cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.8.1.122 Por Nicolas Coolman (2016/08/01)
~ Iniciado por fisioterapia (Administrator) (2016/08/01 12:30:20)
~ Site: https://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Estado de la versión: Version OK
~ Mode: Scanner
~ Reporte: C:\Users\fisioterapia\Desktop\ZHPDiag.txt
~ Reporte: C:\Users\fisioterapia\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Inicio del sistema: Normal (Normal boot)
Windows 8.1 Single Language, 64-bit (Build 9600)

---\\ Navegadores de Internet (2) - 0s
GCIE: Google Chrome v52.0.2743.82
MSIE: Internet Explorer v11.0.9600.16438

---\\ Información de producto de Windows (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Software del sistema de protección (3) - 1s
Avira Launcher v1.1.67.18988
Malwarebytes Anti-Malware versión 2.2.1.1043
Windows Defender (Activate)

---\\ Software de vigilancia (1) - 1s
Adobe Acrobat Reader DC - Español

---\\ Información sobre el sistema (6) - 0s
~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4104.468 MB (46% free)
System Restore: Activé (Enable)
System drive C: has 383 GB () free of 435 GB

---\\ Conexión para el modo del sistema (3) - 0s
~ Computer Name: LENOVO-PC
~ User Name: fisioterapia
~ Logged in as Administrator

---\\ Enumeración de las unidades de disco (2) - 0s
~ Drive C: has 383 GB free of 435 GB (System)
~ Drive D: has 20 GB free of 25 GB

---\\ Estado de la Windows Security Center (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Búsqueda particular de ficheros genéricos (24) - 0s
[MD5.63DC38C3E4564B2405D562855643ABA2] - 22/10/2013 - (.Microsoft Corporation - Explorador de Windows.) -- C:\WINDOWS\Explorer.exe [2328872] =>.Microsoft Windows®
[MD5.6E0BDFBEEED65B017F2E4C2C910B0520] - 22/08/2013 - (.Microsoft Corporation - Proceso host de Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [52736] =>.Microsoft Corporation
[MD5.48CFA7BE561A7BE144C29BB912055016] - 22/08/2013 - (.Microsoft Corporation - Aplicación de inicio de Windows.) -- C:\WINDOWS\System32\Wininit.exe [144384] =>.Microsoft Corporation
[MD5.92E05214CC073A85CEDFF9BD4966F96B] - 26/04/2014 - (.Microsoft Corporation - Extensiones de Internet para Win32.) -- C:\WINDOWS\System32\wininet.dll [2332160] =>.Microsoft Corporation
[MD5.7C94FDA3809015B8F2208D2E1C221F17] - 22/08/2013 - (.Microsoft Corporation - Aplicación de inicio de sesión de Windows.) -- C:\WINDOWS\System32\Winlogon.exe [564736] =>.Microsoft Corporation
[MD5.2F18065618E39AA2E656EE737B71E791] - 22/08/2013 - (.Microsoft Corporation - Biblioteca de licencias de software.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.5A2020DDCCBB0ED08BAC2355A075F303] - 08/10/2013 - (.Microsoft Corporation - DLL de API de cliente DNS.) -- C:\WINDOWS\System32\dnsapi.dll [656384] =>.Microsoft Corporation
[MD5.2B9EED6835D269F35B310DC03D0F5768] - 08/10/2013 - (.Microsoft Corporation - DLL de API de cliente DNS.) -- C:\WINDOWS\Syswow64\dnsapi.dll [492544] =>.Microsoft Corporation
[MD5.239268BAB58EAE9A3FF4E08334C00451] - 22/08/2013 - (.Microsoft Corporation - Controlador de función suplementaria de Wi.) -- C:\WINDOWS\System32\drivers\AFD.sys [567296] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.5DB26D7E0216D0BF364A81D3829AD7B9] - 22/08/2013 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [134656] =>.Microsoft Corporation
[MD5.03909BDBFF0DCACCABF2B2D4ADEE44DC] - 22/08/2013 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [78336] =>.Microsoft Corporation
[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - 22/08/2013 - (.Microsoft Corporation - Controlador de puerto de i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [107520] =>.Microsoft Corporation
[MD5.E23D32BAF152FBE35F18C6A2AB8EF271] - 14/09/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [141824] =>.Microsoft Corporation
[MD5.6129EDB793A4255B1E2FB41773AC9D9A] - 21/09/2013 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [404992] =>.Microsoft Corporation
[MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [282624] =>.Microsoft Corporation
[MD5.725EF69B2DBEB7B33280019A556201BC] - 10/03/2014 - (.Microsoft Corporation - Controlador del sistema de archivos NTFS.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2008408] =>.Microsoft Windows®
[MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Controlador de puerto paralelo.) -- C:\WINDOWS\System32\drivers\Parport.sys [94208] =>.Microsoft Corporation
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 22/08/2013 - (.Microsoft Corporation - Redirector de dispositivos de Microsoft RDP.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation
[MD5.9F9CE33B50611A1C61A46B8911E0B30B] - 22/08/2013 - (.Microsoft Corporation - Controlador de instantánea de volumen.) -- C:\WINDOWS\System32\drivers\volsnap.sys [312160] =>.Microsoft Windows®

