[CODE]Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 02-02-2020 02 Ejecutado por pablo (16-02-2020 20:19:56) Run:1 Ejecutado desde C:\Users\pablo\Desktop Perfiles cargados: pablo (Perfiles disponibles: pablo) Modo de Inicio: Safe Mode (minimal) ============================================== fixlist contenido: ***************** START CREATERESTOREPOINT: CLOSEPROCESSES: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricci�n <==== ATENCI�N HKU\S-1-5-21-442317814-2703804614-3339253502-1001\...\MountPoints2: {35721c20-99a0-11e5-be5a-806e6f6e6963} - F:\setup.exe FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N CHR HKLM\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N CHR HKU\S-1-5-21-442317814-2703804614-3339253502-1001\SOFTWARE\Policies\Google: Restricci�n <==== ATENCI�N Task: {07EC1753-6968-449E-97F3-E9B8215E5CB3} - System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 => C:\Program Files\Bitdefender\Bitdefender 2015\bdproductdata.exe BHO: Sin Nombre -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> Ning�n archivo BHO-x32: Sin Nombre -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> Ning�n archivo Toolbar: HKLM - Sin Nombre - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Ning�n archivo Toolbar: HKLM-x32 - Sin Nombre - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Ning�n archivo FF HKLM\...\Firefox\Extensions: [bdwteffv20@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2017\antispam32\bdwteff => no encontrado FF HKLM\...\Firefox\Extensions: [light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\FFExt\light_plugin_firefox\addon.xpi => no encontrado FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => no encontrado FF HKLM-x32\...\Firefox\Extensions: [bdwteffv20@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2017\antispam32\bdwteff => no encontrado FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\FFExt\light_plugin_firefox\addon.xpi => no encontrado FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => no encontrado CHR DefaultSearchURL: Default -> file://C:\\Users\\pablo\\AppData\\Local\\Temp\\B6A4.html?p={searchTerms} CHR Extension: (Chrome Media Router) - C:\Users\pablo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-19] CHR DefaultSearchURL: System Profile -> file://C:\\Users\\pablo\\AppData\\Local\\Temp\\B6A4.html?p={searchTerms} S3 TKFsAvM; C:\Windows\system32\TKFsAv64.sys [198808 2018-03-07] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N S3 TKFsFtM; C:\Windows\system32\TKFsFt64.sys [28824 2018-03-07] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N S3 TKPcFt; C:\Windows\system32\TKPcFtCb64.sys [54504 2018-01-30] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N S3 TKRgAc; C:\Windows\system32\TKRgAc2k64.sys [115760 2018-01-29] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N S3 TKRgFt; C:\Windows\system32\TKRgFtXp64.sys [68848 2018-02-04] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N S3 TKSP; C:\Windows\system32\TKSPxp64.sys [80824 2018-01-29] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) <==== ATENCI�N U3 ar73ii13; C:\Windows\System32\Drivers\ar73ii13.sys [0 0000-00-00] (Advanced Micro Devices) <==== ATENCI�N (cero bytes Archivo/Carpeta) U3 aswbdisk; no ImagePath S2 MBAMChameleon; \SystemRoot\system32\drivers\MBAMChameleon.sys [X] S3 MBAMFarflt; \??\C:\Windows\system32\drivers\farflt.sys [X] S3 MBAMProtection; \??\C:\Windows\system32\drivers\mbam.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X] S1 ZAM_Guard; \??\C:\Windows\System32\drivers\zamguard64.sys [X] 2020-02-01 10:18 - 2020-02-01 10:18 - 000000000 ____D C:\ProgramData\{C675A2CF-BDD8-1FF4-A0A0-7793A0472EC2} 2020-02-01 10:18 - 2020-02-01 10:18 - 000000000 ____D C:\ProgramData\{61E1BC93-A384-B860-FCBE-E334FC59BA65} 2020-02-01 10:18 - 2020-02-01 10:18 - 000000000 ____D C:\ProgramData\{1B350A7D-156A-C2B4-1208-374E12EF6E1F} 2020-02-01 10:27 - 2019-12-25 22:59 - 000000000 ____D C:\ProgramData\{5FBFECBA-F3AD-863E-D5EE-BD0AD509E45B} 2020-02-01 10:27 - 2019-12-25 22:59 - 000000000 ____D C:\ProgramData\{22E540B2-5FA5-FB64-DD42-E777DDA5BE26} WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__FilterToConsumerBinding->\\.