Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 19.04.2024 01 Ejecutado por 34640 (administrador) sobre DESKTOP-JS1P261 ($(DEFAULT_STRING) $(DEFAULT_STRING)) (09-05-2024 13:04:08) Ejecutado desde C:\Users\34640\OneDrive\Escritorio\FRST64.exe Perfiles cargados: 34640 Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.4170 (X64) Idioma: Español (España, internacional) Navegador predeterminado: Chrome Modo de Inicio: Normal ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (C:\DriverPrinter\AmrDriver.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\netsh.exe (C:\DriverPrinter\winServiceAMR.exe ->) (Oriol Esteve Alibes -> ) C:\DriverPrinter\AmrDriver.exe (C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\1.3.863.1\DropboxCrashHandler.exe (C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\90.0.3.0\crashpad_handler.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (C:\Users\34640\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe ->) (Wondershare Technology Group Co.,Ltd -> Wondershare) C:\Users\34640\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (ctfmon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxEM.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <7> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18> (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe <8> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Now.gg, INC -> now.gg, Inc.) C:\Users\34640\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe <4> (explorer.exe ->) (Pablo Software Solutions) [Archivo no firmado] C:\ftp\FTPServer.exe (explorer.exe ->) (RealDefense LLC -> SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (Intel\DPTF\esif_uf.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Node.js Foundation -> Node.js) C:\Users\34640\AppData\Roaming\Java\jre8\bin\java.exe (Oriol Esteve Alibes -> ) C:\DriverPrinter\MenuAmr.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <2> (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (Firebird Project) [Archivo no firmado] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (services.exe ->) (Firebird Project) [Archivo no firmado] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c2ac023763d5d3ad\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHeciSvc.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe (services.exe ->) (Oriol Esteve Alibes -> ) C:\DriverPrinter\winServiceAMR.exe (services.exe ->) (RealDefense, LLC -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe (services.exe ->) (Wondershare Technology Group Co.,Ltd -> Wondershare) C:\Users\34640\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2417.4.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsMaps_11.2403.4.0_x64__8wekyb3d8bbwe\Maps.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileCoAuth.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\PickerHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <3> ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3831808 2021-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Ningún archivo) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [122427152 2021-07-15] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [DriverPrinter] => C:\DriverPrinter\MenuAmr.exe [259080 2022-03-14] (Oriol Esteve Alibes -> ) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11551624 2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restricción <==== ATENCIÓN HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restricción <==== ATENCIÓN HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe [60567840 2024-04-24] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe [60567840 2024-04-24] (Google LLC -> Google, Inc.) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [3850656 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe [60567840 2024-04-24] (Google LLC -> Google, Inc.) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\34640\AppData\Local\Microsoft\Teams\Update.exe [2460864 2022-01-28] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [MicrosoftEdgeAutoLaunch_092F99324BF5B497ACA5414CF0780E82] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4081192 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [electron.app.BlueStacks Services] => C:\Users\34640\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe [162219656 2024-01-25] (Now.gg, INC -> now.gg, Inc.) