Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 29-07-2020 Ejecutado por X (administrador) sobre PC (langchao langchao) (29-07-2020 22:59:46) Ejecutado desde C:\Users\X\Desktop Perfiles cargados: X Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Español (España, internacional) Internet Explorer Versión 11 (Navegador predeterminado: "C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe" -- "%1") Modo de Inicio: Normal Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <7> (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxtray.exe (IObit Information Technology -> IOBit) D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCAvSvc.exe (Logitech, Inc. -> Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Nitro Software, Inc. -> ) C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe (Nitro Software, Inc. -> Nitro Software, Inc.) C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [Archivo no firmado] C:\ProgramData\SosVirus\UsbFix\Modules\UsbFixMonitor.exe (Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [Archivo no firmado] C:\ProgramData\SosVirus\UsbFix\UsbFix.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [BCSSync] => D:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3536645590-2687371494-3055786711-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [29262520 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3536645590-2687371494-3055786711-1000\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe [2120872 2020-07-28] (Brave Software, Inc. -> Brave Software, Inc.) HKU\S-1-5-21-3536645590-2687371494-3055786711-1000\...\MountPoints2: {da28ccf6-ff34-11e9-8c03-e06995e7a5f2} - F:\HiSuiteDownLoader.exe HKLM\...\Windows x64\Print Processors\Canon MP280 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAA.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MP280 series: C:\Windows\system32\CNMLMAA.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Nitro PDF Port Monitor: C:\Windows\system32\nitrolocalmon10.dll [31896 2016-07-22] (Nitro Software, Inc. -> Nitro Software, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\Installer\chrmstp.exe [2020-07-27] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\84.1.11.104\Installer\chrmstp.exe [2020-07-28] (Brave Software, Inc.) [Archivo no firmado] ==================== Tareas programadas (Lista blanca) ============ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {13A62D6B-8D7A-4897-9DBF-33D51D07EC4F} - System32\Tasks\{3979F788-7420-4FCA-849D-8C3220F7FF19} => D:\Alfredo\juegos\CHESS.EXE [73328 1990-09-23] () [Archivo no firmado] Task: {149A5EA5-353B-4C17-BCC3-BE032D0C6A41} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\X\Downloads\ESETOnlineScanner_ESL.exe [14562400 2020-07-27] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {15CD5816-3D89-4662-BD11-B24BC242305D} - \AutoKMS -> Ningún archivo <==== ATENCIÓN Task: {3B67BBEC-A262-46D1-AD1B-AD4BED061086} - System32\Tasks\UsbFix Boot Scan => C:\ProgramData\SosVirus\UsbFix\UsbFix.exe [2053240 2020-03-23] (Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [Archivo no firmado] Task: {46A4824A-934B-49AB-B944-A48BE9E028AC} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {5432AE1A-CA9C-4827-B25B-10036A7245A5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24910520 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) Task: {807B6049-61F1-4F10-8C0B-9C28C5CEAAC1} - System32\Tasks\{81F67DA1-C9DC-434A-8912-B22112E9B476} => D:\Alfredo\juegos\CHESS.EXE [73328 1990-09-23] () [Archivo no firmado] Task: {8637FB17-6669-4C8D-86D4-30858F2E4CDB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-05-21] (Google Inc -> Google Inc.) Task: {8E8EDD12-DA05-4A61-BB1D-278F343D476A} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {97958BD2-5C03-48D5-977C-D297F1DF666C} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\X\Downloads\ESETOnlineScanner_ESL.exe [14562400 2020-07-27] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {9F9F8A1F-A099-4FBE-B379-2299AEAFDE30} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) Task: {A96815B0-FDEC-4E29-8A00-068D27A1F458} - System32\Tasks\UsbFix Monitor => C:\ProgramData\SosVirus\UsbFix\Modules\UsbFixMonitor.exe [1239160 2020-03-23] (Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [Archivo no firmado] Task: {C285AB5E-9566-4040-8EDE-33E6BEE9646D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-05-21] (Google Inc -> Google Inc.) Task: {C2CA068D-0576-4E4C-A777-F419027121C2} - System32\Tasks\{0A35988A-887C-4DEA-BCF2-860406037238} => D:\Alfredo\juegos\CHESS.EXE [73328 1990-09-23] () [Archivo no firmado] Task: {D2613617-0A92-4973-A4F6-F4321089C9F1} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {EBED742A-164E-4B9A-9F37-2D936235415D} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [124112 2020-07-18] (Mozilla Corporation -> Mozilla Foundation) (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{700CE69F-7BD6-4BA2-A4C5-6E79499D7FC5}: [NameServer] 8.8.8.8,8.4.4.4 Tcpip\..\Interfaces\{700CE69F-7BD6-4BA2-A4C5-6E79499D7FC5}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{DA342F50-6AC8-41E5-8495-62EE0E2B10CC}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> D:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2020-07-26] (IObit Information Technology -> IObit) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== Edge DefaultProfile: Default Edge Profile: C:\Users\X\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-26] Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 FireFox: ======== FF DefaultProfile: mbcnpivi.default FF ProfilePath: C:\Users\X\AppData\Roaming\Mozilla\Firefox\Profiles\mbcnpivi.default [2020-07-29] FF Notifications: Mozilla\Firefox\Profiles\mbcnpivi.default -> hxxps://www.youtube.com FF Extension: (Advanced SystemCare Surfing Protection) - C:\Users\X\AppData\Roaming\Mozilla\Firefox\Profiles\mbcnpivi.default\Extensions\ascsurfingprotection@iobit.com [2020-07-26] [Heredado] [no firmado] FF Extension: (Traductor de google) - C:\Users\X\AppData\Roaming\Mozilla\Firefox\Profiles\mbcnpivi.default\Extensions\{abd0e324-7120-3dcd-3eb0-9f1a9ec3c003}.xpi [2019-07-21] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\X\AppData\Roaming\Mozilla\Firefox\Profiles\mbcnpivi.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2020-07-14] FF Extension: (Video DownloadHelper) - C:\Users\X\AppData\Roaming\Mozilla\Firefox\Profiles\mbcnpivi.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-04-02] FF Plugin: @microsoft.com/GENUINE -> disabled [Ningún archivo] FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> D:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> D:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> D:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Ningún archivo] FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> D:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 10\npnitromozilla.dll [2016-07-22] (Nitro Software, Inc. -> Nitro PDF) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin HKU\S-1-5-21-3536645590-2687371494-3055786711-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\X\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-23] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\X\AppData\Local\Google\Chrome\User Data\Default [2020-07-29] CHR DownloadDir: D:\Alfredo\Descargas CHR Notifications: Default -> hxxps://dolartoday.com; hxxps://laverdadnoticias.com; hxxps://lesbianadepelicula.com; hxxps://mui.today; hxxps://tvplusnewtab.com; hxxps://www.pinterest.es CHR Extension: (Presentaciones) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-22] CHR Extension: (Documentos) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-22] CHR Extension: (Google Drive) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-22] CHR Extension: (YouTube) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-22] CHR Extension: (Búsqueda de Google) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2019-04-22] CHR Extension: (Hojas de cálculo) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-22] CHR Extension: (Documentos de Google sin conexión) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-29] CHR Extension: (ZIP