Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 13-05-2020 01 Ejecutado por AITOR (16-05-2020 18:18:02) Ejecutado desde C:\Users\AITOR\Desktop Windows 10 Enterprise Versión 1909 18363.836 (X64) (2020-05-04 15:55:57) Modo de Inicio: Normal ========================================================== ==================== Cuentas: ============================= admin (S-1-5-21-1068161112-529502413-4200892443-1003 - Administrator - Enabled) => C:\Users\admin Administrador (S-1-5-21-1068161112-529502413-4200892443-500 - Administrator - Disabled) AITOR (S-1-5-21-1068161112-529502413-4200892443-1001 - Administrator - Enabled) => C:\Users\AITOR DefaultAccount (S-1-5-21-1068161112-529502413-4200892443-503 - Limited - Disabled) Invitado (S-1-5-21-1068161112-529502413-4200892443-501 - Limited - Disabled) postgres (S-1-5-21-1068161112-529502413-4200892443-1004 - Limited - Enabled) => C:\Users\postgres WDAGUtilityAccount (S-1-5-21-1068161112-529502413-4200892443-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Adobe Reader XI (11.0.23) - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.3.7 - Electronic Arts, Inc.) Application Verifier x64 External Package (HKLM\...\{D9908CED-5ABB-FEE9-FC84-743F4D38637C}) (Version: 10.1.16299.15 - Microsoft) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.54 - Piriform) Discord (HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\Discord) (Version: 0.0.306 - Discord Inc.) Epic Games Launcher (HKLM-x32\...\{9B504F12-DA3B-4CEC-A6FD-B07D6C1FEA26}) (Version: 1.1.167.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.8 - Blackmagic Design) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC) Google Drive (HKLM-x32\...\{84B981C8-D6E4-473F-8062-63F14F44183E}) (Version: 1.15.6464.228 - Google, Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6373 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.0.1020 - Intel Corporation) Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation) Kits Configuration Installer (HKLM-x32\...\{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden K-Lite Codec Pack 14.6.0 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 14.6.0 - KLCP) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: - Logitech) LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.) Microsoft Office Profesional 2016 - es-es (HKLM\...\ProfessionalRetail - es-es) (Version: 16.0.12730.20250 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\OneDriveSetup.exe) (Version: 19.033.0218.0011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1095.110 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{CFF44AE9-2908-4D7D-B48B-1CB5139015C7}) (Version: 1.0.0.0 - Mojang) MSI Development Tools (HKLM-x32\...\{973CACA2-E018-065B-0580-F2784802E299}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden NVIDIA Controlador de gráficos 441.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.66 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 22.0.2 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12730.20250 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12730.20250 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12730.20250 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.12730.20250 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.69.40136 - Electronic Arts, Inc.) Paquete de compatibilidad redirigido de documentación de Microsoft .NET Framework 4.7.1 (español) (HKLM-x32\...\{927FF4FD-8E47-4022-8545-22FD78FBC2AB}) (Version: 4.7.02558 - Microsoft Corporation) Hidden PostgreSQL 9.5 (HKLM\...\PostgreSQL 9.5) (Version: 9.5 - PostgreSQL Global Development Group) RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.19.234 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.5.2 - Rockstar Games) SDK ARM Additions (HKLM-x32\...\{7922BB77-0B59-840A-AC80-D560A34D75C5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{C87DF65C-A672-7E08-A083-E7D48FE8DB70}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Software para dispositivos de chipset Intel® (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.6.4835 - TeamViewer) The Crew 2 (HKLM-x32\...\Uplay Install 2855) (Version: - Ubisoft) Unity (HKLM-x32\...\Unity) (Version: 2018.3.4f1 - Unity Technologies ApS) Universal CRT Extension SDK (HKLM-x32\...\{A5FA2886-1925-133F-0D41-B9A8ECEA0A2D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{B739B4C5-EEEC-8E70-0276-38C4779AF398}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{A9D6F52C-694E-3E41-7AB8-5BEB644742A5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{E053089E-7953-3219-814F-F485FC151C54}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{B9424F08-0617-C4F6-A798-5A9250C1A738}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D261CEA1-AB8D-9CFA-4407-BCEFC78661AC}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 81.0 - Ubisoft) vcpp_crt.redist.clickonce (HKLM-x32\...\{32DF9B1B-E622-4385-99E0-02461A428363}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Visual Studio Community 2017 (HKLM-x32\...