Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 21-01-2025 Ejecutado por paula (26-01-2025 18:10:47) Ejecutado desde C:\Users\paula\OneDrive\Escritorio Microsoft Windows 11 Home Single Language Versión 23H2 22631.4751 (X64) (2024-08-07 05:06:04) Modo de Inicio: Normal ========================================================== ==================== Cuentas: ============================= (Si una entrada es incluida en el fixlist, será eliminada.) Administrador (S-1-5-21-4088744554-3320150816-3085797151-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-4088744554-3320150816-3085797151-503 - Limited - Disabled) Invitado (S-1-5-21-4088744554-3320150816-3085797151-501 - Limited - Disabled) paula (S-1-5-21-4088744554-3320150816-3085797151-1001 - Administrator - Enabled) => C:\Users\paula WDAGUtilityAccount (S-1-5-21-4088744554-3320150816-3085797151-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Aplicaciones de Microsoft 365 para empresas - es-es (HKLM\...\O365ProPlusRetail - es-es) (Version: 16.0.18324.20194 - Microsoft Corporation) BlueStacks (HKLM\...\BlueStacks_nxt) (Version: 5.21.580.2001 - now.gg, Inc.) BlueStacks Services (HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\BlueStacksServices) (Version: 3.0.9 - now.gg, Inc.) CLIP STUDIO 3.1.0 (HKLM-x32\...\{49274EB8-4598-47E6-8039-9BB7CE07627E}) (Version: 3.1.0 - CELSYS) CLIP STUDIO PAINT 3.1.0 (HKLM-x32\...\{1E4572D2-28BC-4BC9-B743-13DC6CFD71DB}) (Version: 3.1.0 - CELSYS) Discord (HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\Discord) (Version: 1.0.9157 - Discord Inc.) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.380.0.5893 - Electronic Arts) Hidden EA app (HKLM-x32\...\{35249d1c-5cd8-403e-8e44-199d1e6ca3f4}) (Version: 13.380.0.5893 - Electronic Arts) Epic Games Launcher (HKLM-x32\...\{FA06BD44-6ED1-42D5-963C-D5B165C4D892}) (Version: 1.3.93.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 131.0.6778.265 - Google LLC) Grammarly for Windows (HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\Grammarly Desktop Integrations) (Version: 1.2.129.1583 - Grammarly) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.1.0.69 - Lenovo) Malwarebytes version 5.2.5.158 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.5.158 - Malwarebytes) Microsoft .NET Host - 8.0.10 (x64) (HKLM\...\{3A80EBC5-6B68-49B9-BEBD-E1A6C966B416}) (Version: 64.40.21578 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 8.0.10 (x64) (HKLM\...\{062CD1ED-0A3C-483C-A871-50173240C545}) (Version: 64.40.21578 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 8.0.10 (x64) (HKLM\...\{15B7D0C2-F209-4C28-AF1C-FD8326F4D58A}) (Version: 64.40.21578 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 132.0.2957.127 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.244.1204.0003 - Microsoft Corporation) Microsoft OneNote - es-es (HKLM\...\OneNoteFreeRetail - es-es) (Version: 16.0.18324.20194 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30139 (HKLM-x32\...\{2c673fb6-3e65-4751-965d-33d30b68a8a6}) (Version: 14.29.30139.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31938 (HKLM-x32\...\{4f84f2dc-3f70-433a-8f50-8293e0089b0f}) (Version: 14.34.31938.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30139 (HKLM\...\{7F4A9F52-173F-4B0D-B1EA-269C32EDA827}) (Version: 14.29.30139 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30139 (HKLM\...\{A6D3F752-BF11-4D7C-B19C-F6F96A35CF50}) (Version: 14.29.30139 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31938 (HKLM-x32\...\{080D8397-60F4-44B3-BB95-FBB950CB0B4E}) (Version: 14.34.31938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31938 (HKLM-x32\...\{8DE5B0D4-A6D8-4F72-B8EF-28776A2EE5D5}) (Version: 14.34.31938 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.10 (x64) (HKLM\...\{614C9740-3FD4-4788-A277-7C35CB4C323B}) (Version: 64.40.21605 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.10 (x64) (HKLM-x32\...\{d990096d-6282-42c5-8d16-71272c5be274}) (Version: 8.0.10.34118 - Microsoft Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20168 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden Opera GX Stable 115.0.5322.152 (HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\Opera GX 115.0.5322.152) (Version: 115.0.5322.152 - Opera Software) QGIS 3.34.9 'Prizren' (HKLM\...