Extractor) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmfcakoljjhncfphlflcedhgogfhpbcd [2020-04-22] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-22] CHR Extension: (Chrome Media Router) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-23] CHR Profile: C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-07-29] CHR Extension: (Presentaciones) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-05-08] CHR Extension: (Documentos) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2020-05-08] CHR Extension: (Google Drive) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-05-08] CHR Extension: (YouTube) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-05-08] CHR Extension: (Slinky Elegante) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2020-07-22] CHR Extension: (Hojas de cálculo) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-05-08] CHR Extension: (Documentos de Google sin conexión) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-15] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-05-08] CHR Extension: (Gmail) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-05-08] CHR Extension: (Chrome Media Router) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-22] CHR Profile: C:\Users\X\AppData\Local\Google\Chrome\User Data\System Profile [2020-06-25] ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 ASCAntivirusSrv; D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ascavsvc.exe [649024 2014-03-31] (IObit Information Technology -> IOBit) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-08] (Brave Software, Inc. -> BraveSoftware Inc.) S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2154304 2014-03-31] (IObit Information Technology -> IObit) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6970968 2020-07-26] (Malwarebytes Inc -> Malwarebytes) S3 Microsoft SharePoint Workspace Audit Service; D:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [30814400 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 NitroDriverReadSpool10; C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe [327320 2016-07-22] (Nitro Software, Inc. -> Nitro Software, Inc.) R2 NitroUpdateService; C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe [417944 2016-07-22] (Nitro Software, Inc. -> ) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R3 CAXHWBS2; C:\Windows\System32\DRIVERS\CAXHWBS2.sys [411136 2009-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Archivo no firmado] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Archivo no firmado] R3 GeneStor; C:\Windows\System32\DRIVERS\GeneStor.sys [215608 2016-08-22] (GENESYS LOGIC, INC. -> GenesysLogic) R3 HSF_DPV; C:\Windows\System32\DRIVERS\CAX_DPV.sys [1486848 2009-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [216056 2020-07-26] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-07-26] (Malwarebytes Inc -> Malwarebytes) R2 mdmxsdk; C:\Windows\System32\DRIVERS\mdmxsdk.sys [17024 2006-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Conexant) R3 MODEMCSA; C:\Windows\system32\drivers\MODEMCSA.sys [24064 2009-07-13] (Microsoft Windows -> Microsoft Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R1 MpKslDrv; C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C9C1E2E0-825D-470B-B5E5-CB9E9F21BEA7}\MpKslDrv.sys [73952 2020-07-29] (Microsoft Windows -> Microsoft Corporation) R3 netr28x; C:\Windows\System32\DRIVERS\netr28x.sys [620544 2009-06-10] (Microsoft Windows -> Ralink Technology, Corp.) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) S3 SrvHsfPCI; C:\Windows\System32\DRIVERS\VSTBS26.SYS [411136 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) S3 SrvHsfV92; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) S3 SrvHsfWinac; C:\Windows\System32\DRIVERS\VSTCNXT6.SYS [740864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) R3 winachsf; C:\Windows\System32\DRIVERS\CAX_CNXT.sys [740864 2009-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems, Inc.) S3 RTL8187; system32\DRIVERS\rtl8187.