}) (Version: 8.0.2010.9 - Oracle Corporation) Java 8 Update 201 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180201F0}) (Version: 8.0.2010.9 - Oracle Corporation) LauncherSetup (HKLM\...\{A3A6140D-E717-4DB8-92EA-603F4E918B58}) (Version: 2.3.601 - Nahimic) Hidden League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) Logitech Gaming Software 9.02 (HKLM\...\Logitech Gaming Software) (Version: 9.02.65 - Logitech Inc.) Microsoft OneDrive (HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\OneDriveSetup.exe) (Version: 19.002.0107.0008 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 65.0.1 (x64 es-ES) (HKLM\...\Mozilla Firefox 65.0.1 (x64 es-ES)) (Version: 65.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3 - Mozilla) MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 3.0.0.07 - MSI) MSI DPC Latency Tuner (HKLM-x32\...\{1AAC56F3-3F60-47DB-BE6B-088F36ADFDC5}_is1) (Version: 1.0.0.09 - MSI) MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.8 - MSI) MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.83 - MSI) MSI Gaming Lan Manager (HKLM-x32\...\{3318282C-D4D6-4B29-BBD5-95FC34B54FF0}_is1) (Version: 1.0.0.29 - MSI) MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD) MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.08 - MSI) MSI RAMDisk (HKLM-x32\...\{F29CF050-7278-4CDB-9EF8-2DC6DAA87453}}_is1) (Version: 1.0.0.20 - MSI) MSI Smart Tool (HKLM-x32\...\{DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1) (Version: 1.0.0.03 - MSI) MSI X Boost (HKLM-x32\...\{515143BB-7A11-4D85-B941-D520AAAA099C}_is1) (Version: 1.0.0.12 - MSI) Nahimic 2 (HKLM-x32\...\{c86c5226-abea-46b1-b302-7f10ca311ce7}) (Version: 2.3.6 - Nahimic) Nahimic2UISetup (HKLM\...\{B596EACD-BD95-4160-906D-E2624A9A4A08}) (Version: 2.3.601 - Nahimic) Hidden NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.13 - NVIDIA Corporation) Hidden NVIDIA Controlador de 3D Vision 419.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 419.35 - NVIDIA Corporation) NVIDIA Controlador de audio HD 1.3.38.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.13 - NVIDIA Corporation) NVIDIA Controlador de gráficos 419.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 419.35 - NVIDIA Corporation) NVIDIA Controlador de la controladora 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) NVIDIA GeForce Experience 3.17.0.126 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.17.0.126 - NVIDIA Corporation) NVIDIA Software del sistema PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) Panel de control de NVIDIA 419.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 419.35 - NVIDIA Corporation) Hidden ProductDaemonSetup (HKLM\...\{C7DEDE08-7DE5-4D51-A2DD-00720E18BDD7}) (Version: 2.3.601 - Nahimic) Hidden ProductNSConfigurator (HKLM\...\{DC741799-E2BC-4C68-A280-F66A4C17EB03}) (Version: 2.3.601 - Nahimic) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7977 - Realtek Semiconductor Corp.) Skype versión 8.40 (HKLM-x32\...\Skype_is1) (Version: 8.40 - Skype Technologies S.A.) Software para dispositivos de chipset Intel® (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden SonicMapperConfigurator (HKLM\...\{DCC126E6-E4E8-417B-BBD4-92C5CC5AF279}) (Version: 2.3.601 - Nahimic) Hidden Spotter en español para iRacing Motorsport Simulation (HKLM-x32\...\Spotter en español para iRacing Motorsport Simulation) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Trading Paints (HKLM-x32\...\{14EBC05F-6051-44FE-A57E-812F1449D759}) (Version: 2.0.11 - Rhinode LLC) UIInstallUpgrade (HKLM\...\{D3B59AFD-F72C-44E9-A19B-16E943127A2B}) (Version: 2.3.601 - Nahimic) Hidden WinRAR 4.20 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.3 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3087908810-4033223051-3795370541-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6} ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed] ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2012-05-27] (Alexander Roshal) [File not signed] ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2012-05-27] (Alexander Roshal) [File not signed] ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-03-01] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> No File ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2012-05-27] (Alexander Roshal) [File not signed] ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2012-05-27] (Alexander Roshal) [File not signed] ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {085609DB-F70F-41B6-BEB1-A3E8CD0D8243} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) Task: {0C968E02-C27B-4085-AABF-CAA2F4D86BA8} - System32\Tasks\MSISW_Host => C:\Windows\SysWoW64\muachost.