\{577DF9B8-6C11-1014-95A5-E10188E37757}) (Version: 3.34.9 - QGIS.org) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) ViGEm Bus Driver (HKLM\...\{966606F3-2745-49E9-BF15-5C3EAA4E9077}) (Version: 1.22.0 - Nefarius Software Solutions e.U.) WebAdvisor de McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.999 - McAfee, LLC) WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 132.0.2957.127 - Microsoft Corporation) Hidden WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH) Packages: ========= AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.20030.0_x64__0a9344xs7nr4m [2024-10-16] (Advanced Micro Devices Inc.) [Startup Task] Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.26.1420.0_x64__rz1tebttyb220 [2025-01-24] (Dolby Laboratories) Dropbox - promoción -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.27.0_x64__xbfy0k16fey96 [2024-08-15] (Dropbox Inc.) Ink.Handwriting.es-ES.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.es-ES.1.0_0.550.149.0_x64__8wekyb3d8bbwe [2024-08-14] (Microsoft Corporation) Ink.Handwriting.es-ES.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.es-ES.1.0_0.550.149.0_x86__8wekyb3d8bbwe [2024-08-14] (Microsoft Corporation) Ink.Handwriting.Main.es-ES.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.Main.es-ES.1.0_0.237.110.0_x64__8wekyb3d8bbwe [2024-11-05] (Microsoft Corporation) Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.23306.1292.0_x64__8wekyb3d8bbwe [2024-08-18] (Microsoft Corporation) Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2501.20.0_x64__k1h2ywk1493x8 [2025-01-26] (LENOVO INC.) Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.6.12.0_x64__5grkq8ppsgwt4 [2025-01-11] (LENOVO INC) [Startup Task] Lenovo Pen Settings -> C:\Program Files\WindowsApps\WacomTechnologyCorp.157535B83C264_8.2.8.0_neutral__ss941bf8mfs8a [2024-12-11] (Wacom Technology Corp.) Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2412.12002.0_x64__8wekyb3d8bbwe [2025-01-08] (Microsoft Corporation) [Startup Task] Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-08-09] (Microsoft Corp.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2025-01-08] (Microsoft Corporation) Microsoft.MicrosoftPCManager -> C:\Program Files\WindowsApps\Microsoft.MicrosoftPCManager_3.14.18.0_x64__8wekyb3d8bbwe [2025-01-16] (Microsoft Corporation) [Startup Task] Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.5101.0_x64__8wekyb3d8bbwe [2024-12-11] (Microsoft Studios) Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.1.3.0_x64__8wekyb3d8bbwe [2024-11-02] (Microsoft Studios) Painter Essentials -> C:\Program Files\WindowsApps\CorelCorporation.PainterEssentials_8.0.4.0_x64__wbjqpk9xt50t4 [2024-09-27] (Corel Corporation) Simple Wi-Fi Analyzer -> C:\Program Files\WindowsApps\48425ShipwreckSoftware.597360E4258D0_1.10.1003.0_x64__jh2negtepkzpr [2024-12-08] (Shipwreck Software) Speech Pack - Spanish (Spain) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.es-ES.1_1.0.6.0_x64__cw5n1h2txyewy [2024-08-07] (Microsoft Windows) SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0 [2025-01-20] (Spotify AB) [Startup Task] WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2503.5.0_x64__cv1g1gvanyjgm [2025-01-26] (WhatsApp Inc.) [Startup Task] Wi-Fi Connector -> C:\Program Files\WindowsApps\64025SaturatedSoftware.Wi-FiConnector_1.0.0.0_x64__fdx6kdr9e3km4 [2024-12-08] (Francesco Mazzella) WinRAR -> C:\Program Files\WinRAR [2024-10-26] (win.rar GmbH) ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-01-26] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.244.1204.0003\FileSyncShell64.dll [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-01-26] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Lista blanca) ==================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Drivers32-x32: [vidc.VP60] => C:\Windows\system32\vp6vfw.dll HKLM\...\Drivers32-x32: [vidc.VP61] => C:\Windows\system32\vp6vfw.dll ==================== Accesos directos & WMI ======================== (Las entradas pueden ser listadas para ser restauradas o eliminadas.) ShortcutWithArgument: C:\Users\paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OSGeo4W\SAGA GIS 9.5.1.lnk -> C:\OSGeo4W\bin\bgspawn.exe () -> "C:\OSGeo4W\bin\saga_gui.bat" ShortcutWithArgument: C:\Users\paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OSGeo4W\Setup.lnk -> C:\OSGeo4W\bin\bgspawn.exe () -> "C:\OSGeo4W\bin\setup.bat" ==================== Módulos cargados (Lista blanca) ============= 2025-01-26 17:35 - 2025-01-26 17:35 - 002338304 _____ () [Archivo no firmado] \\?