Ayuda contra hackeos del wifi

Hola, muy buenas.

Primero de todo, me disculpo si mi consulta no va con este foro, he intentado leer las reglas y todo eso y no sé dónde podría consultar esto.

Mi problema es que sospecho que me están hackeando a mí y a mi familia todos los móviles, ordenadores, cámaras de seguridad, etc., por lo que solo se me ocurre que haya sido a través de la conexión wifi, porque ya hemos probado a formatear y no creemos tener ningún malware (por eso no estoy segura de ser este foro adecuado, de verdad lo siento por esto). De ser mis sospechas ciertas, tienen hasta acceso a mis conversaciones de Telegram, por lo que la gente no me suele creer cuando les cuento mi problema, pero estamos sufriendo una situación de acoso y ya está todo más que denunciado a la policía desde hace mucho tiempo para que investiguen, pero a saber cuando aquí alguien nos hace caso. Por eso me gustaría saber si hay algo que podamos hacer mientras tanto. Saludos y gracias de antemano. Este mensaje lo estoy escribiendo desde un pc que no va por wifi sino por cable ethernet, pero ni así me siento tranquila.

Hola

Lo primero resetea el router a fabrica y luego cambie la clave que viene por defecto…con ello la conexion seria segura

Por lo demas, para que algo asi suceda,hakear todos los paratos…es muuuyy dificil

Que síntomas ves para creer eso?

¡Muchísimas gracias por responder tan rápido!

Vale, justo hoy cambié la contraseña del router, pero no estaba segura si eso servía de algo. Si reseteo a valores de fábrica me dejarian de funcionar las cosas que tengo conectadas? o con meter la contraseña valdria, por ejemplo?

Pues como decía, estamos sufriendo una situación de acoso durante todo el verano. Sospechábamos que usaban inhibidores contra nuestras cámaras que van por cable pero nos han asegurado que es imposible, al no ser que accedan de alguna forma y borren los fragmentos en los que ocurre algo. Saben cosas que solo podrían saber de habernos leido las conversaciones. Esperábamos correos y empezamos a comentar que extrañamente nos llegaba lo poco importante, pero ningún correo importante. Las noches que me dormía sin apagar el wifi del móvil, a la mañana siguiente me salían búsquedas en Google que nadie habíamos hecho y alguna app cambiada de sitio y a mi me salía que tenía un nuevo contacto pero luego no lo encontraba. Nos pasó varias veces que al llamar a alguien de pronto se nos ponía a llamar a alguien de nuestros contactos que no estaba en llamadas recientes ni nada (al principio pensaba que era mi torpeza pero es que no solo me pasaba a mí) Se reían de búsquedas que habíamos hecho. Si decimos/escribimos algo a ver cómo reaccionan, al no ser que me esté volviendo loca, se ríen y reaccionan (les podemos oir lo que pasa que hablan en susurros). Una vez hasta oimos la musiquita de notificacion del Wassap de mi movil sonando al mismo tiempo en su casa. Oimos que a veces se activan las cámaras wifi solas de nuestro jardin. La verdad es que es todo muy extraño porque a veces de repente no podemos encender el aire acondicionado, los electrodomesticos se encienden solos o el portero automatico no va e incluso en el coche hemos notado cosas (por lo que sospechamos del inhibidor aun asi). Además coincide que esperaban a que dejase de usar el móvil como señal de que me había dormido para inhibir las cámaras y hacer lo que sea que nos hagan. Es todo muy extraño, por lo que todo el mundo nos dice que no pueden ser tan buenos hackeando, pero que pasan cosas extrañas, suceden.

Echando la vista atrás, casi al principio del todo recibimos una llamada muy extraña. Colgamos rápidamente, pero… es que ya no sabemos qué pensar. En fin, son muchas cosas de estar más de un mes en la situación que estamos

lo de hackear todos los aparatos de la casa etcétera etcétera sinceramente me parece casi imposible que se puede realizar eso … Para yo tendría que ser gente muy profesional y obtener algún tipo de beneficio…

Ejecuta esto desde alguno de los pcs que tengas en tu vivienda

  • Desactiva Temporalmente tu antivirus y cualquier programa de seguridad.