---\\ Servicios NT no desactivados (Non Microsoft) (15) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Google Update Servicio (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
O23 - Service: McAfee Service Controller (mfemms) . (.McAfee, Inc. - McAfee Management Service.) - C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe =>.McAfee, Inc.®
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\System32\mfevtps.exe =>.McAfee, Inc.®
O23 - Service: NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe =>.Nitro PDF Software®
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro Software, Inc.®
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink®
O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros

---\\ Servicios no Microsoft (GSR) (SR = correr, SS = parado) (20) - 20s

SR - Auto [25/06/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [06/09/2013] [ 312448] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
SR - Auto [11/07/2016] [ 309384] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
SS - Demand [24/12/2013] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SS - Auto [29/07/2016] [ 153752] Google Update Servicio (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [29/07/2016] [ 153752] Google Update Servicio (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [30/08/2013] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Auto [11/05/2013] [ 733696] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
SS - Demand [11/05/2013] [ 822232] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [04/09/2013] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [04/09/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [04/09/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
SS - Demand [21/09/2015] [ 233680] McAfee Firewall Core Service (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe =>.McAfee, Inc.®
SR - Auto [21/10/2015] [ 378848] McAfee Service Controller (mfemms) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Auto [21/09/2015] [ 256840] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc..) - C:\WINDOWS\system32\mfevtps.exe =>.McAfee, Inc.
SR - Auto [23/07/2013] [ 230408] NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe =>.Nitro PDF Software®
SR - Auto [31/07/2015] [ 71832] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro Software, Inc.®
SR - Auto [24/04/2012] [ 390632] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink®
SR - Auto [06/09/2013] [ 323584] ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros

---\\ Tareas programadas en modo automático (16) - 8s
[MD5.00000000000000000000000000000000] [APT] [Nombre de tarea] (...) -- Tarea que se ejecutar  (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.27067191BF35D03B7F81E4E6E8111BD3] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6851288] (.Activate.) =>.Piriform Ltd®
[MD5.A8FD9222E4D72596BB37DA8BE95C0BA4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc®
[MD5.A8FD9222E4D72596BB37DA8BE95C0BA4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc®
[MD5.A4C7CDD0A5E0A94DE46B0FAB4F387803] [APT] [Synaptics TouchPad Enhancements] (.Synaptics Incorporated.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184] (.Activate.) =>.Synaptics Incorporated®
[MD5.E06E8C006F4603347815CE2DD6F76615] [APT] [UMonitor Task] (.Copyright (C) 2008.) -- C:\Windows\SysWOW64\UMonit64.exe [53248] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [AVAST Software] (...) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1060] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1064] =>.Google Inc®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4476] =>.Adobe Systems, Incorporated®
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2806] =>.Piriform Ltd®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3800] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4036] =>.Google Inc®
O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2990] =>.Synaptics Incorporated®
O39 - APT: UMonitor Task - (.Copyright (C) 2008.) -- C:\WINDOWS\System32\Tasks\UMonitor Task [3016]