\C:\Users\paula\AppData\Local\Temp\eac06046-7f7a-4752-a72d-cb70b8667c6b.tmp.node 2024-10-02 18:48 - 2024-05-08 03:18 - 002862080 _____ () [Archivo no firmado] C:\Users\paula\AppData\Local\Programs\bluestacks-services\ffmpeg.dll 2024-10-02 18:48 - 2024-05-08 03:18 - 000479232 _____ () [Archivo no firmado] C:\Users\paula\AppData\Local\Programs\bluestacks-services\libegl.dll 2024-10-02 18:48 - 2024-05-08 03:18 - 007513600 _____ () [Archivo no firmado] C:\Users\paula\AppData\Local\Programs\bluestacks-services\libglesv2.dll 2024-10-02 18:48 - 2024-05-08 03:18 - 005209088 _____ () [Archivo no firmado] C:\Users\paula\AppData\Local\Programs\bluestacks-services\vk_swiftshader.dll 2024-05-29 20:25 - 2024-04-13 01:18 - 000055808 ____N (Khronos Group) [Archivo no firmado] C:\Windows\SYSTEM32\OpenCL.dll ==================== Alternate Data Streams (Lista blanca) ======== (Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.) AlternateDataStreams: C:\Users\paula\OneDrive\Escritorio\FRST64.exe:MBAM.Zone.Identifier [225] ==================== Modo Seguro (Lista blanca) ================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Asociación (Lista blanca) ================= ==================== Internet Explorer (Lista blanca) ============= BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2024-12-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-12-13] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-01-10] (Microsoft Corporation -> Microsoft Corporation) Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2022-05-07] (Lenovo -> Microsoft Corporation) Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2022-05-07] (Lenovo -> Microsoft Corporation) Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2022-05-07] (Lenovo -> Microsoft Corporation) (Si una entrada es incluida en el fixlist, será eliminada del registro.) IE trusted site: HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\sharepoint.com -> hxxps://unbosqueeduco-files.sharepoint.com ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2022-05-07 00:24 - 2022-05-07 00:22 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\paula\OneDrive\Imágenes\thumb-1920-221064.jpg DNS Servers: 192.168.81.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall de Windows está habilitado. Network Binding: ============= Conexión de red Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys Wi-Fi: Realtek 8852CE WiFi 6E PCI-E NIC -> rtwlane602.sys vms_vsf: Filtro de extensión del conmutador virtual de Hyper-V vms_vsp: Protocolo de extensión del conmutador virtual de Hyper-V ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == (Si una entrada es incluida en el fixlist, será eliminada.) HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_F77C53ECB7B48E59FF4F92F15CDCE50B" HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\StartupApproved\Run: => "BatteryWidgetHost" HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-4088744554-3320150816-3085797151-1001\...\StartupApproved\Run: => "Discord" ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [TCP Query User{B89D67C8-4B0A-4AB5-BEC3-C5BD3705AA45}C:\users\paula\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\paula\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{C7301356-5869-45B3-85C3-4C7E443D5122}C:\users\paula\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\paula\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{86E4A2D5-C4D7-4E7F-A8FC-26F235259048}C:\users\paula\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\paula\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{89814583-EBB0-44EF-AB51-FE3DC19E16F0}C:\users\paula\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\paula\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{A1302255-884D-4423-BC7F-BA2CA71F9957}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{FF830352-3832-45E5-8A9C-DE3B4C6DE23A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{17232A26-E078-4BB6-81DE-1C759CB2381B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{EC979BC3-30F4-4D04-8D35-EA04C17799E9}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3B0416E7-1468-40EF-A111-AC3CF5B20E76}