Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 22-04-2020 Ejecutado por Mario (administrador) sobre MARIO-PC (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (23-04-2020 12:42:49) Ejecutado desde C:\Users\Mario\Desktop Perfiles cargados: Mario (Perfiles disponibles: Mario & UpdatusUser) Platform: Windows 7 Enterprise Service Pack 1 (X64) Idioma: Español (España, internacional) Internet Explorer Versión 11 (Navegador predeterminado: Chrome) Modo de Inicio: Normal Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) () [Archivo no firmado] C:\Program Files (x86)\Lexmark 6500 Series\lxdfamon.exe (Abrosoft Co. -> ) C:\Program Files (x86)\Abrosoft\FantaMorph5\FantaUp.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Autodesk, Inc -> Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software s.r.o. -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.6.607.0\CCleanerBrowserCrashHandler.exe (AVAST Software s.r.o. -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.6.607.0\CCleanerBrowserCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <21> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (Lexmark International, Inc. -> ) C:\Windows\System32\lxdfcoms.exe (Lexmark International, Inc. -> ) C:\Program Files (x86)\Lexmark 6500 Series\lxdfmon.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\TRACERT.EXE (Native Instruments GmbH) [Archivo no firmado] C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2> (PACE Anti-Piracy, Inc. -> PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (RealNetworks, Inc. -> ) C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (VIA Technologies, Inc.) [Archivo no firmado] C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [VIAxHCUtl] => C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe [331776 2011-07-12] (VIA Technologies, Inc.) [Archivo no firmado] HKLM\...\Run: [lxdfmon.exe] => C:\Program Files (x86)\Lexmark 6500 Series\lxdfmon.exe [455600 2007-06-11] (Lexmark International, Inc. -> ) HKLM\...\Run: [lxdfamon] => C:\Program Files (x86)\Lexmark 6500 Series\lxdfamon.exe [20480 2007-06-01] () [Archivo no firmado] HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-02-27] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc. -> Apple Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\Run: [Dropbox Update] => C:\Users\Mario\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-06] (Dropbox, Inc -> Dropbox, Inc.) HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8022104 2020-04-05] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\Policies\Explorer: [] HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {3ff31916-d148-11e7-8a0d-fcaa1421fc01} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {4e8339a0-8cb5-11e8-b0cf-fcaa1421fc01} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {6ed4a117-6139-11ea-9ae7-fcaa1421fc01} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {7ccbd587-cb1c-11e8-b074-fcaa1421fc01} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {b8d990d0-2563-11e8-a017-fcaa1421fc01} - F:\Welcome\Welcome.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {bf0864c8-5c4f-11e9-9764-fcaa1421fc01} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {cefbe936-2c0c-11e3-838e-50e54956ae95} - K:\LGAutoRun.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {db9af5fb-da6f-11e7-a83e-fcaa1421fc01} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\autorun.exe /auto HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {e775b67e-5e95-11e9-9197-fcaa1421fc01} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {e83892cf-79f6-11e3-9c17-50e54956ae95} - K:\SABOREANDO.exe HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\MountPoints2: {e9340ab0-43fe-11e8-a27f-fcaa1421fc01} - K:\HiSuiteDownLoader.exe HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1235336 2014-08-28] (Autodesk, Inc -> Autodesk, Inc.) HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\80.1.3902.165\Installer\chrmstp.exe [2020-04-16] (Piriform Software Ltd -> Piriform Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\Installer\chrmstp.exe [2020-04-22] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN ==================== Tareas programadas (Lista blanca) ============ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {044AB770-225D-4CB4-9F49-3253E7FCA9E9} - System32\Tasks\{8BFFD538-1E62-49CA-A050-56810BF80B02} => C:\Windows\system32\pcalua.exe -a "K:\software (Vargas)\Microstation v8 XM\ms08090451es.exe" -d "K:\software (Vargas)\Microstation v8 XM" Task: {0A99975C-0BCB-4DEA-82CC-C931CA61388F} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [801048 2013-11-25] (ByELDI Certificate -> ) [Archivo no firmado] Task: {0C43E484-E90B-41F5-B105-82534D238F86} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187544 2012-11-30] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {0F41F218-DD31-4CAA-8A5D-EAB06189BDD5} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {108DF4E9-8B15-4433-AE02-CD1E6CDB026D} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2043472 2020-04-02] (Piriform Software Ltd -> Piriform Software) Task: {1297AD72-2DDE-40E9-AC58-6A93989ABBFD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.) Task: {15692FF5-1564-4899-9270-ACA67E3A9B2A} - System32\Tasks\{7420494E-7F87-4412-A42C-BC107B088653} => C:\Windows\system32\pcalua.exe -a "L:\Mis Documentos\VSTI´S\Instalados\Novation V-Station (Funcionando)\setup.exe" -d "L:\Mis Documentos\VSTI´S\Instalados\Novation V-Station (Funcionando)" Task: {165A551D-6A22-4675-ABAF-38C41C080C85} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [232608 2012-11-29] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {181F7BF7-5B2D-4FD5-A6C9-406FDDEFAEA2} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1642672 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {1C6C2FA8-F074-4345-9E8C-16064A290380} - System32\Tasks\{F4EC9D46-35E3-4AC8-A52A-D15B86C078A8} => C:\Windows\system32\pcalua.exe -a O:\PORTABLES\AutoCAD2007Portátil\AutoCAD2007.exe -d O:\PORTABLES\AutoCAD2007Portátil Task: {1D04F188-6338-48DC-A959-02786D8EA158} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [206104 2020-04-03] (AVAST Software s.r.o. -> Piriform Software) Task: {24A816B8-D748-4E67-9488-31909630BDF7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Task: {260EBD08-44ED-454A-9EFE-6ED3BAF6408C} - System32\Tasks\{4846C730-2EC1-4160-9B20-4F9990ACF045} => C:\Windows\system32\pcalua.exe -a "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPaks\Metal\AD Content - Metal Installer Win.exe" -d "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPak (la entrada de datos tiene 8 más caracteres). Task: {2619B88E-39B9-4C78-B9E3-D78A22931EF7} - System32\Tasks\{A682CCDE-8429-410A-BC7E-927652A1257E} => C:\Windows\system32\pcalua.exe -a "D:\Miroslav Philarmonik\Multimedia.Miroslav.Philharmonik.Mac.PC.FULL\Sound DVDs\Install Instruments DVD 1 Win.exe" -d "D:\Miroslav Philarmonik\Multimedia.Miroslav.Philharmonik.Mac.PC.FULL\Sound DVDs" Task: {2788A2E3-197D-4351-A423-C2EF48129457} - System32\Tasks\{A1D6CF10-9BFD-4628-9A40-D5FBFFA15635} => C:\Windows\system32\pcalua.exe -a "D:\Miroslav Philarmonik\Multimedia.Miroslav.Philharmonik.Mac.PC.FULL\Sound DVDs\DVD2\Install Instruments DVD 2 Win.exe" -d "D:\Miroslav Philarmonik\Multimedia.Miroslav.Philharmonik.Mac.PC.FULL\Sound DVDs\DVD2" Task: {3D504473-5EB1-4907-B2DB-60C8336B1A8F} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000Core => C:\Users\Mario\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-06] (Dropbox, Inc -> Dropbox, Inc.) Task: {3D8678F2-7D7F-434B-B15C-C506EC864500} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {3EFA24A9-C7B2-4CAF-965C-23C365614E39} - System32\Tasks\{87B73566-BF27-4601-8F9D-B4BF4D20DD04} => C:\Windows\system32\pcalua.exe -a "P:\TODO FL-STUDIO\VSTI´S\Instalados\Miroslav Philarmonic\Install Instruments DVD 1 Win.exe" -d "P:\TODO FL-STUDIO\VSTI´S\Instalados\Miroslav Philarmonic" Task: {424435D0-8802-477E-A5BF-05D91DE59014} - System32\Tasks\{79C30B02-BCF0-4F64-B682-C676E0AA5941} => C:\Windows\system32\pcalua.exe -a "C:\Users\Mario\Desktop\MicroStation V8 XM\NetFx64.exe" -d "C:\Users\Mario\Desktop\MicroStation V8 XM" Task: {43369F50-654B-4B88-A380-7E61C820AA96} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_101_Plugin.exe [1456128 2018-12-05] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {4ADF1498-C456-4C42-AC9A-A22F69F35809} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [187544 2012-11-29] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {4DBC446D-F4A9-421A-AFA7-3F3D39767543} - System32\Tasks\{E99B98FF-C6AB-4643-A6C9-50100E8589ED} => C:\Windows\system32\pcalua.exe -a "L:\Mis Documentos\VSTI´S\Instalados\Cakewalk.Rapture.v.1.2.2.DXi.VSTi.RTAS.32.64.2011\Rapture Expansion\Cakewalk.Rapture Expansion Pack Biolabs\Biolabs Vol1 Rapture Expansion Pack.exe" -d "L:\Mis Documentos\VSTI´S\Instalados\Cakewalk.Rapture.v.1.2.2.DXi.VSTi.RTAS.32.64.2011\Rapture Expansion\Cak (la entrada de datos tiene 37 más caracteres). Task: {5754B552-650A-4E5B-B724-70340E5A879B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.) Task: {5BFC9478-D0F0-4E56-868B-753C64B99124} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [206104 2020-04-03] (AVAST Software s.r.o. -> Piriform Software) Task: {5CD4C28F-D28F-4B77-A3B8-83A660C2CD74} - System32\Tasks\{E9F2361A-740C-49C5-BDF3-485463EF8925} => C:\Program Files (x86)\AutoCAD 2004\acad.exe Task: {678C2568-99DB-4840-983E-8076606FABAF} - System32\Tasks\{73A85C2F-067E-464F-A540-4F1A1DE05C69} => C:\Program Files (x86)\AutoCAD 2004\acad.exe Task: {67A2D94B-86E9-4477-9F24-99F39ECDEEE6} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187544 2012-11-30] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {6DFE9440-8796-4FA7-A216-4A63FB9D118A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187544 2012-11-30] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {7050AB74-3EBD-4D2F-8207-9D60D08EF32A} - System32\Tasks\{38D53478-23BC-4BFE-8BF6-9E695011FA92} => C:\Program Files (x86)\AutoCAD 2004\acad.exe Task: {70957CBD-50EA-497C-BE73-B54BF77E3141} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000UA => C:\Users\Mario\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-06] (Dropbox, Inc -> Dropbox, Inc.) Task: {70FC03B4-A530-499F-ABD3-A406EA4E10E2} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-02-27] (Avast Software s.r.o. -> AVAST Software) Task: {741C4D25-76C1-446D-AA88-3EF4DED6E33B} - System32\Tasks\{6F699EFD-BBF0-43D6-AA21-3B4DF979AACB} => C:\Windows\system32\pcalua.exe -a "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPaks\Reel Machines\AD Content - Reel Machines Installer Win.exe" -d "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Fu (la entrada de datos tiene 32 más caracteres). Task: {7D9E7F5B-6904-4129-803B-7E43FCDBFF15} - System32\Tasks\CorelUpdateHelperTaskCore => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [1656568 2018-06-21] (Corel Corporation -> Corel Corporation) Task: {81C91D28-027B-4741-9CE0-5844FAD4FA53} - System32\Tasks\{75673CD9-E0BB-4C6F-A9C7-62E2D3A0B53B} => C:\Windows\system32\pcalua.exe -a "O:\RECMIN\RecMin instalacion WIN\InstMsiW.exe" -d "O:\RECMIN\RecMin instalacion WIN" Task: {837A8CA0-56B3-482B-AEC4-3FFA4941CB89} - System32\Tasks\{1CEBC42B-2569-4383-8414-F64572042F2D} => C:\Windows\system32\pcalua.exe -a "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\Addictive Drums\Install Addictive Drums Windows.exe" -d "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\Add (la entrada de datos tiene 13 más caracteres). Task: {86311B43-4C18-4CA4-96BD-A75B678AE77C} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [187544 2012-11-29] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {88905279-B4E0-4362-B6AD-26F45ABABF28} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [1174016 2010-11-21] (Microsoft Windows -> Microsoft Corporation) Task: {8A72408F-AC79-4245-8AE3-CDDFAC718EF1} - System32\Tasks\{20852D60-6452-4B74-A23B-E40D3020CB43} => C:\Windows\system32\pcalua.exe -a "C:\Users\Mario\Downloads\Hypersonic2\Steinberg.Hypersonic2.VSTi.DXi..INTERNAL_Dock Producer\setup.exe" -d "C:\Users\Mario\Downloads\Hypersonic2\Steinberg.Hypersonic2.VSTi.DXi..INTERNAL_Dock Producer" Task: {9081CD44-158E-4647-8B85-B3431DCD2C17} - System32\Tasks\{4AB19CCA-F198-4F9A-B2FF-4E516C009FAC} => C:\Windows\system32\pcalua.exe -a "M:\AD Content - Funk Installer Win.exe" -d M:\ Task: {9918DB94-2A66-4D5D-BD51-6A28235733AA} - System32\Tasks\{E77A9AF0-EC7B-426C-A3A6-095777E465AA} => C:\Windows\system32\pcalua.exe -a "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPaks\Modern Jazz Brushes\Install Addictive Drums Brush Support.exe" -d "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (la entrada de datos tiene 41 más caracteres). Task: {9C3C5E4E-8B44-4956-953F-38665E4B9804} - System32\Tasks\{50BEF0BD-63D2-4E51-A312-37FE652C052B} => C:\Windows\system32\pcalua.exe -a "D:\Hypersonic 1 y 2\Steinberg.Hypersonic.VSTi.DXi.v2.0.INTERNAL\setup.exe" -d "D:\Hypersonic 1 y 2\Steinberg.Hypersonic.VSTi.DXi.v2.0.INTERNAL" Task: {A047C410-6C2B-4F7A-A85E-EDE60B6DA964} - System32\Tasks\{6A08687C-F54D-429B-8F2E-92832CB10FD6} => C:\Windows\system32\pcalua.exe -a E:\SETUP.EXE -d E:\ Task: {A22BB304-54B7-423A-8808-02CB19A4FD8E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2018-12-05] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {A970F191-C03C-40EC-A4FB-A21677734ECD} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2183980505-3911418445-2564934022-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187544 2012-11-30] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {B089D36B-5EA0-4FBB-9737-6B22E7E57099} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {B2A3AEAA-B962-4090-8E09-4EDFB98BA8DE} - System32\Tasks\{D52F79EF-3484-4DA5-B7E4-B651A4BE95F2} => C:\Windows\system32\pcalua.exe -a "P:\TODO FL-STUDIO\VSTI´S\SAMPLETANK\Instalador\SampleTank 2.5 full\Librerias\PC Installer\Install Instruments DVD1.exe" -d "P:\TODO FL-STUDIO\VSTI´S\SAMPLETANK\Instalador\SampleTank 2.5 