Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 06-06-2020 Ejecutado por Méndez (08-06-2020 16:14:03) Ejecutado desde C:\Users\Méndez\Desktop Windows 10 Pro Versión 1803 17134.1 (X64) (2018-10-02 07:41:45) Modo de Inicio: Normal ========================================================== ==================== Cuentas: ============================= Administrador (S-1-5-21-3244362241-3479270138-3392189060-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3244362241-3479270138-3392189060-503 - Limited - Disabled) Invitado (S-1-5-21-3244362241-3479270138-3392189060-501 - Limited - Enabled) Méndez (S-1-5-21-3244362241-3479270138-3392189060-1001 - Administrator - Enabled) => C:\Users\Méndez WDAGUtilityAccount (S-1-5-21-3244362241-3479270138-3392189060-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Acrylic Wi-Fi Home v4.4 (HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\{3706FB7A-11FB-44C4-AD94-2B29878D75DC}_is1) (Version: 4.4 - Tarlogic Research S.L.) Actualización de NVIDIA 36.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 36.0.0.0 - NVIDIA Corporation) Hidden Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.255 - Adobe) Adobe Flash Player 9 ActiveX (HKLM-x32\...\{BB65C393-C76E-4F06-9B0C-2124AA8AF97B}) (Version: 9.0.16.0 - Adobe Systems, Inc.) Antares Autotune Evo VST RTAS v6.0.9 (HKLM-x32\...\Antares Autotune Evo VST RTAS_is1) (Version: - ) Arduino (HKLM-x32\...\Arduino) (Version: 1.8.10 - Arduino LLC) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach) Asistente para la publicación en Web 1.53 de Microsoft (HKLM-x32\...\WebPost) (Version: - ) Audacity 2.3.1 (HKLM-x32\...\Audacity_is1) (Version: 2.3.1 - Audacity Team) AutoCAD 2008 - English (HKLM\...\{5783F2D7-6001-0409-0102-0060B0CE6BBA}) (Version: 17.1.51.0 - Autodesk) Hidden AutoCAD 2008 - English (HKLM\...\AutoCAD 2008 - English) (Version: 17.1.51.0 - Autodesk) Autodesk DWF Viewer 7 (HKLM-x32\...\{9A346205-EA92-4406-B1AB-50379DA3F057}) (Version: 7.2.0 - Autodesk, Inc.) Azurewave Wireless LAN (HKLM-x32\...\{F3D92514-CD5D-4E96-BE88-8258EB9BF85A}) (Version: 1.00.0000 - Azurewave) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 100.0.1 - Bitdefender) Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.67 - Piriform) Celemony Melodyne Studio 4 (HKLM-x32\...\Celemony Melodyne Studio 4) (Version: 4.0.4.001 - Celemony) Celemony Melodyne v3.0.1.5 Studio Edition (HKLM-x32\...\Celemony Melodyne v3.0.1.5 Studio Edition) (Version: - ) CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien) Connectify 2018 (HKLM\...\Connectify) (Version: 2018.1.1.38937 - Connectify) Core Temp 1.12.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.12.1 - ALCPU) DesignSpark Mechanical 4.0 (HKLM\...\{CD6994C1-5F43-4DD4-B5B6-FB8275BB0E9E}) (Version: 4.0.0 - SpaceClaim Corporation) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 416.34 - NVIDIA Corporation) Hidden Eines de correcció del Microsoft Office 2016: català (HKLM-x32\...\{90160000-001F-0403-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Empire Earth (HKLM-x32\...\{2447500B-22D7-47BD-9B13-1A927F43A267}) (Version: - ) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Escritorio Movistar Latam (HKLM-x32\...\MovistarLATAM) (Version: 8.9.8.1072 - Movistar) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) EVGA OC Scanner X 3.6.1.2 (64-bit) (HKLM\...\{CC520CF6-B02E-49AA-8192-C1DDC159E0AA}}_is1) (Version: - EVGA) EVGA Precision XOC (HKLM-x32\...\{86FE72A9-EA90-4AF2-9B0F-EA6FCCE88D50}) (Version: 6.2.7 - EVGA Corporation) Ferramentas de verificación de Microsoft Office 2016 - Galego (HKLM-x32\...\{90160000-001F-0456-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Gameloop (HKLM-x32\...\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company) GMWIN 4 (HKLM-x32\...\{ADD6E2D8-9246-40EF-9D09-F11C530E0879}) (Version: 1.00.10 - LSIS) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.61 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Grand Theft Auto IV (HKLM-x32\...\{5454083B-1308-4485-BF17-1110000D8301}) (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Herramientas de corrección de Microsoft Office 2016: español (HKLM-x32\...\{90160000-001F-0C0A-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden HI-TECH C Compiler for the PIC10/12/16 MCUs V9.82PL0 (HKLM-x32\...\PICC 9.82) (Version: 9.82 - HI-TECH Software) HI-TECH C51-lite V9.60PL0 (HKLM-x32\...\HC51 9.60PL0) (Version: 9.60 - HI-TECH Software) iNetFusion+ (HKLM-x32\...\{23A809F6-941D-4B3F-8E20-7A3F16517B53}) (Version: 3.2.0 - Endpoint Dynamics) Hidden iNetFusion+ (HKLM-x32\...\iNetFusion+ 3.2.0) (Version: 3.2.0 - Endpoint Dynamics) Java 8 Update 251 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180251F0}) (Version: 8.0.2510.8 - Oracle Corporation) Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation) JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0 - AppWork GmbH) K-Lite Codec Pack 15.3.2 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.3.2 - KLCP) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) League of Legends (HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Letasoft Sound Booster 1.11.0.514 (HKLM-x32\...\{6C6CF38B-11DD-45C6-A15E-A3A0C4CE60F8}_is1) (Version: 1.11.0.514 - Letasoft LLC) LG United Mobile Drivers (HKLM-x32\...\{5DB849D6-9392-4FB7-9ABB-87ED433152E5}) (Version: 3.8.1 - LG Electronics) LogMeIn Hamachi (HKLM-x32\...\{892DB406-ADF8-4C30-9840-8438AF5B8763}) (Version: 2.2.0.607 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.607 - LogMeIn, Inc.) LOGO!Soft Comfort V8.0 (HKLM\...