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{54CAA6D4-3D98-44F0-B8A5-453292FC534D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{1D365614-90C7-4521-8788-A06524AE102C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{2774D100-DA5D-4BF7-B131-62409736D802}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{1E566B69-7453-4A3C-B7BC-8275F4125A25}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24193.1805.3040.8975_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7C3A7593-3EA4-41D4-B857-AB1274D49F1B}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24193.1805.3040.8975_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{4D47C0C7-6204-46A7-AADF-542FD9CAC928}C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe FirewallRules: [UDP Query User{6B3C546C-0A0F-4DD4-A9B1-A1F29E2D4F29}C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe FirewallRules: [{691F1831-3CFE-44AC-A330-24298D88CBDB}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Now.gg, INC -> Bluestack Systems, Inc.) FirewallRules: [{1BC57927-3186-47E5-AB4B-5149ACD72233}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe (Now.gg, INC -> BlueStack Systems) FirewallRules: [{5F3EA9AC-F5F6-481F-954E-EA300BA71B33}] => (Allow) C:\Program Files\BlueStacks_nxt\BlueStacksAppplayerWeb.exe (Now.gg, INC -> The Qt Company Ltd.) FirewallRules: [TCP Query User{ABCCB433-52EB-424B-A206-6A0769365221}C:\xboxgames\planet of lana\content\planet of lana.exe] => (Allow) C:\xboxgames\planet of lana\content\planet of lana.exe => Ningún archivo FirewallRules: [UDP Query User{205682A1-52A7-417D-B9B2-D0BB832A66B6}C:\xboxgames\planet of lana\content\planet of lana.exe] => (Allow) C:\xboxgames\planet of lana\content\planet of lana.exe => Ningún archivo FirewallRules: [TCP Query User{4664E08E-55A7-47C4-939F-3F0DE7D85EAF}C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [UDP Query User{09E74258-9D50-445D-AAE3-DF722CD6D40B}C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\paula\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [{F29C5C5B-1728-4100-A086-0A1440F2F73D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{8F8B745B-632E-4C73-B246-C2A429F2EE85}C:\program files\clip studio 1.5\clip studio paint\clipstudiopaint.exe] => (Allow) C:\program files\clip studio 1.5\clip studio paint\clipstudiopaint.exe => Ningún archivo FirewallRules: [UDP Query User{33156018-7819-45E3-A785-B9DDF1884044}C:\program files\clip studio 1.5\clip studio paint\clipstudiopaint.exe] => (Allow) C:\program files\clip studio 1.5\clip studio paint\clipstudiopaint.exe => Ningún archivo FirewallRules: [{3CC72B40-5CA1-4A9F-80E4-49F2E958A0E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe (Warner Bros. Interactive Entertainment, Inc. -> WB Montréal Inc.) FirewallRules: [{19BC6477-6539-45FC-BDBE-D71F45242C56}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe (Warner Bros. Interactive Entertainment, Inc. -> WB Montréal Inc.) FirewallRules: [{5F244149-677B-43D8-B3C6-2ECFDC6E1993}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe (Warner Bros. Interactive Entertainment, Inc. -> WB Montréal Inc.) FirewallRules: [{ADA45A08-1F46-4D95-97D5-28C1706965D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe (Warner Bros. Interactive Entertainment, Inc. -> WB Montréal Inc.) FirewallRules: [{4EC7485D-BA67-4DB5-8A63-9780D3225592}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ItTakesTwo\Nuts\Binaries\Win64\ItTakesTwo.exe (Hazelight Studios AB -> Hazelight Studios) FirewallRules: [{4B42A323-221A-4FE2-AEE7-CACF71B7B42B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ItTakesTwo\Nuts\Binaries\Win64\ItTakesTwo.exe (Hazelight Studios AB -> Hazelight Studios) FirewallRules: [{FB596C9E-E01A-4323-AD32-E7595B40001F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{3E0F7D0A-6362-4982-92C4-A3A2EBC7EBF8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{C2DED4C6-8E40-4380-B825-5AF9B91B8636}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BA8763F8-9CA5-476B-93EA-A82C2D6836AC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{178BB7A1-78EF-4EA1-B958-D62DA50C61B6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{82431496-8082-4027-B8E0-577F55303901}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F4439881-0AEE-446B-B1F9-A095318A7E33}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{42017527-9D2C-489D-A5DD-98D52F394E15}