Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 19.04.2024 01 Ejecutado por 34640 (09-05-2024 13:07:03) Ejecutado desde C:\Users\34640\OneDrive\Escritorio Microsoft Windows 10 Pro Versión 22H2 19045.4170 (X64) (2022-01-06 21:40:15) Modo de Inicio: Normal ========================================================== ==================== Cuentas: ============================= (Si una entrada es incluida en el fixlist, será eliminada.) 34640 (S-1-5-21-1029734310-37884491-227788786-1001 - Administrator - Enabled) => C:\Users\34640 Administrador (S-1-5-21-1029734310-37884491-227788786-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1029734310-37884491-227788786-503 - Limited - Disabled) escaner (S-1-5-21-1029734310-37884491-227788786-1002 - Administrator - Enabled) Invitado (S-1-5-21-1029734310-37884491-227788786-501 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-1029734310-37884491-227788786-504 - Limited - Disabled) ==================== Centro de Seguridad ======================== (Si una entrada es incluida en el fixlist, será eliminada.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas instalados ====================== (Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1034-1033-7760-BC15014EA700}) (Version: 24.002.20736 - Adobe) AnyDesk (HKLM-x32\...\AnyDesk) (Version: ad 7.0.15 - AnyDesk Software GmbH) aTube Catcher versión 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) BlueStacks App Player (HKLM\...\BlueStacks_nxt) (Version: 5.20.101.1002 - now.gg, Inc.) BlueStacks Services (HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\BlueStacksServices) (Version: 3.0.8 - now.gg, Inc.) BlueStacks X (HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\BlueStacks X) (Version: 10.10.6.1001 - now.gg, Inc.) CCleaner Technician (HKLM-x32\...\CCleaner Technician_is1) (Version: 6.03.10002 - Piriform SOFTWARE Ltd) Configurador FNMT (HKLM\...\ConfiguradorFnmt) (Version: 4.0.2 - FNMT-RCM) Documentation Manager (HKLM\...\{903A7EB3-3534-44FC-8E98-43D5050EF04E}) (Version: 22.10.0.7 - Intel Corporation) Hidden Dropbox (HKLM-x32\...\Dropbox) (Version: 198.4.7615 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.863.1 - Dropbox, Inc.) Hidden Express Invoice, software de facturación (HKLM-x32\...\ExpressInvoice) (Version: 9.44 - NCH Software) Firebird 2.5.2.26540 (Win32) (HKLM-x32\...\FBDBServer_2_5_is1) (Version: 2.5.2.26540 - Firebird Project) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 124.0.6367.119 - Google LLC) Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 90.0.3.0 - Google LLC) Grip points (HKLM\...\{FD6C6137-8359-4FFA-850D-C52EBEEBFCD4}) (Version: 4.01.1.0 - Open Design Alliance) Hidden HiP2P Client (HKLM-x32\...\{2F3762A1-58CA-43A8-9854-88BCC34C6D2F}) (Version: 6.5.1.9 - Hi) Intel(R) Chipset Device Software (HKLM\...\{C3F938DB-732F-4A2B-BB44-42233484D098}) (Version: 10.1.17479.8054 - Intel Corporation) Hidden Intel(R) Chipset Device Software (HKLM-x32\...\{9154f79b-8fb8-46ef-b7a6-95f136391303}) (Version: 10.1.17479.8054 - Intel(R) Corporation) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.3.10208.5644 - Intel Corporation) Intel(R) Graphics Driver Software (HKLM-x32\...\{bd73e01d-c055-4533-8bc3-1f9489e66168}) (Version: 3.11.1.0 - Intel) Hidden Intel(R) Serial IO (HKLM\...\{36B07318-86ED-4AAA-9F43-DB0648064E84}) (Version: 30.100.1726.2 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1726.2 - Intel Corporation) Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1743.4.0.1217 - Intel Corporation) Intel(R) Trusted Execution Engine (HKLM\...\{2928EECD-AC08-4844-9F7D-3AD6646236CE}) (Version: 1.1.1.1 - Intel Corporation) Hidden Intel(R) Trusted Execution Engine Driver (HKLM\...\{0E882099-29A1-4228-A598-39A5985D9FEC}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) TXE Storage Proxy Driver (HKLM\...\{B012B970-C905-49C4-A6AB-832EDB43F696}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000010-0220-1033-84C8-B8D95FA3C8C3}) (Version: 22.10.0.2 - Intel Corporation) Intel® Software Installer (HKLM-x32\...\{ce61813b-9933-4b38-8b0c-1cb8b740f2d1}) (Version: 22.10.0.7 - Intel Corporation) Hidden Malwarebytes version 5.1.3.110 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.1.3.110 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 124.0.2478.80 - Microsoft Corporation) Microsoft Office LTSC Professional Plus 2021 - es-es (HKLM\...\ProPlus2021Volume - es-es) (Version: 16.0.14332.20685 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.076.0414.0005 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.38.32919 (HKLM-x32\...\{68c77bab-8435-4d15-ae03-fd4f6e158317}) (Version: 14.38.32919.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.38.32919 (HKLM-x32\...\{5F0295FE-3DAA-4C04-94A6-2AFC6D739D34}) (Version: 14.38.32919 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.38.32919 (HKLM-x32\...\{2F7F071D-83D0-4994-8237-7B0579452FD4}) (Version: 14.38.32919 - Microsoft Corporation) Hidden Microsoft_VC80_CRT_x86 (HKLM-x32\...\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}) (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC90_CRT_x86 (HKLM-x32\...\{08D2E121-7F6A-43EB-97FD-629B44903403}) (Version: 1.00.0000 - Adobe) Hidden MiniTool Partition Wizard 12.7 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 12.7 - MiniTool Software Limited) MOTOR BDE (HKLM-x32\...