  • Descarga a Tu Escritorio >> Esto es muy importante<<.,Fabar Recovery Scan Tool, considerando la versión adecuada para tu equipo. (32 o 64 bits) :arrow_forward: ¿Cómo saber si mi Windows es de 32 o 64 bits?

  • Doble clic para ejecutar Frst.exe. En la ventana del Disclaimer, presiona Si.

  • En la nueva ventana que se abre, presiona el botón Analizar y espera a que concluya el análisis.

  • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, que estarán grabados en Tu escritorio.

En Tu próxima respuesta, copias y pegas los dos reportes Frst.txt y Addition.txt de FRST

Nota: Si el/los reportes solicitados no entraran en una sola respuesta porque superan la cantidad de caracteres permitidos, puedes utilizar dos o mas respuestas para pegarlos completamente.

Es que es gente a la que han contratado! Eso sí lo sabemos porque hasta un técnico ha corroborado que estamos rodeados de cámaras con micrófonos. Lo que pasa que tampoco creíamos que fueran super especiales (porque deben ser conocidos y amigos de), pero las cosas que están pasando no son normales. Soy consciente de que puede ser todo una casualidad, pero en fin es por descartar opciones y ver si nos podemos proteger (porque desde luego algo saben, que desde el día del técnico desaparecieron las tropecientas conexiones al wifi que salen como cercanas con señal (,móviles que no eran nuestros, etc).