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) Task: {0D757803-CCE9-4154-9123-AF3A48A6A7C9} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {18C51B57-F236-441D-8BF7-F6850AE046A0} - System32\Tasks\Nahimic2Svc32Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2Svc32.exe (A-Volute -> ) Task: {1B6F8B80-2070-4E44-A1D2-9DEC0E71DC2B} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) Task: {1EB4AD7E-A63B-4F52-AA50-2A0FA843509B} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) Task: {386ED76C-03FB-46B1-B71B-5C751BEF58F8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {39736363-19DA-4C53-87DC-E9D01C386657} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe (Intel(R) Software -> Intel Corporation) Task: {470EECB2-26AF-4510-8698-98CCF6E43993} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {5486AF44-62CE-440F-92BF-036C4EC0ED46} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {5617148B-0208-4BE2-AD72-3058B50CCE5D} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {5D94A825-BFD9-4A48-B86E-4A6E4826D575} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) Task: {68CD3C77-0166-43CD-B2B3-5746815A1C3F} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe Task: {6C85A264-5854-4CF2-AAB3-FA71C11ABE05} - System32\Tasks\Nahimic2Svc64Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2Svc64.exe (A-Volute -> ) Task: {74F987C2-EEC8-4693-9CE7-9304C65D1C18} - System32\Tasks\D3DGearRawFrameCaptureTask => C:\Program Files (x86)\iRacing\d3dGear.exe (D3DGear Technologies -> D3DGear Technologies.) Task: {76672AD1-7226-4640-BBD4-62FB523F9FD6} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {77FA26FD-B651-4F58-9375-299E71B01D41} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {7F645ADB-2B53-443E-8C16-92D19390ECB8} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) Task: {85A70EFE-03B6-456C-B996-D904F7BDE27F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) Task: {8993EB85-AFDB-4200-B2EE-3A1018361003} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_pepper.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {93568D4A-A44F-4F56-B6D9-1C311C0E1E14} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.) Task: {93642EF6-9BC8-4483-BFED-CA24A8AD0BD9} - System32\Tasks\Nahimic2UILauncherRun => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe (A-Volute -> ) Task: {94B67FDF-A2D1-4B75-B4C0-573FB9A4C0EA} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe (AVAST Software s.r.o. -> AVAST Software) Task: {95DC2032-9680-408F-A287-0B4B76528FF9} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION Task: {969EA71D-870D-4A83-AB0E-5FDE895B1FBF} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe Task: {A820F0F4-D9B5-4233-8EE5-4C728B6EC2D7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) Task: {B1C97A0E-997A-44BA-8175-BEC4D3B1926E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.) Task: {B2D61C6B-3DA6-454B-8668-AE5E689564F6} - System32\Tasks\CAM.Desktop => C:\Program Files (x86)\NZXT\CAM\CAM.Desktop.exe (NZXT -> ) Task: {C0148D29-2F6B-46CF-BE0B-0A93C8634E52} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {C4298A1E-AA15-4A0C-BED1-77B62759C90A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {C84F93A5-C9E4-4146-9D82-E989E4E5CF90} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {CF0136F7-A759-42CC-B745-0D4AF185D572} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {D5CF083F-03B6-4FEB-B292-D9AFBB7FAA4F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) Task: {E1CD7A6E-A927-42C3-B86A-2A9B74659485} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) Task: {E3082ADA-853D-43A0-A67D-457446AC4E74} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (NVIDIA Corporation -> NVIDIA Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-08-24 16:54 - 2016-08-24 16:54 - 000352256 _____ (Intel(R) Corporation) [File not signed] C:\Windows\system32\NCS2Setp.dll 2017-02-28 13:32 - 2016-06-14 16:35 - 000187392 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll 2017-02-28 16:52 - 2012-05-27 21:38 - 000196096 _____ (Alexander Roshal) [File not signed] C:\Program Files (x86)\WinRAR\rarext.dll 2010-11-18 21:08 - 2010-11-18 21:08 - 000086016 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll 2018-04-06 19:29 - 2018-04-06 19:29 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Logitech Gaming Software\ssleay32.dll 2018-04-06 19:29 - 2018-04-06 19:29 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Logitech Gaming Software\LIBEAY32.dll 2018-08-21 20:56 - 2018-08-21 20:56 - 001955328 _____ () [File not signed] C:\Program Files (x86)\NZXT\CAM\Launcher\ffmpeg.dll 2018-08-21 20:56 - 2018-08-21 20:56 - 017861632 _____ (Node.js) [File not signed] C:\Program Files (x86)\NZXT\CAM\Launcher\node.dll 2018-08-21 20:56 - 2018-08-21 20:56 - 003687936 _____ () [File not signed] C:\Program Files (x86)\NZXT\CAM\Launcher\libglesv2.dll 2018-08-21 20:56 - 2018-08-21 20:56 - 000017920 _____ () [File not signed] C:\Program Files (x86)\NZXT\CAM\Launcher\libegl.dll 2017-02-28 13:32 - 2014-06-23 09:56 - 001113600 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\MSI\RAMDisk\System.Data.SQLite.dll 2019-02-22 11:05 - 2015-06-23 16:41 - 000082432 _____ (Fintek) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\FintekUSBDll.dll 2017-02-28 13:37 - 2005-07-18 13:43 - 000160256 _____ () [File not signed] C:\Program Files (x86)\MSI\Live Update\unrar.dll 2017-02-28 13:32 - 2016-06-14 16:35 - 000163328 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll 2019-02-22 11:05 - 2017-08-02 14:48 - 000237568 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\LEDControl.dll 2019-02-22 11:05 - 2016-10-03 13:43 - 000399872 _____ (TODO: <公司名稱>) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\SDKDLL.dll 2018-04-25 11:13 - 2018-04-25 11:13 - 001246208 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\NZXT\CAM\x86\SQLite.Interop.dll 2018-05-15 10:25 - 2018-05-15 10:25 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files (x86)\NZXT\CAM\DLLs\SiUSBXp.dll 2018-08-21 12:59 - 2019-03-06 16:44 - 001427456 _____ (CPUID) [File not signed] C:\Program Files (x86)\NZXT\CAM\DLLs\cpuidsdk.