\{4C85F7AD-C794-4BF7-84BD-5739ACE0DD25}) (Version: 1.00.0000 - MOTOR) MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20685 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20685 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.14332.20624 - Microsoft Corporation) Hidden PDFExport (HKLM\...\{D622819E-CEF2-4171-BF04-4E2B9ACC4BFA}) (Version: 4.01.1.0 - Open Design Alliance) Hidden PDF-XChange PRO (HKLM\...\{D8E9A478-426F-46F2-9ED6-B1EA6237D407}) (Version: 9.4.364.0 - Tracker Software Products (Canada) Ltd.) Hidden PDF-XChange PRO (HKLM-x32\...\{cd0ba26f-1cfc-4130-a6cc-26c1df876fc1}) (Version: 9.4.364.0 - Tracker Software Products (Canada) Ltd.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.31235 - Realtek Semiconductor Corp.) Sheet sets (HKLM\...\{E7BC2CB3-5659-4B2D-8C4D-28ADD138BE62}) (Version: 4.01.1.0 - Open Design Alliance) Hidden Spotify (HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Spotify) (Version: 1.2.35.663.gb699649e - Spotify AB) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 10.0.1266 - SUPERAntiSpyware.com) SVG Export (HKLM\...\{773C09F4-4C26-4C46-9863-8DFC431641CD}) (Version: 4.01.1.0 - Open Design Alliance) Hidden TDXAcId (HKLM\...\{FAD49943-56C4-4E57-9702-380536370B1B}) (Version: 4.01.1.0 - Soft Dev SPb) Hidden Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.4.0.19572 - Microsoft Corporation) TeighaX 64bit version 4.01.01 (HKLM\...\{1B0A6C89-D4F3-4540-B300-EA7B06D3E191}_is1) (Version: 4.01.01 - ) TeighaX Core (HKLM\...\{194DED16-A48E-4792-9DF8-7C5BE61991D3}) (Version: 4.01.1.0 - Open Design Alliance) Hidden TeighaX DWF Support (HKLM\...\{676387C6-9A33-4B02-9EC0-D173EB7A9AEC}) (Version: 4.01.1.0 - Open Design Alliance) Hidden TeighaX ExEvalWatcher (HKLM\...\{156A0A06-1586-4408-A0E0-428EAF5C5980}) (Version: 4.01.1.0 - Open Design Alliance) Hidden TeighaX Field Evaluator (HKLM\...\{DDEA716B-FFB2-47BC-8869-E61E012960D2}) (Version: 4.01.1.0 - Open Design Alliance) Hidden TeighaX Rendering (HKLM\...\{A33F4841-DB8A-45ED-AD43-BC0450DCB552}) (Version: 4.01.1.0 - Open Design Alliance) Hidden Telegram Desktop (HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 5.0 - Telegram FZ-LLC) Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation) ViewX (HKLM\...\{90B251FB-5A11-41D6-993D-BDD1C1606CDE}) (Version: 4.01.1.0 - Open Design Alliance) Hidden VirtualDJ 2024 (HKLM\...\{A0A54E4B-3011-4A64-9423-CB22CA02F43F}) (Version: 8.5.8055.0 - Atomix Productions) VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN) WebView2 Runtime de Microsoft Edge (HKLM-x32\...\Microsoft EdgeWebView) (Version: 124.0.2478.80 - Microsoft Corporation) WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH) Wondershare Filmora9(Build 9.0.0) (HKLM\...\Wondershare Filmora9_is1) (Version: - Wondershare Software) Wondershare Helper Compact 2.5.2 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare) Wondershare NativePush(Build 1.0.0.7) (HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\Wondershare NativePush_is1) (Version: - ) Wondershare Recoverit(Build 11.5.6.5) (HKLM-x32\...\{829555DC-31E5-4FEA-B350-8FCF24CECD95}_is1) (Version: 11.5.6.5 - Wondershare Software Co.,Ltd.) Packages: ========= Búsqueda web de Microsoft Bing -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-04-10] (Microsoft Corporation) Centro de comando de gráficos Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5435.0_x64__8j3eq9eme6ctt [2024-04-11] (INTEL CORP) [Startup Task] Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2024-01-12] (Microsoft Corporation) Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2024-05-03] (Dropbox Inc.) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_153.1.1137.0_x64__v10z8vjag6ke6 [2024-05-07] (HP Inc.) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-01-12] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2024-01-12] (Microsoft Corporation) [MS Ad] Microsoft Copilot -> C:\Program Files\WindowsApps\Microsoft.Windows.Ai.Copilot.Provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-03-30] (Microsoft Corporation) RICOH Driver Utility -> C:\Program Files\WindowsApps\3EA2211E.RICOHDriverUtility_4.7.0.0_x86__fxme7667cy4q4 [2024-01-12] (Ricoh Company, Ltd.) WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2417.4.0_x64__cv1g1gvanyjgm [2024-05-05] (WhatsApp Inc.) [Startup Task] ==================== Personalizado CLSID (Lista blanca): ============== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) HKU\S-1-5-21-1029734310-37884491-227788786-1001\...\ChromeHTML: -> <==== ATENCIÓN CustomCLSID: HKU\S-1-5-21-1029734310-37884491-227788786-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-1029734310-37884491-227788786-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\34640\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) CustomCLSID: HKU\S-1-5-21-1029734310-37884491-227788786-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-1029734310-37884491-227788786-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\34640\Dropbox [2024-01-31 11:37] ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-09] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.076.0414.0005\FileSyncShell64.