---\\ Proceso puesto en marcha (31) - 2s
[MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1368] =>.Adobe Systems, Incorporated®
[MD5.B68BC92DC0F6484E5862BA1B09EE720C] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448] [PID.1384] =>.Windows (R) Win 7 DDK provider
[MD5.0DB1E3F6189C628675F855C0EB510419] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696] [PID.1496] =>.Intel(R) Corporation
[MD5.29CAAED140D5A9E837E1188FA2EF0FD0] - (.McAfee, Inc. - McAfee Management Service.) -- C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe [378848] [PID.1548] =>.McAfee, Inc.®
[MD5.C76DEBD4675A90C6A9CECA4E12F9295C] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\System32\mfevtps.exe [256840] [PID.1580] =>.McAfee, Inc.®
[MD5.C76DEBD4675A90C6A9CECA4E12F9295C] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\System32\mfevtps.exe [256840] [PID.1628] =>.McAfee, Inc.®
[MD5.91F2181AFA421D16B44712C40F46762E] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408] [PID.1644] =>.Nitro PDF Software®
[MD5.6EF36D1AB1A0E654FEA50A935AD5B179] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [71832] [PID.1676] =>.Nitro Software, Inc.®
[MD5.FBA61BB4C484A01A655AFB18FF86C417] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632] [PID.1712] =>.CyberLink®
[MD5.86B8B1F5C1189D68B07666784BE882FE] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584] [PID.1964] =>.Atheros
[MD5.5F0C87F2FA11C991BB93B84BD02151B3] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [309384] [PID.2032] =>.Avira Operations GmbH & Co. KG®
[MD5.0A8120FB835F5FC47609F7C7744343C2] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe [233680] [PID.1308] =>.McAfee, Inc.®
[MD5.B64E1D5BABD095C13A382838F9DCC77F] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720] [PID.1860] =>.Intel Corporation - Intel® Rapid Storage Technology®
[MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.2436] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.2544] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.6A35B295812CE7064CFBCD9F254169CF] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.2584] =>.Intel Corporation - Software and Firmware Products®
[MD5.A4C7CDD0A5E0A94DE46B0FAB4F387803] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184] [PID.352] =>.Synaptics Incorporated®
[MD5.B9D05E01B69011EE92207A4FAA77A1A0] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [182000] [PID.4844] =>.Synaptics Incorporated®
[MD5.78443DFF80C15B606FE58C92EF548C7C] - (.Atheros Communications - Servidor de pilas Bluetooth.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736] [PID.4804] =>.Atheros Communications
[MD5.9E90CA467C7BE8506B50976B7702176D] - (...) -- C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe [12928] [PID.3348]
[MD5.2FA26C993349B4D2016CBE21A49E5432] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [391128] [PID.4624] =>.Intel Corporation - pGFX®
[MD5.3749C2382FFEFBB2C5C42AB5D09C10BC] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936] [PID.4836] =>.Realtek Semiconductor Corp®
[MD5.F31CDC26F3624750C2AE2DEFF1E598DA] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1368792] [PID.4116] =>.Realtek Semiconductor Corp®
[MD5.F31CDC26F3624750C2AE2DEFF1E598DA] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1368792] [PID.928] =>.Realtek Semiconductor Corp®
[MD5.0E452B882FEEFCEFF3A8225B89393D1D] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [151776] [PID.624] =>.Avira Operations GmbH & Co. KG®
[MD5.C9359BCB62D9E747E55EE0BEE611E6ED] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.5416] =>.Google Inc®
[MD5.C9359BCB62D9E747E55EE0BEE611E6ED] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.4992] =>.Google Inc®
[MD5.C9359BCB62D9E747E55EE0BEE611E6ED] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.1624] =>.Google Inc®
[MD5.C9359BCB62D9E747E55EE0BEE611E6ED] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.5752] =>.Google Inc®
[MD5.C9359BCB62D9E747E55EE0BEE611E6ED] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.3900] =>.Google Inc®
[MD5.8C312FE57D278ABF0372EC9A52966DAB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\fisioterapia\AppData\Roaming\ZHP\ZHPDiag3.exe [2234880] [PID.5644] =>.Nicolas Coolman

---\\ Google Chrome, Arranque, Búsqueda, Extensiones (3) - 0s
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Arranque,Búsqueda,Extensiones (2) - 0s
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\fisioterapia\AppData\Roaming\Mozilla\Firefox\Profiles\SPqIyouS.default\extensions\abs@avira.com =>.Avira
P2 - FPN: [HKLM] [@nitropdf.com/NitroPDF] - (.Nitro PDF.) -- C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll

---\\ IE, Arranque,Búsqueda,URLSearchHook (19) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com.co/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Gestión de proxy (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Líneas de análisis IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ REdirección del fichero Hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (28)

