Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 07-06-2025 Ejecutado por ArturoParra (administrador) sobre ARTURO-PARRA (LENOVO 81MU) (16-06-2025 20:55:26) Ejecutado desde C:\USUARIO\Desktop\FRST64.exe Perfiles cargados: ArturoParra Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.5854 (X64) Idioma: Español (España, internacional) Navegador predeterminado: Brave Modo de Inicio: Normal ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) () [Archivo no firmado] C:\Windows\Temp\FC593738-DB26-4FE0-949D-5B21CCE19AA5\MpSigStub.exe (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxEM.exe (explorer.exe ->) (Cloudflare, Inc. -> Cloudflare) C:\Program Files\Cloudflare\Cloudflare WARP\Cloudflare WARP.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpCmdRun.exe <2> (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\UpdatePlatform.amd64fre.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Cloudflare, Inc. -> ) C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_184c9b8d8e2ceace\DAX3API.exe <2> (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_519e9d65242d4869\Intel_PIE_Service.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a9a2dde7124f013f\OneApp.IGCC.WinService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_5d54dd32fa1ef4d4\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_5d54dd32fa1ef4d4\IntelCpHeciSvc.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_86dc7f4c001ddecd\RstMwService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_3aa6688a380906ed\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-1475189372-905897940-3643049737-1001\...\Run: [KeePassXC] => C:\Program Files\KeePassXC\KeePassXC.exe [5600840 2025-03-03] (DroidMonkey Apps, LLC -> KeePassXC Team) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe [2025-06-12] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Cloudflare WARP.lnk [2025-06-15] ShortcutTarget: Cloudflare WARP.lnk -> C:\Program Files\Cloudflare\Cloudflare WARP\Cloudflare WARP.exe (Cloudflare, Inc. -> Cloudflare) ==================== Tareas programadas (Lista blanca) ================= (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {DAB8645A-1ADC-4E95-907B-D801DD87D151} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [5960488 2025-05-18] (Microsoft Windows -> Microsoft Corporation) Task: {7B0B0052-0333-452F-BCC7-18BFD8F99522} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpCmdRun.exe [1753416 2025-05-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8EDE4FF2-4478-4A82-AF73-5621EA174F8A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpCmdRun.exe [1753416 2025-05-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5CC86818-8E6E-48C9-9722-7F5ACD2BD743} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpCmdRun.exe [1753416 2025-05-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {35F81A3C-60EA-496B-9F20-92EF2F0A9887} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpCmdRun.exe [1753416 2025-05-22] (Microsoft Windows Publisher -> Microsoft Corporation) (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\0525F495543445F465943594F4E40264F473534393: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\0525F495543445F4D265943594F4E4: [NameServer] 1.1.1.1,208.67.222.123 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\0525F495543445F4D265943594F4E4: [DhcpNameServer] 1.1.1.1 1.0.0.1 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\434313534333139343830353: [DhcpNameServer] 200.21.200.80 200.21.200.10 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\94E46554254554343502: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\94E46554254554343502: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\D6F647F602762323F583138393: [NameServer] 1.1.1.1,208.67.222.123 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\D6F647F602762323F583138393: [DhcpNameServer] 192.168.155.156 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\D6F647F602767323F513632313: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{12bcacf5-d72b-40e9-95cf-ed275e5c3760}\D6F647F602767323F513632313: [DhcpNameServer] 192.168.233.75 FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-07-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Ningún archivo] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Ningún archivo] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-06-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Ningún archivo] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Ningún archivo] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Ningún archivo] FF Plugin-x32: @java.com/DTPlugin,version=11.391.