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\90.0.3.0\drivefsext.dll [2024-04-24] (Google LLC -> Google, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.72.0.dll [2024-05-02] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-04-09] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Lista blanca) ==================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [Archivo no firmado] ==================== Accesos directos & WMI ======================== (Las entradas pueden ser listadas para ser restauradas o eliminadas.) ShortcutWithArgument: C:\Users\34640\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension="C:\Users\34640\AppData\Local\Default" ShortcutWithArgument: C:\Users\34640\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension="C:\Users\34640\AppData\Local\Default" ==================== Módulos cargados (Lista blanca) ============= 2024-05-09 12:16 - 2024-05-09 12:16 - 002331648 _____ () [Archivo no firmado] \\?\C:\Users\34640\AppData\Local\Temp\46176182-7a2b-4a40-a907-89e42110724f.tmp.node 2024-01-31 11:17 - 2024-01-25 09:48 - 002862080 _____ () [Archivo no firmado] C:\Users\34640\AppData\Local\Programs\bluestacks-services\ffmpeg.dll 2024-01-31 11:17 - 2024-01-25 09:48 - 000479232 _____ () [Archivo no firmado] C:\Users\34640\AppData\Local\Programs\bluestacks-services\libegl.dll 2024-01-31 11:17 - 2024-01-25 09:48 - 007513600 _____ () [Archivo no firmado] C:\Users\34640\AppData\Local\Programs\bluestacks-services\libglesv2.dll 2024-01-31 11:17 - 2024-01-25 09:48 - 005209088 _____ () [Archivo no firmado] C:\Users\34640\AppData\Local\Programs\bluestacks-services\vk_swiftshader.dll 0000-00-00 00:00 - 0000-00-00 00:00 - 000000000 _____ () <==== ATENCIÓN [cero bytes Archivo/Carpeta] \\?\C:\Users\34640\AppData\Roaming\Java\jre8\bin\java.exe:jll 2022-02-22 21:16 - 2013-03-19 12:02 - 000552960 _____ (Firebird Project) [Archivo no firmado] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbclient.dll 2022-02-22 21:16 - 2013-03-19 11:50 - 001568768 _____ (IBM Corporation and others) [Archivo no firmado] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\icudt30.dll 2022-02-22 21:16 - 2013-03-19 11:49 - 000675840 _____ (IBM Corporation and others) [Archivo no firmado] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\icuuc30.dll 2022-01-14 14:37 - 2022-01-14 14:37 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll 2022-01-14 14:37 - 2022-01-14 14:37 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll 2022-03-14 14:17 - 2022-03-14 14:17 - 001438208 _____ (Robert Simpson, et al.) [Archivo no firmado] [El archivo está en uso] c:\DriverPrinter\System.Data.SQLite.dll 2022-03-14 14:17 - 2022-03-14 14:17 - 001438208 ____N (Robert Simpson, et al.) [Archivo no firmado] [El archivo está en uso] C:\WINDOWS\TEMP\System.Data.SQLite.dll ==================== Alternate Data Streams (Lista blanca) ======== ==================== Modo Seguro (Lista blanca) ================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Asociación (Lista blanca) ================= ==================== Internet Explorer (Lista blanca) ========== BHO: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: PDF-XChange IE Plugin -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} -> C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Toolbar: HKLM - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x64.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Toolbar: HKLM-x32 - PDF-XChange IE Plugin - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange Standard\PXCIEAddin.x86.dll [2022-09-27] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-01-14] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenido: ========================= (Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.) 2019-12-07 11:14 - 2024-04-09 11:55 - 000001391 _____ C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 analytics.ff.avast.com 0.0.0.0 ccleaner.piriform.com 0.0.0.0 defraggler.piriform.com 0.0.0.0 ip-info.ff.avast.com 0.0.0.0 ipm-provider.ff.avast.com 0.0.0.0 license-api.ccleaner.com 0.0.0.0 license.piriform.com 0.0.0.0 ncc.avast.com.edgesuite.net 0.0.0.0 recuva.piriform.com 0.0.0.0 shepherd.ff.avast.concc.avast.com 0.0.0.0 speccy.piriform.com 0.0.0.0 www.ccleaner.com 0.0.0.0 www.ccleaner.piriform.com 0.0.0.0 www.defraggler.piriform.com 0.0.0.0 www.license.piriform.com 0.0.0.0 www.recuva.piriform.com 0.0.0.0 www.speccy.piriform.com 2024-01-13 12:31 - 2024-01-24 20:09 - 000000443 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 192.168.137.1 DESKTOP-JS1P261.mshome.net # 2029 1 4 11 10 45 37 422 ==================== Otras Áreas =========================== (Actualmente no existe una corrección automática para esta sección.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\iCLS\;C:\Program Files\Intel\TXE Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\ HKU\S-1-5-21-1029734310-37884491-227788786-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\34640\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\logo.png DNS Servers: 8.8.8.8 - 1.1.