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2016-07-16 12:47 - 2017-08-31 02:25 - 000000826 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;c:\program files (x86)\iracing;c:\program files (x86)\iracing;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;d:\;d:\descargas chrome;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%D3DGEARPATH% HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == If an entry is included in the fixlist, it will be removed. MSCONFIG\Services: Avira.ServiceHost => 2 HKLM\...\StartupApproved\StartupFolder: => "iRacingSetupSyncLauncher.lnk" HKLM\...\StartupApproved\Run32: => "Live Update" HKLM\...\StartupApproved\Run32: => "MSI Gaming Lan Manager" HKLM\...\StartupApproved\Run32: => "X_Boost" HKLM\...\StartupApproved\Run32: => "Command Center" HKLM\...\StartupApproved\Run32: => "Fast Boot" HKLM\...\StartupApproved\Run32: => "Avira SystrayStartTrigger" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "AceStream" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Gaijin.Net Agent" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Speech Recognition" HKU\S-1-5-21-3087908810-4033223051-3795370541-1001\...\StartupApproved\Run: => "Skype for Desktop" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{CEFFECAE-A1CF-4210-9DF1-1BD6026C4193}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{E3239ADB-B12D-4754-B147-898C5322923E}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{1754E5A4-D967-49DF-8C81-F7CDB13E18D0}] => (Allow) LPort=9142 FirewallRules: [{862F5D43-8A9C-4F18-9936-BAF9CAA0A250}] => (Allow) LPort=38518 FirewallRules: [{D788F048-ED5F-48AA-942C-951F5E0A4A8A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3B043FA1-40C6-47F1-843D-92BF3968BA5D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{15B15995-78D5-4DED-ADFF-ED5568375B5A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{019D3E61-E3C2-4874-86A0-FE99002495E5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{7A0B6E2B-BE08-4B71-95A9-35C4FFB780E7}] => (Allow) LPort=9143 FirewallRules: [{7441F08B-7D02-42B6-8656-D38F3AB0D2B1}] => (Allow) LPort=2333 FirewallRules: [TCP Query User{A5B4E574-7705-499B-8AA0-A208FE7B0FA6}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [UDP Query User{3E205A62-11F5-428F-837C-083A24BA0A1C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [{661B1F4F-7F03-4B11-8A12-0C2A200DE721}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{7FA24C7C-EF2E-48AA-9219-9365C7A7FEE2}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [TCP Query User{8B594BE9-FEC4-41F6-94A6-989C4CB84BDC}D:\program files (x86)\steam\steamapps\common\war thunder\launcher.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\war thunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [UDP Query User{DF822086-5BAD-4B0B-A5FF-DD46473733C1}D:\program files (x86)\steam\steamapps\common\war thunder\launcher.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\war thunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [{FA2CF457-9540-4395-9A84-B9D315AC4326}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe (Bohemia Interactive a.s. -> Bohemia Interactive) FirewallRules: [{04E9617E-DD31-4E23-A2F0-E1AA235D8B7A}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe (Bohemia Interactive a.s. -> Bohemia Interactive) FirewallRules: [TCP Query User{21AC9717-2437-41DD-8080-EAAD96BA2F07}D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe (Bohemia Interactive a.s. -> Bohemia Interactive) FirewallRules: [UDP Query User{D8AC1259-6BF8-45C3-8DAD-2285044E9EF0}D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe (Bohemia Interactive a.s. -> Bohemia Interactive) FirewallRules: [TCP Query User{D3791C36-E4DE-47E9-B71F-3F51E74CA44B}D:\juegos\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\juegos\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [UDP Query User{EB2DD779-50FA-4E18-8B56-8D1106D5DDBE}D:\juegos\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\juegos\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [{45A206FF-2728-40C9-B8C1-ED60BC6AE30A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B432CC58-87FC-418A-A4DB-7522C6D0F790}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{C91BF19C-2AF8-421F-9668-B03373B09509}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{8F548031-A047-4502-93E4-D9274B7304C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9A68D1E3-1FA3-4CDD-A8E0-587DBFCE83CD}] => (Allow) D:\juegos\League of Legends\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{92706658-B520-4DB4-9BBC-B4DA7AA28B44}] => (Allow) D:\juegos\League of