\e8b31c25) (Version: 15.9.28307.344 - Microsoft Corporation) VS Script Debugging Common (HKLM\...\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32\...\{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32\...\{340226AB-D0EF-4715-A331-AB3A416B5018}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32\...\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32\...\{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32\...\{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32\...\{E70CC1B8-7ED5-4495-9C52-603FE87F38F4}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32\...\{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden WinAppDeploy (HKLM-x32\...\{9690D51C-4435-1C20-7819-66CCAB0F03F9}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{350F0ECD-0783-4529-8797-98F0AD33EAC0}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.16299.15 (HKLM-x32\...\{6195c203-b53c-4bb7-983a-6070a902e704}) (Version: 10.1.16299.15 - Microsoft Corporation) WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{385A1387-A488-9E90-3635-086129610034}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{D7DD3171-DA58-52A1-95B2-4769640855AF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{7336279F-8F8F-5530-A543-3BE963846C0A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E414A474-0A87-4F66-C409-A4D9857CFD34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{CE760B86-975B-F514-5673-0ED4332B801B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{5E67F8BE-D8D2-257F-CE19-419A2D5125C7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{A2AA063E-AF50-A1F5-8925-A06EB1556644}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{7D4C7F4A-02A9-E434-6451-C8787DF28C1F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{BC467065-9374-5345-DA3F-FCF073304A25}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Packages: ========= Avira Phantom VPN -> C:\Program Files\WindowsApps\Avira.AviraPhantomVPN_1.17.101.0_x64__h4a2wkdf3s2xr [2020-05-15] (Avira) Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Corporation) Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Corporation) Deezer Music -> C:\Program Files\WindowsApps\Deezer.62021768415AF_4.19.20.0_x86__q7m17pa7q8kj0 [2020-04-28] (Deezer SA) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220 [2020-05-04] (Dolby Laboratories) Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.416.287.2_x64__8wekyb3d8bbwe [2020-05-15] (Microsoft Studios) Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2020-04-04] (Microsoft Studios) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-31] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-31] (Microsoft Corporation) [MS Ad] Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.38.21323.0_x64__8wekyb3d8bbwe [2020-05-15] (Microsoft Corporation) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-03] (Microsoft Studios) [MS Ad] MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad] MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad] MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad] Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-01-23] (MAGIX) Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.10.1.0_x64__nfy108tqq3p12 [2020-05-12] (Thumbmunkeys Ltd) [MS Ad] PicsArt - Photo Studio -> C:\Program Files\WindowsApps\2FE3CB00.PicsArt-PhotoStudio_8.8.0.0_x86__crhqpqs3x1ygc [2019-10-15] (PicsArt Inc.) [MS Ad] Plex -> C:\Program Files\WindowsApps\CAF9E577.Plex_3.2.20.0_x64__aam28m9va5cke [2019-01-31] (Plex) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.180.0_x64__dt26b99r8h8gj [2019-11-28] (Realtek Semiconductor Corp) ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2014-04-09] (Google Inc -> Google) ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2014-04-09] (Google Inc -> Google) ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2014-04-09] (Google Inc -> Google) ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2014-04-09] (Google Inc -> Google) ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2014-04-09] (Google Inc -> Google) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2014-04-09] (Google Inc -> Google) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2014-04-09] (Google Inc -> Google) ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Ningún archivo ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_82063bd87f0dc443\nvshext.dll [2019-12-18] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Lista blanca) ==================== ==================== Accesos directos & WMI ======================== ==================== Módulos cargados (Lista blanca) ============= 2019-02-03 17:34 - 2019-02-03 17:34 - 098275328 _____ () [Archivo no firmado] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll 2019-02-03 17:34 - 2019-02-03 17:34 - 000092672 _____ () [Archivo no firmado] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll 2019-02-03 17:34 - 2019-02-03 17:34 - 003922432 _____ () [Archivo no firmado] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000015360 _____ () [Archivo no firmado] C:\Program Files (x86)\Origin\libEGL.DLL 2020-02-10 16:06 - 2020-04-10 15:16 - 003090944 _____ () [Archivo no firmado] C:\Program Files (x86)\Origin\libGLESv2.dll 2019-04-23 18:33 - 2016-08-09 07:13 - 000183296 _____ () [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\LIBPQ.dll 2019-04-23 18:33 - 2016-07-27 10:08 - 002264576 _____ () [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\libxml2.dll 2019-04-23 18:33 - 2015-08-26 10:40 - 001687930 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\libiconv-2.dll 2019-04-23 18:33 - 2015-08-26 10:40 - 000685350 _____ (Free Software Foundation) [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\libintl-8.dll 2017-09-28 19:41 - 2017-09-28 19:41 - 000266240 _____ (Microsoft Corporation) [Archivo no firmado] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL 2019-02-03 17:34 - 2019-02-03 17:34 - 000547840 _____ (The Chromium Authors) [Archivo no firmado] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000002560 _____ (The ICU Project) [Archivo no firmado] C:\Program Files (x86)\Origin\icudt58.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 001252864 _____ (The ICU Project) [Archivo no firmado] C:\Program Files (x86)\Origin\icuuc58.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\Origin\LIBEAY32.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\Origin\ssleay32.dll 2019-04-23 18:33 - 2016-05-05 08:35 - 001655808 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\LIBEAY32.dll 2019-04-23 18:33 - 2016-05-05 08:35 - 000349696 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files\PostgreSQL\9.5\bin\SSLEAY32.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000030208 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qgif.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000032768 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qico.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000256512 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000026112 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qtga.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000305152 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000025600 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2020-02-10 16:06 - 2020-04-10 15:16 - 000278016 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\mediaservice\dsengine.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 001611264 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 005487104 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 005841920 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000709120 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Multimedia.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 001179136 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000207360 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Positioning.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000310272 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5PrintSupport.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 003513344 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Qml.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 003390976 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Quick.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000068096 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5QuickWidgets.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000045568 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5TextToSpeech.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000116224 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5WebChannel.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 054071296 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5WebEngineCore.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000211456 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5WebEngineWidgets.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000146432 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 005089792 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-02-11 16:52 - 2020-04-10 15:16 - 000184832 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Lista blanca) ======== (Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.) AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [480] ==================== Modo Seguro (Lista blanca) ================== ==================== Asociación (Lista blanca) ================= ==================== Internet Explorer sitios de confianza/restringidos ========== (Si una entrada es incluida en el fixlist, será eliminada del registro.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Hay 7940 más sitios. IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1001\...\123simsen.com -> www.123simsen.com Hay 7940 más sitios. IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1068161112-529502413-4200892443-1004\...\123simsen.com -> www.123simsen.com Hay 7940 más sitios. ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2018-09-15 09:31 - 2020-05-14 22:42 - 000455160 ____R C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 analytics.ff.avast.com 0.0.0.0 analytics.ns1.ff.avast.com 0.0.0.0 v7event.stats.avcdn.net 0.0.0.0 v7.stats.avcdn.net 0.0.0.0 flow.lavasoft.com 0.0.0.0 telemetry.malwarebytes.com 0.0.0.0 ws.mcafee.com 0.0.0.0 analytics.ccs.mcafee.com 0.0.0.0 analyticsdcs.ccs.mcafee.com 0.0.0.0 carcharodon.trendmicro.com 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com Hay 15617 más lineas. ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-1068161112-529502413-4200892443-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\AITOR\Desktop\rick-morty-temporada-4-trailer-1570443725-930x600.jpg HKU\S-1-5-21-1068161112-529502413-4200892443-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Firewall de Windows está habilitado. ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [UDP Query User{4A96FB43-B7CF-41DA-96CB-D979CEB8C3A8}C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{D13CBC59-0AF7-4BD9-A80B-A3A1E017326B}C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{B2E06277-078E-4571-9B3D-42FC3C91C76C}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [TCP Query User{95189BF2-87E6-4919-8351-8253F9E2253E}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [{E9D6CB90-350C-4EF4-8D02-C22D2DA37BC2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{67C480D5-CBD5-4E41-8EAB-5B3ADFE48A57}C:\program files\lghub\lghub_agent.exe] => (Block) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [TCP Query User{79C1A49C-8576-4A5D-A96F-E4CC0C21779E}C:\program files\lghub\lghub_agent.exe] => (Block) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [{3DE5D071-0E9A-4FF4-B7AB-9D375408B739}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe (NSSTUDIO INC. -> NS Studio, Inc.) FirewallRules: [{83411FA0-025F-4459-A0BC-2A889E931453}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe (NSSTUDIO INC. -> NS Studio, Inc.) FirewallRules: [{65773D9B-EFC8-49FD-8E71-03B9C3C61D83}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Black Squad\binaries\BSLauncher.exe (NSSTUDIO INC. -> NS Studio) FirewallRules: [{BEA93AFF-5276-49A2-A387-BBE51D6F3672}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Black Squad\binaries\BSLauncher.exe (NSSTUDIO INC. -> NS Studio) FirewallRules: [{0D0A1E6D-7D44-4CD5-801D-E51F12C066CE}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe (Valve -> ) FirewallRules: [{50B4153F-26A6-444F-8C6D-9D4863FBA093}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe (Valve -> ) FirewallRules: [{77BA5344-58BC-4DC3-A7C2-5F1C5E08FD40}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\GarrysMod\hl2.exe () [Archivo no firmado] FirewallRules: [{5F8C481A-E7A2-484C-B218-7438E403FF2F}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\GarrysMod\hl2.exe () [Archivo no firmado] FirewallRules: [{97F72470-1EDE-4E3B-A9B4-131671A1F136}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{3F6DD2F5-89E1-4561-BE9C-A127634ACDF7}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{01160041-81FD-4FED-BBF1-E70A14B09672}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{42EB3D99-40A9-4BD8-A701-C7BD1F5EE2F9}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{5B5C79E5-0F19-4889-BDF5-F463457DC0F9}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\RRRE.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{7403E71C-83EF-48F5-B05D-B99B695A8308}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\RRRE.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{8D563664-E0D2-4AA7-9FCD-CE9B16AA8EF1}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\x64\RRRE64.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{93C4C489-1DC1-4869-A7CB-90A6D6ED95D8}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\x64\RRRE64.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [UDP Query User{9F1F1B88-529A-4D7E-BEE3-25394DE316A4}C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{5A4B98E1-20E3-4A1F-AFE7-8E6A886B022C}C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\aitor\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [{72A36141-8CAB-4581-8680-BCD3F3B4F537}] => (Allow) E:\AITOR\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{023BDE27-57A8-4975-B99C-5F078F580BCF}] => (Allow) E:\AITOR\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [UDP Query User{E3069468-B255-4C18-95C2-D187AED6832A}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [TCP Query User{66E54354-111B-47C5-87A8-6A5E1F5160EE}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [{B2301825-7133-4DBE-A55E-B5774BCAFE13}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{D39FC47B-1572-4081-9F75-52D807903E7E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{9C55EB5A-9CDD-4357-82FE-24BBE121BB2D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{5A66A365-7330-4270-95F8-A1DC7799A750}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [UDP Query User{F01B5B82-3936-451D-B145-38B1EB9BEF9D}E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [TCP