• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 11

    Eliminar chromesearch (Solucionado)

    Buen día, guiándome de otro post he empezado la limpieza de mi pc siguiendo los siguientes pasos A continuación dejo los reportes de los escaneos: # AdwCleaner 7.0.5.0 - Logfile created on Mon Dec 04 ...

          
    1. #1
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Eliminar chromesearch (Solucionado)

      Buen día, guiándome de otro post he empezado la limpieza de mi pc siguiendo los siguientes pasos



      A continuación dejo los reportes de los escaneos:
      # AdwCleaner 7.0.5.0 - Logfile created on Mon Dec 04 22:53:22 2017
      # Updated on 2017/29/11 by Malwarebytes
      # Running on Windows 7 Professional (X64)
      # Mode: clean
      # Support: https://www.malwarebytes.com/support

      ***** [ Services ] *****

      No malicious services deleted.

      ***** [ Folders ] *****

      Deleted: C:\Windows\System32\config\systemprofile\AppData\Local\LavasoftTcpService
      Deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\LavasoftTcpService


      ***** [ Files ] *****

      Deleted: C:\Windows\Installer\5d682.msi
      Deleted: C:\Windows\System32\lavasofttcpservice.dll
      Deleted: C:\Windows\SysWOW64\lavasofttcpservice.dll
      Deleted: C:\Windows\System32\LavasoftTcpServiceOff.ini
      Deleted: C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
      Deleted: C:\Windows\SysNative\LavasoftTcpService64.dll


      ***** [ DLL ] *****

      No malicious DLLs cleaned.

      ***** [ WMI ] *****

      No malicious WMI cleaned.

      ***** [ Shortcuts ] *****

      No malicious shortcuts cleaned.

      ***** [ Tasks ] *****

      No malicious tasks deleted.

      ***** [ Registry ] *****

      Deleted: [Key] - HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\csastats
      Deleted: [Key] - HKCU\Software\csastats
      Deleted: [Key] - HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\PRODUCTSETUP
      Deleted: [Key] - HKCU\Software\PRODUCTSETUP


      ***** [ Firefox (and derivatives) ] *****

      No malicious Firefox entries deleted.

      ***** [ Chromium (and derivatives) ] *****

      Plugin deleted: Microcosm - New Tab -
      Plugin deleted: Save Tabs -


      *************************

      ::Tracing keys deleted
      ::Winsock settings cleared
      ::Additional Actions: 0



      *************************

      C:/AdwCleaner/AdwCleaner[C0].txt - [2946 B] - [2017/8/2 0:57:20]
      C:/AdwCleaner/AdwCleaner[S0].txt - [3117 B] - [2017/8/2 0:56:38]
      C:/AdwCleaner/AdwCleaner[S1].txt - [2153 B] - [2017/12/4 22:52:5]


      ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########


      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Junkware Removal Tool (JRT) by Malwarebytes
      Version: 8.1.4 (07.09.2017)
      Operating System: Windows 7 Professional x64
      Ran by JOFRET (Administrator) on 04/12/2017 at 18:01:46,16
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




      File System: 46

      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1B7CF3HQ (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2VYT3L3D (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OH0IOJA (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6254I7VW (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9YASQ0DK (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A9FBBOUW (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DMF6660J (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DN829A61 (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DT8IQ7LB (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E462ZE8Y (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUGQ51ZL (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J0G3WHXD (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JDV9P3UI (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K1DKCHSI (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PEWI0F99 (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PGUAWVGD (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QC88P2TD (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S4LVA8RF (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U20WU6XT (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VSVM48IN (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YA5G110M (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZDQRD2CG (Temporary Internet Files Folder)
      Successfully deleted: C:\Users\JOFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZWTC4T43 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1B7CF3HQ (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2VYT3L3D (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OH0IOJA (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6254I7VW (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9YASQ0DK (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A9FBBOUW (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DMF6660J (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DN829A61 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DT8IQ7LB (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E462ZE8Y (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUGQ51ZL (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J0G3WHXD (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JDV9P3UI (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K1DKCHSI (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PEWI0F99 (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PGUAWVGD (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QC88P2TD (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S4LVA8RF (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U20WU6XT (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VSVM48IN (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YA5G110M (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZDQRD2CG (Temporary Internet Files Folder)
      Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZWTC4T43 (Temporary Internet Files Folder)



      Registry: 0





      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Scan was completed on 04/12/2017 at 18:06:42,67
      End of JRT log
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



      Malwarebytes
      www.malwarebytes.com

      -Detalles del registro-
      Fecha del análisis: 4/12/17
      Hora del análisis: 18:15
      Archivo de registro: fa87c4da-d948-11e7-b3e9-00ff29e0b7c5.json
      Administrador: Sí

      -Información del software-
      Versión: 3.3.1.2183
      Versión de los componentes: 1.0.236
      Versión del paquete de actualización: 1.0.3409
      Licencia: Prueba

      -Información del sistema-
      SO: Windows 7 Service Pack 1
      CPU: x64
      Sistema de archivos: NTFS
      Usuario: JOFRET-PC\JOFRET

      -Resumen del análisis-
      Tipo de análisis: Análisis personalizado
      Resultado: Completado
      Objetos analizados: 901896
      Amenazas detectadas: 86
      Amenazas en cuarentena: 86
      Tiempo transcurrido: 13 hr, 13 min, 34 seg

      -Opciones de análisis-
      Memoria: Activado
      Inicio: Activado
      Sistema de archivos: Activado
      Archivo: Activado
      Rootkits: Desactivado
      Heurística: Activado
      PUP: Detectar
      PUM: Detectar

      -Detalles del análisis-
      Proceso: 0
      (No hay elementos maliciosos detectados)

      Módulo: 0
      (No hay elementos maliciosos detectados)

      Clave del registro: 2
      PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A326FDCC-C52F-4A16-8498-F9E84AB7A418}, En cuarentena, [56], [308967],1.0.3409
      PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Yahoo! Powered tarol, En cuarentena, [56], [308968],1.0.3409

      Valor del registro: 1
      PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A326FDCC-C52F-4A16-8498-F9E84AB7A418}|PATH, En cuarentena, [56], [308967],1.0.3409

      Datos del registro: 0
      (No hay elementos maliciosos detectados)

      Secuencia de datos: 0
      (No hay elementos maliciosos detectados)

      Carpeta: 0
      (No hay elementos maliciosos detectados)

