• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 14

    ralentizacion del sistema

    ...

    1. #1
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      ralentizacion del sistema

      buenos dias

      mi problema es que a diario, por la mañana, llega un momento que se me ralentiza brutalmente el pc, entonces reinicio el ordenador y continua normalmente el resto del dia.

      saludos

    2. #2
      Moderador
      Avatar de @JonathanM
      Registrado
      may 2006
      Ubicación
      Chile
      Mensajes
      11.752

      Re: ralentizacion del sistema

      Realiza estos pasos:

      1. Descarga y lo guardas en el Escritorio
      2. Usa el Ccleaner para limpiar el sistema. Primero utilizá la opción de "Limpiador"para borrar cookies, temporales de Internet y todos los archivos que este te muestre como obsoletos. Luego usa su opción de "Registro" para limpiar todo el registro de Windows (haciendo copia de seguridad).
      3. Ejecuta Junkware Removal Tool utility (en Windows 7 u 8 ejecutar como "Administrador")
        • Presiona cualquier tecla para continuar y espera pacientemente a que termine su proceso.
        • Al finalizar, un registro (JRT.txt) se guardara en el escritorio y se abrirá automáticamente.
        • Copia y pega el contenido de JRT.txt en tu próximo mensaje de respuesta
      4. Ejecuta AdwCleaner a tu escritorio (En Windows Vista o 7, presiona clic derecho sobre el ícono y elige Ejecutar como Administrador)
        • Presiona Escanear, luego que termine el análisis, presiona el botón limpiar.
        • El programa te pedira qué reinicies el sistema, dile
        • Al reinicio se te abrira el informe (reporte).
        • Nos pones el informe de AdwCleaner en este mismo tema.
      5. Ejecuta Malwarebytes' Anti-Malware. (Previamente actualizado)
        • Realiza un Análisis Completo.
        • Seleccionando "TODOS a Cuarentena" para enviarlo a la cuarentena y Reinicias el sistema.
        • En el apartado del manual "Historial" encontrarás el informe del MBAM, que debes copiar y pegar en tu próxima respuesta, para analizarlo.




      • Nos pegas los reporte en este orden:
        • JRT
        • AdwCleaner
        • MBAM
      NOTA IMPORTANTE

      NO Pongas los Reportes Dentro de Etiquetas Code ni HTML.
      NO descargues o instales mas programas mientras terminamos la desinfección.

      Salu2
      Recuerda volver y nos comentas los resultados
      <¡D3vIL!>

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      Re: ralentizacion del sistema

      aquí van los informes

      Malwarebytes
      www.malwarebytes.com

      -Detalles del registro-
      Fecha del análisis: 24/11/17
      Hora del análisis: 10:31
      Archivo de registro: 417382ab-d0fa-11e7-bd6b-00269ec8be7d.json
      Administrador: Sí

      -Información del software-
      Versión: 3.3.1.2183
      Versión de los componentes: 1.0.236
      Versión del paquete de actualización: 1.0.3337
      Licencia: Prueba

      -Información del sistema-
      SO: Windows 7
      CPU: x64
      Sistema de archivos: NTFS
      Usuario: JOSE-PC\JOSE

      -Resumen del análisis-
      Tipo de análisis: Análisis de amenazas
      Resultado: Completado
      Objetos analizados: 418109
      Amenazas detectadas: 0
      (No hay elementos maliciosos detectados)
      Amenazas en cuarentena: 0
      (No hay elementos maliciosos detectados)
      Tiempo transcurrido: 7 min, 28 seg

      -Opciones de análisis-
      Memoria: Activado
      Inicio: Activado
      Sistema de archivos: Activado
      Archivo: Activado
      Rootkits: Desactivado
      Heurística: Activado
      PUP: Detectar
      PUM: Detectar

      -Detalles del análisis-
      Proceso: 0
      (No hay elementos maliciosos detectados)

      Módulo: 0
      (No hay elementos maliciosos detectados)

      Clave del registro: 0
      (No hay elementos maliciosos detectados)

      Valor del registro: 0
      (No hay elementos maliciosos detectados)

      Datos del registro: 0
      (No hay elementos maliciosos detectados)

      Secuencia de datos: 0
      (No hay elementos maliciosos detectados)

      Carpeta: 0
      (No hay elementos maliciosos detectados)

      Archivo: 0
      (No hay elementos maliciosos detectados)

      Sector físico: 0
      (No hay elementos maliciosos detectados)


      (end)

      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Junkware Removal Tool (JRT) by Malwarebytes
      Version: 8.1.4 (07.09.2017)
      Operating System: Windows 7 Ultimate x64
      Ran by JOSE (Administrator) on 23/11/2017 at 10:36:08,07
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




      File System: 18

      Successfully deleted: C:\ProgramData\mntemp (File)
      Successfully deleted: C:\Users\JOSE\AppData\Local\{0F376500-DFBE-47DE-A1F0-B86761A82BF2} (Empty Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0AFSM348 (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\208C03FC (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7VNVWTVO (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BK471QAU (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOSE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0AFSM348 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\208C03FC (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7VNVWTVO (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BK471QAU (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)



      Registry: 10

      Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL (Registry Value)
      Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page (Registry Value)
      Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2A7C85B5-86F5-4D18-90D5-80EFF69BC793} (Registry Key)
      Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{907ABB95-2FA8-4570-96D4-AA81928EE90B} (Registry Key)
      Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
      Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2A7C85B5-86F5-4D18-90D5-80EFF69BC793} (Registry Key)
      Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{907ABB95-2FA8-4570-96D4-AA81928EE90B} (Registry Key)
      Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
      Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL (Registry Value)
      Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page (Registry Value)




      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Scan was completed on 23/11/2017 at 10:38:37,00
      End of JRT log
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

      # AdwCleaner 7.0.4.0 - Logfile created on Thu Nov 23 17:25:29 2017
      # Updated on 2017/27/10 by Malwarebytes
      # Running on Windows 7 Ultimate (X64)
      # Mode: clean
      # Support: https://www.malwarebytes.com/support

      ***** [ Services ] *****

      No malicious services deleted.

      ***** [ Folders ] *****

      Deleted: C:\Program Files\Hola
      Deleted: C:\Users\JOSE\AppData\Local\Hola
      Deleted: C:\Users\JOSE\AppData\Roaming\Hola
      Deleted: C:\Users\JOSE\AppData\Roaming\acestream
      Deleted: C:\Users\JOSE\AppData\LocalLow\.acestream
      Deleted: C:\Users\JOSE\AppData\Roaming\.acestream
      Deleted: C:\_acestream_cache_
      Deleted: C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media


      ***** [ Files ] *****

      No malicious files deleted.

      ***** [ DLL ] *****

      No malicious DLLs cleaned.

      ***** [ WMI ] *****

      No malicious WMI cleaned.

      ***** [ Shortcuts ] *****

      No malicious shortcuts cleaned.

      ***** [ Tasks ] *****

      No malicious tasks deleted.

      ***** [ Registry ] *****

      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{8D881F84-E49F-4E6B-BE91-D341ED3D680B}C:\users\jose\appdata\roaming\acestream\engine\ace_engine.exe
      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{BEE59986-1541-4ED2-8090-E6F6DD087EFE}C:\users\jose\appdata\roaming\acestream\engine\ace_engine.exe
      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{03AE6A33-B4A9-496B-B8DE-9B171D4626A6}C:\users\jose\appdata\roaming\acestream\engine\ace_engine.exe
      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{6D6E5C97-C4A7-4D65-A161-76E63FE04D3D}C:\users\jose\appdata\roaming\acestream\engine\ace_engine.exe
      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{5D146BA0-942C-4BD5-AAE8-2C2DD55A89DC}J:\kodiportable\app\kodi\portable_data\userdata\addon_data\program.plexus\acestream\ace_engine.exe
      Deleted: [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{15C02262-AF68-4663-9680-3BBCA2370D63}J:\kodiportable\app\kodi\portable_data\userdata\addon_data\program.plexus\acestream\ace_engine.exe
      Deleted: [Key] - HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\Software\AceStream
      Deleted: [Key] - HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\AceStream
      Deleted: [Key] - HKCU\Software\AceStream
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AceStream
      Deleted: [Key] - HKLM\SOFTWARE\Hola
      Deleted: [Key] - HKU\.DEFAULT\Software\Hola
      Deleted: [Key] - HKU\S-1-5-18\Software\Hola
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
      Deleted: [Key] - HKCU\Software\Classes\CLSID\{79690976-ED6E-403C-BBBA-F8928B5EDE17}
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{79690976-ED6E-403C-BBBA-F8928B5EDE17}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
      Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
      Deleted: [Key] - HKCU\Software\MozillaPlugins\@hola.org\vlc
      Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acelive
      Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acemedia
      Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acestream
      Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tslive
      Deleted: [Key] - HKCU\SOFTWARE\Classes\Applications\ace_player.exe
      Deleted: [Key] - HKCU\SOFTWARE\Classes\MIME\Database\Content Type\application\x-acestream-plugin
      Deleted: [Key] - HKCU\Software\MozillaPlugins\@hola.org\FlashPlayer
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayCDAudioOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDAudioOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDMovieOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayMusicFilesOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlaySVCDMovieOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVCDMovieOnArrival
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVideoFilesOnArrival
      Deleted: [Key] - HKCU\Software\Classes\AudioCD\shell\PlayWithACEStream
      Deleted: [Key] - HKCU\Software\Classes\DVD\shell\PlayWithACEStream
      Deleted: [Key] - HKCU\Software\Classes\Applications\ace_player.exe
      Deleted: [Key] - HKCU\Software\Classes\MIME\Database\Content Type\application\x-acestream-plugin
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acelive
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acemedia
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acestream
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tslive
      Deleted: [Key] - HKCU\Software\MozillaPlugins\@acestream.net\acestreamplugin,version=3.1.2
      Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\hola.org
      Deleted: [Value] - HKCU\Software\RegisteredApplications|AceStream


      ***** [ Firefox (and derivatives) ] *****

      No malicious Firefox entries deleted.

      ***** [ Chromium (and derivatives) ] *****

      No malicious Chromium entries deleted.

