Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 28-04-2026 Ejecutado por TESTER (02-05-2026 21:45:47) Ejecutado desde C:\Users\TESTER\Desktop Microsoft Windows 11 Pro Versión 25H2 26200.8246 (X64) (2026-03-08 21:06:24) Modo de Inicio: Normal ========================================================== ==================== Cuentas: ============================= (Si una entrada es incluida en el fixlist, será eliminada.) Administrador (S-1-5-21-1396925160-3243919813-2678170802-500 - Administrators - Disabled) DefaultAccount (S-1-5-21-1396925160-3243919813-2678170802-503 - Limited - Disabled) Invitado (S-1-5-21-1396925160-3243919813-2678170802-501 - Limited - Disabled) TESTER (S-1-5-21-1396925160-3243919813-2678170802-1001 - Administrators - Enabled) => C:\Users\TESTER WDAGUtilityAccount (S-1-5-21-1396925160-3243919813-2678170802-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Malwarebytes (Disabled - Up to date) {A537353A-1D6A-F6B5-9153-CE1CF80FBE66} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated) Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 9.1.0.52 - Adobe Inc.) Adobe InDesign 2024 (HKLM-x32\...\IDSN_19_2) (Version: 19.2 - Adobe Inc.) Adobe Photoshop 2025 (HKLM-x32\...\PHSP_26_2) (Version: 26.2.0.140 - Adobe Inc.) Autofirma (HKLM\...\Autofirma) (Version: 1.9 - Gobierno de España) Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 147.1.89.145 - Los creadores de Brave) Comet (HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\Perplexity Comet) (Version: 145.2.7632.5936 - Los creadores de Comet) Corel Graphics - Windows Shell Extension (HKLM\...\_{A8A07E84-56B1-43CF-BBF0-5AE06D424DC8}) (Version: 26.1.0.143 - Corel Corporation) Corel Graphics - Windows Shell Extension (HKLM\...\{A8A07E84-56B1-43CF-BBF0-5AE06D424DC8}) (Version: 26.1.143 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{213FD8FE-CBDC-4339-A188-268FD6D6D6BE}) (Version: 26.1.143 - Corel Corporation) Hidden CorelDRAW Technical Suite 2025 - IPM (x64) (HKLM\...\{463A5447-631A-4A50-95A1-36770503FF13}) (Version: 26.2 - Corel Corporation) Hidden CorelDRAW Technical Suite 2025 - IPM Content (x64) (HKLM\...\{363F5928-07C0-4A23-98C6-13BFBD8BF95A}) (Version: 26.1 - Corel Corporation) Hidden CorelDRAW Technical Suite 2025 - IPM Lattice (x64) (HKLM\...\{56F5B699-51FA-473B-A508-6371B8C8F6D5}) (Version: 26.1 - Corel Corporation) Hidden CorelDRAW Technical Suite 2025 - Writing Tools (x64) (HKLM\...\{3206C3E5-B9A7-4AEF-ADFC-779891E413E0}) (Version: 26.2 - Corel Corporation) Hidden CorelDRAW Technical Suite 2025 (HKLM\...\_{00DC86AC-FBF3-4454-ACCA-5F2D11263973}) (Version: 26.2.0.170 - Corel Corporation) Ghostscript GPL 10.03.1 (Msi Setup) (HKLM\...\_{476FD34A-6D96-497A-9B55-63F3A9A8B3C0}) (Version: 10.03.1 - Corel Corporation) Ghostscript GPL 10.03.1 (Msi Setup) (HKLM\...\{476FD34A-6D96-497A-9B55-63F3A9A8B3C0}) (Version: 10.03.1 - Corel Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 147.0.7727.138 - Google LLC) HP Support Solutions Framework (HKLM-x32\...\{F471E206-0922-42B5-9C03-B16F6AD52CA5}) (Version: 13.0.1.131 - HP Inc.) Java 8 Update 491 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180491F0}) (Version: 8.0.4910.10 - Oracle Corporation) Java 8 Update 491 (HKLM-x32\...\{71024AE4-039E-4CA4-87B4-2F32180491F0}) (Version: 8.0.4910.10 - Oracle Corporation) Malwarebytes version 5.5.5.253 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.5.253 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 147.0.3912.98 - Microsoft Corporation) Microsoft Office LTSC Professional Plus 2021 - es-es (HKLM\...