full\Librerias\PC Installer" Task: {B2C488B8-B387-412C-9C8C-602AA846C5DF} - System32\Tasks\{4025E79E-7DB8-438A-98A6-0308C3F64BC0} => C:\Windows\system32\pcalua.exe -a "L:\Mis Documentos\VSTI´S\Instalados\WAHNSYN AUTHENTIC STRINGS (Funcionando)\Wahnsyn Authentic Strings VSTi v1.0\setup.exe" -d "L:\Mis Documentos\VSTI´S\Instalados\WAHNSYN AUTHENTIC STRINGS (Funcionando)\Wahnsyn Authentic Strings VSTi v1.0" Task: {B4105D60-F1AC-4BE1-9E67-F7DA6D28B2AB} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2043472 2020-04-02] (Piriform Software Ltd -> Piriform Software) Task: {C389AEFE-C462-464B-ACDB-D6E482E45D3B} - System32\Tasks\{158D2F0A-C512-48EE-8523-0445A72101C4} => C:\Windows\system32\pcalua.exe -a "D:\Hypersonic 1 y 2\Hypersonic2\setup.exe" -d "D:\Hypersonic 1 y 2\Hypersonic2" Task: {CB6025D6-0304-40A4-9164-1CDA111BB762} - System32\Tasks\{642088CE-F731-4C1E-A1D9-6ED383542013} => C:\Windows\system32\pcalua.exe -a C:\Users\Mario\Downloads\NetFx64.exe -d C:\Users\Mario\Downloads Task: {CD8CA811-68CE-42F6-8FD5-904EC55CA222} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Task: {CE1580C7-2E05-4236-B886-4BD1D2837EBB} - System32\Tasks\{257C5F88-1D63-4302-8508-E8DD58E33F90} => C:\Windows\system32\pcalua.exe -a "D:\Reallusion (Filtro Faces)\Reallusion FaceFilter Pro 3.02.1821.1 Multilingual + Activator\Reallusion FaceFilter Pro 3.02.1821.1 Multilingual + Activator\Activator\Activator.exe" -d "D:\Reallusion (Filtro Faces)\Reallusion FaceFilter Pro 3.02.1821.1 Multilingual + Activator\Reallusion FaceFilte (la entrada de datos tiene 53 más caracteres). Task: {D1C88D33-0273-4AEA-9C2C-34F1DDC2C2B8} - System32\Tasks\AdobeAAMUpdater-1.0-Mario-PC-Mario => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {D5866050-F3BC-4EAC-9069-96D2C2640BE0} - System32\Tasks\{D1B7DB8B-C63A-43FE-95C1-F9DDDF31D1BF} => C:\Windows\system32\pcalua.exe -a "M:\XLN Audio Addictive Drums v1.1.1 Setup\XLN Audio Addictive Drums v1.1.1 Setup.exe" -d "M:\XLN Audio Addictive Drums v1.1.1 Setup" Task: {DC6753EC-E171-47E7-8D1B-193979E50991} - System32\Tasks\{0B44D832-AA82-4E4F-AF5B-F9C480C2009B} => C:\Windows\system32\pcalua.exe -a "K:\PORTABLES\Freehand\Freehand Portable (FUNCIONA)\Macromedia-« FreeHand-« MXa v.11.0.2.exe" -d "K:\PORTABLES\Freehand\Freehand Portable (FUNCIONA)" Task: {E28C48FA-B12F-42B4-B1DE-AB5EBA045A64} - System32\Tasks\{13F5A8A3-8F10-4250-B42D-4CAEA6CB180A} => C:\Windows\system32\pcalua.exe -a C:\Users\Mario\Downloads\microstation8i957eshelp.exe -d C:\Users\Mario\Downloads Task: {E3CB8493-36C9-4AA2-B7D7-24EDC36BBE25} - System32\Tasks\{F01EED7F-6FF3-4B94-A891-6B77520CA7D5} => C:\Windows\system32\pcalua.exe -a "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPaks\Funk\AD Content - Funk Installer Win.exe" -d "O:\Mis Documentos\VSTI´S\Instalados\XLN.Audio.Addictive.Drums.1.5.2.VSTi.RTAS.AU.Mac.PC+ADPaks+MIDIPaks (Funcionando)\ADPaks\ (la entrada de datos tiene 5 más caracteres). Task: {E7B2EE4E-4004-4277-AC6F-EFFF4D35583B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {EC5CCE25-CB18-429F-B1B9-64112B537551} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {EF84CCD0-6D37-4290-A5A7-CF2C2A4D86CD} - System32\Tasks\{D5587196-E200-4695-B6B9-B91CB1AB9EE3} => C:\Windows\system32\pcalua.exe -a M:\Windows\setup.exe -d M:\Windows Task: {F0965681-2234-43F7-9345-C77663663394} - System32\Tasks\{70C9CD27-C5B1-4102-AC96-8E564050829D} => C:\Windows\system32\pcalua.exe -a C:\gs\uninstgs.exe -d C:\gs Task: {F272FA88-48C7-482E-909F-7919042AA1ED} - System32\Tasks\{64B820E2-2CED-4943-BB45-7870BC623AE8} => C:\Windows\system32\pcalua.exe -a E:\SoftR.exe -d E:\ Task: {FA03997D-56CD-4911-A0B0-C410EA25B591} - System32\Tasks\{1EF19E47-E741-45E8-9807-F282FA5E1376} => C:\Program Files (x86)\AutoCAD 2004\acad.exe Task: {FE8C4D8C-6A54-4B89-9A0B-D091FCEA721A} - System32\Tasks\{9BFE8283-7F48-4682-B688-25BFD1BCE150} => C:\Windows\system32\pcalua.exe -a C:\Bentley\deinst.exe Task: {FF534F2E-46AB-4073-99FB-8F577C8EF78C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000Core.job => C:\Users\Mario\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000UA.job => C:\Users\Mario\AppData\Local\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Ningún archivo Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.1 Tcpip\..\Interfaces\{BA6872F9-D2ED-4AEA-842B-846BCB576ABA}: [DhcpNameServer] 192.168.0.1 192.168.0.1 Tcpip\..\Interfaces\{D681A3C5-C189-45D1-A90C-589ED8F42887}: [DhcpNameServer] 212.89.28.19 Internet Explorer: ================== HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://es.msn.com/?ocid=iehp SearchScopes: HKLM-x32 -> DefaultScope no se encuentra el valor SearchScopes: HKU\.DEFAULT -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-21-2183980505-3911418445-2564934022-1000 -> {27F60C65-824A-4f0e-B818-DA0277E8A10F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=SPLBR1&pc=SPLH SearchScopes: HKU\S-1-5-21-2183980505-3911418445-2564934022-1000 -> {38CB0C76-C5E0-4a1a-9A2D-A52631EC95F6} URL = hxxp://es.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc -> Google Inc.) BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-04-22] (McAfee, LLC -> McAfee, LLC) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Lexmark Barra de herramientas -> {1017A80C-6F09-4548-A84D-EDD6AC9525F0} -> C:\Program Files\Lexmark Toolbar\toolband.dll [2007-05-29] () [Archivo no firmado] BHO-x32: Sin Nombre -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> Ningún archivo BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-24] (Google Inc -> Google Inc.) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-04-22] (McAfee, LLC -> McAfee, LLC) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Ningún archivo Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc -> Google Inc.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Lexmark Barra de herramientas - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll [2007-05-29] () [Archivo no firmado] Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-24] (Google Inc -> Google Inc.) Toolbar: HKU\S-1-5-21-2183980505-3911418445-2564934022-1000 -> Sin Nombre - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Ningún archivo Toolbar: HKU\S-1-5-21-2183980505-3911418445-2564934022-1000 -> Sin Nombre - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - Ningún archivo Toolbar: HKU\S-1-5-21-2183980505-3911418445-2564934022-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc -> Google Inc.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: ejt3l5z3.default FF ProfilePath: C:\Users\Mario\AppData\Roaming\Mozilla\Firefox\Profiles\ejt3l5z3.default [2020-04-22] FF Homepage: Mozilla\Firefox\Profiles\ejt3l5z3.default -> hxxps://www.malwarebytes.org/restorebrowser/ FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Mario\AppData\Roaming\Mozilla\Firefox\Profiles\ejt3l5z3.default\Extensions\sp@avast.com.xpi [2019-04-09] FF Extension: (Avast Online Security) - C:\Users\Mario\AppData\Roaming\Mozilla\Firefox\Profiles\ejt3l5z3.default\Extensions\wrc@avast.com.xpi [2018-10-29] FF Extension: (Hotfix for Firefox bug 1548973 (armagaddon 2.0) mitigation) - C:\Users\Mario\AppData\Roaming\Mozilla\Firefox\Profiles\ejt3l5z3.default\features\{44e1cc92-e790-4411-b47b-f7a54b40cb61}\hotfix-bug-1548973@mozilla.org.xpi [2020-04-03] [Heredado] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-04-22] [UpdateUrl:hxxps://www.siteadvisor.com/waffinstall/update.json] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-03-13] [Heredado] [no firmado] FF HKLM-x32\...