\LOGO!Soft Comfort V8.0 ) (Version: 8.0.0.0 - Siemens AG) Math Kernel Libraries (64-bit) (HKLM\...\{112D8201-03A2-43B2-861B-EB3FCB855547}) (Version: 13.0.13 - National Instruments) Hidden Math Kernel Libraries (64-bit) (HKLM\...\{95E4D734-E2AC-46BD-A0D7-B8E1AD1C0D2E}) (Version: 14.0.6 - National Instruments) Hidden Math Kernel Libraries (HKLM-x32\...\{E71784F9-5B67-4052-A5FC-55C038396936}) (Version: 13.0.13 - National Instruments) Hidden Math Kernel Libraries (HKLM-x32\...\{FDF32877-3B6C-4D67-81A3-7857CBAF4110}) (Version: 14.0.6 - National Instruments) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Professional Plus 2016 (HKLM-x32\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\OneDriveSetup.exe) (Version: 20.052.0311.0011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{D0972543-9D51-4A1A-A765-E5A7B1CB09E5}) (Version: 1.0.0.0 - Mojang) MiniTool Partition Wizard Free 10.3 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Software Limited) Mouse Server versión 1.7.7.6 (HKLM-x32\...\{7AFAA880-BB05-4E38-9279-C53EECE1B7BE}_is1) (Version: 1.7.7.6 - Necta Inc.) MSI Afterburner 4.5.0 (HKLM-x32\...\Afterburner) (Version: 4.5.0 - MSI Co., LTD) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NetLimiter 4 (HKLM\...\{744C38C4-762F-47B1-8220-417C86243224}) (Version: 4.0.49.0 - Locktime Software) Hidden NetLimiter 4 (HKLM-x32\...\NetLimiter 4 4.0.49.0) (Version: 4.0.49.0 - Locktime Software) NetWorx 5.4 (HKLM\...\NetWorx_is1) (Version: - Softperfect) NI .NET Framework 4.0 (HKLM-x32\...\{5CC95D76-A798-4722-AE76-E494D9664907}) (Version: 4.01.49152 - National Instruments) Hidden NI ActiveX Container (64-bit) (HKLM\...\{14BAF455-4623-4703-906D-7FBE49E7ED23}) (Version: 14.0.5 - National Instruments) Hidden NI ActiveX Container (HKLM-x32\...\{B3B56C15-80A8-4972-90CB-D80E64B3F39C}) (Version: 14.0.5 - National Instruments) Hidden NI Authentication 2014SP1 (64-bit) (HKLM\...\{89EFD0FB-130F-4D38-AB16-28BE8482458B}) (Version: 14.5.5 - National Instruments) Hidden NI Authentication 2014SP1 (HKLM-x32\...\{1AFBF932-61A5-44B4-A255-182BA105D2EF}) (Version: 14.5.5 - National Instruments) Hidden NI Circuit Design Suite 14.0 Core (HKLM-x32\...\{470D6FC1-D702-40E9-AE26-CC8D15C230ED}) (Version: 14.0.593 - National Instruments) Hidden NI Circuit Design Suite 14.0 Pro (HKLM-x32\...\{7D86836B-EFFA-4B73-976C-E5E4AE9171DA}) (Version: 14.0.593 - National Instruments) Hidden NI Circuit Design Suite 14.0 Pro Licenses (HKLM-x32\...\{DFA9BF6B-D1D8-4E64-80F0-8B3ADD0E4EB6}) (Version: 14.0.593 - National Instruments) Hidden NI Circuit Design Suite Master Database (HKLM-x32\...\{80D288F4-FC24-4A66-86DB-5807068C3645}) (Version: 14.0.593 - National Instruments) Hidden NI Curl 14.0.0 (64-bit) (HKLM\...\{9EE72A1B-CA05-4ACF-92EE-21D3BA2A704C}) (Version: 14.0.294 - National Instruments) Hidden NI Curl 2014 (HKLM-x32\...\{C930794D-7E74-4395-B6A3-CEEC020C7D7E}) (Version: 14.0.295 - National Instruments) Hidden NI Error Reporting 2014 (HKLM-x32\...\{956DC995-1997-43DC-ACFA-EA31652D6131}) (Version: 14.0.379 - National Instruments) Hidden NI Error Reporting Interface 14.0 (HKLM-x32\...\{1F426FD9-602A-4B37-9CEF-921C025AFEE0}) (Version: 14.0.241 - National Instruments) Hidden NI Error Reporting Interface 14.0 for Windows (64-bit) (HKLM\...\{8C78715A-10D1-400F-A64A-55D85CE559CD}) (Version: 14.0.241 - National Instruments) Hidden NI EulaDepot (HKLM-x32\...\{FC2D231B-511A-45A6-863F-4C49DBB3FEC1}) (Version: 14.50.214 - National Instruments) Hidden NI Example Finder 14.0 (HKLM-x32\...\{8FCC6CA2-FCCB-4E89-A7DF-3DD46E0BF6F1}) (Version: 14.0.133 - National Instruments) Hidden NI Help Assistant 2.0 (64bit) (HKLM\...\{DDAAADDD-C57E-4731-A29C-133191587488}) (Version: 2.0.3 - National Instruments) Hidden NI Help Assistant 2.0 (HKLM-x32\...\{C9A0D47F-9A68-4917-868C-79E384E4DEE6}) (Version: 2.0.3 - National Instruments) Hidden NI LabVIEW 2012 Real-Time NBFifo (HKLM-x32\...\{A072C4EB-6173-474C-B3AA-9C97896FC153}) (Version: 14.0.386 - National Instruments) Hidden NI LabVIEW 2012 Real-Time NBFifo (HKLM-x32\...\{EEDB0927-3BD8-4349-856E-425A146CC680}) (Version: 13.0.336 - National Instruments) Hidden NI LabVIEW 2013 Run-Time Engine Web Server (HKLM-x32\...\{A0EE8096-E55F-47E2-A6E2-C7CC0AAD2022}) (Version: 13.5.27 - National Instruments) Hidden NI LabVIEW 2013 SP1 Run-Time Engine Non-English Support. (HKLM-x32\...\{2C1641D5-437E-4EE7-BC5E-89FCDCDF09BD}) (Version: 13.1.99 - National Instruments) Hidden NI LabVIEW 2014 Deployment Framework (HKLM-x32\...\{A1248570-7C3B-467B-B6A7-3CA1F720EE09}) (Version: 14.0.390 - National Instruments) Hidden NI LabVIEW 2014 SP1 Run-Time Engine Web Server (HKLM-x32\...\{94F51393-59D2-48F4-830F-DFF41B1D64B6}) (Version: 14.5.5 - National Instruments) Hidden NI LabVIEW Runtime 2014 SP1 (HKLM-x32\...\{BC594EC3-71AC-4EFF-9004-2DABE9C79D7A}) (Version: 14.1.101 - National Instruments) Hidden NI LabVIEW Runtime 2014 SP1 Non-English Support. (HKLM-x32\...\{1B3ABFBF-D1D5-4B73-A1FE-7FDA9FB6582B}) (Version: 14.1.96 - National Instruments) Hidden NI LabVIEW Run-Time Engine 2013 SP1 f6 (HKLM-x32\...\{E7F44619-A12B-407C-A4AE-9E85280EF3AB}) (Version: 13.1.125 - National Instruments) Hidden NI LabVIEW Run-Time Engine Interop 2013 (HKLM-x32\...\{31E72A59-F544-439C-9D28-17C060B8A6C7}) (Version: 13.1.125 - National Instruments) Hidden NI LabVIEW Runtime Interop 2014 (HKLM-x32\...\{B3E69138-0BBE-441D-9C50-35820010D620}) (Version: 14.1.101 - National Instruments) Hidden NI LabVIEW-Multisim Co-simulation Plug-in 14.0 for LabVIEW 2013 (HKLM-x32\...