• Registrarse
  • Iniciar sesión


  • Página 1 de 2 12 ÚltimoÚltimo
    Resultados 1 al 10 de 15

    Ayuda RAR.exe

    Estaba navegando por la red descargando anime y al abrir links redirecciona, vamos lo normal. El problema esta que al acabar de descargar el chap de anime me fijo que se habia descargado antes un ...

    1. #1
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Ayuda RAR.exe

      Estaba navegando por la red descargando anime y al abrir links redirecciona, vamos lo normal. El problema esta que al acabar de descargar el chap de anime me fijo que se habia descargado antes un archivo rar.exe con nombre raro que, lo mas raro es que ha desaparecido solo de la carpeta de descargas sin que yo lo haya ejecutado. Tengo el 360 Total Security y no me a avisado de ninguna amenaza. Gracias por vuestra ayuda de antemano! :)

    2. #2
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      18.533

      Re: Ayuda RAR.exe

      Saludos y [email protected]






      Realiza los siguientes pasos, , sin cambiar el orden:

      1) Descarga, actualiza y ejecuta Malwarebytes’ Anti-Malware, revisa en detalle el manual, para que sepas usarlo y configurarlo.

      • Realiza un Análisis Completo, actualizando si te lo pide.
      • Pulsar en “Eliminar Seleccionados” para enviarlo a la cuarentena y Reinicias el sistema.
      • Para acceder posteriormente al informe del análisis :
        - Informes >> Registro de análisis >>Pulsar en >> Exportar >>Copiar al Portapapeles, y lo pegas en tu respuesta



      [B]2)Descarga la aplicación zhpcleaner/ a Tu escritorio, pulsando en el botón Telecharger de la página.

      • Cierra todos los navegadores
      • Doble clic para ejecutarlo y Presiona el Botón Scánner. Espera a que termine.
      • Se va a generar un reporte en el escritorio llamado ZHPcleaner.
      • Presiona el Botón Reparar.
      • Cuando termine, cierra todos los programas y reinicia el ordenador.
      • copias y pegas en Tu próxima respuesta el contenido del reporte que se había generado.


      3) Descarga >> AdwCleaner | InfoSpyware en el escritorio.

      • Desactiva temporalmente el Antivirus >> Cómo deshabilitar temporalmente su Antivirus.
      • Cierra también todos los programas que tengas abiertos.
      • Ejecuta Adwcleaner.exe (Si usas Windows Vista/7 u 8 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • Pulsar en el botón Escanear, y espera a que se realice el proceso, inmediatamente pulsa sobre el botónLimpiar.
      • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistemaAceptas.
      • Guardas el reporte que te aparecerá, para copiarlo y pegarlo en tu próxima respuesta.
      • El informe también se puede encontrar en "C:\AdwCleaner\AdwCleaner[C0].txt"



      4) Descarga CCleaner

      • Instala Ccleaner
      • Abres Ccleaner en la pestaña limpiador dejas como esta configurada predeterminadamente, haces clic en analizar esperas que termine > clic en ejecutar limpiador
      • clic en la pestaña Registro > clic en buscar problemas esperas que termine > clic en Reparar Seleccionadas y haces una copia de seguridad
      • Vuelves a darle clic en buscar problemas hasta que no encuentre ninguno.


      Pega los reportes de Malwarebytes, AdwCleaner y Zhpcleaner y comentas como va el problema.

      Un saludo
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #3
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Aqui el de Malware:

      Malwarebytes
      www.malwarebytes.com

      -Detalles del registro-
      Fecha del análisis: 15/12/17
      Hora del análisis: 14:12
      Archivo de registro: aa3f11c8-e199-11e7-b28a-28c2dd590094.json
      Administrador: Sí

      -Información del software-
      Versión: 3.3.1.2183
      Versión de los componentes: 1.0.262
      Versión del paquete de actualización: 1.0.0
      Licencia: Prueba

      -Información del sistema-
      SO: Windows 8.1
      CPU: x64
      Sistema de archivos: NTFS
      Usuario: REKKA_PC\Alex

      -Resumen del análisis-
      Tipo de análisis: Análisis de amenazas
      Resultado: Completado
      Objetos analizados: 343924
      Amenazas detectadas: 1
      Amenazas en cuarentena: 0
      (No hay elementos maliciosos detectados)
      Tiempo transcurrido: 9 min, 17 seg

      -Opciones de análisis-
      Memoria: Activado
      Inicio: Activado
      Sistema de archivos: Activado
      Archivo: Activado
      Rootkits: Desactivado
      Heurística: Activado
      PUP: Detectar
      PUM: Detectar

      -Detalles del análisis-
      Proceso: 0
      (No hay elementos maliciosos detectados)

      Módulo: 0
      (No hay elementos maliciosos detectados)

      Clave del registro: 0
      (No hay elementos maliciosos detectados)

      Valor del registro: 0
      (No hay elementos maliciosos detectados)

      Datos del registro: 0
      (No hay elementos maliciosos detectados)

      Secuencia de datos: 0
      (No hay elementos maliciosos detectados)

      Carpeta: 0
      (No hay elementos maliciosos detectados)

      Archivo: 1
      PUP.Optional.GameHack, C:\PROGRAM FILES (X86)\CHEAT ENGINE 6.4\STANDALONEPHASE1.DAT, Sin acciones por parte del usuario, [658], [393793],1.0.0

      Sector físico: 0
      (No hay elementos maliciosos detectados)


      (end)

    4. #4
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Aqui el de ZPHCleaner:

      ~ ZHPCleaner v2017.12.15.215 by Nicolas Coolman (2017/12/15)
      ~ Run by Alex (Administrator) (15/12/2017 15:48:33)
      ~ Web: https://www.nicolascoolman.com
      ~ Blog: https://nicolascoolman.eu/
      ~ Facebook : https://www.facebook.com/nicolascoolman1
      ~ State version : Version OK
      ~ Certificate ZHPCleaner: Legal
      ~ Type : Scanner
      ~ Report : C:\Users\Alex\Desktop\ZHPCleaner.txt
      ~ Quarantine : C:\Users\Alex\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
      ~ UAC : Activate
      ~ Boot Mode : Normal (Normal boot)
      Windows 8.1, 64-bit (Build 9600)


      ---\\ Servicios (0)
      ~ No malintencionados o innecesarios artículos encontrados.


      ---\\ Navegadores de Internet (0)
      ~ No malintencionados o innecesarios artículos encontrados.


      ---\\ Archivo hosts (1)
      ~ El archivo hosts es legítimo (21)


      ---\\ Tareas automáticas programadas. (0)
      ~ No malintencionados o innecesarios artículos encontrados.