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall de Windows está habilitado. ==================== MSCONFIG/TASK MANAGER elementos deshabilitados == ==================== Reglas de firewall (Lista blanca) ================ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) FirewallRules: [{651AE9BB-7619-49E2-8952-10155F6ECD1B}] => (Block) C:\Program Files (x86)\AOMEI Partition Assistant\PartAssist.exe => Ningún archivo FirewallRules: [{0A6CBAAF-F841-4BC9-BEAB-70E6EA3DC3D7}] => (Block) C:\Program Files (x86)\AOMEI Partition Assistant\PartAssist.exe => Ningún archivo FirewallRules: [{935BE00E-5B3B-4158-BCAC-53958C483005}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{B38E158E-B658-4DAA-B8F8-9E7C8B5F2BF1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{52955B13-D0C1-400D-98BF-F1247BA8A9CF}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{11BFDFD5-1DC5-4A6E-A7FE-E189F3467828}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{CD5F6670-E3D3-4DFD-9FE2-99CF219CA9D2}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{47CAC992-808F-4CCE-81D9-EE266B322525}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{25008B95-5D36-40EA-A172-E15C92B792DE}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{EAC6D2B2-5188-4B98-9E70-3EDE034B38B0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{BC4A03C0-9926-47DB-BECF-D85CE75BEDC2}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{167A7833-F7E7-4869-AE62-3303E3EAA5D4}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{1F8F3F0C-0952-48CC-8C9A-A90788994E36}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{3A51B9A5-C294-4A18-9E35-619E80F0C767}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{2913509E-AFF3-4DF9-9D3A-B0C0BB0F622D}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{546DFC3D-E949-4B43-84D4-40BBE9263F20}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{2DA8F714-4D06-451E-979B-E1CD18262AB2}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{051DDBAB-4129-4170-8B69-256635DAB0CB}C:\driverprinter\menuamr.exe] => (Allow) C:\driverprinter\menuamr.exe (Oriol Esteve Alibes -> ) FirewallRules: [UDP Query User{5D025130-6A78-4DD5-9826-3DE34CA40131}C:\driverprinter\menuamr.exe] => (Allow) C:\driverprinter\menuamr.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{34A80CA8-0FCD-4510-8C86-AEBCC6C2FD4A}C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Allow) C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) FirewallRules: [UDP Query User{8E5E4103-E07D-47C7-A296-7B6EFE40D794}C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Allow) C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) FirewallRules: [{8F33140D-3807-4B7B-8E64-07167978C3CB}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{EF4DE233-4F2C-477F-B97A-051FBF2A7AD7}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{FCF90259-2A03-41C1-86D0-036AC2B83BB3}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{0A1AAFD0-F883-470C-B45E-D57706F63B49}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{9E51A6D5-261F-4B74-887E-CDA037DE253E}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{09418A79-4B21-40F7-9750-5D64B890CB07}C:\users\34640\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\34640\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{B75B6A81-9A22-4E2C-A3E1-0AC17B5612B4}C:\users\34640\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\34640\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{E1CCF671-52A2-4B23-AFA4-1E99E2BFB347}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{41B53EA0-2675-4D90-994E-51341D5A6C66}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{EE4579D8-1356-452A-B4C4-8EEEDBA0E8DB}C:\driverprinter\menuamr.exe] => (Allow) C:\driverprinter\menuamr.exe (Oriol Esteve Alibes -> ) FirewallRules: [UDP Query User{27CC12FB-6C81-4DCB-94BE-4A276DEC20B5}C:\driverprinter\menuamr.exe] => (Allow) C:\driverprinter\menuamr.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{A7C5E604-1BB7-4F9A-B27D-CB7F3231C32F}C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Allow) C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) FirewallRules: [UDP Query User{AA9F63A7-C900-4D0F-B787-4DE7929DC811}C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Allow) C:\users\34640\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) FirewallRules: [{71BFA378-2AFF-4A87-B631-0938E3837D97}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{A30E9B84-FC21-452F-9D47-0E0EF8B999CD}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{A1B7D0BF-D5A9-4121-80A7-846041FE5E7D}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{4E6EAA07-D422-4520-AA31-A38B43705A57}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{766893C9-938D-4F13-AAA9-FC324DDE5A3C}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{F2DD1179-8F04-49DC-B85D-7C4CA7B8BD29}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{DBB4FCA6-93EF-4919-BBF4-2E6DF039CA4C}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{A99A85E3-2F67-448B-A8A6-C000F9AED644}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{5DEEDED2-F6D6-4276-82DB-0CE8961B2087}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{9796E77E-8BEE-4F77-A2A0-1C64F0F53D43}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{1515294C-6FA8-4115-AA7F-699B7B5A41D1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{719FE9E5-1D45-473D-8922-14F4AF980199}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{96308ADC-0D31-4B4B-9CB2-A4F331780217}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{DB437F12-C9D9-4C1F-9AB1-5A7D52AE237B}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [TCP