Muchas gracias, haré todo eso y ahora pongo los informes

Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 19-08-2020
Ejecutado por Pilar (administrador) sobre ACER_MAMÁ (Acer Aspire E5-573G) (20-08-2020 00:05:03)
Ejecutado desde C:\Users\Pilar\Desktop
Perfiles cargados: Pilar
Platform: Windows 10 Home Versión 1903 18362.1016 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Edge
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(CyberLink Corp. -> ) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <23>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Hewlett Packard -> Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 5540 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Pilar\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12007.1001.2.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\MsMpEng.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe <3>
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13874392 2015-01-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1514528 2015-01-16] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Archivo no firmado]
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [91488 2017-09-28] (Acer Incorporated -> )
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\Run: [HP ENVY 5540 series (NET)] => C:\Program Files\HP\HP ENVY 5540 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\Run: [GoogleChromeAutoLaunch_7C9302273C71C175A9A7B9FA493A4F70] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\Run: [Advanced SystemCare] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3637008 2020-06-19] (IObit Information Technology -> IObit)
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe  --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --restore-last-session -- microsoft-edge:hxxps://www.bing.com/sea (la entrada de datos tiene 139 más caracteres).
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe  --no-startup-window /prefetch:5 --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --origin-trial-disabled-features=M (la entrada de datos tiene 108 más caracteres).
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\MountPoints2: {d0727ff6-477d-11e6-8278-2c600c821ad4} - "D:\SETUP.EXE" 
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\System32\Magnify.exe [446464 2019-11-16] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\HP CE11 Status Monitor: C:\WINDOWS\system32\hpinkstsCE11LM.dll [383496 2014-12-18] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP ENVY 5540 series): C:\WINDOWS\system32\HPDiscoPMCE11.dll [807432 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\Installer\chrmstp.exe [2020-08-19] (Google LLC -> Google LLC)
GroupPolicy: Restricción ? <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {08E72015-4F6F-4C51-9B08-A7074907BE88} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe [1471032 2020-08-17] (Adobe Inc. -> Adobe)
Task: {157E084A-7F4D-4538-93EB-6DD90B640A48} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Ningún archivo <==== ATENCIÓN
Task: {1A4D383E-FC10-478B-8B63-AC3B34BE0F4F} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474344 2014-06-09] (Acer Incorporated -> Acer Incorporated)
Task: {2A666008-99E4-4D57-8654-0868595DBC3E} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41728 2014-08-30] (Acer Incorporated -> )
Task: {2D982E16-91CA-4997-9DD7-49FBC61438D9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Ningún archivo <==== ATENCIÓN
Task: {31FFAAC2-AE56-4BE5-BE21-0EC7D24DBB17} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Ningún archivo <==== ATENCIÓN
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {3D8DBA26-3C79-4D93-AADE-E4F49D407EF8} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328 2015-02-03] (Acer Incorporated -> Acer Incorporated)
Task: {3DC4F5C2-63A0-40C9-9864-5468211AADF5} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Ningún archivo <==== ATENCIÓN
Task: {3E9CC8E7-CEF8-4C1F-A3A7-71DC7DFB016C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Ningún archivo <==== ATENCIÓN
Task: {472BA8F5-16A4-450B-8782-4ECF49177C50} - System32\Tasks\0216pizUpdateInfo => C:\ProgramData\Avg_Update_0216piz\0216piz_AVG-Secure-Search-Update.exe [2859592 2016-02-16] (AVG Technologies CZ, s.r.o. -> )
Task: {5096DC6E-FD4D-4107-A800-EE76B3882B5A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-03] (Google Inc -> Google Inc.)
Task: {585EC259-0415-4B34-A825-2C579EE08993} - System32\Tasks\ASC_SkipUac_Pilar => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [8947984 2020-06-22] (IObit Information Technology -> IObit)
Task: {58DF980D-8ECC-4A1E-9D40-38073798BA91} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [100608 2014-08-30] (Acer Incorporated -> )
Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {6349DFEE-6AAE-4179-BFD3-B5A0F9594DE0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {645B7D85-CA53-4413-B116-2EE31DEFE2F7} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [384232 2015-01-28] (Acer Incorporated -> Acer Incorporated)
Task: {65F46EF9-F8F7-461C-AD6A-4F69D3BD2478} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-17] (Adobe Inc. -> Adobe)
Task: {68186CA5-C6A7-4BF6-AD9F-D27E97A7018B} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [419048 2015-01-26] (Acer Incorporated -> Acer Incorporate)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {7041C1E9-45F0-4318-8FD8-36C3D30C861E} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65824 2017-09-26] (Acer Incorporated -> Acer Incorporated)
Task: {72D9603E-C5B1-44A5-A019-1E6F4EBFA6BF} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Ningún archivo <==== ATENCIÓN
Task: {7329B995-A20C-4AEF-8FCE-693E0FF22A18} - System32\Tasks\DropboxOEM => c:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [478576 2014-12-12] (Dropbox, Inc -> )
Task: {7A2ABE15-5915-4EF2-B9BE-8D684E3B1B8A} - System32\Tasks\Uninstaller_SkipUac_Pilar => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [6041360 2020-07-08] (IObit Information Technology -> IObit)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {89EA6FF9-2A90-4D87-BA4C-16163C11AF6E} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [490728 2014-06-17] (Acer Incorporated -> Acer Incorporated)
Task: {95107BA4-5473-409B-8E0C-731B545A11FD} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Ningún archivo <==== ATENCIÓN
Task: {960610A4-E4EB-4C1B-9734-0EF2111120B3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A25AD334-54C0-489B-86E2-C78E3184581C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Ningún archivo <==== ATENCIÓN
Task: {A7479290-082D-49BD-B247-FED7FF1F0BA3} - System32\Tasks\HP AR Program Upload - f4e57c5a376a4d3c8c33bcb080afcefcdad7105f62844146b16bb45dbf1ffd42 => C:\Program Files\HP\HP ENVY 5540 series\bin\HPRewards.exe [3871240 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
Task: {C1F72371-3B36-4F19-8296-1E5A9376581A} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [3183888 2020-06-01] (IObit Information Technology -> IObit)
Task: {C909454C-14CB-47E1-B591-393DF4D50BB5} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Ningún archivo <==== ATENCIÓN
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {D2CBF6C1-9DE4-453C-AD2B-CA18DE7D15FC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Ningún archivo <==== ATENCIÓN
Task: {D47157C5-311C-4977-A815-3D35128C5C5A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Ningún archivo <==== ATENCIÓN
Task: {D820ABE6-5865-4FF0-946A-7EAE04D039F2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DD276534-3CA4-4915-988E-1F9AA1A85728} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-03] (Google Inc -> Google Inc.)
Task: {DFF2716A-9978-4791-98AE-2BF5C363692A} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {E2B3EEB9-0B1A-4D35-BF91-1C2472E6C620} - System32\Tasks\abDocsDllLoader => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2017-09-28] (Acer Incorporated -> )
Task: {EAD8FB5D-C409-4BC0-BA3B-BE8CBA025882} - \Microsoft\Windows\UNP\RunCampaignManager -> Ningún archivo <==== ATENCIÓN
Task: {ECF17EF4-C0D9-4DCC-8D4C-399D5B61BC7E} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328 2015-02-03] (Acer Incorporated -> Acer Incorporated)
Task: {F513F918-179E-4047-A42E-7819733FCA06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F520C717-4A88-48C1-A13C-DCE9C117FCEE} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Ningún archivo <==== ATENCIÓN
Task: {FD9E92CB-0EAB-4356-9F1A-12400C42A0ED} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Ningún archivo <==== ATENCIÓN