      ---\\ Explorador ( Archivos, Carpetas ) (32)
      ENCONTRADOS carpeta: C:\Users\Alex\Desktop\Popcorn-Time.lnk [Bad : C:\Users\Alex\AppData\Local\Popcorn-Time\Popcorn-Time.exe](.The NWJS Community.) =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\Desktop\Popcorn-Time.lnk =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\.git.json =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\CHANGELOG.md =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\chromedriver.exe =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\credits.html =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\ffmpeg.dll =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\icudtl.dat =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\LICENSE.txt =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\nacl_irt_x86_32.nexe =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\natives_blob.bin =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\node.dll =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\nwjc.exe =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\nw_100_percent.pak =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\nw_200_percent.pak =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\package.json =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\payload.exe =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\README.md =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\resources.pak =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\snapshot_blob.bin =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\ui_library.dll =>.SUP.PopcornTime
      ENCONTRADOS carpeta: C:\Users\Alex\AppData\Local\Popcorn-Time\Uninstall.exe [Popcorn Time - Popcorn-Time 0.3.10 Installer] =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\data =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\locales =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\node_modules =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\pnacl =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\src =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\TorrentCollection =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time\User Data =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Popcorn-Time =>.SUP.PopcornTime
      ENCONTRADOS archivo: C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>PUP.Optional.DomaIQ


      ---\\ Registro ( Claves, Valores, Datos) (1)
      ENCONTRADOS clave: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Popcorn-Time [Popcorn Time] =>.SUP.PopcornTime


      ---\\ Resumen de elementos en su estación de trabajo (2)
      https://nicolascoolman.eu/2017/02/26...s-popcorntime/ =>.SUP.PopcornTime
      https://nicolascoolman.eu/2017/10/04/adware-domaiq/ =>PUP.Optional.DomaIQ


      ---\\ Resultado de la reparación.
      ~ ninguna reparación hecha
      ~ falta este navegador! (Mozilla Firefox)
      ~ falta este navegador! (Opera Software)


      ---\\ Statistiques
      ~ Items escaneado : 66217
      ~ Items encontrado : 33
      ~ artículos cancelados : 0
      ~ Items reparado : 0


      ~ End of search in 00h13mn25s
      ~====================
      ZHPCleaner-[S]-15122017-14_40_25.txt
      ZHPCleaner-[S]-15122017-16_01_58.txt

    5. #5
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Aqui el de AdwCleaner:

      # AdwCleaner 7.0.5.0 - Logfile created on Fri Dec 15 15:16:20 2017
      # Updated on 2017/29/11 by Malwarebytes
      # Running on Windows 8.1 (X64)
      # Mode: clean
      # Support: https://www.malwarebytes.com/support

      ***** [ Services ] *****

      No malicious services deleted.

      ***** [ Folders ] *****

      No malicious folders deleted.

      ***** [ Files ] *****

      No malicious files deleted.

      ***** [ DLL ] *****

      No malicious DLLs cleaned.

      ***** [ WMI ] *****

      No malicious WMI cleaned.

      ***** [ Shortcuts ] *****

      No malicious shortcuts cleaned.

      ***** [ Tasks ] *****

      No malicious tasks deleted.

      ***** [ Registry ] *****

      Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending
      Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced
      Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing


      ***** [ Firefox (and derivatives) ] *****

      No malicious Firefox entries deleted.

      ***** [ Chromium (and derivatives) ] *****

      No malicious Chromium entries deleted.

      *************************

      ::Tracing keys deleted
      ::Winsock settings cleared
      ::Additional Actions: 0



      *************************

      C:/AdwCleaner/AdwCleaner[S0].txt - [1315 B] - [2017/12/15 15:15:31]


      ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########

    6. #6
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      18.533

      Re: Ayuda RAR.exe

      Con Zhpcleaner pulsaste en reparar para eliminar todo?
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #7
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Si, lo unico que encontro fue Popcorn Time que es un programa para ver series VO.

    8. #8
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      18.533

      Re: Ayuda RAR.exe

      Pues para ver si queda algo o hay algo por ahi oculto me pegas esto


      1-Descarga Farbar Recovery Scan Tool By Farbar (Descarga el archivo dependiendo de la arquitectura de tu sistema).>> Como saber si mi sistema es de 32 o de 64 Bits

      • La guardas en el escritorio >> Esto es muy importante..
      • Con todos los programas /ventanas cerrados, doble clic para ejecutar Frst.exe.
      • En la ventana del Disclaimer, presiona Yes.
      • En la nueva ventana que se abre, presiona el botón Scan y espera paciente a que concluya el análisis.

      • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, estos estarán grabados en tu escritorio.

      • Para terminar abres los archivos Frst.txt y Addition.Txt copia y pega todo su contenido en tu próxima respuesta. Utiliza dos mensajes si te dice que es muy largo.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    9. #9
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Aqui los dos de de Frst:

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2017
      Ran by Alex (administrator) on REKKA_PC (18-12-2017 12:26:19)
      Running from C:\Users\Alex\Desktop
      Loaded Profiles: Alex (Available Profiles: Alex)
      Platform: Windows 8.1 (Update) (X64) Language: Español (España, internacional)
      Internet Explorer Version 11 (Default browser: Opera)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: ***********************************************************************************************************

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
      (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
      (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
      (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
      (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
      (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
      (Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
      (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
      (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
      (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
      (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist.exe
      (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
      (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
      (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
      (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
      (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
      (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
      (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
      (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
      () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
      (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
      (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
      (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
      (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
      (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
      (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
      (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
      (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
      (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
      (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
      (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.19.594\AsusWSPanel.exe
      (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.19.594\AsusWSService.exe
      (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe

      ==================== Registry (Whitelisted) ===========================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.2.19.594\ASUSWSLoader.exe [63968 2017-12-06] (ASUS Cloud Corporation)
      HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [345000 2017-12-01] (QIHU 360 SOFTWARE CO. LIMITED)
      HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134784 2014-09-28] (Atheros Communications)
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation)
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8202008 2015-04-08] (Piriform Ltd)
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\Run: [Discord] => C:\Users\Alex\AppData\Local\Discord\app-0.0.299\Discord.exe [57954808 2017-12-11] (Discord Inc.)
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\MountPoints2: F - "F:\setup.exe"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\MountPoints2: {552a94da-50db-11e7-82f9-28c2dd590094} - "F:\HiSuiteDownLoader.exe"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\MountPoints2: {a54ef6d2-3c4b-11e6-826c-28c2dd590094} - "F:\Startme.exe"
      BootExecute: autocheck autochk /p \??\F:autocheck autochk *

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      Tcpip\Parameters: [DhcpNameServer] 212.231.6.7 8.8.8.8 192.168.1.1
      Tcpip\..\Interfaces\{2E60374F-CF68-4D38-B0C3-85988C0CA325}: [DhcpNameServer] 192.168.44.1
      Tcpip\..\Interfaces\{56710C8C-C0C6-45FA-B11F-861627F8452C}: [DhcpNameServer] 212.166.64.1 8.8.8.8 192.168.1.1
      Tcpip\..\Interfaces\{5B5878D8-C980-4E3D-9DDC-106EB18BDDC1}: [DhcpNameServer] 212.231.6.7 8.8.8.8 192.168.1.1

      Internet Explorer:
      ==================
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
      BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2017-12-01] (Qihu 360 Software Co., Ltd.)
      BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-27] (Oracle Corporation)
      BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2017-09-15] (Qihu 360 Software Co., Ltd.)
      BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-27] (Oracle Corporation)