      *************************

      ::Tracing keys deleted
      ::Winsock settings cleared
      ::Additional Actions: 0



      *************************

      C:/AdwCleaner/AdwCleaner[S0].txt - [7598 B] - [2017/11/23 17:17:17]


      ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########

    4. #4
      Moderador
      Avatar de @JonathanM
      Registrado
      may 2006
      Ubicación
      Chile
      Mensajes
      11.752

      Re: ralentizacion del sistema

      Hola

      Descarga DelFix en el escritorio de windows.
      • Haz doble clic para ejecutarlo.
      • Ventana principal, marca solamente la casilla Remove disinfection tools
      • Clic en Run.

      Al terminar Se abrirá un reporte llamado DelFix.txt, pega el reporte en este mismo tema.
      En tú próximo mensaje debes indicar como va todo tras los pasos..

      saludos

      Saludos
      <¡D3vIL!>

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #5
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      Re: ralentizacion del sistema

      # DelFix v1.011 - Logfile created 24/11/2017 at 18:02:09
      # Updated 18/08/2015 by Xplode
      # Username : JOSE - JOSE-PC
      # Operating System : Windows 7 Ultimate (64 bits)

      ~ Removing disinfection tools ...

      Deleted : C:\AdwCleaner
      Deleted : C:\Users\JOSE\Desktop\JRT.txt
      Deleted : C:\Users\JOSE\Downloads\AdwCleaner.exe
      Deleted : C:\Users\JOSE\Downloads\JRT.exe

      ########## - EOF - ##########

      TODO SIGUE IGUAL

      HOY A LAS 11:17 , EL ORDENADOR SE ME HA RELANTIZADO DE UNA MANERA DRÁSTICA QUE NO DEJA DE HACER

      NADA Y HE TENIDO QUE VOLVER A REINICIAR

    6. #6
      Moderador
      Avatar de @JonathanM
      Registrado
      may 2006
      Ubicación
      Chile
      Mensajes
      11.752

      Re: ralentizacion del sistema

      Hola

      Realiza los siguientes pasos:

      • Descarga HitmanPRO su manual de uso
        • Ejecuta HitmanPRO, (en Windows 7 u 8 ejecutar como "Administrador")
        • Presiona el botón: "Siguiente" en las dos pantallas para comenzar.
        • Una vez finalizado el escaneo HitmanPRO incluye 30 días gratuitos para la eliminación de los posibles malwares detectados.
        • En todo caso se puede con su reporte encontrar la ruta especifica de lo detectado y eliminar manualmente.
        • El reporte se genera presionando "Guardar Registro" en donde queramos, para luego abrirlo y copiarnos el contenido en este mismo tema.




      Después, un escaneo online con ESET Online Scanner

      • Abre el Eset Online Scanner y lo ejecutas de la siguiente manera
      • Marcas las casillas de Eliminar las amenazas detectadas y analizar archivos
      • Haces clic en Configuración adicional y ahí marcas las casillas:
        • Analizar en busca de aplicaciones potencialmente indeseables.
        • Analizar en busca de aplicaciones potencialmente peligrosas.
        • Activar la tecnología Anti-Stealth.
      • Pulsa en Iniciar para que empiece a descargar la base firmas de virus y posteriormente empiece a analizar tu sistema.
      • Cuando acabe haz clic en Finalizar
      • Localiza y pega el reporte ubicado en C:\Archivos de programa\ESET\ESET Online Scanner\log




      Saludos
      <¡D3vIL!>

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      Re: ralentizacion del sistema

      Código:
      HitmanPro 3.7.20.286
      www.hitmanpro.com
      
         Computer name . . . . : JOSE-PC
         Windows . . . . . . . : 6.1.0.7600.X64/2
         User name . . . . . . : JOSE-PC\JOSE
         UAC . . . . . . . . . : Enabled
         License . . . . . . . : Trial (31 days left)
      
         Scan date . . . . . . : 2017-11-27 10:24:01
         Scan mode . . . . . . : Normal
         Scan duration . . . . : 5m 29s
         Disk access mode  . . : Direct disk access (SRB)
         Cloud . . . . . . . . : Internet
         Reboot  . . . . . . . : No
      
         Threats . . . . . . . : 0
         Traces  . . . . . . . : 0
      
         Objects scanned . . . : 1.841.679
         Files scanned . . . . : 53.737
         Remnants scanned  . . : 391.456 files / 1.396.486 keys
      C:\Users\JOSE\Downloads\Contaplus Elite 2012.rar varias amenazas,una variante de Win32/Packed.Enigma.AAA troyano,una variante de Win32/Injector.ZBX troyano
      C:\Users\JOSE\Downloads\Duomi_v6.1.4.01_TG76097_HQ&SQ.7z una variante de Android/SystemMonitor.A aplicación potencialmente no deseada
      C:\Users\JOSE\Downloads\FileZilla_3.27.1_win64-setup_bundled3.exe una variante de MSIL/WebCompanion.A aplicación potencialmente no deseada,una variante de Win32/WebCompanion.B aplicación potencialmente no deseada
      C:\Users\JOSE\Downloads\FreemakeVideoConverterSetup.exe una variante de Win32/Freemake.A aplicación potencialmente no deseada
      C:\Users\JOSE\Downloads\FreeStore_V2.9.0.apk una variante de Android/AdDisplay.AirPush.I aplicación potencialmente no deseada
      C:\Users\JOSE\Downloads\iRoot v3.2.2_160623_1015 (One Click Root) - android-zone.ws.apk una variante de Android/Spy.Agent.PI troyano
      C:\Users\JOSE\Downloads\Kingroot v4.9.3 build 20160606.apk una variante de Android/DroidRooter.BB aplicación potencialmente no segura,una variante de Android/DroidRooter.AG aplicación potencialmente no segura
      C:\Users\JOSE\Downloads\KugouYinle_51_V8099_remastered_es_Signed.7z una variante de Android/Cimsci.A aplicación potencialmente no segura
      C:\Users\JOSE\Downloads\MTK.v2.5.3.rar una variante de MSIL/HackKMS.G aplicación potencialmente no segura
      C:\Users\JOSE\Downloads\NewKingrootV5.2.0_C180_B429_en_release_2017_07_11_20170711193834_105203.apk una variante de Android/DroidRooter.AG aplicación potencialmente no segura
      C:\Users\JOSE\Downloads\rcsetup153.exe Win32/Bundled.Toolbar.Google.D aplicación potencialmente no segura
      C:\Users\JOSE\Downloads\Spotify-7001358-Modapk.tar una variante de Win32/Kryptik.FJRT troyano
      C:\Users\JOSE\Downloads\Contaplus Elite 2012\Contaplus Elite 2012\Keygen 6.0 (taos).exe una variante de Win32/Packed.Enigma.AAA troyano
      C:\Users\masterpan\Downloads\SystemInfoUtility.exe una variante de MSIL/Agent.BFC troyano
      D:\BaiduTing_v5.6.1.3_crk_ES.apk una variante de Android/SystemMonitor.A aplicación potencialmente no deseada
      D:\Duomi_Música_v6.1.4.01_TG76097.apk una variante de Android/SystemMonitor.A aplicación potencialmente no deseada
      D:\KugouPlayer_204_V8.0.6_by_soldiersix_es_Signed.apk una variante de Android/Cimsci.A aplicación potencialmente no segura
      D:\KugouYinle_51_V8099_remastered_es_Signed.apk una variante de Android/Cimsci.A aplicación potencialmente no segura
      D:\Office 2010 _Toolkit_.exe una variante de MSIL/HackKMS.A aplicación potencialmente no segura
      D:\Spotify-7001358-Mod.apk una variante de Win32/Kryptik.FJRT troyano
      D:\TTPod v8.4.0 MOD Lite _ android_zone.ws.exe una variante de Win32/InstallMonstr.PN aplicación potencialmente no deseada
      D:\Babylon.Pro.v8.0.8.r3.Incl.Patch\Babylon8_setup.exe Win32/Toolbar.Babylon.AH aplicación potencialmente no deseada,una variante de Win32/Toolbar.Conduit.AU aplicación potencialmente no deseada,una variante de Win32/Toolbar.Babylon.H aplicación potencialmente no deseada
      D:\Babylon.Pro.v8.0.8.r3.Incl.Patch\Patch 8.xx Pro UnREaL.rar Win32/HackTool.Patcher.A aplicación potencialmente no segura
      D:\EaseUS Todo Backup Home 8.0 Multilingual + Key\tb_free.exe una variante de Win32/TFTPD32.A aplicación potencialmente no segura
      D:\MTK.v2.5.3\Microsoft Toolkit.exe una variante de MSIL/HackKMS.G aplicación potencialmente no segura
      Ubicaciones de inicio automático una variante de Win32/Freemake.A aplicación potencialmente no deseada,está correcto,una variante de Win32/InstallMonstr.PN aplicación potencialmente no deseada

      SIGO CON EL MISMO PROBLEMA. HOY SE ME RALENTIZÓ EL PC A LAS 15:37 horas

      Saludos

    8. #8
      Moderador
      Avatar de @JonathanM
      Registrado
      may 2006
      Ubicación
      Chile
      Mensajes
      11.752

      Re: ralentizacion del sistema

      Hola

      Realiza lo siguiente:


      • Segun tu sistema operativo, descarga en el escritorio Farbar Recovery Scan Tool:
        1. FRST.exe - 32 Bits
        2. FRST64.exe - 64 Bits
      • Doble clic sobre la herramienta (FRST64.exe o FRST.exe) para ejecutarla.
        • Haga clic en Yes/Si para aceptar los términos de uso.
        • Haga clic en Scan y espera paciente a que este termine.

      *NOTA* Los reportes FRST.txt & Addition.txt quedaran guardados en donde la herramienta fue ejecutada, no los elimine.

      Para terminar solamente copie y pegue el contenido del archivo FRST.txt y Addition.txt en su siguiente respuesta.