\ProPlus2021Volume - es-es) (Version: 16.0.14334.20624 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.063.0405.0002 - Microsoft Corporation) Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{34A00A5E-1987-483E-8110-31707461867D}) (Version: 7.1.11.35 - Microsoft Corporation) Hidden Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{7C93FEF0-A7F3-4C8C-AB5F-B3398C300281}) (Version: 7.1.11.35 - Microsoft Corporation) Hidden Microsoft Visual Basic for Applications 7.1 (x64) Spanish (HKLM\...\{5C6A1DA8-EFFD-426F-8227-F8DB284FC2F4}) (Version: 7.1.11.35 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{2749c485-3a8b-4533-92ff-7cf6e8221cff}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{9D6CE289-E12C-38BB-9999-E2377EC118B7}) (Version: 16.0.28801 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{7C931D41-F302-3494-868C-320A4F4DD9F9}) (Version: 16.0.28801 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2022 (HKLM-x32\...\{a4853a2f-13f3-4bd6-8ac3-436a344b1da9}) (Version: 17.0.35906 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2022 x64 Hosting Support (HKLM\...\{E2222502-47CF-3ABF-9A19-220ECE142A95}) (Version: 17.0.35906 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2022 x86 Hosting Support (HKLM-x32\...\{D9278B1D-F0D4-357A-8B23-9A36A195EC9A}) (Version: 17.0.35906 - Microsoft Corporation) Hidden NVIDIA App 11.0.6.383 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.6.383 - NVIDIA Corporation) NVIDIA FrameView SDK 1.5.11821.36727370 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11821.36727370 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14334.20624 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14334.20624 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.14334.20522 - Microsoft Corporation) Hidden Quick Share (HKLM\...\{5195F336-8FA4-43BE-9E57-EFE4435E1346}) (Version: 1.0.2555.1 - Google LLC) Spotify (HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\Spotify) (Version: 1.2.88.483.g8aa8628e - Spotify AB) Telegram Desktop (HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.6.2 - Telegram FZ-LLC) UXP WebView Support (HKLM-x32\...\UXPW_1_2_0) (Version: 1.2.0 - Adobe Inc.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.23 - VideoLAN) WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 147.0.3912.98 - Microsoft Corporation) Hidden WhisperTranscribe 2.1.1 (HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\b9e60ef3-ff00-5475-9205-02aded9affb1) (Version: 2.1.1 - WhisperTranscribe B.V.) WinRAR 7.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.20.0 - win.rar GmbH) XVL Player / XVL Player Pro 64-bit Edition (HKLM-x32\...\{936575FE-E49B-4CE9-9934-0329727476C8}) (Version: 24.0.1 - Lattice Technology) XVL Studio Corel Edition (HKLM-x32\...\{59B69063-9023-7DFB-DD6A-64D67A319AA6}) (Version: 12.0 - Lattice Technology) Packages: ========= Affinity -> C:\Program Files\WindowsApps\Canva.Affinity_3.1.0.4231_x64__8a0j1tnjnt4a4 [2026-04-29] (Canva) AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2026-04-29] (INTEL CORP) [Startup Task] B&O Audio Control -> C:\Program Files\WindowsApps\AD2F1837.BOAudioControl_1.47.308.0_x64__v10z8vjag6ke6 [2026-04-29] (HP Inc.) Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-04-30] () Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2026-04-29] (Microsoft Corp.) NVIDIA Control Panel -> C:\Program Files\WindowsApps\nvidiacorp.nvidiacontrolpanel_8.1.969.0_x64__56jybvy8sckqj [2026-04-29] (NVIDIA Corp.) Quick Share -> C:\Program Files\Google\NearbyShare [2026-04-13] (Google LLC) WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2615.101.0_x64__cv1g1gvanyjgm [2026-04-29] (WhatsApp Inc.) [Startup Task] WhatsApp Beta -> C:\Program Files\WindowsApps\5319275A.51895FA4EA97F_2.2617.100.0_x64__cv1g1gvanyjgm [2026-04-30] (WhatsApp Inc.) [Startup Task] WinAppRuntime.Main.1.8 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.8_8000.836.2153.0_x64__8wekyb3d8bbwe [2026-04-29] (Microsoft Corp.) WinRAR -> C:\Program Files\WinRAR [2026-03-09] (win.rar GmbH) ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{18A68F64-72DD-42CE-A75D-EDBDAC226F5D}\localserver32 -> C:\Users\TESTER\AppData\Roaming\Spotify\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{5F86DC52-D653-4CFF-BAC7-C3A406AF8946}\localserver32 -> C:\Users\TESTER\AppData\Roaming\Spotify\spotify.exe (Spotify AB -> Spotify Ltd) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{7ADFC10A-CB1B-4D95-A6D2-143E62F40889}\localserver32 -> C:\Users\TESTER\AppData\Local\Perplexity\Comet\Application\145.2.7632.5936\notification_helper.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{7F4BA97A-5390-42B8-B253-E431863F5D7B} -> [HONOR 400 Lite] => C:\Users\TESTER\CrossDevice\HONOR 400 Lite (1) [2026-03-27 00:33] CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{82592160-47D6-56C6-9D90-1918D4CE4FE7}\localserver32 -> C:\Users\TESTER\AppData\Local\Perplexity\CometUpdater\145.2.7632.4583\updater.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{9F470E6B-6C11-5A27-929F-419E3D3A22DE}\localserver32 -> C:\Users\TESTER\AppData\Local\Perplexity\CometUpdater\145.2.7632.4583\updater.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{C7D5E9F3-6B4A-4C5D-8E9F-7A8B9C6D5E9F}\localserver32 -> C:\Users\TESTER\AppData\Local\Perplexity\CometUpdater\145.2.7632.4583\updater.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1396925160-3243919813-2678170802-1001_Classes\CLSID\{F9A4B8C2-3E6D-4F2A-9B8C-4D7E6F5A9B8C}\localserver32 -> C:\Users\TESTER\AppData\Local\Perplexity\CometUpdater\145.2.7632.4583\updater.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2026-03-11] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2026-03-11] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2026-03-11] (Adobe Inc. -> ) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2026-03-11] (Adobe Inc. -> ) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-04-30] (Malwarebytes Inc -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.063.0405.0002\FileSyncShell64.dll [2026-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [NvAppDesktopContext] -> {F2E8B4A1-9C7D-4F6E-B3A5-8D2C1F4E9B7A} => C:\Program Files\NVIDIA Corporation\NVIDIA App\NvCpl\nvui.dll [2026-01-16] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvhmsi.inf_amd64_90f4e11755579147\nvshext.dll [2025-12-31] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2026-03-11] (Adobe Inc. -> ) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-04-30] (Malwarebytes Inc -> Malwarebytes) ==================== Codecs (Lista blanca) ==================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Drivers32: [MidisrvTransferComplete] => 1 HKLM\...\Drivers32: [midi1] => C:\WINDOWS\system32\wdmaud2.drv [143360 2026-04-14] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [94720 2026-04-14] (Microsoft Windows -> Microsoft Corporation) ==================== Accesos directos & WMI ======================== ==================== Módulos cargados (Lista blanca) ============= 2020-03-06 07:11 - 2020-03-06 07:11 - 000010240 _____ () [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\es_es\AcroTray.esp 2020-03-06 07:11 - 2020-03-06 07:11 - 000241664 _____ () [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\es_ES\Adobe