      FireFox:
      ========
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
      FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-02-25] (Intel Corporation)
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-02-25] (Intel Corporation)
      FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-27] (Oracle Corporation)
      FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-27] (Oracle Corporation)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
      FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()

      Chrome:
      =======
      CHR HomePage: Default -> hxxps://www.google.es/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8
      CHR StartupUrls: Default -> "hxxps://www.google.es/"
      CHR DefaultSearchURL: Default -> hxxp://www.forospyware.com/t534479.html
      CHR Profile: C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default [2017-12-18]
      CHR Extension: (Presentaciones) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
      CHR Extension: (Documentos) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
      CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-13]
      CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-13]
      CHR Extension: (Hojas de cálculo) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
      CHR Extension: (Documentos de Google sin conexión) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-13]
      CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-12-12]
      CHR Extension: (Protección de Internet 360) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2017-10-13]
      CHR Extension: (Material Dark - MKBHD) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiplegjeipnjdpgkeccfccnahofbckad [2017-10-13]
      CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-13]
      CHR Extension: (Enhanced Steam) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2017-12-12]
      CHR Extension: (Gmail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-13]
      CHR Extension: (Chrome Media Router) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-12]

      Opera:
      =======
      OPR StartupUrls: "hxxp://google.com/"
      StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe

      ==================== Services (Whitelisted) ====================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [322176 2014-09-28] (Windows (R) Win 7 DDK provider) [File not signed]
      S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [395024 2016-12-17] (EasyAntiCheat Ltd)
      R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1037568 2014-09-18] (Intel Corporation)
      R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
      S3 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344976 2014-12-15] (Intel Corporation)
      S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2014-10-03] (Intel(R) Corporation)
      R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [156960 2015-02-25] (Intel Corporation)
      R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-04-20] (NVIDIA Corporation)
      R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [929888 2017-12-01] (QIHU 360 SOFTWARE CO. LIMITED)
      S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
      S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
      R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-09-28] (Atheros) [File not signed]

      ===================== Drivers (Whitelisted) ======================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R3 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [183416 2017-12-01] (360.cn)
      R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [86248 2017-12-01] (360.cn)
      R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [86248 2017-12-01] (360.cn)
      R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [330472 2017-12-01] (360.cn)
      R1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [49088 2017-09-15] (360.cn)
      R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [433784 2017-12-01] (360.cn)
      S3 360netmon; C:\Windows\System32\DRIVERS\360netmon.sys [90112 2017-12-01] (360.cn)
      R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4221952 2014-09-09] (Qualcomm Atheros Communications, Inc.)
      R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [73512 2015-03-18] (ASUS Corporation)
      R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [201336 2017-12-01] (360.cn)
      R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-09-28] (Qualcomm Atheros)
      S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
      R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [38720 2014-09-18] (Intel Corporation)
      R3 dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [38208 2014-09-18] (Intel Corporation)
      R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [216360 2014-09-18] (Intel Corporation)
      S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2017-06-29] (LogMeIn Inc.)
      R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [79016 2014-08-26] (Intel Corporation)
      R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-02-25] (Intel Corporation)
      S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
      R1 VBoxUSBMon; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (BigNox Corporation)
      S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
      S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
      S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB)
      S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
      S3 xb1usb; C:\Windows\System32\drivers\xb1usb.sys [42760 2016-02-23] (Microsoft Corporation)
      R1 XQHDrv; C:\Windows\system32\DRIVERS\XQHDrv.sys [253384 2015-09-16] (BigNox Corporation)
      R1 XQHDrv; C:\Windows\SysWOW64\DRIVERS\XQHDrv.sys [253384 2015-09-16] (BigNox Corporation)
      U0 msahci; system32\drivers\msahci.sys [X]
      S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X]
      S4 nvvhci; \SystemRoot\System32\drivers\nvvhci.sys [X]

