Hola, llevo unos días intentando buscar como eliminar la opción esa de arrancar y elegir el so que se tiene instalado, ya que es sólo 1, sino que me sale como opción el Avast Antivirus Clear Unistall, se supone que está desinstalado y eliminado los registros. Pero esa opcón no termina de eliminarla. Gracias
Hola @selohu
Descarga Farbar Recovery Scan Tool.en el escritorio, seleccionando la versión adecuada para la arquitectura(32 o 64bits) de tu equipo. [color=#FF8C00][size=1] ¿Cómo saber si mi Windows es de 32 o 64 bits.?[/size][/color]
- Ejecuta FRST.exe.
- En el mensaje de la ventana del Disclaimer, pulsamos Yes
- En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el proceso.
- Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.
Pon los dos reportes generados.
Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(mas de 50.000 caracteres aprox.).
Un saludo
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
Ran by Pequeñito (administrator) on PEQUEÑITO (13-04-2019 20:29:18)
Running from C:\Users\Pequeñito\Desktop
Loaded Profiles: Pequeñito (Available Profiles: Pequeñito)
Platform: Windows 10 Pro Version 1809 17763.437 (X64) Language: Español (España, internacional)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1903.4-0\MsMpEng.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1903.4-0\NisSrv.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\\GoogleCrashHandler64.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3251408 2015-09-23] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296 2015-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601928 2018-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.103\Installer\chrmstp.exe [2019-04-07] (Google LLC -> Google Inc.)
Startup: C:\Users\Pequeñito\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-03-29]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Pequeñito\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{893aa8b1-fb9e-403e-9c47-cca511bdb55b}: [DhcpNameServer]
Internet Explorer:
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll [2019-03-16] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-03-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-03-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-03-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
CHR HomePage: Default -> hxxps://www.google.es/
CHR StartupUrls: Default -> "hxxp://www.google.es/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/"
CHR Profile: C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default [2019-04-13]
CHR Extension: (Presentaciones) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-15]
CHR Extension: (Duolingo en la web) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2019-03-15]
CHR Extension: (Documentos) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-15]
CHR Extension: (Google Drive) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-15]
CHR Extension: (Audiense) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\bagknoiagpifjfbempgignagkejmkljm [2019-03-15]
CHR Extension: (Grupos de Google) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfmbadcfdhiklafcdohpfphhhakmiakk [2019-03-15]
CHR Extension: (Windows Defender Browser Protection) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2019-03-15]
CHR Extension: (YouTube) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-15]
CHR Extension: (Business Hangouts - Webinars for G Suite) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbjchepdbjeemagnjpoihpkjghelnge [2019-03-15]
CHR Extension: (uBlock Origin) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-04-03]
CHR Extension: (Spotify - Music for every moment) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2019-03-15]
CHR Extension: (Reto WGT de Golf) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcilimldmomiaihcfkmaldanopfejefg [2019-03-15]
CHR Extension: (Television) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhldnekicgefkglimkhjnldknpmljece [2019-03-15]
CHR Extension: (Google+) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm [2019-03-15]
CHR Extension: (Hojas de cálculo) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-15]
CHR Extension: (Full Screen Weather) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2019-03-15]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-15]
CHR Extension: (TweetDeck by Twitter) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl [2019-03-15]
CHR Extension: (PDF Mergy - Merge PDF files) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2019-03-15]
CHR Extension: (OSI: Servicio AntiBotnet) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhljghnmjahiaofikeljkjnhbeoiclbh [2019-03-15]
CHR Extension: (Google Play Music) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2019-03-15]
CHR Extension: (The Weather Channel for Chrome) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\iflpcokdamgefbghpdipcibmhlkdopop [2019-03-15]
CHR Extension: (Free SEO Deal of the Week) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgnekndlomccgljphjjcmhgmbbbeeklm [2019-03-15]
CHR Extension: (Hootsuite) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\kneloppijbcidgidihgdjnooihjcdbij [2019-03-15]
CHR Extension: (Google Play) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2019-03-15]
CHR Extension: (AudioSauna) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkgfemnodkdnenmfkblebnkjpckkjcae [2019-03-15]
CHR Extension: (Cesta de aparcamiento del centro comercial) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjfoehokglnmbbnncflhhgapdfkhahle [2019-03-15]
CHR Extension: (SEO Webpage Analysis Tool) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfhheamcohgngngnmpckfgcfmdabmno [2019-03-15]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-15]
CHR Extension: (Video Downloader) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbbjnobglkpbfmpabbgogbnlffkmgbii [2019-03-15]
CHR Extension: (Gmail) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-03-15]
CHR Extension: (Chrome Media Router) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-15]
CHR Extension: (SEO Competitor Analysis) - C:\Users\Pequeñito\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnpafbknegcefgoojplahellhohoklbj [2019-03-15]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 DrWebEngine; C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe [2224088 2019-03-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [139984 2015-09-23] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\NisSrv.exe [3856504 2019-04-08] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MsMpEng.exe [113992 2019-04-08] (Microsoft Corporation -> Microsoft Corporation)
S3 AvastWscReporter; "C:\Program Files\AVAST Software\Avast\wsc_proxy.exe" /runassvc [X]
S3 wpscloudsvr; "C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\wpscloudsvr.exe" LocalService [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 amsdk; C:\Windows\system32\drivers\amsdk.sys [232792 2019-03-23] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
R0 DrWebLwf; C:\Windows\System32\drivers\drweblwf.sys [424168 2019-03-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
R3 igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [6192640 2012-03-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [605696 2018-09-15] (Microsoft Windows -> Realtek )
R0 SpiderG3; C:\Windows\System32\drivers\spiderg3.sys [323088 2019-03-20] (Doctor Web Ltd. -> Doctor Web, Ltd.)