Query User{32854A77-E28A-4519-AE05-03909FD2D5E5}E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{78A9BCA3-3DE7-40E2-8328-69D63E9B152D}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{90046FEE-B84F-4CDD-B7AD-608554CAF540}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{1D68140E-50DE-4FD1-9FAD-7F17F0C1870C}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe () [Archivo no firmado] FirewallRules: [{D97F6003-53B5-445E-AB04-264DBE55417C}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe () [Archivo no firmado] FirewallRules: [{D5BBAC7A-FCFD-4A19-BD33-B9A3F869D545}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Project CARS - Pagani Edition\pCARS64.exe (Slightly Mad Studios Ltd) [Archivo no firmado] FirewallRules: [{DB1FFB5A-C024-406C-8D13-4292BD9CAE19}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Project CARS - Pagani Edition\pCARS64.exe (Slightly Mad Studios Ltd) [Archivo no firmado] FirewallRules: [{755CF90C-B70F-4416-88B0-180533D28D0D}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [Archivo no firmado] FirewallRules: [{1F08D421-40CB-4C5A-9E82-807C51240C6A}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [Archivo no firmado] FirewallRules: [UDP Query User{33E2C3FF-1E1E-4EF4-B82A-2441D7641526}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [TCP Query User{7A5419C7-7089-4DA7-9774-02503D10FDC6}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [{AD0D3547-B56E-4F9A-910F-84DA0CA01F5C}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{20E9C361-2177-4F1F-B1E6-C7101670D1D4}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{F587BE2A-1AB5-4A89-9972-C56F6EA6F8A1}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{22767D65-379E-4A79-979C-EE75E9FADBE0}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{7EFD0AE3-B9C9-4631-A350-DAD4DBBBCBEA}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Ultimate Epic Battle Simulator\UEBS.exe () [Archivo no firmado] FirewallRules: [{6109BC25-6444-4B8B-9554-0984AC975CFF}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\Ultimate Epic Battle Simulator\UEBS.exe () [Archivo no firmado] FirewallRules: [UDP Query User{51A1E3E4-15F1-43FF-9B1B-D11FAB7F747D}E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [TCP Query User{D6D58337-7CD8-4BD8-9D17-0125676E9213}E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{37650C79-A247-4A46-B8B8-859E36BCDE8E}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [Archivo no firmado] FirewallRules: [TCP Query User{1F765DF2-FA0A-49E2-A3F6-2A5962F9F881}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe (Re-Logic) [Archivo no firmado] FirewallRules: [{80FCD7C1-C260-4CF3-A208-BC3BCF83EFBE}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{316D7E93-51B9-4911-9304-0130BC8805E9}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [UDP Query User{84F380C7-130E-4DC2-9873-69FC5E72981A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{1E25FE0B-E5B0-4ECA-88A0-3C0422832413}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{056C58C9-FF15-43EB-83E8-A8EE0AEC66CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Archivo no firmado] FirewallRules: [{D1130DED-7C3E-464E-BC42-BEE55197C5FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Archivo no firmado] FirewallRules: [UDP Query User{12057906-FA49-4472-909D-21394FAAF6B6}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe (Unity Technologies Aps -> Unity Technologies ApS) FirewallRules: [TCP Query User{40C0E3B4-49BA-478A-974A-E35BECECA35C}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe (Unity Technologies Aps -> Unity Technologies ApS) FirewallRules: [{A81617EF-BFE6-4302-BD6C-1B926EC5967F}] => (Block) C:\Program Files\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS) FirewallRules: [{6077E308-F03F-441D-95B3-5FFCEA703827}] => (Allow) C:\Program Files\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS) FirewallRules: [UDP Query User{76995276-FD7B-4765-85F1-B02EBCD73A95}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{D476EDB2-8FBE-4FB4-9265-431D07C301F3}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{F593767D-E8DD-4717-BB04-124A5A431E4D}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{F61AD7F7-A664-4F4E-B5C9-C04FC499D63C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{E642387B-BA9B-410F-A582-A334D4E98A12}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{430ECAF3-D873-49F9-82F6-DE445C69E443}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{121F8B1C-034C-4724-AC7F-782E6C86D1EF}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\The Crew 2\TheCrew2.exe (UBISOFT ENTERTAINMENT INC. -> UBISoft) FirewallRules: [{50B3A06F-A58E-4693-8587-24203DFE6CF2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{B3A9A158-C65B-4699-A6C0-00D3AE9FF82C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{AD7B81F2-30ED-465E-9486-D7D2CC9C61C0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{B3D2CE19-1691-4835-B2C1-531131D0A111}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\x64\RRRE64.