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{77572023-D7B6-4D52-8852-DA1F60FC4B1F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B0D80DC4-183D-4B0E-9628-8B13EA19AE90}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{62589F4E-16DC-480A-9D1C-F8B6CD54C63D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{4280C4B3-00AE-43AA-B8A1-3F2BEECF8CD5}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\132.0.2957.127\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{638396AE-55A5-412F-8DA1-23764B0BC20C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{473C9FFD-223E-4EE3-9FAE-B7FF2979D536}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{5284682D-F331-46D2-A866-021BDAC22FAD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{467D6129-A0D4-4E46-9BEE-54FD320D355A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A00C39EB-836B-4E6A-9DAB-435AAF41C34A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{193DF9CF-B815-4BF4-9F1F-E4DBAE6A466E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{4A30506C-869B-418B-A2C3-056B2D1AC5AD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{C33F1593-C174-4413-92C1-A25265004E94}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{FAE7AD33-1906-4EB9-BB2D-E4BFA0B8933D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E9ABDE81-60B4-4BB0-A58B-F21472FD66AA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{1E4703FB-A319-4DFF-BEE9-80B42B275E1D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) ==================== Puntos de Restauración ========================= 17-01-2025 03:01:39 Eliminación del paquete de idioma 19-01-2025 15:18:04 Eliminación del paquete de idioma 21-01-2025 00:16:44 Instalado CLIP STUDIO PAINT 22-01-2025 15:05:57 Eliminación del paquete de idioma 26-01-2025 13:39:05 Windows Update 26-01-2025 13:39:06 Windows Update 26-01-2025 13:40:12 Eliminación del paquete de idioma ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (01/26/2025 05:11:19 PM) (Source: Application Error) (EventID: 1000) (User: COMPAU) Description: Nombre de la aplicación con errores: GetHelp.exe, versión: 10.2409.2410.21001, marca de tiempo: 0x66960000 Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000 Código de excepción: 0x80131623 Desplazamiento de errores: 0x00007ffafc5ad4d1 Identificador del proceso con errores: 0x0x3a34 Hora de inicio de la aplicación con errores: 0x0x1db7032efbee592 Ruta de acceso de la aplicación con errores: C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2409.22951.0_x64__8wekyb3d8bbwe\GetHelp.exe Ruta de acceso del módulo con errores: unknown Identificador del informe: de0d666f-ba77-4f8b-a35b-a11881efa230 Nombre completo del paquete con errores: Microsoft.GetHelp_10.2409.22951.0_x64__8wekyb3d8bbwe Identificador de aplicación relativa del paquete con errores: App Error: (01/26/2025 05:11:19 PM) (Source: .NET Runtime) (EventID: 1025) (User: ) Description: Application: GetHelp.exe CoreCLR Version: 6.0.3324.36610 .NET Version: 6.0.33 Description: The application requested process termination through System.Environment.FailFast(string message). Message: Infinite recursion during resource lookup within System.Private.CoreLib. This may be a bug in System.Private.CoreLib, or potentially in certain extensibility points such as assembly resolve events or CultureInfo names. Resource name: Arg_NullReferenceException Stack: at System.Environment.FailFast(System.String) at System.SR.InternalGetResourceString(System.String) at System.SR.GetResourceString(System.String) at System.NullReferenceException..ctor() at System.Globalization.CultureInfo.get_CurrentUICulture() at System.Resources.ResourceManager.GetString(System.String, System.Globalization.CultureInfo) at System.SR.InternalGetResourceString(System.String) at System.SR.GetResourceString(System.String) at System.NullReferenceException..ctor() at System.Globalization.CultureInfo.get_CurrentUICulture() at System.Resources.ResourceManager.GetString(System.String, System.Globalization.CultureInfo) at System.SR.InternalGetResourceString(System.String) at System.SR.GetResourceString(System.String) at System.Threading.Tasks.TaskCanceledException..ctor(System.Threading.Tasks.Task) at System.Threading.Tasks.Task.GetExceptions(Boolean) at System.Threading.Tasks.Task.ThrowIfExceptional(Boolean) at System.Threading.Tasks.Task.Wait(Int32, System.Threading.CancellationToken) at System.Threading.Tasks.Task.Wait() at OpenTelemetry.Internal.SelfDiagnosticsConfigRefresher.Dispose(Boolean) at OpenTelemetry.Internal.SelfDiagnostics+<>c.