S3 TKCtrl; C:\Windows\system32\TKCtrl2k64.sys [147240 2018-01-29] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKFsAvM; C:\Windows\system32\TKFsAv64.sys [198808 2018-03-07] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKFsFtM; C:\Windows\system32\TKFsFt64.sys [28824 2018-03-07] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKPcFt; C:\Windows\system32\TKPcFtCb64.sys [54504 2018-01-30] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKRgAc; C:\Windows\system32\TKRgAc2k64.sys [115760 2018-01-29] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKRgFt; C:\Windows\system32\TKRgFtXp64.sys [68848 2018-02-04] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 TKSP; C:\Windows\system32\TKSPxp64.sys [80824 2018-01-29] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [28272 2019-04-10] (Adlice -> )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [46472 2019-04-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [343520 2019-04-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [68576 2019-04-08] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-13 20:29 - 2019-04-13 20:34 - 000014777 _____ C:\Users\Pequeñito\Desktop\FRST.txt
2019-04-13 20:28 - 2019-04-13 20:29 - 000000000 ____D C:\FRST
2019-04-13 20:27 - 2019-04-13 20:27 - 002434048 _____ (Farbar) C:\Users\Pequeñito\Desktop\FRST64.exe
2019-04-12 15:40 - 2019-04-12 15:25 - 001453590 ____N C:\Users\Pequeñito\Desktop\ActTemario1TAI.pdf
2019-04-12 11:36 - 2019-04-12 19:26 - 000000000 ____D C:\Users\Pequeñito\Desktop\mp3audios
2019-04-12 11:33 - 2019-04-12 11:33 - 000001409 _____ C:\Users\Pequeñito\Desktop\MP3 Audio Converter.lnk
2019-04-12 11:33 - 2019-04-12 11:33 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP3 Audio Converter
2019-04-12 11:33 - 2019-04-12 11:33 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\EZSoftMagic
2019-04-12 11:33 - 2002-01-05 15:37 - 000344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll
2019-04-12 11:32 - 2019-04-12 11:32 - 002424743 _____ (EZ SoftMagic, Inc. ) C:\Users\Pequeñito\Desktop\mp3-audio-converter-5-0-en-win.exe
2019-04-12 11:28 - 2019-04-12 11:28 - 000000000 ____D C:\Users\Pequeñito\Documents\Audacity
2019-04-12 11:27 - 2019-04-12 17:55 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\audacity
2019-04-12 11:27 - 2019-04-12 11:27 - 000001125 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2019-04-12 11:27 - 2019-04-12 11:27 - 000001113 _____ C:\Users\Public\Desktop\Audacity.lnk
2019-04-12 11:27 - 2019-04-12 11:27 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Audacity
2019-04-12 11:26 - 2019-04-12 11:27 - 000000000 ____D C:\Program Files (x86)\Audacity
2019-04-11 12:32 - 2019-04-11 12:32 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\VS Revo Group
2019-04-11 12:31 - 2019-04-11 12:31 - 000001159 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2019-04-11 12:31 - 2019-04-11 12:31 - 000000000 ____D C:\ProgramData\VS Revo Group
2019-04-11 12:31 - 2019-04-11 12:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2019-04-11 12:31 - 2016-12-21 14:52 - 000040240 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2019-04-11 12:30 - 2019-04-11 12:30 - 000000000 ____D C:\Program Files\VS Revo Group
2019-04-10 17:42 - 2019-04-10 17:42 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\LibreOffice
2019-04-10 17:15 - 2019-04-10 17:15 - 000001243 _____ C:\Users\Public\Desktop\LibreOffice 6.2.lnk
2019-04-10 17:15 - 2019-04-10 17:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2
2019-04-10 17:12 - 2019-04-10 17:14 - 000000000 ____D C:\Program Files\LibreOffice
2019-04-10 13:21 - 2019-04-10 13:21 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-04-10 13:18 - 2019-04-11 12:09 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-04-10 13:02 - 2019-04-10 13:02 - 000007134 _____ C:\Windows\CleanMem Uninstall Log.txt
2019-04-10 02:39 - 2019-04-10 02:39 - 005436904 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-04-10 02:39 - 2019-04-10 02:39 - 003551112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2019-04-10 02:39 - 2019-04-10 02:39 - 000263600 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 026810368 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 023440896 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 020815360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 019025408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 012843520 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 012139008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 007877120 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 006544824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 006071296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 004660224 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 003904512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001671352 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001590064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001467344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001221944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001072640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 001019392 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000653040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000649064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\SharedRealitySvc.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000474928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-04-10 02:38 - 2019-04-10 02:38 - 000375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000133120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-04-10 02:38 - 2019-04-10 02:38 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-04-10 02:37 - 2019-04-10 02:37 - 007645608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 004588536 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-04-10 02:37 - 2019-04-10 02:37 - 003657728 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 003384832 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 002925880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 002720256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 002469376 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 002438368 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 002022304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001886208 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001830200 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001672704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001496576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001478968 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001256448 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-04-10 02:37 - 2019-04-10 02:37 - 001054200 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-04-10 02:37 - 2019-04-10 02:37 - 001044280 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-04-10 02:37 - 2019-04-10 02:37 - 000865784 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000793832 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000725928 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000604008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 000531968 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000346624 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 000273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000183296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2019-04-10 02:37 - 2019-04-10 02:37 - 000095544 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000090424 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-04-10 02:37 - 2019-04-10 02:37 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-04-09 17:58 - 2019-04-09 17:58 - 000179910 _____ C:\Users\Pequeñito\Desktop\leccion_7.pdf
2019-04-09 10:14 - 2019-04-09 10:14 - 000004078 _____ C:\Windows\System32\Tasks\WpsExternal_Pequeñito_20190409101416
2019-04-09 09:34 - 2019-04-09 09:34 - 000000000 ____D C:\Windows\Tasks\ImCleanDisabled
2019-04-09 09:28 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\IObit
2019-04-09 09:27 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\LocalLow\IObit
2019-04-09 09:22 - 2019-04-10 19:40 - 000000000 ____D C:\ProgramData\IObit
2019-04-09 09:22 - 2019-04-09 09:22 - 000000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2019-04-08 14:30 - 2019-04-08 14:30 - 003602944 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 001459080 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 001297120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 001294520 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 001259320 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2019-04-08 14:30 - 2019-04-08 14:30 - 001072424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000897536 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000815616 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000740352 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2019-04-08 14:30 - 2019-04-08 14:30 - 000454144 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000372224 _____ (Microsoft Corporation) C:\Windows\system32\bdechangepin.exe
2019-04-08 14:30 - 2019-04-08 14:30 - 000370688 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000363520 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2019-04-08 14:30 - 2019-04-08 14:30 - 000331776 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000317240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2019-04-08 14:30 - 2019-04-08 14:30 - 000311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2019-04-08 14:30 - 2019-04-08 14:30 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 008898048 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 007919104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 003690496 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 003421696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 002942464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 002127360 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 001521664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 001064448 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000772608 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000701440 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000684032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000316416 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\EduPrintProv.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 000059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe
2019-04-08 14:29 - 2019-04-08 14:29 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshhttp.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2019-04-08 14:29 - 2019-04-08 14:29 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 015223296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 006440960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 006309040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 005765120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 005205448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 004527624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 003656192 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 003496448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AI.MachineLearning.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 002777224 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 002765312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 002689024 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 002346496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 002275896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001860096 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001760768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001711104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001687552 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001674480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001615872 ____R (The ICU Project) C:\Windows\SysWOW64\icuin.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001506304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001458056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001370624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001249280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001155072 ____R (The ICU Project) C:\Windows\SysWOW64\icuuc.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001047552 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001026792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 001001472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000982528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000976896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000964096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000909840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000882688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000845824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000828728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000731648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000730112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000711168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000672256 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000617784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000551936 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000540448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000528384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000460800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000424960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2019-04-08 14:28 - 2019-04-08 14:28 - 000408528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000385536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000349184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000312632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000294912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerCsp.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000201216 _____ (Microsoft Corporation) C:\Windows\system32\wincredui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000188416 _____ (Microsoft Corporation) C:\Windows\system32\DMPushRouterCore.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000176640 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BitLockerCsp.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvsetup.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2019-04-08 14:28 - 2019-04-08 14:28 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcPing.exe
