Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 06-06-2020 Ejecutado por Méndez (08-06-2020 00:20:50) Run:1 Ejecutado desde C:\Users\Méndez\Desktop Perfiles cargados: Méndez Modo de Inicio: Safe Mode (minimal) ============================================== fixlist contenido: ***************** CloseProcesses: HKLM\...\Run: [Revsoft Hotspot] => [X] HKLM-x32\...\RunOnce: [] => [X] HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricci�n <==== ATENCI�N HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\MountPoints2: {e10c2346-c657-11e8-bbc8-0021971ac4bb} - "F:\AutoRun.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-21] (Google LLC -> Google LLC) GroupPolicy: Restricci�n ? <==== ATENCI�N Task: {8CBC8EBF-079E-49DE-86F7-36F8E4A3FD80} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [491320 2020-05-12] (Bitdefender SRL -> Bitdefender) Task: {B7AC62A7-1EA3-4F30-A212-DCD75EA48885} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [X] S3 zkservice; "C:\Program Files (x86)\zksoft\marswifi\zkservice.exe" /service zkservice [X] S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] 2020-06-01 09:43 - 2020-06-03 03:32 - 000000696 _____ C:\Users\M�ndez\Desktop\ESET Online Scanner.lnk 2020-06-01 09:43 - 2020-06-01 09:43 - 000001452 _____ C:\Users\M�ndez\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2020-06-01 09:43 - 2020-06-01 09:43 - 000000000 ____D C:\Users\M�ndez\AppData\Local\ESET 2020-06-01 09:27 - 2020-06-01 09:27 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 2020-06-01 09:17 - 2020-06-01 09:22 - 014665312 _____ (ESET spol. s r.o.) C:\Users\M�ndez\Downloads\esetonlinescanner.exe 2020-05-26 21:58 - 2020-05-27 02:05 - 000000000 ____D C:\KVRT_Data 2020-05-26 14:06 - 2020-05-26 15:46 - 008485951 _____ C:\Users\M�ndez\Downloads\wzo50s3z.exe.opdownload 2020-05-26 13:05 - 2020-05-26 13:10 - 000295520 ____N (Kaspersky Lab ZAO) C:\Users\M�ndez\Downloads\salitykiller.exe 2020-05-26 13:05 - 2020-05-26 13:09 - 003448880 _____ C:\Users\M�ndez\Downloads\avg_remover_slt.exe 2020-05-26 15:22 - 2020-05-26 15:32 - 002774272 _____ C:\Users\M�ndez\Downloads\rmparite.exe 2020-05-26 12:58 - 2020-05-29 03:09 - 000000000 ____D C:\ProgramData\McAfee 2020-05-26 12:38 - 2020-05-26 12:56 - 005714640 _____ (McAfee, LLC) C:\Users\M�ndez\Downloads\mcafee_trial_setup_433.0207.3919_key.exe 2020-06-05 04:47 - 2018-10-15 14:06 - 000003658 _____ C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ning�n archivo ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Ning�n archivo ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ning�n archivo ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Ning�n archivo ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ning�n archivo AlternateDataStreams: C:\Windows\System32:tdsrset_i.gfc [5846] AlternateDataStreams: C:\Users\M�ndez\Datos de programa:fbd50e2f7662a5c33287ddc6e65ab5a1 [394] AlternateDataStreams: C:\Users\M�ndez\AppData\Roaming:fbd50e2f7662a5c33287ddc6e65ab5a1 [394] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [468] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot => "AlternateShell"="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\27711082.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\27711082.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" CMD: ipconfig /flushdns CMD: ipconfig /renew CMD: bitsadmin /reset /allusers CMD: netsh winsock reset CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state ON CMD: netsh int ipv4 reset CMD: netsh int ipv6 reset RemoveProxy: EmptyTemp: Hosts: ***************** Procesos cerrados correctamente. "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Revsoft Hotspot" => eliminado correctamente "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\" => no encontrado HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => eliminado correctamente HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e10c2346-c657-11e8-bbc8-0021971ac4bb} => eliminado correctamente HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente C:\Windows\system32\GroupPolicy\Machine => movido correctamente C:\Windows\system32\GroupPolicy\GPT.ini => movido correctamente C:\Windows\SysWOW64\GroupPolicy\GPT.ini => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8CBC8EBF-079E-49DE-86F7-36F8E4A3FD80}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CBC8EBF-079E-49DE-86F7-36F8E4A3FD80}" => eliminado correctamente C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B7AC62A7-1EA3-4F30-A212-DCD75EA48885}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7AC62A7-1EA3-4F30-A212-DCD75EA48885}" => eliminado correctamente C:\Windows\System32\Tasks\CreateExplorerShellUnelevatedTask => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask" => eliminado