\{D1DBB3E8-81AD-4D7E-A383-E79EE43D5050}) (Version: 14.0.593 - National Instruments) Hidden NI LabVIEW-Multisim Co-simulation Plug-in 14.0 for LabVIEW 2014 (HKLM-x32\...\{95C46BC2-DDAF-402A-B6F8-02DAE20A22A3}) (Version: 14.0.593 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 .NET Library (64-bit) (HKLM\...\{1015A47B-04AC-40BC-9002-78EB2B86B0EB}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 .NET Library (HKLM-x32\...\{EDDAF514-4A52-449B-B382-0B7D92A39F42}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Analysis Library (64-bit) (HKLM\...\{E61BE539-EAA0-446D-9B32-8370F99A31A3}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Analysis Library (HKLM-x32\...\{D5A43D6C-BA44-46AE-95BF-05ED13CD43D8}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Low-Level Driver (Original) (HKLM-x32\...\{581A2852-67B2-4B83-B781-473A561DCC63}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Low-Level Driver (Updated) (HKLM-x32\...\{5C33A68B-0E6B-4839-97B9-7A7896DB2404}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Streams Library (64-bit) (HKLM\...\{C9533EB7-AE6E-4374-9BA9-DC9877624DF5}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Streams Library (HKLM-x32\...\{E3CB6529-FC39-46E5-AC6D-A97DD2E1286F}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Variable Library (64-bit) (HKLM\...\{CFB0239F-E3D1-4F56-A8F0-6532C84EA171}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Variable Library (HKLM-x32\...\{72CB1B11-685B-405A-A8A0-5987CCD593A0}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 TDMS Library (64-bit) (HKLM\...\{729F2480-96E3-4260-B4F1-A3054A98645D}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 TDMS Library (HKLM-x32\...\{00BD6260-2A45-423C-9150-2D1516BD96B3}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Run-Time Engine 2013 SP2 (Updated) (HKLM-x32\...\{23F01A4F-6BDA-4FFA-89A1-50D4EED0B3AE}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Shared Run-Time Engine 2013 SP2 (64-bit) (HKLM\...\{0DA67E53-EE91-450C-8159-FA1F9B87D300}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Shared Run-Time Engine 2013 SP2 (HKLM-x32\...\{D3C549FD-7DA5-440B-A1BC-DD92C898949A}) (Version: 13.0.2278 - National Instruments) Hidden NI Launcher (HKLM-x32\...\{27E16AD2-391D-4078-BF7F-077CBAB6E2CA}) (Version: 3.30.282 - National Instruments) Hidden NI License Manager (HKLM-x32\...\{2B2BC0C2-C36B-4DC9-9DAE-E003180470BD}) (Version: 3.7.73 - National Instruments) Hidden NI Logos 5.6 (64-bit) (HKLM\...\{54581EE6-1A40-4C81-BC26-27B5D95E245D}) (Version: 5.6.257 - National Instruments) Hidden NI Logos 5.6 (HKLM-x32\...\{766A86C6-990A-4D10-B4BD-733306D754F0}) (Version: 5.6.257 - National Instruments) Hidden NI Logos XT Support (HKLM-x32\...\{B80BCD71-7DBF-4ED2-9A56-B23EC1A35136}) (Version: 5.6.253 - National Instruments) Hidden NI Logos64 XT Support (HKLM\...\{31142B5E-1F50-424E-A27C-4396E9D4CAF8}) (Version: 5.6.253 - National Instruments) Hidden NI Math Kernel Libraries (HKLM-x32\...\{DB2C5648-700D-4AEF-83E1-70C72F0C34FA}) (Version: 1.0.861.0 - National Instruments) Hidden NI MAX Remote Configuration 64-bit Installer 14.0 (HKLM\...\{ACA10C5D-9BDC-4CB0-A967-539C5B26D09F}) (Version: 14.00.49152 - National Instruments) Hidden NI MAX Remote Configuration Installer 14.0 (HKLM-x32\...\{1A78FB9D-006A-4C5A-9481-0F95B664D70C}) (Version: 14.00.49152 - National Instruments) Hidden NI MDF Support (HKLM-x32\...\{90A3CAF2-1D57-455F-9517-8A056B915CD2}) (Version: 14.50.214 - National Instruments) Hidden NI mDNS Responder 14.0 for Windows 64-bit (HKLM\...\{6E8CCE41-38E3-4815-8D9F-A8B502DACD41}) (Version: 14.00.49152 - National Instruments) Hidden NI mDNS Responder 14.0.0 (HKLM-x32\...\{6CED5B26-5F59-4586-9EC0-3E92B5ECF76E}) (Version: 14.00.49152 - National Instruments) Hidden NI Measurement Studio ComponentWorks 3D Graph (HKLM-x32\...\{F278392D-547E-4E67-AD1C-2576C2852B50}) (Version: 8.6.10603 - National Instruments) Hidden NI MetaSuite Installer (HKLM-x32\...\{8FACEE11-4C2E-411C-AC8B-36043DB1E18A}) (Version: 3.30.282 - National Instruments) Hidden NI Multisim API Toolkit for LabVIEW 2013 (HKLM-x32\...\{5876474C-9954-4D8A-846D-1B129FE42431}) (Version: 14.0.593 - National Instruments) Hidden NI Multisim API Toolkit for LabVIEW 2014 (HKLM-x32\...\{1B270DE9-6910-4639-A1A3-8DB0B826BE22}) (Version: 14.0.593 - National Instruments) Hidden NI Multisim LabVIEW Interoperability Support 14.0.0 (HKLM-x32\...\{14B35510-6BB4-47C0-9687-8907A15D7A30}) (Version: 14.0.593 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden NI Service Locator 2014 (HKLM-x32\...\{181EA712-2062-4A97-814C-1C42D3429DA4}) (Version: 14.0.217 - National Instruments) Hidden NI SSL LabVIEW RTE 2013 SP1 Support (HKLM-x32\...\{D370E8AD-D3C1-44C7-96EA-3DD9918F2F6B}) (Version: 13.5.27 - National Instruments) Hidden NI SSL LabVIEW RTE 2014 Support (HKLM-x32\...\{18CEFB7A-37B7-4030-88F6-98247801832F}) (Version: 14.0.376 - National Instruments) Hidden NI SSL Support (64-bit) (HKLM\...\{A4C182E0-D701-40E4-BCBB-6236ABFA013E}) (Version: 14.5.10 - National Instruments) Hidden NI SSL Support (HKLM-x32\...\{E91ED1A5-1981-48AB-BDD1-D146A874FF97}) (Version: 14.5.10 - National Instruments) Hidden NI System API Windows 32-bit 14.0.0 (HKLM-x32\...\{CA0115EE-37E0-46F1-B52E-8E113343A76D}) (Version: 14.0.302 - National Instruments) Hidden NI System API Windows 64-bit 14.0.0 (HKLM\...\{D5781E6F-12AC-46ED-B8A0-E4B4066AB27F}) (Version: 14.0.302 - National Instruments) Hidden NI System State Publisher (64-bit) (HKLM\...\{105332F6-D8BF-4543-B134-554ED0BC9DA0}) (Version: 14.1.7 - National Instruments) Hidden NI System State Publisher (HKLM-x32\...