\Firefox\Extensions: [{34712C68-7391-4c47-94F3-8F88D49AD632}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: (Sin Nombre) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2008-01-01] [no firmado] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Mario\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => no encontrado FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_101.dll [2018-12-05] (Adobe Systems Incorporated -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-02-14] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-05] (Adobe Systems Incorporated -> ) FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2009-05-12] (DivX, Inc. -> DivX,Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2012-10-02] (NVIDIA CORPORATION -> NVIDIA Corporation) [Archivo no firmado] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2012-10-02] (NVIDIA CORPORATION -> NVIDIA Corporation) [Archivo no firmado] FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2012-10-13] (Pando Networks, Inc. -> Pando Networks) FF Plugin-x32: @real.com/nppl3260;version=16.0.0.282 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2012-12-14] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2012-11-29] (RealNetworks, Inc.) [Archivo no firmado] FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2012-11-29] (RealNetworks, Inc.) [Archivo no firmado] FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2012-11-29] (RealNetworks, Inc.) [Archivo no firmado] FF Plugin-x32: @real.com/nprpplugin;version=16.0.0.282 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2012-12-14] (RealNetworks, Inc. -> RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2012-11-29] (RealNetworks, Inc. -> RealDownloader) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.6.607.0\npCCleanerBrowserUpdate3.dll [2020-04-03] (AVAST Software s.r.o. -> Piriform Software) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.6.607.0\npCCleanerBrowserUpdate3.dll [2020-04-03] (AVAST Software s.r.o. -> Piriform Software) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-06-07] (VideoLAN) [Archivo no firmado] FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-02-14] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin HKU\S-1-5-21-2183980505-3911418445-2564934022-1000: @acestream.net/acestreamplugin,version=3.1.16.1 -> C:\Users\Mario\AppData\Roaming\ACEStream\player\npace_plugin.dll [Ningún archivo] FF Plugin HKU\S-1-5-21-2183980505-3911418445-2564934022-1000: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Mario\AppData\Roaming\ACEStream\player\npace_plugin.dll [Ningún archivo] FF Plugin HKU\S-1-5-21-2183980505-3911418445-2564934022-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2012-10-13] (Pando Networks, Inc. -> Pando Networks) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default [2020-04-23] CHR HomePage: Default -> hxxp://www.google.es/ CHR StartupUrls: Default -> "hxxps://www.google.es/" CHR Extension: (Presentaciones) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15] CHR Extension: (Documentos) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15] CHR Extension: (Google Drive) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22] CHR Extension: (Loupe Collage) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhaonknplhhecdgjpphnooeomecgipkc [2015-07-30] CHR Extension: (YouTube) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26] CHR Extension: (Facebook) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2015-07-30] CHR Extension: (DownAlbum) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2020-04-12] CHR Extension: (Búsqueda de Google) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28] CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-20] CHR Extension: (Hojas de cálculo) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15] CHR Extension: (Escritorio Remoto de Chrome) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-08-07] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-04-21] CHR Extension: (Vysor) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gidgenkbbabolejbgbpnhbimgjbffefm [2020-02-27] CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2020-04-22] CHR Extension: (PointsRate) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gokcliflaabdckfgkmfdnngbifohoekg [2017-06-25] CHR Extension: (Avast Online Security) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-03-02] CHR Extension: (Google Keep: notas y listas) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2020-04-16] CHR Extension: (Vector Paint) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnbpdiengicdefcjecjbnjnoifekhgdo [2015-07-30] CHR Extension: (Pixlr Express) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2015-07-30] CHR Extension: (Post to Tumblr) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipkpjkniknhaojcebeaallaglkmhlcno [2017-08-29] CHR Extension: (Roomstyler 3D planner) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfnniehafojoidolddmhfnpnbiolbppi [2016-01-27] CHR Extension: (Pixlr Touch Up) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\jklljiahjgoglchglekebfljnmbaleig [2015-07-30] CHR Extension: (Player para ver Movistar+) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\kenfcfndncbbggmafjjeihkdclggbojn [2020-02-06] CHR Extension: (DotVPN — a Better way to VPN) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpiecbcckbofpmkkkdibbllpinceiihk [2020-02-27] CHR Extension: (Explica y Envía Capturas de Pantalla) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdddabjhelpilpnpgondfmehhcplpiin [2020-02-27] CHR Extension: (BIODIGITAL HUMAN) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\meefjekipolcgabfgaclcpdkbghhmoah [2019-08-07] CHR Extension: (VPN Unlimited: Proxy Seguro y Gratuito) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpcaainmfjjigeicjnlkdfajbioopjko [2020-03-12] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-06] CHR Extension: (Gmail) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-24] CHR Extension: (Chrome Media Router) - C:\Users\Mario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-22] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cnnbdaahphjgdgfhliignpepgnbnfomp] - CHR HKU\S-1-5-21-2183980505-3911418445-2564934022-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 Abrosoft: Abrosoft FantaMorph update permissions manager. 