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.391.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-07-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-07-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Ningún archivo] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Ningún archivo] FF Plugin HKU\S-1-5-21-1475189372-905897940-3643049737-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Ningún archivo] FF Plugin HKU\S-1-5-21-1475189372-905897940-3643049737-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Ningún archivo] FF Plugin HKU\S-1-5-21-1475189372-905897940-3643049737-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Ningún archivo] Chrome: ======= CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKU\S-1-5-21-1475189372-905897940-3643049737-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] Brave: ======= BRA DefaultProfile: Default BRA Profile: C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-06-17] BRA Extension: (uBlock Origin) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2025-05-15] BRA Extension: (MarkerNote - web, resaltador de PDF y notas) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dmajilfknankpppoomabobggpnpdlbnl [2025-04-28] BRA Extension: (Language Reactor) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hoombieeljmmljlkjmnheibnpciblicm [2025-06-14] BRA Extension: (Read Pronunciation: English & French) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ieimachclakgpglmhafclnfklklomfeh [2024-11-02] BRA Extension: (Resaltador para Google Chrome ™) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lebapnohkilocjiocfcaljckcdoaciae [2024-09-12] BRA Extension: (Traductor IA) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\noagjioaihamoljcbelhdlldnmlgnkon [2025-05-20] BRA Extension: (Privacy Badger) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2025-06-02] BRA Profile: C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\Guest Profile [2024-04-03] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-06-16] BRA Extension: (Brave Local Data Files Updater) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-06-17] BRA Extension: (Brave NTP background images) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-04-18] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-06-17] BRA Extension: (Wallet Data Files Updater) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-22] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-06-17] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-12-02] BRA Extension: (Brave Ads Resources) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\elecgkckipdmnkkgndidemmdhdcdfhnp [2025-01-23] BRA Extension: (Brave Ad Block Updater (EasyList Spanish (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\fejmaeodjeekfldnbegjagemjgnmhfof [2025-06-17] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-05-14] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-06-17] BRA Extension: (Brave SpeedReader Updater) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-05-10] BRA Extension: (Brave Ad Block Updater (Easylist-Cookie List - Filter Obtrusive Cookie Notices)) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\lfgnenkkneohplacnfabidofpgcdpofm [2022-12-02] BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\meimhmgfbckapkbbbdaoefgnbppmkodp [2025-06-16] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-03-24] BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2024-09-19] BRA Extension: (Brave NTP sponsored images) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\ogdjnhmejccgjdnclbeghpffmecndeai [2025-06-16] BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2025-06-17] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-25] BRA Extension: (Brave Ad Block Updater (EasyList Spanish)) - C:\Users\USUARIO\AppData\Local\BraveSoftware\Brave-Browser\User Data\pdecoifadfkklajdlmndjpkhabpklldh [2022-12-02] ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-17] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveElevationService1da65f5cdb0e866; C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe [3205712 