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-12-18 12:26 - 2017-12-18 12:27 - 000015454 _____ C:\Users\Alex\Desktop\FRST.txt
      2017-12-18 12:26 - 2017-12-18 12:26 - 000000000 ____D C:\FRST
      2017-12-18 12:23 - 2017-12-18 12:23 - 002392064 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe
      2017-12-18 00:40 - 2017-12-18 00:40 - 000020970 _____ C:\Users\Alex\Downloads\DDI_12.zip
      2017-12-15 18:06 - 2017-12-15 18:16 - 000003830 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1513357578
      2017-12-15 18:06 - 2017-12-15 18:06 - 000001107 _____ C:\Users\Public\Desktop\Navegador Opera.lnk
      2017-12-15 18:06 - 2017-12-15 18:06 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk
      2017-12-15 18:06 - 2017-12-15 18:06 - 000000000 ____D C:\Users\Alex\AppData\Roaming\Opera Software
      2017-12-15 18:06 - 2017-12-15 18:06 - 000000000 ____D C:\Users\Alex\AppData\Local\Opera Software
      2017-12-15 18:03 - 2017-12-15 18:06 - 000000000 ____D C:\Program Files\Opera
      2017-12-15 16:11 - 2017-12-15 16:15 - 000000000 ____D C:\AdwCleaner
      2017-12-15 14:27 - 2017-12-15 16:07 - 000000000 ____D C:\Users\Alex\AppData\Roaming\ZHP
      2017-12-15 14:27 - 2017-12-15 14:27 - 000000000 ____D C:\Users\Alex\AppData\Local\ZHP
      2017-12-15 13:51 - 2017-12-15 13:51 - 000401584 _____ C:\Windows\system32\FNTCACHE.DAT
      2017-12-14 15:46 - 2017-12-14 15:46 - 000001724 _____ C:\Users\Alex\Desktop\StardewModdingAPI.lnk
      2017-12-14 15:07 - 2017-11-14 04:57 - 025731072 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2017-12-14 15:07 - 2017-11-14 04:30 - 000577024 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2017-12-14 15:07 - 2017-11-14 04:25 - 005925888 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2017-12-14 15:07 - 2017-11-14 04:20 - 000817152 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2017-12-14 15:07 - 2017-11-14 03:48 - 015267328 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2017-12-14 15:07 - 2017-11-14 03:27 - 001544192 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2017-12-14 15:07 - 2017-11-14 02:37 - 013679616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2017-12-14 15:07 - 2017-11-14 02:10 - 020269056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2017-12-14 15:07 - 2017-11-14 01:32 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2017-12-14 15:07 - 2017-11-07 21:39 - 000662016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2017-12-14 15:07 - 2017-11-07 21:27 - 004509696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2017-12-14 15:07 - 2017-11-07 21:01 - 001313280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2017-12-14 15:07 - 2017-10-14 08:23 - 000963072 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2017-12-14 15:07 - 2017-10-14 08:17 - 003717632 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
      2017-12-14 15:07 - 2017-10-14 07:19 - 000780800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2017-12-14 15:07 - 2017-10-10 17:39 - 001192960 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
      2017-12-14 15:07 - 2017-10-10 15:58 - 000949760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
      2017-12-14 15:06 - 2017-11-17 16:37 - 004168704 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2017-12-14 15:06 - 2017-11-14 03:55 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
      2017-12-14 15:06 - 2017-11-14 03:48 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2017-12-14 15:06 - 2017-11-14 03:39 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2017-12-14 15:06 - 2017-11-14 03:16 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2017-12-14 15:06 - 2017-11-08 16:55 - 000032256 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
      2017-12-14 15:06 - 2017-11-07 22:15 - 000323584 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
      2017-12-14 15:06 - 2017-11-07 21:49 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
      2017-12-14 15:06 - 2017-11-07 21:46 - 000285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
      2017-12-14 15:06 - 2017-11-07 21:29 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
      2017-12-14 15:06 - 2017-11-07 21:27 - 000151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
      2017-12-14 15:06 - 2017-11-07 21:22 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
      2017-12-14 15:06 - 2017-11-07 21:18 - 000694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2017-12-14 15:06 - 2017-11-07 21:08 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
      2017-12-14 15:06 - 2017-11-07 21:04 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2017-12-14 15:06 - 2017-11-07 21:02 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
      2017-12-14 15:06 - 2017-11-07 20:58 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2017-12-14 15:06 - 2017-10-18 18:14 - 000136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
      2017-12-14 15:06 - 2017-10-14 08:55 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
      2017-12-14 15:06 - 2017-10-14 08:29 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2017-12-14 15:06 - 2017-10-14 07:41 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
      2017-12-14 15:06 - 2017-10-10 17:29 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
      2017-12-14 15:06 - 2017-10-10 16:42 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
      2017-12-14 11:24 - 2017-12-14 11:24 - 000000000 ____D C:\Users\Alex\AppData\Roaming\awsRun
      2017-12-06 19:11 - 2017-12-01 10:28 - 000090112 _____ (360.cn) C:\Windows\system32\Drivers\360netmon.sys
      2017-12-03 10:59 - 2017-12-03 11:00 - 000000000 ____D C:\Users\Alex\Desktop\Help
      2017-12-01 23:50 - 2017-12-14 11:19 - 000000000 ____D C:\Users\Alex\AppData\LocalLow\uTorrent
      2017-11-29 00:20 - 2017-12-07 20:09 - 000000000 ____D C:\Users\Alex\Documents\GTA San Andreas User Files
      2017-11-29 00:20 - 2017-11-29 00:20 - 000001054 _____ C:\Users\Alex\Desktop\GTA San Andreas.lnk
      2017-11-28 00:10 - 2017-11-28 00:10 - 000001074 _____ C:\Users\Alex\Desktop\Tasty Blue.lnk
      2017-11-27 23:36 - 2017-11-27 23:36 - 000000000 ____D C:\Users\Alex\AppData\Roaming\dingogames
      2017-11-27 18:28 - 2017-11-27 18:28 - 000000000 ____D C:\Users\Alex\AppData\Local\Hawaii_Beach
      2017-11-27 18:18 - 2017-11-27 18:18 - 000000000 ____D C:\Program Files (x86)\VulkanRT
      2017-11-27 18:18 - 2017-04-20 01:44 - 006437312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 002479736 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 001762936 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 000548472 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 000392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 000082040 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
      2017-11-27 18:18 - 2017-04-20 01:44 - 000069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
      2017-11-27 18:18 - 2017-04-19 23:29 - 007915387 _____ C:\Windows\system32\nvcoproc.bin
      2017-11-27 18:18 - 2017-03-10 22:17 - 000536864 _____ C:\Windows\system32\vulkan-1.dll
      2017-11-27 18:18 - 2017-03-10 22:17 - 000525600 _____ C:\Windows\SysWOW64\vulkan-1.dll
      2017-11-27 18:18 - 2017-03-10 22:17 - 000254240 _____ C:\Windows\system32\vulkaninfo.exe
      2017-11-27 18:18 - 2017-03-10 22:17 - 000233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
      2017-11-27 18:04 - 2017-11-27 18:04 - 000097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
      2017-11-27 17:22 - 2017-11-28 01:00 - 000000000 ____D C:\Users\Alex\AppData\Roaming\WhatsApp
      2017-11-27 17:22 - 2017-11-27 17:22 - 000002233 _____ C:\Users\Alex\Desktop\WhatsApp.lnk
      2017-11-27 17:22 - 2017-11-27 17:22 - 000000000 ____D C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
      2017-11-27 17:21 - 2017-11-27 17:22 - 000000000 ____D C:\Users\Alex\AppData\Local\WhatsApp
      2017-11-25 22:27 - 2017-11-25 22:27 - 000000000 ____D C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tasty Blue