      Archivo: 83
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\BEATRIZ-ROSAS\DISEÑO\IDEASPRELIMINARES\CUATRO.JPG, En cuarentena, [2652], [79311],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\BEATRIZ-ROSAS\SLIDER\IMAGES\PIC3.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\BOOTSTRAMP\BOOTSTRAP-3.3.7\DOCS\ASSETS\IMG\EXPO-VOGUE.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\FACEBOOK\FONDO.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\FROM-GITHUB\BACKGROUNMASTER\SLIDESHOW-BACKGROUND-MASTER\BACKGROUND3.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\IMAGES\PRODUCTOS\BICICLETA4.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\IMAGES\BG.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\JOFRET\HERRAMIENTAS-WEB\ICONOS\WPZOOM\DEVELOPER\PREVIEW.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\JOFRET\LINKEDING\LINKEDINGOK.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\NEW\EMPRESAS\LOGOS\ICPNA.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\NEW\EMPRESAS\LOGOS_2\IDAT.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\NEW\EMPRESAS\HAPPYLAND.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\NEW\EMPRESAS\TAYLOR.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\NEW\EMPRESAS\OPP_FILM - LOGO.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PHOTOS\PHOTO2.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PHOTOS\PHOTO6.JPG, En cuarentena, [2652], [79314],1.0.3409
      Trojan.FakeAlert, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PLUGINS\IMPORTEXPORT\CROSSREF\INDEX.TPL, En cuarentena, [802], [271727],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PROBLEMAS CON EL ALCOHOL\DISEÑO\DISEÑO.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PRODUCTOS\FAJAS SUDADERAS\24.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PRODUCTOS\FAJAS SUDADERAS\2.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\PRODUCTOS\TIPO-PEDALERA\20151107_100732.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\RAYOS X DENTAL\IMAGES\RAYOSX\GRANDES\CORIXPARED.GIF, En cuarentena, [2652], [79309],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\RAYOS X DENTAL\IMAGES\RAYOSX\GRANDES\PEDESTAL.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\RAYOS X DENTAL\IMAGES\RAYOSX\CORIXPARED.GIF, En cuarentena, [2652], [79309],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\REGALA-PELUCHES\DISEÑO\ROSMARY.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\RENATO-B\BUFFETS\EVENTOS\IMAGEN-JAVA\CRIOLLO.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\RENATO-B\IMAGES\NINO.GIF, En cuarentena, [2652], [79309],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\SEGUNDO-PAQUETE\ZERIF-LITE\INC\ADMIN\WELCOME-SCREEN\IMG\ZERIUS.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\SISPROFIT-NEW\DISEÑO\SIN TíTULO-1.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\SISPROFIT-NEW\IMAGES\GRANDES\SIETE.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\SISPROFIT-NEW\IMAGES\LAMPARAS\CHICOS\LEDB.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\SISPROFIT-NEW\IMAGES\GRANDES\SOLOS\UDSJ2.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\ULTRASONIDOSDENTALES.COM\VENTADE\IMAGES\LAMPARAS\GRANDES\LEDD.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.ORG\IMAGES\NOUVAG\SIN TíTULO-1.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.ORG\IMAGES\PROMOS\IMAGENESDISEñO\DRAELIZABETH.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.ORG\IMAGES\RAYOSX\RAYOSX\GRANDES\ELITYPARED.JPG, En cuarentena, [2652], [79311],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.ORG\TIENDA\CODERA.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.ORG\TIENDA\PROMOCION2.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.PE\TIENDA\FOTOS\NACIONALCOMPLETA2.JPG, En cuarentena, [2652], [79314],1.0.3409
      RiskWare.ExtensionMismatch, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\UNIDADESDENTALES.PE\TIENDA\FOTOS\NACIONALBASICA2.JPG, En cuarentena, [2652], [79314],1.0.3409
      MachineLearning/Anomalous.100%, C:\USERS\JOFRET\DOCUMENTS\UNKNOWN FOLDER\F_001B38, En cuarentena, [0], [392687],1.0.3409
      CrackTool.AutoDesk.Keygen, G:\CRACK\X-FORCE 2017_64BIT\XF_ADSK2017_64BIT.EXE, En cuarentena, [7646], [117344],1.0.3409
      CrackTool.AutoDesk.Keygen, G:\CRACK\X-FORCE 2017_32BIT\XF-ADSK2017_X86.EXE, En cuarentena, [7646], [117344],1.0.3409
      HackTool.Agent, F:\PROGRAMAS ADOBE\CRACK\ADOBE.CS6.ALL.PRODUCTS.ACTIVATOR.(X32.Y.X64)_UP01-MPT.EXE, En cuarentena, [403], [1570],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_127971\GYMKANAS-EMPRESAS\IMAGES\BANNERCOLEGIOS\3G.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_127971\GYMKANAS-EMPRESAS\IMAGES\BANNEREMPRESAS\3G.JPG, En cuarentena, [2653], [79311],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_127971\UNIDADESDENTALES.ORG-NEW\PUBLIC_HTML\IMAGES\LAMPARAS\TITULO-LAMPARASDENTALES.GIF, En cuarentena, [2653], [79309],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_127971\UNIDADESDENTALES.ORG-NEW\PUBLIC_HTML\IMAGES\PROMOS\PEQUEOS\OFERTA1\UNO-3.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_127971\UNIDADESDENTALES.ORG-NEW\PUBLIC_HTML\IMAGES\PROMOS\PEQUEOS\OFERTA1\TRES.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_137296\OSTRICH\THELEAGUEOF-OSTRICH-SANS-BAD8F030A420639C6066E53266647862D21D3501\OSTRICH-SANS-MASTER\IMAGES\OSTRICH-SANS-3.JPEG, En cuarentena, [2653], [79310],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_137296\OSTRICH\THELEAGUEOF-OSTRICH-SANS-BAD8F030A420639C6066E53266647862D21D3501\OSTRICH-SANS-MASTER\IMAGES\OSTRICH-SANS-1.JPEG, En cuarentena, [2653], [79310],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_137296\RALEWAY\THELEAGUEOF-RALEWAY-40AFD9D\IMAGES\RALEWAY-1.JPEG, En cuarentena, [2653], [79310],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_141685\RESPONSIVE 5-01.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_155463\PEDESTAL.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_475705\OPP_FILM - LOGO.JPG, En cuarentena, [2653], [79314],1.0.3409
      PUP.Optional.BundleInstaller, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_72071\EDTFTPNETPRO.DLL, En cuarentena, [19], [454069],1.0.3409
      PUP.Optional.BundleInstaller, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_72071\AEROSUITE.OC_, En cuarentena, [19], [454069],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_74159\JOFRET\HERRAMIENTAS-WEB\ICONOS\WPZOOM\DEVELOPER\PREVIEW.JPG, En cuarentena, [2653], [79314],1.0.3409
      RiskWare.ExtensionMismatch, F:\RECUPERADOS\UNALLOCATED FILES AND FOLDERS\_UNKNOWN_FOLDER_74159\JOFRET\LINKEDING\LINKEDINGOK.JPG, En cuarentena, [2653], [79314],1.0.3409
      Trojan.WGAPatch, F:\USB\TOTAL.VIDEO.CONVERTER_3.14_FULL.RAR, En cuarentena, [8994], [136537],1.0.3409
      HackTool.Agent, D:\ADOBE\CRACK\ADOBE.CS6.ALL.PRODUCTS.ACTIVATOR.(X32.Y.X64)_UP01-MPT.EXE, En cuarentena, [403], [1570],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD\CRACK\XF-ADSK2015_X64.EXE, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD\CRACK\XF-ADSK2015_X86.EXE, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD_2014_SPANISH_WIN_64BIT_(TEMPORAL)\CRACK\XF-ADSK64.7Z, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD_2014_SPANISH_WIN_64BIT_(TEMPORAL)\CRACK\KEYGEN 64BIT.EXE, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD_2014_SPANISH_WIN_64BIT_(TEMPORAL)\CRACK\XF-ADSK32.7Z, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.HCK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\AUTOCAD_2014_SPANISH_WIN_64BIT_(TEMPORAL)\CRACK\KEYGEN 32BIT.EXE, En cuarentena, [1942], [65468],1.0.3409
      RiskWare.Tool.CK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\DRIVEREASY\EASY DRIVES PRO\EASY DRIVER PROFESIONAL\EASY DRIVER PROFESIONAL\DRIVEREASY PROFESSIONAL DESTINOS\CRACK\KEYGEN.EXE, En cuarentena, [223], [297065],1.0.3409
      Generic.Malware/Suspicious, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\NITRO.PDF.PROFESSIONAL 7.3.1.10.X86\KEYGEN\KEYGEN.EXE, En cuarentena, [0], [392686],1.0.3409
      PUP.Optional.DriverPack, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\HP-FORCED-NTX64-WIRELESSBUTTON-DRP.EXE, En cuarentena, [1905], [354275],1.0.3409
      RiskWare.Tool.CK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\DRIVEREASY\EASY DRIVES PRO\EASY DRIVER PROFESIONAL.RAR, En cuarentena, [223], [297065],1.0.3409
      Generic.Malware/Suspicious, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\VALIDAR W7 32BITS AND 64BITS\VALIDADOR187\WINDOWS LOADER.EXE, En cuarentena, [0], [392686],1.0.3409
      PUP.Optional.DriverPack, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\HP-FORCED-NTX64-ACCELEROMETER-HPQ0004-DRP.EXE, En cuarentena, [1905], [354275],1.0.3409
      MachineLearning/Anomalous.100%, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\WINRAR 3.71 ESP+THEMEVISTA+KEYGEN\KEYGEN\WINRAR 3.71 ESP+THEMEVISTA+KEYGEN\KEYGEN\KEYGENPATCH.EXE, En cuarentena, [0], [392687],1.0.3409
      MachineLearning/Anomalous.100%, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\WINRAR 3.71 ESP+THEMEVISTA+KEYGEN\WINRAR 3[1].71 ESP+THEMEVISTA+KEYGEN.ZIP, En cuarentena, [0], [392687],1.0.3409
      PUP.Optional.ASK, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\ATUBE_CATCHER_ATU3_9017.EXE, En cuarentena, [472], [398182],1.0.3409
      MachineLearning/Anomalous.100%, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\WINRAR 3.71 ESP+THEMEVISTA+KEYGEN\KEYGEN\WINRAR 3.71 ESP+THEMEVISTA+KEYGEN\KEYGEN\KEYGENPATCH.RAR, En cuarentena, [0], [392687],1.0.3409
      PUP.Optional.DriverPack, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\REALTEK-FORCED-NTX64-5229_10.0.10586.29092-DRP.EXE, En cuarentena, [1905], [354275],1.0.3409
      Generic.Malware/Suspicious, D:\DOWNLOADS\DRIVERS NO BORRAR NUNCA\VALIDAR W7 32BITS AND 64BITS\VALIDADOR187\WINDOWS 7 LOADER.EXE, En cuarentena, [0], [392686],1.0.3409
      PUP.Optional.BundleInstaller, D:\DOWNLOADS\PANDORA-RECOVERY-PROGRAMAS-GRATIS-NET_1629276108.EXE, En cuarentena, [19], [454069],1.0.3409
      Backdoor.Agent, D:\DOWNLOADS\POWER DATA RECOVERY 4.0.0\POWER DATA RECOVERY 4.0.0\CRACK\CRACK.EXE, En cuarentena, [82], [147218],1.0.3409
      Backdoor.Agent, D:\DOWNLOADS\POWER DATA RECOVERY 4.0.0.RAR, En cuarentena, [82], [147218],1.0.3409
      Adware.InstallMonster, D:\DOWNLOADS\PANDORA-RECOVERY-221[ARB]CRACKED.ZIP, En cuarentena, [383], [453574],1.0.3409

      Sector físico: 0
      (No hay elementos maliciosos detectados)


      (end)

    2. #2
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      Tengo problemas para eliminar chromesearch del motor de búsqueda

      Gracias de antemano

    3. #3
      Moderadora Gral.
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      24.177

      Re: problemas con mi pc

      Hola jofret

      Descarga Farbar Recovery Scan Tool segun la arquitectura de tu sistema (32 o 64 bits)

      • La guardas en el escritorio >> Esto es muy importante..
      • Doble clic para ejecutar Frst.exe. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • En la ventana del Disclaimer, presiona Yes.

      • En la nueva ventana que se abre, presiona el botón Scan y espera paciente a que concluya el análisis.
      • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, estos estarán grabados en tu escritorio.

      • Para terminar abres los archivos Frst.txt y Addition.Txt copia y pega todo su contenido en tu próxima respuesta. Utiliza dos mensajes si te dice que es muy largo.


      Un saludo
      ✿◕‿◕✿ La impaciencia no es buena compañía ✿◕‿◕✿

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    4. #4
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-11-2017
      Ran by JOFRET (05-12-2017 10:38:12)
      Running from D:\Downloads
      Windows 7 Professional Service Pack 1 (X64) (2017-03-09 00:11:33)
      Boot Mode: Normal
      ==========================================================


      ==================== Accounts: =============================

      Administrador (S-1-5-21-3426458791-215168084-3688035202-500 - Administrator - Disabled)
      HomeGroupUser$ (S-1-5-21-3426458791-215168084-3688035202-1002 - Limited - Enabled)
      Invitado (S-1-5-21-3426458791-215168084-3688035202-501 - Limited - Disabled)
      JOFRET (S-1-5-21-3426458791-215168084-3688035202-1000 - Administrator - Enabled) => C:\Users\JOFRET

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
      AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
      AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
      AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