<.cctor>b__2_0(System.Object, System.EventArgs) at System.AppContext.OnProcessExit() Error: (01/24/2025 03:02:46 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY) Description: El programa GameBar.exe versión 7.224.11211.0 dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre este problema, comprueba el historial de problemas en el panel de control de Seguridad y mantenimiento. Error: (01/21/2025 12:20:15 AM) (Source: Application Error) (EventID: 1000) (User: COMPAU) Description: Nombre de la aplicación con errores: EADesktop.exe, versión: 13.377.0.5890, marca de tiempo: 0x6787fbe6 Nombre del módulo con errores: ntdll.dll, versión: 10.0.22621.4541, marca de tiempo: 0xe7035eba Código de excepción: 0xc0000374 Desplazamiento de errores: 0x000000000010cb69 Identificador del proceso con errores: 0x0x5130 Hora de inicio de la aplicación con errores: 0x0x1db6b6d15f9ae46 Ruta de acceso de la aplicación con errores: C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe Ruta de acceso del módulo con errores: C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 47c94066-edda-4e3a-a662-75b279d6d5e0 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (01/21/2025 12:20:11 AM) (Source: Application Error) (EventID: 1000) (User: COMPAU) Description: Nombre de la aplicación con errores: EAConnect_microsoft.exe, versión: 13.377.0.5890, marca de tiempo: 0x6787fbb6 Nombre del módulo con errores: ntdll.dll, versión: 10.0.22621.4541, marca de tiempo: 0xe7035eba Código de excepción: 0xc0000374 Desplazamiento de errores: 0x000000000010cb69 Identificador del proceso con errores: 0x0x5294 Hora de inicio de la aplicación con errores: 0x0x1db6b6d15b33d47 Ruta de acceso de la aplicación con errores: C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe Ruta de acceso del módulo con errores: C:\Windows\SYSTEM32\ntdll.dll Identificador del informe: 173be1e8-43e6-4f94-94c2-862ecabdeb62 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (01/17/2025 01:42:15 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: COMPAU) Description: No se pudo cerrar la aplicación o el servicio 'Microsoft Office SDX Helper'. Error: (01/14/2025 03:00:44 PM) (Source: Windows App Runtime) (EventID: 22) (User: ) Description: Event-ID 22 Error: (01/12/2025 08:04:01 PM) (Source: VSS) (EventID: 13) (User: ) Description: Información del Servicio de instantáneas de volumen: el servidor COM con CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} y el nombre CEventSystem no puede iniciarse. [0x8007045b, Se está cerrando el sistema.] Errores del sistema: ============= Error: (01/26/2025 05:34:24 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 247) (User: NT AUTHORITY) Description: 32212254870 Error: (01/26/2025 11:57:09 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: El cierre anterior del sistema a las 10:28:46 del ‎26/‎01/‎2025 resultó inesperado. Error: (01/26/2025 11:56:54 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 247) (User: NT AUTHORITY) Description: 32212254870 Error: (01/25/2025 10:29:24 AM) (Source: DCOM) (EventID: 10010) (User: COMPAU) Description: El servidor {C53A4F16-787E-42A4-B304-29EFFB4BF597} no se registró con DCOM dentro del tiempo de espera requerido. Error: (01/25/2025 10:22:56 AM) (Source: DCOM) (EventID: 10010) (User: COMPAU) Description: El servidor {C53A4F16-787E-42A4-B304-29EFFB4BF597} no se registró con DCOM dentro del tiempo de espera requerido. Error: (01/25/2025 03:59:44 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: El servidor {338B40F9-9D68-4B53-A793-6B9AA0C5F63B} no se registró con DCOM dentro del tiempo de espera requerido. Error: (01/24/2025 06:31:20 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Error de instalación: error de Windows al instalar la siguiente actualización, error (0x80073d02 = No se pudo instalar el paquete porque los recursos que modifica están actualmente en uso.): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop. Error: (01/24/2025 06:21:04 AM) (Source: DCOM) (EventID: 10010) (User: COMPAU) Description: El servidor {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} no se registró con DCOM dentro del tiempo de espera requerido. Windows Defender: ================ Date: 2025-01-26 17:37:02 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/Packunwan&threatid=298189&enterprise=0 Nombre: PUA:Win32/Packunwan Id.: 298189 Gravedad: Baja Categoría: Software potencialmente no deseado Ruta de acceso: file:_C:\Program Files\CLIP STUDIO 1.5\CLIP STUDIO PAINT\CLIPStudioPaint.