Resultados de la corrección de Farbar Recovery Scan Tool (x86) Versión: 11-04-2021 Ejecutado por Compaq (28-04-2021 01:01:04) Run:1 Ejecutado desde C:\Users\Compaq\Desktop Perfiles cargados: Compaq Modo de Inicio: Normal ============================================== fixlist contenido: ***************** START CREATERESTOREPOINT: CLOSEPROCESSES: HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N Task: {4C7ABC85-FE40-4DF3-B340-4256A8EDA3C6} - System32\Tasks\{FDD08436-66A3-4A89-AF72-BA2B732D2579} => C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Task: {611FCC7E-2BE6-4FE6-82E9-C9FF46DFD8C5} - System32\Tasks\{CD345DAA-7035-4F59-864B-A0513F4D324D} => C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Task: {64DA3287-8A12-4FBC-B712-C4D1C652D7CD} - System32\Tasks\{0796BA5E-6EEB-4D9D-9EF5-94A970364435} => C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Task: {8216A799-EBD8-4DCD-A6A8-B86E4DC96DAC} - System32\Tasks\{DFB11A7F-BE40-4877-8228-F545859A8AAD} => C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Task: {B84DF9A1-7B83-43D0-8064-2A6EE64E8755} - System32\Tasks\{5B3BBA59-461D-49A6-8975-6126C5668557} => C:\Windows\system32\pcalua.exe -a "C:\Users\Compaq\Desktop\AGE 2 FULL\01 age king\aoesetup.exe.EXE" -d "C:\Users\Compaq\Desktop\AGE 2 FULL\01 age king" Task: {C8875130-EE87-4D0B-A80F-C19F7CD84723} - System32\Tasks\{AF5C402B-B4CB-4EB1-AD0F-B52490852059} => C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Task: {DEA0D9DA-DDC3-425D-B110-6BD57CF6A5B8} - System32\Tasks\{DE339366-2D63-4F39-841D-248167EF0638} => C:\Windows\system32\pcalua.exe -a "C:\Users\Compaq\Desktop\AGE 2 FULL\02 age Conquerors\aocsetup.exe.EXE" -d "C:\Users\Compaq\Desktop\AGE 2 FULL\02 age Conquerors" C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe C:\Program Files\Malwarebytes FF Plugin: @microsoft.com/GENUINE -> disabled [Ning�n archivo] FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.) [Archivo no firmado] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] 2021-03-30 20:46 - 2021-03-30 20:46 - 000222648 _____ (Malwarebytes) C:\Windows\system32\Drivers\624735FF.sys 2021-03-28 01:50 - 2021-03-28 01:50 - 000222648 _____ (Malwarebytes) C:\Windows\system32\Drivers\65675A01.sys 2021-03-28 01:43 - 2021-03-30 20:59 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2021-03-27 20:11 - 2021-03-27 20:11 - 000002972 _____ C:\Windows\system32\Tasks\{FDD08436-66A3-4A89-AF72-BA2B732D2579} 2021-03-27 20:11 - 2021-03-27 20:11 - 000002972 _____ C:\Windows\system32\Tasks\{CD345DAA-7035-4F59-864B-A0513F4D324D} 2021-03-27 20:10 - 2021-03-27 20:10 - 000002972 _____ C:\Windows\system32\Tasks\{DFB11A7F-BE40-4877-8228-F545859A8AAD} 2021-03-27 20:10 - 2021-03-27 20:10 - 000002972 _____ C:\Windows\system32\Tasks\{AF5C402B-B4CB-4EB1-AD0F-B52490852059} 2021-03-27 20:10 - 2021-03-27 20:10 - 000002972 _____ C:\Windows\system32\Tasks\{0796BA5E-6EEB-4D9D-9EF5-94A970364435} 2021-04-07 18:33 - 2007-08-31 23:40 - 000000000 ____D C:\Users\Compaq\Documents\RemoveWAT 2.2.6 2021-04-01 11:58 - 2021-01-27 15:25 - 000003234 _____ C:\Windows\system32\Tasks\{5B3BBA59-461D-49A6-8975-6126C5668557} 2021-04-01 11:57 - 2021-01-27 15:38 - 000003258 _____ C:\Windows\system32\Tasks\{DE339366-2D63-4F39-841D-248167EF0638} 2021-03-31 21:06 - 2020-10-06 00:18 - 000000000 ____D C:\Users\Compaq\AppData\Roaming\Avast Software ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => -> Ning�n