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-12-18 12:27 - 2017-05-07 19:17 - 000000000 ____D C:\Users\Alex\AppData\LocalLow\360WD
      2017-12-18 12:21 - 2016-05-19 13:41 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3645429558-562997743-3741875431-1001
      2017-12-18 12:21 - 2016-05-19 13:41 - 000000000 ____D C:\Users\Alex\AppData\Roaming\WebStorage
      2017-12-18 12:19 - 2016-05-20 08:42 - 000003974 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{4E457B1B-1C46-4BB8-8E8E-7F093DD03B1D}
      2017-12-18 12:16 - 2016-05-19 18:41 - 000000000 ____D C:\Program Files (x86)\Steam
      2017-12-18 12:16 - 2016-05-19 13:38 - 000000000 ____D C:\Users\Alex\OneDrive
      2017-12-18 12:16 - 2016-05-19 13:36 - 000000165 _____ C:\Users\Alex\AppData\Roaming\sp_data.sys
      2017-12-18 12:16 - 2016-05-19 13:35 - 000000000 ____D C:\ProgramData\ASUS Smart Gesture
      2017-12-18 12:15 - 2015-06-14 11:17 - 000000000 ____D C:\ProgramData\NVIDIA
      2017-12-18 12:15 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2017-12-18 00:56 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI
      2017-12-17 22:26 - 2017-04-19 16:40 - 000002205 _____ C:\Users\Alex\Desktop\Discord.lnk
      2017-12-17 22:26 - 2016-05-31 19:56 - 000000000 ____D C:\Users\Alex\AppData\Roaming\discord
      2017-12-17 22:25 - 2017-04-19 16:40 - 000000000 ____D C:\Users\Alex\AppData\Local\Discord
      2017-12-16 20:34 - 2016-05-20 19:16 - 001145344 ___SH C:\Users\Alex\Downloads\Thumbs.db
      2017-12-15 18:16 - 2017-04-29 13:13 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
      2017-12-15 18:16 - 2017-04-29 13:13 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
      2017-12-15 18:16 - 2017-04-29 13:13 - 000003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
      2017-12-15 18:05 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\system32\NDF
      2017-12-15 16:21 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf
      2017-12-15 15:15 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\rescache
      2017-12-15 14:48 - 2016-05-23 21:43 - 000000000 ____D C:\Windows\system32\MRT
      2017-12-15 14:43 - 2017-10-12 21:25 - 133326408 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
      2017-12-15 14:43 - 2016-05-23 21:43 - 133326408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2017-12-15 14:32 - 2016-05-19 11:39 - 000000000 ____D C:\Users\Alex\Downloads\Juegos y tools
      2017-12-14 22:19 - 2016-06-23 14:32 - 000000000 ____D C:\Users\Alex\AppData\Roaming\MPC-HC
      2017-12-14 22:17 - 2016-10-31 12:53 - 000000503 _____ C:\Windows\system32\Drivers\etc\hosts.ics
      2017-12-14 22:06 - 2017-10-12 21:45 - 000000000 ____D C:\Users\Alex\AppData\Roaming\uTorrent
      2017-12-14 22:06 - 2017-09-20 22:44 - 000003168 _____ C:\Windows\System32\Tasks\{072971D5-6585-4751-8776-D4CF06B16489}
      2017-12-14 22:06 - 2015-06-14 11:21 - 000003148 _____ C:\Windows\System32\Tasks\RTKCPL
      2017-12-14 21:49 - 2017-02-27 10:58 - 000000000 __SHD C:\$360Section
      2017-12-14 21:49 - 2016-05-19 14:11 - 000000000 ____D C:\ProgramData\360Quarant
      2017-12-14 15:32 - 2013-08-22 16:20 - 000000000 ____D C:\Windows\CbsTemp
      2017-12-14 15:08 - 2014-10-29 01:59 - 000806698 _____ C:\Windows\system32\perfh00A.dat
      2017-12-14 15:08 - 2014-10-29 01:59 - 000164584 _____ C:\Windows\system32\perfc00A.dat
      2017-12-14 15:08 - 2014-03-18 16:26 - 001822472 _____ C:\Windows\system32\PerfStringBackup.INI
      2017-12-14 11:24 - 2017-05-10 18:04 - 000000000 __SHD C:\aws
      2017-12-12 22:10 - 2017-06-15 14:42 - 000000000 ____D C:\Users\Alex\AppData\Roaming\StardewValley
      2017-12-12 18:01 - 2017-10-13 00:24 - 000002215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2017-12-12 18:01 - 2017-10-13 00:24 - 000002203 _____ C:\Users\Public\Desktop\Google Chrome.lnk
      2017-12-11 16:38 - 2016-06-01 08:00 - 000102912 ___SH C:\Users\Alex\Desktop\Thumbs.db
      2017-12-06 23:44 - 2017-05-07 19:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
      2017-12-06 19:16 - 2017-05-07 19:17 - 000000000 ____D C:\Users\Alex\AppData\Roaming\360TotalSecurity
      2017-12-04 17:23 - 2016-11-18 17:04 - 000835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2017-12-04 17:23 - 2016-11-18 17:04 - 000177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
      2017-12-03 11:05 - 2016-06-07 18:13 - 000000000 ____D C:\Users\Alex\AppData\Local\CrashDumps
      2017-12-01 10:28 - 2017-05-07 19:17 - 000433784 _____ (360.cn) C:\Windows\system32\Drivers\360fsflt.sys
      2017-12-01 10:28 - 2017-05-07 19:16 - 000330472 _____ (360.cn) C:\Windows\system32\Drivers\360Box64.sys
      2017-12-01 10:28 - 2017-05-07 19:16 - 000201336 _____ (360.cn) C:\Windows\system32\Drivers\BAPIDRV64.SYS
      2017-12-01 10:28 - 2017-05-07 19:16 - 000183416 _____ (360.cn) C:\Windows\system32\Drivers\360AntiHacker64.sys
      2017-12-01 10:28 - 2017-05-07 19:16 - 000086248 _____ (360.cn) C:\Windows\system32\Drivers\360AvFlt.sys
      2017-12-01 10:28 - 2016-05-19 14:10 - 000086248 _____ (360.cn) C:\Windows\SysWOW64\Drivers\360AvFlt.sys
      2017-11-30 18:25 - 2013-08-22 16:36 - 000000000 ___HD C:\Program Files\WindowsApps
      2017-11-30 18:25 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\AppReadiness
      2017-11-28 23:03 - 2017-06-06 20:08 - 000000000 ____D C:\Users\Alex\AppData\Roaming\.minecraft
      2017-11-28 22:48 - 2016-10-20 18:41 - 000000000 ____D C:\Program Files (x86)\Minecraft
      2017-11-28 00:07 - 2017-05-07 19:17 - 000000000 ____D C:\Users\Alex\AppData\Roaming\360safe
      2017-11-27 18:32 - 2017-04-29 10:36 - 000000000 ____D C:\Users\Alex\AppData\Local\NVIDIA Corporation
      2017-11-27 18:32 - 2016-05-19 13:36 - 000000000 ____D C:\Users\Alex\AppData\Local\NVIDIA
      2017-11-27 18:32 - 2015-06-14 11:17 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
      2017-11-27 18:32 - 2015-06-14 11:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
      2017-11-27 18:32 - 2015-06-14 11:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
      2017-11-27 18:18 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\Help
      2017-11-27 18:05 - 2016-10-26 18:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
      2017-11-27 18:03 - 2016-10-20 19:32 - 000000000 ____D C:\Program Files (x86)\Java
      2017-11-27 17:28 - 2016-10-25 15:55 - 000000000 ____D C:\Users\Alex\AppData\Local\LogMeIn Hamachi
      2017-11-27 17:22 - 2016-05-31 19:55 - 000000000 ____D C:\Users\Alex\AppData\Local\SquirrelTemp
      2017-11-26 21:43 - 2017-02-09 19:08 - 000000000 ____D C:\Users\Alex\AppData\Local\ElevatedDiagnostics
      2017-11-26 21:36 - 2016-05-19 11:09 - 000000000 ____D C:\Users\Alex\AppData\Local\GeometryDash

      ==================== Files in the root of some directories =======

      2016-05-19 13:36 - 2017-12-18 12:16 - 000000165 _____ () C:\Users\Alex\AppData\Roaming\sp_data.sys
      2017-02-08 14:46 - 2017-02-08 14:46 - 000005120 _____ () C:\Users\Alex\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      2016-06-07 12:55 - 2016-06-07 12:55 - 000011048 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel
      2017-08-30 11:46 - 2017-09-21 13:05 - 000007603 _____ () C:\Users\Alex\AppData\Local\Resmon.ResmonCfg

      ==================== Bamital & volsnap ======================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

      LastRegBack: 2017-12-15 14:41

      ==================== End of FRST.txt ============================

    10. #10
      Usuario Avatar de AlexRRR
      Registrado
      dic 2017
      Ubicación
      España
      Mensajes
      9

      Re: Ayuda RAR.exe

      Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2017
      Ran by Alex (18-12-2017 12:28:31)
      Running from C:\Users\Alex\Desktop
      Windows 8.1 (Update) (X64) (2016-05-19 12:35:21)
      Boot Mode: Normal
      ==========================================================


      ==================== Accounts: =============================

      Administrador (S-1-5-21-3645429558-562997743-3741875431-500 - Administrator - Disabled)
      Alex (S-1-5-21-3645429558-562997743-3741875431-1001 - Administrator - Enabled) => C:\Users\Alex
      HomeGroupUser$ (S-1-5-21-3645429558-562997743-3741875431-1003 - Limited - Enabled)
      Invitado (S-1-5-21-3645429558-562997743-3741875431-501 - Limited - Disabled)

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AV: 360 Total Security (Enabled - Up to date) {0371CA44-3F80-A1D3-BECE-910620B58D50}
      AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AS: 360 Total Security (Enabled - Up to date) {B8102BA0-19BA-AE5D-847E-AA745B32C7ED}