      Saludos
      <¡D3vIL!>

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      Re: ralentizacion del sistema

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-11-2017
      Ran by JOSE (administrator) on JOSE-PC (29-11-2017 10:33:21)
      Running from C:\Users\JOSE\Downloads
      Loaded Profiles: JOSE (Available Profiles: JOSE & masterpan)
      Platform: Windows 7 Ultimate (X64) Language: Español (España, internacional)
      Internet Explorer Version 9 (Default browser: IE)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: ***********************************************************************************************************

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (AMD) C:\Windows\System32\atiesrxx.exe
      (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
      (AMD) C:\Windows\System32\atieclxx.exe
      (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
      (Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\63.0.3239.32\remoting_host.exe
      (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
      (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\63.0.3239.32\remoting_host.exe
      (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
      (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
      (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
      (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
      () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
      (Microsoft Corporation) C:\Windows\System32\vds.exe
      (Microsoft Corporation) C:\Windows\System32\alg.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
      (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
      (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
      (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
      (Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
      (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
      (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
      ( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
      (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcMon.exe
      (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
      (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
      () C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
      (CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
      (CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
      (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
      (HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe
      (Dir Informática BCN s. l.) C:\MasterpanERP\Bin\MasterpanERP.exe
      (PortableApps.com) D:\PortableApps\PortableApps.com\PortableAppsPlatform.exe
      (PortableApps.com) D:\PortableApps\GoogleChromePortable\GoogleChromePortable.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Google Inc.) D:\PortableApps\GoogleChromePortable\App\Chrome-bin\chrome.exe
      (Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\MSOSYNC.EXE

      ==================== Registry (Whitelisted) ===========================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
      HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Java\jre6\bin\jusched.exe [171520 2009-08-21] (Sun Microsystems, Inc.)
      HKLM\...\Run: [Cm106Sound] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd
      HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
      HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-07-02] (Advanced Micro Devices, Inc.)
      HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
      HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2016-02-16] (Easybits)
      HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
      HKLM-x32\...\Run: [] => [X]
      HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1159168 2009-05-26] (Brother Industries, Ltd.)
      HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
      HKLM-x32\...\Run: [QlbCtrl.exe] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [323640 2010-02-25] ( Hewlett-Packard Development Company, L.P.)
      HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\Run: [AceStream] => C:\Users\JOSE\AppData\Roaming\ACEStream\engine\ace_engine.exe
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10021040 2017-10-18] (Piriform Ltd)
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\Policies\system: [WallpaperStyle] 2
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\MountPoints2: H - H:\Lenovo_Suite.exe
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\MountPoints2: {20cdda78-4ce6-11e7-8ac7-00269ec8be7d} - H:\Lenovo_Suite.exe
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\MountPoints2: {20cdda90-4ce6-11e7-8ac7-00269ec8be7d} - J:\Lenovo_Suite.exe
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\MountPoints2: {a4041d7d-e78e-11e6-9378-00269ec8be7d} - I:\LGAutoRun.exe
      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\MountPoints2: {b590fa27-6b8c-11e7-b9ad-00269ec8be7d} - I:\Lenovo_Suite.exe
      HKU\S-1-5-18\...\Policies\system: [WallpaperStyle] 2**
      Startup: C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2017-01-27]
      ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
      Startup: C:\Users\masterpan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2016-04-10]
      ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
      Tcpip\..\Interfaces\{1AA9A62D-52B7-436E-95A1-F180B557673F}: [NameServer] 192.168.1.1
      Tcpip\..\Interfaces\{62D043C2-65C5-4358-8F97-21A9775647FF}: [DhcpNameServer] 80.58.61.250 80.58.61.254

      Internet Explorer:
      ==================
      HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=es_ES&c=94&bd=Pavilion&pf=cnnb
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
      HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=es_ES&c=94&bd=Pavilion&pf=cnnb
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
      SearchScopes: HKLM -> DefaultScope {2A7C85B5-86F5-4D18-90D5-80EFF69BC793} URL = hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1127&query={searchTerms}&invocationType=tb50hpcnnbie7-es-es
      SearchScopes: HKLM -> {0060C18C-2002-4411-9F37-60EBB081D856} URL = hxxp://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
      SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
      SearchScopes: HKLM -> {2A7C85B5-86F5-4D18-90D5-80EFF69BC793} URL = hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1127&query={searchTerms}&invocationType=tb50hpcnnbie7-es-es
      SearchScopes: HKLM -> {907ABB95-2FA8-4570-96D4-AA81928EE90B} URL = hxxp://es.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromform=true&x=true&y=true&partner=hp&partnerId=96913937
      SearchScopes: HKLM-x32 -> DefaultScope {2A7C85B5-86F5-4D18-90D5-80EFF69BC793} URL =
      SearchScopes: HKLM-x32 -> {0060C18C-2002-4411-9F37-60EBB081D856} URL = hxxp://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
      SearchScopes: HKU\S-1-5-21-3701498839-1323420681-3441469431-1000 -> DefaultScope {0060C18C-2002-4411-9F37-60EBB081D856} URL = hxxp://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
      SearchScopes: HKU\S-1-5-21-3701498839-1323420681-3441469431-1000 -> {0060C18C-2002-4411-9F37-60EBB081D856} URL = hxxp://es.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=cb-hp06&type=ie2008
      BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
      BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
      BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-08-21] (Sun Microsystems, Inc.)
      BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
      BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-13] (Oracle Corporation)
      BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2017-09-20] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
      BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
      BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
      BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-13] (Oracle Corporation)
      Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)

      FireFox:
      ========
      FF DefaultProfile: qya86zhw.default
      FF ProfilePath: C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default [2017-11-29]
      FF Extension: (MEGA) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\[email protected] [2017-02-04] [Lagacy]
      FF Extension: (Hola Better Internet) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\[email protected] [2017-02-02] [Lagacy]
      FF Extension: (IE Tab 2 (FF 3.6+)) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} [2016-04-21] [Lagacy]
      FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2017-02-04] [Lagacy]
      FF Extension: (RightToClick) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi [2016-09-06] [Lagacy]
      FF Extension: (Adblock Plus) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-23] [Lagacy]
      FF Extension: (Greasemonkey) - C:\Users\JOSE\AppData\Roaming\Mozilla\Firefox\Profiles\qya86zhw.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2016-08-21] [Lagacy]
      FF Extension: (No Name) - C:\Users\JOSE\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [not found]
      FF HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\Firefox\Extensions: [[email protected]] - C:\Users\JOSE\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => not found
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-10] ()
      FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2016-03-09] (Microsoft Corporation)
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
      FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-10] ()
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-07-10] (Foxit Corporation)
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-07-10] (Foxit Corporation)
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-07-10] (Foxit Corporation)
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-07-10] (Foxit Corporation)
      FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
      FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
      FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-13] (Oracle Corporation)
      FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-13] (Oracle Corporation)
      FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2016-03-09] (Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
      FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-17] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-17] (Google Inc.)

      Chrome:
      =======
      CHR HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
      CHR HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx

      Opera:
      =======
      OPR Extension: (Evernote Web Clipper) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\afgbccjghcnbcdjgogpckamibfkceahd [2017-02-06]
      OPR Extension: (Traducir) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibnombjmjocaccigcefonnipcnlaeaed [2017-02-07]
      OPR Extension: (Subscribe to Feedly) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\idmlgnbndghfdallbfabggimgnbebmll [2017-02-06]
      OPR Extension: (Programa de descarga de vídeos GetThemAll) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\ipjignndhlpeimkmgpfnappdcohjealh [2017-02-06]
      OPR Extension: (Download Chrome Extension) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2017-02-11]
      OPR Extension: (Speed-Up Browsing) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\lklibmbcgphmjobehnffhmioggnljmcl [2017-03-04]
      OPR Extension: (Tampermonkey) - C:\Users\JOSE\AppData\Roaming\Opera Software\Opera Stable\Extensions\mfdhdgbonjidekjkjmjaneanmdmpmidf [2017-02-06]

      ==================== Services (Whitelisted) ====================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
      R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\63.0.3239.32\remoting_host.exe [71512 2017-11-02] (Google Inc.)
      R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [37416 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R2 ezSharedSvc; C:\Windows\SysWOW64\ezsvc7.dll [129584 2009-02-22] (EasyBits Sofware AS) [File not signed]
      R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc.)
      R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc.)
      R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
      R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
      R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62218696 2012-06-29] (Microsoft Corporation)
      S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [441288 2012-06-29] (Microsoft Corporation)
      R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
      R3 TermService; C:\Program Files\RDP Wrapper\rdpwrap.dll [96256 2016-03-27] (Stas'M Corp.) [File not signed]
      R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
      S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe [411648 2016-03-31] (Wondershare) [File not signed]

      ===================== Drivers (Whitelisted) ======================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77432 2017-11-01] ()
      R0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [60968 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [48168 2014-12-15] () [File not signed]
      R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [18472 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [192040 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [193464 2017-11-25] (Malwarebytes)
      R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-11-29] (Malwarebytes)
      R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [46008 2017-11-29] (Malwarebytes)
      R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2017-11-29] (Malwarebytes)
      R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-11-29] (Malwarebytes)
      S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [321992 2012-06-29] (Microsoft Corporation)
      U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
      S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1306624 2009-05-14] (C-Media Electronics Inc)
      S1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [127456 2016-03-04] (Oracle Corporation)
      S3 WDC_SAM; C:\Windows\System32\DRIVERS\wdcsam64_prewin8.sys [23200 2015-12-07] (Western Digital Technologies)
      S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [151184 2016-03-10] (MBB)
      U4 eabfiltr; no ImagePath