      ==================== Installed Programs ======================

      (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      .NET Core SDK 1.0.4 (x64) (HKLM\...\{11ACCE3C-C179-472C-A8CA-0F467702B2DA}) (Version: 4.1.5012 - Microsoft Corporation) Hidden
      .NET Core SDK 1.0.4 (x64) (HKLM-x32\...\{c56e80af-58a4-490b-a1cd-5718290133b9}) (Version: 1.0.4 - Microsoft Corporation)
      µTorrent (HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)
      7-Zip 17.00 beta (x64) (HKLM\...\7-Zip) (Version: 17.00 beta - Igor Pavlov)
      Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
      Adobe Acrobat X Pro - Italiano, Español, Nederlands, Português (HKLM-x32\...\{AC76BA86-1040-7D70-7760-000000000005}) (Version: 10.1.1 - Adobe Systems)
      Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
      Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
      Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
      Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.7.148 - Adobe Systems, Inc.)
      Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
      Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
      Application Verifier x64 External Package (HKLM\...\{01C2C51F-B0CF-BB5E-A010-E927D44F7720}) (Version: 10.1.15063.137 - Microsoft) Hidden
      Archivos auxiliares de instalación de Microsoft SQL Server 2008 (HKLM\...\{773C7652-85B8-4335-9C78-1113CDBD73DA}) (Version: 10.1.2731.0 - Microsoft Corporation)
      Archivos auxiliares de instalación de Microsoft SQL Server 2008 (HKLM-x32\...\{1DE52C52-9DCF-44D8-A5D1-3A3D568EFDFD}) (Version: 10.1.2731.0 - Microsoft Corporation)
      AutoCAD 2014 - Español (Spanish) (HKLM\...\{5783F2D7-D001-0000-0102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden
      AutoCAD 2014 - Español (Spanish) (HKLM\...\{5783F2D7-D001-040A-2102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden
      AutoCAD 2014 Language Pack - Español (Spanish) (HKLM\...\{5783F2D7-D001-040A-1102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden
      Autodesk 360 (HKLM\...\{52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B}) (Version: 4.0.27.1 - Autodesk)
      Autodesk App Manager (HKLM-x32\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk)
      Autodesk AutoCAD 2014 - Español (Spanish) (HKLM\...\AutoCAD 2014 - Español (Spanish)) (Version: 19.1.18.0 - Autodesk)
      Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden
      Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk)
      Autodesk Content Service Language Pack (HKLM-x32\...\{62F029AB-85F2-0001-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden
      Autodesk Featured Apps (HKLM-x32\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk)
      Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk)
      Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk)
      Autodesk ReCap (HKLM\...\{31ABA3F2-0000-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden
      Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.13 - Autodesk)
      Autodesk ReCap Language Pack-English (HKLM\...\{31ABA3F2-0010-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden
      Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.8.2318 - AVAST Software)
      Biblioteca de autenticación de AD para SQL Server (HKLM\...\{3921A687-A672-4EB9-A5CF-D1AB3E775010}) (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
      bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
      Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
      Brackets (HKLM-x32\...\{9E1DE4E6-DA6C-46E9-9EF2-15189E534511}) (Version: 1.11 - brackets.io)
      Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation)
      CCleaner (HKLM\...\CCleaner) (Version: 5.37 - Piriform)
      ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\...\{E598B692-764A-413C-8530-59163D6B4AE3}) (Version: 4.6.01590 - Microsoft Corporation) Hidden
      Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform)
      DiagnosticsHub_CollectionService (HKLM\...\{90A561D7-0C29-464D-94E1-2A7E1C553230}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      Directivas de Microsoft SQL Server 2008 R2 (HKLM-x32\...\{F64868FE-B30B-4B24-B769-D379AE1723CF}) (Version: 10.50.1600.1 - Microsoft Corporation)
      Eines de correcció del Microsoft Office 2013: català (HKLM-x32\...\{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      Entity Framework 6.1.3 Tools for Visual Studio 15 (HKLM-x32\...\{F8C0447E-D45C-4E52-94E8-C6340AAC9DB8}) (Version: 6.1.60104.0 - Microsoft Corporation) Hidden
      FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production)
      Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32\...\{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      FileZilla Client 3.25.0 (HKLM-x32\...\FileZilla Client) (Version: 3.25.0 - Tim Kosse)
      Git version 2.10.2 (HKLM\...\Git_is1) (Version: 2.10.2 - The Git Development Community)
      Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
      Google Earth Pro (HKLM-x32\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google)
      Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
      Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.)
      HandBrake 1.0.7 (HKLM-x32\...\HandBrake) (Version: 1.0.7 - )
      icecap_collection_neutral (HKLM-x32\...\{64F3E6FC-68E3-4062-9C2C-ABD93FDFF309}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      icecap_collection_x64 (HKLM\...\{0AD162D1-4973-4315-97E9-5DE9A92B4049}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      icecap_collectionresources (HKLM-x32\...\{A311AB6D-24C4-4068-83E5-381EE54A0A43}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      icecap_collectionresourcesx64 (HKLM-x32\...\{9F444796-CB35-46E1-AE22-3A477919D430}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      IIS 10.0 Express (HKLM\...\{0148E8AA-4A50-4673-B532-DB9F30F804BE}) (Version: 10.0.1737 - Microsoft Corporation)
      IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) Hidden
      IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Hidden
      Inkscape 0.92.1 (HKLM-x32\...\Inkscape) (Version: 0.92.1 - Inkscape Project)
      Intel(R) Wireless Bluetooth(R)(patch version 17.1.1449.356) (HKLM\...\{302600C1-6BDF-4FD1-1411-148929CC1385}) (Version: 17.1.1411.0506 - Intel Corporation)
      Intellisense Lang Pack Mobile Extension SDK 10.0.15063.0 (HKLM-x32\...\{A0007ADE-F6F6-410F-822F-7522B4F0BFDE}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      IntelliTraceProfilerProxy (HKLM-x32\...\{51783942-DFB0-4452-97CC-BDF2D4AB3A48}) (Version: 15.0.24.0 - Microsoft Corporation) Hidden
      Java SE Development Kit 8 Update 131 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation)
      Java SE Development Kit 8 Update 131 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation)
      JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
      Kits Configuration Installer (HKLM-x32\...\{0C05DE52-2C77-D6FA-A561-D508CF5FC96E}) (Version: 10.1.15063.137 - Microsoft) Hidden
      KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
      Malwarebytes versión 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
      Microsoft .NET Framework 4.6.1 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.6.01055 - Microsoft Corporation)
      Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
      Microsoft AS OLE DB Provider for SQL Server 2016 (HKLM\...\{875FD7AC-E11F-4F3D-BA4E-BCED5E4B78FF}) (Version: 13.0.1601.5 - Microsoft Corporation)
      Microsoft Azure Authoring Tools - v2.9.5.3 (HKLM\...\{086C537B-DE1A-4A11-8441-6AAF076174B8}) (Version: 2.9.8699.20 - Microsoft Corporation)
      Microsoft Azure Compute Emulator - v2.9.5.3 (HKLM\...\Microsoft Azure Compute Emulator - v2.9.5.3) (Version: 2.9.8699.20 - Microsoft Corporation)
      Microsoft Azure Libraries for .NET – v2.9 (HKLM\...\{C5C91AA6-3E83-430E-8B7A-6B790083F28D}) (Version: 3.0.0127.060 - Microsoft Corporation)
      Microsoft Azure Mobile App SDK V2.0 (HKLM-x32\...\{829D812B-3F25-4E8B-B1DF-1AD09164684C}) (Version: 2.0.50130.0 - Microsoft Corporation)
      Microsoft Azure Storage Emulator - v5.1 (HKLM-x32\...\Microsoft Azure Storage Emulator - v5.1) (Version: 5.1.1760.1722 - Microsoft Corporation)
      Microsoft Identity Extensions (HKLM\...\{F99F24BF-0B90-463E-9658-3FD2EFC3C992}) (Version: 2.0.1459.0 - Microsoft Corporation)
      Microsoft MPI (7.1.12437.25) (HKLM\...\{8499ACD3-C1E3-45AB-BF96-DA491727EBE1}) (Version: 7.1.12437.25 - Microsoft Corporation)
      Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
      Microsoft R Client (HKLM\...\{08C69A2C-62DE-48DB-9C1E-562A837FBB08}) (Version: 3.3.2.1944 - Microsoft)
      Microsoft Report Viewer Redistributable 2008 SP1 (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 (KB971119)) (Version: - Microsoft Corporation)
      Microsoft Report Viewer Redistributable 2008 SP1 Language Pack - ESN (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 SP1 Language Pack - ESN) (Version: - Microsoft Corporation)
      Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
      Microsoft SQL Server 2008 R2 (64 bits) (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation)
      Microsoft SQL Server 2008 R2 (HKLM-x32\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation)
      Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{681BEC7A-3EFF-432C-94FE-22E6F89C3558}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft SQL Server 2012 Native Client (HKLM\...\{15A835D2-48C4-4C13-8D7F-C2742104D2D1}) (Version: 11.3.6518.0 - Microsoft Corporation)
      Microsoft SQL Server 2016 LocalDB (HKLM\...\{B23A260A-2259-4D41-B6D4-7D621A697A5E}) (Version: 13.0.1601.5 - Microsoft Corporation)
      Microsoft SQL Server Browser (HKLM-x32\...\{127BCB7C-B976-4312-A760-6383892AD13C}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft SQL Server Compact 3.5 SP2 ESN (HKLM-x32\...\{2A78694E-ACFE-4D5A-9B0F-C0EBEFA3F280}) (Version: 3.5.8080.0 - Microsoft Corporation)
      Microsoft SQL Server Compact 3.5 SP2 Query Tools ESN (HKLM-x32\...\{898F0523-8B40-49F5-B7AF-6612AD466569}) (Version: 3.5.8080.0 - Microsoft Corporation)
      Microsoft SQL Server VSS Writer (HKLM\...\{32F2679A-EEDC-41B1-9162-E0044A11654D}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Microsoft System CLR Types para SQL Server 2016 (HKLM\...\{1F750C2E-35AA-4B52-866E-08943C5E8361}) (Version: 13.0.1601.5 - Microsoft Corporation)
      Microsoft System CLR Types para SQL Server 2016 (HKLM-x32\...\{D3B9EAC7-D4D3-4897-8252-F4BBFA51B724}) (Version: 13.0.1601.5 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
      Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
      Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
      Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
      Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
      Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
      Microsoft Visual Studio 2017 (HKLM-x32\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.10.30640.0 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{4ECF4BDC-8387-329A-ABE9-CF5798F84BB2}) (Version: 9.0.35191 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 Language Pack - ESN (HKLM-x32\...\{88BD05FC-06CB-376A-84B9-D1530156EDE0}) (Version: 9.0.35191 - Microsoft Corporation)
      Microsoft Web Deploy 3.6 (HKLM\...\{5CB4DD27-6252-4C08-BFCF-22F6A110CBFA}) (Version: 10.0.1972 - Microsoft Corporation)
      MSI Development Tools (HKLM-x32\...\{074120DA-7DA8-E059-BD8E-5750E97C6046}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team)
      Open XML SDK 2.5 for Microsoft Office (HKLM-x32\...\{3EA16E23-14D2-466A-8268-D7CD40DC46B6}) (Version: 2.5.5631 - Microsoft Corporation) Hidden
      OpenOffice 4.1.3 (HKLM-x32\...\{EEA30AEB-8BA7-465B-85D4-098BB99733E7}) (Version: 4.13.9783 - Apache Software Foundation)
