Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-11-2019 Ran by Nhetso (07-11-2019 17:14:49) Running from D:\Descargas D Windows 10 Home Version 1903 18362.449 (X64) (2019-06-18 23:31:39) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-230840773-2889330021-793917845-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-230840773-2889330021-793917845-503 - Limited - Disabled) Invitado (S-1-5-21-230840773-2889330021-793917845-501 - Limited - Disabled) Nhetso (S-1-5-21-230840773-2889330021-793917845-1001 - Administrator - Enabled) => C:\Users\Usuario WDAGUtilityAccount (S-1-5-21-230840773-2889330021-793917845-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Antivirus (Enabled - Up to date) {0E17DB7D-A20F-62CE-B95B-17DB0CDFE318} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Bitdefender Cortafuego (Enabled) {362C5A58-E860-6396-9204-BEEEF20CA463} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Actualización de NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated) Adobe After Effects 2019 (HKLM-x32\...\AEFT_16_1_1) (Version: 16.1.1 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.8.1.435 - Adobe Systems Incorporated) Adobe Illustrator CC 2019 (HKLM-x32\...\ILST_23_0_2) (Version: 23.0.2 - Adobe Systems Incorporated) Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_4) (Version: 20.0.4 - Adobe Systems Incorporated) Adobe Premiere Pro 2019 (HKLM-x32\...\PPRO_13_1_2) (Version: 13.1.2 - Adobe Systems Incorporated) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.1.6 - Electronic Arts, Inc.) Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 19.1.7734 - AVAST Software) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 23.0.8.138 - Bitdefender) Bitdefender Device Management (HKLM\...\Bitdefender Device Management) (Version: 24.0.9.47 - Bitdefender) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 23.0.24.120 - Bitdefender) Blender (HKLM\...\{E29A1273-2E7A-40E7-AA63-428A11D59429}) (Version: 2.79.2 - Blender Foundation) Discord (HKU\S-1-5-21-230840773-2889330021-793917845-1001\...\Discord) (Version: 0.0.305 - Discord Inc.) Driver Easy 5.6.12 (HKLM\...\DriverEasy_is1) (Version: 5.6.12 - Easeware) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Eraser 6.2.0.2982 (HKLM\...\{DFCF78CC-3DAD-4C1E-8BC6-94DC5B73461E}) (Version: 6.2.2982 - The Eraser Project) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.87 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden HP Dropbox Plugin (HKLM-x32\...\{E33A1540-AF13-4F30-BEB5-3F4CD72AC7F9}) (Version: 36.0.175.0 - HP) HP EmailSMTP Plugin (HKLM-x32\...\{CF4D7C86-DBA1-458D-990F-987A386091C8}) (Version: 43.0.175.0 - HP) HP FTP Plugin (HKLM-x32\...\{B9FFA818-A8AE-406E-80EF-85A54A1C9F83}) (Version: 43.0.175.0 - HP) HP Google Drive Plugin (HKLM-x32\...\{78CD6FCC-A6E9-4DCB-B137-FD691DB15CC6}) (Version: 36.0.175.0 - HP) HP Ink Tank 310 series Ayuda (HKLM-x32\...\{8032AA89-A328-4B09-9BF6-8A7EE1F9DB37}) (Version: 44.0.0 - HP) HP OneDrive Plugin (HKLM-x32\...\{C79809ED-0E3D-43E9-9F45-FA43DFA1EFFD}) (Version: 36.0.175.0 - HP) HP SFTP Plugin (HKLM-x32\...\{6E9B2B7C-1701-4DD3-80F7-B45ECA565DF9}) (Version: 43.0.175.0 - HP) HP SharePoint Plugin (HKLM-x32\...\{41871A92-7684-456F-8BE2-AB570C641AEC}) (Version: 43.0.175.0 - HP) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Computing Improvement Program (HKLM\...\{85B6BF0F-EF1B-4F0F-892D-E68BD798950C}) (Version: 2.4.04669 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1846.12.0.1177 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6471 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden Java 8 Update 231 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180231F0}) (Version: 8.0.2310.11 - Oracle Corporation) Logitech Options (HKLM\...\LogiOptions) (Version: 8.0.863 - Logitech) Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{449EFED6-5F86-4428-8EB2-3DA1F6E67CE4}) (Version: 1.20.146.0 - Microsoft) Minecraft Launcher (HKLM-x32\...\{E154B2C8-2F3E-4763-B3D5-E7D34AE39C6B}) (Version: 1.0.0.0 - Mojang) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden NVIDIA Controlador de audio HD 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation) NVIDIA Controlador de gráficos 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation) NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation) NVIDIA Software del sistema PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.52.32372 - Electronic Arts, Inc.) Panel de control de NVIDIA 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.12 - NVIDIA Corporation) Hidden Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.5.21.1028 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8816.1 - Realtek Semiconductor Corp.) Software Logitech Unifying 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Streamlabs OBS 0.15.