2019-04-08 14:28 - 2019-04-08 14:28 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 007883776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 006925824 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 004866560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AI.MachineLearning.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 004704272 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 004304896 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 003982848 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 003377976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 003334144 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 002871304 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 002842624 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 002701304 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 002627384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 002073960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 002042368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001994768 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001969464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 001918464 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001844448 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001697752 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-04-08 14:27 - 2019-04-08 14:27 - 001671680 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001647632 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001641400 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001468952 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 001395056 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001360184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 001342400 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-04-08 14:27 - 2019-04-08 14:27 - 001315328 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001311232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001217024 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001179680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 001145856 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 001058304 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2019-04-08 14:27 - 2019-04-08 14:27 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 001035776 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000998712 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000981816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 000948224 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000927232 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000926208 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000888320 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000882176 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2019-04-08 14:27 - 2019-04-08 14:27 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000865792 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000821048 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000809784 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 000737080 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000730936 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000699392 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000660480 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000620560 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000611840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000609792 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000598544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000579072 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000568632 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000553784 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000552448 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000508208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000506880 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000505344 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000461112 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000450048 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000407552 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000386360 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000343552 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000332800 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000322568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000257696 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\SharedPCCSP.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000182784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.SharedPC.CredentialProvider.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000159272 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000147496 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000143880 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000134456 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000121344 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000115360 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\negoexts.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000107832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 000071208 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000049664 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2019-04-08 14:27 - 2019-04-08 14:27 - 000039736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WppRecorder.sys
2019-04-08 14:27 - 2019-04-08 14:27 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe
2019-04-08 14:27 - 2019-04-08 14:27 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 017513472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 004991112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 003557888 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 003334496 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 002995712 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 002592816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001892864 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001856000 ____R (The ICU Project) C:\Windows\system32\icuin.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001616384 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001567232 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001259320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 001213752 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001191728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001053192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 001022616 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 001007616 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000984888 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000982880 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000974352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000877056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000871792 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000855040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000850760 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000822272 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000807424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000799568 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000766480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000761280 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000757664 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000756736 _____ (Microsoft Corporation) C:\Windows\system32\DolbyHrtfEnc.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000676352 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000675096 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000651064 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000580024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000551936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-04-08 14:26 - 2019-04-08 14:26 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000513040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000506168 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000485192 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_enclave.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000463672 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000447488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000407504 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000404792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000386872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000385024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000384312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000368640 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000349184 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000343984 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000306488 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000300032 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000283032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000264704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000263680 _____ (Microsoft Corporation) C:\Windows\system32\WiFiCloudStore.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000255128 _____ (Microsoft Corporation) C:\Windows\system32\SgrmBroker.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000169784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000159112 _____ (Microsoft Corporation) C:\Windows\system32\winquic.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000157496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000156984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winquic.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\drvsetup.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\negoexts.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000098664 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000097808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2019-04-08 14:26 - 2019-04-08 14:26 - 000089336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpr.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\KdsCli.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\wcimage.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000035640 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2019-04-08 14:26 - 2019-04-08 14:26 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-04-08 14:26 - 2019-04-08 14:26 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-04-08 14:25 - 2019-04-08 14:25 - 002017792 _____ C:\Windows\system32\rdpnano.dll
2019-04-08 14:25 - 2019-04-08 14:25 - 000651792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2019-04-08 14:25 - 2019-04-08 14:25 - 000607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2019-04-08 14:25 - 2019-04-08 14:25 - 000556544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2019-04-08 14:25 - 2019-04-08 14:25 - 000421392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2019-04-08 14:25 - 2019-04-08 14:25 - 000300344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2019-04-08 14:25 - 2019-04-08 14:25 - 000234808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc.sys
2019-04-08 14:25 - 2019-04-08 14:25 - 000195896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
2019-04-08 14:25 - 2019-04-08 14:25 - 000131384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2019-04-08 00:23 - 2019-04-10 18:06 - 000028272 _____ C:\Windows\system32\Drivers\truesight.sys
2019-04-08 00:21 - 2019-04-08 00:21 - 000003148 _____ C:\Windows\System32\Tasks\RogueKiller Anti-Malware
2019-04-08 00:20 - 2019-04-08 00:20 - 000000000 ____D C:\ProgramData\RogueKiller
2019-04-08 00:19 - 2019-04-08 00:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2019-04-08 00:19 - 2019-04-08 00:19 - 000000000 ____D C:\Program Files\RogueKiller
2019-04-05 16:39 - 2019-04-05 16:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2019-04-05 16:39 - 2019-04-05 16:39 - 000000000 ____D C:\Program Files\7-Zip
2019-04-04 21:31 - 2019-04-04 21:32 - 000017821 _____ C:\Windows\CleanMem Setup Log.txt
2019-04-04 20:38 - 2019-04-09 21:25 - 000003820 _____ C:\Windows\System32\Tasks\WpsUpdateTask_Pequeñito
2019-04-04 20:37 - 2019-04-04 20:37 - 000000000 ___HD C:\Users\Pequeñito\Documents\KingsoftData
2019-04-04 20:22 - 2019-04-04 20:26 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Kingsoft
2019-04-04 20:21 - 2019-04-05 16:45 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\kingsoft
2019-04-04 20:21 - 2019-04-04 20:30 - 000000000 ____D C:\ProgramData\kingsoft
2019-04-03 20:31 - 2019-04-03 20:31 - 000000000 ___HD C:\Windows\msdownld.tmp
2019-04-03 20:31 - 2019-04-03 20:31 - 000000000 ____D C:\Windows\SysWOW64\directx
2019-04-03 20:30 - 2019-04-03 20:30 - 000003290 _____ C:\Windows\System32\Tasks\klcp_update
2019-04-03 20:30 - 2019-04-03 20:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2019-04-03 20:29 - 2019-04-03 20:29 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2019-04-02 09:35 - 2019-04-10 19:26 - 000001958 _____ C:\Users\Pequeñito\Desktop\UsbFix Anti-Malware.lnk
2019-04-01 03:05 - 2019-04-01 03:05 - 000007602 _____ C:\Users\Pequeñito\AppData\Local\Resmon.ResmonCfg
2019-03-29 21:34 - 2019-03-29 21:34 - 000000000 ___RD C:\Users\Pequeñito\Documents\MEGAsync
2019-03-29 21:32 - 2019-03-29 21:32 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Mega Limited
2019-03-29 21:30 - 2019-03-29 21:31 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2019-03-29 21:30 - 2019-03-29 21:31 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\MEGAsync
2019-03-29 16:29 - 2019-04-11 17:52 - 000000000 ____D C:\Users\Pequeñito\Desktop\Adams 2019
2019-03-29 13:20 - 2019-03-31 19:49 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\AVG
2019-03-29 13:20 - 2019-03-29 13:20 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\CEF
2019-03-29 13:16 - 2019-03-29 13:16 - 000000000 ____D C:\Windows\System32\Tasks\AVG
2019-03-29 13:13 - 2019-03-29 13:13 - 000000000 ____D C:\Program Files\Common Files\AVG
2019-03-29 13:06 - 2019-03-31 19:49 - 000000000 ____D C:\ProgramData\AVG
2019-03-29 04:57 - 2019-03-30 02:21 - 000000424 __RSH C:\ProgramData\ntuser.pol
2019-03-29 04:45 - 2019-03-29 04:53 - 2377121792 _____ C:\Users\Pequeñito\Downloads\backbox-5.3-amd64.iso
2019-03-29 04:45 - 2019-03-29 04:45 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\BitTorrentHelper
2019-03-27 00:40 - 2019-03-28 15:27 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\vlc
2019-03-27 00:39 - 2019-03-27 00:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2019-03-27 00:37 - 2019-03-27 00:37 - 000000000 ____D C:\Program Files\VideoLAN
2019-03-23 04:38 - 2019-03-23 04:38 - 000003554 _____ C:\Windows\System32\Tasks\AMHelper
2019-03-23 04:38 - 2019-03-23 04:38 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Zemana
2019-03-23 04:38 - 2019-03-23 04:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2019-03-23 04:37 - 2019-04-13 20:34 - 000055784 _____ C:\Windows\ZAM.krnl.trace
2019-03-23 04:37 - 2019-04-10 19:51 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\AMSDK
2019-03-23 04:37 - 2019-03-23 04:37 - 000232792 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2019-03-23 04:37 - 2019-03-23 04:37 - 000000000 ____D C:\Program Files (x86)\Zemana
2019-03-23 04:20 - 2019-04-10 19:40 - 000000000 ____D C:\AdwCleaner
2019-03-22 12:47 - 2019-03-22 12:47 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\CrashDumps