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\0216pizUpdateInfo.job => C:\ProgramData\Avg_Update_0216piz\0216piz_AVG-Secure-Search-Update.exe
Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 80.58.61.250 80.58.61.254
Tcpip\..\Interfaces\{9c5e266a-903b-416c-87bc-d08ef57c3948}: [DhcpNameServer] 80.58.61.250 80.58.61.254
Tcpip\..\Interfaces\{b05a1b08-c729-4d75-b5b8-2773fa93e68a}: [DhcpNameServer] 80.58.61.250 80.58.61.254

Internet Explorer:
==================
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={789CFFAD-AB01-4B71-92AC-DF5B45AD6FD9}&mid=69315fe739e647cc89fafd294a66f327-8e0cd5bd8c6fb15e3bae3a3437a8f31c58df5cc0&lang=es&ds=AVG&coid=avgtbavg&cmpid=0516avz&pr=fr&d=2016-04-23 17:45:44&v=4.3.1.831&pid=wtu&sg=&sap=hp
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://es.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://es.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1533122075-3619368927-2184344722-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={789CFFAD-AB01-4B71-92AC-DF5B45AD6FD9}&mid=69315fe739e647cc89fafd294a66f327-8e0cd5bd8c6fb15e3bae3a3437a8f31c58df5cc0&lang=es&ds=AVG&coid=avgtbavg&cmpid=0516avz&pr=fr&d=2016-04-23 17:45:44&v=4.3.1.831&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1533122075-3619368927-2184344722-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://es.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2020-01-31] (IObit Information Technology -> IObit)
BHO: Sin Nombre -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Ningún archivo
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

Edge: 
======
Edge Extension: (Traductor para Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.51.0_neutral__8wekyb3d8bbwe [2019-02-03]
Edge Profile: C:\Users\Pilar\AppData\Local\Microsoft\Edge\User Data\Default [2020-08-19]

FireFox:
========
FF Plugin: @itstructures.com/ffactivex -> C:\WINDOWS\SysWOW64\npffax.dll [2013-12-20] () [Archivo no firmado]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @itstructures.com/ffactivex -> C:\WINDOWS\SysWOW64\npffax.dll [2013-12-20] () [Archivo no firmado]

Chrome: 
=======
CHR Profile: C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default [2020-08-20]
CHR Notifications: Default -> hxxps://mail.google.com; hxxps://web.telegram.org; hxxps://www.movistar.es; hxxps://www.tudespensa.com
CHR Session Restore: Default -> está habilitado.
CHR Extension: (Presentaciones) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Documentos) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-03]
CHR Extension: (YouTube) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-03]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-08-17]
CHR Extension: (Hojas de cálculo) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Save and Backup My Emails by cloudHQ) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkbapenokeefpiaefagkinjhadmhjgmg [2020-06-14]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-08-18]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2017-09-02]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-25]
CHR Extension: (Chrome Media Router) - C:\Users\Pilar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-27]
CHR HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-17] (Adobe Inc. -> Adobe)
R2 AdvancedSystemCareService13; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1293072 2020-06-15] (IObit Information Technology -> IObit)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2015-01-28] (Acer Incorporated -> Acer Incorporated)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [156944 2020-07-08] (IObit Information Technology -> IObit)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [471784 2015-01-26] (Acer Incorporated -> Acer Incorporate)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [476904 2015-02-03] (Acer Incorporated -> Acer Incorporated)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-10-08] (CyberLink Corp. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13109264 2020-06-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [242944 2015-01-06] (Acer Incorporated -> acer)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\NisSrv.exe [2169568 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MsMpEng.exe [128376 2020-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [45432 2019-07-15] (IObit Information Technology -> IObit)
R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [46008 2019-07-15] (IObit Information Technology -> IObit)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2019-09-12] (Microsoft Corporation) [Archivo no firmado]
R3 cpuz145; C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [49968 2020-08-19] (CPUID -> CPUID)
S3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [309120 2020-03-09] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
R3 iobit_monitor_server; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [32520 2018-07-04] (IObit Information Technology -> IObit)
R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [44104 2020-07-08] (IObit Information Technology -> IObit)
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37328 2020-07-08] (IObit Information Technology -> IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [49800 2020-07-08] (IObit Information Technology -> IObit)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-16] (Acer Incorporated -> Acer Incorporated)
R1 MpKslDrv; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DC3A1827-4519-4441-8ABD-45256BB8DD56}\MpKslDrv.sys [73952 2020-08-19] (Microsoft Windows -> Microsoft Corporation)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-16] (Acer Incorporated -> Acer Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [78216 2020-08-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [430320 2020-08-09] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [98520 2020-08-09] (Microsoft Windows -> Microsoft Corporation)
S2 MBAMChameleon; \SystemRoot\System32\Drivers\MbamChameleon.sys [X]