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-11-29 10:33 - 2017-11-29 10:34 - 000024080 _____ C:\Users\JOSE\Downloads\FRST.txt
      2017-11-29 10:33 - 2017-11-29 10:33 - 000000000 ____D C:\FRST
      2017-11-29 10:32 - 2017-11-29 10:32 - 002391552 _____ (Farbar) C:\Users\JOSE\Downloads\FRST64.exe
      2017-11-28 18:30 - 2017-11-28 18:30 - 006473728 _____ C:\Users\JOSE\Downloads\iniconta.ppt
      2017-11-28 16:07 - 2017-11-28 16:07 - 006974584 _____ (ESET spol. s r.o.) C:\Users\JOSE\Downloads\ESETOnlineScanner_ESL.exe
      2017-11-27 10:39 - 2017-11-27 10:39 - 000000000 ____D C:\Users\JOSE\AppData\Local\ESET
      2017-11-27 10:38 - 2017-11-27 10:39 - 006974584 _____ (ESET spol. s r.o.) C:\Users\JOSE\Desktop\ESETOnlineScanner_ESL.exe
      2017-11-27 10:02 - 2017-11-27 10:02 - 000003820 _____ C:\Windows\system32\.crusader
      2017-11-27 09:43 - 2017-11-27 10:03 - 000000000 ____D C:\ProgramData\HitmanPro
      2017-11-27 09:43 - 2017-11-27 09:43 - 011584088 _____ (SurfRight B.V.) C:\Users\JOSE\Desktop\hitmanpro_x64.exe
      2017-11-25 10:18 - 2017-11-25 10:18 - 001131552 _____ C:\Users\JOSE\Downloads\plugin.video.pdsports.zip
      2017-11-25 09:35 - 2017-11-29 09:49 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
      2017-11-25 09:35 - 2017-11-29 09:39 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
      2017-11-25 09:35 - 2017-11-29 09:39 - 000046008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
      2017-11-25 09:35 - 2017-11-25 09:35 - 000193464 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
      2017-11-25 09:34 - 2017-11-29 09:39 - 000253880 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
      2017-11-24 18:51 - 2017-11-24 18:51 - 001984478 _____ C:\Users\JOSE\Downloads\Experto-Contabilidad-Avanzada-Desarrollo-Analisis-Normas-Registro-Valoracion-Plan-General-Contabilidad.pdf
      2017-11-24 18:02 - 2017-11-24 18:02 - 000000402 _____ C:\DelFix.txt
      2017-11-23 18:14 - 2017-11-23 18:25 - 000000000 ____D C:\AdwCleaner
      2017-11-23 10:32 - 2017-11-23 10:33 - 000380066 _____ C:\Users\JOSE\Documents\cc_20171123_103214.reg
      2017-11-23 10:26 - 2017-11-23 10:26 - 000003872 _____ C:\Windows\System32\Tasks\CCleaner Update
      2017-11-23 10:26 - 2017-11-23 10:26 - 000002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
      2017-11-23 10:26 - 2017-11-23 10:26 - 000000824 _____ C:\Users\Public\Desktop\CCleaner.lnk
      2017-11-23 10:26 - 2017-11-23 10:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
      2017-11-23 10:26 - 2017-11-23 10:26 - 000000000 ____D C:\Program Files\CCleaner
      2017-11-22 21:49 - 2017-11-22 21:50 - 002036376 _____ C:\Users\JOSE\Downloads\Contabilidad Básica.pdf
      2017-11-22 15:49 - 2017-11-22 15:49 - 000001869 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
      2017-11-22 15:49 - 2017-11-22 15:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
      2017-11-22 15:49 - 2017-11-22 15:49 - 000000000 ____D C:\ProgramData\Malwarebytes
      2017-11-22 15:49 - 2017-11-22 15:49 - 000000000 ____D C:\Program Files\Malwarebytes
      2017-11-22 15:49 - 2017-11-01 08:54 - 000077432 _____ C:\Windows\system32\Drivers\mbae64.sys
      2017-11-22 15:46 - 2017-11-22 15:46 - 078346672 _____ (Malwarebytes ) C:\Users\JOSE\Downloads\mb3-setup-consumer-3.3.1.2183.exe
      2017-11-22 14:51 - 2017-11-22 14:51 - 000422035 _____ C:\Users\JOSE\Downloads\plugin.video.KodiTrailers 1.0.2.zip
      2017-11-21 15:55 - 2017-11-21 15:55 - 000319432 _____ C:\Users\JOSE\Downloads\2017102005930.pdf
      2017-11-19 16:54 - 2017-11-19 16:54 - 000020788 _____ C:\Users\JOSE\Downloads\show-facebook-computer-vision-tags-master.zip
      2017-11-19 16:54 - 2016-12-31 05:12 - 000000000 ____D C:\Users\JOSE\Downloads\show-facebook-computer-vision-tags-master
      2017-11-19 10:42 - 2017-11-19 10:42 - 000004828 _____ C:\Users\JOSE\Downloads\tv_channels_dkkkasd4545rrrpp.m3u
      2017-11-16 09:42 - 2017-11-16 09:42 - 000000000 ____D C:\Program Files\HP
      2017-11-16 09:41 - 2017-11-16 09:42 - 000000000 ____D C:\ProgramData\HP
      2017-11-14 17:49 - 2017-11-14 17:49 - 001267160 _____ ( ) C:\Users\JOSE\Downloads\Vmg3.6_install.exe
      2017-11-14 11:11 - 2017-11-14 11:11 - 001395203 _____ C:\Users\JOSE\Downloads\WhatsApp Video 2017-11-14 at 10.40.22.mp4
      2017-11-14 11:11 - 2017-11-14 11:11 - 000220049 _____ C:\Users\JOSE\Downloads\WhatsApp Image 2017-11-14 at 10.40.23 (1).jpeg
      2017-11-14 11:11 - 2017-11-14 11:11 - 000218373 _____ C:\Users\JOSE\Downloads\WhatsApp Image 2017-11-14 at 10.40.23.jpeg
      2017-11-14 11:11 - 2017-11-14 11:11 - 000176083 _____ C:\Users\JOSE\Downloads\WhatsApp Image 2017-11-14 at 10.40.23 (2).jpeg
      2017-11-14 11:10 - 2017-11-14 11:10 - 000234316 _____ C:\Users\JOSE\Downloads\WhatsApp Image 2017-11-14 at 10.39.58.jpeg
      2017-11-13 16:24 - 2017-11-13 16:24 - 002095594 _____ C:\Users\JOSE\Downloads\Curso-Contabilidad-Financiera.pdf
      2017-11-13 15:32 - 2017-11-13 15:32 - 000101985 _____ C:\Users\JOSE\Downloads\ADGD037PO.pdf
      2017-11-13 15:15 - 2017-11-13 15:15 - 000001638 _____ C:\Users\JOSE\Downloads\viafirma-client-desktop.jnlp
      2017-11-13 15:14 - 2017-11-13 15:14 - 000101329 _____ C:\Users\JOSE\Downloads\ADGD039PO.pdf
      2017-11-13 11:38 - 2017-11-13 11:38 - 000000000 ____D C:\Users\JOSE\Downloads\Contaplus Elite 2012
      2017-11-11 18:56 - 2017-11-11 18:57 - 001174541 _____ C:\Users\JOSE\Downloads\Curso-Contabilidad-Contaplus.pdf
      2017-11-09 16:18 - 2017-11-09 16:18 - 000149079 _____ C:\Users\JOSE\Downloads\PIOL_BKS0200492115fa15d430519700.pdf
      2017-11-08 19:03 - 2017-11-08 19:03 - 000020601 _____ C:\Users\JOSE\Downloads\301-KF17-1206176.pdf
      2017-11-08 19:01 - 2017-11-08 19:01 - 000044948 _____ C:\Users\JOSE\Downloads\A10010963258-1117.pdf
      2017-11-07 12:29 - 2017-11-07 12:29 - 003279869 _____ C:\Users\JOSE\Downloads\OKIN_folleto_2016 (1).pdf
      2017-11-02 12:18 - 2017-11-02 12:18 - 000098230 _____ C:\Users\JOSE\Downloads\NA5T50001838_factura_legal.pdf
      2017-11-02 12:18 - 2017-11-02 12:18 - 000096062 _____ C:\Users\JOSE\Downloads\TA5T50578735_factura_legal.pdf
      2017-11-02 12:18 - 2017-11-02 12:18 - 000095369 _____ C:\Users\JOSE\Downloads\TA5T50578734_factura_legal.pdf
      2017-11-01 19:49 - 2017-11-01 19:49 - 000000834 _____ C:\Users\JOSE\Downloads\repository.GenieTv.zip
      2017-11-01 12:26 - 2017-11-01 12:26 - 000031140 _____ C:\Users\JOSE\Downloads\Plantilla-seguimiento-redes-sociales.xlsx
      2017-11-01 12:23 - 2017-11-01 12:23 - 000098304 _____ C:\Users\JOSE\Downloads\Calendario-Editorial-de-Social-Media-para-Redes-Sociales.xls
      2017-10-31 14:55 - 2017-10-31 14:56 - 002542055 _____ C:\Users\JOSE\Downloads\ESPlanempresaWindows (1).zip