\{26448952-DAC0-444F-A9E7-1D55B1FB1DC0}) (Version: 14.1.7 - National Instruments) Hidden NI System Web Server 2014 SP1 (HKLM-x32\...\{1E006384-174A-4597-930A-9C848B7E2A5A}) (Version: 14.5.9 - National Instruments) Hidden NI System Web Server Base 2014 SP1 (64-bit) (HKLM\...\{716AB2AE-22C4-47D5-953E-40ABA53FC861}) (Version: 14.5.6 - National Instruments) Hidden NI System Web Server Base 2014 SP1 (HKLM-x32\...\{B63D4C11-03BE-48AE-BFFF-7BEC8F7D6B10}) (Version: 14.5.6 - National Instruments) Hidden NI TDM Streaming 14.0 (64-bit) (HKLM\...\{06B913C1-1C32-4FE6-8FE2-0DE2CEC9BFDA}) (Version: 14.0.43 - National Instruments) Hidden NI TDM Streaming 14.0 (HKLM-x32\...\{AC4F5DFA-A84D-4A86-9F42-4DAFDB32F279}) (Version: 14.0.43 - National Instruments) Hidden NI Trace Engine (64-bit) (HKLM\...\{47FFD335-847E-4640-9AA3-245A5BE13839}) (Version: 14.0.177 - National Instruments) Hidden NI Trace Engine (HKLM-x32\...\{369C78CD-B38C-40B7-B116-A8EF413CEDC6}) (Version: 14.0.177 - National Instruments) Hidden NI Uninstaller (HKLM-x32\...\{E5A877B4-58CF-4251-8DF4-A93896F4BB65}) (Version: 14.50.214 - National Instruments) Hidden NI Update Service 2014 (64-bit) (HKLM\...\{52697603-3D36-4BDD-A700-86667A40BA95}) (Version: 14.0.34 - National Instruments) Hidden NI Update Service 2014 (HKLM-x32\...\{E434B798-0B82-456C-B802-6B2B3FECA3B4}) (Version: 14.0.34 - National Instruments) Hidden NI USI 14.0.0 (HKLM-x32\...\{F12CCD29-F039-40C9-9C2A-79F398BD857B}) (Version: 14.0.05640 - National Instruments) Hidden NI USI 14.0.0 64-bit (HKLM\...\{C3A1057A-26A5-4896-A39D-700D6EC3BC94}) (Version: 14.0.05640 - National Instruments) Hidden NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden NI VC2010SP1MSMs x64 (HKLM\...\{AFC5A844-CA3A-4566-89E7-3E24E6AFF9A3}) (Version: 10.0.100 - National Instruments) Hidden NI VC2010SP1MSMs x86 (HKLM-x32\...\{F2273FA7-117C-43D7-BD59-00B025535442}) (Version: 10.0.100 - National Instruments) Hidden NI Visual C++ 2008 Redistributable Package (HKLM-x32\...\{08505CC2-EA7F-4818-9C45-B74EDA7227F8}) (Version: 9.00.49152 - National Instruments) Hidden NI Visual C++ 2010 Redistributable Package (HKLM-x32\...\{87E698D6-02AC-485E-A6BA-9194C94CC547}) (Version: 10.10.16385 - National Instruments) Hidden NI Web Application Server 2014 SP1 (64-bit) (HKLM\...\{9871A7B2-C7AC-4AA6-8AED-4DD11FEB8D5D}) (Version: 14.5.8 - National Instruments) Hidden NI Web Application Server 2014 SP1 (HKLM-x32\...\{37AE86E4-71D4-4E37-9424-F25D298C7AD9}) (Version: 14.5.8 - National Instruments) Hidden NI-Mesa (HKLM\...\{D43C46AB-57CC-48E4-83B1-514CDBF148A5}) (Version: 13.0.3 - National Instruments) Hidden NI-Mesa (HKLM-x32\...\{7F93F26A-E5F7-4AE1-840F-F88DFE2DE3A5}) (Version: 13.0.3 - National Instruments) Hidden NI-RPC 14.0.0f0 (HKLM-x32\...\{F2FD6CC8-82E5-4DD3-933A-DC7E0F636E55}) (Version: 14.00.49152 - National Instruments) Hidden NI-RPC 14.0.0f0 for 64 Bit Windows (HKLM\...\{642EF411-1FD1-4AD3-8F9A-BA31E75C37AB}) (Version: 14.00.49152 - National Instruments) Hidden NordVPN (HKLM-x32\...\{F4325B30-A8A0-4D09-B0DE-7CBB485A52D8}) (Version: 6.22.6 - NordVPN) Hidden NordVPN (HKLM-x32\...\NordVPN 6.22.6) (Version: 6.22.6 - NordVPN) NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden NVIDIA Controlador de 3D Vision 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 416.34 - NVIDIA Corporation) NVIDIA Controlador de audio HD 1.3.37.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.5 - NVIDIA Corporation) NVIDIA Controlador de gráficos 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 416.34 - NVIDIA Corporation) NVIDIA Controlador de la controladora 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) NVIDIA GeForce Experience 3.18.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.18.0.94 - NVIDIA Corporation) NVIDIA Software del sistema PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.4 - OBS Project) Opera Stable 68.0.3618.125 (HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\Opera 68.0.3618.125) (Version: 68.0.3618.125 - Opera Software) Orca (HKLM-x32\...\{85F4CBCB-9BBC-4B50-A7D8-E1106771498D}) (Version: 3.1.3790.0000 - Microsoft Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.35.22222 - Electronic Arts, Inc.) Panel de control de NVIDIA 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 416.34 - NVIDIA Corporation) Hidden PC Remote Receiver 7.1.0 (HKLM-x32\...\PC Remote Receiver) (Version: 7.1.0 - monect.com) PerformanceTest v9.0 (HKLM\...\PerformanceTest 9_is1) (Version: 9.0.1027.0 - Passmark Software) Proteus 8 Professional (HKLM-x32\...\{D79AB5A7-47E8-4EC0-8747-46FBA7D9439A}) (Version: 8.8.27031.0 - Labcenter Electronics) PSeInt (HKLM-x32\...\PSeInt) (Version: - ) Radmin Viewer 3.5.2 (HKLM-x32\...\{9F9073EA-5DCE-4B23-8A0C-C7D2C89AEADC}) (Version: 3.52.1.0000 - Famatech) Radmin VPN 1.0.5 (HKLM-x32\...\{74BED559-2714-428F-B287-6597D55D3B34}) (Version: 1.0.3723 - Famatech) Revisores de Texto do Microsoft Office 2016 – Português (Brasil) (HKLM-x32\...\{90160000-001F-0416-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Revo Uninstaller 2.1.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.5 - VS Revo Group, Ltd.) RivaTuner Statistics Server 7.1.0 (HKLM-x32\...\RTSS) (Version: 7.1.0 - Unwinder) Sections Framework version 4.1 (HKLM-x32\...\{6B1AF961-D2B6-4492-A4BF-308E5561D5E1}_is1) (Version: 4.1 - ERA MobileTec) SkyCiv Structural Analysis 1.1.0 (HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\90314c9c-cca5-510c-8cf9-00205a96ca0a) (Version: 1.1.0 - SkyCiv) SoftEther VPN Client (HKLM\...\softether_sevpnclient) (Version: 4.27.9668 - SoftEther VPN Project) SoftEther VPN Server (HKLM\...