      ==================== Installed Programs ======================

      (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      µTorrent (HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)
      360 Total Security (HKLM-x32\...\360TotalSecurity) (Version: 9.6.0.1040 - 360 Security Center)
      Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated)
      ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.3.4 - ASUS)
      ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 2.1.0 - ASUS)
      ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 3.0.14 - ASUS)
      ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 3.05.0001 - ASUS)
      ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 4.0.2 - ASUS)
      ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0037 - ASUS)
      AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.0.57 - ICEpower a/s)
      CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform)
      CDisplay 1.8 (HKLM-x32\...\CDisplay_is1) (Version: - dvd8n)
      Cuphead (HKLM-x32\...\Cuphead_is1) (Version: - )
      Device Setup (HKLM-x32\...\{1F07F2C7-596F-4F34-B805-2C61A3E50E5A}) (Version: 1.0.18 - ASUSTek Computer Inc.)
      Discord (HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\Discord) (Version: 0.0.299 - Discord Inc.)
      Foxit PhantomPDF (HKLM-x32\...\{FC76E6BB-7CBB-4CD6-8178-3BCADC0526C3}) (Version: 6.0.62.801 - Foxit Corporation)
      Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.84 - Google Inc.)
      Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
      Heart and Slash (HKLM-x32\...\Heart and Slash_is1) (Version: - )
      Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1017 - Intel Corporation)
      Intel(R) Chipset Device Software (HKLM-x32\...\{f5d71765-7cd1-4e68-998f-5b379e725da3}) (Version: 10.0.22 - Intel(R) Corporation) Hidden
      Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
      Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.0.10100.71 - Intel Corporation)
      Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.39.1003 - Intel Corporation)
      Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4062 - Intel Corporation)
      Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
      League of Legends (HKLM-x32\...\{62292933-30AF-4962-B6BB-59191D386D94}) (Version: 4.2.1 - Riot Games) Hidden
      League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
      LibreOffice 5.0.3.2 (HKLM-x32\...\{D61E7AA0-0380-49B9-8DDD-7685E2306176}) (Version: 5.0.3.2 - The Document Foundation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
      Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
      Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
      Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
      Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
      Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
      Microsoft Visual Studio Code (HKLM-x32\...\{F8A2A208-72B3-4D61-95FC-8A65D340689B}_is1) (Version: 1.4.0 - Microsoft Corporation)
      Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
      Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
      MPC-HC 1.7.11 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.11 - MPC-HC Team)
      Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team)
      NVIDIA Controlador de gráficos 381.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 381.89 - NVIDIA Corporation)
      NVIDIA Software del sistema PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
      NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.8.0 - NVIDIA Corporation) Hidden
      OpenAL (HKLM-x32\...\OpenAL) (Version: - )
      Opera Stable 49.0.2725.47 (HKLM-x32\...\Opera 49.0.2725.47) (Version: 49.0.2725.47 - Opera Software)
      osu! (HKLM-x32\...\{8c07dd8c-a41d-4724-90c7-bb18751fe16c}) (Version: latest - ppy Pty Ltd)
      Panel de control de NVIDIA 381.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 381.89 - NVIDIA Corporation) Hidden
      PowerISO (HKLM-x32\...\PowerISO) (Version: 5.7 - Power Software Ltd)
      Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.332 - Qualcomm Atheros Communications)
      Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
      Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39048 - Realtek Semiconductor Corp.)
      Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.33.529.2014 - Realtek)
      Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7417 - Realtek Semiconductor Corp.)
      Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
      Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
      UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
      UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
      Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden
      Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
      WebStorage (HKLM-x32\...\WebStorage) (Version: 2.2.19.594 - ASUS Cloud Corporation)
      WhatsApp (HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\WhatsApp) (Version: 0.2.6968 - WhatsApp)
      WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus) (Version: 4.0.11.14 - WildTangent)
      Windows Driver Package - ASUS (ATP) Mouse (01/13/2015 1.0.0.233) (HKLM\...\8335D73177E6D80E7ADC00FED2275758BD28AEFB) (Version: 01/13/2015 1.0.0.233 - ASUS)
      WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 3.0.1 - ASUS)
      WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

      ==================== Custom CLSID (Whitelisted): ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3645429558-562997743-3741875431-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ !AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.2.19.594\ASUSWSShellExt64.dll [2017-04-21] (ASUS Cloud Corporation.)
      ShellIconOverlayIdentifiers: [ !AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.2.19.594\ASUSWSShellExt64.dll [2017-04-21] (ASUS Cloud Corporation.)
      ShellIconOverlayIdentifiers: [ !AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.2.19.594\ASUSWSShellExt64.dll [2017-04-21] (ASUS Cloud Corporation.)
      ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
      ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
      ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
      ContextMenuHandlers1: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
      ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2016-05-17] ()
      ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll [2014-09-28] (Qualcomm®Atheros®)
      ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2013-12-18] (Foxit Corporation)
      ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2013-07-22] (Power Software Ltd)
      ContextMenuHandlers1: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2017-12-01] ()
      ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal)
      ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-24] (Alexander Roshal)
      ContextMenuHandlers3: [BackupContextMenuExtension] -> {b1b96b20-da1d-4a3c-92c1-7229b32f2326} => C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
      ContextMenuHandlers4: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
      ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2013-07-22] (Power Software Ltd)
      ContextMenuHandlers4: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2017-12-01] ()
      ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
      ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2014-12-15] (Intel Corporation)
      ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-04-20] (NVIDIA Corporation)
      ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2013-07-22] (Power Software Ltd)
      ContextMenuHandlers6: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2017-12-01] ()
      ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal)
      ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-24] (Alexander Roshal)

      ==================== Scheduled Tasks (Whitelisted) =============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {00C86056-D22F-4FE8-97AC-1F87986F0776} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2014-09-02] (ASUSTek Computer Inc.)
      Task: {1F2A8C95-9245-49EC-8668-C849D08B5B87} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-09-11] (ASUSTek Computer Inc.)
      Task: {25FD4DAE-6FBA-4639-82FE-E93793FC9EB7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)
      Task: {2CC037AB-A947-44EE-9456-C9106A0DD631} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\system32\MRT.exe [2017-12-15] (Microsoft Corporation)
      Task: {5C42D6C0-BA51-4AD0-9607-ED6D34824370} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
      Task: {5D3C1B3E-2B78-49B1-8103-60AD41242FD4} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2015-03-18] (AsusTek)
      Task: {648F0340-AEB9-4ED4-B30B-212C0F154558} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2014-06-11] (ASUSTek Computer Inc.)
      Task: {7B0DD512-9EFF-41F5-8999-EEB2340E7E9A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation)
      Task: {7D4508A0-7794-47E3-A9D7-EC0AFCF9F2F5} - System32\Tasks\Opera scheduled Autoupdate 1513357578 => C:\Program Files\Opera\launcher.exe [2017-11-23] (Opera Software)
      Task: {A5B1DE51-CBBF-4A4F-972E-965A45CA0D27} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation)
      Task: {B030564C-A8E4-49C3-BE8E-EB8E4BC651D4} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-04-26] (NVIDIA Corporation)
      Task: {B7950BD1-8078-4F58-8D9A-41EBAAA9584C} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation)
      Task: {BFCEC97E-775B-47FD-9978-BB04C27A40E1} - System32\Tasks\{072971D5-6585-4751-8776-D4CF06B16489} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxps://www.skype.com/go/downloading?source=lightinstaller&ver=7.40.0.103&LastError=12002
      Task: {CB55687D-BF1C-4ADE-8EDF-72A4017144F4} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2015-02-12] ()
      Task: {D15BD89B-F400-4FCB-9AE0-317787B8AB3B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation)
      Task: {D1CF155C-B5D2-4681-9663-A06FB295544A} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2015-03-23] (ASUSTeK Computer Inc.)
      Task: {D946712F-4211-4723-8527-1DFDCBB7A771} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-12-26] (Realtek Semiconductor)
      Task: {DC1E1FF2-350D-4B9F-951E-37E87B7F24E6} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2014-11-05] (ASUS)
      Task: {DCEC4A6E-9724-47F9-9042-6208AAC9CCE4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-08] (Piriform Ltd)
      Task: {E5181277-E2EE-4D9F-985B-466323A81DF2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-13] (Google Inc.)