2019-03-20 06:09 - 2019-03-20 06:09 - 000000000 ____D C:\Windows\system32\MpEngineStore
2019-03-20 05:07 - 2019-03-20 05:07 - 000000000 ____D C:\Users\Pequeñito\Doctor Web
2019-03-20 04:15 - 2019-03-20 04:15 - 000000314 _____ C:\Windows\Tasks\Dr.Web Daily scan.job
2019-03-20 04:10 - 2019-04-11 12:05 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2019-03-20 04:08 - 2019-03-20 04:08 - 000323088 _____ (Doctor Web, Ltd.) C:\Windows\system32\Drivers\spiderg3.sys
2019-03-20 04:08 - 2019-03-20 04:08 - 000233504 _____ (Doctor Web, Ltd.) C:\Windows\system32\Drivers\dwdg.sys
2019-03-20 04:07 - 2019-04-10 19:55 - 000000000 ____D C:\Windows\pss
2019-03-20 03:59 - 2019-03-20 03:59 - 000424168 _____ (Doctor Web, Ltd.) C:\Windows\system32\Drivers\drweblwf.sys
2019-03-20 03:57 - 2019-03-20 21:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dr.Web
2019-03-20 03:54 - 2019-03-20 03:55 - 000000000 ____D C:\Program Files\Common Files\Doctor Web
2019-03-20 03:54 - 2019-03-20 03:54 - 000000000 ____D C:\Program Files\Common Files\AV
2019-03-20 03:48 - 2019-03-20 04:00 - 000000000 ____D C:\ProgramData\Doctor Web
2019-03-19 04:43 - 2019-03-19 04:43 - 000000000 ____D C:\ProgramData\TACHYON
2019-03-19 04:39 - 2019-03-19 15:46 - 000000000 ____D C:\Program Files (x86)\TACHYON
2019-03-19 00:47 - 2019-03-19 00:57 - 000000000 ____D C:\ProgramData\Vba32
2019-03-19 00:42 - 2019-03-19 00:42 - 000000000 ____D C:\ProgramData\VirusBlokAda
2019-03-18 23:55 - 2019-04-08 02:08 - 000000000 ____D C:\Update
2019-03-18 23:55 - 2019-03-19 00:13 - 000000000 ____D C:\ProgramData\Vba32UC
2019-03-18 15:14 - 2019-03-18 16:59 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\nanoav
2019-03-18 15:04 - 2019-03-18 16:59 - 000000000 ____D C:\ProgramData\nanoav
2019-03-16 19:11 - 2019-03-16 19:11 - 000627440 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2019-03-16 19:11 - 2019-03-16 19:11 - 000366320 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2019-03-16 19:11 - 2019-03-16 19:11 - 000332336 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2019-03-16 19:11 - 2019-03-16 19:11 - 000205552 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140_2.dll
2019-03-16 19:11 - 2019-03-16 19:11 - 000085232 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2019-03-16 19:11 - 2019-03-16 19:11 - 000030960 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140_1.dll
2019-03-16 17:01 - 2019-03-16 17:01 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\Sun
2019-03-16 17:01 - 2019-03-16 17:01 - 000000000 ____D C:\Users\Pequeñito\AppData\LocalLow\Sun
2019-03-16 17:00 - 2019-03-16 17:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-03-16 17:00 - 2019-03-16 16:59 - 000110968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2019-03-16 16:58 - 2019-03-16 16:58 - 000000000 ____D C:\ProgramData\Oracle
2019-03-16 16:58 - 2019-03-16 16:58 - 000000000 ____D C:\Program Files\Java
2019-03-16 15:52 - 2019-03-16 15:52 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2019-03-15 20:49 - 2019-03-15 20:50 - 000000000 ____D C:\Program Files (x86)\UsbFix
2019-03-15 20:41 - 2019-03-15 20:41 - 000000000 ____D C:\UsbFix
2019-03-15 18:28 - 2019-04-11 13:06 - 000000000 ____D C:\Users\Pequeñito\Desktop\ProcessExplorer
2019-03-15 18:01 - 2019-03-15 18:01 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\DBG
2019-03-15 03:32 - 2019-03-15 03:35 - 000000000 ___RD C:\Users\Pequeñito\Desktop\Árbol
2019-03-15 03:04 - 2019-03-15 03:04 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2019-03-15 02:44 - 2019-03-15 02:44 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\PeerDistRepub
2019-03-15 02:44 - 2019-03-15 02:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVBViewer
2019-03-15 02:42 - 2019-03-15 02:48 - 000000000 ____D C:\Program Files (x86)\DVBViewer
2019-03-15 02:42 - 2019-03-15 02:42 - 000000000 ____D C:\ProgramData\CMUV
2019-03-15 02:28 - 2019-03-15 02:28 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\Google
2019-03-15 01:35 - 2019-04-07 16:39 - 000002336 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-15 01:34 - 2019-03-28 05:37 - 000003618 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-03-15 01:34 - 2019-03-28 05:37 - 000003494 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-03-15 01:34 - 2019-03-15 01:35 - 000000000 ____D C:\Program Files (x86)\Google
2019-03-15 01:33 - 2019-03-15 02:34 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Google
2019-03-15 01:24 - 2019-03-15 01:24 - 000000000 ___HD C:\Users\Pequeñito\MicrosoftEdgeBackups
2019-03-15 01:06 - 2019-04-13 20:21 - 000000000 ____D C:\Windows\Minidump
2019-03-15 00:48 - 2019-03-15 00:48 - 024616960 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 019284480 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 007724992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 005112792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 004920832 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 003566080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 002752360 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 002392576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 002323688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 002278240 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001969152 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001307648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001289192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001282640 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001200920 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 001077912 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000927232 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000866152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000829440 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000762272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000732160 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCacheProvider.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000560128 _____ (Microsoft Corporation) C:\Windows\system32\mfh264enc.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000453632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-03-15 00:48 - 2019-03-15 00:48 - 000429056 _____ (Microsoft Corporation) C:\Windows\system32\MixedReality.Broker.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000427520 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000421688 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000420864 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSh.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDistSh.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000302592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-03-15 00:48 - 2019-03-15 00:48 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCleaner.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2019-03-15 00:48 - 2019-03-15 00:48 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 005588184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 004627456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 003744256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 003108864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 002298880 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 001782272 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 001332224 _____ (Microsoft Corporation) C:\Windows\system32\lpasvc.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 001224704 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 001131520 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000913920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000875008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000742912 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000703488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000621568 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000599040 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000525312 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000522312 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000495104 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\ResourceMapper.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\DataUsageHandlers.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000349184 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000340480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-03-15 00:47 - 2019-03-15 00:47 - 000330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\AcLayers.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MbbCx.sys
2019-03-15 00:47 - 2019-03-15 00:47 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000284160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000180736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000173568 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2019-03-15 00:47 - 2019-03-15 00:47 - 000156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasman.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000134144 _____ (Microsoft Corporation) C:\Windows\system32\DataUsageLiveTileTask.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2019-03-15 00:47 - 2019-03-15 00:47 - 000104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-03-15 00:47 - 2019-03-15 00:47 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\nlahc.dll
2019-03-15 00:47 - 2019-03-15 00:47 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\PktMon.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2019-03-15 00:47 - 2019-03-15 00:47 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\SecureBioSysprep.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 007251456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 005915936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 005566464 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 003761664 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 003729808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 003652656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 003504128 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 003427840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 002447360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 002001408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001899160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001720936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001572176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001481488 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001446400 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001415680 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001314304 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001272552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdrecordcpu.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001271608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001254912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001180248 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001098128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 001010176 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 001001472 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2019-03-15 00:46 - 2019-03-15 00:46 - 000918032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000908800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2019-03-15 00:46 - 2019-03-15 00:46 - 000823296 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000800256 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000787456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000782968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000775168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000772408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000764216 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000655160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000615936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000591832 _____ C:\Windows\SysWOW64\InputHost.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000588304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000548864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000535048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000519992 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsound.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Activities.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000453944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000452096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000449024 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TileDataRepository.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000430904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000383288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000365056 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000279376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000272648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdwriter.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000262456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-03-15 00:46 - 2019-03-15 00:46 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000147968 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000146888 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 000144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 000132096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smartscreenps.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srpapi.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000121872 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000091424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
2019-03-15 00:46 - 2019-03-15 00:46 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2019-03-15 00:46 - 2019-03-15 00:46 - 000044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2019-03-15 00:45 - 2019-03-15 00:46 - 004019200 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 009670656 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 007647256 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 007556392 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 005561856 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 005527552 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 005296640 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 004245280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 003399168 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 002842112 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 002637312 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 002630656 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 002618880 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 002085376 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001931264 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001715712 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001700880 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001656832 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001563336 _____ (Microsoft Corporation) C:\Windows\system32\ttdrecordcpu.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001533440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001462272 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001331536 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001267712 _____ (Microsoft Corporation) C:\Windows\system32\APMon.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001199104 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001176064 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001087800 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001078072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001056272 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001052160 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 001032704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000954368 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000902144 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000888120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pidgenx.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000864056 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000860160 _____ C:\Windows\system32\MBR2GPT.EXE