---\\ Programas de cargamento automáticamente del registro (6) - 1s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg_LENOVO_MICPKEY] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Atheros Communications - Servidor de pilas Bluetooth.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe =>.Atheros Communications

---\\ Atajos de teclado globales Startup (15) - 1s
O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\fisioterapia\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrador]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrador]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [fisioterapia]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\fisioterapia\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [fisioterapia]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [fisioterapia]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Invitado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\fisioterapia\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Invitado]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Invitado]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Avira Launcher.lnk . (.Avira Operations GmbH & Co. KG - Avira Launcher.) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe =>.Avira Operations GmbH & Co. KG®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) C:\Program Files (x86)\ZHPFix\ZHPhep.exe =>.Nicolas Coolman

---\\ Modificación Dominio/Direcciones (Lop.com) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 190.157.8.33 181.48.0.232
O17 - HKLM\System\CCS\Services\Tcpip\..\{044378CC-3093-4F0A-A76B-DD5EF5F563FE}: DhcpNameServer = 190.157.8.33 181.48.0.232
O17 - HKLM\System\CCS\Services\Tcpip\..\{636346F4-D807-48C5-891C-B8E2AEBA8422}: DhcpNameServer = 190.157.8.33 181.48.0.232

---\\ Protocolo adicional (21) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visor HTML de Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Control ActiveX para secuencia de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visor HTML de Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visor HTML de Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensiones OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office 15\root\office15\msosb.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visor HTML de Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Control ActiveX para secuencia de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visor HTML de Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Enumera los datos BootExecute (1) - 0s
O34 - HKLM BootExecute: (sdnclean64.exe)

---\\ Software instalado (35) - 6s
O42 - Logiciel: Adobe Acrobat Reader DC - Español - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1034-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824191728} =>.Adobe Systems Incorporated
O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {92a7fd6b-31e5-472f-862e-79214c5032ef} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {A6634D1D-EA57-45DE-AF8F-0EDD35B912C3} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CyberLink PhotoDirector 3 - (.CyberLink Corp..) [HKLM][64Bits] -- {39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PhotoDirector 3 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.®
O42 - Logiciel: Dolby Digital Plus Advanced Audio - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2} =>.Dolby Laboratories Inc
O42 - Logiciel: Genesys USB Mass Storage Device - (.Genesys Logic.) [HKLM][64Bits] -- {959B7F35-2819-40C5-A0CD-3C53B5FCC935} =>.Genesys Logic
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
O42 - Logiciel: Guía del usuario - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} =>.Lenovo
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {96714280-14E6-4DF7-BACD-F797C0F17C3D} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {89AFB053-A343-46EF-97E4-D593AD7184E6} =>.Intel Corporation
O42 - Logiciel: Lenovo EasyCamera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.®
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.®
O42 - Logiciel: Malwarebytes Anti-Malware versión 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Nitro Pro 8 - (.Nitro.) [HKLM][64Bits] -- {584690FC-ED0D-420C-A2F1-6E61B7BDDCFD} =>.Nitro
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0C0A-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: UserGuide - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88} =>.Lenovo
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 =>.Nicolas Coolman