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) =================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2020-07-29 22:59 - 2020-07-29 23:00 - 000021274 _____ C:\Users\X\Desktop\FRST.txt 2020-07-29 22:57 - 2020-07-29 22:42 - 002296832 _____ (Farbar) C:\Users\X\Desktop\FRST64.exe 2020-07-29 22:42 - 2020-07-29 22:42 - 000000000 ____D C:\Users\X\Downloads\FRST-OlderVersion 2020-07-29 00:11 - 2020-07-29 23:00 - 000000000 ____D C:\FRST 2020-07-29 00:10 - 2020-07-29 22:42 - 002296832 _____ (Farbar) C:\Users\X\Downloads\FRST64.exe 2020-07-28 17:36 - 2020-07-28 17:47 - 000000000 ____D C:\Users\X\Downloads\Electronica 2020-07-28 00:39 - 2020-07-28 08:30 - 000000000 ____D C:\KVRT_Data 2020-07-28 00:18 - 2020-07-28 00:36 - 182975376 _____ (AO Kaspersky Lab) C:\Users\X\Downloads\KVRT.exe 2020-07-28 00:04 - 2020-07-28 00:39 - 000003688 _____ C:\Windows\system32\Tasks\EOSv3 Scheduler onLogOn 2020-07-28 00:04 - 2020-07-28 00:39 - 000003248 _____ C:\Windows\system32\Tasks\EOSv3 Scheduler onTime 2020-07-27 21:46 - 2020-07-28 00:08 - 000000748 _____ C:\Users\X\Desktop\ESET Online Scanner.lnk 2020-07-27 21:46 - 2020-07-27 21:46 - 000000000 ____D C:\Users\X\AppData\Local\ESET 2020-07-27 21:46 - 2020-07-27 21:46 - 000000000 ____D C:\Users\X\AppData\Local\CrashDumps 2020-07-27 21:35 - 2020-07-27 21:36 - 014562400 _____ (ESET spol. s r.o.) C:\Users\X\Downloads\ESETOnlineScanner_ESL.exe 2020-07-27 20:46 - 2020-07-29 21:04 - 000005412 _____ C:\Users\X\Desktop\UsbFix_Report.txt 2020-07-27 20:43 - 2020-07-29 21:04 - 000001891 _____ C:\Users\Public\Desktop\UsbFix Anti-Malware.lnk 2020-07-27 20:43 - 2020-07-29 21:04 - 000001891 _____ C:\ProgramData\Desktop\UsbFix Anti-Malware.lnk 2020-07-26 23:38 - 2020-07-27 21:01 - 000000000 ____D C:\Users\X\AppData\LocalLow\IGDump 2020-07-26 23:35 - 2020-07-27 20:44 - 000000165 _____ C:\Users\X\Desktop\Tema Spyware.url 2020-07-26 23:28 - 2020-07-28 00:03 - 000000000 ____D C:\Users\X\Desktop\Reportes a enviar 2020-07-26 23:20 - 2020-07-27 00:50 - 000000000 ____D C:\Program Files (x86)\UsbFix 2020-07-26 23:19 - 2020-07-26 23:19 - 000003200 _____ C:\Windows\system32\Tasks\UsbFix Monitor 2020-07-26 23:19 - 2020-07-26 23:19 - 000003198 _____ C:\Windows\system32\Tasks\UsbFix Boot Scan 2020-07-26 23:18 - 2020-07-26 23:18 - 000001891 _____ C:\Users\X\Desktop\UsbFix Anti-Malware.lnk 2020-07-26 23:15 - 2020-07-26 23:15 - 000000338 _____ C:\Users\X\Documents\Carpetas de kms.txt 2020-07-26 23:03 - 2020-07-26 23:03 - 000000000 ____D C:\ProgramData\SosVirus 2020-07-26 13:54 - 2020-07-26 13:59 - 028064096 _____ (Piriform Software Ltd) C:\Users\X\Downloads\ccsetup569.exe 2020-07-26 11:53 - 2020-07-26 11:55 - 009158192 _____ C:\Users\X\Downloads\MB-SupportTool.exe 2020-07-26 10:40 - 2020-07-26 10:40 - 000216056 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2020-07-26 10:30 - 2020-07-26 10:30 - 000000000 ____D C:\Malwarebytes 2020-07-26 10:25 - 2020-07-26 10:25 - 000000000 ____D C:\Users\X\Downloads\Descarga Iso Microsoft 2020-07-26 10:23 - 2020-07-26 10:23 - 000691550 _____ C:\Users\X\Downloads\MIWODT816.rar 2020-07-26 10:16 - 2020-07-26 10:16 - 001988280 _____ (Malwarebytes) C:\Users\X\Downloads\MBSetup-009996.009996-consumer.exe 2020-07-26 10:15 - 2020-07-26 10:16 - 004870480 _____ (SOSVirus) C:\Users\X\Downloads\UsbFix_2020.exe 2020-07-26 10:12 - 2020-07-26 10:40 - 000001960 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-07-26 10:12 - 2020-07-26 10:40 - 000001948 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2020-07-26 10:12 - 2020-07-26 10:40 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2020-07-26 10:12 - 2020-07-26 10:12 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2020-07-26 10:11 - 2020-07-26 10:38 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2020-07-26 09:27 - 2020-07-26 09:27 - 000000000 ____D C:\Users\X\AppData\Roaming\ProductData 2020-07-26 09:26 - 2020-07-26 09:26 - 000000879 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk 2020-07-26 09:26 - 2020-07-26 09:26 - 000000879 _____ C:\ProgramData\Desktop\IObit Uninstaller.lnk 2020-07-26 09:26 - 2020-07-26 09:26 - 000000000 ____D C:\Users\X\AppData\Roaming\Apple