\softether_sevpnserver) (Version: 4.29.9680 - SoftEther VPN Project) Software de National Instruments (HKLM-x32\...\NI Uninstaller) (Version: - National Instruments) SpaceClaim Translators 19.1 (HKLM\...\{448949D6-7829-DADD-883F-0388FC997F41}) (Version: 19.1.0 - SpaceClaim Corporation) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synergy (64-bit) (HKLM\...\{4601E90A-445C-4948-96A4-BF50FE408916}) (Version: 1.8.8 - Symless Ltd) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.2.2 - TeamSpeak Systems GmbH) TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.4.8332 - TeamViewer) TP-LINK TL-WN7200ND Driver (HKLM-x32\...\{9F88C456-C1E7-4D96-81BE-8D9E75C0229E}) (Version: 1.3.1 - TP-LINK) Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation) UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 11.0.2.2 - SOSVirus (SOSVirus.Net)) VBA (2627.01) (HKLM-x32\...\{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}) (Version: 6.03.00.9402 - Microsoft Corporation) Hidden VirtualDJ 2018 (HKLM-x32\...\{276C552D-2617-4EC0-8893-D3A0A0D11463}) (Version: 8.3.4787.0 - Atomix Productions) VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN) VNC Server 6.4.1 (HKLM\...\{696B4C6D-F871-4B73-A380-FFECBF02985E}) (Version: 6.4.1.40826 - RealVNC Ltd) Windscribe (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.83 Build 18 - Windscribe Limited) WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH) ZTE USB Driver (HKLM\...\ZTE USB Driver) (Version: 1.0.1.37_TME - ZTE Corporation) Packages: ========= Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-02] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-02] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-31] (Microsoft Studios) [MS Ad] MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-05-31] (Microsoft Corporation) [MS Ad] ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) CustomCLSID: HKU\S-1-5-21-3244362241-3479270138-3392189060-1001_Classes\CLSID\{28B7AA99-C0F9-4C47-995E-8A8D729603A1}\localserver32 -> C:\Program Files\AutoCAD 2008\acad.exe (Autodesk, Inc -> Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3244362241-3479270138-3392189060-1001_Classes\CLSID\{6AB55F46-2523-4701-A912-B226F46252BA}\localserver32 -> C:\Program Files\AutoCAD 2008\acad.exe (Autodesk, Inc -> Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3244362241-3479270138-3392189060-1001_Classes\CLSID\{7AABBB95-79BE-4C0F-8024-EB6AF271231C}\localserver32 -> C:\Program Files\AutoCAD 2008\acad.exe (Autodesk, Inc -> Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3244362241-3479270138-3392189060-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\AutoCAD 2008\acadficn.dll (Autodesk, Inc -> Autodesk, Inc.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2007-02-12] (Autodesk, Inc -> Autodesk, Inc.) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -> {6C18531F-CA85-45F7-8278-FF33CF0A5964} => C:\Program Files (x86)\Common Files\Autodesk Shared\dwf Common\DWFShellExtension.dll [2006-11-09] (Autodesk, Inc. -> Autodesk, Inc.) ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () [Archivo no firmado] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-10-10] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ningún archivo ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Lista blanca) ==================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [Archivo no firmado] HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [Archivo no firmado] ==================== Accesos directos & WMI ======================== ==================== Módulos cargados (Lista blanca) ============= 2018-04-23 11:14 - 2018-04-23 11:14 - 000071680 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\PlugIns\Monitoring\PerfCounter.dll 2018-04-23 11:13 - 2018-04-23 11:13 - 000232448 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2018-04-23 11:13 - 2018-04-23 11:13 - 000057344 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2018-04-23 11:13 - 2018-04-23 11:13 - 000567808 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2018-04-23 11:13 - 2018-04-23 11:13 - 000072704 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2018-04-23 11:13 - 2018-04-23 11:13 - 000357888 _____ () [Archivo no firmado] C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2019-01-21 07:55 - 2019-01-21 07:55 - 000251392 _____ () [Archivo no firmado] C:\Program Files (x86)\NordVPN\x86\Liberation.Native.Firewall.dll 2018-10-02 04:17 - 2015-04-20 11:12 - 000790016 _____ () [Archivo no firmado] C:\Program Files\NetWorx\sqlite.dll 2017-10-18 17:51 - 2017-10-18 17:51 - 000598528 _____ () [Archivo no firmado] C:\ProgramData\MEGAsync\ShellExtX64.dll 2019-11-06 18:44 - 2019-11-06 18:44 - 001602560 _____ (Microsoft Corporation) [Archivo no firmado] C:\Windows\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.42_none_8f16b0d88731ea9c\MFC80U.DLL 2018-11-23 01:28 - 2018-11-20 14:48 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\Origin\LIBEAY32.dll 2019-03-05 23:49 - 2018-11-20 14:49 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Archivo no firmado] C:\Program Files (x86)\Origin\ssleay32.dll 2018-11-23 01:28 - 2018-11-20 14:48 - 001611264 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2018-11-23 01:28 - 2018-11-20 14:48 - 005487104 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Core.dll 2018-11-23 01:28 - 2018-11-20 14:48 - 005841920 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Gui.dll 2018-11-23 01:28 - 2018-11-20 14:49 - 001177600 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Network.dll 