2019-03-15 00:45 - 2019-03-15 00:45 - 000836096 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000833064 _____ C:\Windows\system32\InputHost.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000820736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000745984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000714240 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000691712 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000684544 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000622080 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000604336 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000593920 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000572416 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000566272 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000556544 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000547840 _____ (Microsoft Corporation) C:\Windows\system32\TileDataRepository.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000496872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000479232 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000456704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000435712 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000420864 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000330464 _____ (Microsoft Corporation) C:\Windows\system32\ttdwriter.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000326144 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000305664 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000271360 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000251904 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000246584 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\smbwmiv2.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\smartscreenps.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\ngctasks.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSrv.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000156160 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000148480 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\DolbyMATEnc.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000114856 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2019-03-15 00:45 - 2019-03-15 00:45 - 000074424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WindowsTrustedRT.sys
2019-03-15 00:45 - 2019-03-15 00:45 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\umpo-overrides.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\lpkinstall.exe
2019-03-15 00:45 - 2019-03-15 00:45 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2019-03-15 00:45 - 2019-03-15 00:45 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 002766648 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 002466304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 002199864 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 002149368 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 002141184 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppAgent.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001751352 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001742104 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001612600 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001522488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001403920 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001296576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001221120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 001208320 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001177088 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CommonBridge.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 001121280 _____ (Microsoft Corporation) C:\Windows\system32\ApplySettingsTemplateCatalog.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000956416 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000955392 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000895048 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000883712 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000831288 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000817464 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000790328 _____ (Microsoft Corporation) C:\Windows\system32\upshared.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000773120 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000760832 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000752136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000743224 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000741888 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000649528 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000646656 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000646632 _____ (Microsoft Corporation) C:\Windows\system32\msvcp_win.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000612368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000605496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000527872 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000508216 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000506408 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000461824 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000449368 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000444728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000419128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000408800 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000407040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000402944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000395064 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000394752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcLayers.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000388096 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000387832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000375544 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000355360 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000348160 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000324408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000298296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000276488 _____ (Microsoft Corporation) C:\Windows\system32\MTF.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000224256 _____ (Microsoft Corporation) C:\Windows\system32\ptpprov.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\SecureTimeAggregator.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000202552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MTF.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000202552 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000198144 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000193032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVemgr.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000138960 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000115152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000104248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000095544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storqosflt.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000080400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\UevAppMonitor.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000047136 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2019-03-15 00:44 - 2019-03-15 00:44 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2019-03-15 00:44 - 2019-03-15 00:44 - 000039304 _____ (Microsoft Corporation) C:\Windows\system32\NtlmShared.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000033056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NtlmShared.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rfxvmt.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2019-03-15 00:44 - 2019-03-15 00:44 - 000000072 _____ C:\Windows\system32\edgehtmlpluginpolicy.bin
2019-03-15 00:28 - 2019-03-15 00:28 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2019-03-15 00:28 - 2019-03-15 00:28 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2019-03-15 00:28 - 2019-03-15 00:28 - 000000000 ____D C:\Windows\system32\SRSLabs
2019-03-15 00:28 - 2019-03-15 00:28 - 000000000 ____D C:\Program Files\Realtek
2019-03-15 00:23 - 2019-03-15 00:23 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ETD_01009.Wdf
2019-03-15 00:22 - 2019-03-15 00:23 - 000000000 ____D C:\Program Files\Elantech
2019-03-14 23:55 - 2019-04-10 01:40 - 000000000 ____D C:\Windows\system32\MRT
2019-03-14 23:54 - 2019-04-10 01:40 - 131129288 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-03-14 23:45 - 2019-03-16 15:17 - 000000000 ____D C:\ProgramData\Packages
2019-03-14 23:45 - 2019-03-14 23:45 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Comms
2019-03-14 23:34 - 2019-03-16 15:17 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\PlaceholderTileLogoFolder
2019-03-14 23:34 - 2019-03-14 23:33 - 000592616 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2019-03-14 23:28 - 2019-04-01 13:31 - 000003374 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4285004602-114342504-2893149386-1001
2019-03-14 23:28 - 2019-04-01 13:31 - 000000000 ___RD C:\Users\Pequeñito\OneDrive
2019-03-14 23:25 - 2019-03-15 02:24 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\D3DSCache
2019-03-14 23:24 - 2019-03-15 01:24 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\MicrosoftEdge
2019-03-14 23:24 - 2019-03-14 23:24 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-03-14 23:22 - 2019-03-15 01:27 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Publishers
2019-03-14 23:22 - 2019-03-15 01:17 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-03-14 23:22 - 2019-03-15 01:17 - 000000000 ___RD C:\Users\Pequeñito\3D Objects
2019-03-14 23:21 - 2019-04-11 12:57 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\Packages
2019-03-14 23:21 - 2019-03-14 23:22 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\ConnectedDevicesPlatform
2019-03-14 23:21 - 2019-03-14 23:21 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\Adobe
2019-03-14 23:21 - 2019-03-14 23:21 - 000000000 ____D C:\Users\Pequeñito\AppData\Local\VirtualStore
2019-03-14 23:17 - 2019-04-09 18:02 - 000000000 ____D C:\Users\Pequeñito
2019-03-14 23:17 - 2019-04-01 13:31 - 000002448 _____ C:\Users\Pequeñito\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-14 23:17 - 2019-03-14 23:17 - 000000020 ___SH C:\Users\Pequeñito\ntuser.ini
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Reciente
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Plantillas
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Mis documentos
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Menú Inicio
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Impresoras
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Entorno de red
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Documents\Mis vídeos
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Documents\Mis imágenes
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Documents\Mi música
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Datos de programa
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\Configuración local
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\AppData\Local\Historial
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\AppData\Local\Datos de programa
2019-03-14 23:17 - 2019-03-14 23:17 - 000000000 _SHDL C:\Users\Pequeñito\AppData\Local\Archivos temporales de Internet
2019-03-14 23:00 - 2019-04-13 20:28 - 001684176 _____ C:\Windows\system32\PerfStringBackup.INI
2019-03-14 22:58 - 2019-03-15 00:44 - 002865152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2019-03-14 22:58 - 2019-03-14 22:58 - 000000000 ____D C:\Windows\CSC
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Public\Documents\Mis vídeos
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Public\Documents\Mis imágenes
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Public\Documents\Mi música
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Reciente
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Plantillas
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Mis documentos
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Menú Inicio
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Impresoras
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Entorno de red
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Documents\Mis vídeos
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Documents\Mis imágenes
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Documents\Mi música
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Datos de programa
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\Configuración local
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historial
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\AppData\Local\Datos de programa
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default\AppData\Local\Archivos temporales de Internet
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\Documents\Mis vídeos
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\Documents\Mis imágenes
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\Documents\Mi música
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historial
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Datos de programa
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Archivos temporales de Internet
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Plantillas
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Menú Inicio
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Escritorio