      Outils de vérification linguistique 2013 de Microsoft Office*- Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      PandoraRecovery (Remove Only) (HKLM-x32\...\PandoraRecovery) (Version: - )
      Paquete acumulativo de Intellisense de Microsoft .NET Framework para Visual Studio (español) (HKLM-x32\...\{235CD9C1-7DED-4D31-98E4-34CE0618BD7E}) (Version: 4.6.01604 - Microsoft Corporation) Hidden
      Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
      PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
      ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
      Power Data Recovery 4.0.0 (HKLM-x32\...\Power Data Recovery_is1) (Version: - MT Solution Ltd.)
      Progr. de instalación de Microsoft SQL Server 2008 R2 (español) (HKLM\...\{B4B95257-5273-468F-B0BA-1241BB91AAAD}) (Version: 10.51.2500.0 - Microsoft Corporation)
      Progr. de instalación de Microsoft SQL Server 2008 R2 (español) (HKLM-x32\...\{CE997A54-FF78-47F7-B10D-92483B28A3D5}) (Version: 10.52.4000.0 - Microsoft Corporation)
      Python 3.6.0 (64-bit) (HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\{37a4e38b-baf7-4500-97f1-0f7c51d9a395}) (Version: 3.6.150.0 - Python Software Foundation)
      Python 3.6.0 (Anaconda3 4.3.0 64-bit) (HKLM\...\Python 3.6.0 (Anaconda3 4.3.0 64-bit)) (Version: 4.3.0 - Continuum Analytics, Inc.)
      Python 3.6.0 Core Interpreter (64-bit) (HKLM\...\{1944B5D6-0FFB-47C0-BFEC-5C7A2F013FA7}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Development Libraries (64-bit) (HKLM\...\{A6A3184B-748E-46F4-9E28-6B5889506170}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Documentation (64-bit) (HKLM\...\{5D83032F-36B5-42E4-A114-D310119C6F51}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Executables (64-bit) (HKLM\...\{C0016766-8F63-4992-9E6F-ECFB2CB12BA6}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 pip Bootstrap (64-bit) (HKLM\...\{F9C1C892-4908-41F4-900C-7B0DAAF2387B}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Standard Library (64-bit) (HKLM\...\{F3CB2257-C4C7-4C84-AF63-BADCED1E3273}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Tcl/Tk Support (64-bit) (HKLM\...\{E24AA157-AD52-42ED-B484-CA5979D4A728}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Test Suite (64-bit) (HKLM\...\{631C7E77-5832-40D1-9D6D-7B3766D79BDF}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python 3.6.0 Utility Scripts (64-bit) (HKLM\...\{FE905DA4-0F23-4F99-9284-50BB4913CEB4}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
      Python Launcher (HKLM-x32\...\{A674B2CB-13CA-437B-A215-9DD257959A49}) (Version: 3.6.5835.0 - Python Software Foundation)
      Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
      Revisión para Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM-x32\...\{88BD05FC-06CB-376A-84B9-D1530156EDE0}.KB947789) (Version: 1 - Microsoft Corporation)
      Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32\...\{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
      SDK de Microsoft .NET Framework 4.6.1 (español) (HKLM-x32\...\{07570008-8840-4A14-A752-1367157138A5}) (Version: 4.6.01055 - Microsoft Corporation) Hidden
      Service Pack 1 para SQL Server 2008 R2 (KB2528583) (64-bit) (HKLM\...\KB2528583) (Version: 10.51.2500.0 - Microsoft Corporation)
      Service Pack 2 para SQL Server 2008 R2 (KB2630458) (HKLM-x32\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation)
      SiteMap Generator 0.975 (beta) (HKLM-x32\...\SiteMap Generator_is1) (Version: - wonderwebware.com)
      sptools_Microsoft.VisualStudio.OfficeDeveloperTools.Msi (HKLM-x32\...\{9AF6A196-25EA-477B-9852-90E73A4438A4}) (Version: 15.0.26309 - Microsoft Corporation) Hidden
      sptools_Microsoft.VisualStudio.Vsto.Msi (HKLM-x32\...\{6A005912-B16B-4D76-8F77-BA1A47501B6F}) (Version: 15.0.26309 - Microsoft Corporation) Hidden
      sptools_Microsoft.VisualStudio.Vsto.Msi.Resources (HKLM-x32\...\{367F97D1-BB5D-4A09-AF8A-377A72D8A630}) (Version: 15.0.26309 - Microsoft Corporation) Hidden
      sptools_Microsoft.VisualStudio.Vsto.Msi.x64 (HKLM-x32\...\{C126CCCF-0F4C-4671-99D3-32B130945018}) (Version: 15.0.26309 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP1 Common Files (HKLM\...\{B5AC8F52-BE04-4202-A945-17A70BAF0162}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP1 Common Files (HKLM\...\{D20F84FD-41DC-43EB-97F7-5A7540E8F477}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP1 Management Studio (HKLM\...\{72AB7E6F-BC24-481E-8C45-1AB5B3DD795D}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP1 Management Studio (HKLM\...\{C767CCB8-3FE7-4FA3-A01D-EFDFB5C4D1B5}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Common Files (HKLM-x32\...\{38EB3C57-7270-45F2-95CE-3540F5473F44}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Common Files (HKLM-x32\...\{CACEA8C8-3D38-4F51-953D-1E6FC3346FEF}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Services (HKLM-x32\...\{66F57D71-729D-4669-B527-F975BE2D88C0}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Services (HKLM-x32\...\{B5153233-9AEE-4CD4-9D2C-4FAAC870DBE2}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Shared (HKLM-x32\...\{4C9D82EB-9001-4E59-8F64-0BEEE5F4A30A}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      SQL Server 2008 R2 SP2 Database Engine Shared (HKLM-x32\...\{D709BA72-1B42-487C-A25B-5DE28D0E2979}) (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
      Sql Server Customer Experience Improvement Program (HKLM-x32\...\{93998800-1608-403F-9A51-420A77D23C25}) (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
      Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.2.11.32 - Synaptics Incorporated)
      TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.88438 - TeamViewer)
      TypeScript Power Tool (HKLM-x32\...\{F0B4CA92-9642-4BE6-8449-A786AD4FA628}) (Version: 2.2.3.0 - Microsoft Corporation) Hidden
      Unity (HKLM-x32\...\Unity) (Version: 5.6.0f3 - Unity Technologies ApS)
      Universal CRT Extension SDK (HKLM-x32\...\{ADD45F52-630A-4F45-8879-A8DB80DF921B}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Universal CRT Headers Libraries and Sources (HKLM-x32\...\{919D63C5-565C-F1C3-67D9-353FE902EF11}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Universal CRT Redistributable (HKLM-x32\...\{0AAB833E-034D-430B-D3E4-39C5753B14AC}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Universal CRT Tools x64 (HKLM\...\{D29934EC-24B6-0F5D-C6BB-E9ECCF220C12}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Universal CRT Tools x86 (HKLM-x32\...\{2410D879-0C8F-B254-C207-455E119075B6}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Universal General MIDI DLS Extension SDK (HKLM-x32\...\{485209AE-37CE-2208-59CB-7BB59AA85BE7}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
      vcpp_crt.redist.clickonce (HKLM-x32\...\{E0B8F27A-1B10-41EE-A601-21F53252D916}) (Version: 14.10.25008 - Microsoft Corporation) Hidden
      VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN)
      VS Immersive Activate Helper (HKLM-x32\...\{D8A4EA2B-1A97-45A5-BF96-7493183F8524}) (Version: 16.0.59.0 - Microsoft Corporation) Hidden
      VS JIT Debugger (HKLM\...\{2901E697-0E9C-404B-B7D0-6E2D43F64CE5}) (Version: 16.0.59.0 - Microsoft Corporation) Hidden
      VS Script Debugging Common (HKLM\...\{3B64C68E-14E0-4214-A53D-502E9FBD32E7}) (Version: 16.0.59.0 - Microsoft Corporation) Hidden
      VS WCF Debugging (HKLM\...\{9E1EF6F7-ED70-4BD8-A1AE-83C5DEF0DA91}) (Version: 16.0.59.0 - Microsoft Corporation) Hidden
      vs_BlendMsi (HKLM-x32\...\{1070C8E8-4DFB-419F-984A-5C835828897E}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_clickoncebootstrappermsi (HKLM-x32\...\{B9F4AA09-F4AC-4108-ADA0-27CDD45FCEC3}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_clickoncebootstrappermsires (HKLM-x32\...\{AEF5E0F2-31D1-454A-A992-C523C0007B4D}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_clickoncesigntoolmsi (HKLM-x32\...\{DE8B48BF-82B9-434A-B254-1EA2306E5FBA}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_communitymsi (HKLM-x32\...\{A041943F-C97B-48F6-8F23-C5078F99BB3A}) (Version: 15.0.26323 - Microsoft Corporation) Hidden
      vs_communitymsires (HKLM-x32\...\{AAB02747-33F2-472C-8035-8ED83CF75BFC}) (Version: 15.0.26228 - Microsoft Corporation) Hidden
      vs_devenvmsi (HKLM-x32\...\{581E5656-26E2-4A02-9711-48C8E4998310}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_filehandler_amd64 (HKLM-x32\...\{15D591B0-7B40-4957-B6C0-EB7452B5AAB6}) (Version: 15.0.26228 - Microsoft Corporation) Hidden
      vs_filehandler_x86 (HKLM-x32\...\{DC296244-0701-4EDE-9696-05B9C1D017B3}) (Version: 15.0.26228 - Microsoft Corporation) Hidden
      vs_FileTracker_Singleton (HKLM-x32\...\{11230C85-1813-4BC3-9C24-E0B74B59653E}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_Graphics_Singletonx64 (HKLM\...\{F3217611-B414-4A3A-81BF-6A3A4DB7E743}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_Graphics_Singletonx86 (HKLM-x32\...\{D4DCEC6A-BC59-43D5-866A-AB057E64F73F}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_minshellinteropmsi (HKLM-x32\...\{9477F337-FD16-4ACA-8217-E2D7A0F92603}) (Version: 15.0.26301 - Microsoft Corporation) Hidden
      vs_minshellmsi (HKLM-x32\...\{497A5ACE-DA03-4412-A110-910B2C450720}) (Version: 15.0.26424 - Microsoft Corporation) Hidden
      vs_minshellmsires (HKLM-x32\...\{000CE4A1-0BFE-4ED3-BA8B-08CDCF88237F}) (Version: 15.0.26228 - Microsoft Corporation) Hidden
      vs_SQLClickOnceBootstrappermsi (HKLM-x32\...\{D396CF10-5F2B-417D-9571-0B669B99440E}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      vs_tipsmsi (HKLM-x32\...\{A32A9CF6-E7AA-48B8-A3D3-50C157E69F53}) (Version: 15.0.26208 - Microsoft Corporation) Hidden
      WinAppDeploy (HKLM-x32\...\{80859F5A-D13C-AB8E-4659-B630CFE2599D}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Windows SDK AddOn (HKLM-x32\...\{30DCCFB4-068F-4C5C-BC10-5ECDCAEE55D4}) (Version: 10.1.0.0 - Microsoft Corporation)
      Windows Software Development Kit - Windows 10.0.15063.137 (HKLM-x32\...\{a07b4a01-ca27-4e28-9353-f325a308f128}) (Version: 10.1.15063.137 - Microsoft Corporation)
      WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
      WinRT Intellisense Desktop - en-us (HKLM-x32\...\{45B6202F-A716-C68A-199E-43B106B56A7E}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{357D0CD4-8B72-8D65-7015-81DFB2BF9150}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense IoT - en-us (HKLM-x32\...\{3E5375A1-0E4C-34E3-6294-C1C8BDA823E4}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E2F78B92-04DE-5350-14C0-7C281BF87D9E}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense PPI - en-us (HKLM-x32\...\{6CE744AE-7E0F-00AF-F1BD-077D9AFCBEC6}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{81A0EC8C-9462-BC98-0E5C-301DD7A46792}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense UAP - en-us (HKLM-x32\...\{FAD08838-3937-0F6C-8787-FDFDFBF63502}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{D089A695-49F0-D3B2-0EBF-2BBC33A05CD6}) (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
      Wondershare Data Recovery(Build 5.0.0.5) (HKLM-x32\...\{FEA3976F-D621-45F3-AFBD-E812A1F2F00D}_is1) (Version: 5.0.0.5 - Wondershare Software Co.,Ltd.)
      Workflow Manager Client 1.0 (HKLM\...\{14C3DE14-8EF9-4B4B-A8A3-EDDC5AE30341}) (Version: 2.1.10217.1 - Microsoft Corporation) Hidden
      Workflow Manager Tools 1.0 for Visual Studio (HKLM\...\{EDC942D0-406A-4BE4-BB9C-EC5752DCBE36}) (Version: 2.1.10202.0 - Microsoft Corporation) Hidden
      Xamarin PCL Profiles v1.0.9 (HKLM-x32\...\{5E6844AB-A867-419C-A376-B12B574AA5F7}) (Version: 1.0.9.0 - Xamarin) Hidden
      Xamarin Workbooks and Inspector (HKLM-x32\...\{4C9771FB-6EB6-4E89-A2BE-BDE8B61C1BEC}) (Version: 1.2.2.9000 - Xamarin) Hidden
      Xamarin.Bonjour v1.0.13 (HKLM-x32\...\{32B2DF61-DE93-4AF9-A7A6-79B03299A0AA}) (Version: 1.0.13.0 - Xamarin) Hidden
      XAMPP (HKLM-x32\...\xampp) (Version: 5.6.31-0 - Bitnami)