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.15.1 - General Workings, Inc.) Tableta Wacom (HKLM\...\Wacom Tablet Driver) (Version: 6.3.36-1 - Wacom Technology Corp.) Twitch (HKU\S-1-5-21-230840773-2889330021-793917845-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation) Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{344F3227-F502-4219-9DC4-1967E586FAFA}) (Version: 2.51.0.0 - Microsoft Corporation) ViewSonic Windows 8 and 10 64bit Signed Files (HKLM-x32\...\{FC47C7A5-BE63-11D5-B7C9-005004566E4D}) (Version: - ) WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH) Wondershare Filmora Scrn(Build 2.0.0) (HKLM\...\Wondershare Filmora Scrn_is1) (Version: - Wondershare Software) Packages: ========= HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_105.1.618.0_x64__v10z8vjag6ke6 [2019-10-17] (HP Inc.) Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.2.0.0_x64__8j3eq9eme6ctt [2019-06-18] (INTEL CORP) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-05-02] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-05-02] (Microsoft Corporation) [MS Ad] MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0 [2019-10-30] (Spotify AB) [Startup Task] VLC -> C:\Program Files\WindowsApps\VideoLAN.VLC_3.2.1.0_x64__paz6r1rewnh0a [2019-06-05] (VideoLAN) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-230840773-2889330021-793917845-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-584F653B76A1} -> [Creative Cloud Files] => C:\Users\Usuario\Creative Cloud Files [2019-05-07 02:23] CustomCLSID: HKU\S-1-5-21-230840773-2889330021-793917845-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems Incorporated -> Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ContextMenuHandlers1: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => D:\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => D:\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-11-07] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => D:\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers5: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => D:\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ContextMenuHandlers6: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => D:\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-11-07] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Whitelisted) ==================== ==================== Shortcuts & WMI ======================== ==================== Loaded Modules (Whitelisted) ============= 2019-06-18 19:49 - 2016-09-12 16:53 - 048936448 _____ () [File not signed] D:\Avast Cleanup\libcef.dll 2019-05-15 21:01 - 2019-05-15 21:01 - 001878528 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll 2019-10-29 17:36 - 2019-06-11 09:21 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Apex\Origin\LIBEAY32.dll 2019-10-29 17:36 - 2019-06-11 09:22 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Apex\Origin\ssleay32.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\platforms\qwindows.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\Qt5Core.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\Qt5Gui.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 001179136 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\Qt5Network.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\Qt5Widgets.dll 2019-10-29 17:36 - 2019-07-12 10:23 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Apex\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Usuario\Application Data:33968ec9ed0abde4ce703a532c809fc9 [394] AlternateDataStreams: C:\Users\Usuario\Datos de programa:33968ec9ed0abde4ce703a532c809fc9 [394] AlternateDataStreams: C:\Users\Usuario\AppData\Roaming:33968ec9ed0abde4ce703a532c809fc9 [394] ==================== Safe Mode (Whitelisted) ================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) ================= ==================== Internet Explorer trusted/restricted ========== ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2018-04-11 20:38 - 2019-11-07 17:10 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%INTEL_DEV_REDIST%redist\intel64\compiler;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\HP\Common\HPDestPlgIn\ HKU\S-1-5-21-230840773-2889330021-793917845-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Usuario\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\widescreen 16.10 - 2560x1600.jpg DNS Servers: 200.83.1.5 - 190.160.0.15 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) MSCONFIG\Services: EasyAntiCheat => 3 HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "Eraser" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKU\S-1-5-21-230840773-2889330021-793917845-1001\...