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Documentos
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\ProgramData\Datos de programa
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Program Files\Archivos comunes
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Documents and Settings
2019-03-14 22:55 - 2019-03-14 22:55 - 000000000 _SHDL C:\Archivos de programa
2019-03-14 22:44 - 2019-03-14 22:44 - 000000000 ____D C:\ProgramData\USOShared
2019-03-14 22:42 - 2019-04-13 20:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-03-14 22:42 - 2019-04-08 23:57 - 000000000 ____D C:\Windows\system32\Drivers\wd
2019-03-14 22:41 - 2019-04-13 20:21 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-03-14 22:41 - 2019-04-13 20:20 - 000111616 ____N C:\Windows\Minidump\041319-54468-01.dmp
2019-03-14 22:41 - 2019-04-13 13:47 - 000111104 ____N C:\Windows\Minidump\041319-56468-01.dmp
2019-03-14 22:41 - 2019-04-12 09:52 - 000111616 ____N C:\Windows\Minidump\041219-71437-01.dmp
2019-03-14 22:41 - 2019-04-11 23:41 - 000111104 ____N C:\Windows\Minidump\041119-50062-01.dmp
2019-03-14 22:41 - 2019-04-10 17:29 - 000459944 _____ C:\Windows\system32\FNTCACHE.DAT
2019-03-14 22:41 - 2019-03-14 22:41 - 000000000 ____D C:\Windows\ServiceProfiles
2019-03-14 22:37 - 2019-03-14 22:54 - 000000000 ____D C:\Windows\Panther
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-13 20:35 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-04-13 20:28 - 2018-09-15 18:37 - 000753564 _____ C:\Windows\system32\perfh00A.dat
2019-04-13 20:28 - 2018-09-15 18:37 - 000148108 _____ C:\Windows\system32\perfc00A.dat
2019-04-13 20:28 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
2019-04-11 23:58 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2019-04-11 18:35 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-11 12:59 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2019-04-10 17:32 - 2018-09-15 08:09 - 000032768 _____ C:\Windows\system32\config\ELAM
2019-04-10 13:18 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-04-10 02:48 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
2019-04-10 02:46 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2019-04-08 15:25 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\Dism
2019-04-08 15:24 - 2018-09-15 18:40 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-04-08 15:24 - 2018-09-15 09:33 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-04-08 15:24 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\oobe
2019-04-08 15:24 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-04-08 15:24 - 2018-09-15 08:09 - 000000000 ____D C:\Windows\system32\Dism
2019-04-03 17:43 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\LiveKernelReports
2019-04-01 20:02 - 2018-09-15 09:36 - 000835480 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-04-01 20:02 - 2018-09-15 09:36 - 000179608 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-03-29 04:57 - 2018-09-15 09:33 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2019-03-29 04:57 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2019-03-19 04:12 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\appcompat
2019-03-15 18:15 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\NDF
2019-03-15 02:06 - 2018-09-15 09:33 - 000000000 ___RD C:\Program Files\Windows Defender
2019-03-15 01:54 - 2018-09-15 09:37 - 000134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2019-03-15 01:29 - 2018-09-15 08:09 - 000000000 ____D C:\Windows\servicing
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\TextInput
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\oobe
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\migwiz
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\appraiser
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\ShellExperiences
2019-03-15 01:07 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\ShellComponents
2019-03-14 23:44 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\ServiceState
2019-03-14 23:00 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2019-03-14 22:58 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\spool
2019-03-14 22:58 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\FxsTmp
2019-03-14 22:55 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\windows nt
2019-03-14 22:45 - 2018-09-15 09:33 - 000000000 ___RD C:\Windows\PrintDialog
2019-03-14 22:45 - 2018-09-15 09:33 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2019-03-14 22:44 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\USOPrivate
2019-03-14 22:37 - 2018-09-15 09:31 - 000028672 _____ C:\Windows\system32\config\BCD-Template
==================== Files in the root of some directories =======
2019-04-01 03:05 - 2019-04-01 03:05 - 000007602 _____ () C:\Users\Pequeñito\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
2019-04-10 15:31 - 2019-04-10 13:27 - 002642528 _____ () C:\Users\Pequeñito\AppData\Local\Temp\AvastBrowserUninstall.exe_{FF2EEFB7-7D10-4D8D-A1D2-9DDE9E6B6D18}.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17.03.2019
Ran by Pequeñito (13-04-2019 20:40:29)
Running from C:\Users\MiEquipo\Desktop
Windows 10 Pro Version 1809 17763.437 (X64) (2019-03-14 20:57:41)
Boot Mode: Normal
==================== Accounts: =============================
Administrador (S-1-5-21-4285004602-114342504-2893149386-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4285004602-114342504-2893149386-503 - Limited - Disabled)
Invitado (S-1-5-21-4285004602-114342504-2893149386-501 - Limited - Disabled)
Pequeñito (S-1-5-21-4285004602-114342504-2893149386-1001 - Administrator - Enabled) => C:\Users\Pequeñito
WDAGUtilityAccount (S-1-5-21-4285004602-114342504-2893149386-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Audacity 2.2.2 (HKLM-x32\...\Audacity_is1) (Version: 2.2.2 - Audacity Team)
DVBViewer Pro (HKLM-x32\...\DVBViewer Pro_is1) (Version: 6.1.4 - CM&V)
ETDWare X64 (HKLM\...\Elantech) (Version: - ELAN Microelectronic Corp.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 73.0.3683.103 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: - Google LLC) Hidden
Java 8 Update 201 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180201F0}) (Version: 8.0.2010.9 - Oracle Corporation)
K-Lite Codec Pack 14.8.8 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 14.8.8 - KLCP)
LibreOffice (HKLM\...\{7B486711-D8E3-41F4-A518-D709CD62C3D1}) (Version: - The Document Foundation)
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft OneDrive (HKU\S-1-5-21-4285004602-114342504-2893149386-1001\...\OneDriveSetup.exe) (Version: 19.033.0218.0011 - Microsoft Corporation)
MP3 Audio Converter 5.01 (HKLM-x32\...\MP3 Audio Converter_is1) (Version: - EZ SoftMagic, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 4.0.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.0.5 - VS Revo Group, Ltd.)
RogueKiller versión (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: - Adlice Software)
UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: - SOSVirus (SOSVirus.Net))
VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Zemana AntiMalware versión 3.1.0 (HKLM-x32\...\{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1) (Version: 3.1.0 - Zemana)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{0B680B4D-1E6B-4C2D-ACFC-EDFF466201F7} -> [MEGAsync] => C:\Users\Pequeñito\Documents\MEGAsync [2019-03-29 21:34]
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll => No File
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Pequeñito\AppData\Local\MEGAsync\ShellExtX64.dll [2019-02-08] (Mega Limited -> )
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2018-09-06] (VS Revo Group Ltd. -> VS Revo Group)
ContextMenuHandlers1_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers4_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ KingsoftOfficePDF.ContextMenu] -> {1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [kpdf2wordshellext] -> {70239788-4DAE-49B8-9270-5D8614384B49} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {004D33E5-E1BA-4C14-9885-A8DE71238D20} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () [File not signed]
Task: {161017CA-4780-489F-A50F-64C0C4D41FE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {19017404-B395-496B-A1D3-21810BF9020F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {286F9C62-6A92-4D12-A35A-605B842DDCE9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {2F720788-0C17-4F93-84D9-B1C2B5ADE1F6} - \Avast Emergency Update -> No File <==== ATTENTION
Task: {60AF307E-3A4F-44FE-B0AE-9FD225FF8972} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1903.4-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {8CC1FC1F-3F08-4D99-A3E9-F5D498E6670B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe
Task: {B2D505C4-9C5C-438D-A1AC-D3E59B81C410} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {B392D498-D55F-4EF1-82D2-07C2E741DE49} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {B88FF234-F77C-4A4F-B53C-47C5526D1C88} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {C4FEEECC-22D6-4B60-A388-77E9E24280FC} - System32\Tasks\RogueKiller Anti-Malware => C:\Program Files\RogueKiller\RogueKiller64.exe (Adlice -> )
Task: {CA67FEFA-AC8D-4328-B57E-28935D28CE97} - System32\Tasks\WpsUpdateTask_Pequeñito => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe
Task: {ECA82CCE-ACBB-45A9-A792-4965B566870E} - System32\Tasks\WpsExternal_Pequeñito_20190409101416 => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe
Task: {FE449ED6-F0F9-498E-8DB0-FD6D49D1A949} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\Dr.Web Daily scan.job => C:\Program Files\DrWeb\dwscanner.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2019-03-15 01:21 - 2019-03-15 01:22 - 032393728 _____ (Dolby) [File not signed] C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220\DolbyUWP.dll
2019-03-15 01:21 - 2019-03-15 01:22 - 000948736 _____ () [File not signed] C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220\e_sqlite3.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\50131895.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\87063515.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DrWebEngine => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TKFsAvM => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TKFsFtM => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TKPcFt => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TKRgAc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TKRgFt => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\50131895.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\87063515.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DrWebEngine => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TKFsAvM => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TKFsFtM => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TKPcFt => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TKRgAc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TKRgFt => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-09-15 09:31 - 2018-09-15 09:31 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
HKLM\...\StartupApproved\Run: => "SpIDerAgent"
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk"
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\...\StartupApproved\Run: => "OneDrive"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [TCP Query User{700F8D8D-5997-466D-AD14-03AB15998B93}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [UDP Query User{A39732F2-86FC-485F-A588-A9431364EB8A}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [TCP Query User{E460C643-8C3E-4828-9767-F65AF0E77D03}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [UDP Query User{870F5057-BDC1-4E97-A4C9-D518241B3AF0}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [TCP Query User{92184ED3-6D07-4053-916E-D1650009F26D}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe (Christian Hackbart -> CM&V Hackbart)
FirewallRules: [UDP Query User{49B88C9E-8DB8-473C-BDBB-BE62A9389FEC}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe (Christian Hackbart -> CM&V Hackbart)
FirewallRules: [{F0C66017-F09C-43F0-BD4F-AE05033D731D}] => (Allow) C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe No File
FirewallRules: [{43D7C4AB-2604-4FF1-B2D4-5D5B6CD735F9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
==================== Restore Points =========================
01-04-2019 16:48:34 Installed LibreOffice
08-04-2019 14:01:18 Windows Update
10-04-2019 16:23:56 Removed Avast Driver Updater
10-04-2019 17:07:48 Installed LibreOffice
==================== Faulty Device Manager Devices =============
Name: Realtek PCIe FE Family Controller
Description: Controladora Realtek PCIe FE Family
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: rt640x64
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
Error: (04/13/2019 08:22:49 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/13/2019 08:22:47 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/13/2019 01:49:08 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/13/2019 01:49:08 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/13/2019 01:49:07 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/12/2019 01:47:11 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa CvrtMate.exe (versión dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
Id. de proceso: 948
Hora de Inicio: 01d4f112d1119da3
Hora de finalización: 55
Ruta de la aplicación: C:\Users\Pequeñito\AppData\Local\EZSoftMagic\MP3 Audio Converter\CvrtMate.exe
Id. de informe: 0f8e3f74-1586-496a-b982-e9e85af47b4b
Nombre completo del paquete con errores:
Id. de la aplicación relativa al paquete con errores:
Tipo de bloqueo: Unknown
Error: (04/12/2019 09:54:13 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
Error: (04/12/2019 09:54:12 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Error de la activación de licencia (slui.exe) con el siguiente código:
Argumentos de línea de comandos:
System errors:
Error: (04/13/2019 08:25:16 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID
No disponible
al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:25:16 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID
No disponible
al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:25:16 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID
No disponible
al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:23:23 PM) (Source: DCOM) (EventID: 10016) (User: PEQUEÑITO)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID
al usuario PEQUEÑITO\Pequeñito con SID (S-1-5-21-4285004602-114342504-2893149386-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:23:17 PM) (Source: DCOM) (EventID: 10016) (User: PEQUEÑITO)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID
al usuario PEQUEÑITO\Pequeñito con SID (S-1-5-21-4285004602-114342504-2893149386-1001) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:21:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID
al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:21:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID
al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.