12810.; C:\Program Files (x86)\Abrosoft\FantaMorph5\FantaUp.exe [224176 2010-11-18] (Abrosoft Co. -> ) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-02-14] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3374160 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3103824 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [31192 2014-02-07] (Autodesk, Inc -> Autodesk, Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-02-27] (Avast Software s.r.o. -> AVAST Software) S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [206104 2020-04-03] (AVAST Software s.r.o. -> Piriform Software) S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\80.1.3902.165\elevation_service.exe [1124080 2020-04-02] (Piriform Software Ltd -> Piriform Software) S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [206104 2020-04-03] (AVAST Software s.r.o. -> Piriform Software) S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\80.0.3987.18\remoting_host.exe [73200 2019-12-17] (Google LLC -> Google Inc.) S3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe [4854464 2016-12-12] (Disc Soft Ltd -> Disc Soft Ltd) S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> ) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Archivo no firmado] S2 KMService; C:\Windows\system32\srvany.exe [8192 2010-04-24] () [Archivo no firmado] S2 lxdfCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\x64\3\\lxdfserv.exe [33712 2007-05-29] (Lexmark International, Inc. -> Lexmark International, Inc.) R2 lxdf_device; C:\Windows\system32\lxdfcoms.exe [1053104 2007-05-29] (Lexmark International, Inc. -> ) R2 lxdf_device; C:\Windows\SysWOW64\lxdfcoms.exe [598960 2007-05-29] (Lexmark International, Inc. -> ) S3 Macromedia Licensing Service; C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe [68096 2014-04-07] () [Archivo no firmado] R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [916712 2020-04-22] (McAfee, LLC -> McAfee, LLC) R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [Archivo no firmado] R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [336824 2010-11-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [38608 2012-11-29] (RealNetworks, Inc. -> ) S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [800536 2013-11-25] (ByELDI Certificate -> ) [Archivo no firmado] R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [29272 2020-04-05] (LAVASOFT SOFTWARE CANADA INC -> ) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [X] ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R3 ak1avs; C:\Windows\System32\Drivers\ak1avs.sys [359784 2012-12-18] (NATIVE INSTRUMENTS GmbH -> Native Instruments GmbH) S3 ak1avs_x64; C:\Windows\System32\Drivers\ak1avs_x64.sys [45136 2009-10-08] (NATIVE INSTRUMENTS GmbH -> Native Instruments GmbH) R3 ak1usb_svc; C:\Windows\System32\Drivers\ak1usb.sys [100712 2012-12-18] (NATIVE INSTRUMENTS GmbH -> Native Instruments GmbH) S3 ak1usb_x64; C:\Windows\System32\Drivers\ak1usb_x64.sys [300624 2009-10-08] (NATIVE INSTRUMENTS GmbH -> Native Instruments GmbH) S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2011-09-06] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.) S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [35840 2011-09-06] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.) R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37864 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205576 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [271120 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [206608 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [64272 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279360 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42976 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [175400 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110560 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84056 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [848672 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [458584 2020-03-12] (Avast Software s.r.o. -> AVAST Software) S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [235184 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [316256 2020-02-27] (Avast Software s.r.o. -> AVAST Software) R3 dtultrascsibus; C:\Windows\System32\DRIVERS\dtultrascsibus.sys [30264 2018-03-11] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtultrausbbus; C:\Windows\System32\DRIVERS\dtultrausbbus.sys [47672 2018-03-11] (Disc Soft Ltd -> Disc Soft Ltd) S3 EtronHub3; C:\Windows\System32\Drivers\EtronHub3.sys [40832 2011-03-07] (Microsoft Windows Hardware Compatibility Publisher -> Etron Technology Inc) S3 EtronXHCI; C:\Windows\System32\Drivers\EtronXHCI.sys [65280 2011-03-07] (Microsoft Windows Hardware Compatibility Publisher -> Etron Technology Inc) S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 gdrv; C:\Windows\gdrv.sys [25640 2020-04-23] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 MADFUVENOM; C:\Windows\System32\DRIVERS\MAudioVenom_DFU.sys [47792 2011-10-18] (Avid Technology, Inc. -> M-Audio) R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Pinnacle Systems GmbH) S3 MAUSBVENOM; C:\Windows\System32\DRIVERS\MAudioVenom.sys [201008 2011-10-18] (Avid Technology, Inc. -> M-Audio) R3 mlkumidi; C:\Windows\System32\drivers\mlkumidi.sys [57408 2012-08-29] (MusicLab, Inc. -> MusicLab, Inc.) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2015-08-21] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2012-10-12] (El archivo está en uso) [Archivo no firmado ?] S1 staport; C:\Windows\System32\Drivers\staport.sys [44568 2020-04-22] (AVAST Software s.r.o. -> ) R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [40664 2013-08-22] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R0 TPkd; C:\Windows\SysWow64\Drivers\TPkd.sys [86528 2008-07-02] (PACE Anti-Piracy, Inc.) [Archivo no firmado] S1 UsbCharger; C:\Windows\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [225792 2013-08-12] (Microsoft Windows Hardware Compatibility Publisher -> VIA Technologies, Inc.) R3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [295424 2013-08-12] (Microsoft Windows Hardware Compatibility Publisher -> VIA Technologies, Inc.) U3 atkrlvt6; no ImagePath S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] S2 MBAMChameleon; \SystemRoot\System32\Drivers\MbamChameleon.