Send\SendAsLinkX.ESP 2020-03-06 07:11 - 2020-03-06 07:11 - 000048128 _____ () [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\es_es\PDFMaker\PDFMOutlookAddin.ESP 2020-03-06 07:11 - 2020-03-06 07:11 - 000021504 _____ (Adobe Systems Inc.) [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\es_es\Acrobat Elements\ContextMenuShim64.esp 2020-03-06 07:11 - 2020-03-06 07:11 - 000056320 _____ (Adobe Systems Incorporated) [Archivo no firmado] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\es_es\Adobe Send\SendAsLinkAddin.ESP 2026-03-09 21:56 - 2026-03-09 21:56 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll 2026-03-09 21:56 - 2026-03-09 21:56 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll 2026-03-09 11:13 - 2026-03-09 11:13 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll ==================== Alternate Data Streams (Lista blanca) ======== (Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.) AlternateDataStreams: C:\Users\TESTER\Downloads\adwcleaner.exe:MBAM.Zone.Identifier [282] AlternateDataStreams: C:\Users\TESTER\Downloads\BingWallpaperInstaller (1).exe:MBAM.Zone.Identifier [400] AlternateDataStreams: C:\Users\TESTER\Downloads\BraveBrowserSetup-BRV015.exe:MBAM.Zone.Identifier [262] AlternateDataStreams: C:\Users\TESTER\Downloads\Configurador_FNMT_5.1.0_64bits.exe:MBAM.Zone.Identifier [304] AlternateDataStreams: C:\Users\TESTER\Downloads\contasetup.exe:MBAM.Zone.Identifier [250] AlternateDataStreams: C:\Users\TESTER\Downloads\EZBlocker.exe:MBAM.Zone.Identifier [1886] AlternateDataStreams: C:\Users\TESTER\Downloads\gestionsetup.exe:MBAM.Zone.Identifier [254] AlternateDataStreams: C:\Users\TESTER\Downloads\MBSetup.exe:MBAM.Zone.Identifier [292] AlternateDataStreams: C:\Users\TESTER\Downloads\NVIDIA_app_v11.0.6.383.exe:MBAM.Zone.Identifier [308] AlternateDataStreams: C:\Users\TESTER\Downloads\QuickShareSetup.exe:MBAM.Zone.Identifier [694] AlternateDataStreams: C:\Users\TESTER\Downloads\SetupN2.exe:MBAM.Zone.Identifier [342] AlternateDataStreams: C:\Users\TESTER\Downloads\vlc-3.0.23-win64.exe:MBAM.Zone.Identifier [274] AlternateDataStreams: C:\Users\TESTER\Downloads\WhatsApp Beta Installer.exe:MBAM.Zone.Identifier [126] AlternateDataStreams: C:\Users\TESTER\Downloads\WhisperTranscribe Setup 2.1.1.exe:MBAM.Zone.Identifier [268] AlternateDataStreams: C:\Users\TESTER\Downloads\winrar-x64-720es.exe:MBAM.Zone.Identifier [232] AlternateDataStreams: C:\Users\TESTER\Downloads\Wispr Flow Setup-v1.4.917.exe:MBAM.Zone.Identifier [300] ==================== Modo Seguro (Lista blanca) ================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk" ==================== Asociación (Lista blanca) ================= ==================== Internet Explorer (Lista blanca) ============= BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_491\bin\ssv.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation) BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_491\bin\jp2ssv.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_491\bin\ssv.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_491\bin\jp2ssv.