Computer 2020-07-26 09:26 - 2020-07-26 09:26 - 000000000 ____D C:\Users\X\AppData\LocalLow\IObit 2020-07-26 09:25 - 2020-07-26 09:27 - 000000000 ____D C:\ProgramData\ProductData 2020-07-26 09:25 - 2020-07-26 09:27 - 000000000 ____D C:\ProgramData\IObit 2020-07-26 09:25 - 2020-07-26 09:26 - 000000000 ____D C:\Users\X\AppData\Roaming\IObit 2020-07-26 09:25 - 2020-07-26 09:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2020-07-26 09:25 - 2020-07-26 09:26 - 000000000 ____D C:\Program Files (x86)\IObit 2020-07-26 09:25 - 2020-07-26 09:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 7 2020-07-26 09:25 - 2020-07-26 09:25 - 000000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2020-07-26 09:25 - 2020-07-26 09:25 - 000000000 ____D C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690} 2020-07-23 20:31 - 2020-07-23 20:40 - 000009977 _____ C:\Users\X\Documents\Catering sushi.xlsx 2020-07-23 17:42 - 2020-07-23 17:42 - 000027095 _____ C:\Users\X\Downloads\Relación de Ingresos (Proyecto Pozo).xlsx 2020-07-23 14:10 - 2020-07-23 14:10 - 000103430 _____ C:\Users\X\Downloads\Recibo_Transferencia_GALIAO_PETRILO__MARIA_MARGARITA (3).pdf 2020-07-23 14:07 - 2020-07-23 14:07 - 000103434 _____ C:\Users\X\Downloads\Recibo_Transferencia_GALIAO_PETRILO__MARIA_MARGARITA (2).pdf 2020-07-23 14:05 - 2020-07-23 14:05 - 000103456 _____ C:\Users\X\Downloads\Recibo_Transferencia_GALIAO_PETRILO__MARIA_MARGARITA (1).pdf 2020-07-23 13:59 - 2020-07-23 13:59 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2020-07-23 13:45 - 2020-07-23 13:45 - 000030140 _____ C:\Users\X\Downloads\Cuadro de Divisas jhosibel (1) (1).xlsx 2020-07-23 13:44 - 2020-07-23 13:44 - 000030140 _____ C:\Users\X\Downloads\Cuadro de Divisas jhosibel (1).xlsx 2020-07-23 12:43 - 2020-07-23 12:43 - 000000165 ____H C:\Users\X\Documents\~$Cuadro de Divisas jhosibel (1).xlsx 2020-07-22 23:28 - 2020-07-22 23:29 - 000000000 ____D C:\Users\X\AppData\Local\krita 2020-07-22 23:28 - 2020-07-22 23:28 - 000000000 ____D C:\Users\X\AppData\Roaming\krita 2020-07-22 20:54 - 2020-07-22 20:54 - 000084148 _____ C:\Users\X\Downloads\terminos y condiciones SYS.pdf 2020-07-22 20:54 - 2020-07-22 20:54 - 000084148 _____ C:\Users\X\Downloads\terminos y condiciones SYS (1).pdf 2020-07-22 12:22 - 2020-07-22 12:23 - 000207061 _____ C:\Users\X\Documents\Relacion de Ingresos Condominio Colinas de San Diego II nuevo.xlsx 2020-07-22 12:21 - 2020-07-22 12:22 - 000207061 _____ C:\Users\X\Documents\Relacion de Ingresos Condominio Colinas de San Diego II..xlsx 2020-07-18 19:35 - 2020-07-27 20:35 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-07-18 17:32 - 2020-07-18 18:57 - 000001024 ____H C:\SYSTAG.BIN 2020-07-18 17:31 - 2020-07-18 19:00 - 000000150 _____ C:\Windows\SysWOW64\winsevr.dat 2020-07-18 17:31 - 2020-07-18 18:57 - 000000208 _____ C:\Windows\SysWOW64\AbBakConfig.dat 2020-07-18 17:31 - 2020-07-18 17:31 - 000000000 ____D C:\ProgramData\Aomei 2020-07-18 17:30 - 2017-09-01 18:12 - 000038320 _____ C:\Windows\system32\amwrtdrv.sys 2020-07-18 17:30 - 2016-12-21 22:54 - 000051120 _____ C:\Windows\system32\ambakdrv.sys 2020-07-18 17:30 - 2016-12-21 22:52 - 000171952 _____ C:\Windows\system32\ammntdrv.sys 2020-07-18 17:29 - 2020-07-18 17:32 - 000000000 ____D C:\ProgramData\AomeiBR 2020-07-18 12:02 - 2020-07-18 14:46 - 000000000 ____D C:\Users\X\Downloads\Clonar Memorias 2020-07-16 11:31 - 2020-07-16 11:31 - 000172344 _____ C:\Users\X\Documents\Relacion de Ingresos Cond Colinas de San Diego II (Continuacion) (1).xlsx 2020-07-13 23:25 - 2014-02-02 16:14 - 036892365 _____ C:\Users\X\Downloads\Microsoft Toolkit.zip 2020-07-08 17:31 - 2020-07-08 17:31 - 000000000 ____D C:\Users\X\Downloads\VictoriaForWindows 2020-07-08 10:49 - 2020-07-08 13:12 - 000044714 _____ C:\Users\X\Documents\deuda condominio colinas de san diego al 08 de Julio 2020 (Autoguardado).xlsx 2020-07-07 13:20 - 2020-07-07 14:02 - 000222049 _____ C:\Users\X\Documents\Encuesta SAREN 2.0.xlsx 2020-07-06 10:41 - 2020-07-06 13:10 - 000000165 ____H C:\Users\X\Documents\~$recibo de condominio mes de