---\\ HKCU & HKLM Software Keys (55) - 6s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\DellShared
HKLM\SOFTWARE\Wow6432Node\Genesys Logic
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lenovo
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nitro
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\Blackboard
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nitro
HKCU\SOFTWARE\Nitro PDF
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\ud2TMDQK
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\MB_temp
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenido de las carpetas de programas (164) - 11s
O43 - CFD: 19/10/2015 - [0] SHD -- C:\Program Files\Archivos comunes
O43 - CFD: 12/07/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 21/10/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\CyberLink =>.CyberLink®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\DIFX =>.Lenovo (Beijing) Limited®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Dolby Digital Plus =>.Dolby Laboratories, Inc.®
O43 - CFD: 29/07/2016 - [0] D -- C:\Program Files\Google
O43 - CFD: 07/04/2016 - [] D -- C:\Program Files\HP
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation - Intel® Rapid Storage Technology®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files\KMSpico =>HackTool.KMSpico
O43 - CFD: 18/01/2016 - [] D -- C:\Program Files\Lenovo =>.Lenovo (Beijing) Limited®
O43 - CFD: 27/07/2016 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation®
O43 - CFD: 07/10/2013 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 19/10/2015 - [0] D -- C:\Program Files\Nitro
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 07/10/2013 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation®
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 29/07/2016 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files\WindowsPowerShell
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 18/07/2016 - [] D -- C:\Program Files (x86)\Avira =>.Avira Operations GmbH & Co. KG®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 12/07/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 28/07/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - Software and Firmware Products®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 28/07/2016 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo (Beijing) Limited®
O43 - CFD: 01/08/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 07/10/2013 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 26/04/2014 - [0] D -- C:\Program Files (x86)\New Folder
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro PDF Software®
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 07/10/2013 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2 =>.Safer Networking Ltd.®
O43 - CFD: 26/04/2014 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 01/08/2016 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 29/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 26/04/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 3
O43 - CFD: 26/04/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 10
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
O43 - CFD: 26/04/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 28/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
O43 - CFD: 14/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 29/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 22/08/2013 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 01/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 18/07/2016 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 18/07/2016 - [] D -- C:\ProgramData\Avira
O43 - CFD: 10/03/2016 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Datos de programa
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Documentos
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 28/07/2016 - [0] D -- C:\ProgramData\Energy Manager
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Escritorio
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 23/07/2016 - [0] D -- C:\ProgramData\Lenovo
O43 - CFD: 01/08/2016 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 14/07/2016 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Menú Inicio
O43 - CFD: 29/07/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Nitro
O43 - CFD: 19/10/2015 - [0] D -- C:\ProgramData\Office2013
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\OneKey Recovery
O43 - CFD: 18/07/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Plantillas
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 27/07/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Temp
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 12/07/2016 - [] D -- C:\Program Files (x86)\Common Files\AV
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 13/07/2016 - [] D -- C:\Program Files (x86)\Common Files\mcafee
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Nitro
O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Adobe
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Atheros
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Downloaded Installations
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2016 - [] SD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft
O43 - CFD: 18/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Mozilla
O43 - CFD: 18/12/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Nitro PDF
O43 - CFD: 23/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Notepad++
O43 - CFD: 14/07/2016 - [0] RSHD -- C:\Users\fisioterapia\AppData\Roaming\System32
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Roaming\WinRAR
O43 - CFD: 01/08/2016 - [] D -- C:\Users\fisioterapia\AppData\Roaming\ZHP
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Local\Adobe
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Local\Apps
O43 - CFD: 19/10/2015 - [0] SHD -- C:\Users\fisioterapia\AppData\Local\Archivos temporales de Internet
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Local\BMExplorer
O43 - CFD: 19/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Local\CEF
O43 - CFD: 28/07/2016 - [0] D -- C:\Users\fisioterapia\AppData\Local\CrashDumps
O43 - CFD: 19/10/2015 - [0] SHD -- C:\Users\fisioterapia\AppData\Local\Datos de programa
O43 - CFD: 19/10/2015 - [0] D -- C:\Users\fisioterapia\AppData\Local\Deployment
O43 - CFD: 14/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Diagnostics
O43 - CFD: 31/05/2016 - [0] D -- C:\Users\fisioterapia\AppData\Local\ElevatedDiagnostics
O43 - CFD: 29/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Google
O43 - CFD: 19/10/2015 - [0] SHD -- C:\Users\fisioterapia\AppData\Local\Historial
O43 - CFD: 21/10/2015 - [] D -- C:\Users\fisioterapia\AppData\Local\Intel_Corporation
O43 - CFD: 08/06/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Microsoft
O43 - CFD: 29/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Packages
O43 - CFD: 14/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Programs
O43 - CFD: 01/08/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\Temp
O43 - CFD: 05/07/2016 - [] D -- C:\Users\fisioterapia\AppData\Local\VirtualStore
O43 - CFD: 19/10/2015 - [0] D -- C:\Users\fisioterapia\AppData\Local\Programs\Common
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 24/10/2015 - [] RD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 22/08/2013 - [] D -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 24/10/2015 - [] RD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps
O43 - CFD: 19/10/2015 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 2s
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: Sync root make available online verb [StorageProviderError] - {0CA2640D-5B9C-4c59-A5FB-2DA61A7437CF}. (.Microsoft Corporation - Archivo DLL común del shell de Windows.) -- C:\Windows\SysWOW64\shell32.dll =>.Microsoft Windows®
O106 - SIOI: Sync root make available online verb [StorageProviderSyncing] - {0A30F902-8398-4ee8-86F7-4CFB589F04D1}. (.Microsoft Corporation - Archivo DLL común del shell de Windows.) -- C:\Windows\SysWOW64\shell32.dll =>.Microsoft Windows®