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-11-29 10:31 - 2017-10-19 16:03 - 000000528 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3701498839-1323420681-3441469431-1000.job
      2017-11-29 10:30 - 2016-02-08 00:38 - 000005250 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for JOSE-PC-JOSE JOSE-PC
      2017-11-29 09:46 - 2009-07-14 05:45 - 000027264 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2017-11-29 09:46 - 2009-07-14 05:45 - 000027264 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2017-11-29 09:43 - 2009-08-21 17:46 - 000816502 _____ C:\Windows\system32\perfh00A.dat
      2017-11-29 09:43 - 2009-08-21 17:46 - 000184584 _____ C:\Windows\system32\perfc00A.dat
      2017-11-29 09:43 - 2009-07-14 06:13 - 001868392 _____ C:\Windows\system32\PerfStringBackup.INI
      2017-11-29 09:43 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
      2017-11-29 09:40 - 2016-02-07 00:38 - 000000196 _____ C:\ProgramData\HPWALog.txt
      2017-11-29 09:39 - 2016-03-13 10:49 - 000000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
      2017-11-29 09:39 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2017-11-28 21:26 - 2017-10-19 16:03 - 000000624 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3701498839-1323420681-3441469431-1000.job
      2017-11-28 20:27 - 2009-07-14 06:32 - 000000000 ____D C:\Windows\system32\FxsTmp
      2017-11-28 15:54 - 2017-10-19 18:35 - 000003180 _____ C:\Windows\System32\Tasks\HPCeeScheduleForJOSE
      2017-11-28 15:54 - 2017-10-19 18:35 - 000000328 _____ C:\Windows\Tasks\HPCeeScheduleForJOSE.job
      2017-11-27 21:08 - 2016-08-02 14:40 - 000000000 ____D C:\Users\JOSE\AppData\Local\Gestion
      2017-11-27 14:03 - 2016-08-27 09:51 - 000000000 ___RD C:\Users\JOSE\OneDrive - HERMANOS SANCHEZ MORENO SC --
      2017-11-27 10:02 - 2016-08-27 10:34 - 000000000 ____D C:\Windows\AutoKMS
      2017-11-27 10:02 - 2016-03-20 21:06 - 000000000 ____D C:\Users\JOSE\Downloads\Foxit PhantomPDF Business 7.2.0.0722
      2017-11-26 08:07 - 2009-07-14 06:08 - 000032554 _____ C:\Windows\Tasks\SCHEDLGU.TXT
      2017-11-25 20:15 - 2017-02-06 13:43 - 000000918 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
      2017-11-24 19:09 - 2016-12-11 18:21 - 000000340 _____ C:\Users\JOSE\AppData\Local\magnifier.ini
      2017-11-23 10:29 - 2017-09-22 16:12 - 000000000 ____D C:\Users\JOSE\AppData\Local\CrashDumps
      2017-11-22 17:09 - 2016-03-27 10:10 - 000002219 _____ C:\Users\masterpan\Desktop\Google Chrome.lnk
      2017-11-22 17:09 - 2016-02-07 00:35 - 000002032 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay compra y vende de todo.lnk
      2017-11-22 17:08 - 2017-06-22 15:48 - 000000000 ____D C:\Users\masterpan\no_aes
      2017-11-22 17:08 - 2017-06-22 15:47 - 000000000 ____D C:\Users\masterpan\aes
      2017-11-19 07:51 - 2017-10-19 16:03 - 000003646 _____ C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-3701498839-1323420681-3441469431-1000
      2017-11-19 07:51 - 2017-10-19 16:03 - 000003550 _____ C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-3701498839-1323420681-3441469431-1000
      2017-11-19 07:51 - 2017-10-19 16:03 - 000000000 ____D C:\Users\JOSE\AppData\Local\GoToMeeting
      2017-11-17 15:44 - 2016-03-14 21:37 - 000003532 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
      2017-11-17 15:44 - 2016-03-14 21:37 - 000003404 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
      2017-11-16 19:30 - 2016-03-14 09:39 - 000000438 _____ C:\Windows\BRWMARK.INI
      2017-11-13 18:27 - 2017-02-22 19:26 - 000000000 ____D C:\Users\JOSE\AppData\Local\EvernoteNW
      2017-11-13 15:29 - 2016-02-07 00:33 - 000000000 ____D C:\Users\JOSE
      2017-11-13 15:18 - 2016-07-14 08:49 - 000097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
      2017-11-13 15:18 - 2016-07-14 08:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
      2017-11-13 15:18 - 2009-08-21 10:15 - 000000000 ____D C:\Program Files (x86)\Java
      2017-11-07 09:44 - 2016-03-14 21:37 - 000000000 ____D C:\Program Files (x86)\Google
      2017-11-03 10:38 - 2017-07-27 08:46 - 000003168 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3701498839-1323420681-3441469431-1000
      2017-11-03 10:38 - 2016-08-27 09:45 - 000002192 _____ C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk

      ==================== Files in the root of some directories =======

      2017-01-15 09:37 - 2017-01-15 09:37 - 026878000 _____ (AEAT) C:\Users\JOSE\Informativas_windows_12_00.exe
      2017-01-19 21:31 - 2017-01-19 21:31 - 026878000 _____ (AEAT) C:\Users\JOSE\Informativas_windows_12_01.exe
      2017-02-02 18:36 - 2017-02-02 18:36 - 029518384 _____ (AEAT) C:\Users\JOSE\Informativas_windows_12_02.exe
      2016-05-23 17:53 - 2016-05-23 17:54 - 035296808 _____ (AEAT) C:\Users\JOSE\Renta2015_windows_1_20.exe
      2016-06-20 18:07 - 2016-06-20 18:07 - 035303976 _____ (AEAT) C:\Users\JOSE\Renta2015_windows_1_30.exe
      2017-01-12 14:14 - 2017-03-14 21:20 - 000572090 _____ () C:\Users\JOSE\AppData\Roaming\Scorch_Install.log
      2016-04-08 19:02 - 2016-04-08 19:02 - 000000000 _____ () C:\Users\JOSE\AppData\Roaming\wklnhst.dat
      2016-02-07 00:38 - 2016-02-07 00:38 - 000000000 _____ () C:\Users\JOSE\AppData\Local\AtStart.txt
      2016-03-14 22:00 - 2016-03-29 21:07 - 000000058 _____ () C:\Users\JOSE\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
      2016-02-07 00:38 - 2016-02-07 00:38 - 000000000 _____ () C:\Users\JOSE\AppData\Local\DSwitch.txt
      2017-07-19 18:11 - 2017-07-19 18:11 - 000000001 _____ () C:\Users\JOSE\AppData\Local\llftool.4.30.agreement
      2016-12-11 18:21 - 2017-11-24 19:09 - 000000340 _____ () C:\Users\JOSE\AppData\Local\magnifier.ini
      2016-02-07 00:38 - 2016-02-07 00:38 - 000000000 _____ () C:\Users\JOSE\AppData\Local\QSwitch.txt
      2017-03-21 19:48 - 2017-03-21 19:48 - 000000742 _____ () C:\Users\JOSE\AppData\Local\recently-used.xbel

      ==================== Bamital & volsnap ======================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

      LastRegBack: 2016-02-28 14:45

      ==================== End of FRST.txt ============================

    10. #10
      Usuario Avatar de sanvean
      Registrado
      oct 2007
      Ubicación
      españa
      Mensajes
      11

      Re: ralentizacion del sistema

      Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-11-2017
      Ran by JOSE (29-11-2017 10:34:47)
      Running from C:\Users\JOSE\Downloads
      Windows 7 Ultimate (X64) (2016-02-06 23:33:54)
      Boot Mode: Normal
      ==========================================================


      ==================== Accounts: =============================

      Administrador (S-1-5-21-3701498839-1323420681-3441469431-500 - Administrator - Disabled)
      HomeGroupUser$ (S-1-5-21-3701498839-1323420681-3441469431-1002 - Limited - Enabled)
      Invitado (S-1-5-21-3701498839-1323420681-3441469431-501 - Limited - Disabled)
      JOSE (S-1-5-21-3701498839-1323420681-3441469431-1000 - Administrator - Enabled) => C:\Users\JOSE
      masterpan (S-1-5-21-3701498839-1323420681-3441469431-1007 - Administrator - Enabled) => C:\Users\masterpan

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
      AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
      AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