Query User{0B3E3B59-7863-4B64-AFBC-D0CA535C7E27}C:\ftp\ftpserver.exe] => (Allow) C:\ftp\ftpserver.exe (Pablo Software Solutions) [Archivo no firmado] FirewallRules: [UDP Query User{84CCE487-4499-4667-9449-34E483F338A8}C:\ftp\ftpserver.exe] => (Allow) C:\ftp\ftpserver.exe (Pablo Software Solutions) [Archivo no firmado] FirewallRules: [{D9884955-6131-4489-B160-E71C12703A72}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{B768E6E5-757C-4D48-972A-B88BC714E438}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{982298E9-6A32-4EFF-BD10-A295A2A8CEB1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{89EC4C2E-E93C-49D8-9191-E210D8D084BB}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{DCB96C12-F41C-458F-8D1E-1E2843AF19B3}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{908D9C17-6462-4909-92D1-DEE8C9FD6458}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{F5CADD13-CA00-4D7C-8EF7-97A42AFDD202}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{8C701AF5-82EF-44E6-9D05-5C7DC68A691A}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{21BEFEF0-A1EA-4822-9E23-62BE652481FD}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{5C6390F4-FDDB-4B87-9ACD-F5D71793DE94}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{B4BE6806-FF46-4E76-809C-C5292836FBE0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{B00C7E75-A5BD-46FD-AE07-6CD50629BDE0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{FE914D0C-20DB-4FF6-B46D-0BCA277717BA}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{39E300FB-797B-4EED-A0DD-F31AF4DDAA93}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{555D556E-0761-4229-BEAF-3F253D36DAC4}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{0F3BAFEF-5AC1-4BD7-A809-35FCE45C04B1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{134443A6-0D58-4DF5-9768-CC2656A07E19}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{502D1C3F-99EB-498C-A9D0-35480CC197F1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{EA588515-BB49-4F34-8312-0C87B6275A2F}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{5AC18D40-A178-4F4F-A63B-712CA263A31A}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{3CB2A66C-A5E4-4F9C-AA27-0E0EE358E7DD}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{17B572EE-EFFE-4585-8929-E064AEBD78B0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{24E24C16-E93F-4121-AF06-83E427329094}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{D8C320B2-0D97-4EBD-972D-8F4022731B13}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{7B4C35F6-2F99-4BB6-B4B7-7E6C4596AE6C}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{11E73ADF-72CE-48BE-8337-B54E8CD682C9}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{0896ED94-C7E1-40CE-9B74-D348730FBA3B}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{88655B5E-C493-442D-9105-45FEB28DD060}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{27395FFF-4362-4D6A-9860-923CC9BC7C7E}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{63C40961-65C5-4876-AF9A-90D7C5242DC4}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{95B40395-9F8E-4E94-A4A4-D5AAFCB01C07}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{CE17490D-BB63-406E-B00F-459A74106DAE}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{F59386D8-C483-464D-BC4D-0B5057BBD659}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{562B0D3D-51F5-4100-A088-40295D456852}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{C4F28948-826A-46CF-ACD9-09427A4EF51E}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{351ACEE7-EA68-45D1-93FA-A9E33F0D76A1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{6AA405E3-9E14-4CBF-9F4B-8797E06F190A}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{A64518D4-F538-43A9-A684-00192D7116F1}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{268587EA-FC81-4015-9C42-D6A0E3604D74}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{EDE6DC30-988A-4635-BE59-AAC17D172817}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{ABB35C46-85E0-4AD2-AD4C-A8E6E1D1FA92}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{2FA886DC-11DA-48F3-A507-C5AACF9BA762}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{DE1CE56A-FA19-455B-A312-E4671AF812CA}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{3785E120-A01D-4203-B639-A527348721E0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{46735912-66EE-43AE-806A-6432FE82814C}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{006DA7BF-68EB-4905-A5E9-018E6D2EB0EE}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{1A3B0605-AA76-4686-AA18-2A7C42CC7B4A}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{C76EF7E0-50AE-4228-8326-B22F11030F39}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{32997179-4F0F-41F1-B9A1-C15925A2E434}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{C2BE64B3-BBEA-45F5-943D-845090696491}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{700A95BE-76ED-40BE-97EE-1CC0B19683B3}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{6075F7FD-01AF-4474-BCCD-BAF8C4813ED2}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{464A64DD-8B96-43A1-BF97-2197846D7E30}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{F5404BB7-1396-4C88-A5ED-96D714A4A908}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{5ED49B51-AFD0-4A78-89D4-EC7B10585B6C}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{92A33B73-6054-42AE-B095-3D17DD09FB47}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{01BFB2A3-FE26-48C3-BAA2-B759CC44676E}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{535A44CD-D629-489A-8C0D-B462A57D6786}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{521D976D-CB32-4B7B-9790-F0BC7F012399}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Now.gg, INC -> Bluestack Systems, Inc.) FirewallRules: [{4EAFDBB7-5265-4DBD-8440-C069C42C6A12}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Now.gg, INC -> COMPANY NAME) FirewallRules: [{F97CDCB3-E317-4B79-A73B-2A0CE972FBE2}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe (Now.gg, INC -> BlueStack Systems) FirewallRules: [{CD8F9BFC-55C3-40C8-B5A9-925B7B1A614F}] => (Allow) C:\Program Files\BlueStacks_nxt\BlueStacksAppplayerWeb.exe (Now.gg, INC -> The Qt Company Ltd.) FirewallRules: [{60681121-BEAF-40EE-AE3B-7D3728E6A586}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{A0A7F15D-7661-4BB0-9521-AB7CD62DB1D3}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{D13BAB84-F674-4E73-A543-64BC00AFB51D}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{48F2FB2A-1318-4AF5-B20E-01DFE165AFC7}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{2CAD2FAB-A686-47C7-91B8-1ED3477B5280}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{E0C0DD2A-49B8-49CC-A06D-5064CCA31CC6}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{8A50BA03-6F14-44C9-AAFF-6D2F6918D128}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{B6C0844C-31C1-4063-ADFF-FC896987A79B}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{6F3914C9-0DD6-4CA7-B85D-1EBE5D7C7BFD}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{C3184F1F-A973-431F-AFF8-1F9A1255EF27}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{9373B5DC-D4CC-4CB1-943A-020DA5C42D38}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{9D284158-541A-4FC6-AB7B-9AA0ED5A7A1B}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{E156A605-C705-4B04-911B-EF1DF289D1F0}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{130AAFFA-BD22-4A77-B044-C69225A32D3A}] => (Allow) C:\DriverPrinter\AmrDriver.exe (Oriol Esteve Alibes -> ) FirewallRules: [{559FF041-F1A5-4C0C-9877-B7029F2A0E6F}] => (Allow) C:\visionwin\contabilidad\conta.exe => Ningún archivo FirewallRules: [{BD4A498F-133B-41B1-B1AB-6BFD4BC215E5}] => (Allow) C:\visionwin\contabilidad\conta.exe => Ningún archivo FirewallRules: [{0CD1897F-2ECC-48DF-B010-6A700FC424B2}] => (Allow) C:\Users\34640\AppData\Local\Google\Chrome\User Data\Windows Driver Foundation (WDF).exe () [Archivo no firmado] FirewallRules: [{39E45F35-AA83-450E-8B99-D89BBEC1A729}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.118.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{DE4F7736-B0E8-4E71-936B-05A9890F25A8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.118.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{3012140F-4BD4-46FC-A36C-2EFEC384EBC2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.118.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C72D638E-9B56-46D7-83BE-ACF62FB38CE8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.118.3205.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{FB2BE370-A458-47DC-98FB-C6772D41B44E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{E430AA2C-AA33-44F6-B186-CD9524D7F173}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{CF3F0AA5-7557-4693-8E09-14093DF6FE15}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{56A489B1-FE6B-4684-BB46-D2F2A1E8EF0D}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\124.0.2478.80\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E5D58A46-2C7F-49CF-B420-1D47246D815A}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{2D162340-EBF8-4A34-9348-F2B0AEDDE738}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{10AF804D-BD18-4B13-9EC7-3C52198D0499}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{3898C6FA-71FA-4BC5-97B3-25F056638A53}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) ==================== Puntos de Restauración ========================= 02-05-2024 11:30:49 Punto de control programado ==================== Dispositivos defectuosos en el Administrador de dispositivos ============ ==================== Errores del registro de eventos: ======================== Errores de aplicación: ================== Error: (05/09/2024 12:17:08 PM) (Source: DbxSvc) (EventID: 281) (User: ) Description: CertFindCertificateInStore failed with: (-2146885628) No puede encontrar el objeto o propiedad Error: (05/09/2024 12:17:08 PM) (Source: DbxSvc) (EventID: 281) (User: ) Description: CertFindCertificateInStore failed with: (-2146885628) No puede encontrar el objeto o propiedad Error: (05/09/2024 12:17:08 PM) (Source: DbxSvc) (EventID: 281) (User: ) Description: CertFindCertificateInStore failed with: (-2146885628) No puede encontrar el objeto o propiedad Error: (05/09/2024 12:17:08 PM) (Source: DbxSvc) (EventID: 281) (User: ) Description: CertFindCertificateInStore failed with: (-2146885628) No puede encontrar el objeto o propiedad Error: (05/09/2024 12:17:03 PM) (Source: DbxSvc) (EventID: 281) (User: ) Description: CertFindCertificateInStore failed