---\\ Lista de controladores del sistema (69) - 6s
O58 - SDL:2013/08/22 07:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] =>.Microsoft Windows®
O58 - SDL:2014/04/26 13:49:05 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [35600] =>.Lenovo (Beijing) Limited®
O58 - SDL:2013/08/22 07:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows®
O58 - SDL:2013/06/18 09:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2013/08/15 13:13:30 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [3859968] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2013/08/12 18:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\WINDOWS\System32\drivers\btath_a2dp.sys [338120] =>.Qualcomm Atheros®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\WINDOWS\System32\drivers\btath_avdt.sys [116424] =>.Qualcomm Atheros®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\WINDOWS\System32\drivers\btath_bus.sys [34384] =>.Atheros Communications Inc.®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_flt.sys [89800] =>.Qualcomm Atheros®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\WINDOWS\System32\drivers\btath_hcrp.sys [179432] =>.Atheros Communications Inc.®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_lwflt.sys [77464] =>.Atheros Communications Inc.®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\WINDOWS\System32\drivers\btath_rcp.sys [137928] =>.Qualcomm Atheros®
O58 - SDL:2013/09/06 18:29:14 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [594120] =>.Qualcomm Atheros®
O58 - SDL:2013/08/22 07:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\WINDOWS\System32\drivers\cfwids.sys [80760] =>.McAfee, Inc.®
O58 - SDL:2013/06/18 09:45:26 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i63x64.sys [460288] =>.Intel Corporation
O58 - SDL:2013/08/22 07:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows®
O58 - SDL:2013/08/02 18:07:12 A . (.GenesysLogic - GeneStor.) -- C:\WINDOWS\System32\drivers\GeneStor.sys [100072] =>.Genesys Logic,INC. ®
O58 - SDL:2013/08/22 07:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2013/07/30 13:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 14:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/08/30 14:18:02 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [644968] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/09 19:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 07:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2013/12/24 06:30:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4216320] =>.Intel Corporation
O58 - SDL:2013/12/19 08:02:20 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [450520] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/12/14 18:34:54 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320] =>.Intel Wireless Display®
O58 - SDL:2013/12/14 18:34:54 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] =>.Intel Wireless Display®
O58 - SDL:2013/08/22 07:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/08/01 10:24:42 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 07:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Arbitrary Access Control Driver.) -- C:\WINDOWS\System32\drivers\mfeaack.sys [415976] =>.McAfee, Inc.®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys [351120] =>.McAfee, Inc.®
O58 - SDL:2015/02/17 14:39:52 A . (.McAfee, Inc. - McAfee Disk Filter Driver.) -- C:\WINDOWS\System32\drivers\mfedisk.sys [101872] =>.McAfee, Inc.®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee ELAM Driver.) -- C:\WINDOWS\System32\drivers\mfeelamk.sys [82072] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\WINDOWS\System32\drivers\mfefirek.sys [497888] =>.McAfee, Inc.®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\WINDOWS\System32\drivers\mfehidk.sys [841944] =>.McAfee, Inc.®
O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\WINDOWS\System32\drivers\mfewfpk.sys [244544] =>.McAfee, Inc.®
O58 - SDL:2013/08/22 07:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation®
O58 - SDL:2013/07/08 13:37:41 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwew00.sys [3344352] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2013/08/22 07:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows®
O58 - SDL:2013/06/21 20:35:14 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [816344] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/12/24 22:55:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3791320] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/11/09 04:57:54 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7/Win8.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [8876248] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 10:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/22 07:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/09/10 19:21:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [34544] =>.Synaptics Incorporated®
O58 - SDL:2013/08/22 07:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2013/09/10 19:21:48 A . (.Synaptics Incorporated - Synaptics Touchpad 64-bit Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [524016] =>.Synaptics Incorporated®
O58 - SDL:2013/09/04 10:53:44 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2013/08/22 07:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows®
O58 - SDL:2013/08/22 07:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2012/06/13 10:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] =>.CyberLink®
O58 - SDL:2013/08/15 13:13:30 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athwbx.sys [3859968] =>.Qualcomm Atheros Communications, Inc.