2019-01-28 23:36 - 2018-11-20 14:49 - 005089792 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2019-01-28 23:36 - 2018-11-20 14:49 - 000184832 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files (x86)\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Lista blanca) ======== (Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.) AlternateDataStreams: C:\Users\Méndez\Datos de programa:fbd50e2f7662a5c33287ddc6e65ab5a1 [394] AlternateDataStreams: C:\Users\Méndez\AppData\Roaming:fbd50e2f7662a5c33287ddc6e65ab5a1 [394] ==================== Modo Seguro (Lista blanca) ================== ==================== Asociación (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado.) HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\Software\Classes\.scr: AutoCADScriptFile => "C:\Windows\system32\notepad.exe" "%1" ==================== Internet Explorer sitios de confianza/restringidos ========== ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2020-05-30 14:51 - 2020-06-08 00:20 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts 127.0.0.1 localhost 2018-10-05 19:56 - 2019-05-02 18:36 - 000000512 _____ C:\Windows\system32\drivers\etc\hosts.ics 192.168.137.1 DESKTOP-VIJV5I1.mshome.net # 2024 4 2 30 22 36 51 897 192.168.137.221 TL-WR841N.mshome.net # 2019 5 4 9 21 46 37 721 ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Méndez\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: ) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Firewall de Windows está habilitado. Network Binding: ============= Ethernet 4: SoftEther Lightweight Network Protocol -> SeLow (enabled) Ethernet 4: ZK NET Driver -> zknetdrv (enabled) Ethernet 4: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) Ethernet: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) Ethernet: SoftEther Lightweight Network Protocol -> SeLow (enabled) Ethernet: ZK NET Driver -> zknetdrv (enabled) Ethernet 3: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) Ethernet 3: SoftEther Lightweight Network Protocol -> SeLow (enabled) Ethernet 3: ZK NET Driver -> zknetdrv (enabled) Hamachi: SoftEther Lightweight Network Protocol -> SeLow (enabled) Hamachi: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) Hamachi: ZK NET Driver -> zknetdrv (enabled) Wi-Fi: SoftEther Lightweight Network Protocol -> SeLow (enabled) Wi-Fi: Connectify WLAN LightWeight Filter -> nt_cfywlan2 (enabled) Wi-Fi: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) Wi-Fi: ZK NET Driver -> zknetdrv (enabled) VPN - VPN Client: SoftEther Lightweight Network Protocol -> SeLow (enabled) VPN - VPN Client: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) VPN - VPN Client: ZK NET Driver -> zknetdrv (enabled) Radmin VPN: SoftEther Lightweight Network Protocol -> SeLow (enabled) Radmin VPN: ZK NET Driver -> zknetdrv (enabled) Radmin VPN: Connectify LightWeight Filter -> nt_cnnctfy4 (enabled) ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == (Si una entrada es incluida en el fixlist, será eliminada.) HKLM\...\StartupApproved\StartupFolder: => "NI Error Reporting.lnk" HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk" HKLM\...\StartupApproved\StartupFolder: => "SoftEther VPN Client Manager Startup.lnk" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "Connectify Hotspot" HKLM\...\StartupApproved\Run: => "SoftEther VPN Client UI Helper" HKLM\...\StartupApproved\Run32: => "marswifi" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "BF2Hub Client" HKLM\...\StartupApproved\Run32: => "SecurityHealth" HKLM\...\StartupApproved\Run32: => "RadminVPN" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\StartupFolder: => "PCRemoteReceiver.lnk" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\StartupFolder: => "Connectify.exe - Acceso directo.lnk" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3244362241-3479270138-3392189060-1001\...\StartupApproved\Run: => "MouseServer" ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [TCP Query User{67CEE0C2-9D55-40AB-8609-DA797CEE875B}D:\program files\txgameassistant\appmarket\gamedownload.exe] => (Block) D:\program files\txgameassistant\appmarket\gamedownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [UDP Query User{DE051EEB-10A4-4E5A-BCF1-54115AD06E86}D:\program files\txgameassistant\appmarket\gamedownload.exe] => (Block) D:\program files\txgameassistant\appmarket\gamedownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [TCP Query User{5AC8549D-3B92-4455-83E2-1129EB915DC0}D:\program files\txgameassistant\ui\androidemulator.exe] => (Block) D:\program files\txgameassistant\ui\androidemulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [UDP Query User{2BA65415-3954-4D3B-8382-BAD4CF894D0B}D:\program files\txgameassistant\ui\androidemulator.exe] => (Block) D:\program files\txgameassistant\ui\androidemulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [TCP Query User{C68C10E2-24A8-490C-8F74-62951514CB31}C:\users\méndez\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\méndez\appdata\local\programs\opera\68.0.3618.125\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [UDP Query User{D42A2DF1-0678-4D2E-B423-FEB7D25CE1A2}C:\users\méndez\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\méndez\appdata\local\programs\opera\68.0.3618.125\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [{28D415A1-8C25-4D24-9DE1-2A72FAF14C97}] => (Allow) C:\Users\Méndez\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{0BE118D3-C27B-4756-9F1D-F38FCBE03869}] => (Allow) C:\Users\Méndez\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{8C57A729-8F52-4C41-9F8B-742D4A6BFB2F}] => (Allow) C:\Users\Méndez\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{B261F7AB-742D-4ED6-A89F-87FA102E27B1}] => (Allow) C:\Users\Méndez\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [TCP