\StartupApproved\Run: => "Steam" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{1E2A75C7-5931-4778-A44E-EEC468EC86D0}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe No File FirewallRules: [TCP Query User{52C563A3-1772-421E-A728-5E04ACEEF741}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe No File FirewallRules: [{8F4D2510-C38C-4BD0-999F-A211FF176147}] => (Allow) D:\Riot Games\PBE\LeagueClient.exe No File FirewallRules: [{E3E94E49-2A71-4EFC-9778-0A453442DAE8}] => (Allow) D:\Riot Games\PBE\LeagueClient.exe No File FirewallRules: [UDP Query User{35C9881D-69B3-4F54-9FF5-ECEF8B49633F}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [TCP Query User{6BD3BE42-B4BB-4D25-B4B0-B7785039C1FB}D:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) D:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [{0E922ED2-E2A0-4DAE-ABD8-7A46F929EE1B}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{57E18673-2E07-45F8-A43C-1F0E1B3C5BB1}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{6B54F418-95B8-4DEA-8C43-5C9D028B9F11}] => (Allow) D:\Nexon\Nexon Launcher\Games\vindictus\appdata\en-US\NMService.exe No File FirewallRules: [{2110B594-6C99-4AF3-8D8F-24007EDB271E}] => (Allow) D:\Nexon\Nexon Launcher\Games\vindictus\appdata\en-US\NMService.exe No File FirewallRules: [{EA8C58E6-8B85-46B3-B607-EAFB5349695A}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{2608F3A3-B487-4F5F-89FA-3033C7B06AF6}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{9620EB31-A257-4A71-A1B8-3837E824A508}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{FC4F01A1-8488-49C9-A605-F0079B774110}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [UDP Query User{C74AAE4F-A73D-42DC-A0F2-05612FF294CA}D:\steam\steamapps\common\bless online\binaries\win64\bless.exe] => (Allow) D:\steam\steamapps\common\bless online\binaries\win64\bless.exe No File FirewallRules: [TCP Query User{8A5DE0E9-5E34-4282-B806-3207A92786B8}D:\steam\steamapps\common\bless online\binaries\win64\bless.exe] => (Allow) D:\steam\steamapps\common\bless online\binaries\win64\bless.exe No File FirewallRules: [UDP Query User{39DD3A14-38A7-4DA1-ABEF-17B933400535}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe No File FirewallRules: [TCP Query User{D1F585C2-60B2-4215-A66B-A89078FAD964}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe No File FirewallRules: [UDP Query User{A363BD9B-1E71-46D5-8953-6F09B7B652E8}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe No File FirewallRules: [TCP Query User{F2F8243A-160E-4838-AFFE-6D8E75825635}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe No File FirewallRules: [UDP Query User{DC23827E-C582-41FC-9C75-C9080DE2B7F4}D:\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe (Epic Games, Inc.) [File not signed] FirewallRules: [TCP Query User{E902DB4B-3647-47D8-A909-E7FEDFE2B29F}D:\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe (Epic Games, Inc.) [File not signed] FirewallRules: [{1CE203BF-ECBE-4420-9E72-31A3647E3398}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{80FC3335-73D9-4512-8A7C-5608D2988451}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{FF39B507-3513-40AB-B7A9-F7F21F420E7D}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe No File FirewallRules: [TCP Query User{6B26F455-D01C-4FD9-86FC-980C5E440935}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe No File FirewallRules: [{FA35D734-ECB6-4E2E-8C8F-DAE4AC49C97C}] => (Allow) D:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{24E05B3F-0216-40D8-97AD-5D20063DD678}] => (Allow) D:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{0F776ABC-3E41-47B0-8B3B-61DEB301BF65}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{9D91A90D-5A92-4567-A441-A7C6E6823712}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{9E9C8DE0-3D78-4A9D-A900-68903215072D}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe No File FirewallRules: [{90D6FC2B-79A8-480B-BDF1-2B9501383FB8}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe No File FirewallRules: [TCP Query User{EF8401FD-2B7A-434B-BDDA-F030944EF133}C:\programdata\logishrd\logioptions\software\7.12.43\logioptionsmgr.exe] => (Allow) C:\programdata\logishrd\logioptions\software\7.12.43\logioptionsmgr.exe No File FirewallRules: [UDP Query User{A382E54E-85CE-4227-B067-2CDC82BA0BC6}C:\programdata\logishrd\logioptions\software\7.12.43\logioptionsmgr.exe] => (Allow) C:\programdata\logishrd\logioptions\software\7.12.43\logioptionsmgr.exe No File FirewallRules: [TCP Query User{994D5AED-7473-432F-A9F5-97128550E80E}C:\users\usuario\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\usuario\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe FirewallRules: [UDP Query User{22B1CABF-EE48-4106-9137-AAB0CE920E36}C:\users\usuario\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\usuario\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe FirewallRules: [{C1978039-23C9-42EA-B504-0C73AD9ABE9E}] => (Allow) D:\Steam\steamapps\common\My Time At Portia\Portia.exe () [File not signed] FirewallRules: [{6F05AB56-2838-40F1-83A0-4DE437064315}] => (Allow) D:\Steam\steamapps\common\My Time At Portia\Portia.exe () [File not signed] FirewallRules: [{46E04080-950E-4A96-ACB5-7CBB336955ED}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{E29ACF21-B175-4712-A699-2D8A4FEEAD64}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{3650ABF8-B6E7-4F67-BF82-1CA23190433D}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{E6D09A17-5EEF-424F-9845-8BF20CA82D53}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> ) FirewallRules: [{5D80AD7D-69E1-4CCA-AC3E-F9BB2D7B69FD}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{C98B07E9-C520-424D-8BD5-40492D24C1CE}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{1381B22A-0ECF-4725-ACA7-E68EDED93FA1}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{BEAF29FE-0CCE-4ECE-9359-65699790A9D5}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> ) FirewallRules: [TCP Query User{78830050-B64B-4531-94ED-3DAB020EAF41}D:\streamlabs obs\streamlabs obs.exe] => (Allow) D:\streamlabs obs\streamlabs obs.exe (Streamlabs (General Workings, Inc.) -> General Workings, Inc.) FirewallRules: [UDP Query User{339EF93E-B21F-4D5E-9071-BFEDAE2A5EB2}D:\streamlabs obs\streamlabs obs.exe] => (Allow) D:\streamlabs obs\streamlabs obs.exe (Streamlabs (General Workings, Inc.) -> General Workings, Inc.) FirewallRules: [{52128E8A-33C4-4326-815C-4AFDBE545BC0}] => (Allow) D:\Steam\steamapps\common\Overcooked! 2\Overcooked2.exe () [File not signed] FirewallRules: [{0D20C69A-295E-47E6-92EA-588B54195A42}] => (Allow) D:\Steam\steamapps\common\Overcooked! 2\Overcooked2.exe () [File not signed] FirewallRules: [{D3F64363-D6D7-47A4-85D9-BD98EEA937D1}] => (Allow) D:\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware) FirewallRules: [{1A5C5D00-25ED-400C-A5B8-708CBD2CAD9A}] => (Allow) D:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{B4958141-67BA-408D-AFBC-7746EC415E9F}] => (Allow) D:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{C76075A6-B575-4EF6-AB3D-F52CA4BA4CAF}] => (Allow) D:\Steam\steamapps\common\Moonlighter\Moonlighter.exe () [File not signed] FirewallRules: [{AA580BB8-B039-4139-A661-EDB24CD74340}] => (Allow) D:\Steam\steamapps\common\Moonlighter\Moonlighter.exe () [File not signed] FirewallRules: [{A458C6FB-C635-49A6-B2A5-3C8253C48CB3}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe No File FirewallRules: [{0CAEB681-1256-4DC6-AB0E-7927B63F13BE}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe No File FirewallRules: [{91B2D7C4-9CC8-47A0-928A-0CB88452A4CD}] => (Allow) C:\Users\Usuario\AppData\Local\Temp\7zS35DB\HPDiagnosticCoreUI.exe No File FirewallRules: [{8C7BAE91-48F3-4BEC-9EE6-BC8876488BF6}] => (Allow) C:\Users\Usuario\AppData\Local\Temp\7zS35DB\HPDiagnosticCoreUI.exe No File FirewallRules: [{44ECB8D8-6545-436D-8BB0-288A0B477C61}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.) FirewallRules: [{C5A93841-03CA-48AE-8748-69D7FDC6FDE7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{E04FC076-3DCB-4A11-9880-CD1A678895F9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{3D0D2F18-E24E-4A35-897E-4BEA68D92BB0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{C095E0EC-6BA9-47CC-8A31-BFD0B825C897}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{F6974417-FF88-48E9-B03C-3F2E33325AC8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{BE0431FF-CDC1-4147-9DC5-B246566560AA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{98FA3C64-A6B1-4CD2-B57D-9A081207BBBB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{F1E5CEDA-995E-4E32-9228-C19D27BED6CF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.118.611.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{341BBA08-478A-467F-A151-3839DFA6037B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3D2BB338-8AAA-4C9E-A586-F6C4188533B1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{30F369DE-34B5-430E-B72D-AE98105E76A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{8CAD17A8-F04E-4F3E-AAE7-8AAB232BA9AC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{57A4CEE9-CBEB-4A67-AA8C-B944258ED29C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Restore Points ========================= ATTENTION: System Restore is disabled (Total:111.19 GB) (Free:38.93 GB) (35%) ==================== Faulty Device Manager Devices ============ ==================== Event log errors: ======================== Application errors: ================== Error: (11/07/2019 05:14:29 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: NHETSO) Description: No se puede abrir el objeto de rendimiento del servicio del servidor. Los primeros cuatro bytes (DWORD) de la sección de datos contienen el código de estado. Error: (11/07/2019 05:11:02 PM) (Source: MsiInstaller) (EventID: 1024) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "{AC76BA86-7AD7-0000-2550-AC130C4E4800}" no se pudo