archivo ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => -> Ning�n archivo Shortcut: C:\Users\Compaq\Desktop\MIO\AGE 2 FULL\02 age Conquerors\GAME\AGE2_X1\agefixed.lnk -> C:\Program Files\Microsoft Games\Age of Empires II\age2_x1\agefix.bat (Ning�n archivo) Shortcut: C:\Users\Compaq\Desktop\Juegos\AGE 2 FULL\02 age Conquerors\GAME\AGE2_X1\agefixed.lnk -> C:\Program Files\Microsoft Games\Age of Empires II\age2_x1\agefix.bat (Ning�n archivo) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" File: C:\Users\Compaq\Desktop\mo1axva7.exe VirusTotal: C:\Users\Compaq\Desktop\mo1axva7.exe Folder: C:\Users\Compaq\Desktop\MIO Folder: C:\Users\Compaq\Downloads\NFSU Mods File: C:\Users\Compaq\AppData\Roaming\gmi_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt VirusTotal: C:\Users\Compaq\AppData\Roaming\gmi_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt File: C:\Users\Compaq\AppData\Local\recently-used.xbel VirusTotal: C:\Users\Compaq\AppData\Local\recently-used.xbel Folder: C:\Users\Compaq\Documents\dpr File: C:\Users\Compaq\Downloads\GMP Brakes.rar VirusTotal: C:\Users\Compaq\Downloads\GMP Brakes.rar File: C:\Users\Compaq\Downloads\Skyline R32 NFSU2.rar VirusTotal: C:\Users\Compaq\Downloads\Skyline R32 NFSU2.rar Folder: C:\Users\Compaq\Downloads\Skyline R32 NFSU2 CMD: ipconfig /flushdns CMD: ipconfig /renew CMD: bitsadmin /reset /allusers CMD: netsh winsock reset CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state ON CMD: netsh int ipv4 reset CMD: netsh int ipv6 reset RemoveProxy: EmptyTemp: Hosts: END ***************** El punto de restauración fue creado correctamente. Procesos cerrados correctamente. HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C7ABC85-FE40-4DF3-B340-4256A8EDA3C6}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C7ABC85-FE40-4DF3-B340-4256A8EDA3C6}" => eliminado correctamente C:\Windows\System32\Tasks\{FDD08436-66A3-4A89-AF72-BA2B732D2579} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FDD08436-66A3-4A89-AF72-BA2B732D2579}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{611FCC7E-2BE6-4FE6-82E9-C9FF46DFD8C5}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{611FCC7E-2BE6-4FE6-82E9-C9FF46DFD8C5}" => eliminado correctamente C:\Windows\System32\Tasks\{CD345DAA-7035-4F59-864B-A0513F4D324D} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CD345DAA-7035-4F59-864B-A0513F4D324D}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{64DA3287-8A12-4FBC-B712-C4D1C652D7CD}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64DA3287-8A12-4FBC-B712-C4D1C652D7CD}" => eliminado correctamente C:\Windows\System32\Tasks\{0796BA5E-6EEB-4D9D-9EF5-94A970364435} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0796BA5E-6EEB-4D9D-9EF5-94A970364435}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8216A799-EBD8-4DCD-A6A8-B86E4DC96DAC}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8216A799-EBD8-4DCD-A6A8-B86E4DC96DAC}" => eliminado correctamente C:\Windows\System32\Tasks\{DFB11A7F-BE40-4877-8228-F545859A8AAD} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DFB11A7F-BE40-4877-8228-F545859A8AAD}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B84DF9A1-7B83-43D0-8064-2A6EE64E8755}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B84DF9A1-7B83-43D0-8064-2A6EE64E8755}" => eliminado correctamente