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) =================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2020-04-23 12:42 - 2020-04-23 12:44 - 000056717 _____ C:\Users\Mario\Desktop\FRST.txt 2020-04-23 12:39 - 2020-04-23 12:39 - 002282496 _____ (Farbar) C:\Users\Mario\Desktop\FRST64.exe 2020-04-22 22:09 - 2020-04-22 22:09 - 000000129 _____ C:\Users\Mario\Desktop\Problemas archivos W7.txt 2020-04-22 16:37 - 2020-04-22 16:37 - 000576556 _____ C:\Users\Mario\Downloads\454046-2018-03.pdf 2020-04-22 16:02 - 2020-04-22 16:02 - 001227790 _____ C:\Users\Mario\Downloads\450962-1007.pdf 2020-04-22 16:01 - 2020-04-22 16:01 - 009492453 _____ C:\Users\Mario\Downloads\452897-2011-08.pdf 2020-04-22 16:01 - 2020-04-22 16:01 - 001882302 _____ C:\Users\Mario\Downloads\451911-2018-08 (1).pdf 2020-04-22 16:01 - 2020-04-22 16:01 - 000863212 _____ C:\Users\Mario\Downloads\450546-0906.pdf 2020-04-22 16:00 - 2020-04-22 16:00 - 002177624 _____ C:\Users\Mario\Downloads\451439-0508.pdf 2020-04-22 15:59 - 2020-04-22 15:59 - 004495135 _____ C:\Users\Mario\Downloads\452174-0110.pdf 2020-04-22 15:38 - 2020-04-22 15:38 - 001882302 _____ C:\Users\Mario\Downloads\451911-2018-08.pdf 2020-04-22 03:00 - 2020-04-22 03:00 - 000044568 _____ () C:\Windows\system32\Drivers\staport.sys 2020-04-22 02:59 - 2020-02-27 21:00 - 000368056 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2020-04-21 21:42 - 2020-04-21 21:42 - 000080680 _____ C:\Users\Mario\Desktop\Documento PDF.pdf 2020-04-18 19:18 - 2020-04-18 19:18 - 003982656 _____ (WinAbility® Software Corporation) C:\Users\Mario\Downloads\ABCommander-20.2-setup.exe 2020-04-18 16:16 - 2020-04-21 23:03 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-04-16 23:26 - 2020-04-16 23:26 - 000000000 ____D C:\Users\Mario\Desktop\Nueva carpeta (2) 2020-04-16 12:09 - 2020-04-17 14:52 - 000000492 _____ C:\as.mof 2020-04-16 12:09 - 2020-04-17 14:52 - 000000490 _____ C:\av.mof 2020-04-16 12:02 - 2020-04-16 12:02 - 000000207 _____ C:\Windows\tweaking.com-regbackup-MARIO-PC-Windows-7-Enterprise-(64-bit).dat 2020-04-16 12:02 - 2020-04-16 12:02 - 000000000 ____D C:\RegBackup 2020-04-16 11:59 - 2020-04-16 12:00 - 000000000 ____D C:\Users\Mario\Desktop\Tweaking.com - Windows Repair 2020-04-15 13:20 - 2020-04-15 13:21 - 000000000 ____D C:\Users\Mario\Desktop\W7 Home Premium SP1 64 2020-04-14 20:07 - 2020-04-17 12:22 - 000000000 ____D C:\Users\Mario\AppData\LocalLow\uTorrent 2020-04-07 15:54 - 2020-04-07 20:18 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Jamulus 2020-04-07 15:21 - 2020-04-07 15:21 - 000000955 _____ C:\Users\Mario\Desktop\Jamulus.lnk 2020-04-07 15:21 - 2020-04-07 15:21 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jamulus 2020-04-07 15:16 - 2020-04-07 15:21 - 000000000 ____D C:\Program Files (x86)\Jamulus 2020-04-07 15:11 - 2020-04-07 15:15 - 044043292 _____ C:\Users\Mario\Downloads\Jamulus-3.4.5-installer.exe 2020-04-06 20:20 - 2020-04-06 20:21 - 538580194 _____ C:\Users\Mario\Downloads\refx Nexus 3 Windows_x64_unlocked.zip 2020-04-06 19:47 - 2020-04-06 19:47 - 000001860 _____ C:\Users\Mario\Desktop\CorelDRW.lnk 2020-04-06 19:46 - 2020-04-06 19:46 - 000001534 _____ C:\Users\Mario\Desktop\recap.exe - Acceso directo.lnk 2020-04-06 19:46 - 2020-04-06 19:46 - 000001503 _____ C:\Users\Mario\Desktop\Autocad2015.lnk 2020-04-06 19:46 - 2020-04-06 19:46 - 000001503 _____ C:\Users\Mario\Desktop\Autocad2013.lnk 2020-04-06 19:45 - 2020-04-06 19:45 - 000001534 _____ C:\Users\Mario\Desktop\AdSync.exe - Acceso directo.lnk 2020-04-06 19:40 - 2020-04-06 19:40 - 000001729 _____ C:\Users\Mario\Desktop\googleearth.exe - Acceso directo.lnk 2020-04-06 19:35 - 2020-04-06 19:35 - 000001731 _____ C:\Users\Mario\Desktop\PinnacleStudio 21.lnk 2020-04-06 19:27 - 2020-04-06 19:27 - 000001661 _____ C:\Users\Mario\Desktop\Acrobat X PRO.lnk 2020-04-06 19:11 - 2020-04-06 19:11 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign7f9a4cba51668f35 2020-04-06 19:10 - 2020-04-06 19:10 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign9f9acb56a9648877 2020-04-06 19:10 - 2020-04-06 19:10 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign645ad9126d1847a6 2020-04-06 19:10 - 2020-04-06 19:10 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign20031b41d02c2e9c 2020-04-05 21:38 - 2020-04-05 21:38 - 000000055 _____ C:\Users\Mario\Desktop\Bici Estática.txt 2020-04-05 20:37 - 2020-04-05 20:37 - 000000046 _____ C:\Windows\wininit.ini 2020-04-05 20:37 - 2020-04-05 20:37 - 000000000 ____D C:\ProgramData\Mozilla 2020-04-05 15:08 - 2020-04-05 15:08 - 000000000 ____D C:\Users\Mario\Downloads\ReFX Nexus v3.3 Team Air VSTi 2020-04-05 15:07 - 2020-04-17 12:23 - 000000000 ____D C:\Users\Mario\AppData\Local\BitTorrentHelper 2020-04-05 15:07 - 2020-04-05 15:07 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Lavasoft 2020-04-05 15:07 - 2020-04-05 15:07 - 000000000 ____D C:\Users\Mario\AppData\Local\Lavasoft 2020-04-05 15:06 - 2020-04-05 15:06 - 000000000 ____D C:\ProgramData\Lavasoft 2020-04-05 15:06 - 2020-04-05 15:06 - 000000000 ____D C:\Program Files (x86)\Lavasoft 2020-04-05 15:03 - 2020-04-05 15:04 - 002907000 _____ (BitTorrent Inc.) C:\Users\Mario\Downloads\uTorrent.exe 2020-04-05 15:02 - 2020-04-05 15:04 - 020364720 _____ (BitTorrent, Inc.) C:\Users\Mario\Downloads\utweb_installer.exe 2020-04-05 14:40 - 2020-04-05 14:40 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Xfer 2020-04-05 14:38 - 2020-04-05 14:38 - 000000000 ____D C:\Users\Mario\Documents\Xfer 2020-04-05 14:27 - 2020-04-05 14:27 - 000002048 _____ C:\Users\Public\Desktop\FL Studio 20.lnk 2020-04-05 14:27 - 2020-04-05 14:27 - 000002048 _____ C:\ProgramData\Desktop\FL Studio 20.lnk 2020-04-05 13:29 - 2020-04-05 13:30 - 000000133 _____ C:\Users\Mario\Desktop\Youtube.url 2020-04-05 12:40 - 2020-04-05 14:36 - 000000000 ____D C:\Users\Mario\Downloads\SERUM (vsti) 2020-04-05 12:36 - 2020-04-05 14:14 - 000000000 ____D C:\Users\Mario\Downloads\FL STUDIO 20 2020-04-03 21:15 - 2020-04-03 21:15 - 000000000 __HDC C:\ProgramData\{1FFC2364-9711-4D04-88D2-9FC554F38CAC} 2020-04-03 21:11 - 2012-12-18 12:47 - 021781240 _____ (Native Instruments ) C:\Users\Mario\Downloads\Audio Kontrol 1 Driver Setup PC.exe 2020-04-03 16:08 - 2020-04-22 15:58 - 000003726 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly) 2020-04-03 16:08 - 2020-04-22 15:58 - 000003144 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Logon) 2020-04-03 16:08 - 2020-04-16 16:14 - 000002280 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk 2020-04-03 16:08 - 2020-04-16 16:14 - 000002237 _____ C:\Users\Public\Desktop\CCleaner Browser.lnk 2020-04-03 16:08 - 2020-04-16 16:14 - 000002237 _____ C:\ProgramData\Desktop\CCleaner Browser.lnk 2020-04-03 16:08 - 2020-04-03 16:08 - 000000000 ____D C:\Users\Mario\AppData\Local\CCleaner Browser 2020-04-03 16:08 - 2020-04-03 16:08 - 000000000 ____D C:\ProgramData\CCleaner Browser 2020-04-03 16:07 - 2020-04-22 15:58 - 000003584 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineUA 2020-04-03 16:07 - 2020-04-22 15:58 - 000003456 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineCore 2020-04-03 16:07 - 2020-04-16 16:14 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser 2020-04-03 15:51 - 2020-04-03 15:51 - 022267336 _____ (Piriform Software Ltd) C:\Users\Mario\Downloads\ccsetup565.exe 2020-04-03 15:50 - 2020-04-22 15:58 - 000002790 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2020-04-03 15:40 - 2020-04-03 15:41 - 001957784 _____ (Malwarebytes) C:\Users\Mario\Downloads\MBSetup.exe 2020-04-03 15:24 - 2020-04-13 21:15 - 000000000 ____D C:\Users\Mario\AppData\LocalLow\IGDump 2020-04-03 15:20 - 2020-04-03 15:20 - 000000000 ____D C:\Users\Mario\AppData\Local\mbamtray 2020-04-03 11:50 - 2020-04-22 08:15 - 