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [rasapi32] => wscript.exe "C:\Users\34640\AppData\Roaming\Microsoft\Windows NT\rasapi32.js" [179 2024-03-14] () [Archivo no firmado] <==== ATENCIÓN HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [11248160 2024-04-29] (RealDefense LLC -> SUPERAntiSpyware) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\MountPoints2: {25779620-0d81-11ed-a6dd-b0a460f8cb76} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\90.0.3.0\GoogleDriveFS.exe [60567840 2024-04-24] (Google LLC -> Google, Inc.) HKLM\...\Print\Monitors\PDF-XChange Standard Port Monitor: C:\WINDOWS\system32\pxcpm.dll [957184 2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) HKLM\...\Print\Monitors\ricu0wlm: C:\WINDOWS\system32\ricu0wlm.dll [28160 2013-12-26] (Microsoft Windows Hardware Compatibility Publisher -> RICOH CO.,Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\124.0.6367.119\Installer\chrmstp.exe [2024-05-03] (Google LLC -> Google LLC) Startup: C:\Users\34640\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Quick'n Easy FTP Server.lnk [2024-01-02] ShortcutTarget: Quick'n Easy FTP Server.lnk -> C:\ftp\FTPServer.exe (Pablo Software Solutions) [Archivo no firmado] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2022-09-05] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) ==================== Tareas programadas (Lista blanca) ================= (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {6CBEF361-EE00-46F9-B3B8-D803788F07C8} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Ningún archivo <==== ATENCIÓN Task: {E190BFC4-91CB-4A70-8733-0F54BCA8EE60} - \Intel PTT EK Recertification -> Ningún archivo <==== ATENCIÓN Task: {E648B2F4-71BF-4756-8024-0C6999B44010} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1547208 2024-01-31] (Adobe Inc. -> Adobe Inc.) Task: {2794A834-5311-4722-AD42-FE7B5E73C415} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [302968 2024-01-25] (Now.gg, INC -> BlueStack Systems, Inc.) Task: {2B46836C-9862-47C9-9F9B-EF547C0E32B6} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-31] (Dropbox, Inc -> Dropbox, Inc.) Task: {0339CC7F-65D5-4A13-A8BE-9D640200FD46} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-31] (Dropbox, Inc -> Dropbox, Inc.) Task: {B19004E7-C265-4CB2-BCF3-635D3F6F8497} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6462.0{7411FB2B-2DAC-41F6-82A0-2348E5719BAD} => C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe [4794656 2024-05-06] (Google LLC -> Google LLC) Task: {81E465D8-11C5-41C2-9E67-4A8F14FBFF5F} - System32\Tasks\GoogleSystem\GoogleUpdater\Gstuihclkkaj => C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe [58864 2022-06-25] (Microsoft Corporation -> Microsoft Corporation) -> C:\Program Files (x86)\SnapInter\StaotdpCcsi\/unregister "C:\Program Files (x86)\SnapInter\StaotdpCcsi\bcrwaCMesiaeft.dll" /nologo Task: {F79B5BAB-628B-4261-853D-CDE65F522359} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21916864 2024-02-28] (Microsoft Corporation -> Microsoft Corporation) Task: {B1E28244-DA1A-4DD2-92F9-A12E2F5EDF5B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21916864 2024-02-28] (Microsoft Corporation -> Microsoft Corporation) Task: {8443E481-89AB-451F-9B7A-824FBCB47264} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141384 2024-04-16] (Microsoft Corporation -> Microsoft Corporation) Task: {6D96A562-57F9-455C-BFDC-E950B3121378} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141384 2024-04-16] (Microsoft Corporation -> Microsoft Corporation) Task: {E369BBB2-2208-4C5B-A661-F9E6EF90D3E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {93AA20E3-F10F-4132-9603-7745BFFEF567} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {935515D3-7708-48A6-AEB3-3CC7C4D3AF8B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C6011245-260E-4272-B799-E127311C2FE7} - System32\Tasks\NCH Software\ExpressInvoiceSchedBackup => C:\Program Files (x86)\NCH Software\ExpressInvoice\ExpressInvoice.exe [2927904 2022-07-14] (NCH Software, Inc. -> NCH Software) Task: {1AD01479-28DD-4AEF-ACE7-E807AC4CC0B9} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) Task: {EFDA752A-D2C6-4776-8942-2801C3DA1CC7} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1029734310-37884491-227788786-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt Tcpip\..