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{C32880E5-5F06-4146-830A-16C539AA02B7}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\x64\RRRE64.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{9EEDB442-8A87-4989-9BBF-8DE8D50722F6}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\RRRE.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{AA1FEF8D-8D16-44FD-B24E-2238EC142952}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\raceroom racing experience\Game\RRRE.exe (Sector3 Studios AB -> Simbin Studios AB) FirewallRules: [{88C34067-9AB0-46B1-B2F4-FBDBB95D626D}] => (Allow) LPort=1688 FirewallRules: [{7EB98E8D-D899-49AA-9816-F54FFF31E61A}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8DF57DCF-592F-4B8A-997E-0CD722E96E5F}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{DDEAA1F7-B50C-4116-AFFC-F4A3A21469FC}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4EE655BE-3DD2-4F67-A26C-9D0354039932}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{1D5D794B-5088-482E-ABF9-DD987BFAF8C0}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{98A8324C-F8A1-450E-9D75-DFA0EFEEEB53}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2E074320-2C85-4129-AF59-3462414117E1}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{853D91C0-47EB-4C44-B8C7-BC0F963E6ED2}] => (Allow) E:\WindowsApps\SpotifyAB.SpotifyMusic_1.132.618.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{3D947691-60DD-4C71-9B46-11F11C028BD8}] => (Allow) E:\AITOR\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{8FB0B721-EC63-4FA0-A178-6419F106D594}] => (Allow) E:\AITOR\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{1246F76C-356F-42D6-B3DA-8ABD7845F46A}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\theHunter\launcher\launcher.exe => Ningún archivo FirewallRules: [{7D40E2B2-C6F9-45FD-806E-5289DA973E1D}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\theHunter\launcher\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{F8A8E7EF-F6EF-4262-9E19-C04395855137}E:\crossout\launcher.exe] => (Allow) E:\crossout\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{773185B2-2EF8-4B78-8FC8-C228D14BF345}E:\crossout\launcher.exe] => (Allow) E:\crossout\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{B6BF68AB-93BA-45DD-9910-5920AABF48BF}E:\warthunder\launcher.exe] => (Block) E:\warthunder\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{0F9E389F-49C3-4452-A32D-328FC891FBE5}E:\warthunder\launcher.exe] => (Block) E:\warthunder\launcher.exe => Ningún archivo FirewallRules: [{66A9FAE7-50A0-4559-B937-CECBAF4ADF5F}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\theHunter\launcher\launcher.exe => Ningún archivo FirewallRules: [{0F7ADB9E-FB95-4E66-9291-E67489557B7E}] => (Allow) E:\AITOR\SteamLibrary\steamapps\common\theHunter\launcher\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{A0188B8B-EBC1-43DE-B3FB-25172E7C396D}E:\aitor\steamlibrary\steamapps\common\thehunter\game\thehunter.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\thehunter\game\thehunter.exe => Ningún archivo FirewallRules: [TCP Query User{4E7FF756-DEFE-4318-A85B-CC26E33877A2}E:\aitor\steamlibrary\steamapps\common\thehunter\game\thehunter.exe] => (Allow) E:\aitor\steamlibrary\steamapps\common\thehunter\game\thehunter.exe => Ningún archivo FirewallRules: [UDP Query User{366B3E74-BB94-42B1-A3EB-AC0C6553CF03}E:\warthunder\win64\aces.exe] => (Allow) E:\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [TCP Query User{EA38A790-A6E5-4BB2-8A44-FEC3DC5420FE}E:\warthunder\win64\aces.exe] => (Allow) E:\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [UDP Query User{F41272BC-BACB-445D-860F-8B2899158CB1}E:\warthunder\launcher.exe] => (Allow) E:\warthunder\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{81E83AA7-7C33-4A53-BD26-34B3C5CF3F9A}E:\warthunder\launcher.exe] => (Allow) E:\warthunder\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{6E4AD9AD-CBDF-495C-A4DA-ECA2BF4286A3}E:\crossout\launcher.exe] => (Allow) E:\crossout\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{C8D1066E-4C80-4D03-8A88-AB2815AA3875}E:\crossout\launcher.exe] => (Allow) E:\crossout\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{6467C4BC-FF47-4C9A-A4D1-01887D1C54B0}C:\users\aitor\appdata\local\warthunder\win64\aces.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [TCP Query User{862E1AAB-68CF-45F2-8D38-560FD3397F40}C:\users\aitor\appdata\local\warthunder\win64\aces.