Legends\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{DC5A8181-5F6E-49C2-B061-FC9311D9CAFB}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{2B473A56-6CBD-461C-9300-39614AA1ED06}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{DDC2C8B5-307D-4EA4-B2B9-7A30C4F0FADE}] => (Allow) LPort=26789 FirewallRules: [TCP Query User{F327760E-0FF7-4EEB-9AF6-780BDBC32076}C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [UDP Query User{7F8AF87A-A6E0-4F33-B414-A261F5E71F1D}C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [TCP Query User{08AF2E8F-8535-464C-ADC3-A962889C4B9F}C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [UDP Query User{CB5C1D51-06CF-4832-A6F0-C92824376AEC}C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe (Riot Games, Inc. -> ) FirewallRules: [{313158C8-B149-4E95-BF8C-EFDB1C9E2AB9}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File FirewallRules: [{F7FF8EED-1856-44D5-8455-4BC678626CD6}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File FirewallRules: [{46BCB63F-1857-47F0-B8BB-E219DCE8A524}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe No File FirewallRules: [{75916B71-C19B-4C19-AE30-83CC4634BE62}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) ==================== Restore Points ========================= 17-02-2019 17:29:02 Installed Hextech Repair Tool 24-02-2019 21:12:14 Punto de control programado 25-02-2019 16:17:09 JRT Pre-Junkware Removal 05-03-2019 11:38:25 JRT Pre-Junkware Removal 06-03-2019 11:52:53 Removed Hextech Repair Tool 06-03-2019 13:06:01 JRT Pre-Junkware Removal ==================== Faulty Device Manager Devices ============= Name: Teclado PS/2 estándar Description: Teclado PS/2 estándar Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Teclados estándar) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Mouse PS/2 de Microsoft Description: Mouse PS/2 de Microsoft Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (03/06/2019 04:43:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc000041d Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0xd20 Hora de inicio de la aplicación con errores: 0x01d4d43364f611d9 Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: e4874acb-a8f1-4471-bbb3-38b02dae51ca Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 04:43:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0xd20 Hora de inicio de la aplicación con errores: 0x01d4d43364f611d9 Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: d3234b7c-2319-4a98-abc2-0ce72188fd59 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 04:33:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: explorer.exe, versión: 10.0.17763.107, marca de tiempo: 0x695ecd5a Nombre del módulo con errores: ntdll.dll, versión: 10.0.17763.292, marca de tiempo: 0x7ded7809 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x00000000000173ba Identificador del proceso con errores: 0x1b4 Hora de inicio de la aplicación con errores: 0x01d4d43137b572a5 Ruta de acceso de la aplicación con errores: C:\WINDOWS\explorer.exe Ruta de acceso del módulo con errores: C:\WINDOWS\SYSTEM32\ntdll.dll Identificador del informe: 56c733f4-4f7e-4640-9419-7f55270449c7 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 03:53:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc000041d Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0xd38 Hora de inicio de la aplicación con errores: 0x01d4d42c5d9aaaab Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: 3c85195d-9ac4-4557-b56a-db10fb2735d2 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 03:53:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0xd38 Hora de inicio de la aplicación con errores: 0x01d4d42c5d9aaaab Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: 1800adad-5ae3-4661-8871-92d72c6821e2 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 03:40:55 PM) (Source: AviraOptimizerHost) (EventID: 0) (User: ) Description: Event-ID 0 Error: (03/06/2019 03:27:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc000041d Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0x2354 Hora de inicio de la aplicación con errores: 0x01d4d4289c2cce32 Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: 1c5f071c-ebb6-43c3-bb2b-7ded07c31f46 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (03/06/2019 03:27:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Nombre del módulo con errores: MSIDDRService.exe, versión: 3.0.0.1, marca de tiempo: 0x57ec7015 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0002616f Identificador del proceso con errores: 0x2354 Hora de inicio de la aplicación con errores: 0x01d4d4289c2cce32 Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe Identificador del informe: 6591a150-17b3-4411-bd9d-e3091f78c7df Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: System errors: ============= Error: (03/06/2019 04:52:29 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TR7VRPJ) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} y APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} al usuario DESKTOP-TR7VRPJ\Usuario con SID (S-1-5-21-3087908810-4033223051-3795370541-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:45:38 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TR7VRPJ) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} y APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} al usuario DESKTOP-TR7VRPJ\Usuario con SID (S-1-5-21-3087908810-4033223051-3795370541-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:45:17 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TR7VRPJ) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} y APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} al usuario DESKTOP-TR7VRPJ\Usuario con SID (S-1-5-21-3087908810-4033223051-3795370541-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:44:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID Windows.SecurityCenter.WscDataProtection y APPID No disponible al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:44:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID Windows.SecurityCenter.WscBrokerManager y APPID No disponible al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:44:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID Windows.SecurityCenter.SecurityAppBroker y APPID No disponible al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:44:15 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-TR7VRPJ) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} y APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} al usuario DESKTOP-TR7VRPJ\Usuario con SID (S-1-5-21-3087908810-4033223051-3795370541-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (03/06/2019 04:43:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio MSI Command Center DDR Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Windows Defender: =================================== Date: 2019-03-02 16:47:49.526 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {1CB1520A-CF5B-4ADB-BF7B-E7FA090A2FA3} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-03-02 16:41:16.838 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {3D10B1C8-4DD8-472B-831B-0DBD2561A4D0} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-03-01 22:15:38.574 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {5ECCEF51-84D4-4AAC-9F46-1049ADB6DA9A} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-02-28 20:56:37.611 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {342E6A63-701C-4CDE-9105-35E08B4EF655} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-02-27 11:05:33.475 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {40B6C513-8B94-430F-8DED-75961826A0D7} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-03-06 16:34:24.286 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2019-03-06 16:24:59.377 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.289.561.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.15700.9 Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Date: 2019-03-06 16:14:58.460 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2019-03-06 13:18:56.936 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.289.561.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.15700.9 Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Date: 2019-03-06 13:08:55.584 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. CodeIntegrity: =================================== Date: 2019-03-06 16:44:59.183 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Store signing level requirements. Date: 2019-03-06 16:44:59.179 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Store signing level requirements. Date: 2019-03-06 15:57:10.966 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Store signing level requirements. Date: 2019-03-06 15:57:10.964 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Store signing level requirements. Date: 2019-03-06 15:56:55.239 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\RuntimeBroker.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Microsoft signing level requirements. Date: 2019-03-06 15:56:55.235 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\RuntimeBroker.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Microsoft signing level requirements. Date: 2019-03-06 15:55:00.307 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Store signing level requirements. Date: 2019-03-06 15:55:00.297 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Store signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz Percentage of memory in use: 37% Total physical RAM: 16342.11 MB Available physical RAM: 10156.77 MB Total Virtual: 32726.11 MB Available Virtual: 23447.77 MB ==================== Drives ================================ Drive b: (RAMDisk) (Fixed) (Total:0.25 GB) (Free:0.25 GB) FAT Drive c: () (Fixed) (Total:222.05 GB) (Free:77.88 GB) NTFS Drive d: (ALMACÉN) (Fixed) (Total:1862.89 GB) (Free:1715.62 GB) NTFS \\?\Volume{c1913541-127f-43ac-878d-98b4f51c9319}\ (Recuperación) (Fixed) (Total:0.44 GB) (Free:0.05 GB) NTFS \\?\Volume{190776e0-e785-4dca-a6c6-cca8f6afaf1f}\ () (Fixed) (Total:0.49 GB) (Free:0.08 GB) NTFS \\?\Volume{a77e01e6-1c5f-4b87-ae66-732a00c35734}\ () (Fixed) (Total:0.48 GB) (Free:0.08 GB) NTFS \\?\Volume{a500f580-4ec5-4724-aea4-576122bc63e7}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partition Table ================== ==================== End of Addition.txt ============================