\Interfaces\{38a875a7-f85b-46e3-b9fb-2c2debf728da}: [DhcpNameServer] 192.168.151.119 Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\2554354514552514E44554459425F405943484F4E423F55374: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\2554354514552514E44554459425F405943484F4E423F55374: [DhcpDomain] www.tendawifi.com Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\2554354514552514E44554459425F405943484F4E453: [DhcpNameServer] 192.168.55.1 Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\2554354514552514E44554459425F405943484F4E453: [DhcpDomain] Realtek Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\960586F6E65602465602959697F602: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\F464943494E414459425F4: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d47d5e42-30e0-4aac-90a1-c37885cb4182}\F464943494E414459425F4: [DhcpDomain] www.tendawifi.com Tcpip\..\Interfaces\{f16c4458-7518-44e4-8a07-ff56f0da743a}: [NameServer] 8.8.8.8,1.1.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default [2024-05-09] Edge HomePage: Default -> hxxp://www.google.com/ Edge Extension: (PDF-XChange) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\djmbpijobamaimdblhkpclfnpkiogeoo [2023-03-28] Edge Extension: (Marcadores en iCloud) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2023-02-13] Edge Extension: (Documentos de Google sin conexión) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-06] Edge Extension: (Amazon Assistant) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hkmnokmdbkkafgmpfhhiniclfnfpmogj [2023-03-30] Edge Extension: (Edge relevant text changes) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge Extension: (Google Mail Checker) - C:\Users\34640\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2023-02-13] Edge HKLM\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo] Edge HKLM-x32\...\Edge\Extension: [djmbpijobamaimdblhkpclfnpkiogeoo] FireFox: ======== FF HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\34640\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi FF Extension: (Ace Script) - C:\Users\34640\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-05-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-1029734310-37884491-227788786-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-1029734310-37884491-227788786-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-1029734310-37884491-227788786-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default [2024-05-09] CHR Notifications: Default -> hxxps://best.aliexpress.com; hxxps://br.pinterest.com; hxxps://business.facebook.com; hxxps://es.aliexpress.com; hxxps://mail.google.com; hxxps://www.a-alvarez.com; hxxps://www.antena3.com; hxxps://www.applesfera.com; hxxps://www.facebook.com; hxxps://www.iberdrola.es; hxxps://www.leroymerlin.es; hxxps://www.manomano.es; hxxps://www.supermercadosmas.com; hxxps://www.voopoo.com; hxxps://www.xataka.com; hxxps://www.youtube.com CHR Extension: (PDF-XChange) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\blgipgnbmnikbdecnjmgckmndlkebhid [2023-03-23] CHR Extension: (Adobe Acrobat: herramientas para convertir, editar y firmar PDFs) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-05-07] CHR Extension: (Documentos de Google sin conexión) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-20] CHR Extension: (Menú de aplicaciones de Drive (de Google)) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-08-28] CHR Extension: (Captura de página completa - FireShot) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg [2023-06-08] CHR Extension: (Ace Script) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2023-10-04] CHR Extension: (MetaMask) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2024-05-04] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\34640\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-14] CHR Extension: (Google Drive) - C:\Users\34640\AppData\Local\Default [2024-05-09] CHR Profile: C:\Users\34640\AppData\Local\Google\Chrome\User Data\Guest Profile [2024-04-09] CHR Profile: C:\Users\34640\AppData\Local\Google\Chrome\User Data\System Profile [2024-04-09] CHR HKLM\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid] CHR HKU\S-1-5-21-1029734310-37884491-227788786-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-1029734310-37884491-227788786-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKU\S-1-5-21-1029734310-37884491-227788786-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] CHR HKLM-x32\...