    5. #5
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      ==================== Custom CLSID (Whitelisted): ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
      CustomCLSID: HKU\S-1-5-21-3426458791-215168084-3688035202-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2014\es-ES\acadficn.dll (Autodesk, Inc.)
      ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-20] (AVAST Software)
      ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
      ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov)
      ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2013-02-08] (Autodesk)
      ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2011-09-05] (Adobe Systems Inc.)
      ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-06-18] ()
      ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-20] (AVAST Software)
      ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2016-03-08] (Piriform Ltd)
      ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] ()
      ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2007-09-20] ()
      ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-20] (AVAST Software)
      ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
      ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov)
      ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
      ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] ()
      ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2007-09-20] ()
      ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov)
      ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2011-09-05] (Adobe Systems Inc.)
      ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-20] (AVAST Software)
      ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2016-03-08] (Piriform Ltd)
      ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
      ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
      ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] ()
      ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2007-09-20] ()

      ==================== Scheduled Tasks (Whitelisted) =============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {44424EF7-D35D-4DCB-B336-69F4316D5BA3} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2016-01-11] (@ByELDI)
      Task: {68873BFD-D426-44CB-A0ED-4F3421861370} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
      Task: {74BF899F-D788-4B2D-8E20-0C1471A26F53} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
      Task: {89B3588A-CC1A-4AA1-82D7-E71195BBD122} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-08] (Google Inc.)
      Task: {8CFC3126-EE85-47BA-89E9-73694975762A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-20] (AVAST Software)
      Task: {8F9A515F-0327-4845-92B9-9769A85DD32F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-08] (Google Inc.)
      Task: {A114305E-39BD-427E-ADA6-EFDC6A2F5347} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
      Task: {A5CB8E50-7B1C-4D6E-95F7-DD519812D22B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
      Task: {B52FA0B6-0EA5-45A5-A1BB-A95307FDAD45} - System32\Tasks\Microsoft Office 15 Sync Maintenance for JOFRET-PC-JOFRET JOFRET-PC => C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
      Task: {D1765F01-F893-44E5-A3A8-2B480443DA0C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-11-08] (Piriform Ltd)
      Task: {D87AC952-7FE4-429C-A450-852F2B68127F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated)
      Task: {EB2C6765-4F89-4AB2-A99B-0B67F1A8903C} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-11-08] (Piriform Ltd)

      (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


      ==================== Shortcuts & WMI ========================

      (The entries could be listed to be restored or removed.)


      ==================== Loaded Modules (Whitelisted) ==============

      2017-12-04 18:12 - 2017-11-01 08:55 - 002299344 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
      2017-12-04 18:12 - 2017-11-01 08:54 - 002358736 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
      2017-03-08 19:28 - 2006-12-11 02:14 - 000043008 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
      2017-06-18 16:44 - 2017-06-18 16:44 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
      2017-11-08 16:35 - 2017-11-08 16:35 - 000098688 _____ () C:\Program Files\CCleaner\lang\lang-1034.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000067408 _____ () C:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll
      2017-11-16 16:51 - 2017-11-10 04:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll
      2017-11-16 16:51 - 2017-11-10 04:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000237808 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000151104 _____ () C:\Program Files\AVAST Software\Avast\network_notifications.dll
      2017-12-04 13:41 - 2017-12-04 13:41 - 005892848 _____ () C:\Program Files\AVAST Software\Avast\defs\17120402\algo.dll
      2017-11-20 10:55 - 2017-11-20 10:55 - 000710056 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
      2017-07-11 07:56 - 2017-07-11 07:56 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
      2011-09-05 12:06 - 2011-09-05 12:06 - 000019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Locale\es_ES\acrotray.esp
      2017-07-19 00:58 - 2017-07-19 00:58 - 001472512 _____ () C:\Users\JOFRET\AppData\Roaming\Notepad++\plugins\AutoCodepage.dll
      2017-08-28 19:43 - 2017-08-28 19:43 - 000021680 _____ () C:\Program Files (x86)\Notepad++\plugins\NppExport.dll
      2016-09-29 13:05 - 2016-09-29 13:05 - 000988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll
      2016-09-29 13:04 - 2016-09-29 13:04 - 000170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll
      2016-09-29 13:04 - 2016-09-29 13:04 - 000136192 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxmlsec-mscrypto.dll
      2016-09-29 13:04 - 2016-09-29 13:04 - 000303616 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxmlsec.dll
      2012-03-30 22:28 - 2012-03-30 22:28 - 000841872 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\Workspace.dll
      2012-03-30 22:27 - 2012-03-30 22:27 - 000103056 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\giflib.dll
      2012-03-30 22:27 - 2012-03-30 22:27 - 000337040 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\jslib.dll
      2012-03-30 22:27 - 2012-03-30 22:27 - 000116880 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\libpng.dll
      2012-03-30 22:28 - 2012-03-30 22:28 - 000065168 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\zlib.dll
      2012-03-30 22:28 - 2012-03-30 22:28 - 000100496 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\python.dll
      2012-03-30 22:26 - 2012-03-30 22:26 - 000142480 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\CoreTypes.dll
      2012-03-30 22:27 - 2012-03-30 22:27 - 000085648 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\NetIO.dll
      2012-03-31 00:31 - 2012-03-31 00:31 - 003348112 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\Spanish\Resources\Fireworks Resources.dll
      2012-03-30 22:29 - 2012-03-30 22:29 - 000101520 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\JSExtensions\AIRext.dll
      2012-03-30 22:29 - 2012-03-30 22:29 - 004765840 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\Plug-Ins\authplay.dll
      2012-03-30 20:19 - 2012-03-30 20:19 - 000039600 _____ () C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\QuickTimeGlue.dll
      2012-03-09 16:26 - 2012-03-09 16:26 - 000100352 _____ () C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\zlib1.dll

      ==================== Alternate Data Streams (Whitelisted) =========

      (If an entry is included in the fixlist, only the ADS will be removed.)

      AlternateDataStreams: C:\Users\JOFRET\AppData\Local\Temp:NqfucPiBDAVj4UiTUERun [2284]

      ==================== Safe Mode (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

      ==================== Association (Whitelisted) ===============

      (If an entry is included in the fixlist, the registry item will be restored to default or removed.)

      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

      ==================== Internet Explorer trusted/restricted ===============

      (If an entry is included in the fixlist, it will be removed from the registry.)

      IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
      IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com
      IE trusted site: HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\localhost -> localhost

      ==================== Hosts content: ===============================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2009-07-13 21:34 - 2009-06-10 16:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


      ==================== Other Areas ============================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\JOFRET\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
      DNS Servers: 200.48.225.130 - 200.48.225.146
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
      Windows Firewall is enabled.

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      MSCONFIG\startupreg: Autodesk Sync => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
      MSCONFIG\startupreg: BTMTrayAgent => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
      MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
      MSCONFIG\startupreg: RtsCM => RTSCM64.EXE
      MSCONFIG\startupreg: SysTrayApp => C:\Program Files\IDT\WDM\sttray64.exe