      (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


      ==================== Shortcuts & WMI ========================

      (The entries could be listed to be restored or removed.)


      ==================== Loaded Modules (Whitelisted) ==============

      2014-09-28 22:22 - 2014-09-28 22:22 - 000011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
      2014-09-28 22:18 - 2014-09-28 22:18 - 000086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
      2014-09-28 22:26 - 2014-09-28 22:26 - 000012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
      2017-05-07 19:16 - 2017-12-01 10:28 - 000099240 _____ () C:\Program Files (x86)\360\Total Security\deepscan\qutmload.dll
      2014-11-05 12:44 - 2014-11-05 12:44 - 000037424 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll
      2014-11-05 12:44 - 2014-11-05 12:44 - 000124928 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll
      2016-05-19 18:46 - 2017-11-29 06:09 - 000781088 _____ () C:\Program Files (x86)\Steam\SDL2.dll
      2016-05-19 18:46 - 2016-09-01 02:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
      2016-05-19 18:46 - 2017-12-15 20:59 - 002558752 _____ () C:\Program Files (x86)\Steam\video.dll
      2016-05-19 18:46 - 2016-09-01 02:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
      2016-05-19 18:46 - 2016-09-01 02:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
      2017-12-14 17:06 - 2017-11-04 02:54 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll
      2017-12-14 17:06 - 2017-11-04 02:54 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll
      2017-12-14 17:06 - 2017-11-04 02:54 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll
      2017-12-14 17:06 - 2017-11-04 02:54 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll
      2017-12-14 17:06 - 2017-11-04 02:54 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll
      2016-05-19 18:46 - 2017-12-15 20:59 - 000904992 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
      2016-05-19 18:46 - 2016-07-04 23:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
      2017-05-07 19:16 - 2017-12-01 10:28 - 000499296 _____ () C:\Program Files (x86)\360\Total Security\safemon\wdui2.dll
      2017-06-11 15:35 - 2017-09-07 03:04 - 000678400 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
      2016-12-16 17:09 - 2017-10-31 05:44 - 071471904 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
      2016-05-19 18:46 - 2015-09-25 00:52 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll

      ==================== Alternate Data Streams (Whitelisted) =========

      (If an entry is included in the fixlist, only the ADS will be removed.)


      ==================== Safe Mode (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

      ==================== Association (Whitelisted) ===============

      (If an entry is included in the fixlist, the registry item will be restored to default or removed.)

      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\Software\Classes\regfile: regedit.exe "%1" <==== ATTENTION

      ==================== Internet Explorer trusted/restricted ===============

      (If an entry is included in the fixlist, it will be removed from the registry.)


      ==================== Hosts content: ===============================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2013-08-22 14:25 - 2013-08-22 14:25 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


      ==================== Other Areas ============================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Alex\Pictures\Sin título.png
      DNS Servers: 212.231.6.7 - 8.8.8.8
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
      Windows Firewall is enabled.

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\StartupApproved\Run: => "Discord"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\StartupApproved\Run: => "Spotify"
      HKU\S-1-5-21-3645429558-562997743-3741875431-1001\...\StartupApproved\Run: => "Spotify Web Helper"

      ==================== FirewallRules (Whitelisted) ===============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [{1AD76975-4FB3-448E-AD3D-9008B72C7551}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
      FirewallRules: [{086CAC28-2518-4443-BA6F-80F99AB8B0A4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
      FirewallRules: [{C08ED0A8-EC1F-46EA-98C4-9AC55E6C8039}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
      FirewallRules: [{8BA0789D-BC59-4210-92E7-3616BF43F18F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe
      FirewallRules: [{99CCA605-8D68-4CB7-81DB-219D94A2F4D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe
      FirewallRules: [{9E75AE16-4B7F-425D-8350-221AD80E2E3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe
      FirewallRules: [{5E824BB1-DE3D-4204-8225-B053AFD614FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe
      FirewallRules: [{99CC7908-C683-4326-A58C-A8AAD3684184}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kung Fury Street Rage\KungFury.exe
      FirewallRules: [{CA80BC82-E5AE-424B-A5AA-07553A0C2F97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kung Fury Street Rage\KungFury.exe
      FirewallRules: [{904FD181-3296-4121-97AC-E44E8F5A95D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BARRIER X\BarrierX.exe
      FirewallRules: [{B612237A-A263-4514-8E67-4BEEA5A10F73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BARRIER X\BarrierX.exe
      FirewallRules: [TCP Query User{BF5B0BD7-265C-46E9-A151-EED07C11F302}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
      FirewallRules: [UDP Query User{6EC1B459-227D-4AD9-870E-4BE89359A9CD}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
      FirewallRules: [{445EBB73-7A22-4625-A9BD-43537A2A04E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe
      FirewallRules: [{6D1B8744-57AD-401E-8939-0CABDE051044}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe
      FirewallRules: [TCP Query User{17222051-2345-44D4-9EA7-F491DDDE1C20}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
      FirewallRules: [UDP Query User{8F2D3E6F-03A2-45B0-83AC-D569150D3CE1}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
      FirewallRules: [{E75B4D65-0063-4353-86E1-91C877A32FFC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
      FirewallRules: [{00DC1286-EBBC-4D06-BCF3-DA07C5F76065}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
      FirewallRules: [{0D2AAFDD-83A7-4A74-AF86-AFF9A464B16D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
      FirewallRules: [{E088B24B-8F06-4F4F-9B5F-2F4A186BBBF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
      FirewallRules: [{B3B6B7B6-03D7-41BD-9DA5-C14B4434A30F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
      FirewallRules: [{8D071D7E-5BAD-4B17-A03A-36B8286D3028}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
      FirewallRules: [{B5501546-3A3E-441B-AA53-A963259B110E}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
      FirewallRules: [{5BA4FAE7-EDBA-414A-9DB2-4A2746840584}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
      FirewallRules: [{CAC1038B-7875-4A74-95A9-90A486D52B40}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
      FirewallRules: [{D6113B78-4FBC-438B-9F6B-2E004E9B2713}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
      FirewallRules: [TCP Query User{49E88433-95B2-4F5B-90B9-AFA0485BB315}C:\users\alex\downloads\juegos y tools\enter the gungeon\etg.exe] => (Block) C:\users\alex\downloads\juegos y tools\enter the gungeon\etg.exe
      FirewallRules: [UDP Query User{49748BDC-8CC0-46A7-9BF2-96CD703DCF9D}C:\users\alex\downloads\juegos y tools\enter the gungeon\etg.exe] => (Block) C:\users\alex\downloads\juegos y tools\enter the gungeon\etg.exe
      FirewallRules: [{A749835F-EA08-431F-896A-2BFAD394FB8E}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{11999C54-C7D5-4484-ACBF-D381100940D6}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{E7298401-4C27-4B5B-97FF-A83D6382C684}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{7DF0B33A-A5C9-4B25-BD50-B709BA36550A}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{5FCEE6EF-A364-4A73-BF35-C28A99DD46AC}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{6F99802D-A733-41D3-869C-79E291929DA0}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{6E93646D-21C2-44E5-A943-7AEBC05511A3}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{4B07E884-C988-4C9D-974B-133779F65461}] => (Allow) C:\Users\Alex\AppData\Roaming\uTorrent\uTorrent.exe
      FirewallRules: [{8C7B798A-B1E0-4660-9D95-EE8E08D8FEA8}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe
      FirewallRules: [{44182CBC-AAF3-463F-B7B4-75F524C87C70}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe
      FirewallRules: [{E69FE37B-672D-489B-9E88-1D05B2AA4C48}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hollow Knight\hollow_knight.exe
      FirewallRules: [{2E1AFA68-6D16-4C3E-8EC5-0DE43D885772}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hollow Knight\hollow_knight.exe
      FirewallRules: [{17223F8D-0239-4402-BDA2-E1537247730B}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
      FirewallRules: [{54B56CF7-215F-4FCB-AD0D-1FCC6090419B}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
      FirewallRules: [{24A15991-B5F8-4348-8B1C-595FB26132BA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      FirewallRules: [{BB6D7EF3-0FBB-4174-9C17-EE19ECB0738F}] => (Allow) C:\Program Files\Opera\49.0.2725.47\opera.exe
      FirewallRules: [{4B626D0B-1CC5-48DE-90EC-4D33B52404F9}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
      FirewallRules: [{F1016B36-10F1-41B7-8289-E8A1BBB5551D}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe

