Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 10.04.2024 Ejecutado por Mr32D (11-04-2024 21:34:37) Ejecutado desde C:\Users\Mr32D\Downloads Microsoft Windows 11 Home Versión 23H2 22631.3447 (X64) (2024-04-11 01:15:50) Modo de Inicio: Safe Mode (with Networking) ========================================================== ==================== Cuentas: ============================= (Si una entrada es incluida en el fixlist, será eliminada.) Administrador (S-1-5-21-2053707901-3569149570-3336326550-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2053707901-3569149570-3336326550-503 - Limited - Disabled) Invitado (S-1-5-21-2053707901-3569149570-3336326550-501 - Limited - Disabled) Mr32D (S-1-5-21-2053707901-3569149570-3336326550-1001 - Administrator - Enabled) => C:\Users\Mr32D WDAGUtilityAccount (S-1-5-21-2053707901-3569149570-3336326550-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Malwarebytes (Disabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 24.3.6108 - Avast Software) Malwarebytes version 5.1.2.109 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.1.2.109 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 123.0.2420.81 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\...\OneDriveSetup.exe) (Version: 24.055.0317.0002 - Microsoft Corporation) NVIDIA Controlador de gráficos 511.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 511.65 - NVIDIA Corporation) WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 123.0.2420.81 - Microsoft Corporation) Packages: ========= AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5390.0_x64__8j3eq9eme6ctt [2024-04-11] (INTEL CORP) [Startup Task] Dev Home (Preview) -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.1201.442.0_x64__8wekyb3d8bbwe [2024-04-11] (Microsoft Corporation) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-04-11] (Microsoft Corp.) Microsoft.Windows.Ai.Copilot.Provider -> C:\Program Files\WindowsApps\microsoft.windows.ai.copilot.provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-04-11] (Microsoft Corporation) Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2024-04-10] (Microsoft Corporation) MicrosoftWindows.CrossDevice -> C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24031.69.0_x64__cw5n1h2txyewy [2024-04-11] (Microsoft Windows) [Startup Task] NVIDIA Control Panel -> C:\Program Files\WindowsApps\nvidiacorp.nvidiacontrolpanel_8.1.965.0_x64__56jybvy8sckqj [2024-04-11] (NVIDIA Corp.) Power Automate -> C:\Program Files\WindowsApps\Microsoft.PowerAutomateDesktop_11.2403.237.0_x64__8wekyb3d8bbwe [2024-04-11] (Microsoft Corporation) [Startup Task] Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.50.322.0_x64__dt26b99r8h8gj [2024-04-11] (Realtek Semiconductor Corp) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0 [2024-04-11] (Spotify AB) [Startup Task] Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2024-04-10] (Microsoft Corporation) ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.) ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-11] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmi.inf_amd64_ca70e03e74b1e469\nvshext.dll [2023-03-07] (Nvidia Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2024-04-11] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-11] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Lista blanca) ==================== ==================== Accesos directos & WMI ======================== ==================== Módulos cargados (Lista blanca) ============= ==================== Alternate Data Streams (Lista blanca) ======== ==================== Modo Seguro (Lista blanca) ================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== Asociación (Lista blanca) ================= ==================== Internet Explorer (Lista blanca) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 URLSearchHook: HKU\S-1-5-21-2053707901-3569149570-3336326550-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Windows -> Microsoft Corporation) URLSearchHook: HKU\S-1-5-21-2053707901-3569149570-3336326550-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Windows -> Microsoft Corporation) SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC BHO: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\BHO\ie_to_edge_bho_64.dll [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\BHO\ie_to_edge_bho.dll [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler-x32: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler-x32: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler-x32: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler-x32: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler-x32: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) Handler-x32: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2024-04-10] (Microsoft Windows -> Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2022-05-07 01:24 - 2022-05-07 01:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: El medio no está conectado a internet. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) HKU\S-1-5-21-2053707901-3569149570-3336326550-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0) Firewall de Windows está habilitado. ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == (Si una entrada es incluida en el fixlist, será eliminada.) HKLM\...\StartupApproved\Run: => "SecurityHealth" ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [{03802BC5-59C6-4FF5-BBE8-C6483E24DCE4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{9BF09634-1172-4BD7-81FA-21E38D238CE3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{AA90A668-76D4-4A7C-916D-15A3D65492DC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{DD7388F5-A17A-4BE9-B43E-584DB01E781B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{72CD8FB4-1538-43FF-8FAB-A392621E7F9F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{AB91BDA5-F70F-43FC-89C6-FEBFB149B847}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{D598A62F-BCD4-4EA7-8642-61358B3DD271}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CB75E19D-AC57-45C5-9B9F-28317EAE1AD0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5505FEFE-E6A9-463F-B74D-D58E63836AA8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B278BC60-DD01-40CA-A8C7-25773858B5A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{8D247601-BB58-45AE-8269-16CFC7F96032}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.) FirewallRules: [{E8AD0C17-9794-4C32-A1D4-ADB757998B15}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.) ==================== Puntos de Restauración ========================= 10-04-2024 21:17:37 Instalador de Módulos de Windows ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ Name: Realtek(R) Audio Description: Realtek High Definition Audio Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Service: IntcAzAudAddService Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Sonido Intel(R) para pantallas Description: Sonido Intel(R) para pantallas Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Intel(R) Corporation Service: IntcDAud Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Controlador de infraestructura de virtualización de Microsoft Hyper-V Description: Controlador de infraestructura de virtualización de Microsoft Hyper-V Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: Vid Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Realtek PCIe GbE Family Controller Description: Realtek PCIe GbE Family Controller Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Service: rt68cx21 Problem: : Windows cannot initialize the device driver for this hardware. (Code 37) Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Intel(R) Wi-Fi 6 AX201 160MHz Description: Intel(R) Wi-Fi 6 AX201 160MHz Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Intel Corporation Service: Netwtw10 Problem: : Windows cannot initialize the device driver for this hardware. (Code 37) Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Nahimic mirroring device Description: Nahimic mirroring device Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Nahimic Service: Nahimic_Mirroring Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (04/11/2024 08:56:40 PM) (Source: .NET Runtime) (EventID: 1025) (User: ) Description: Application: backgroundTaskHost.exe CoreCLR Version: 8.0.224.6711 .NET Version: 8.0.2 Description: The application requested process termination through System.Environment.FailFast. Message: Acceso denegado. Error trying to open the explicit application data handle Description: The process was terminated due to an unhandled exception.System.UnauthorizedAccessException: Acceso denegado. Error trying to open the explicit application data handle at WinRT.ExceptionHelpers.g__Throw|39_0(Int32 hr) at WinRT.ExceptionHelpers.ThrowExceptionForHR(Int32 hr) at ABI.Windows.Storage.IApplicationDataStaticsMethods.get_Current(IObjectReference _obj) at YourPhone.Utilities.ApplicationDataHelper.get_Current() Stack: at System.Environment.FailFast(System.String, System.Exception) at YourPhone.Utilities.ApplicationDataHelper.get_Current() at YourPhone.Exp.WExp.FlightsDataStore..ctor() at YourPhone.Exp.WExp.WExpFlightProvider..ctor() at YourPhone.Background.Tasks.BackgroundTask+d__1.MoveNext() at System.Runtime.CompilerServices.AsyncMethodBuilderCore.Start[[YourPhone.Background.Tasks.BackgroundTask+d__1, YourPhone.Background.Tasks, Version=1.24022.87.0, Culture=neutral, PublicKeyToken=null]](d__1 ByRef) at System.Runtime.CompilerServices.AsyncVoidMethodBuilder.Start[[YourPhone.Background.Tasks.BackgroundTask+d__1, YourPhone.Background.Tasks, Version=1.24022.87.0, Culture=neutral, PublicKeyToken=null]](d__1 ByRef) at YourPhone.Background.Tasks.BackgroundTask.Run(Windows.ApplicationModel.Background.IBackgroundTaskInstance) at ABI.Windows.ApplicationModel.Background.IBackgroundTask.Do_Abi_Run_0(IntPtr, IntPtr) Error: (04/11/2024 08:01:41 PM) (Source: Application Error) (EventID: 