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [UDP Query User{38D1F178-264D-41B5-B932-5B351BD75162}C:\users\aitor\appdata\local\warthunder\launcher.exe] => (Block) C:\users\aitor\appdata\local\warthunder\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{E6E5E563-0E73-445D-9F5A-05B7CCA00230}C:\users\aitor\appdata\local\warthunder\launcher.exe] => (Block) C:\users\aitor\appdata\local\warthunder\launcher.exe => Ningún archivo FirewallRules: [{BF81F51D-5FCD-47FE-A46F-69A23D2C7C0F}] => (Allow) C:\Program Files (x86)\Heroes & Generals\live\hng.exe => Ningún archivo FirewallRules: [{4FA7B78A-6869-4A88-BABE-C1A71D043090}] => (Allow) C:\Program Files (x86)\Heroes & Generals\live\hng.exe => Ningún archivo FirewallRules: [UDP Query User{6A029A5B-F3B2-4A4C-B578-47AB4861894E}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe => Ningún archivo FirewallRules: [TCP Query User{488C4BBD-05D1-4F27-98C9-F6C8C33EF257}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe => Ningún archivo FirewallRules: [UDP Query User{8C4E4D2A-DE71-4ADD-A1D5-DEF924AD731F}C:\users\aitor\appdata\local\warthunder\win64\aces.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [TCP Query User{E740AC14-F9CB-45C7-B2A7-075B3642C4BF}C:\users\aitor\appdata\local\warthunder\win64\aces.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\win64\aces.exe => Ningún archivo FirewallRules: [UDP Query User{D8E9727A-A116-4D6E-B0EC-54A343C34A4F}C:\users\aitor\appdata\local\warthunder\launcher.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\launcher.exe => Ningún archivo FirewallRules: [TCP Query User{4B163184-2479-47B4-BB60-4FC957440BEF}C:\users\aitor\appdata\local\warthunder\launcher.exe] => (Allow) C:\users\aitor\appdata\local\warthunder\launcher.exe => Ningún archivo FirewallRules: [UDP Query User{DA28A40A-AC63-4927-A440-9CC970733435}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe => Ningún archivo FirewallRules: [TCP Query User{9BA94471-ED08-4523-BE3D-FD94A5377E31}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe => Ningún archivo FirewallRules: [{F4E8DA39-6489-496E-AB35-03A9945C5CFF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Ningún archivo FirewallRules: [{0F8A06EC-71F2-4AF2-8D96-97C5C8D3CE4C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Ningún archivo FirewallRules: [{630A79F9-19DA-40AC-8CF0-8F6418A17DBE}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe => Ningún archivo FirewallRules: [{A3188AFB-C3E1-40A5-BFFF-78E256E36388}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe => Ningún archivo ==================== Puntos de Restauración ========================= 14-05-2020 00:03:37 Se ha instalado DirectX ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (05/16/2020 06:14:15 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center no pudo validar al autor de la llamada con el error %1. Error: (05/16/2020 06:13:42 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Error al generar el contexto de activación para "C:\Users\AITOR\AppData\Local\Chromium\Application\chrome.exe". No se encontró el ensamblado dependiente 63.0.3235.0,language="*",type="win32",version="63.0.3235.0". Use sxstrace.exe para obtener un diagnóstico detallado. Error: (05/16/2020 05:55:56 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3616,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (05/16/2020 05:47:06 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (9388,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (05/16/2020 04:07:26 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (11288,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (05/16/2020 04:01:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: SDUpdate.exe, versión: 2.8.68.100, marca de tiempo: 0x5ea5e0d1 Nombre del módulo con errores: SDUpdate.exe, versión: 2.8.68.100, marca de tiempo: 0x5ea5e0d1 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x00005c92 Identificador del proceso con errores: 0x2fd0 Hora de inicio de la aplicación con errores: 0x01d62b8a7cac5a4b Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Ruta de acceso del módulo con errores: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Identificador del informe: 3bfc0f37-2998-4b84-a17c-675d1a43155d Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Error: (05/16/2020 04:00:48 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (6984,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (05/16/2020 03:55:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: SDUpdate.exe, versión: 2.8.68.100, marca de tiempo: 0x5ea5e0d1 Nombre del módulo con errores: hhctrl.ocx_unloaded, versión: 10.0.18362.1, marca de tiempo: 0xa2f44e16 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x00026236 Identificador del proceso con errores: 0xb74 Hora de inicio de la aplicación con errores: 0x01d62b89170b948d Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Ruta de acceso del módulo con errores: hhctrl.ocx Identificador del informe: f451efe7-56dd-4ac3-b020-caffb8c86c72 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Errores del sistema: ============= Error: (05/16/2020 03:47:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {38E441FB-3D16-422F-8750-B2DACEC5CEFC} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:57 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Error: (05/16/2020 12:49:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SO86HHA) Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido. Windows Defender: =================================== Date: 2020-05-12 23:59:02.200 