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.421.1547.0, AS: 1.421.1547.0, NIS: 1.421.1547.0 Versión de motor: AM: 1.1.24090.11, NIS: 1.1.24090.11 Date: 2025-01-26 17:36:24 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/Packunwan&threatid=298189&enterprise=0 Nombre: PUA:Win32/Packunwan Id.: 298189 Gravedad: Baja Categoría: Software potencialmente no deseado Ruta de acceso: file:_C:\Program Files\CLIP STUDIO 1.5\CLIP STUDIO PAINT\CLIPStudioPaint.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: Nombre de proceso: C:\Windows\System32\RuntimeBroker.exe Versión de inteligencia de seguridad: AV: 1.421.1547.0, AS: 1.421.1547.0, NIS: 1.421.1547.0 Versión de motor: AM: 1.1.24090.11, NIS: 1.1.24090.11 Date: 2025-01-26 17:35:09 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/Packunwan&threatid=298189&enterprise=0 Nombre: PUA:Win32/Packunwan Id.: 298189 Gravedad: Baja Categoría: Software potencialmente no deseado Ruta de acceso: file:_C:\Program Files\CLIP STUDIO 1.5\CLIP STUDIO PAINT\CLIPStudioPaint.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: Nombre de proceso: C:\Windows\System32\RuntimeBroker.exe Versión de inteligencia de seguridad: AV: 1.421.1547.0, AS: 1.421.1547.0, NIS: 1.421.1547.0 Versión de motor: AM: 1.1.24090.11, NIS: 1.1.24090.11 Date: 2025-01-26 17:25:34 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/Packunwan&threatid=298189&enterprise=0 Nombre: PUA:Win32/Packunwan Id.: 298189 Gravedad: Baja Categoría: Software potencialmente no deseado Ruta de acceso: file:_C:\Program Files\CLIP STUDIO 1.5\CLIP STUDIO PAINT\CLIPStudioPaint.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: compau\paula Nombre de proceso: C:\Windows\System32\RuntimeBroker.exe Versión de inteligencia de seguridad: AV: 1.421.1547.0, AS: 1.421.1547.0, NIS: 1.421.1547.0 Versión de motor: AM: 1.1.24090.11, NIS: 1.1.24090.11 Date: 2024-12-07 16:46:37 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/Packunwan&threatid=298189&enterprise=0 Nombre: PUA:Win32/Packunwan Id.: 298189 Gravedad: Baja Categoría: Software potencialmente no deseado Ruta de acceso: file:_C:\Program Files\CLIP STUDIO 1.5\CLIP STUDIO PAINT\CLIPStudioPaint.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: compau\paula Nombre de proceso: C:\Windows\System32\RuntimeBroker.exe Versión de inteligencia de seguridad: AV: 1.421.671.0, AS: 1.421.671.0, NIS: 1.421.671.0 Versión de motor: AM: 1.1.24090.11, NIS: 1.1.24090.11 Event[0] Date: 2024-12-16 21:20:34 Description: Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: Versión anterior de inteligencia de seguridad: 1.421.822.0 Origen de actualización: Servidor de Microsoft Update Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: Versión anterior del motor: 1.1.24090.11 Código de error: 0x8024402c Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. CodeIntegrity: =============== Date: 2025-01-26 18:04:33 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\wscript.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. Date: 2025-01-26 17:46:02 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements. ==================== Información de la memoria =========================== BIOS: LENOVO P1CN15WW 03/07/2024 Placa base: LENOVO LNVNB161216 Procesador: AMD Ryzen 5 8645HS w/ Radeon 760M Graphics Porcentaje de memoria en uso: 65% RAM física total: 14120.63 MB RAM física disponible: 4851.83 MB Virtual total: 27944.63 MB Virtual disponible: 13262.92 MB ==================== Unidades ================================ Drive c: (Windows-SSD) (Fixed) (Total:474.72 GB) (Free:203.13 GB) (Model: SKHynix_HFS512GEJ4X112N) (Protected) NTFS \\?\Volume{077b15f0-b76b-45c2-b68f-445806f47d43}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.2 GB) NTFS \\?\Volume{21f7f4d1-a2ff-4557-872a-734625fd980d}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32 ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: 83557E6C) Partition: GPT. ==================== Final de Addition.txt =======================