      ==================== Installed Programs ======================

      (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
      ActiveCheck component for HP Active Support Library (HKLM-x32\...\{254C37AA-6B72-4300-84F6-98A82419187E}) (Version: 3.0.0.1 - Hewlett-Packard) Hidden
      Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
      Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.22.87 - Adobe Systems Incorporated)
      Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
      Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
      Archivos auxiliares de instalación de Microsoft SQL Server 2008 (HKLM\...\{773C7652-85B8-4335-9C78-1113CDBD73DA}) (Version: 10.1.2731.0 - Microsoft Corporation)
      Arrendamientos (HKLM-x32\...\{03456BBB-0A5A-4149-9F0E-748E752799E6}) (Version: 8 - Arrendamientos.es)
      ATI Catalyst Install Manager (HKLM\...\{83715090-142B-D305-36EC-7538A007D336}) (Version: 3.0.732.0 - ATI Technologies, Inc.)
      Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.60.48.35 - Broadcom Corporation)
      Brother MFL-Pro Suite MFC-7320 (HKLM-x32\...\{46E1B1F2-A279-4356-9B17-029F9CC72EAE}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
      ccc-core-static (HKLM-x32\...\{FD1D88FA-E5E0-BA76-73C8-7362E9703842}) (Version: 2009.0702.1239.20840 - Nombre de su organización) Hidden
      CCleaner (HKLM\...\CCleaner) (Version: 5.36 - Piriform)
      Choice Guard (HKLM-x32\...\{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}) (Version: 1.2.87.0 - Microsoft Corporation) Hidden
      Chrome Remote Desktop Host (HKLM-x32\...\{D61C8E6E-A4F3-4CD8-8568-51CEB5660C89}) (Version: 63.0.3239.32 - Google Inc.)
      CyberLink DVD Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.3101 - CyberLink Corp.)
      Directivas de Microsoft SQL Server 2008 R2 (HKLM-x32\...\{F64868FE-B30B-4B24-B769-D379AE1723CF}) (Version: 10.50.1600.1 - Microsoft Corporation)
      EaseUS Todo Backup Free 8.0 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 8.0 - CHENGDU YIWO Tech Development Co., Ltd)
      Eines de correcció del Microsoft Office 2013: català (HKLM\...\{90150000-001F-0403-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      eMule (HKLM-x32\...\eMule) (Version: - )
      ENE CIR Receiver Driver (HKLM\...\FFE7D41DF3C645075BB149E21988B63996C34187) (Version: 2.7.4.0 - ENE)
      Evernote v. 6.7.5 (HKLM-x32\...\{65B334F4-9E45-11E7-A6A5-005056951CAD}) (Version: 6.7.5.5825 - Evernote Corp.)
      Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM\...\{90150000-001F-0456-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      Foxit PhantomPDF Business (HKLM-x32\...\{62BCDCA9-7686-4DD9-BC3D-944842759209}) (Version: 7.2.0.722 - Foxit Software Inc.)
      Framework GEYCE 2016 (HKLM-x32\...\{49A6ED52-B7D0-436B-A8F3-F65933E14735}_is1) (Version: 29.05.2014.0 - Geyce AGP Software)
      Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
      GoTo Opener (HKLM-x32\...\{351B54B2-1AFC-42A7-A8C0-9E05C26F0D1E}) (Version: 1.0.470 - LogMeIn, Inc.)
      GoToMeeting 8.17.0.7943 (HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\GoToMeeting) (Version: 8.17.0.7943 - LogMeIn, Inc.)
      Herramienta de carga de Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
      HP 3D DriveGuard (HKLM\...\{B67FEC17-B596-400C-A2C1-CB164CB59464}) (Version: 4.0.3.1 - Hewlett-Packard)
      HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 3.0.3123 - Hewlett-Packard)
      HP MediaSmart Internet TV (HKLM-x32\...\InstallShield_{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}) (Version: 3.0.1916 - Hewlett-Packard)
      HP MediaSmart Live TV (HKLM-x32\...\InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}) (Version: 3.0.1924 - Hewlett-Packard)
      HP MediaSmart Movie Themes (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 3.0.3102 - Hewlett-Packard)
      HP MediaSmart Music/Photo/Video (HKLM-x32\...\InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}) (Version: 3.0.3123 - Hewlett-Packard)
      HP MediaSmart SmartMenu (HKLM\...\{88E60521-1E4E-4785-B9F1-1798A4BD0C30}) (Version: 3.0.30.1 - Hewlett-Packard)
      HP MediaSmart Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.0.1913 - Hewlett-Packard)
      HP Quick Launch Buttons (HKLM-x32\...\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.16.1 - Hewlett-Packard Company)
      HP Setup (HKLM-x32\...\{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}) (Version: 1.2.3220.3079 - Hewlett-Packard)
      HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.5.37.19 - Hewlett-Packard Company)
      HP Support Solutions Framework (HKLM-x32\...\{21925AE1-929D-4222-B38B-80BC30BBE09C}) (Version: 12.8.37.11 - HP)
      HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.)
      HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
      HP User Guides 0153 (HKLM-x32\...\{2EBA8202-FBD5-4004-81EA-BDC38C054CE2}) (Version: 1.01.0000 - Hewlett-Packard)
      HP Wireless Assistant (HKLM-x32\...\{54CC7901-804D-4155-B353-21F0CC9112AB}) (Version: 3.50.9.1 - Hewlett-Packard)
      HPAsset component for HP Active Support Library (HKLM-x32\...\{669D4A35-146B-4314-89F1-1AC3D7B88367}) (Version: 3.0.0.2 - Hewlett-Packard) Hidden
      IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6225.0 - IDT)
      Informativas 11.00 (HKLM-x32\...\4292-5894-1006-6413) (Version: 12.02 - AEAT)
      IVA 2016 1.00 (HKLM-x32\...\6663-8884-0599-8584) (Version: 1.00 - AEAT)
      J2SE Runtime Environment 5.0 Update 22 (HKLM-x32\...\{3248F0A8-6813-11D6-A77B-00B0D0150220}) (Version: 1.5.0.220 - Sun Microsystems, Inc.)
      Java 7 Update 80 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217080FF}) (Version: 7.0.800 - Oracle)
      Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
      Java 8 Update 92 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218092F0}) (Version: 8.0.920.14 - Oracle Corporation)
      Java(TM) 6 Update 14 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416014FF}) (Version: 6.0.140 - Sun Microsystems, Inc.)
      Java(TM) 6 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216045FF}) (Version: 6.0.450 - Oracle)
      JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.32.1 - JMicron Technology Corp.)
      LabelPrint (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1913 - CyberLink Corp.) Hidden
      LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1913 - CyberLink Corp.)
      LightScribe System Software (HKLM-x32\...\{82EF29B1-9B60-4142-A155-0599216DD053}) (Version: 1.18.6.1 - LightScribe)
      Malwarebytes versión 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
      Masterpan® ERP - Server 2017 Q3 V1.58.0 (HKLM-x32\...\{C38CB91F-4BCC-454F-BA42-05093E76FBD5}) (Version: 1.58.0 - DIR INFORMATICA BCN, S.L.)
      Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
      Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
      Microsoft OneDrive (HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
      Microsoft Report Viewer Redistributable 2008 SP1 (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 (KB971119)) (Version: - Microsoft Corporation)
      Microsoft Report Viewer Redistributable 2008 SP1 Language Pack - ESN (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 SP1 Language Pack - ESN) (Version: - Microsoft Corporation)
      Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
      Microsoft SQL Server 2008 R2 (64 bits) (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation)
      Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{681BEC7A-3EFF-432C-94FE-22E6F89C3558}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft SQL Server Browser (HKLM-x32\...\{127BCB7C-B976-4312-A760-6383892AD13C}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft SQL Server Compact 3.5 SP2 ESN (HKLM-x32\...\{2A78694E-ACFE-4D5A-9B0F-C0EBEFA3F280}) (Version: 3.5.8080.0 - Microsoft Corporation)
      Microsoft SQL Server Compact 3.5 SP2 Query Tools ESN (HKLM-x32\...\{898F0523-8B40-49F5-B7AF-6612AD466569}) (Version: 3.5.8080.0 - Microsoft Corporation)
      Microsoft SQL Server VSS Writer (HKLM\...\{32F2679A-EEDC-41B1-9162-E0044A11654D}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{4ECF4BDC-8387-329A-ABE9-CF5798F84BB2}) (Version: 9.0.35191 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 Language Pack - ESN (HKLM-x32\...\{88BD05FC-06CB-376A-84B9-D1530156EDE0}) (Version: 9.0.35191 - Microsoft Corporation)
      Microsoft Works (HKLM-x32\...\{38BB21D5-B0D1-41DA-A0B0-1EFB5EF4AAC2}) (Version: 9.7.0621 - Microsoft Corporation)
      Outils de vérification linguistique 2013 de Microsoft Office*- Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      Paquete de idioma de Microsoft .NET Framework 4.5 ESN (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.5.50709 - Microsoft Corporation)
      PowerRecover (HKLM-x32\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.1923 - CyberLink Corp.) Hidden
      Progr. de instalación de Microsoft SQL Server 2008 R2 (español) (HKLM\...\{D402A3F8-6CC9-45A0-9C07-4E5E60435217}) (Version: 10.52.4000.0 - Microsoft Corporation)
      QLBCASL (HKLM-x32\...\{F1D7AC58-554A-4A58-B784-B61558B1449A}) (Version: 6.40.17.2 - Hewlett-Packard) Hidden
      Realtek 8136 8168 8169 Ethernet Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0007 - Realtek)
      Renta 2015 1.30 (HKLM-x32\...\9648-5771-9114-3169) (Version: 1.30 - AEAT)
      Revisión para Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM-x32\...\{88BD05FC-06CB-376A-84B9-D1530156EDE0}.KB947789) (Version: 1 - Microsoft Corporation)
      Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM\...\{90150000-001F-0416-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      Service Pack 2 para SQL Server 2008 R2 (KB2630458) (64-bit) (HKLM\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation)
      SQL Server 2008 R2 SP2 Common Files (HKLM\...\{0F8CCE41-B6D0-43BB-BDBA-B8DF073216DB}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Common Files (HKLM\...\{36F70DEE-1EBF-4707-AFA2-E035EEAEBAA1}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Services (HKLM\...\{AF688AD8-21D3-4B17-9775-9955B1135DEC}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Services (HKLM\...\{FBD367D1-642F-47CF-B79B-9BE48FB34007}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Shared (HKLM\...\{A2122A9C-A699-4365-ADF8-68FEAC125D61}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Shared (HKLM\...\{DE620959-4E84-4FA7-97BE-A6D4048016A2}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Management Studio (HKLM\...\{72AB7E6F-BC24-481E-8C45-1AB5B3DD795D}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Management Studio (HKLM\...\{C767CCB8-3FE7-4FA3-A01D-EFDFB5C4D1B5}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      Sql Server Customer Experience Improvement Program (HKLM\...\{F31183CF-E10F-4DE1-BB59-6C0FF38E481E}) (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
      Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated)
      Trust USB Audio (HKLM\...\C-Media CM106 Like Sound Driver) (Version: - )
      Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
      Virtual Magnifying Glass v3.3.2 (HKLM-x32\...\Virtual Magnifying Glass_is1) (Version: - )
      WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
      Zen Marketing (HKLM-x32\...\Zen Marketing) (Version: - )

      ==================== Custom CLSID (Whitelisted): ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      CustomCLSID: HKU\S-1-5-21-3701498839-1323420681-3441469431-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\JOSE\AppData\Local\GoToMeeting\7716\G2MOutlookAddin64.dll (LogMeIn, Inc.)
      ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2015-07-10] (Foxit Software Inc.)
      ContextMenuHandlers1: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2014-12-15] (CHENGDU YIWO Tech Development Co.,Ltd)
      ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
      ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal)
      ContextMenuHandlers2: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2014-12-15] (CHENGDU YIWO Tech Development Co.,Ltd)
      ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
      ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] ()
      ContextMenuHandlers4: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2014-12-15] (CHENGDU YIWO Tech Development Co.,Ltd)
      ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2009-07-02] (Advanced Micro Devices, Inc.)
      ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
      ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] ()
      ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
      ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal)