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\KMSpico\AutoPico.exe Versión de inteligencia de seguridad: AV: 1.315.501.0, AS: 1.315.501.0, NIS: 1.315.501.0 Versión de motor: AM: 1.1.17000.7, NIS: 1.1.17000.7 Date: 2020-05-12 23:59:02.145 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\KMSpico\AutoPico.exe Versión de inteligencia de seguridad: AV: 1.315.501.0, AS: 1.315.501.0, NIS: 1.315.501.0 Versión de motor: AM: 1.1.17000.7, NIS: 1.1.17000.7 Date: 2020-05-12 23:50:12.223 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe Versión de inteligencia de seguridad: AV: 1.315.501.0, AS: 1.315.501.0, NIS: 1.315.501.0 Versión de motor: AM: 1.1.17000.7, NIS: 1.1.17000.7 Date: 2020-05-12 23:50:12.185 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\KMSpico\Service_KMS.exe Versión de inteligencia de seguridad: AV: 1.315.501.0, AS: 1.315.501.0, NIS: 1.315.501.0 Versión de motor: AM: 1.1.17000.7, NIS: 1.1.17000.7 Date: 2020-05-12 23:40:47.764 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Windows\SECOH-QAD.dll; file:_C:\Windows\SECOH-QAD.exe; imagefileexecoptions:_HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SppExtComObj.exe; imagefileexecoptions:_HKLM\SOFTWARE\Wow6432Node\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SppExtComObj.exe; regkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SppExtComObj.exe; regkey:_HKLM\SOFTWARE\Wow6432Node\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SppExtComObj.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\Servicio de red Nombre de proceso: C:\Windows\System32\svchost.exe Versión de inteligencia de seguridad: AV: 1.315.501.0, AS: 1.315.501.0, NIS: 1.315.501.0 Versión de motor: AM: 1.1.17000.7, NIS: 1.1.17000.7 Date: 2020-05-15 20:21:49.723 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Supervisión de comportamiento Código de error: 0x80508023 Descripción del error: El programa no encontró malware ni otro software potencialmente no deseado en este dispositivo. Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2020-05-15 20:20:51.044 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. Date: 2020-05-13 18:26:00.882 Description: Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: Versión anterior de inteligencia de seguridad: 1.315.501.0 Origen de actualización: Servidor de Microsoft Update Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: Versión anterior del motor: 1.1.17000.7 Código de error: 0x80240016 Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. Date: 2020-05-11 21:57:00.858 Description: Antivirus de Windows Defender encontró un error al intentar eliminar un elemento de la cuarentena. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Usuario: NT AUTHORITY\SYSTEM Código de error: 0x8050800c Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: AV: 1.315.440.0, AS: 1.315.440.0 Versión de motor: 1.1.17000.7 Date: 2020-05-11 01:35:23.792 Description: Antivirus de Windows Defender encontró un error al intentar eliminar un elemento de la cuarentena. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win64/AutoKMS&threatid=2147723334&enterprise=0 Nombre: HackTool:Win64/AutoKMS Id.: 2147723334 Gravedad: Alta Categoría: Herramienta Usuario: NT AUTHORITY\SYSTEM Código de error: 0x8050800c Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: AV: 1.315.374.0, AS: 1.315.374.0 Versión de motor: 1.1.17000.7 CodeIntegrity: =================================== Date: 2020-05-16 15:48:26.185 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-16 12:50:25.244 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-16 01:18:28.078 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-16 01:03:22.077 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-16 01:00:03.510 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-15 22:02:30.691 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-15 21:55:49.901 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-05-15 21:48:21.124 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Información de la memoria =========================== BIOS: American Megatrends Inc. F25 04/11/2018 Placa base: Gigabyte Technology Co., Ltd. H110M-S2H-CF Procesador: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz Porcentaje de memoria en uso: 47% RAM física total: 8150.73 MB RAM física disponible: 4317.07 MB Virtual total: 14038.73 MB Virtual disponible: 8099.74 MB ==================== Unidades ================================ Drive c: () (Fixed) (Total:222.41 GB) (Free:33.41 GB) NTFS Drive e: (Nuevo vol) (Fixed) (Total:931.5 GB) (Free:437.09 GB) NTFS \\?\Volume{ff464e44-33a3-45fe-95eb-2101b1dc76e9}\ (Recuperación) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS \\?\Volume{865e55e5-3edc-4f17-812e-fbd4f6f638dd}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS \\?\Volume{8d7882f9-1060-4b11-8f1c-c4154bdf6fe6}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 223.6 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== Final de Addition.txt =======================