      ==================== FirewallRules (Whitelisted) ===============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
      FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
      FirewallRules: [{06AB7979-E851-4DEB-A9AF-CF334C6D2F9B}] => (Allow) LPort=50248
      FirewallRules: [{9FF78FA0-571C-4B6A-86F8-50B7D1F16DAC}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{072643C7-C31C-4649-B310-549EE4044E1C}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{AFF64E0B-E572-46D6-8230-EA2C7B7B08A3}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{2F5B9F89-75A5-46DE-943A-6AB4E6FA8B91}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{803C0780-98E1-4CB9-8AE0-92F77F5F1688}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{1B69DBD8-E0D0-4CF3-A87E-4CE6D58B7512}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{777E36AD-BE4F-454D-A3F2-F8425E0BA175}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
      FirewallRules: [{BE40F2FA-0599-49CF-8656-4231DD8CB7E4}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
      FirewallRules: [{60C1DE71-48F2-4B54-8645-2002BA7435EC}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
      FirewallRules: [{C570ECE8-E6D6-4AA6-80C0-D6E2DBC82473}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
      FirewallRules: [{E4E24E40-62CB-418C-B468-C57CB82122B4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      FirewallRules: [{4AAEE1FC-029B-4DC8-9DA4-4D82AEDE674F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      FirewallRules: [{D01FF41F-624C-49B8-8CA7-0DA6CA529239}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      FirewallRules: [{15A1E75F-73A1-43A4-9D29-79D36050ADE7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      FirewallRules: [{2B0AA607-AC95-4F32-8F74-9C6686084309}] => (Allow) C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe
      FirewallRules: [{A9D8446E-2E58-43CF-AB0B-A5456889BABD}] => (Allow) C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe
      FirewallRules: [{99975EEC-4DB3-4A93-A872-BA265949F956}] => (Allow) C:\Program Files\Microsoft MPI\Bin\mpiexec.exe
      FirewallRules: [{07642348-AA0E-47E7-AC36-D5391BE3142D}] => (Allow) C:\Program Files\Microsoft MPI\Bin\mpiexec.exe
      FirewallRules: [{FA3AFBA2-FB98-40CF-B8A2-84C6C98D0273}] => (Allow) C:\Program Files\Microsoft MPI\Bin\smpd.exe
      FirewallRules: [{A1647916-1066-419A-833F-12A07EBED5E3}] => (Allow) C:\Program Files\Microsoft MPI\Bin\smpd.exe
      FirewallRules: [{4365347C-A1FF-4D87-8B7C-8144B9FD2A04}] => (Allow) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
      FirewallRules: [TCP Query User{62FA38EF-8C87-4935-A980-71B8FC33E248}C:\program files\java\jdk1.8.0_131\bin\jmc.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\jmc.exe
      FirewallRules: [UDP Query User{48F499E7-E76B-43B6-83E9-3E2EEF81F93C}C:\program files\java\jdk1.8.0_131\bin\jmc.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\jmc.exe
      FirewallRules: [TCP Query User{32B4E074-4600-4675-B14C-A68061522482}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe
      FirewallRules: [UDP Query User{1D80B7F9-2221-4C5C-9423-E23E67ABCC7A}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe
      FirewallRules: [TCP Query User{510F3D71-82CD-4C28-A492-348AC9C6659F}C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe] => (Allow) C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe
      FirewallRules: [UDP Query User{C9FD4D0B-2CEB-425B-BAB1-7DBAF9A909DF}C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe] => (Allow) C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe
      FirewallRules: [{6914BD15-8660-4B08-97CB-E12CD5E913F1}] => (Allow) LPort=12292
      FirewallRules: [TCP Query User{0C5E32EC-D772-4352-8D82-C4647E05E0E5}C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe] => (Allow) C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe
      FirewallRules: [UDP Query User{18BCD310-CA58-48D3-9F82-5A84C5D5752E}C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe] => (Allow) C:\users\jofret\appdata\roaming\utorrent\updates\3.5.0_43916.exe
      FirewallRules: [TCP Query User{6D0022B4-B7C6-49FF-84F3-243B18880ACE}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Block) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
      FirewallRules: [UDP Query User{71F42700-937E-4FE2-8F02-B39B9A39AB5B}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Block) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
      FirewallRules: [{1E0774C3-3261-451B-A750-0B0D5A17FD22}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{6AD33A3A-6289-4BFC-9E4A-D0BBA38088DC}] => (Allow) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [TCP Query User{766EBF37-4D23-4ADC-86AB-2EC9F99EF450}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
      FirewallRules: [UDP Query User{BF1282B6-97EB-4567-928F-E30DCC494F99}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
      FirewallRules: [{347D9FE4-97DB-4B8C-A9D6-F64B31B9E72D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{04D080AA-6CC8-43B5-B1A2-AF918E8337E6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{30157B2B-764D-495A-871E-B26E56DAA4A5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{C356CA40-084A-479E-9A39-93892A544B41}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{3944B636-A266-4F99-9890-997EB391CDF0}] => (Allow) LPort=8317
      FirewallRules: [TCP Query User{00093784-DE80-4361-8844-1F7F644C8477}D:\node.exe] => (Allow) D:\node.exe
      FirewallRules: [UDP Query User{1C0350D9-1D1C-4042-AEBA-5E18E66A42D0}D:\node.exe] => (Allow) D:\node.exe
      FirewallRules: [{96528BBF-5D42-4154-94E0-A067F5061017}] => (Allow) LPort=1689
      FirewallRules: [TCP Query User{D34A636C-4D81-4AEA-82CA-A72CA95211C7}D:\node.exe] => (Block) D:\node.exe
      FirewallRules: [UDP Query User{8AB52309-BD5E-427A-B78F-5A94889AE54E}D:\node.exe] => (Block) D:\node.exe
      FirewallRules: [{9B947A26-2A8D-443E-9BF1-6D7CA70E9E20}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
      FirewallRules: [{7F7B7E1C-C888-4186-86B4-C193943F4719}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
      FirewallRules: [{3CEF93EB-F25F-4A65-A743-671707ACA008}] => (Allow) LPort=7935
      FirewallRules: [TCP Query User{EE670D53-3E8D-4E70-B444-3C7B47705105}C:\program files\java\jdk1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\java.exe
      FirewallRules: [UDP Query User{85692351-D3F8-479E-B61B-167B7105556D}C:\program files\java\jdk1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\java.exe
      FirewallRules: [TCP Query User{84A50617-7348-4E1F-8AF5-126555745674}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
      FirewallRules: [UDP Query User{7D4BC632-05DB-44AB-8D2F-258C566E89F0}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
      FirewallRules: [TCP Query User{B3D172E7-10C0-487E-8F37-C29E5F23373C}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
      FirewallRules: [UDP Query User{E48B0ADD-4FB2-416D-95AF-471C71A286D1}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
      FirewallRules: [TCP Query User{6C2E5D87-E6E0-4133-8875-5816D181DBBC}C:\xampp\filezillaftp\filezillaserver.exe] => (Allow) C:\xampp\filezillaftp\filezillaserver.exe
      FirewallRules: [UDP Query User{D23C1591-D4AC-480C-829F-31D03245EFC5}C:\xampp\filezillaftp\filezillaserver.exe] => (Allow) C:\xampp\filezillaftp\filezillaserver.exe
      FirewallRules: [TCP Query User{A031BC9B-850A-42BE-9D67-DC53758B3E57}C:\xampp\mercurymail\mercury.exe] => (Allow) C:\xampp\mercurymail\mercury.exe
      FirewallRules: [UDP Query User{D685E113-67B0-456E-99DD-898E9798249F}C:\xampp\mercurymail\mercury.exe] => (Allow) C:\xampp\mercurymail\mercury.exe
      FirewallRules: [TCP Query User{BEFE7CC8-9CFC-40CC-A420-3EF99E1BEDE6}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
      FirewallRules: [UDP Query User{6431E556-3A70-49EF-992F-41F71259F4D1}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
      FirewallRules: [{D355BBE5-DF3F-4EF5-BDC6-61B013EA1BE3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      FirewallRules: [{68DBFBE5-7F6F-4F93-B2C0-6DF774A61A31}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      FirewallRules: [{D8DF636A-D129-4EB6-A4A9-60FE48307CB5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      FirewallRules: [{C92DF138-8CF1-4DFF-939E-963B89D38884}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      FirewallRules: [{DE7F1B57-883D-44D5-833E-AB958A78E7D1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      FirewallRules: [{8D82F305-9F91-4525-B8E5-31E9124DA67D}] => (Allow) LPort=1688
      FirewallRules: [{8E8C0338-7CB8-4B9C-9C15-ED742475F77A}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
      FirewallRules: [{2E79E943-3A6E-4D58-823E-5C464390A62F}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe

      ==================== Restore Points =========================

      04-11-2017 16:04:14 Installed Pandora Recovery 2.0.0.300
      04-11-2017 17:51:43 Removed Pandora Recovery 2.0.0.300
      11-11-2017 20:27:40 Punto de control programado
      19-11-2017 12:02:53 Punto de control programado
      28-11-2017 22:51:04 Punto de control programado
      04-12-2017 18:01:50 JRT Pre-Junkware Removal

      ==================== Faulty Device Manager Devices =============

      Name: Dispositivo PCI
      Description: Dispositivo PCI
      Class Guid:
      Manufacturer:
      Service:
      Problem: : The drivers for this device are not installed. (Code 28)
      Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


      ==================== Event log errors: =========================

      Application errors:
      ==================
      Error: (12/05/2017 08:00:46 AM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
      Description: Error al instalar la prueba de compra. 0xC004F050
      Pkey parcial=WW8YG
      ACID=?
      Error detallado[?]

      Error: (12/05/2017 07:50:56 AM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
      Description: Error al instalar la prueba de compra. 0xC004F050
      Pkey parcial=WW8YG
      ACID=?
      Error detallado[?]

      Error: (12/05/2017 07:50:34 AM) (Source: WinMgmt) (EventID: 10) (User: )
      Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

      Error: (12/05/2017 07:29:09 AM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
      Description: Error al instalar la prueba de compra. 0xC004F050
      Pkey parcial=WW8YG
      ACID=?
      Error detallado[?]

      Error: (12/05/2017 07:26:49 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: m->NextScheduledSPRetry 9860979

      Error: (12/05/2017 07:26:49 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: m->NextScheduledEvent 9860979

      Error: (12/05/2017 07:26:48 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: Continuously busy for more than a second

      Error: (12/05/2017 04:42:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: m->NextScheduledSPRetry 15725

      Error: (12/05/2017 04:42:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: m->NextScheduledEvent 15725

      Error: (12/05/2017 04:42:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
      Description: Task Scheduling Error: Continuously busy for more than a second


      System errors:
      =============
      Error: (12/05/2017 10:35:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
      Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Servicio Informe de errores de Windows.

      Error: (12/05/2017 08:04:45 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
      Description: Se recibió la siguiente alerta irrecuperable: 40.

      Error: (12/05/2017 08:04:45 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
      Description: Se recibió la siguiente alerta irrecuperable: 70.

      Error: (12/05/2017 07:26:48 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
      Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio Wlansvc.

      Error: (12/04/2017 07:30:28 PM) (Source: DCOM) (EventID: 10010) (User: )
      Description: El servidor {995C996E-D918-4A8C-A302-45719A6F4EA7} no se registró con DCOM dentro del tiempo de espera requerido.

      Error: (12/04/2017 05:53:21 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
      Description: Se recibió la siguiente alerta irrecuperable: 70.

      Error: (12/04/2017 05:53:21 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
      Description: Se recibió la siguiente alerta irrecuperable: 70.

      Error: (12/04/2017 05:53:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio SQL Server (FACTURACION) se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/04/2017 05:53:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
      Description: El servicio Protección de software terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio.

      Error: (12/04/2017 05:53:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
      Description: El servicio Servicio de uso compartido de red del Reproductor de Windows Media terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 30000 milisegundos: Reiniciar el servicio.


      ==================== Memory info ===========================

      Processor: AMD A6-4400M APU with Radeon(tm) HD Graphics
      Percentage of memory in use: 50%
      Total physical RAM: 5608.37 MB
      Available physical RAM: 2787.75 MB
      Total Virtual: 14606.55 MB
      Available Virtual: 11551.22 MB

      ==================== Drives ================================

      Drive c: () (Fixed) (Total:195.21 GB) (Free:66.16 GB) NTFS
      Drive d: () (Fixed) (Total:400.86 GB) (Free:330.29 GB) NTFS
      Drive e: (DVD3) (CDROM) (Total:2.91 GB) (Free:0 GB) UDF
      Drive f: (Elements) (Fixed) (Total:931.48 GB) (Free:607.35 GB) NTFS
      Drive h: () (Removable) (Total:14.59 GB) (Free:9.89 GB) FAT32

      ==================== MBR & Partition Table ==================

      ========================================================
      Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 3C533ACC)
      Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
      Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS)
      Partition 3: (Not Active) - (Size=400.9 GB) - (Type=07 NTFS)

      ========================================================
      Disk: 1 (Size: 14.6 GB) (Disk ID: 00000000)

      Partition: GPT.