Error: (04/13/2019 08:21:13 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: El equipo se reinició después de una comprobación de errores. La comprobación de errores fue: 0x000000a0 (0x000000000000010a, 0x000000000000000a, 0xffffd1041e4fc410, 0xffffffffc0000001). Se guardó un volcado en: C:\Windows\Minidump\041319-54468-01.dmp. Id. de informe: 6529ce31-e8e2-49e1-9ace-deb2417c69a9.
Windows Defender:
Date: 2019-04-10 13:11:15.483
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {CD6CF116-536D-499D-818D-8BFCFDDD92DE}
Tipo de examen: Antimalware
Parámetros de examen: Examen completo
Usuario: PEQUEÑITO\Pequeñito
Date: 2019-04-09 09:19:50.031
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {12DA3E91-7744-4243-9ABA-55704C7F296B}
Tipo de examen: Antimalware
Parámetros de examen: Examen completo
Usuario: PEQUEÑITO\Pequeñito
Date: 2019-04-08 00:17:11.255
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {3FAADCFF-A2AE-4D96-B23D-81A326CDA615}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Date: 2019-04-08 00:06:21.732
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {E81BBEE9-3FBC-40CA-BFB3-A17491AD98CB}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Date: 2019-04-08 00:01:13.776
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {FF2526BA-D511-46E3-8AB3-7FB3E0754ED0}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Date: 2019-04-11 12:04:53.027
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores
Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.
Date: 2019-04-11 11:55:37.856
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma:
Versión de firma anterior: 1.291.1573.0
Origen de actualización: Servidor de Microsoft Update
Tipo de firma: AntiVirus
Tipo de actualización: Completa
Versión de motor actual:
Versión de motor anterior: 1.1.15800.1
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores
Date: 2019-04-11 11:44:26.932
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores
Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.
Date: 2019-04-10 20:01:55.091
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores
Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.
Date: 2019-04-10 19:56:25.317
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores
Motivo: La protección antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.
Date: 2019-03-18 14:34:27.064
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\NANO Antivirus\bin\nanoav.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-03-18 14:34:25.287
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\NANO Antivirus\bin\nanoav.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-03-18 14:34:24.193
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\NANO Antivirus\bin\nanoav.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-03-18 14:34:23.348
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\NANO Antivirus\bin\nanoav.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Atom(TM) CPU N570 @ 1.66GHz
Percentage of memory in use: 88%
Total physical RAM: 2037.29 MB
Available physical RAM: 226.98 MB
Total Virtual: 3125.29 MB
Available Virtual: 1219.23 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:297.46 GB) (Free:255.29 GB) NTFS
Drive d: (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from drive)]
\\?\Volume{1797b1cb-0000-0000-0000-500600000000}\ (Reservado para el sistema) (Fixed) (Total:0.54 GB) (Free:0.11 GB) NTFS
==================== MBR & Partition Table ==================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 1797B1CB)
Partition 1: (Not Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=297.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
MUY Importante Realiza una copia de seguridad del registro :
Para hacerlo descarga DelFix.exe( en tu escritorio).
Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).
Atención, ahora marca/selecciona únicamente la casilla "Create registry backup", las demás NO.
Pulsar en Run.
Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.
A continuación inicia tu equipo desde el Modo Seguro de Windows sin función de red
Con los demás programas cerrados ve a Inicio Ejecutar y escribe Notepad.exe.
- Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
S3 AvastWscReporter; "C:\Program Files\AVAST Software\Avast\wsc_proxy.exe" /runassvc [X]
S3 wpscloudsvr; "C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\wpscloudsvr.exe" LocalService [X]
2019-04-10 13:21 - 2019-04-10 13:21 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-04-10 13:18 - 2019-04-11 12:09 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-04-09 09:28 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\IObit
2019-04-09 09:27 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\LocalLow\IObit
2019-04-09 09:22 - 2019-04-10 19:40 - 000000000 ____D C:\ProgramData\IObit
2019-04-09 09:22 - 2019-04-09 09:22 - 000000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2019-04-10 15:31 - 2019-04-10 13:27 - 002642528 _____ () C:\Users\Pequeñito\AppData\Local\Temp\AvastBrowserUninstall.exe_{FF2EEFB7-7D10-4D8D-A1D2-9DDE9E6B6D18}.exe
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers4_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ KingsoftOfficePDF.ContextMenu] -> {1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [kpdf2wordshellext] -> {70239788-4DAE-49B8-9270-5D8614384B49} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
Task: {004D33E5-E1BA-4C14-9885-A8DE71238D20} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () [File not signed]
Task: {2F720788-0C17-4F93-84D9-B1C2B5ADE1F6} - \Avast Emergency Update -> No File <==== ATTENTION
Task: {8CC1FC1F-3F08-4D99-A3E9-F5D498E6670B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe
FirewallRules: [{F0C66017-F09C-43F0-BD4F-AE05033D731D}] => (Allow) C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe No File
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio Esto es muy importante.
Nota Es importante que la herramienta FRST.exe (Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.
- Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).
- Presionar el botón FIX y aguardar a que termine.
- La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).
Pega el contenido de este fichero en tu próxima respuesta.
Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.