with: (-2146885628) No puede encontrar el objeto o propiedad Error: (05/09/2024 11:22:50 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: ) Description: Los Servicios de cifrado no pudieron inicializar la base de datos del catálogo. El error ESENT era: -1032. Error: (05/09/2024 11:22:50 AM) (Source: ESENT) (EventID: 490) (User: ) Description: Catalog Database (4312,D,50) Catalog Database: Al intentar abrir el archivo "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb" para acceso de lectura y escritura se produjo el error de sistema 32 (0x00000020): "El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. ". La operación para abrir el archivo se cerrará con el error -1032 (0xfffffbf8). Error: (05/04/2024 03:06:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: DllHost.exe, versión: 10.0.19041.3636, marca de tiempo: 0x5f959e44 Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.19041.3996, marca de tiempo: 0xb756c9ff Código de excepción: 0xc0000409 Desplazamiento de errores: 0x000000000012d952 Identificador del proceso con errores: 0x14c80 Hora de inicio de la aplicación con errores: 0x01da9e2317c75411 Ruta de acceso de la aplicación con errores: C:\WINDOWS\system32\DllHost.exe Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll Identificador del informe: 1afbb0c6-1cf1-4a9c-925f-ad091ac10986 Nombre completo del paquete con errores: Identificador de aplicación relativa del paquete con errores: Errores del sistema: ============= Error: (05/09/2024 12:17:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Servicio de Google Update (gupdate) no pudo iniciarse debido al siguiente error: El servicio no respondió a tiempo a la solicitud de inicio o de control. Error: (05/09/2024 12:17:31 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Servicio de Google Update (gupdate). Error: (05/09/2024 12:15:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio HPPrintScanDoctorService no pudo iniciarse debido al siguiente error: El sistema no puede encontrar el archivo especificado. Error: (05/09/2024 10:52:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio SASKUTIL no pudo iniciarse debido al siguiente error: Windows no puede comprobar la firma digital en este archivo. Un cambio reciente en el hardware o en el software podría haber instalado un archivo con una firma incorrecta o dañada, o podría también tratarse de un software malintencionado proveniente de un origen desconocido. Error: (05/02/2024 09:45:20 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Servicio de Google Update (gupdate) no pudo iniciarse debido al siguiente error: El servicio no respondió a tiempo a la solicitud de inicio o de control. Error: (05/02/2024 09:45:20 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Servicio de Google Update (gupdate). Error: (05/02/2024 09:43:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio HPPrintScanDoctorService no pudo iniciarse debido al siguiente error: El sistema no puede encontrar el archivo especificado. Error: (04/30/2024 10:16:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Servicio de Google Update (gupdate) no pudo iniciarse debido al siguiente error: El servicio no respondió a tiempo a la solicitud de inicio o de control. Windows Defender: ================ Date: 2024-05-09 11:48:22 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:AndroidOS/ZkarletFlash&threatid=2147785485&enterprise=0 Nombre: HackTool:AndroidOS/ZkarletFlash Id.: 2147785485 Gravedad: Alta Categoría: Herramienta Ruta de acceso: file:_C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual\Malwarebytes Premium 5.1.2.109 Multilingual\Patch.7z Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: NT AUTHORITY\SYSTEM Nombre de proceso: C:\Program Files\SUPERAntiSpyware\SASCore64.exe Versión de inteligencia de seguridad: AV: 1.411.38.0, AS: 1.411.38.0, NIS: 1.411.38.0 Versión de motor: AM: 1.1.24040.1, NIS: 1.1.24040.1 Date: 2024-04-09 11:34:44 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Conteban.A!ml&threatid=2147735506&enterprise=0 Nombre: Trojan:Win32/Conteban.A!ml Id.: 2147735506 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual\Malwarebytes Premium 5.1.2.109 Multilingual\Patch\Patch_MB_5.x.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: DESKTOP-JS1P261\34640 Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.409.5.0, AS: 1.409.5.0, NIS: 1.409.5.0 Versión de motor: AM: 1.1.24030.4, NIS: 1.1.24030.4 Date: 2024-04-09 11:29:30 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Conteban.A!ml&threatid=2147735506&enterprise=0 Nombre: Trojan:Win32/Conteban.A!ml Id.: 2147735506 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual\Malwarebytes Premium 5.1.2.109 Multilingual\Patch\Patch_MB_5.x.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: DESKTOP-JS1P261\34640 Nombre de proceso: C:\Windows\System32\sdiagnhost.exe Versión de inteligencia de seguridad: AV: 1.409.5.0, AS: 1.409.5.0, NIS: 1.409.5.0 Versión de motor: AM: 1.1.24030.4, NIS: 1.1.24030.4 Date: 2024-04-09 11:29:29 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Conteban.A!ml&threatid=2147735506&enterprise=0 Nombre: Trojan:Win32/Conteban.A!ml Id.: 2147735506 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual\Malwarebytes Premium 5.1.2.109 Multilingual\Patch\Patch_MB_5.x.