      ========================================================
      Disk: 2 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 91E082BD)
      Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

      ==================== End of Addition.txt ============================

    6. #6
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-11-2017
      Ran by JOFRET (administrator) on JOFRET-PC (05-12-2017 10:37:06)
      Running from D:\Downloads
      Loaded Profiles: JOFRET (Available Profiles: JOFRET)
      Platform: Windows 7 Professional Service Pack 1 (X64) Language: Español (España, internacional)
      Internet Explorer Version 11 (Default browser: Chrome)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: ***********************************************************************************************************

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (AMD) C:\Windows\System32\atiesrxx.exe
      (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
      (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
      (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
      (Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
      (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
      (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
      (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.FACTURACION\MSSQL\Binn\sqlservr.exe
      (@ByELDI) C:\Program Files\KMSpico\Service_KMS.exe
      (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
      (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
      (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
      (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
      (AMD) C:\Windows\System32\atieclxx.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
      (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
      (BitTorrent Inc.) C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe
      (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
      (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
      (BitTorrent Inc.) C:\Users\JOFRET\AppData\Roaming\uTorrent\updates\3.5.0_44294\utorrentie.exe
      (BitTorrent Inc.) C:\Users\JOFRET\AppData\Roaming\uTorrent\updates\3.5.0_44294\utorrentie.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (FileZilla Project) C:\Program Files\FileZilla FTP Client\filezilla.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Don HO [email protected]) C:\Program Files (x86)\Notepad++\notepad++.exe
      (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\simpress.exe
      (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
      (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin
      (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\Fireworks.exe
      (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
      (Microsoft Corporation) C:\Windows\System32\rundll32.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

      ==================== Registry (Whitelisted) ===========================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-11-20] (AVAST Software)
      HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [] => [X]
      HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2011-09-05] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2904984 2011-09-05] (Adobe Systems Inc.)
      HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10024624 2017-11-08] (Piriform Ltd)
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [uTorrent] => C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe [1981624 2017-11-28] (BitTorrent Inc.)
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [AdobeBridge] => [X]
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Policies\Explorer: []
      HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
      GroupPolicy: Restriction - Chrome <==== ATTENTION
      CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      Tcpip\Parameters: [DhcpNameServer] 200.48.225.130 200.48.225.146
      Tcpip\..\Interfaces\{64557468-FC4A-456E-A9E3-EE4733F19358}: [DhcpNameServer] 200.48.225.146 200.48.225.130
      Tcpip\..\Interfaces\{BBC39C12-76CF-4470-884E-00222B588C77}: [DhcpNameServer] 200.48.225.130 200.48.225.146

      Internet Explorer:
      ==================
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://espanol.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10341__170317__yaie
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/es-pe/?ocid=iehp
      BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
      BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
      BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05] (Adobe Systems Incorporated)
      BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
      BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
      BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
      BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
      BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
      Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)

      FireFox:
      ========
      FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
      FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2017-10-03] [Lagacy] [not signed]
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
      FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll [2013-12-05] (Adobe Systems, Inc.)
      FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
      FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-05] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-05] (Google Inc.)
      FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2011-09-05] (Adobe Systems Inc.)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.)

      Chrome:
      =======
      CHR Profile: C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default [2017-12-05]
      CHR Extension: (Presentaciones) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
      CHR Extension: (Documentos) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
      CHR Extension: (Google Drive) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-03-08]
      CHR Extension: (YouTube) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-08]
      CHR Extension: (Adobe Acrobat) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-20]
      CHR Extension: (Hojas*de*cálculo) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
      CHR Extension: (Documentos de Google sin conexión) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-08]
      CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2017-12-04]
      CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-24]
      CHR Extension: (Gmail) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-03-08]
      CHR Extension: (Chrome Media Router) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-19]
      CHR Extension: (Llamadas de Skype) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\poghlonenmjdkfghdpfomojhhfggildk [2017-06-07]
      CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [nagnmfhgkjkplbhplkbicmpkfopmnefp] - hxxps://clients2.google.com/service/update2/crx

      ==================== Services (Whitelisted) ====================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928 2017-11-20] (AVAST Software)
      R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
      R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-11-20] (AVAST Software)
      S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2017-07-02] (Microsoft Corporation)
      S2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [125168 2014-12-03] (Intel Corporation)
      R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21312 2017-03-30] (Microsoft Corporation)
      R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
      S3 MsMpiLaunchSvc; C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe [27760 2016-06-13] () [File not signed]
      R2 MSSQL$FACTURACION; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.FACTURACION\MSSQL\Binn\sqlservr.exe [43129288 2012-06-29] (Microsoft Corporation)
      R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-11] (@ByELDI) [File not signed]
      S4 SQLAgent$FACTURACION; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.FACTURACION\MSSQL\Binn\SQLAGENT.EXE [379848 2012-06-29] (Microsoft Corporation)
      R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2017-03-08] (IDT, Inc.) [File not signed]
      S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
      R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [252008 2016-02-11] (Synaptics Incorporated)
      S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [185344 2017-02-13] (Microsoft Corporation) [File not signed]
      R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10803952 2017-11-09] (TeamViewer GmbH)
      S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [128232 2017-02-08] (Microsoft Corporation)
      S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)

      ===================== Drivers (Whitelisted) ======================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [183584 2017-11-20] (AVAST Software)
      R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [321032 2017-11-20] (AVAST Software s.r.o.)
      R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [198968 2017-11-20] (AVAST Software s.r.o.)
      R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343288 2017-11-20] (AVAST Software s.r.o.)
      R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57728 2017-11-20] (AVAST Software s.r.o.)
      S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [47008 2017-11-20] (AVAST Software)
      R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [148288 2017-11-20] (AVAST Software)
      R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [110376 2017-11-20] (AVAST Software)
      R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [84416 2017-11-20] (AVAST Software)
      R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1026232 2017-11-20] (AVAST Software)
      R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [455376 2017-11-20] (AVAST Software)
      R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [203976 2017-11-20] (AVAST Software)
      R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [364464 2017-11-20] (AVAST Software)
      R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [141624 2014-10-28] (Motorola Solutions, Inc.)
      R3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [1448248 2014-11-26] (Motorola Solutions, Inc.)
      R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77432 2017-11-01] ()
      R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [193464 2017-12-04] (Malwarebytes)
      R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-12-05] (Malwarebytes)
      R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [46008 2017-12-05] (Malwarebytes)
      R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2017-12-04] (Malwarebytes)
      R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-12-05] (Malwarebytes)
      R3 NETwNs64; C:\Windows\System32\DRIVERS\NETwsw01.sys [11534096 2017-03-08] (Intel Corporation)
      S3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [329184 2017-03-08] (Realtek Semiconductor Corp.)
      S3 cpuz140; \??\C:\Users\JOFRET\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
      S3 rtsuvc; system32\DRIVERS\rtsuvc.sys [X]

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-12-05 10:36 - 2017-12-05 10:37 - 000000000 ____D C:\FRST
      2017-12-05 08:31 - 2017-12-05 08:31 - 000000000 ____D C:\Program Files (x86)\GUM86AD.tmp
      2017-12-05 08:04 - 2017-12-05 08:04 - 000003872 _____ C:\Windows\System32\Tasks\CCleaner Update
      2017-12-05 07:50 - 2017-12-05 07:50 - 000000000 ____D C:\ProgramData\SWCUTemp
      2017-12-04 18:12 - 2017-12-05 10:36 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
      2017-12-04 18:12 - 2017-12-05 07:51 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
      2017-12-04 18:12 - 2017-12-05 07:51 - 000046008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
      2017-12-04 18:12 - 2017-12-04 18:12 - 000253880 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
      2017-12-04 18:12 - 2017-12-04 18:12 - 000193464 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
      2017-12-04 18:12 - 2017-12-04 18:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
      2017-12-04 18:12 - 2017-12-04 18:12 - 000000000 ____D C:\ProgramData\Malwarebytes
      2017-12-04 18:12 - 2017-12-04 18:12 - 000000000 ____D C:\Program Files\Malwarebytes
      2017-12-04 18:12 - 2017-11-01 08:54 - 000077432 _____ C:\Windows\system32\Drivers\mbae64.sys
      2017-11-28 18:44 - 2017-12-05 08:38 - 000000000 ____D C:\Users\JOFRET\AppData\LocalLow\uTorrent
      2017-11-20 10:56 - 2017-11-20 10:55 - 000365168 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
      2017-11-20 10:56 - 2017-11-20 10:55 - 000183584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
      2017-11-05 14:08 - 2017-11-05 14:08 - 000000000 ____D C:\Users\JOFRET\Nueva carpeta (2)
      2017-11-05 11:36 - 2017-11-05 11:36 - 000000000 ____D C:\Users\JOFRET\AppData\Roaming\PandoraRecovery
      2017-11-05 11:35 - 2017-11-05 18:12 - 000000000 ____D C:\Program Files (x86)\Pandora Recovery
      2017-11-05 11:35 - 2017-11-05 11:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pandora Recovery
      2017-11-05 10:46 - 2017-11-05 10:46 - 000001726 __RSH C:\ProgramData\ntuser.pol
      2017-11-05 10:38 - 2017-11-05 10:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power Data Recovery
      2017-11-05 10:38 - 2017-11-05 10:38 - 000000000 ____D C:\Program Files (x86)\PowerDataRecovery

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-12-05 10:35 - 2017-05-02 14:33 - 000000000 ____D C:\Users\JOFRET\AppData\Roaming\uTorrent
      2017-12-05 08:58 - 2017-03-10 17:41 - 000005052 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for JOFRET-PC-JOFRET JOFRET-PC
      2017-12-05 08:56 - 2017-03-17 13:10 - 000000000 ____D C:\Users\JOFRET\AppData\Roaming\FileZilla
      2017-12-05 08:38 - 2017-06-15 23:33 - 000000000 ___SD C:\Users\JOFRET\AppData\LocalLow\Temp
      2017-12-05 08:31 - 2017-03-08 21:42 - 000003468 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
      2017-12-05 08:31 - 2017-03-08 21:42 - 000003340 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
      2017-12-05 08:31 - 2017-03-08 21:42 - 000000000 ____D C:\Users\JOFRET\AppData\Local\Google
      2017-12-05 08:06 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\inf
      2017-12-05 08:05 - 2009-07-13 23:45 - 000031280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2017-12-05 08:05 - 2009-07-13 23:45 - 000031280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2017-12-05 08:04 - 2017-03-08 21:41 - 000000000 ____D C:\Program Files\CCleaner
      2017-12-05 07:48 - 2009-07-14 00:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2017-12-05 07:46 - 2017-03-08 23:17 - 000065536 _____ C:\Windows\system32\spu_storage.bin
      2017-12-05 07:29 - 2017-03-08 21:20 - 000003986 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{68B5855C-DB6D-4D41-A69A-EA1037BDD0F9}
      2017-12-04 20:40 - 2017-03-08 23:28 - 000004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
      2017-12-04 17:53 - 2017-08-01 19:54 - 000000000 ____D C:\AdwCleaner
      2017-11-30 11:47 - 2017-03-08 21:27 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
      2017-11-27 11:27 - 2017-03-17 13:10 - 000000000 ____D C:\Users\JOFRET\AppData\Local\FileZilla
      2017-11-23 10:27 - 2017-03-08 21:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer
      2017-11-20 10:56 - 2017-03-08 23:28 - 000455376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 001026232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000455384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys.151119339048804
      2017-11-20 10:55 - 2017-03-08 23:28 - 000364464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000343288 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000321032 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000203976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000198968 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000148288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000110376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000084416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000057728 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
      2017-11-20 10:55 - 2017-03-08 23:28 - 000047008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
      2017-11-16 20:30 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\NDF
      2017-11-16 16:57 - 2017-03-08 21:28 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2017-11-16 16:51 - 2017-03-08 21:49 - 000002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2017-11-14 09:27 - 2017-03-08 21:38 - 000000971 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
      2017-11-13 14:17 - 2010-11-21 02:09 - 000900822 _____ C:\Windows\system32\perfh00A.dat
      2017-11-13 14:17 - 2010-11-21 02:09 - 000221080 _____ C:\Windows\system32\perfc00A.dat
      2017-11-13 14:17 - 2009-07-14 00:13 - 002091472 _____ C:\Windows\system32\PerfStringBackup.INI
      2017-11-10 13:45 - 2017-06-02 20:00 - 000000000 ____D C:\Windows\Minidump
      2017-11-06 00:15 - 2009-07-14 00:08 - 000032636 _____ C:\Windows\Tasks\SCHEDLGU.TXT
      2017-11-05 14:08 - 2017-03-08 19:11 - 000000000 ____D C:\Users\JOFRET
      2017-11-05 10:59 - 2017-03-20 18:27 - 000000000 ____D C:\Users\JOFRET\AppData\Local\CrashDumps
      2017-11-05 10:46 - 2009-07-13 22:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
      2017-11-05 10:46 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
      2017-11-05 10:08 - 2017-07-26 19:32 - 000000000 ____D C:\Program Files\Recuva

      ==================== Files in the root of some directories =======

      2017-09-25 23:38 - 2017-09-25 23:38 - 000000737 _____ () C:\Users\JOFRET\AppData\Local\recently-used.xbel

      ==================== Bamital & volsnap ======================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

      LastRegBack: 2017-11-29 06:44

      ==================== End of FRST.txt ============================

    7. #7
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      Aun sigo sin poder editar la configuración de los motores de búsqueda de mi navegador(chrome) y sigue como predeterminado chromesearch

    8. #8
      Moderadora Gral.
      Avatar de @Daniela
      Registrado
      abr 2011
      Ubicación
      España
      Mensajes
      24.177

      Re: problemas con mi pc

      Hola

      No descargaste y ejecutaste Frst como te indiqué, muevelo al escritorio y del disco principal, tiene que estar allí para realizar los siguientes pasos si no no funcionará.