Julio.xlsx 2020-07-06 09:37 - 2020-07-06 09:37 - 000000165 ____H C:\Users\X\Documents\~$Relacion de Ingresos Condominio Colinas de San Diego II.xlsx 2020-07-05 20:18 - 2020-07-06 09:35 - 000042281 _____ C:\Users\X\Documents\recibo de condominio mes de Julio sin reverso de desmalezadora.xlsx 2020-07-05 19:35 - 2020-07-06 09:36 - 000042753 _____ C:\Users\X\Documents\recibo de condominio mes de Julio.xlsx 2020-07-04 09:09 - 2020-07-04 09:09 - 000097594 _____ C:\Users\X\Documents\Comprobante_de_Transaccion.pdf 2020-06-30 03:17 - 2020-07-25 08:31 - 000002225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-06-30 03:17 - 2020-07-25 08:31 - 000002184 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2020-06-30 03:17 - 2020-07-25 08:31 - 000002184 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2020-06-30 03:16 - 2020-07-11 23:23 - 000003550 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-06-30 03:16 - 2020-07-11 23:23 - 000003422 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2020-07-29 22:13 - 2019-12-09 17:13 - 000000000 ____D C:\Users\X\Documents\Aura 2020-07-29 21:55 - 2020-06-15 13:06 - 000000000 ____D C:\Users\X\Downloads\Moya 2020-07-29 16:43 - 2019-04-21 10:14 - 000003938 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{B549C3FD-E719-4258-A689-A87A419EFF96} 2020-07-29 10:17 - 2009-07-14 00:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-07-29 10:17 - 2009-07-14 00:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-07-28 13:39 - 2019-08-08 17:34 - 000002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2020-07-28 08:26 - 2009-07-14 01:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-07-28 08:20 - 2019-11-17 18:55 - 000000000 ____D C:\Windows\AutoKMS 2020-07-27 20:50 - 2019-05-21 08:15 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-07-27 20:35 - 2019-05-03 06:03 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-07-26 14:06 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\inf 2020-07-26 14:01 - 2019-05-21 08:16 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2020-07-26 14:01 - 2019-05-21 08:16 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-07-26 14:01 - 2019-05-21 08:16 - 000000822 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-07-26 10:06 - 2019-04-20 20:18 - 000000000 ____D C:\Windows\Panther 2020-07-23 15:35 - 2019-05-03 06:03 - 000000000 ____D C:\Users\X\AppData\LocalLow\Mozilla 2020-07-23 13:43 - 2020-05-27 20:56 - 000030140 _____ C:\Users\X\Documents\Cuadro de Divisas jhosibel (1).xlsx 2020-07-22 17:32 - 2020-05-08 13:09 - 000002349 _____ C:\Users\X\Desktop\Persona 1 - Chrome.lnk 2020-07-22 12:20 - 2020-02-02 17:48 - 000207056 _____ C:\Users\X\Documents\Relacion de Ingresos Condominio Colinas de San Diego II.xlsx 2020-07-18 17:07 - 2019-05-01 08:43 - 000000000 ____D C:\Users\X\AppData\Roaming\vlc 2020-07-18 16:15 - 2019-04-21 02:01 - 000000000 ____D C:\Users\X 2020-07-18 14:53 - 2019-05-01 08:09 - 000000748 _____ C:\Users\Public\Desktop\VLC media player.lnk 2020-07-18 14:53 - 2019-05-01 08:09 - 000000748 _____ C:\ProgramData\Desktop\VLC media player.lnk 2020-07-18 14:46 - 2009-07-14 05:31 - 000747396 _____ C:\Windows\system32\perfh00A.dat 2020-07-18 14:46 - 2009-07-14 05:31 - 000158868 _____ C:\Windows\system32\perfc00A.dat 2020-07-18 14:46 - 2009-07-14 01:13 - 001676890 _____ C:\Windows\system32\PerfStringBackup.INI 2020-07-16 10:57 - 2020-03-17 20:46 - 000000000 ____D C:\USB 2020-07-05 20:00 - 2020-05-07 10:26 - 000041800 _____ C:\Users\X\Documents\recibo de condominio mes de Mayo.xlsx 2020-07-04 09:09 - 2020-03-18 09:31 - 000000000 ____D C:\Users\X\Downloads\antivirus 2020-07-03 10:12 - 2020-04-30 19:13 - 000172344 _____ C:\Users\X\Documents\Relacion de Ingresos Cond Colinas de San Diego II (Continuacion).xlsx 2020-06-29 17:07 - 2020-02-24 16:04 - 000044631 _____ C:\Users\X\Documents\deuda condominio colinas de san diego al 28 de Febrero 2020 (Autoguardado).xlsx ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) LastRegBack: 2020-07-26 00:57 ==================== Final de FRST.txt ========================