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: DESKTOP-JS1P261\34640 Nombre de proceso: C:\Windows\System32\sdiagnhost.exe Versión de inteligencia de seguridad: AV: 1.409.5.0, AS: 1.409.5.0, NIS: 1.409.5.0 Versión de motor: AM: 1.1.24030.4, NIS: 1.1.24030.4 Date: 2024-04-09 11:29:15 Description: Antivirus de Microsoft Defender detectó malware u otro software potencialmente no deseado. Para más información, consulta lo siguiente: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Conteban.A!ml&threatid=2147735506&enterprise=0 Nombre: Trojan:Win32/Conteban.A!ml Id.: 2147735506 Gravedad: Grave Categoría: Caballo de Troya Ruta de acceso: file:_C:\Users\34640\Downloads\Malwarebytes Premium 5.1.2.109 Multilingual\Malwarebytes Premium 5.1.2.109 Multilingual\Patch\Patch_MB_5.x.exe Origen de detección: Equipo local Tipo de detección: FastPath Origen de detección: Protección en tiempo real Usuario: DESKTOP-JS1P261\34640 Nombre de proceso: C:\Windows\explorer.exe Versión de inteligencia de seguridad: AV: 1.409.5.0, AS: 1.409.5.0, NIS: 1.409.5.0 Versión de motor: AM: 1.1.24030.4, NIS: 1.1.24030.4 Event[0]: Date: 2024-04-28 13:08:14 Description: Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: Versión anterior de inteligencia de seguridad: 1.409.550.0 Origen de actualización: Servidor de Microsoft Update Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: Versión anterior del motor: 1.1.24030.4 Código de error: 0x8024402c Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. Date: 2024-04-09 11:57:32 Description: Antivirus de Microsoft Defender encontró un error al intentar actualizar la inteligencia de seguridad e intentará revertir a una versión anterior. Inteligencia de seguridad intentada: Actual Código de error: 0x80501102 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Versión de inteligencia de seguridad: 1.409.140.0;1.409.140.0 Versión del motor: 1.1.24030.4 Date: 2024-04-09 11:43:17 Description: Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: Versión anterior de inteligencia de seguridad: 1.409.5.0 Origen de actualización: Centro de protección contra malware de Microsoft Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: Versión anterior del motor: 1.1.24030.4 Código de error: 0x80070102 Descripción del error: Tiempo de espera de la operación de espera agotado. Date: 2024-04-09 11:36:44 Description: Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: 1.409.140.0 Versión anterior de inteligencia de seguridad: 1.409.5.0 Origen de actualización: Usuario Tipo de inteligencia de seguridad: AntiSpyware Tipo de actualización: Diferencia Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: 1.1.24030.4 Versión anterior del motor: 1.1.24030.4 Código de error: 0x80509004 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. Date: 2024-04-09 11:36:44 Description: Antivirus de Microsoft Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: 1.409.140.0 Versión anterior de inteligencia de seguridad: 1.409.5.0 Origen de actualización: Usuario Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Diferencia Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: 1.1.24030.4 Versión anterior del motor: 1.1.24030.4 Código de error: 0x80509004 Descripción del error: Problema inesperado. Instale todas las actualizaciones disponibles e intente iniciar el programa de nuevo. Para obtener más información sobre cómo instalar actualizaciones, consulte Ayuda y soporte técnico. CodeIntegrity: =============== Date: 2024-05-09 12:15:13 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\SUPERAntiSpyware\sasdifsv64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2024-05-09 12:15:13 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\SUPERAntiSpyware\saskutil64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2024-04-23 15:45:42 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2024-04-15 15:39:42 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. ==================== Información de la memoria =========================== BIOS: American Megatrends Inc. 5.13 09/22/2020 Placa base: $(DEFAULT_STRING) $(DEFAULT_STRING) Procesador: Intel(R) Celeron(R) J4125 CPU @ 2.00GHz Porcentaje de memoria en uso: 82% RAM física total: 5979.47 MB RAM física disponible: 1070.72 MB Virtual total: 10843.47 MB Virtual disponible: 4085.99 MB ==================== Unidades ================================ Drive c: (windows) (Fixed) (Total:118.15 GB) (Free:19.34 GB) (Model: Hoodisk SSD) NTFS Drive h: (palacecateringhuelva@gmail.co...) (Fixed) (Total:15 GB) (Free:7.31 GB) (Model: Hoodisk SSD) FAT32 Drive i: (restiropichon@gmail.com - Goo...) (Fixed) (Total:15 GB) (Free:14.6 GB) (Model: Hoodisk SSD) FAT32 Drive l: (administracion@restauracionel...) (Fixed) (Total:118.15 GB) (Free:18.38 GB) (Model: Hoodisk SSD) FAT32 \\?\Volume{8acd2339-7325-4b7a-b640-60522689b7d3}\ (Recovery) (Fixed) (Total:0.98 GB) (Free:0.41 GB) NTFS \\?\Volume{73a213d4-d7e9-4485-9f50-f2cc277ba5ee}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.03 GB) FAT32 ==================== MBR & Tabla de particiones ==================== ========================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: EAFD67BE) Partition: GPT. ==================== Final de Addition.txt =======================