000002182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-03 11:50 - 2020-04-22 08:15 - 000002141 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-04-03 11:50 - 2020-04-22 08:15 - 000002141 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-04-03 11:48 - 2020-04-03 11:48 - 001295576 _____ (Google LLC) C:\Users\Mario\Downloads\ChromeSetup.exe 2020-03-31 14:37 - 2020-04-02 21:59 - 000000000 ____D C:\Users\Mario\Downloads\Bornemark Broomstick Bass 2020-03-30 15:02 - 2020-03-30 15:02 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsigne1cea571ecd38f8c 2020-03-30 15:02 - 2020-03-30 15:02 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsigna2c8ab3004d7a79b 2020-03-28 17:03 - 2020-03-28 17:03 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign8d423158abcffb0e 2020-03-28 16:49 - 2020-03-28 16:49 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign70ddc63f456b07ea 2020-03-28 16:48 - 2020-03-28 16:48 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign841446a190a34e2e 2020-03-28 16:48 - 2020-03-28 16:48 - 000000000 ____D C:\Users\Mario\AppData\Local\Tempzxpsign079485e42ab76f7b 2020-03-28 16:12 - 2020-03-28 17:03 - 000000000 ____D C:\Users\Mario\Desktop\DROP DE VIEJOS 2020-03-26 21:25 - 2020-03-26 21:25 - 000000000 ____D C:\ProgramData\deletepart 2020-03-26 17:17 - 2020-04-07 14:20 - 000000000 ____D C:\Users\Mario\Desktop\Nueva carpeta 2020-03-25 22:36 - 2020-03-25 22:44 - 000000000 ____D C:\Users\Mario\Desktop\Cumple Sonia ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2020-04-23 12:43 - 2018-07-25 14:13 - 000000000 ____D C:\FRST 2020-04-23 12:43 - 2009-07-14 06:45 - 000030960 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-04-23 12:43 - 2009-07-14 06:45 - 000030960 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-04-23 12:40 - 2010-11-21 09:29 - 000710490 _____ C:\Windows\system32\perfh00A.dat 2020-04-23 12:40 - 2010-11-21 09:29 - 000144904 _____ C:\Windows\system32\perfc00A.dat 2020-04-23 12:40 - 2009-07-14 07:13 - 001575640 _____ C:\Windows\system32\PerfStringBackup.INI 2020-04-23 12:40 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2020-04-23 12:34 - 2014-10-06 23:41 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys 2020-04-23 12:34 - 2012-11-18 01:21 - 000000000 ____D C:\ProgramData\NVIDIA 2020-04-23 12:34 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-04-22 22:13 - 2015-06-17 21:43 - 000001002 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000UA.job 2020-04-22 21:43 - 2019-10-06 11:02 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-04-22 21:43 - 2019-10-06 11:02 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2020-04-22 19:29 - 2015-06-17 21:43 - 000000950 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000Core.job 2020-04-22 15:58 - 2019-10-06 11:02 - 000003446 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0 2020-04-22 15:58 - 2019-07-06 19:34 - 000003032 _____ C:\Windows\system32\Tasks\{64B820E2-2CED-4943-BB45-7870BC623AE8} 2020-04-22 15:58 - 2018-07-25 10:06 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update 2020-04-22 15:58 - 2015-12-05 13:10 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software 2020-04-22 15:58 - 2015-06-17 21:43 - 000003982 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000UA 2020-04-22 15:58 - 2015-06-17 21:43 - 000003586 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskUserS-1-5-21-2183980505-3911418445-2564934022-1000Core 2020-04-22 15:58 - 2014-12-25 21:13 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2020-04-22 15:58 - 2012-11-03 00:14 - 000003536 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2020-04-22 15:58 - 2012-11-03 00:14 - 000003408 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2020-04-22 15:58 - 2012-10-12 23:31 - 000003160 _____ C:\Windows\system32\Tasks\SidebarExecute 2020-04-22 03:00 - 2015-03-30 16:21 - 000001963 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2020-04-22 03:00 - 2015-03-30 16:21 - 000001963 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk 2020-04-22 02:59 - 2017-08-15 16:11 - 000003910 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2020-04-21 23:03 - 2019-03-31 12:43 - 000000000 ____D C:\Users\TEMP 2020-04-21 23:03 - 2018-03-14 15:22 - 000000000 ____D C:\Users\REMOTO 2020-04-21 23:03 - 2012-11-18 01:21 - 000000000 ____D C:\Users\UpdatusUser 2020-04-21 23:03 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\AppCompat 2020-04-21 23:02 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration 2020-04-21 22:05 - 2012-10-12 22:32 - 000000000 ____D C:\Users\Mario 2020-04-19 21:25 - 2015-01-26 23:37 - 000000000 ____D C:\Users\Mario\Documents\Addictive Drums 2 Logs 2020-04-18 16:16 - 2013-10-18 23:31 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Dropbox 2020-04-17 19:44 - 2009-07-14 06:45 - 005547680 _____ C:\Windows\system32\FNTCACHE.DAT 2020-04-17 19:39 - 2010-11-21 09:36 - 000000000 ____D C:\Windows\CSC 2020-04-17 19:38 - 2012-10-13 18:27 - 000000000 ____D C:\Users\Mario\AppData\Roaming\uTorrent 2020-04-17 16:04 - 2009-07-14 04:34 - 000000514 _____ C:\Windows\win.ini 2020-04-17 15:51 - 2012-10-12 23:03 - 000249672 _____ C:\Users\Mario\AppData\Local\GDIPFONTCACHEV1.DAT 2020-04-16 23:13 - 2009-07-14 04:34 - 000000855 _____ C:\Windows\system32\Drivers\etc\hosts_bak_542 2020-04-16 20:32 - 2010-11-21 09:36 - 000000000 ___RD C:\Users\Public\Recorded TV 2020-04-16 20:28 - 2012-10-13 11:40 - 000000000 ____D C:\Users\Mario\AppData\Local\PMB Files 2020-04-16 18:58 - 2009-07-14 04:34 - 000000855 _____ C:\Windows\system32\Drivers\etc\hosts_bak_919 2020-04-15 19:03 - 2009-07-14 05:20 - 000000000 __RHD C:\Users\Public\Libraries 2020-04-15 18:41 - 2013-09-25 17:12 - 000000000 ____D C:\Users\Mario\AppData\Local\ElevatedDiagnostics 2020-04-15 18:40 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2020-04-15 11:21 - 2009-07-14 07:08 - 000032512 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2020-04-14 13:23 - 2016-11-29 20:55 - 000000000 ____D C:\Users\Mario\AppData\LocalLow\Mozilla 2020-04-14 12:50 - 2013-02-23 11:47 - 000000000 ____D C:\Users\Mario\Documents\Archivos de Outlook 2020-04-13 17:17 - 2018-12-19 12:28 - 000000000 ____D C:\Users\Mario\AppData\Local\CrashDumps 2020-04-12 22:47 - 2013-08-11 14:00 - 000000000 ____D C:\Users\Mario\AppData\Roaming\vlc 2020-04-07 15:16 - 2014-12-27 14:50 - 000000000 ____D C:\ProgramData\Package Cache 2020-04-07 14:40 - 2020-03-09 20:49 - 000000000 ____D C:\Program Files\Android 2020-04-07 14:39 - 2015-12-26 22:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2020-04-07 14:20 - 2018-07-25 10:06 - 000000826 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-04-07 14:20 - 2018-07-25 10:06 - 000000826 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-04-06 19:35 - 2012-10-13 11:39 - 000000000 ____D C:\Users\Mario\AppData\Local\Pinnacle 2020-04-06 19:35 - 2012-10-13 11:35 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI 2020-04-06 19:35 - 2012-10-13 11:35 - 000000349 _____ C:\ProgramData\Documents\PCLECHAL.INI 