Query User{637FFC1E-10DA-4048-821D-0F260FA55AA7}C:\sierra\empire earth\empire earth.exe] => (Block) C:\sierra\empire earth\empire earth.exe () [Archivo no firmado] FirewallRules: [UDP Query User{D900EFAA-6AE2-4409-AEB6-3A40BBE71FD7}C:\sierra\empire earth\empire earth.exe] => (Block) C:\sierra\empire earth\empire earth.exe () [Archivo no firmado] ==================== Puntos de Restauración ========================= ATENCIÓN: Restaurar Sistema está deshabilitado (Total:74.03 GB) (Free:5.86 GB) (8%) ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ Name: LSIS XGSeries Description: LSIS XGSeries Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: LS Inderstrial System CO. Service: WinUSB Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: LogMeIn Hamachi Virtual Ethernet Adapter Description: LogMeIn Hamachi Virtual Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: LogMeIn Inc. Service: Hamachi Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Famatech RadminVPN Ethernet Adapter Description: Famatech RadminVPN Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Famatech Service: RvNetMP60 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: VPN Client Adapter - VPN Description: VPN Client Adapter - VPN Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: SoftEther Corporation Service: Neo_VPN Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: TAP-NordVPN Windows Adapter V9 Description: TAP-NordVPN Windows Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-NordVPN Windows Provider V9 Service: tapnordvpn Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (06/08/2020 03:56:29 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa Microsoft.Photos.exe, versión 2020.19111.24110.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, comprueba el historial de problemas en la sección Seguridad y mantenimiento del Panel de control. Identificador de proceso: 3158 Hora de inicio: 01d63dcebcfa3dc0 Hora de finalización: 4294967295 Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Identificador de informe: 7ab8ec8f-7eb0-4a97-85dd-fe0d4d71a501 Nombre completo de paquete con errores: Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe Identificador de aplicación relativa del paquete con errores: App Error: (06/08/2020 03:30:05 PM) (Source: VNC Server) (EventID: 256) (User: ) Description: HostedRendezvous: Rendezvous lookup failed: Hosted Bootstrap error: Network failure: Timed out fetching resource Error: (06/08/2020 03:29:25 PM) (Source: VNC Server) (EventID: 256) (User: ) Description: FdIo: setHandler: [System-10054] write: Se ha forzado la interrupción de una conexión existente por el host remoto. (10054) Error: (06/08/2020 03:21:49 PM) (Source: VNC Server) (EventID: 256) (User: ) Description: HostedRendezvous: Rendezvous lookup failed: Hosted Bootstrap error: Network failure: Error connecting: getaddrinfo: Host desconocido. (11001) Error: (06/08/2020 03:21:49 PM) (Source: VNC Server) (EventID: 256) (User: ) Description: FdIo: setHandler: [System-10054] write: Se ha forzado la interrupción de una conexión existente por el host remoto. (10054) Error: (06/08/2020 01:33:56 PM) (Source: VNC Server) (EventID: 256) (User: ) Description: FdIo: setHandler: [System-10053] write: Se ha anulado una conexión establecida por el software en su equipo host.. (10053) Error: (06/08/2020 11:11:04 AM) (Source: VNC Server) (EventID: 256) (User: ) Description: HostedRendezvous: Rendezvous lookup failed: Hosted Bootstrap error: Network failure: Error connecting: getaddrinfo: Host desconocido. (11001) Error: (06/08/2020 11:10:47 AM) (Source: VNC Server) (EventID: 256) (User: ) Description: HostedRendezvous: Rendezvous lookup failed: Hosted Bootstrap error: Network failure: Error connecting: getaddrinfo: Host desconocido. (11001) Errores del sistema: ============= Error: (06/08/2020 04:09:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} y APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (06/08/2020 04:09:43 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-VIJV5I1) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} y APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} al usuario DESKTOP-VIJV5I1\Méndez con SID (S-1-5-21-3244362241-3479270138-3392189060-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (06/08/2020 04:05:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID Windows.SecurityCenter.WscDataProtection y APPID No disponible al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (06/08/2020 04:02:20 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} y APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (06/08/2020 04:02:20 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} y APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes. Error: (06/08/2020 04:01:32 PM) (Source: RemoteAccess) (EventID: 20063) (User: ) Description: El Administrador de conexiones de acceso remoto no se pudo iniciar por un error al inicializar el motor del protocolo [IKEv2]. Solicitud no compatible. Error: (06/08/2020 04:01:32 PM) (Source: RemoteAccess) (EventID: 20063) (User: ) Description: El Administrador de conexiones de acceso remoto no se pudo iniciar por un error al inicializar el motor del protocolo [rasgreeng.dll]. No se puede encontrar el módulo especificado. Error: (06/08/2020 