      ==================== Scheduled Tasks (Whitelisted) =============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {00592405-687B-4C8D-BB3B-1703B3AFEFE6} - System32\Tasks\G2MUploadTask-S-1-5-21-3701498839-1323420681-3441469431-1000 => C:\Users\JOSE\AppData\Local\GoToMeeting\7943\g2mupload.exe [2017-11-19] (LogMeIn, Inc.)
      Task: {02ACE8CD-A5F6-44BD-B7C6-1A3EAE50A2E6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.)
      Task: {0C71F755-B871-4E3B-BDC6-031D22AEB230} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP TCS\RemEngine.exe [2009-07-08] ()
      Task: {0D08480D-3CA7-449B-A5C4-EAB30654B609} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
      Task: {0DB05ADC-EB10-4715-817D-29C986E6054F} - System32\Tasks\TVAgent => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-07-24] (CyberLink Corp.)
      Task: {0EB88C18-E754-4F6A-823B-5959E6167190} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe [2009-07-23] (CyberLink Corp.)
      Task: {0FAA7A6F-8054-45AC-BA03-0F21D6DE9A8E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.)
      Task: {1513E4E6-F0E7-4754-AFE1-6EA3D77C7656} - System32\Tasks\{A3735A2A-FB71-4235-AFAD-4BD0879120F7} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe" -c /app FreeYouTubeToMP3Converter
      Task: {21072457-46BD-449F-AF9C-C85E3BCE1454} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-14] (Google Inc.)
      Task: {2BE45458-BA83-48B3-9F0D-65A577806EC2} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File <==== ATTENTION
      Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> No File <==== ATTENTION
      Task: {3103F798-348D-4C9C-A5A2-9AFF5EA145B2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.)
      Task: {38230334-AFD2-4406-97DD-8BCD03B749B2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-14] (Google Inc.)
      Task: {39F81FE4-B96A-4F94-971D-8C629C5A7F8F} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
      Task: {3CAA45BB-205A-40F0-B867-2E6F8EED29A7} - System32\Tasks\CapSvcInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-07-24] (CL)
      Task: {3D846624-B273-4DF6-BCB7-EFAFABF9F1E8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-10-18] (Piriform Ltd)
      Task: {465A070A-CA0F-41AC-AF85-FCE662403BC1} - System32\Tasks\CapSchedInst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-07-24] (CL)
      Task: {4A200D4D-EDBD-41E8-A7F9-5917CE554AE6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
      Task: {4BC9E02F-C2F3-45D3-AD74-20BB171DB18F} - \AutoKMS -> No File <==== ATTENTION
      Task: {5CB028C6-52EE-44C0-B6D0-A8C9FE250B63} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Opt-in For HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [2017-09-27] (HP Inc.)
      Task: {602CEC96-FA75-4026-B411-62D89F9616F9} - System32\Tasks\mp_Copia_de_Seguridad => C:\MasterpanERP\Bin\MpBackup.exe [2017-08-08] (DIR INFORMATICA BCN, S.L.)
      Task: {66602844-6BB9-49A2-A32F-9228501CECCF} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-07-23] (CyberLink)
      Task: {6769CB72-A8F5-4A70-88E2-BB4E71F01470} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
      Task: {6BF10C84-F9E0-4985-943E-77F720FDC712} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [2017-02-06] (Adobe Systems Incorporated)
      Task: {6E1164ED-EFB8-4C89-A605-57DC3EBCED10} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
      Task: {7EE43D6A-24F3-41BD-B4F7-EA10C09D99D9} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
      Task: {827D9D0C-774D-4CB0-B4D6-E733EBEDF7EE} - System32\Tasks\RecoveryCDWin7 => C:\Program Files (x86)\Hewlett-Packard\HP TCS\RemEngine.exe [2009-07-08] ()
      Task: {8F1DDFCA-1218-4FCA-B0A5-B4EF5EA8C80F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-10-18] (Piriform Ltd)
      Task: {8FFE796F-4073-43AB-BFD1-F8D643033C58} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.)
      Task: {915844BC-E5E9-4922-B5DF-3E2CA7107D42} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-16] ()
      Task: {98C49C71-4652-439C-B08E-B554BE783730} - System32\Tasks\G2MUpdateTask-S-1-5-21-3701498839-1323420681-3441469431-1000 => C:\Users\JOSE\AppData\Local\GoToMeeting\7943\g2mupdate.exe [2017-11-19] (LogMeIn, Inc.)
      Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe
      Task: {9B10AF81-4AFA-4786-B30C-FCB22A2BCC68} - System32\Tasks\{E66A2FC4-070C-4CD7-80D9-EA84846994C2} => C:\Windows\system32\pcalua.exe -a C:\Users\JOSE\Downloads\XperiaCompanion.exe -d C:\Users\JOSE\Downloads
      Task: {A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe
      Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
      Task: {B715D64D-8D78-4BBB-A1F5-0A0B8F7A86BF} - System32\Tasks\{0D5C2B15-463A-4C74-8BFA-40876E9F18C4} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe" -c /app FreeYouTubeToMP3Converter
      Task: {C3912A26-27C7-4FFC-B9B6-1F971819160B} - System32\Tasks\LaunchChromeTask111 => C:\Program Files\FileZilla FTP Client\FileZilla.exe
      Task: {C79BB236-0177-4C76-884D-EE17BE59752E} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File <==== ATTENTION
      Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> No File <==== ATTENTION
      Task: {D90FCEF5-47D6-4679-B859-5EFA3094CD5B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
      Task: {DFBDE1A0-0CAA-4B3D-8619-604776E6B450} - System32\Tasks\{6C90C0FA-BA2E-4457-96B8-58DFA5EB4344} => C:\Windows\system32\pcalua.exe -a C:\Users\JOSE\Downloads\HPSupportSolutionsFramework-12.0.30.473.exe -d C:\Users\JOSE\Downloads
      Task: {E53E88A8-8F80-4DC9-9372-0B5C52E75693} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.)
      Task: {E66E385D-A062-4ADE-8F5A-AD50C128DC77} - System32\Tasks\Microsoft Office 15 Sync Maintenance for JOSE-PC-JOSE JOSE-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
      Task: {E6B3F3AF-BA05-48C5-B40C-F3D9D0895773} - System32\Tasks\RMCreator => C:\Program Files (x86)\Hewlett-Packard\Recovery\Reminder.exe [2009-07-23] (CyberLink)
      Task: {E7DB7D28-A0D2-4AD5-A304-1B527F6F21E1} - System32\Tasks\CapUninst => c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-07-24] (CL)
      Task: {EA58F6DB-7B16-4997-9941-B32D2FFA74F8} - System32\Tasks\HPCeeScheduleForJOSE => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
      Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> No File <==== ATTENTION

      (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

      Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe
      Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3701498839-1323420681-3441469431-1000.job => C:\Users\JOSE\AppData\Local\GoToMeeting\7943\g2mupdate.exe
      Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3701498839-1323420681-3441469431-1000.job => C:\Users\JOSE\AppData\Local\GoToMeeting\7943\g2mupload.exe
      Task: C:\Windows\Tasks\HPCeeScheduleForJOSE.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

      ==================== Shortcuts & WMI ========================

      (The entries could be listed to be restored or removed.)


      ==================== Loaded Modules (Whitelisted) ==============

      2016-03-23 21:25 - 2014-12-15 01:03 - 000241704 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      2017-11-22 15:49 - 2017-11-01 08:55 - 002299344 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
      2017-11-22 15:49 - 2017-11-01 08:54 - 002358736 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
      2017-10-18 17:19 - 2017-10-18 17:19 - 000098688 _____ () C:\Program Files\CCleaner\lang\lang-1034.dll
      2009-07-07 11:56 - 2009-07-07 11:56 - 000016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
      2016-02-06 23:48 - 2016-02-06 23:48 - 000270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
      2009-07-01 14:44 - 2009-07-01 14:44 - 000632888 _____ () C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
      2016-03-23 21:24 - 2014-12-15 00:53 - 000098856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000031272 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckTool.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 001296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000107560 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000030248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000280104 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000754728 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000407080 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000115752 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000194088 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000037928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000135720 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll
      2016-03-23 21:24 - 2014-12-15 00:53 - 000020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000096808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBFireWall.dll
      2016-03-23 21:25 - 2014-12-15 00:53 - 000223784 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll
      2017-09-20 13:54 - 2017-09-20 13:54 - 000667520 _____ () C:\Program Files (x86)\Evernote\Evernote\tidy.dll
      2016-03-14 09:51 - 2009-02-27 16:38 - 000139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
      2009-07-23 11:37 - 2009-07-23 11:37 - 000931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
      1998-09-11 08:14 - 1998-09-11 08:14 - 000021504 _____ () C:\MasterpanERP\Bin\WBCustomizer.dll
      2017-11-29 10:22 - 2017-11-29 10:22 - 000016384 _____ () C:\Users\JOSE\AppData\Local\Temp\nsbC91B.tmp\registry.dll
      2017-11-16 14:44 - 2017-11-10 10:21 - 003075928 _____ () D:\PortableApps\GoogleChromePortable\App\Chrome-bin\62.0.3202.94\libglesv2.dll
      2017-11-16 14:44 - 2017-11-10 10:21 - 000086872 _____ () D:\PortableApps\GoogleChromePortable\App\Chrome-bin\62.0.3202.94\libegl.dll

      ==================== Alternate Data Streams (Whitelisted) =========

      (If an entry is included in the fixlist, only the ADS will be removed.)


      ==================== Safe Mode (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

      ==================== Association (Whitelisted) ===============

      (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


      ==================== Internet Explorer trusted/restricted ===============

      (If an entry is included in the fixlist, it will be removed from the registry.)

      IE trusted site: HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\...\sharepoint.com -> hxxps://tef952803996.sharepoint.com

      ==================== Hosts content: ==========================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2009-07-14 03:34 - 2016-11-02 10:19 - 000001151 _____ C:\Windows\system32\Drivers\etc\hosts

      0.0.0.0 adclick.g.doublecklick.net
      0.0.0.0 googleads.g.doubleclick.net
      0.0.0.0 http://www.googleadservices.com
      0.0.0.0 pubads.g.doubleclick.net
      0.0.0.0 securepubads.g.doubleclick.net
      0.0.0.0 pagead2.googlesyndication.com
      0.0.0.0 spclient.wg.spotify.com
      0.0.0.0 audio2.spotify.com

      ==================== Other Areas ============================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-3701498839-1323420681-3441469431-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\JOSE\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
      DNS Servers: 192.168.1.1
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
      Windows Firewall is enabled.

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
      MSCONFIG\startupreg: Easybits Recovery => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
      MSCONFIG\startupreg: HPCam_Menu => "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
      MSCONFIG\startupreg: LightScribe Control Panel => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
      MSCONFIG\startupreg: QlbCtrl.exe => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
      MSCONFIG\startupreg: SmartMenu => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background
      MSCONFIG\startupreg: UpdatePRCShortCut => "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover"