\Chrome\Extension: [blgipgnbmnikbdecnjmgckmndlkebhid] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [177392 2023-09-14] (RealDefense, LLC -> SUPERAntiSpyware.com) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-01-31] (Adobe Inc. -> Adobe Inc.) R2 amr; c:\DriverPrinter\winServiceAMR.exe [58376 2022-03-14] (Oriol Esteve Alibes -> ) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3910472 2024-02-15] (AnyDesk Software GmbH -> AnyDesk Software GmbH) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9202360 2024-02-28] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-31] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-31] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) S3 ExpressInvoiceService; C:\Program Files (x86)\NCH Software\ExpressInvoice\expressinvoice.exe [2927904 2022-07-14] (NCH Software, Inc. -> NCH Software) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncHelper.exe [3506704 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2013-03-19] (Firebird Project) [Archivo no firmado] R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2013-03-19] (Firebird Project) [Archivo no firmado] S2 GoogleUpdaterInternalService126.0.6462.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe [4794656 2024-05-06] (Google LLC -> Google LLC) S2 GoogleUpdaterService126.0.6462.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6462.0\updater.exe [4794656 2024-05-06] (Google LLC -> Google LLC) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8887264 2024-04-23] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-04-09] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe [1459968 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NativePushService; C:\Users\34640\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe [594320 2023-02-22] (Wondershare Technology Group Co.,Ltd -> Wondershare) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.076.0414.0005\OneDriveUpdaterService.exe [3846560 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522184 2024-03-13] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe [3199648 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe [133576 2024-04-18] (Microsoft Windows Publisher -> Microsoft Corporation) S2 HPPrintScanDoctorService; "C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe" [X] ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [394176 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Bluestack System Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-10-25] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223296 2024-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-04-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MpxRuntime; C:\WINDOWS\System32\drivers\MpxRuntime.sys [36336 2017-10-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [37336 2021-03-09] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> ) S3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1238360 2023-05-10] (Realtek Semiconductor Corp. -> Realtek Corporation) S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [18160 2023-08-25] (RealDefense, LLC -> SUPERAdBlocker.com and SUPERAntiSpyware.com) S1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [15600 2023-08-25] (RealDefense, LLC -> SUPERAdBlocker.com and SUPERAntiSpyware.com) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20936 2024-04-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [601376 2024-04-18] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105760 2024-04-18] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) (Lista blanca) ========= (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2024-05-09 13:04 - 2024-05-09 13:05 - 000033249 _____ C:\Users\34640\OneDrive\Escritorio\FRST.txt 2024-05-09 13:03 - 2024-05-09 13:04 - 000000000 ____D C:\FRST 2024-05-09 13:01 - 2024-05-09 13:02 - 002394112 _____ (Farbar) C:\Users\34640\OneDrive\Escritorio\FRST64.exe 2024-05-09 10:53 - 2024-05-09 10:53 - 000000000 ____D C:\Users\34640\AppData\Roaming\SUPERAntiSpyware.com 2024-05-09 10:52 - 2024-05-09 12:18 - 000000000 ____D C:\Program Files\SUPERAntiSpyware 2024-05-09 10:52 - 2024-05-09 10:52 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2024-05-09 10:52 - 2024-05-09 10:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2024-05-09 10:50 - 2024-05-09 10:51 - 213026776 _____ (SUPERAntiSpyware) C:\Users\34640\Downloads\SUPERAntiSpyware.exe 2024-05-03 20:31 - 2024-05-03 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2024-05-03 13:43 - 2024-05-03 13:43 - 001689690 _____ C:\Users\34640\OneDrive\Documentos\NOTIFICACION JUNTA ANDALUCIA.pdf 2024-05-03 13:43 - 2024-05-03 