\root\subscription:ActiveScriptEventConsumer.Name=\"ASEC\"",Filter="\\.\root\subscription:__EventFilter.Name=\"EventFilter sethomePage2\":: <==== ATENCI�N WMI:subscription\__TimerInstruction->SethomePage Interval Timer:: <==== ATENCI�N WMI:subscription\__IntervalTimerInstruction->SethomePage Interval Timer:: <==== ATENCI�N WMI:subscription\__EventFilter->EventFilter sethomePage2::[Query => Select * From __timerevent Where TimerId = "SethomePage Interval Timer"] <==== ATENCI�N AlternateDataStreams: C:\ProgramData\TEMP:05E9FFE5 [122] FirewallRules: [TCP Query User{F048326E-1BC4-42DA-B865-3BC02A94E2DA}D:\cfg\ieembed.exe] => (Allow) D:\cfg\ieembed.exe Ning�n archivo FirewallRules: [UDP Query User{7D5B94DA-ABD7-4F02-9EF1-F357803CBCD6}D:\cfg\ieembed.exe] => (Allow) D:\cfg\ieembed.exe Ning�n archivo HOSTS: REMOVEPROXY: EMPTYTEMP: CMD: netsh winsock reset CMD: ipconfig /renew CMD: ipconfig /flushdns CMD: bitsadmin /reset /allusers CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state ON CMD: netsh int ipv4 reset CMD: netsh int ipv6 reset END ***************** Error: El punto de restauración solamente puede ser creado en modo normal. Procesos cerrados correctamente. HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => eliminado correctamente HKU\S-1-5-21-442317814-2703804614-3339253502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{35721c20-99a0-11e5-be5a-806e6f6e6963} => eliminado correctamente HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente HKLM\SOFTWARE\Policies\Google => eliminado correctamente HKU\S-1-5-21-442317814-2703804614-3339253502-1001\SOFTWARE\Policies\Google => eliminado correctamente HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{07EC1753-6968-449E-97F3-E9B8215E5CB3} => eliminado correctamente HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{07EC1753-6968-449E-97F3-E9B8215E5CB3} => eliminado correctamente C:\Windows\System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 => movido correctamente HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 => eliminado correctamente HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => eliminado correctamente HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => eliminado correctamente "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}" => eliminado correctamente "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}" => eliminado correctamente "HKLM\Software\Mozilla\Firefox\Extensions\\bdwteffv20@bitdefender.com" => eliminado correctamente "HKLM\Software\Mozilla\Firefox\Extensions\\light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com" => eliminado correctamente "HKLM\Software\Mozilla\Firefox\Extensions\\light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com" => eliminado correctamente "HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\bdwteffv20@bitdefender.com" => eliminado correctamente "HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com" => eliminado correctamente "HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com" => eliminado correctamente "Chrome DefaultSearchURL" => eliminado correctamente CHR Extension: (Chrome Media Router) - C:\Users\pablo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-19] => Error: Ninguna corrección automática encontrada para esta entrada. "Chrome DefaultSearchURL" => eliminado correctamente HKLM\System\CurrentControlSet\Services\TKFsAvM => eliminado correctamente TKFsAvM => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\TKFsFtM => eliminado correctamente TKFsFtM => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\TKPcFt => eliminado correctamente TKPcFt => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\TKRgAc => eliminado correctamente TKRgAc => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\TKRgFt => eliminado correctamente TKRgFt => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\TKSP => eliminado correctamente TKSP => servicio eliminado correctamente ar73ii13 => servicio no encontrado. HKLM\System\CurrentControlSet\Services\aswbdisk => eliminado correctamente aswbdisk => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\MBAMChameleon => eliminado correctamente MBAMChameleon => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\MBAMFarflt => eliminado correctamente MBAMFarflt => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\MBAMProtection => eliminado correctamente MBAMProtection => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\VGPU => eliminado correctamente VGPU => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\ZAM => eliminado correctamente ZAM => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\ZAM_Guard => eliminado correctamente ZAM_Guard => servicio eliminado correctamente C:\ProgramData\{C675A2CF-BDD8-1FF4-A0A0-7793A0472EC2} => movido correctamente C:\ProgramData\{61E1BC93-A384-B860-FCBE-E334FC59BA65} => movido correctamente C:\ProgramData\{1B350A7D-156A-C2B4-1208-374E12EF6E1F} => movido correctamente C:\ProgramData\{5FBFECBA-F3AD-863E-D5EE-BD0AD509E45B} => movido correctamente C:\ProgramData\{22E540B2-5FA5-FB64-DD42-E777DDA5BE26} => movido correctamente "CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"" => eliminado correctamente "\\.\root\subscription:ActiveScriptEventConsumer.Name=\"ASEC\"",Filter="\\.\root\subscription:__EventFilter.Name=\"EventFilter sethomePage2\"" => eliminado correctamente "SethomePage Interval Timer" => eliminado correctamente "SethomePage Interval Timer" => no encontrado "EventFilter sethomePage2" => eliminado correctamente C:\ProgramData\TEMP => ":05E9FFE5" ADS eliminado correctamente "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F048326E-1BC4-42DA-B865-3BC02A94E2DA}D:\cfg\ieembed.exe" => eliminado correctamente "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7D5B94DA-ABD7-4F02-9EF1-F357803CBCD6}D:\cfg\ieembed.exe" => eliminado correctamente C:\Windows\System32\Drivers\etc\hosts => movido correctamente Hosts restaurado correctamente. ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente "HKU\S-1-5-21-442317814-2703804614-3339253502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente "HKU\S-1-5-21-442317814-2703804614-3339253502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente ========= Final de RemoveProxy: ========= ========= netsh winsock reset ========= El cat logo Winsock se restableci¢ correctamente. Debe reiniciar el equipo para completar el restablecimiento. ========= Final de CMD: ========= ========= ipconfig /renew ========= Configuraci¢n IP de Windows ========= Final de CMD: ========= ========= ipconfig /flushdns ========= Configuraci¢n IP de Windows No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n. ========= Final de CMD: ========= ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 [ 7.5.7601 ] BITS administration utility. (C) Copyright 2000-2006 Microsoft Corp. BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows. Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets. Unable to connect to BITS - 0x8007042c No se puede iniciar el servicio o grupo de dependencia. ========= Final de CMD: ========= ========= netsh advfirewall reset ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo. ========= Final de CMD: ========= ========= netsh advfirewall set allprofiles state ON ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows. Aseg£rese de que el servicio se est  ejecutando e intente la solicitud de nuevo. ========= Final de CMD: ========= ========= netsh int ipv4 reset ========= No hay valores configurados por el usuario para restablecer. ========= Final de CMD: ========= ========= netsh int ipv6 reset ========= No hay valores configurados por el usuario para restablecer. ========= Final de CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 6981692 B Java, Flash, Steam htmlcache => 831 B Windows/system/drivers => 5309285 B Edge => 0 B Chrome => 456344251 B Firefox => 24638563 B Opera => 0 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 128 B systemprofile32 => 256 B LocalService => 256 B NetworkService => 21554460 B pablo => 50665283 B RecycleBin => 112848012 B EmptyTemp: => 654.9 MB datos temporales eliminados. ================================ El sistema necesita reiniciarse. ==== Final de Fixlog 20:20:29 ====[/CODE]