---\\ Últimos archivos modificados o creados (usuario) (1) - 3s
O61 - LFC: 2016/07/28 21:26:31 A . (..) -- C:\Users\fisioterapia\AppData\Local\Microsoft\Windows\appsFolderLayout.bin [1336]

---\\ Asociaciones Shell desove (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Inicio del complemento Visor de eventos.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor del Registro.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Internet menú Inicio (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilidad de inicialización por usuario de I.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilidad de inicialización por usuario de I.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilidad de inicialización por usuario de I.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ La búsqueda infección en navegadores de internet (2) - 0s
O69 - SBI: SearchScopes [HKCU] {17E0BAE5-4875-4715-A630-14F76081A833} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {B2EED70F-898B-4C88-8BE4-D9664EAB8BCA} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumera el inicio del servicio Svchost (34) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Servicio de experiencia con aplicaciones.) -- C:\WINDOWS\System32\aelupsvc.dll [207360] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Servicio de propagación de certificados de.) -- C:\WINDOWS\System32\certprop.dll [155136] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Servicio de propagación de certificados de.) -- C:\WINDOWS\System32\certprop.dll [155136] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Archivo DLL del servicio Servidor.) -- C:\WINDOWS\system32\srvsvc.dll [324608] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente de directiva de grupo.) -- C:\WINDOWS\System32\gpsvc.dll [1311744] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensión IKE.) -- C:\WINDOWS\System32\ikeext.dll [1104384] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Servicio que ofrece conectividad IPv6 en un.) -- C:\WINDOWS\System32\iphlpsvc.dll [903168] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de servicio de inicio de sesión secunda.) -- C:\WINDOWS\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Servicio de información de aplicaciones.) -- C:\WINDOWS\System32\appinfo.dll [109568] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Servicio de detección iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Servicio EAPHost de Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [107008] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Servicio programador de tareas.) -- C:\WINDOWS\system32\schedsvc.dll [1214976] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [220672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Servicio Programador de aplicaciones multim.) -- C:\WINDOWS\system32\mmcss.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Archivo DLL de servicio de explorador del e.) -- C:\WINDOWS\System32\browser.dll [134144] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [221184] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Servicio Configuración de Escritorio remoto.) -- C:\Windows\System32\SessEnv.dll [326656] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Informes de problemas y soluciones.) -- C:\WINDOWS\System32\wercplsupport.dll [81408] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Servicio de administración de claves.) -- C:\WINDOWS\system32\kmsvc.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Servicio BDE.) -- C:\WINDOWS\System32\bdesvc.dll [336896] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Servicio de marco de localización de Window.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Servicio Cuenta Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1555456] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL del servicio de temas del shell de Wind.) -- C:\WINDOWS\system32\themeservice.dll [50688] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Administrador de configuración de dispositi.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [201728] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Servicio del Asistente para conectividad de.) -- C:\WINDOWS\System32\ncasvc.dll [164352] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Administrador de marcado automático de acce.) -- C:\WINDOWS\System32\rasauto.dll [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Administrador de conexiones de acceso remot.) -- C:\WINDOWS\System32\rasmans.dll [534016] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Administrador de interfaces dinámico.) -- C:\Windows\System32\mprdim.dll [223744] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Servicio de notificación de eventos de sist.) -- C:\WINDOWS\System32\sens.dll [71680] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes de ayuda para Microsoft NAT.) -- C:\WINDOWS\System32\ipnathlp.dll [433664] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonía de Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [306688] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agente de Windows Update.) -- C:\WINDOWS\system32\wuaueng.dll [3532288] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Servicio de transferencia inteligente en se.) -- C:\WINDOWS\System32\qmgr.dll [1017856] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Archivo DLL de servicios shell de Windows.) -- C:\Windows\System32\shsvcs.dll [629760] =>.Microsoft Corporation

---\\ Escaneo adicional (O88) (3) - 0s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
C:\Program Files\KMSpico =>HackTool.KMSpico

---\\ Resumen de elementos en su estación de trabajo (2) - 0s
https://www.anti-malware.top/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect
https://www.nicolascoolman.fr/?p=989 =>HackTool.KMSpico

~ End of the scan, 18595 items in 00h01mn41s (689)

Publicité


Signaler le contenu de ce document

Publicité