04:01:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio QMEmulatorService no pudo iniciarse debido al siguiente error: Acceso denegado. Windows Defender: =================================== Date: 2020-06-08 05:38:31.462 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para obtener más información consulte lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0 Nombre: Trojan:Win32/Wacatac.D!ml Id.: 2147749373 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Users\Méndez\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Origen de detección: Equipo local Tipo de detección: FastPath Fuente de detección: Usuario Usuario: DESKTOP-VIJV5I1\Méndez Nombre de proceso: Unknown Versión de firma: AV: 1.317.890.0, AS: 1.317.890.0, NIS: 1.317.890.0 Versión de motor: AM: 1.1.17100.2, NIS: 1.1.17100.2 Date: 2020-06-08 02:48:31.535 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {C2357821-1A80-4301-8705-E658CE42C14A} Tipo de examen: Antimalware Parámetros de examen: Examen personalizado Usuario: DESKTOP-VIJV5I1\Méndez Date: 2020-06-08 02:48:14.314 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {3A13EC3D-E1B1-4E9D-8B40-591AF507F04A} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: DESKTOP-VIJV5I1\Méndez Date: 2020-06-07 18:53:12.691 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {BE4E446F-3720-49DF-B6D8-8E7D14BB8C22} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2020-06-06 19:03:05.567 Description: Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado. Para obtener más información consulte lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D!ml&threatid=2147749373&enterprise=0 Nombre: Trojan:Win32/Wacatac.D!ml Id.: 2147749373 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Windows\Temp\tmp000003b8\tmp000002af;file:_C:\Windows\Temp\tmp000003b8\tmp000002b0;file:_C:\Windows\Temp\tmp000003b8\tmp000002b1;file:_C:\Windows\Temp\tmp000003b8\tmp000002b2;file:_C:\Windows\Temp\tmp000003b8\tmp000002b3 Origen de detección: Equipo local Tipo de detección: Concreto Fuente de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\Bitdefender Antivirus Free\vsserv.exe Versión de firma: AV: 1.317.792.0, AS: 1.317.792.0, NIS: 1.317.792.0 Versión de motor: AM: 1.1.17100.2, NIS: 1.1.17100.2 Date: 2020-06-08 04:17:28.396 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.317.890.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.17100.2 Código de error: 0x80070102 Descripción del error: Tiempo de espera de la operación de espera agotado. Date: 2020-06-08 04:17:28.395 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.317.890.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.17100.2 Código de error: 0x80070102 Descripción del error: Tiempo de espera de la operación de espera agotado. Date: 2020-06-08 02:09:48.054 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.317.890.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.17100.2 Código de error: 0x80070102 Descripción del error: Tiempo de espera de la operación de espera agotado. Date: 2020-06-08 02:09:48.053 Description: Antivirus de Windows Defender encontró un error al intentar actualizar las firmas. Nueva versión de firma: Versión de firma anterior: 1.317.890.0 Origen de actualización: Servidor de Microsoft Update Tipo de firma: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión de motor actual: Versión de motor anterior: 1.1.17100.2 Código de error: 0x80070102 Descripción del error: Tiempo de espera de la operación de espera agotado. Date: 2020-06-08 00:23:36.696 Description: La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error: Característica: Durante el acceso Código de error: 0x8007043c Descripción del error: El servicio no puede iniciarse en modo a prueba de errores Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema. CodeIntegrity: =================================== Date: 2020-06-08 16:10:23.500 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:10:23.498 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:03:42.282 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:03:42.280 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:03:31.740 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:03:31.738 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-08 16:01:55.976 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Windows signing level requirements. Date: 2020-06-08 16:01:55.975 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll that did not meet the Windows signing level requirements. ==================== Información de la memoria =========================== BIOS: LENOVO 51KT58AUS 01/05/2012 Placa base: LENOVO LENOVO Procesador: Intel(R) Xeon(R) CPU E5430 @ 2.66GHz Porcentaje de memoria en uso: 69% RAM física total: 4095.24 MB RAM física disponible: 1265.91 MB Virtual total: 7167.24 MB Virtual disponible: 3513.06 MB ==================== Unidades ================================ Drive c: () (Fixed) (Total:74.03 GB) (Free:5.86 GB) NTFS Drive d: () (Fixed) (Total:74.53 GB) (Free:0.66 GB) NTFS \\?\Volume{78feab04-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.47 GB) (Free:0.19 GB) NTFS ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (MBR Code: Windows XP) (Size: 74.5 GB) (Disk ID: EC57EC57) Partition 1: (Not Active) - (Size=74.5 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (MBR Code: Windows XP) (Size: 74.5 GB) (Disk ID: 78FEAB04) Partition 1: (Active) - (Size=486 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=74 GB) - (Type=07 NTFS) ==================== Final de Addition.txt =======================