instalar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:11:02 PM) (Source: MsiInstaller) (EventID: 1021) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "Adobe Acrobat Reader DC (19.012.20035)" no se pudo quitar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:10:40 PM) (Source: MsiInstaller) (EventID: 1024) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "{AC76BA86-7AD7-0000-2550-AC130C4E4800}" no se pudo instalar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:10:40 PM) (Source: MsiInstaller) (EventID: 1021) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "Adobe Acrobat Reader DC (19.012.20035)" no se pudo quitar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:09:04 PM) (Source: MsiInstaller) (EventID: 1024) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "{AC76BA86-7AD7-0000-2550-AC130C4E4800}" no se pudo instalar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:09:04 PM) (Source: MsiInstaller) (EventID: 1021) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "Adobe Acrobat Reader DC (19.012.20035)" no se pudo quitar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/07/2019 05:08:45 PM) (Source: MsiInstaller) (EventID: 1024) (User: NHETSO) Description: Producto: Adobe Acrobat Reader DC - Español - la actualización "{AC76BA86-7AD7-0000-2550-AC130C4E4800}" no se pudo instalar. Código de error 1646. Windows Installer no puede crear registros para ayudar a solucionar problemas de instalación de paquetes de software. Use el vínculo siguiente para obtener instrucciones sobre la activación de la compatibilidad de registro: http://go.microsoft.com/fwlink/?LinkId=23127 System errors: ============= Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Origin Web Helper Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Avast Cleanup Premium terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 5000 milisegundos: Reiniciar el servicio. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Intel(R) System Usage Report Service SystemUsageReportSvc_QUEENCREEK se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Windows Installer terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Adaptador de rendimiento de WMI terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Intel(R) Dynamic Application Loader Host Interface Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (11/07/2019 05:09:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Energy Server Service queencreek se terminó de manera inesperada. Esto ha sucedido 1 veces. Windows Defender: =================================== Date: 2019-11-05 14:08:14.088 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {CCD34C0B-07F6-408F-8137-005145DA016C} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-11-02 16:52:32.207 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {E43E6CDF-EB2E-47A2-980C-3828B66D1ED5} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-23 18:19:14.053 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {0237AF35-38E1-4C52-9AE3-5E12CD1FBF48} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-22 02:42:43.222 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {B6337A7A-9444-4E4C-B69D-12E00E4E7670} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-21 01:23:23.952 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {0D15142C-04BB-477E-8E99-DB89E58A98D2} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM CodeIntegrity: =================================== Date: 2019-07-05 15:01:10.241 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2019-07-05 15:01:10.236 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2019-07-05 15:01:10.229 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2019-07-05 15:01:08.990 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2019-07-05 15:01:08.953 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2019-07-05 15:00:43.317 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2019-07-05 15:00:43.313 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2019-07-05 15:00:43.310 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== BIOS: American Megatrends Inc. 0606 03/13/2019 Motherboard: ASUSTeK COMPUTER INC. PRIME H310M-E R2.0 Processor: Intel(R) Core(TM) i3-8100 CPU @ 3.60GHz Percentage of memory in use: 24% Total physical RAM: 24516.87 MB Available physical RAM: 18566.65 MB Total Virtual: 48100.87 MB Available Virtual: 40008.41 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.19 GB) (Free:38.93 GB) NTFS Drive d: (Disco Local) (Fixed) (Total:931.5 GB) (Free:563.41 GB) NTFS \\?\Volume{75e2e6c5-1616-4a67-8ecc-4d762feff29c}\ (Recuperación) (Fixed) (Total:0.49 GB) (Free:0.07 GB) NTFS \\?\Volume{b47b357d-9118-4e37-a7e1-f3155d95e9a9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Protective MBR) (Size: 111.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt =======================