2025-06-11] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-17] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14023752 2024-06-21] (Microsoft Corporation -> Microsoft Corporation) R2 CloudflareWARP; C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe [48942136 2025-05-23] (Cloudflare, Inc. -> ) R2 DolbyDAXAPI; C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_184c9b8d8e2ceace\DAX3API.exe [2521744 2024-06-06] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [44056 2024-06-20] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [292888 2024-06-20] (Intel Corporation -> Intel) R2 FMAPOService; C:\Windows\System32\FMService64.exe [381808 2020-05-11] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe [2071592 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_3aa6688a380906ed\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-28] (NVIDIA Corporation -> NVIDIA Corporation) S3 PrintNotify; C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll [3865088 2025-03-19] (Microsoft Corporation) [Archivo no firmado] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559304 2025-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\NisSrv.exe [4513624 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe [278328 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) S3 AsusPTPDrv; C:\Windows\System32\drivers\AsusPTPFilter.sys [112336 2019-10-03] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) S3 clwvd7; C:\Windows\System32\drivers\clwvd7.sys [42968 2015-03-24] (CyberLink Corp. -> CyberLink Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 HIDSwitch; C:\Windows\System32\drivers\AsRadioControl.sys [32680 2019-08-08] (ASUSTek Computer Inc. -> ASUS) R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [330112 2025-06-17] (Microsoft Windows -> Microsoft Corporation) R3 necbatt; C:\Windows\System32\drivers\necbatt.sys [34880 2018-05-10] (NEC Personal Computers, Ltd. -> NEC Personal Computers, Ltd.) R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation) R3 phantomtap; C:\Windows\System32\drivers\phantomtap.sys [50248 2020-07-06] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2021-03-26] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2021-03-26] (MiniTool Solution Ltd -> ) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 VOICEMOD_Driver; C:\Windows\system32\drivers\vmdrv.sys [48136 2021-05-13] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20032 2025-06-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [612768 2025-06-17] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100744 2025-06-17] (Microsoft Windows -> Microsoft Corporation) S3 wintun; C:\Windows\System32\drivers\wintun.sys [29592 2025-05-30] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) (Lista blanca) ========= (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2025-06-16 11:30 - 2025-06-16 11:30 - 000005722 _____ C:\Windows\system32\PerfStringBackup.TMP 2025-06-15 16:53 - 2025-06-15 16:53 - 000014186 _____ C:\DoesNotBelong_2025_06_15__16_43_48.txt 2025-06-15 16:45 - 2025-06-15 16:45 - 000003662 _____ C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask 2025-06-15 16:39 - 2025-06-15 16:39 - 000000000 ____D C:\SecurityCheck 2025-06-15 14:25 - 2025-06-16 11:17 - 000000000 ____D C:\Users\USUARIO\AppData\Local\Cloudflare 2025-06-15 14:24 - 2025-06-16 20:13 - 000000000 ____D C:\ProgramData\Cloudflare 2025-06-15 14:24 - 2025-06-15 14:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cloudflare 2025-06-15 14:24 - 2025-06-15 14:24 - 000000000 ____D C:\Program Files\Cloudflare 2025-06-12 22:19 - 2025-06-12 22:19 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2025-06-10 08:37 - 2025-06-10 08:37 - 000000000 ____D C:\Users\USUARIO\OneDrive\Documentos\Zoom 2025-06-03 15:31 - 2025-06-03 15:31 - 000000000 ____D C:\Windows\Panther 2025-06-01 17:03 - 2025-06-01 17:03 - 000000000 ____D C:\KVRT2020_Data 2025-05-18 14:38 - 2025-05-18 14:38 - 000022680 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-05-18 14:33 - 2025-05-18 14:33 - 000022680 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2025-05-18 13:12 - 2025-05-18 13:12 - 000000000 ___HD C:\$WinREAgent ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2025-06-16 20:56 - 2025-03-30 17:44 - 000000000 ____D C:\FRST 2025-06-16 20:54 - 2019-12-07 08:01 - 000000000 ____D C:\Windows\system32\Drivers\wd 2025-06-16 20:52 - 2021-12-18 22:42 - 000000000 ____D C:\Windows\SystemTemp 2025-06-16 20:45 - 2025-04-13 14:33 - 000000000 ____D C:\Users\USUARIO\AppData\Local\KeePassXC 2025-06-16 20:42 - 2020-06-20 18:46 - 000000000 ____D C:\ProgramData\NVIDIA 2025-06-16 20:41 - 2019-12-07 04:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-06-16 20:40 - 2023-07-22 08:43 - 000008192 ___SH C:\DumpStack.log.tmp 2025-06-16 20:40 - 2020-06-25 12:19 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-06-16 20:40 - 2020-06-01 07:47 - 000000000 ____D C:\Intel 2025-06-16 20:40 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\ServiceState 2025-06-16 20:38 - 2019-12-07 04:03 - 000524288 _____ C:\Windows\system32\config\BBI 2025-06-16 20:13 - 2020-06-25 11:58 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-06-16 11:30 - 2019-12-07 04:13 - 000000000 ____D C:\Windows\INF 2025-06-15 20:54 - 2024-01-14 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2025-06-15 20:54 - 2024-01-14 15:04 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2025-06-15 20:19 - 2019-12-08 22:00 - 000000000 ____D C:\ProgramData\Package Cache 2025-06-15 18:04 - 2020-06-01 07:14 - 000000000 ____D C:\Users\USUARIO\AppData\Roaming\Microsoft\Word 2025-06-15 17:25 - 2019-12-07 08:22 - 000000000 ____D C:\Users\USUARIO\AppData\Local\D3DSCache 2025-06-15 16:53 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\Tasks_Migrated 2025-06-14 13:50 - 2020-06-24 21:32 - 000000000 ____D C:\Windows\system32\MRT 2025-06-14 13:46 - 2020-06-24 21:32 - 216824056 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2025-06-12 14:38 - 2022-10-16 20:15 - 000002372 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2025-06-10 22:44 - 2020-06-20 17:23 - 000000000 ____D C:\Users\USUARIO\AppData\Roaming\Microsoft\Excel 2025-06-10 12:29 - 2020-06-25 12:09 - 001773056 _____ C:\Windows\system32\PerfStringBackup.INI 2025-06-03 15:08 - 2021-02-21 16:14 - 000000000 ____D C:\Windows\CbsTemp 2025-06-03 13:48 - 2021-02-15 11:09 - 000000000 ____D C:\Windows\AppReadiness 2025-06-03 13:48 - 2019-12-07 08:15 - 000000000 ____D C:\Users\USUARIO\AppData\Local\Packages 2025-06-03 13:48 - 2019-12-07 04:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-06-03 13:44 - 2021-09-16 07:57 - 000000000 ____D C:\ProgramData\Lenovo 2025-06-03 13:44 - 2021-02-19 15:03 - 000000000 ____D C:\Users\USUARIO\AppData\Local\Lenovo 2025-06-03 13:44 - 2021-02-19 15:03 - 000000000 ____D C:\Program Files (x86)\Lenovo 2025-06-03 13:04 - 2019-12-07 08:15 - 000000000 ____D C:\ProgramData\Packages 2025-05-30 13:31 - 2022-11-05 13:02 - 000054529 _____ C:\Windows\system32\battery-report.html 2025-05-28 10:55 - 2025-04-13 14:30 - 000000000 ____D C:\Users\USUARIO\AppData\Roaming\KeePassXC 2025-05-18 15:31 - 2024-01-15 09:40 - 000743240 _____ C:\Windows\system32\FNTCACHE.DAT 2025-05-18 15:24 - 2020-07-13 15:14 - 000000000 ____D C:\Windows\system32\oobe 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\SystemResources 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\ShellExperiences 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\setup 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2025-05-18 15:24 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ___RD C:\Windows\PrintDialog 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\system32\Dism 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\ShellExperiences 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\ShellComponents 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2025-05-18 15:23 - 2019-12-07 04:14 - 000000000 ____D C:\Windows\bcastdvr 2025-05-18 15:23 - 2019-12-07 04:03 - 000000000 ____D C:\Windows\servicing 2025-05-18 11:43 - 2024-12-18 11:35 - 000000000 ____D C:\Users\USUARIO\AppData\Roaming\MPC-HC 2025-05-17 14:15 - 2022-09-07 09:18 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-05-17 14:15 - 2020-06-01 08:01 - 000000000 ____D C:\Users\USUARIO\AppData\Roaming\Mozilla 2025-05-17 13:38 - 2023-06-27 11:42 - 000000000 ____D C:\Users\USUARIO\OneDrive\Documentos\Carro_Monica 2025-05-17 12:07 - 2020-06-21 13:14 - 000000000 ____D C:\Users\USUARIO\AppData\Local\ElevatedDiagnostics ==================== Archivos en la raíz de algunos directorios ======== 2024-07-29 10:24 - 2024-07-29 10:24 - 000001052 _____ () C:\Users\USUARIO\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) ==================== Final de FRST.txt ========================