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-09] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2024-04-01 09:26 - 2026-03-11 17:58 - 000124572 ____R C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 ic.adobe.io 0.0.0.0 cc-api-data.adobe.io 0.0.0.0 fp.adobestats.io 0.0.0.0 0mo5a70cqa.adobe.io 0.0.0.0 1b9khekel6.adobe.io 0.0.0.0 1hzopx6nz7.adobe.io 0.0.0.0 22gda3bxkb.adobe.io 0.0.0.0 23ynjitwt5.adobe.io 0.0.0.0 2ftem87osk.adobe.io 0.0.0.0 3ca52znvmj.adobe.io 0.0.0.0 3d3wqt96ht.adobe.io 0.0.0.0 4vzokhpsbs.adobe.io 0.0.0.0 5zgzzv92gn.adobe.io 0.0.0.0 69tu0xswvq.adobe.io 0.0.0.0 7g2gzgk9g1.adobe.io 0.0.0.0 7m31guub0q.adobe.io 0.0.0.0 7sj9n87sls.adobe.io 0.0.0.0 8ncdzpmmrg.adobe.io 0.0.0.0 9ngulmtgqi.adobe.io 0.0.0.0 aoorovjtha.adobe.io 0.0.0.0 b5kbg2ggog.adobe.io 0.0.0.0 cd536oo20y.adobe.io 0.0.0.0 dxyeyf6ecy.adobe.io 0.0.0.0 dyzt55url8.adobe.io 0.0.0.0 fgh5v09kcn.adobe.io 0.0.0.0 fqaq3pq1o9.adobe.io 0.0.0.0 guzg78logz.adobe.io 0.0.0.0 gw8gfjbs05.adobe.io 0.0.0.0 i7pq6fgbsl.adobe.io 0.0.0.0 ij0gdyrfka.adobe.io Hay 3519 más lineas. ==================== Network =========================== (Actualmente no existe una corrección automática para esta sección.) DNS Servers: 100.100.1.1 - 100.90.1.1 Firewall de Windows está habilitado. Network Binding: ============= Wi-Fi: MediaTek MT7921 Wi-Fi 6 802.11ax PCIe Adapter -> mtkwl6ex.sys Conexión de red Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys Ethernet: Realtek Gaming GbE Family Controller -> rt68cx21x64.sys Ethernet 2: ASIX USB to Gigabit Ethernet Family Adapter -> AxUsbEth.sys ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Autofirma\Autofirma;C:\Program Files\NVIDIA Corporation\NVIDIA App\NvDLISR HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\TESTER\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\4390486023705222649\134219339597585138.jpg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2) HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0) HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|E:\INSTALACIONES ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == (Si una entrada es incluida en el fixlist, será eliminada.) HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess" HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\StartupApproved\StartupFolder: => "script1_dc0vdhpkx6m5.js" HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\StartupApproved\StartupFolder: => "Wispr Flow.lnk" HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1396925160-3243919813-2678170802-1001\...\StartupApproved\Run: => "RuntimeBroker" ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [{6DFFA568-6AB9-4AEA-9C5E-F3343D807CAE}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_24348.802.3311.5092_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{CAF4BB14-BEF1-43FD-8902-56EC4D41D615}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_24348.802.3311.5092_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{F4403036-1723-45B2-AA65-5B54A018221A}C:\users\tester\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tester\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{C23181CF-E87D-4A9B-8536-761FC279006C}C:\users\tester\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tester\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{84AB9F4D-3650-4ADB-8890-9A1CA8026CB1}C:\users\tester\appdata\local\perplexity\comet\application\comet.exe] => (Allow) C:\users\tester\appdata\local\perplexity\comet\application\comet.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) FirewallRules: [UDP Query User{75D4DF2C-0318-412A-A040-57C53A124A3E}C:\users\tester\appdata\local\perplexity\comet\application\comet.exe] => (Allow) C:\users\tester\appdata\local\perplexity\comet\application\comet.