      Sigue estos pasos, MUY Importante ~ Realiza una copia de seguridad del registro :

      • Para hacerlo descarga >> DelFix en tu escritorio.
        • Doble clic para ejecutarlo.(Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
        • Marca unicamente la casilla "Create registry backup".
      • Pulsar en Run.

        Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.


      A continuación inicia tu equipo desde el >> Modo Seguro de Windows con función de red.

      Si tu SO es Windows 8/8.1/10 usa el 2º MÉTODO: de esta Faq de Windows 8 (aplicable a Windows 10) >> ¿Cómo iniciar Windows 8/8.1 en Modo Seguro?, para trabajar desde ese modo de windows.


      Con los demás programas cerrados ve a >> Inicio >> Ejecutar >> y escribe notepad.exe.

      Ahora copia y pega estos archivos dentro del Notepad: (Se excluye la palabra código)

      Código:
      Start
      CreateRestorePoint:
      CloseProcesses:
      
      HKLM-x32\...\Run: [] => [X]
      HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [uTorrent] => C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe [1981624 2017-11-28] (BitTorrent Inc.)
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [AdobeBridge] => [X]
      GroupPolicy: Restriction - Chrome <==== ATTENTION
      CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://espanol.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10341__170317__yaie
      FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2017-10-03] [Lagacy] [not signed]
      CHR Extension: (Presentaciones) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
      CHR Extension: (Documentos) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
      CHR Extension: (Documentos de Google sin conexión) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-08]
      CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2017-12-04]
      CHR Extension: (Chrome Media Router) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-19]
      CHR Extension: (Llamadas de Skype) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\poghlonenmjdkfghdpfomojhhfggildk [2017-06-07]
      CHR HKLM-x32\...\Chrome\Extension: [nagnmfhgkjkplbhplkbicmpkfopmnefp] - hxxps://clients2.google.com/service/update2/crx
      S3 cpuz140; \??\C:\Users\JOFRET\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
      S3 rtsuvc; system32\DRIVERS\rtsuvc.sys [X]
      AlternateDataStreams: C:\Users\JOFRET\AppData\Local\Temp:NqfucPiBDAVj4UiTUERun [2284] 
      
      CMD: ipconfig /flushdns
      CMD: ipconfig /renew
      CMD: bitsadmin /reset /allusers
      RemoveProxy:
      EmptyTemp:
      Hosts:
      end
      • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

      Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

      ATENCION!!!! El siguiente Script de reparación fue hecho específicamente por un miembro del staff para este usuario, si tiene un problema similar por favor abra su propio tema para recibir ayuda personalizada. Usar Scripts de otros usuarios puede causar daños a su equipo

      • Ejecutas Frst.exe.
      • Presionas el botón Fix y aguardas a que termine.
      • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
      • Lo pegas en tu próxima respuesta.


      Pon el reporte y comenta como sigue el problema.

      Un saludo
      ✿◕‿◕✿ La impaciencia no es buena compañía ✿◕‿◕✿

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      Fix result of Farbar Recovery Scan Tool (x64) Version: 08-12-2017
      Ran by JOFRET (08-12-2017 18:24:48) Run:1
      Running from D:\Desktop
      Loaded Profiles: JOFRET (Available Profiles: JOFRET)
      Boot Mode: Safe Mode (with Networking)
      ==============================================

      fixlist content:
      *****************
      Start
      CreateRestorePoint:
      CloseProcesses:

      HKLM-x32\...\Run: [] => [X]
      HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [uTorrent] => C:\Users\JOFRET\AppData\Roaming\uTorrent\uTorrent.exe [1981624 2017-11-28] (BitTorrent Inc.)
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\...\Run: [AdobeBridge] => [X]
      GroupPolicy: Restriction - Chrome <==== ATTENTION
      CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://espanol.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10341__170317__yaie
      FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2017-10-03] [Lagacy] [not signed]
      CHR Extension: (Presentaciones) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
      CHR Extension: (Documentos) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
      CHR Extension: (Documentos de Google sin conexi�n) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-08]
      CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2017-12-04]
      CHR Extension: (Chrome Media Router) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-19]
      CHR Extension: (Llamadas de Skype) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\poghlonenmjdkfghdpfomojhhfggildk [2017-06-07]
      CHR HKLM-x32\...\Chrome\Extension: [nagnmfhgkjkplbhplkbicmpkfopmnefp] - hxxps://clients2.google.com/service/update2/crx
      S3 cpuz140; \??\C:\Users\JOFRET\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
      S3 rtsuvc; system32\DRIVERS\rtsuvc.sys [X]
      AlternateDataStreams: C:\Users\JOFRET\AppData\Local\Temp:NqfucPiBDAVj4UiTUERun [2284]

      CMD: ipconfig /flushdns
      CMD: ipconfig /renew
      CMD: bitsadmin /reset /allusers
      RemoveProxy:
      EmptyTemp:
      Hosts:
      end
      *****************

      Error: Restore point can only be created in normal mode.
      Processes closed successfully.
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
      "HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => removed successfully
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent => value removed successfully
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value removed successfully
      C:\Windows\system32\GroupPolicy\Machine => moved successfully
      C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
      C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully
      "HKLM\SOFTWARE\Policies\Google" => removed successfully
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
      C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn => moved successfully
      CHR Extension: (Presentaciones) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] => Error: No automatic fix found for this entry.
      CHR Extension: (Documentos) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] => Error: No automatic fix found for this entry.
      CHR Extension: (Documentos de Google sin conexi�n) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-08] => Error: No automatic fix found for this entry.
      CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2017-12-04] => Error: No automatic fix found for this entry.
      CHR Extension: (Chrome Media Router) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-19] => Error: No automatic fix found for this entry.
      CHR Extension: (Llamadas de Skype) - C:\Users\JOFRET\AppData\Local\Google\Chrome\User Data\Default\Extensions\poghlonenmjdkfghdpfomojhhfggildk [2017-06-07] => Error: No automatic fix found for this entry.
      "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nagnmfhgkjkplbhplkbicmpkfopmnefp" => removed successfully
      "HKLM\System\CurrentControlSet\Services\cpuz140" => removed successfully
      cpuz140 => service removed successfully
      "HKLM\System\CurrentControlSet\Services\rtsuvc" => removed successfully
      rtsuvc => service removed successfully
      C:\Users\JOFRET\AppData\Local\Temp => ":NqfucPiBDAVj4UiTUERun" ADS removed successfully

      ========= ipconfig /flushdns =========


      Configuraci¢n IP de Windows

      Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

      ========= End of CMD: =========


      ========= ipconfig /renew =========


      Configuraci¢n IP de Windows

      No se puede realizar ninguna operaci¢n en Conexi¢n de *rea local 2 mientras los medios
      est‚n desconectados.
      No se puede realizar ninguna operaci¢n en Conexi¢n de *rea local mientras los medios
      est‚n desconectados.

      Adaptador de Ethernet Conexi¢n de *rea local 2:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :

      Adaptador de LAN inal*mbrica Conexi¢n de red inal*mbrica:

      Sufijo DNS espec¡fico para la conexi¢n. . :
      V¡nculo: direcci¢n IPv6 local. . . : fe80::11dd:93d6:4104:4471%14
      Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.1.8
      M*scara de subred . . . . . . . . . . . . : 255.255.255.0
      Puerta de enlace predeterminada . . . . . : 192.168.1.1

      Adaptador de Ethernet Conexi¢n de *rea local:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . : cpe.tdp.com

      Adaptador de t£nel isatap.{8BFF4DDF-A991-4AF1-961C-C0D167BC5671}:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :

      Adaptador de t£nel isatap.{29EC8F21-BC32-4348-8EE2-2123BC12DD5C}:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :

      Adaptador de t£nel isatap.cpe.tdp.com:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :

      Adaptador de t£nel Teredo Tunneling Pseudo-Interface:

      Estado de los medios. . . . . . . . . . . : medios desconectados
      Sufijo DNS espec¡fico para la conexi¢n. . :

      ========= End of CMD: =========


      ========= bitsadmin /reset /allusers =========


      BITSADMIN version 3.0 [ 7.5.7601 ]
      BITS administration utility.
      (C) Copyright 2000-2006 Microsoft Corp.

      BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
      Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

      Unable to connect to BITS - 0x8007042c
      No se puede iniciar el servicio o grupo de dependencia.



      ========= End of CMD: =========


      ========= RemoveProxy: =========

      HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
      HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
      HKU\S-1-5-21-3426458791-215168084-3688035202-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


      ========= End of RemoveProxy: =========

      C:\Windows\System32\Drivers\etc\hosts => moved successfully
      Hosts restored successfully.

      =========== EmptyTemp: ==========

      BITS transfer queue => 0 B
      DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20671719 B
      Java, Flash, Steam htmlcache => 17571 B
      Windows/system/drivers => 0 B
      Edge => 0 B
      Chrome => 401426421 B
      Firefox => 0 B
      Opera => 0 B

      Temp, IE cache, history, cookies, recent:
      Users => 0 B
      Default => 0 B
      Public => 0 B
      ProgramData => 0 B
      systemprofile => 66356 B
      systemprofile32 => 66088 B
      LocalService => 0 B
      NetworkService => 0 B
      JOFRET => 8725083 B
      Classic .NET AppPool => 0 B
      DefaultAppPool => 0 B

      RecycleBin => 0 B
      EmptyTemp: => 411 MB temporary data Removed.

      ================================


      The system needed a reboot.

      ==== End of Fixlog 18:25:38 ====

    10. #10
      Usuario Avatar de jofret
      Registrado
      oct 2014
      Ubicación
      lima peru
      Mensajes
      72

      Re: problemas con mi pc

      hola desapareció el buscador. Gracias!
      Mi maquina esta bien, espero que no sea necesario mas, en todo caso, estaré atento a tu mensaje.

      Gracias!!

    Página 1 de 2 12 ÚltimoÚltimo