C:\Windows\System32\Tasks\{5B3BBA59-461D-49A6-8975-6126C5668557} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5B3BBA59-461D-49A6-8975-6126C5668557}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C8875130-EE87-4D0B-A80F-C19F7CD84723}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C8875130-EE87-4D0B-A80F-C19F7CD84723}" => eliminado correctamente C:\Windows\System32\Tasks\{AF5C402B-B4CB-4EB1-AD0F-B52490852059} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AF5C402B-B4CB-4EB1-AD0F-B52490852059}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DEA0D9DA-DDC3-425D-B110-6BD57CF6A5B8}" => eliminado correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEA0D9DA-DDC3-425D-B110-6BD57CF6A5B8}" => eliminado correctamente C:\Windows\System32\Tasks\{DE339366-2D63-4F39-841D-248167EF0638} => movido correctamente "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DE339366-2D63-4F39-841D-248167EF0638}" => eliminado correctamente "C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe" => no encontrado C:\Program Files\Malwarebytes => movido correctamente HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE => eliminado correctamente HKLM\Software\MozillaPlugins\Adobe Reader => eliminado correctamente HKLM\System\CurrentControlSet\Services\Synth3dVsc => eliminado correctamente Synth3dVsc => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\tsusbhub => eliminado correctamente tsusbhub => servicio eliminado correctamente HKLM\System\CurrentControlSet\Services\VGPU => eliminado correctamente VGPU => servicio eliminado correctamente C:\Windows\system32\Drivers\624735FF.sys => movido correctamente C:\Windows\system32\Drivers\65675A01.sys => movido correctamente C:\ProgramData\Malwarebytes' Anti-Malware (portable) => movido correctamente "C:\Windows\system32\Tasks\{FDD08436-66A3-4A89-AF72-BA2B732D2579}" => no encontrado "C:\Windows\system32\Tasks\{CD345DAA-7035-4F59-864B-A0513F4D324D}" => no encontrado "C:\Windows\system32\Tasks\{DFB11A7F-BE40-4877-8228-F545859A8AAD}" => no encontrado "C:\Windows\system32\Tasks\{AF5C402B-B4CB-4EB1-AD0F-B52490852059}" => no encontrado "C:\Windows\system32\Tasks\{0796BA5E-6EEB-4D9D-9EF5-94A970364435}" => no encontrado C:\Users\Compaq\Documents\RemoveWAT 2.2.6 => movido correctamente "C:\Windows\system32\Tasks\{5B3BBA59-461D-49A6-8975-6126C5668557}" => no encontrado "C:\Windows\system32\Tasks\{DE339366-2D63-4F39-841D-248167EF0638}" => no encontrado C:\Users\Compaq\AppData\Roaming\Avast Software => movido correctamente HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MBAMShlExt => eliminado correctamente HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\MBAMShlExt => eliminado correctamente C:\Users\Compaq\Desktop\MIO\AGE 2 FULL\02 age Conquerors\GAME\AGE2_X1\agefixed.lnk => movido correctamente C:\Users\Compaq\Desktop\Juegos\AGE 2 FULL\02 age Conquerors\GAME\AGE2_X1\agefixed.lnk => movido correctamente ========================= File: C:\Users\Compaq\Desktop\mo1axva7.exe ======================== C:\Users\Compaq\Desktop\mo1axva7.exe El archivo está firmado digitalmente MD5: E3506C55E4AA6B7A640284A650432CD2 Fecha de creación y modificación: 2021-04-07 00:05 - 2021-04-07 02:48 Tamaño: 243542488 Atributos: ---AH Nombre de la compañía: Doctor Web Ltd. -> Interno Nombre: Original Nombre: Producto: Descripción: Archivo Versión: Producto Versión: Copyright: VirusTotal: 0 ====== Final de File: ======