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) FirewallRules: [{DE4FFBE2-85BE-4820-A858-8E447B2E9240}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D7A1D33B-E3B7-400F-A5B7-919AC70AF514}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C432F94B-282A-49D0-B383-B1C8F41C6C8C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{62AE81FB-775B-438B-8D33-316EBDF95C5C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3F15B5EA-7FEF-486B-BB03-B5E95D498B00}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{87C79211-ADEE-4A31-8F4B-6A45C32273DA}C:\users\tester\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tester\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{C5A2E62B-7713-4102-B87B-522158845DBC}C:\users\tester\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tester\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{f71f06f6-790f-4546-baff-92d3345ac335}] => (Block) C:\Program Files\Adobe\Adobe Photoshop 2025\Photoshop.exe (Adobe Inc. -> Adobe) [Archivo no firmado] FirewallRules: [{DC7BE72A-A4BB-4CC6-ACD8-94ED28F92066}] => (Block) C:\Program Files\Adobe\Adobe Photoshop 2025\Photoshop.exe (Adobe Inc. -> Adobe) [Archivo no firmado] FirewallRules: [{6994E3CE-0A68-44C0-9A45-594A7978F077}] => (Block) %ProgramFiles%\Corel\CorelDRAW Technical Suite 2022\Programs64\CorelPP.exe => Ningún archivo FirewallRules: [{0a50b310-47db-474c-945a-242906c2e161}] => (Block) C:\Program Files\Adobe\Adobe InDesign 2024\InDesign.exe (Adobe Inc. -> Adobe Inc.) FirewallRules: [TCP Query User{7FF0D542-ACFC-47FA-83DD-2FF6A22B5848}C:\users\tester\appdata\local\perplexity\comet\application\comet.exe] => (Allow) C:\users\tester\appdata\local\perplexity\comet\application\comet.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) FirewallRules: [UDP Query User{786FEAC0-DAE6-4A8F-873D-2314B2951E8C}C:\users\tester\appdata\local\perplexity\comet\application\comet.exe] => (Allow) C:\users\tester\appdata\local\perplexity\comet\application\comet.exe (PERPLEXITY AI, INC. -> PERPLEXITY AI, INC.) FirewallRules: [{15345C27-4980-4FB4-A0E5-D0A4FDDF85B6}] => (Block) C:\Program Files\Corel\CorelDRAW Technical Suite\26\Programs64\CorelDRW.exe (COREL CORPORATION -> Corel Corporation) FirewallRules: [{58FAB931-942A-4781-9AD4-CEDAF291FE0D}] => (Block) C:\Program Files\Corel\CorelDRAW Technical Suite\26\Programs64\CorelDRW.exe (COREL CORPORATION -> Corel Corporation) FirewallRules: [{93B362F4-F234-41A8-9132-B0A7EBFAC322}] => (Block) C:\Program Files\Corel\CorelDRAW Technical Suite\26\Programs64\CorelPP.exe (COREL CORPORATION -> Corel Corporation) FirewallRules: [{1C11E53C-16C0-4540-8888-D1B0D5587CAD}] => (Block) C:\Program Files\Corel\CorelDRAW Technical Suite\26\Programs64\CorelPP.exe (COREL CORPORATION -> Corel Corporation) FirewallRules: [{F2915D83-C268-4993-8287-6B045009B352}] => (Allow) C:\Program Files\Google\NearbyShare\nearby_share.exe (Google LLC -> Google) FirewallRules: [{D3B500C7-9B45-41ED-ACA6-8AC2B9A88A1A}] => (Allow) C:\Program Files\Google\NearbyShare\nearby_share.exe (Google LLC -> Google) FirewallRules: [{3F68F43C-7CDA-41E1-B4C1-EE818EC1E8A7}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.) FirewallRules: [{C4092B71-E38E-4A8D-B7C1-B36270D24E01}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Puntos de Restauración ========================= 27-04-2026 10:28:10 Windows Update 29-04-2026 19:16:49 Operación de restauración 02-05-2026 18:05:15 AdwCleaner_BeforeCleaning_02/05/2026_18:05:15 ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (05/02/2026 08:19:44 PM) (Source: Application Error) (EventID: 1000) (User: FRAN-TEO) Description: Nombre de aplicación con errores: ipf_helper.exe, versión: 1.0.10702.25133, marca de tiempo: 0x61b91798 Nombre del módulo con errores: ipf_helper.exe, versión: 1.0.10702.25133, marca de tiempo: 0x61b91798 Código de excepción: 0xc0000005 Desplazamiento con errores: 0x00000000000073a7 Id. de proceso con errores: 0x2bd8 Tiempo de inicio de aplicación