      ==================== FirewallRules (Whitelisted) ===============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [{25877844-FC00-4B8C-8834-E5CAC5EBFD85}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe
      FirewallRules: [{039CE681-5AE0-4254-A72E-C2005A51D265}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe
      FirewallRules: [{8A8A9021-223C-4A2C-89B2-4BC41AD85A7B}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe
      FirewallRules: [{FE497CB7-A975-458D-BFC0-3FE6960F4E68}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe
      FirewallRules: [{F23C57DC-CE9C-4430-8212-EA084F0E8DA9}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
      FirewallRules: [{06CD6ED8-1C33-4E7E-BAAF-BC34143AC214}] => (Allow) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
      FirewallRules: [{0F846819-14A3-4C5E-A04E-5DC6474E81C6}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
      FirewallRules: [{AD77491E-214E-4D5A-A0F3-9EA8D411B1BC}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
      FirewallRules: [{167A589B-FA2C-40AD-8C2B-26DF170A122E}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
      FirewallRules: [{F06FF48F-FC59-49B6-91A4-EC93B7081518}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
      FirewallRules: [{131D35BF-9389-47EE-8D85-A84E30ECAB30}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
      FirewallRules: [{EE2C5592-0930-47CB-A712-BCD093474D18}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      FirewallRules: [{B525A1AB-0443-4BFA-A149-74FD9F7272F1}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      FirewallRules: [{73F59151-418F-4A61-874B-E27AEB86187B}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      FirewallRules: [{57660A0F-1A6E-4C29-A4A1-0E063386696A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
      FirewallRules: [{800CF921-32AF-47AD-810A-83B0FE97EE64}] => (Allow) LPort=3389
      FirewallRules: [TCP Query User{B19F49DC-DC14-45CF-B8FE-5EB44DB183C9}C:\program files (x86)\java\jre1.5.0_22\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.5.0_22\bin\javaw.exe
      FirewallRules: [UDP Query User{67CAD620-C8B2-4E4B-A44D-482504038ED0}C:\program files (x86)\java\jre1.5.0_22\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.5.0_22\bin\javaw.exe
      FirewallRules: [TCP Query User{3DFDD508-CDA9-4657-85B9-EEFE96FB512E}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
      FirewallRules: [UDP Query User{0DF6D340-F2E8-4377-9812-DDB2AAE88115}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
      FirewallRules: [{D4340640-1DFF-4808-AF03-CC9EAF1EE312}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
      FirewallRules: [{74E41384-55C4-45C4-A058-8C1E27AB6787}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
      FirewallRules: [{1584677D-DE82-4C7A-A230-F44050C795CB}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
      FirewallRules: [{A4F29788-A06C-4494-89B3-9DEAC099FC43}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
      FirewallRules: [TCP Query User{2C24FBFF-6E91-4295-8D41-CBC8B4F139E1}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
      FirewallRules: [UDP Query User{D4531C75-E0CB-4A74-BC87-24D4E4195E3D}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
      FirewallRules: [{792931A5-6D17-4EED-BED7-8488C9122BF7}] => (Allow) C:\Windows\system32\rundll32.exe
      FirewallRules: [TCP Query User{FF7CB998-F82A-4CE7-858F-025F52086F56}J:\kodiportable\app\kodi\kodi.exe] => (Allow) J:\kodiportable\app\kodi\kodi.exe
      FirewallRules: [UDP Query User{6A7C78A9-C13F-44C9-AF17-2DCD1A3E6E91}J:\kodiportable\app\kodi\kodi.exe] => (Allow) J:\kodiportable\app\kodi\kodi.exe
      FirewallRules: [TCP Query User{0C6437E8-1D35-4E22-B210-F5931B8FF2E2}I:\kodiportable\app\kodi\kodi.exe] => (Allow) I:\kodiportable\app\kodi\kodi.exe
      FirewallRules: [UDP Query User{C3A3911B-7416-43CE-99C6-D16A57B444A8}I:\kodiportable\app\kodi\kodi.exe] => (Allow) I:\kodiportable\app\kodi\kodi.exe
      FirewallRules: [{7964F2A7-6588-4351-9691-7407F37E9531}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe
      FirewallRules: [{37EBC1E9-118A-4AAA-8159-B6F80AEC7EF5}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe
      FirewallRules: [TCP Query User{D3C6E6D7-D44D-4A1E-95DC-68457B6C0F7F}D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe] => (Allow) D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe
      FirewallRules: [UDP Query User{E6274BE9-B94A-46C5-97CE-68FA22DEBF63}D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe] => (Allow) D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe
      FirewallRules: [TCP Query User{6FEAFA69-C9A5-479F-A28F-1C5F16CC0415}D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe] => (Allow) D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe
      FirewallRules: [UDP Query User{7D82DC16-036D-4501-B2E5-F999E1CC09D6}D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe] => (Allow) D:\portableapps\googlechromeportable\app\chrome-bin\chrome.exe
      FirewallRules: [{E6D884C4-F977-4268-AE76-24610E001ADB}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
      FirewallRules: [{125F66E9-72D8-426A-A209-128FA92B085D}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
      FirewallRules: [{81DC77F7-2F38-4659-8BD3-97D0D0372E2E}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
      FirewallRules: [{457A0AA8-7414-4B1F-9A04-D43FD77FC853}] => (Allow) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
      FirewallRules: [{58F3E474-FBCF-457D-9096-9EA9E93B4BC6}] => (Allow) C:\Users\JOSE\AppData\Roaming\ACEStream\player\ace_player.exe
      FirewallRules: [{241ECB43-522B-419D-8D7E-214A5EB98538}] => (Allow) C:\Users\JOSE\AppData\Roaming\ACEStream\player\ace_player.exe
      FirewallRules: [{6FBE8994-5512-4614-89A1-9AD7774424E1}] => (Allow) C:\Users\JOSE\AppData\Roaming\ACEStream\player\ace_player.exe
      FirewallRules: [{B0797972-A1F8-478E-BBF6-C38B94A751B7}] => (Allow) C:\Users\JOSE\AppData\Roaming\ACEStream\player\ace_player.exe
      FirewallRules: [{A9B055D1-154E-49A7-95C9-8421A35DB0F9}] => (Allow) LPort=1433
      FirewallRules: [{E94EB50C-7668-4E8E-BE73-461FC32385E6}] => (Allow) LPort=1434
      FirewallRules: [{665CE3A9-646E-4179-90FE-0B8969EDB5CA}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\63.0.3239.32\remoting_host.exe

      ==================== Restore Points =========================

      22-11-2017 21:44:27 22112017
      23-11-2017 10:36:17 JRT Pre-Junkware Removal
      27-11-2017 10:01:39 Punto de comprobación por HitmanPro
      27-11-2017 10:02:37 Punto de comprobación por HitmanPro

      ==================== Faulty Device Manager Devices =============


      ==================== Event log errors: =========================

      Application errors:
      ==================
      Error: (11/29/2017 09:39:25 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: WsAppService.exe, versión: 2.2.0.5, marca de tiempo: 0x56fce241
      Nombre del módulo con errores: KERNELBASE.dll, versión: 6.1.7600.16385, marca de tiempo: 0x4a5bdfe0
      Código de excepción: 0xe053534f
      Desplazamiento de errores: 0x000000000000aa7d
      Id. del proceso con errores: 0x%9
      Hora de inicio de la aplicación con errores: 0xWsAppService.exe0
      Ruta de acceso de la aplicación con errores: WsAppService.exe1
      Ruta de acceso del módulo con errores: WsAppService.exe2
      Id. del informe: WsAppService.exe3

      Error: (11/28/2017 10:04:13 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:13.875]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:12 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:12.331]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:10 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:10.787]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:09 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:09.242]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:07 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:07.712]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:06 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:06.168]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:04.624]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:03 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:03.107]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2

      Error: (11/28/2017 10:04:01 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
      Description: WDLMW BrtWDLMW: [2017/11/28 22:04:01.589]: [00004124]: lperrcode->api = 1 , lperrcode->code = 2


      System errors:
      =============
      Error: (11/29/2017 09:49:27 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:49:26 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:49:25 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:40:57 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:40:57 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:40:56 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:40:55 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk2\DR2.

      Error: (11/29/2017 09:40:43 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk5\DR5.

      Error: (11/29/2017 09:40:42 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk5\DR5.

      Error: (11/29/2017 09:40:42 AM) (Source: Disk) (EventID: 11) (User: )
      Description: El controlador detectó un error de controladora en \Device\Harddisk5\DR5.


      CodeIntegrity:
      ===================================
      Date: 2017-11-29 09:39:01.744
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-29 09:39:01.744
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-28 15:40:30.494
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-28 15:40:30.494
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-28 10:06:27.087
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-28 10:06:27.087
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-27 20:52:06.571
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-27 20:52:06.570
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-27 16:48:44.418
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

      Date: 2017-11-27 16:48:44.418
      Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\drivers\wdcsam64_prewin8.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.


      ==================== Memory info ===========================

      Processor: Intel(R) Core(TM)2 Duo CPU T6600 @ 2.20GHz
      Percentage of memory in use: 73%
      Total physical RAM: 4063.19 MB
      Available physical RAM: 1059.95 MB
      Total Virtual: 10155.33 MB
      Available Virtual: 6534.28 MB

      ==================== Drives ================================

      Drive c: (OS) (Fixed) (Total:284.97 GB) (Free:148.45 GB) NTFS ==>[system with boot components (obtained from drive)]
      Drive d: (DATA) (Fixed) (Total:298.09 GB) (Free:92.92 GB) NTFS
      Drive e: (RECOVERY) (Fixed) (Total:12.92 GB) (Free:1.77 GB) NTFS ==>[system with boot components (obtained from drive)]
      Drive g: () (Removable) (Total:14.55 GB) (Free:10.54 GB) FAT32
      Drive h: (USB DISK) (Removable) (Total:1.87 GB) (Free:0 GB) FAT32
      Drive i: (Lexar) (Removable) (Total:1.87 GB) (Free:0.01 GB) FAT
      Drive j: (My Passport) (Fixed) (Total:931.48 GB) (Free:868.45 GB) NTFS

      ==================== MBR & Partition Table ==================

      ========================================================
      Disk: 0 (Size: 298.1 GB) (Disk ID: E11F6960)
      Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
      Partition 2: (Not Active) - (Size=285 GB) - (Type=07 NTFS)
      Partition 3: (Not Active) - (Size=12.9 GB) - (Type=07 NTFS)

      ========================================================
      Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 437A9877)
      Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)

      ========================================================
      Disk: 2 (Size: 14.6 GB) (Disk ID: 00000000)

      Partition: GPT.

      ========================================================
      Disk: 3 (MBR Code: Windows XP) (Size: 1.9 GB) (Disk ID: C3072E18)
      Partition 1: (Active) - (Size=1.9 GB) - (Type=0C)

      ========================================================
      Disk: 4 (Size: 931.5 GB) (Disk ID: 16F2A91F)

      Partition: GPT.

      ========================================================
      Disk: 5 (MBR Code: Windows XP) (Size: 1.9 GB) (Disk ID: C3072E18)
      Partition 1: (Active) - (Size=1.9 GB) - (Type=06)

      ==================== End of Addition.txt ============================

      lo he enviado por separado

      saludos

    Página 1 de 2 12 ÚltimoÚltimo