13:43 - 000000000 ____D C:\Users\34640\AppData\LocalLow\Temp 2024-05-03 13:40 - 2024-05-03 13:40 - 001062367 _____ C:\Users\34640\Downloads\notificacion_202499901340025.pdf 2024-05-03 12:41 - 2024-05-03 12:41 - 000016928 _____ C:\Users\34640\Downloads\CARACOLES.pdf 2024-05-02 08:33 - 2024-05-02 08:33 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2024-04-30 20:11 - 2024-04-30 20:11 - 000136613 _____ C:\Users\34640\OneDrive\Escritorio\PROPUESTA DE ALQUILER.pdf 2024-04-29 19:18 - 2024-05-06 15:27 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-04-29 19:16 - 2024-05-06 15:27 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-04-29 19:06 - 2024-04-29 19:06 - 000153590 _____ C:\Users\34640\Downloads\Modelo Localización Reducido (Remunerado) - LOS TIGRES.pdf 2024-04-27 13:07 - 2024-04-27 13:07 - 000134077 _____ C:\Users\34640\Downloads\VE Project 1.wfp 2024-04-27 13:07 - 2024-04-27 13:07 - 000024173 _____ C:\Users\34640\Downloads\VE Project 1.fsthumb 2024-04-27 12:58 - 2024-04-27 12:57 - 034009940 _____ C:\Users\34640\Downloads\Video de WhatsApp 2024-04-27 a las 12.57.46_c93b5d51.mp4 2024-04-27 12:57 - 2024-04-27 12:57 - 012828182 _____ C:\Users\34640\Downloads\Video de WhatsApp 2024-04-27 a las 12.56.46_355e14fe.mp4 2024-04-24 17:22 - 2024-04-24 17:22 - 000236119 _____ C:\Users\34640\Downloads\Copia_ND2Q645NP9WJFQSW.pdf 2024-04-22 19:33 - 2024-05-07 18:04 - 000009499 _____ C:\Users\34640\OneDrive\Escritorio\TICKETS PRESIDENTE.xlsx 2024-04-16 12:40 - 2024-04-16 12:40 - 000338200 _____ C:\Users\34640\Downloads\2400178.pdf 2024-04-11 18:55 - 2024-04-11 18:55 - 000307268 _____ C:\Users\34640\Downloads\RENTA LUIS 2023.pdf 2024-04-11 12:33 - 2024-04-11 12:33 - 000235027 _____ C:\Users\34640\Downloads\CERTIFICADO HACIENDA.pdf 2024-04-10 20:16 - 2024-04-19 18:41 - 000014919 _____ C:\Users\34640\OneDrive\Escritorio\GASTOS OBRA.xlsx 2024-04-09 20:15 - 2024-04-09 20:15 - 000322071 _____ C:\Users\34640\Downloads\Documento (2).pdf 2024-04-09 11:42 - 2023-03-29 13:40 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\Windows Driver Foundаtion (WDF).exe 2024-04-09 11:42 - 2009-01-03 12:49 - 628926976 ___SH C:\WINDOWS\Windows Driver Foundation (WUD).exe 2024-04-09 11:42 - 2008-10-17 17:53 - 000005120 ___SH () C:\WINDOWS\wudf.exe 2024-04-09 11:42 - 2007-08-15 07:58 - 000000115 ___SH C:\WINDOWS\wtime.cmd 2024-04-09 11:41 - 2024-05-09 13:06 - 000000000 ____D C:\Users\34640\AppData\Local\Malwarebytes 2024-04-09 11:40 - 2024-04-09 11:40 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-04-09 11:39 - 2024-04-09 11:39 - 000000000 __SHD C:\Users\34640\AppData\Local\GoogleDrive 2024-04-09 11:37 - 2024-04-09 11:37 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-04-09 11:36 - 2024-04-09 11:36 - 000000000 __SHD C:\ProgramData\tl 2024-04-09 11:36 - 2024-04-09 11:36 - 000000000 ____D C:\Users\34640\AppData\Local\mbamtray 2024-04-09 11:15 - 2024-04-09 11:15 - 000000000 ____D C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual 2024-04-09 10:57 - 2024-04-09 10:58 - 361174137 _____ C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual.rar 2024-04-09 10:34 - 2024-04-09 10:50 - 000000000 ___HD C:\$WinREAgent ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2024-05-09 13:05 - 2022-03-14 14:16 - 000000000 ____D C:\DriverPrinter 2024-05-09 13:00 - 2022-01-06 22:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-05-09 12:58 - 2024-03-14 17:15 - 000000000 ____D C:\Users\34640\AppData\Local\Default 2024-05-09 12:48 - 2022-01-14 20:04 - 000000000 ___SD C:\Users\34640\AppData\Roaming\Microsoft\Credentials 2024-05-09 12:31 - 2022-01-14 14:42 - 000000000 ____D C:\Users\34640\AppData\Roaming\Microsoft\Word 2024-05-09 12:23 - 2022-01-06 22:36 - 000000000 ___HD C:\Program Files\WindowsApps 2024-05-09 12:23 - 2022-01-06 22:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-05-09 12:20 - 2022-01-06 23:42 - 001683676 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-05-09 12:20 - 2022-01-06 22:42 - 000753678 _____ C:\WINDOWS\system32\perfh00A.dat 2024-05-09 12:20 - 2022-01-06 22:42 - 000148340 _____ C:\WINDOWS\system32\perfc00A.dat 2024-05-09 12:20 - 2022-01-06 22:34 - 000000000 ____D C:\WINDOWS\INF 2024-05-09 12:17 - 2024-01-31 11:31 - 000000000 ____D C:\Users\34640\AppData\Local\Dropbox 2024-05-09 12:17 - 2024-01-31 11:28 - 000000000 ____D C:\Users\34640\AppData\Roaming\Dropbox 2024-05-09 12:16 - 2024-01-31 11:18 - 000000000 ____D C:\Users\34640\AppData\Roaming\bluestacks-services 