      ==================== Restore Points =========================

      07-12-2017 21:28:34 Punto de control programado
      14-12-2017 15:26:27 Windows Update

      ==================== Faulty Device Manager Devices =============

      Name: Android ADB Interface
      Description: Android ADB Interface
      Class Guid: {3f966bd9-fa04-4ec5-991c-d326973b5128}
      Manufacturer: Google, Inc.
      Service: WinUSB
      Problem: : This device cannot start. (Code10)
      Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
      On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

      Name: Android ADB Interface
      Description: Android ADB Interface
      Class Guid: {3f966bd9-fa04-4ec5-991c-d326973b5128}
      Manufacturer: MediaTek
      Service: WinUSB
      Problem: : This device cannot start. (Code10)
      Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
      On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


      ==================== Event log errors: =========================

      Application errors:
      ==================
      Error: (12/18/2017 12:19:12 AM) (Source: Application Hang) (EventID: 1002) (User: )
      Description: El programa Discord.exe, versión 0.0.43.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.

      Identificador de proceso: 1a1c

      Hora de inicio: 01d3777dab99ff25

      Hora de finalización: 4294967295

      Ruta de acceso de la aplicación: C:\Users\Alex\AppData\Local\Discord\app-0.0.299\Discord.exe

      Identificador de informe: af17b847-e380-11e7-8359-28c2dd590094

      Nombre completo de paquete con errores:

      Identificador de aplicación relativa del paquete con errores:

      Error: (12/18/2017 12:17:09 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: payday2_win32_release.exe, versión: 0.0.0.0, marca de tiempo: 0x5a33d15a
      Nombre del módulo con errores: ucrtbase.DLL, versión: 10.0.10586.1171, marca de tiempo: 0x59ae5046
      Código de excepción: 0xc0000409
      Desplazamiento de errores: 0x000846eb
      Identificador del proceso con errores: 0x15c8
      Hora de inicio de la aplicación con errores: 0x01d3776639de4ab9
      Ruta de acceso de la aplicación con errores: C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
      Ruta de acceso del módulo con errores: C:\Windows\SYSTEM32\ucrtbase.DLL
      Identificador del informe: 67587520-e380-11e7-8359-28c2dd590094
      Nombre completo del paquete con errores:
      Identificador de aplicación relativa del paquete con errores:

      Error: (12/16/2017 07:24:52 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
      Description: Un problema impidió que los datos del Programa para la mejora de la experiencia del usuario se enviaran a Microsoft, (error 80070005).

      Error: (12/15/2017 01:05:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (12/12/2017 05:08:30 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
      Description: Un problema impidió que los datos del Programa para la mejora de la experiencia del usuario se enviaran a Microsoft, (error 80070005).

      Error: (12/12/2017 01:14:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (12/11/2017 01:15:01 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (12/10/2017 12:44:46 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (12/08/2017 12:00:44 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (12/07/2017 12:51:45 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: REKKA_PC)
      Description: No se pudo activar la aplicación microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.


      System errors:
      =============
      Error: (12/18/2017 12:56:35 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
      Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio QHActiveDefense.

      Error: (12/16/2017 06:49:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio Steam Client Service no pudo iniciarse debido al siguiente error:
      El servicio no respondió a tiempo a la solicitud de inicio o de control.

      Error: (12/16/2017 06:49:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
      Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Steam Client Service.

      Error: (12/15/2017 09:38:01 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
      Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio QHActiveDefense.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio AtherosSvc se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio Intel(R) Dynamic Application Loader Host Interface Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio GamesAppIntegrationService se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio ESIF Upper Framework Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
      Description: El servicio ATKGFNEX Service se terminó de manera inesperada. Esto ha sucedido 1 veces.

      Error: (12/15/2017 04:16:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
      Description: El servicio NVIDIA Display Container LS terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 1000 milisegundos: Reiniciar el servicio.


      ==================== Memory info ===========================

      Processor: Intel(R) Core(TM) i3-5005U CPU @ 2.00GHz
      Percentage of memory in use: 37%
      Total physical RAM: 3998.8 MB
      Available physical RAM: 2498.08 MB
      Total Virtual: 5470.8 MB
      Available Virtual: 4014.85 MB

      ==================== Drives ================================

      Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:52.74 GB) NTFS ==>[system with boot components (obtained from drive)]
      Drive d: (Data) (Fixed) (Total:263.35 GB) (Free:70.36 GB) NTFS

      ==================== MBR & Partition Table ==================

      ========================================================
      Disk: 0 (Size: 465.8 GB) (Disk ID: 410F2C58)

      Partition: GPT.

      ==================== End of Addition.txt ============================

    Página 1 de 2 12 ÚltimoÚltimo