Un saludo
Fix result of Farbar Recovery Scan Tool (x64) Version: 17.03.2019
Ran by Pequeñito (14-04-2019 19:01:58) Run:3
Running from C:\Users\Pequeñito\Desktop
Loaded Profiles: Pequeñito (Available Profiles: Pequeñito)
Boot Mode: Safe Mode (minimal)
fixlist content:
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
S3 AvastWscReporter; "C:\Program Files\AVAST Software\Avast\wsc_proxy.exe" /runassvc [X]
S3 wpscloudsvr; "C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\wpscloudsvr.exe" LocalService [X]
2019-04-10 13:21 - 2019-04-10 13:21 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-04-10 13:18 - 2019-04-11 12:09 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-04-09 09:28 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\Roaming\IObit
2019-04-09 09:27 - 2019-04-10 19:40 - 000000000 ____D C:\Users\Pequeñito\AppData\LocalLow\IObit
2019-04-09 09:22 - 2019-04-10 19:40 - 000000000 ____D C:\ProgramData\IObit
2019-04-09 09:22 - 2019-04-09 09:22 - 000000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2019-04-10 15:31 - 2019-04-10 13:27 - 002642528 _____ () C:\Users\Pequeñito\AppData\Local\Temp\AvastBrowserUninstall.exe_{FF2EEFB7-7D10-4D8D-A1D2-9DDE9E6B6D18}.exe
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49}\InprocServer32 -> C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers4_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_.DEFAULT: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [ KingsoftOfficePDF.ContextMenu] -> {1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdfcontextmenushellext\kpdfcontextmenushellext64.dll -> No File
ContextMenuHandlers1_S-1-5-21-4285004602-114342504-2893149386-1001: [kpdf2wordshellext] -> {70239788-4DAE-49B8-9270-5D8614384B49} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
ContextMenuHandlers5_S-1-5-21-4285004602-114342504-2893149386-1001: [ qingshellext] -> {67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\qingshellext64.dll -> No File
Task: {004D33E5-E1BA-4C14-9885-A8DE71238D20} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () [File not signed]
Task: {2F720788-0C17-4F93-84D9-B1C2B5ADE1F6} - \Avast Emergency Update -> No File <==== ATTENTION
Task: {8CC1FC1F-3F08-4D99-A3E9-F5D498E6670B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe
FirewallRules: [{F0C66017-F09C-43F0-BD4F-AE05033D731D}] => (Allow) C:\Users\Pequeñito\AppData\Local\Kingsoft\WPS Office\\office6\wps.exe No File
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
Error: Restore point can only be created in normal mode.
Processes closed successfully.
"C:\Windows\system32\GroupPolicy\Machine" => not found
HKLM\SOFTWARE\Policies\Mozilla => not found
AvastWscReporter => service not found.
wpscloudsvr => service not found.
"C:\Windows\System32\Tasks\Avast Software" => not found
"C:\Program Files\Common Files\AVAST Software" => not found
"C:\Users\Pequeñito\AppData\Roaming\IObit" => not found
"C:\Users\Pequeñito\AppData\LocalLow\IObit" => not found
"C:\ProgramData\IObit" => not found
"C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}" => not found
"C:\Users\Pequeñito\AppData\Local\Temp\AvastBrowserUninstall.exe_{FF2EEFB7-7D10-4D8D-A1D2-9DDE9E6B6D18}.exe" => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => invalid subkey removed.
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => invalid subkey removed.
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
"HKU\\Software\Classes\*\ShellEx\ContextMenuHandlers\ qingshellext" => not found
HKLM\Software\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
"HKU\\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ qingshellext" => not found
HKLM\Software\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
"HKU\\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ qingshellext" => not found
HKLM\Software\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\ qingshellext => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\ KingsoftOfficePDF.ContextMenu => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Classes\CLSID\{1ECDA7BF-4DFA-41D8-9380-1A27B26CFC41} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\kpdf2wordshellext => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ qingshellext => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ qingshellext => not found
HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Classes\CLSID\{67F4D210-BFC2-4ADD-9A2A-C9B9E1F42C4F} => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{004D33E5-E1BA-4C14-9885-A8DE71238D20}" => not found
"C:\Windows\System32\Tasks\klcp_update" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\klcp_update" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2F720788-0C17-4F93-84D9-B1C2B5ADE1F6}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Emergency Update" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CC1FC1F-3F08-4D99-A3E9-F5D498E6670B}" => not found
"C:\Windows\System32\Tasks\Avast Software\Overseer" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F0C66017-F09C-43F0-BD4F-AE05033D731D}" => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
========= RemoveProxy: =========
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-4285004602-114342504-2893149386-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
========= End of RemoveProxy: =========
========= netsh winsock reset =========
El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.
========= End of CMD: =========
========= ipconfig /renew =========
Configuraci¢n IP de Windows
========= End of CMD: =========
========= ipconfig /flushdns =========
Configuraci¢n IP de Windows
No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n.
========= End of CMD: =========
========= bitsadmin /reset /allusers =========
BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.
Unable to connect to BITS - 0x8007043c
El servicio no puede iniciarse en modo a prueba de errores
========= End of CMD: =========
========= netsh advfirewall reset =========
Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est ejecutando e intenta la solicitud de nuevo.
========= End of CMD: =========
========= netsh advfirewall set allprofiles state ON =========
Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est ejecutando e intenta la solicitud de nuevo.
========= End of CMD: =========
========= netsh int ipv4 reset =========
No hay valores configurados por el usuario para restablecer.
========= End of CMD: =========
========= netsh int ipv6 reset =========
No hay valores configurados por el usuario para restablecer.
========= End of CMD: =========
=========== EmptyTemp: ==========
BITS transfer queue => 7626752 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8425410 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 0 B
Edge => 0 B
Chrome => 8330896 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
Pequeñito => 17883 B
RecycleBin => 0 B
EmptyTemp: => 23.3 MB temporary data Removed.
The system needed a reboot.
==== End of Fixlog 19:07:00 ====
parece que algo no salió bien…
A que te refieres?
Un saludo
Pues que en principio la cosa sigue igual, no ha desaparecido el tener que seleccionar cada reinicio el SO. También me parece ver error de tener que hacer la ejecución desde modo normal.
Luego me he dado cuenta que se podía eliminar desde msconfig/arranque, pero nada al eliminar cuando reinicio vuelve a aparecer.
Del log que muestro está bien?, aparece algo más además de lo que busco?. Falta algo o algo no he hecho bien. Como lo ves, yo como te digo sigue igual.
Gracias, saludos
Descarga SystemLook en tu escritorio desde uno de los siguientes enlaces, según tengas Windows de 32 o de 64 Bites.
Como saber si Mi Windows es de 32 o de 64 Bits ?
- SystemLook–>Para sistemas de 32 Bits.
- SystemLook_x64–> Para sistemas de 64 Bits.
Una vez descargado realiza lo siguiente:
Hacer doble clic al archivo SystemLook para ejecutarlo.(Si usas Windows Vista, 7/8 presiona clic derecho y selecciona “Ejecutar como Administrador.”)
Copia y pega el texto del interior del recuadro de aquí abajo, en la ventana del programa y pulsa en Look.
:filefind *Avast* :regfind Avast
Espera unos segundos hasta que finalice la búsqueda.
Al acabar se abrirá en el bloc de notas un reporte que debes copiar y pegar en este tema.
Nota: Ese reporte también quedará en el archivo SystemLook.txt del escritorio.
Un saludo
parece que está resuelto…
Searching for " :regfind "
No files found.
Searching for " Avast "
No files found.
-= EOF =-
El reporte de SystemLook no está completo, lo que has puesto no detecta nada de Avast.
Hiciste algo aparte para resolver el problema o se solucionó con algún paso que hicimos?
Sigue estos pasos, para eliminar las herramientas utilizadas:
Para hacerlo utiliza de nuevo/descarga >> DelFix.exe en tu escritorio.
Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador)
Marca todas las casillas, y pulsas en Run
Se abrirá el informe (DelFix.txt), puedes cerrarlo.
Confirma si sigue todo bien.
Un saludo
Lo puse pero solo salía eso, el caso es que si que hice algo que conseguí eliminar lo que me faltaba. Lo que no se si además de resolverse eso saldría algo más, en los reportes que envié no se si por casualidad saldría algún bicho o intruso aprobechando el momento de usar Farbar. En los resultados yo no se mirarlo. El caso es que se solucionó lo que buscaba. Se puede cerrar el tema si quieres.
Hola @selohu
No tenías ningún intruso
Gracias por confiar en ForoSpyware. Ha sido un placer ayudarte
Nos alegramos que se te haya resuelto :Bien: Damos el tema por solucionado.
Un saludo
Hola @selohu
Realiza de nuevo las últimas indicaciones que te di:
Pon el informe completo para poder revisarlo.
Un saludo