2024-05-09 12:16 - 2022-01-14 19:16 - 000000000 ____D C:\Users\34640\AppData\Local\SquirrelTemp 2024-05-09 12:15 - 2022-01-17 13:04 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-05-09 12:15 - 2022-01-14 20:06 - 000000000 __SHD C:\Users\34640\IntelGraphicsProfiles 2024-05-09 12:15 - 2022-01-06 23:32 - 000000000 ____D C:\Intel 2024-05-09 12:15 - 2022-01-06 23:31 - 000008192 ___SH C:\DumpStack.log.tmp 2024-05-09 12:15 - 2022-01-06 23:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-05-09 12:15 - 2022-01-06 22:36 - 000000000 ____D C:\WINDOWS\ServiceState 2024-05-09 12:14 - 2022-01-06 22:28 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-05-09 12:10 - 2022-01-06 23:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-05-09 11:39 - 2022-01-14 13:29 - 000000000 __SHD C:\Users\34640\AppData\Local\Google 2024-05-09 11:08 - 2022-01-14 14:47 - 000000000 ____D C:\Users\34640\AppData\Roaming\Microsoft\Excel 2024-05-08 20:02 - 2022-01-15 11:04 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-05-07 21:50 - 2022-01-14 20:06 - 000000000 ____D C:\Users\34640\AppData\Local\Packages 2024-05-07 20:17 - 2022-01-14 19:53 - 000003708 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-05-07 20:17 - 2022-01-14 19:53 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-05-06 18:12 - 2023-11-23 11:34 - 000011259 _____ C:\Users\34640\OneDrive\Escritorio\CREDITO JUAN.xlsx 2024-05-06 17:31 - 2024-01-31 11:20 - 000000000 ____D C:\ProgramData\bst_boost_interprocess 2024-05-06 17:31 - 2024-01-31 11:18 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2024-05-06 12:05 - 2022-01-14 13:30 - 000000000 ____D C:\Users\34640\AppData\Local\D3DSCache 2024-05-05 08:18 - 2022-01-14 19:56 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-05-05 03:17 - 2022-01-14 19:14 - 000000000 ____D C:\Users\34640\AppData\Roaming\Telegram Desktop 2024-05-04 20:18 - 2020-12-09 00:47 - 000000000 ____D C:\ProgramData\Packages 2024-05-04 15:06 - 2022-05-03 17:48 - 000000000 ____D C:\Users\34640\AppData\Local\CrashDumps 2024-05-03 20:32 - 2024-01-31 11:25 - 000000000 ____D C:\Program Files (x86)\Dropbox 2024-05-03 00:47 - 2022-01-14 13:31 - 000002252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-05-02 11:00 - 2022-01-18 14:18 - 000000000 ____D C:\ESCANER 2024-05-02 10:46 - 2022-01-14 20:08 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1029734310-37884491-227788786-1001 2024-05-02 10:46 - 2022-01-14 14:39 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-05-02 10:46 - 2022-01-14 14:39 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-04-29 19:38 - 2022-09-12 12:42 - 000000000 ____D C:\Users\34640\AppData\Roaming\com.adobe.dunamis 2024-04-29 19:38 - 2022-03-02 21:19 - 000000000 ____D C:\Users\34640\AppData\LocalLow\Adobe 2024-04-29 19:38 - 2022-03-02 21:11 - 000000000 ____D C:\Users\34640\AppData\Local\Adobe 2024-04-29 19:14 - 2022-03-04 13:38 - 000000000 ____D C:\Program Files\Common Files\Adobe 2024-04-28 17:20 - 2022-01-06 22:36 - 000000000 ____D C:\WINDOWS\system32\NDF 2024-04-27 13:07 - 2023-09-28 10:15 - 000000000 ____D C:\Users\34640\OneDrive\Documentos\Wondershare Filmora 9 2024-04-27 12:59 - 2022-07-19 11:21 - 000000000 ____D C:\ProgramData\Wondershare Filmora 2024-04-25 19:59 - 2023-02-13 14:09 - 000000000 ____D C:\Users\34640\AppData\Local\Spotify 2024-04-25 13:19 - 2023-02-13 14:08 - 000000000 ____D C:\Users\34640\AppData\Roaming\Spotify 2024-04-24 21:52 - 2022-01-14 13:38 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2024-04-24 21:52 - 2022-01-14 13:38 - 000002053 _____ C:\Users\34640\OneDrive\Escritorio\Google Drive.lnk 2024-04-18 20:14 - 2022-01-14 20:04 - 000000000 ____D C:\Users\34640 2024-04-18 11:46 - 2023-10-13 11:15 - 000000000 ____D C:\Program Files\CCleaner 2024-04-18 09:52 - 2022-01-06 23:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-04-18 09:50 - 2022-01-14 14:35 - 000000000 ____D C:\Program Files\Microsoft Office 2024-04-09 11:59 - 2022-01-14 20:08 - 000000000 ___RD C:\Users\34640\OneDrive 2024-04-09 11:40 - 2022-01-06 22:36 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-04-09 11:39 - 2020-12-09 01:24 - 000000000 ____D C:\ProgramData\Package Cache 2024-04-09 11:37 - 2024-04-03 10:25 - 000000000 ____D C:\Program Files\Malwarebytes 2024-04-09 10:50 - 2022-01-06 22:29 - 000000000 ____D C:\WINDOWS\CbsTemp ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) ==================== Final de FRST.txt ========================