con errores: 0x1dcda4db20ac878 Ruta de aplicación con errores: C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_e6050705c26c770f\ipf_helper.exe Ruta de módulo con errores: C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_e6050705c26c770f\ipf_helper.exe Id. de informe: f7742398-70bf-4ff6-bc9f-34fd9334f05f Nombre completo del paquete con errores: Id. de aplicación relacionado con el paquete con errores: Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Error: (05/02/2026 06:06:26 PM) (Source: IPF) (EventID: 17) (User: NT AUTHORITY) Description: Event-ID 17 Errores del sistema: ============= Error: (05/02/2026 06:06:14 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1040) (User: NT AUTHORITY) Description: Las comprobaciones de estado de la atestación previa confirman un error en un componente crítico y no se espera que el dispositivo supere la atestación. Consulte C:\WINDOWS\Logs\MeasuredBoot\0000000846-0000000000.json para obtener información detallada sobre las comprobaciones realizadas. Error: (05/02/2026 06:05:56 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 124) (User: NT AUTHORITY) Description: 73223847301 Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Intel(R) Graphics Command Center Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Intel(R) Content Protection HDCP Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio. Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio FileSyncHelper se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio NVIDIA Display Container LS terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio. Error: (05/02/2026 06:05:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Microsoft Office Click-to-Run Service terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 0 milisegundos: Reiniciar el servicio. Windows Defender: ================ Date: 2026-04-13 20:36:03 Description: Antivirus de Microsoft Defender šςàή ĥąŝ ьéęή śţǿρрεð ъĕƒόґė сōмφŀεťīǿʼn.%ʼn %ťЅĉăŋ ÌÐ:%ъ{6999FDDD-86DB-45FB-9282-C9A5E558B032}%ñ %тŜсáņ Тўрé:%ьAntimalware%ή %ţŜсǻη Ρářåmèťêřŝ:%вExamen rápido%л %τÙŝêř:%ъFRAN-TEO\TESTER%η %ŧŞťōр Ŕěãşōņ:%ъŪⁿķʼnõωń Date: 2026-04-13 17:53:54 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Keygen&threatid=2147593794&enterprise=0 Nombre: HackTool:Win32/Keygen Id.: 2147593794 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_E:\INSTALACIONES\COREL2026\CorelDRAW Graphics Suite.2025.v26.2.0.170.Multilingual.ES.inc.Crack.X64\Activation\keygen.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: FRAN-TEO\TESTER Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.449.75.0, AS: 1.449.75.0, NIS: 1.449.75.0 Versión de motor: AM: 1.1.26030.3008, NIS: 1.1.26030.3008 Date: 2026-04-13 17:53:29 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Keygen&threatid=2147593794&enterprise=0 Nombre: HackTool:Win32/Keygen Id.: 2147593794 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_E:\INSTALACIONES\COREL2026\CorelDRAW Graphics Suite.2025.v26.2.0.170.Multilingual.ES.inc.Crack.X64\Activation\keygen.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: FRAN-TEO\TESTER Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.449.75.0, AS: 1.449.75.0, NIS: 1.449.75.0 Versión de motor: AM: 1.1.26030.3008, NIS: 1.1.26030.3008 Date: 2026-04-13 17:53:21 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Keygen&threatid=2147593794&enterprise=0 Nombre: HackTool:Win32/Keygen Id.: 2147593794 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_E:\INSTALACIONES\COREL2026\CorelDRAW Graphics Suite.2025.v26.2.0.170.Multilingual.ES.inc.Crack.X64\Activation\keygen.