1000) (User: UCHIHA) Description: Nombre de la aplicación con errores: explorer.exe, versión: 10.0.22621.3374, marca de tiempo: 0x8e690d6e Nombre del módulo con errores: Taskbar.View.dll, versión: 624.4608.60.0, marca de tiempo: 0x65e7946e Código de excepción: 0xc0000005 Desplazamiento de errores: 0x000000000025a541 Identificador del proceso con errores: 0x0x1868 Hora de inicio de la aplicación con errores: 0x0x1da8c69bcd4d9e7 Ruta de acceso de la aplicación con errores: C:\WINDOWS\explorer.exe Ruta de acceso del módulo con errores: C:\Windows\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy\Taskbar.View.dll Identificador del informe: 8f1621d8-7a91-4698-ae4a-23485da97980 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (04/11/2024 07:41:11 PM) (Source: Application Error) (EventID: 1000) (User: UCHIHA) Description: Nombre de la aplicación con errores: Explorer.EXE, versión: 10.0.22621.3374, marca de tiempo: 0x8e690d6e Nombre del módulo con errores: ucrtbase.dll, versión: 10.0.22621.3374, marca de tiempo: 0xdf382650 Código de excepción: 0xc0000409 Desplazamiento de errores: 0x000000000007f6be Identificador del proceso con errores: 0x0x1dc4 Hora de inicio de la aplicación con errores: 0x0x1da8c69b917aaab Ruta de acceso de la aplicación con errores: C:\WINDOWS\Explorer.EXE Ruta de acceso del módulo con errores: C:\WINDOWS\System32\ucrtbase.dll Identificador del informe: cfd31466-7ea1-4aad-b053-2636c6fa43eb Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (04/11/2024 04:34:41 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY) Description: El programa FRST64.exe versión 10.4.2024.0 dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre este problema, comprueba el historial de problemas en el panel de control de Seguridad y mantenimiento. Error: (04/11/2024 03:19:31 AM) (Source: MsiInstaller) (EventID: 11722) (User: NT AUTHORITY) Description: Product: Setup Nahimic Mirroring -- Error 1722. There is a problem with this Windows Installer package. A program run as part of the setup did not finish as expected. Contact your support personnel or package vendor. Action RemoveTemp, location: C:\WINDOWS\TEMP\SetupNahimicMirroringTemp_2.0.3.0\, command: cmd.exe /c "rmdir /s /q C:\WINDOWS\TEMP\SetupNahimicMirroringTemp_2.0.3.0\" Error: (04/10/2024 09:17:43 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Error al actualizar el estado de Windows Defender a SECURITY_PRODUCT_STATE_ON. Errores del sistema: ============= Error: (04/11/2024 09:35:16 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: Error de DCOM "1084" al intentar iniciar el servicio EventSystem con argumentos "No disponible" para ejecutar el servidor: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {4991D34B-80A1-4291-83B6-3328366B9097} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {F087771F-D74F-4C1A-BB8A-E16ACA9124EA} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {6D18AD12-BDE3-4393-B311-099C346E6DF9} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {03CA98D6-FF5D-49B8-ABC6-03DD84127020} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {659CDEA7-489E-11D9-A9CD-000D56965251} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {BB6DF56B-CACE-11DC-9992-0019B93A3A84} Error: (04/11/2024 09:35:13 PM) (Source: DCOM) (EventID: 10005) (User: UCHIHA) Description: Error de DCOM "1084" al intentar iniciar el servicio BITS con argumentos "No disponible" para ejecutar el servidor: {1ECCA34C-E88A-44E3-8D6A-8921BDE9E452} Windows Defender: ================Event[0] Date: 2024-04-11 21:28:37 Description: La característica Protección en tiempo real de Antivirus de Microsoft Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2024-04-11 20:56:37 Description: La característica Protección en tiempo real de Antivirus de Microsoft Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2024-04-11 20:53:17 Description: La característica Protección en tiempo real de Antivirus de Microsoft Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. CodeIntegrity: =============== Date: 2024-04-11 21:26:33 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2024-04-11 21:26:33 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. ==================== Información de la memoria =========================== BIOS: American Megatrends Inc. E16R5IMS.103 05/14/2021 Placa base: Micro-Star International Co., Ltd. MS-16R5 Procesador: Intel(R) Core(TM) i5-10500H CPU @ 2.50GHz Porcentaje de memoria en uso: 19% RAM física total: 12035.68 MB RAM física disponible: 9669.89 MB Virtual total: 14467.68 MB Virtual disponible: 12433.68 MB ==================== Unidades ================================ Drive c: () (Fixed) (Total:237.6 GB) (Free:194.05 GB) (Model: KINGSTON OM8PDP3256B-AI1) NTFS \\?\Volume{0c1add73-fa61-423b-b869-79cc38b8d52e}\ () (Fixed) (Total:0.76 GB) (Free:0.07 GB) NTFS \\?\Volume{c9edc5b4-4bd7-4088-9c61-b9f7b8220d0e}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== Final de Addition.txt =======================