2020-04-06 19:33 - 2012-10-13 12:53 - 000006076 _____ C:\Users\Mario\AppData\Roaming\MARIO-PC.MTBF.txt 2020-04-06 18:32 - 2009-07-14 05:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2020-04-05 21:55 - 2012-10-16 20:14 - 000000064 _____ C:\Windows\SysWOW64\w3data.vss 2020-04-05 21:55 - 2012-10-16 20:14 - 000000064 _____ C:\Windows\SysWOW64\msvcsv60.dll 2020-04-05 21:55 - 2012-10-16 20:14 - 000000064 _____ C:\Windows\msocreg32.dat 2020-04-05 20:58 - 2012-10-29 23:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-04-05 15:07 - 2017-12-06 12:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2020-04-05 15:07 - 2015-09-14 02:12 - 000000000 ____D C:\Users\Mario\AppData\Local\Opera Software 2020-04-05 15:06 - 2017-12-06 12:19 - 000000851 _____ C:\Users\Mario\Desktop\µTorrent.lnk 2020-04-05 15:06 - 2015-09-14 02:12 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Opera Software 2020-04-05 14:28 - 2013-07-18 22:39 - 000000000 ____D C:\Program Files\Image-Line 2020-04-05 14:28 - 2012-10-13 16:08 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2020-04-05 14:28 - 2012-10-13 16:08 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2020-04-05 14:24 - 2012-10-14 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line 2020-04-05 14:24 - 2012-10-13 15:40 - 000000000 ____D C:\Users\Mario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2020-04-05 14:18 - 2012-10-14 11:23 - 000000000 ____D C:\Program Files (x86)\Image-Line 2020-04-03 21:15 - 2012-10-16 19:13 - 000000000 ___RD C:\Program Files\Native Instruments 2020-04-03 21:15 - 2012-10-16 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments 2020-04-03 16:06 - 2018-07-25 10:06 - 000000000 ____D C:\Program Files\CCleaner 2020-04-03 15:20 - 2012-10-19 13:29 - 000000000 ____D C:\Users\Mario\AppData\Local\cache 2020-04-03 11:50 - 2012-10-12 23:04 - 000000000 ____D C:\Program Files (x86)\Google 2020-04-02 23:01 - 2015-01-12 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2020-04-01 14:25 - 2019-11-11 11:00 - 000000000 ____D C:\Users\Mario\Desktop\Varias cosas del escritorio 2020-03-26 12:02 - 2012-10-12 23:20 - 000000000 ____D C:\ProgramData\AVAST Software ==================== Archivos en la raíz de algunos directorios ======== 2018-03-11 22:58 - 2018-03-11 22:58 - 000000000 _____ () C:\Program Files\cd 2017-08-30 19:53 - 2017-08-30 19:53 - 009159168 _____ (XFER / steve@xferrecords.com ) C:\Program Files (x86)\Serum_x64.dll 2012-10-20 11:20 - 2012-10-20 11:21 - 000368583 _____ () C:\Program Files (x86)\unins000.dat 2012-10-20 11:20 - 2012-10-20 11:20 - 000722711 _____ () C:\Program Files (x86)\unins000.exe 2015-01-13 16:28 - 2015-01-13 16:28 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F523651A6C3.sys 2015-01-13 16:29 - 2015-01-13 16:29 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F523651A6C4.sys 2015-01-13 16:25 - 2015-01-13 16:25 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F52667FE200.sys 2015-01-13 16:28 - 2015-01-13 16:28 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F52667FE201.sys 2015-01-13 16:29 - 2015-01-13 16:29 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F52D0215C4A.sys 2015-01-13 16:29 - 2015-01-13 16:29 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.0D863F52D0215C4B.sys 2012-10-21 12:20 - 2012-10-21 12:20 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F00ED7FA19.sys 2012-10-21 12:20 - 2012-10-21 12:20 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F00ED7FA1A.sys 2012-10-21 12:23 - 2012-10-21 12:23 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F02C7AD373.sys 2012-10-21 12:23 - 2012-10-21 12:23 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F03D646A28.sys 2012-10-21 12:22 - 2012-10-21 12:22 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F03D7F58BD.sys 2012-10-21 12:22 - 2012-10-21 12:22 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F03D7F58BE.sys 2012-11-27 20:41 - 2012-11-27 20:41 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F045DFF766.sys 2012-11-27 20:42 - 2012-11-27 20:42 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F045DFF767.sys 2012-10-21 12:19 - 2012-10-21 12:19 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F04F9E1773.sys 2012-10-21 12:19 - 2012-10-21 12:19 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F04F9E1774.sys 2012-10-21 12:17 - 2012-10-21 12:17 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F054E81EB0.sys 2012-10-16 23:54 - 2012-10-16 23:54 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F06F657399.sys 2012-10-16 23:53 - 2012-10-16 23:53 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0803556DB.sys 2012-10-21 12:22 - 2012-10-21 12:22 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0845E1389.sys 2012-10-21 12:23 - 2012-10-21 12:23 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0845E138A.sys 2012-10-21 12:22 - 2012-10-21 12:22 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F08E6A820C.sys 2012-10-21 12:21 - 2012-10-21 12:21 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0CB8AAB31.sys 2012-10-21 12:19 - 2012-10-21 12:19 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0D2AEB6BA.sys 2012-10-21 12:20 - 2012-10-21 12:20 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0DA10963F.sys 2012-10-21 12:18 - 2012-10-21 12:18 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0DD4DB4CF.sys 2012-10-21 12:19 - 2012-10-21 12:19 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0DD4DB4D0.sys 2012-10-21 12:24 - 2012-10-21 12:24 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0EEAEFFC1.sys 2012-10-21 12:18 - 2012-10-21 12:18 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0FAA8DB3F.sys 2013-01-10 20:55 - 2013-01-10 20:55 - 000000000 ____H () C:\Users\Mario\AppData\Roaming\.C823F3F0FAA8DB40.sys 2017-02-07 22:54 - 2019-11-14 20:54 - 000000033 _____ () C:\Users\Mario\AppData\Roaming\AdobeWLCMCache.dat 2012-10-13 12:53 - 2020-04-06 19:33 - 000006076 _____ () C:\Users\Mario\AppData\Roaming\MARIO-PC.MTBF.txt 2016-11-06 19:52 - 2017-03-21 18:13 - 000000618 _____ () C:\Users\Mario\AppData\Roaming\pacemaker.ini 2016-11-06 19:52 - 2016-11-06 19:52 - 000000010 _____ () C:\Users\Mario\AppData\Roaming\pacemaker_songparams.txt 2012-10-13 12:53 - 2013-02-06 21:34 - 000000672 _____ () C:\Users\Mario\AppData\Roaming\__AvidCloudManager.log 2012-10-13 12:53 - 2013-02-06 20:36 - 000000672 _____ () C:\Users\Mario\AppData\Roaming\__AvidCloudManagerPrevious.log 2018-10-08 21:17 - 2019-04-11 22:57 - 000007680 _____ () C:\Users\Mario\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-06-14 21:44 - 2017-10-21 23:34 - 000464384 _____ (Dirección General de la Policía) C:\Users\Mario\AppData\Local\DNIeService.exe 2018-10-04 12:04 - 2018-10-04 12:04 - 000000000 _____ () C:\Users\Mario\AppData\Local\oobelibMkey.log 2013-10-05 00:20 - 2013-10-05 00:20 - 000007597 _____ () C:\Users\Mario\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) LastRegBack: 2020-04-17 01:01 ==================== Final de FRST.txt ========================