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: FRAN-TEO\TESTER Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.449.75.0, AS: 1.449.75.0, NIS: 1.449.75.0 Versión de motor: AM: 1.1.26030.3008, NIS: 1.1.26030.3008 Date: 2026-04-13 17:50:12 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Keygen&threatid=2147593794&enterprise=0 Nombre: HackTool:Win32/Keygen Id.: 2147593794 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_E:\INSTALACIONES\COREL2026\CorelDRAW Graphics Suite.2025.v26.2.0.170.Multilingual.ES.inc.Crack.X64\Activation\keygen.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: FRAN-TEO\TESTER Nombre de proceso: C:\Windows\System32\svchost.exe Versión de inteligencia de seguridad: AV: 1.449.75.0, AS: 1.449.75.0, NIS: 1.449.75.0 Versión de motor: AM: 1.1.26030.3008, NIS: 1.1.26030.3008 Event[0] Date: 2026-04-30 20:05:56 Description: Antivirus de Microsoft Defender encontró un error al intentar actualizar la inteligencia de seguridad e intentará revertir a una versión anterior. Inteligencia de seguridad intentada: Actual Código de error: 0x80501102 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: 1.449.367.0;1.449.367.0 Versión del motor: 1.1.26030.3008 Date: 2026-04-30 12:55:50 Description: La característica Protección en tiempo real de Antivirus de Microsoft Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2026-04-30 12:54:43 Description: Antivirus de Microsoft Defender encontró un error al intentar actualizar la inteligencia de seguridad e intentará revertir a una versión anterior. Inteligencia de seguridad intentada: Actual Código de error: 0x80501102 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: 1.449.86.0;1.449.86.0 Versión del motor: 1.1.26030.3008 Date: 2026-04-29 19:17:11 Description: Antivirus de Microsoft Defender encontró un error al intentar actualizar la inteligencia de seguridad e intentará revertir a una versión anterior. Inteligencia de seguridad intentada: Actual Código de error: 0x80501102 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: 1.449.86.0;1.449.86.0 Versión del motor: 1.1.26030.3008 Date: 2026-04-15 04:31:08 Description: Antivirus de Microsoft Defender encontró un error al intentar actualizar la inteligencia de seguridad e intentará revertir a una versión anterior. Inteligencia de seguridad intentada: Actual Código de error: 0x80501102 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: 1.449.86.0;1.449.86.0 Versión del motor: 1.1.26030.3008 CodeIntegrity: =============== Date: 2026-04-18 00:06:12 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. ==================== Información de la memoria =========================== BIOS: AMI F.20 07/28/2025 Placa base: HP 8A25 Procesador: 12th Gen Intel(R) Core(TM) i7-12700H Porcentaje de memoria en uso: 36% RAM física total: 32433.36 MB RAM física disponible: 20661.47 MB Virtual total: 34481.36 MB Virtual disponible: 20108 MB ==================== Unidades ================================ Drive c: () (Fixed) (Total:475.19 GB) (Free:244.48 GB) (Model: MTFDKBA512TFH-1BC1AABHA) NTFS Drive e: (T7) (Fixed) (Total:931.48 GB) (Free:594.45 GB) (Model: Samsung PSSD T7 SCSI Disk Device) exFAT \\?\Volume{0257c980-5066-4e9a-816e-11c90927ae5a}\ () (Fixed) (Total:0.85 GB) (Free:0.06 GB) NTFS \\?\Volume{a8f254bd-44ad-4c2e-8ca9-cc3e5b026185}\ () (Fixed) (Total:0.09 GB) (Free:0.02 GB) FAT32 ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 476.9 GB) (Disk ID: 1E1F4777) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: EB70535C) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Final de Addition.txt =======================