correctamente HKLM\System\CurrentControlSet\Services\WsAppService => eliminado correctamente WsAppService => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\zkservice => eliminado correctamente zkservice => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\cpuz143 => eliminado correctamente cpuz143 => servicio eliminado correctamente "C:\Users\M�ndez\Desktop\ESET Online Scanner.lnk" => no encontrado "C:\Users\M�ndez\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk" => no encontrado "C:\Users\M�ndez\AppData\Local\ESET" => no encontrado C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 => movido correctamente "C:\Users\M�ndez\Downloads\esetonlinescanner.exe" => no encontrado C:\KVRT_Data => movido correctamente "C:\Users\M�ndez\Downloads\wzo50s3z.exe.opdownload" => no encontrado "C:\Users\M�ndez\Downloads\salitykiller.exe" => no encontrado "C:\Users\M�ndez\Downloads\avg_remover_slt.exe" => no encontrado "C:\Users\M�ndez\Downloads\rmparite.exe" => no encontrado C:\ProgramData\McAfee => movido correctamente "C:\Users\M�ndez\Downloads\mcafee_trial_setup_433.0207.3919_key.exe" => no encontrado "C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask" => no encontrado HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => eliminado correctamente HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => eliminado correctamente HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => eliminado correctamente "HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => eliminado correctamente HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => eliminado correctamente HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => eliminado correctamente C:\Windows\System32 => ":tdsrset_i.gfc" ADS eliminado correctamente "C:\Users\M�ndez\Datos de programa" => ":fbd50e2f7662a5c33287ddc6e65ab5a1" ADS no encontrado. "C:\Users\M�ndez\AppData\Roaming" => ":fbd50e2f7662a5c33287ddc6e65ab5a1" ADS no encontrado. C:\Users\Public\Shared Files => ":VersionCache" ADS eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\\"Default"="" => valor restaurado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\\"AlternateShell"="cmd.exe" => valor restaurado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\27711082.sys => eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Network\27711082.sys => eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => eliminado correctamente HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS => eliminado correctamente ========= ipconfig /flushdns ========= Configuraci¢n IP de Windows No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n. ========= Final de CMD: ========= ========= ipconfig /renew ========= Configuraci¢n IP de Windows ========= Final de CMD: ========= ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 BITS administration utility. (C) Copyright Microsoft Corp. Unable to connect to BITS - 0x8007043c ========= Final de CMD: ========= ========= netsh winsock reset ========= El cat logo Winsock se restableci¢ correctamente. Debe reiniciar el equipo para completar el restablecimiento. ========= Final de CMD: ========= ========= netsh advfirewall reset ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est  ejecutando e intenta la solicitud de nuevo. ========= Final de CMD: ========= ========= netsh advfirewall set allprofiles state ON ========= Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est  ejecutando e intenta la solicitud de nuevo. ========= Final de CMD: ========= ========= netsh int ipv4 reset ========= No hay valores configurados por el usuario para restablecer. ========= Final de CMD: ========= ========= netsh int ipv6 reset ========= No hay valores configurados por el usuario para restablecer. ========= Final de CMD: ========= ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente "HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente "HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente ========= Final de RemoveProxy: ========= C:\Windows\System32\Drivers\etc\hosts => movido correctamente Hosts restaurado correctamente. =========== EmptyTemp: ========== BITS transfer queue => 22831104 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 129898380 B Java, Flash, Steam htmlcache => 30394261 B Windows/system/drivers => 15694657 B Edge => 33883 B Chrome => 6269080 B Firefox => 0 B Opera => 241680918 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 57580 B systemprofile32 => 57580 B LocalService => 298296 B NetworkService => 377180 B Méndez => 41292553 B RecycleBin => 104190842 B EmptyTemp: => 565.6 MB datos temporales eliminados. ================================ El sistema necesita reiniciarse. ==== Final de Fixlog 00:21:23 ====