Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 26-02-2020 Ejecutado por Carlos Beltrán (administrador) sobre CARLOS (LENOVO 20156) (01-03-2020 19:23:09) Ejecutado desde C:\Users\Carlos Beltrán\Desktop Perfiles cargados: Carlos Beltrán (Perfiles disponibles: Margarita & Carlos Beltrán) Platform: Windows 10 Home Single Language Versión 2004 19569.1000 (X64) Idioma: Español (México) Navegador predeterminado: Opera Modo de Inicio: Normal Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (AlcorMicro, Corp. -> Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (Canon Inc. -> CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe (IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe (IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\avp.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\avpui.exe (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\Carlos Beltrán\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\Carlos Beltrán\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe (Lenovo -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe (Mega Limited -> Mega Limited) C:\ProgramData\MEGAsync\MEGAupdater.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\msoia.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\msoia.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19081.29038.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12002.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe (Microsoft Windows -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dmclient.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19569.1000_none_e6d3ed2d730189be\TiWorker.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2001.10-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2001.10-0\NisSrv.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\66.0.3515.115\opera_crashreporter.exe (Opera Software AS -> Opera Software) C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\launcher.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCUpdate.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212560 2012-06-13] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [366720 2012-06-26] (AlcorMicro, Corp. -> Alcor Micro Corp.) HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2782096 2010-07-25] (Canon Inc. -> CANON INC.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2874256 2012-12-10] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508256 2020-02-27] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel® Services Manager -> Intel Corporation) HKLM-x32\...\Run: [USB Security] => C:\Program Files (x86)\USB Disk Security\USBGuard.exe [695528 2015-01-31] (Lanzhou Itanium Software Technology Co., Ltd. -> Zbshareware Lab) HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1213848 2010-09-14] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [5888320 2019-09-05] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [HPUsageTracking] => C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\" HKLM-x32\...\Run: [332BigDog] => C:\Program Files (x86)\USB Camera2\VM332STI.EXE [548864 2012-03-20] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro) HKU\S-1-5-21-2391081161-46834104-153621467-1009\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Software Ltd -> Piriform Ltd) HKU\S-1-5-21-2391081161-46834104-153621467-1009\...\Run: [Opera Browser Assistant] => C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3024408 2020-02-24] (Opera Software AS -> Opera Software) Startup: C:\Users\Carlos Beltrán\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-03-03] ShortcutTarget: MEGAsync.lnk -> C:\ProgramData\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) GroupPolicy: Restricción ? <==== ATENCIÓN CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN ==================== Tareas programadas (Lista blanca) ============ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {02A952D2-9142-4BAF-BD7D-3B3F05714127} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe [473544 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {04DF93D6-0C22-4361-9E75-B64028E34E26} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {05D77044-2F45-4FC9-9CD7-C1081B4B41E0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation) Task: {093BE64A-2A6F-45B6-A375-81E5E07F63D1} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [95192 2013-03-08] (CyberLink Corp. -> CyberLink Corp.) Task: {094CD275-5C71-4753-B57E-5566CA859498} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {0ED64537-9796-4D27-859F-A31F89E63095} - System32\Tasks\Lenovo\LSC\RebootCountTask => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe Task: {0F6DBBD1-1FA5-490B-A482-1F43FCC689E6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {1744E957-974E-406A-B862-72DFB88E1D86} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation) Task: {187C5BB2-1285-47EE-80A7-78ADE871E88F} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-01-08] (Lenovo -> ) Task: {1F25DD24-C654-4729-AB55-8EB34502B518} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe Task: {253BD903-6E48-48A9-B706-61B438AB8BA7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_pepper.exe [1453112 2019-09-10] (Adobe Inc. -> Adobe) Task: {27C59E3F-056F-4AE2-9B89-D853FE110E39} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe Task: {2B52A4C9-54AD-4EA1-AA40-686EAE06D76E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-15] (Piriform Software Ltd -> Piriform Software Ltd) Task: {307FC7E6-5605-4A7E-81F8-8DC3D48CE774} - System32\Tasks\Microsoft\Windows\Input\TouchpadSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [153600 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {377FCA19-7F3F-4304-909F-42DB1E823DA3} - System32\Tasks\Microsoft\Windows\WwanSvc\OobeDiscovery => {C93CF9D5-031B-4AAA-AB0B-EF802347B381} C:\Windows\System32\MBMediaManager.dll [676864 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {3E91AA1F-6FD7-4037-A326-A3CC5A8441B4} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe Task: {3F80080D-F1C2-4019-9200-6048BDCF03C9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-15] (Piriform Software Ltd -> Piriform Ltd) Task: {4B2DDF00-1702-44EA-B3B2-8ED5A9BF84B8} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2391081161-46834104-153621467-1009 => C:\Users\Carlos Beltrán\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [86824 2019-12-18] (Lenovo (Beijing) Limited -> Lenovo Group Limited) Task: {583591D9-163F-4B02-A9D8-7B4318C951A2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe Task: {5B144D79-64D0-43B8-AE39-CB17CF18D9FA} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner => {AD08DCC2-4E35-4486-9D49-547CBD30942D} C:\WINDOWS\System32\MitigationClient.dll [480768 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {656D9143-8D2D-43EF-AA93-E1450A93D518} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1952368 2019-02-06] (AVAST Software s.r.o. -> AVAST Software) Task: {65CF1C02-53BD-4F8C-93F0-252D04A8775A} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2391081161-46834104-153621467-1001 => C:\Users\CARLOSALFREDO\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe Task: {662647FF-8867-4EB3-B144-7722D47D17E6} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe Task: {69A27152-4748-4E63-96A1-479495AB002F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {6B4EA909-B9C4-47F9-B6A9-F7199103F06B} - System32\Tasks\AdwCleaner_onReboot => C:\Users\Carlos Beltrán\Desktop\adwcleaner_7.4.1.exe Task: {6BFEC218-AC43-4E67-B526-654DF523F3CF} - System32\Tasks\Microsoft\Windows\Input\MouseSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [153600 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {6C3C32DE-75BD-4D09-BD9C-D8689AE7CF9A} - System32\Tasks\Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup => C:\WINDOWS\system32\MdmDiagnosticsTool.exe [66560 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {73359B07-19CA-4EEC-BB63-578CE3844343} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe [473544 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7600C10E-5C58-4F08-81F6-150E03E66BC8} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Carlos Beltrán\Desktop\esetonlinescanner_esl.exe Task: {7950EEE6-1DAC-42AB-ABEE-EA748DC46D1B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-09-10] (Adobe Inc. -> Adobe) Task: {7DFE5BD8-59ED-4E80-A676-88B97D7D698C} - System32\Tasks\Opera scheduled Autoupdate 1521601420 => c:\program files\opera\launcher.exe Task: {7E1D0276-52F4-4078-A084-2F57C566A399} - System32\Tasks\Microsoft\Windows\Input\PenSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [153600 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {7F016F13-1C9F-41B6-AE8D-28C4456D528D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {8B6759EE-1C08-4B8F-955C-774AB5A6544E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {8F7B4FEC-7F9B-49EB-A0FE-EB66668CE218} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe Task: {911BC70C-7A33-46AC-9C8B-37667740A9F8} - System32\Tasks\Microsoft\Windows\International\Synchronize Language Settings => {10D62541-90D0-42FE-848C-0DBC1AC42EDA} C:\Windows\System32\CoreGlobConfig.dll [215904 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {93952C9D-31FE-4994-B075-F086EA4604CA} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2391081161-46834104-153621467-1001 => C:\Users\CARLOSALFREDO\AppData\Local\MEGAsync\MEGAupdater.exe Task: {95776885-AD2B-4B68-AD8B-F7F5BC3D6524} - System32\Tasks\Lenovo\sysrun-5388 => C:\Users\CARLOS~1\AppData\Local\Temp\sysrun-5388.cmd Task: {97594394-E4F0-441B-9020-3A8F8B7B058D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-27] (Google Inc -> Google LLC) Task: {98F600DE-B437-4DF2-9A82-2ED07B9DD7E7} - System32\Tasks\Lenovo\sysrun-26466 => C:\Users\CARLOS~1\AppData\Local\Temp\sysrun-26466.cmd Task: {A41E3235-4CD9-4E3D-A59F-DF26264761E6} - System32\Tasks\Opera scheduled Autoupdate 1561690032 => C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\launcher.exe [1532952 2020-02-24] (Opera Software AS -> Opera Software) Task: {A4AF7CC5-0E12-40FB-A3F5-DD0B94C567B7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Task: {A7ADC7F0-17D6-4C9D-8450-82026F34A452} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe [473544 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AA387DDC-4430-4F38-81A8-CFD12B9ED0D8} - System32\Tasks\Lenovo\sysrun-25385 => C:\Users\CARLOS~1\AppData\Local\Temp\sysrun-25385.cmd Task: {ADFBFC32-6F60-4013-ABF4-4AD5CE7DD89B} - System32\Tasks\Microsoft\Windows\Input\LocalUserSyncDataAvailable => {8E7C2AFB-72B9-415C-9AC2-5037693309B7} C:\Windows\System32\InputCloudStore.dll [153600 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {B5A343F7-377F-4ACD-A8D2-B4D500535626} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B6F6DED4-EE94-45BC-B2C8-35FB19DFF932} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe Task: {B7EAA85D-4CB9-4709-991C-E00683D6FEEE} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2391081161-46834104-153621467-1009 => C:\ProgramData\MEGAsync\MEGAupdater.exe [615160 2019-09-15] (Mega Limited -> Mega Limited) Task: {BCBDC33A-28B7-44D9-ACAC-0F93CADF3CBE} - System32\Tasks\Lenovo\LSC\Time72Task => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe Task: {BE2A6BF4-A7B7-466F-91CD-F7DE87E7C763} - System32\Tasks\Lenovo\Lenovo-10640 => C:\ProgramData\Lenovo-10640.vbs [198 2013-05-30] () [Archivo no firmado] <==== ATENCIÓN Task: {C9DCF59E-6B97-4C0C-8641-B8261089C8CA} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {C9DEE8B1-6AA0-4928-96DC-BB40528040E9} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe [276256 2020-02-14] (Microsoft Windows -> Microsoft Corporation) Task: {D5FFD6E2-7C18-4A04-B203-3090D659C8AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe Task: {DB21EF32-6BA9-4118-BBC1-BC4FF48961E5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {DC80A2F6-1746-4D7E-82AA-2559ECA66BA0} - System32\Tasks\Microsoft\Windows\Setup\8.1 auto install v2 => C:\WINDOWS\system32\AutoUpdate.exe Task: {DD552A81-A291-4221-9C8C-337C041FAD6B} - System32\Tasks\Opera scheduled assistant Autoupdate 1582767351 => C:\Users\Carlos Beltrán\AppData\Local\Programs\Opera\launcher.exe [1532952 2020-02-24] (Opera Software AS -> Opera Software) Task: {DEB8B56A-2600-4B3C-A709-42FFB62B9577} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-27] (Google Inc -> Google LLC) Task: {E19CA24D-BFD0-4E43-8724-CA76D1FFF757} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-01-08] (Lenovo -> ) Task: {E7625581-A937-4E96-A7D7-D0BE0A4007AD} - System32\Tasks\Microsoft\Windows\Setup\8.1 auto install ping => C:\WINDOWS\system32\AutoUpdate.exe Task: {E8AD22A4-7E85-4CC4-8EBE-3129D9E88B2D} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Carlos Beltrán\Desktop\esetonlinescanner_esl.exe Task: {E8DCAB0A-E807-4E1D-8C69-7EEFAA1FD8BC} - System32\Tasks\Microsoft\Windows\Shell\UpdateUserPictureTask => {09C5DD34-009D-40FA-BCB9-0165AD0C15D4} C:\Windows\System32\Windows.UI.Immersive.dll [1230336 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [30208 2020-02-15] (Microsoft Windows -> Microsoft Corporation) Task: {F528752A-8556-47F8-B074-C7C49C719220} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {FA283665-AE9C-4584-9149-95D4B35EAFFA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe Task: {FEAC9BDA-6126-4617-9667-446AF0B76788} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MpCmdRun.exe [473544 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {FF8DD28D-9376-46F6-AD02-EEC737C79764} - \Microsoft\Windows\Setup\EOSNotify -> Ningún archivo <==== ATENCIÓN (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) Tcpip\Parameters: [DhcpNameServer] 192.168.10.1 Tcpip\..\Interfaces\{0f6cedd6-c380-4d85-81da-8e8ce183523d}: [NameServer] 8.8.8.8,8.8.4.4, Tcpip\..\Interfaces\{75F7D7D2-99DF-4C36-952E-B981B8CEEB05}: [NameServer] 8.8.8.8,8.8.4.4,192.168.100.1 Tcpip\..\Interfaces\{75F7D7D2-99DF-4C36-952E-B981B8CEEB05}: [DhcpNameServer] 192.168.10.1 Tcpip\..\Interfaces\{7a008923-0d2e-4513-9b8a-1d2e66a21e31}: [NameServer] 8.8.8.8,8.8.4.4, Tcpip\..\Interfaces\{E2A339C6-5D3A-48FF-90D8-1898422D4395}: [NameServer] 8.8.8.8,8.8.4.4,192.168.2.1 Tcpip\..\Interfaces\{E2A339C6-5D3A-48FF-90D8-1898422D4395}: [DhcpNameServer] 192.168.10.1 Tcpip\..\Interfaces\{f15d35af-652d-48ab-b77a-57fac1f6921d}: [DhcpNameServer] 192.168.10.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restricción <==== ATENCIÓN HKU\S-1-5-21-2391081161-46834104-153621467-1009\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo13.msn.com HKU\S-1-5-21-2391081161-46834104-153621467-1009\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com HKU\S-1-5-21-2391081161-46834104-153621467-1009\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com BHO: Kaspersky Protection -> {9F904093-6E18-4536-BF5F-B03689CF00F0} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\x64\IEExt\ie_plugin.dll [2019-12-04] (Kaspersky Lab -> AO Kaspersky Lab) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Kaspersky Protection -> {9F904093-6E18-4536-BF5F-B03689CF00F0} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\IEExt\ie_plugin.dll [2019-12-04] (Kaspersky Lab -> AO Kaspersky Lab) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Kaspersky Protection Toolbar - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\x64\IEExt\ie_plugin.dll [2019-12-04] (Kaspersky Lab -> AO Kaspersky Lab) Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Free 20.0\IEExt\ie_plugin.dll [2019-12-04] (Kaspersky Lab -> AO Kaspersky Lab) Toolbar: HKU\S-1-5-21-2391081161-46834104-153621467-1009 -> Sin Nombre - {C500C267-63BF-451F-8797-4D720C9A2ED9} - Ningún archivo