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-08-20 00:05 - 2020-08-20 00:07 - 000029671 _____ C:\Users\Pilar\Desktop\FRST.txt
2020-08-20 00:03 - 2020-08-20 00:06 - 000000000 ____D C:\FRST
2020-08-20 00:02 - 2020-08-20 00:03 - 002297344 _____ (Farbar) C:\Users\Pilar\Desktop\FRST64.exe
2020-08-19 06:11 - 2020-08-19 06:11 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2020-08-19 06:11 - 2020-08-19 06:11 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2020-08-19 06:06 - 2020-08-19 06:06 - 000000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2020-08-19 01:41 - 2020-08-19 01:41 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-08-18 17:22 - 2020-08-18 17:22 - 064003328 _____ (Google LLC) C:\Users\Pilar\Downloads\ChromeStandaloneSetup64.exe
2020-08-17 22:00 - 2020-08-17 22:00 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 018032128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 006294528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 005904896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 003822592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 003516416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2020-08-17 22:00 - 2020-08-17 22:00 - 002950808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 002588688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 002422384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 002259192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 002138280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 001870200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001836160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001418832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000738064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 000724480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000343408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2020-08-17 22:00 - 2020-08-17 22:00 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-08-17 22:00 - 2020-08-17 22:00 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 025903104 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 022642688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 019852288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 007758848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 007270912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 006526448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 006074552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 005767224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 005003824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 004859904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 004611072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 003743056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 002799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-08-17 21:59 - 2020-08-17 21:59 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-08-17 21:59 - 2020-08-17 21:59 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-08-17 21:59 - 2020-08-17 21:59 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 002583496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001420320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001397576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001282872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-08-17 21:59 - 2020-08-17 21:59 - 001215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 001197056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000894032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000875520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000690536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000675040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000675024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000593480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000572200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000568128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000564488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000379704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-08-17 21:59 - 2020-08-17 21:59 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000165176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000124512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000090936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acwow64.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-08-17 21:59 - 2020-08-17 21:59 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2020-08-17 21:59 - 2020-08-17 21:59 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-08-17 21:59 - 2020-08-17 21:59 - 000000357 _____ C:\WINDOWS\system32\DrtmAuthKeyDelegate_From_20190529_To_20200303.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000357 _____ C:\WINDOWS\system32\DrtmAuth1KeyDelegate.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-08-17 21:59 - 2020-08-17 21:59 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-08-17 21:58 - 2020-08-17 21:59 - 000897648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 014820352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 009932088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 006436864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 005946368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 005849872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 005111296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 003974376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 003806208 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 003368616 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 002766952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002737664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002698048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002085632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 002022400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001740800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001672544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001665024 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001654312 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001587712 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\aadtb.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001482568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 001406464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 001101312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000888352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000867840 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000823744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000822800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000718336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000673088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-08-17 21:58 - 2020-08-17 21:58 - 000463168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000220984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpkinstall.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-08-17 21:58 - 2020-08-17 21:58 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-08-17 21:58 - 2020-08-17 21:58 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-08-17 21:58 - 2020-08-17 21:58 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 007915864 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 007850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 007583272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 007270728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 005283776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 004565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 004005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 003727872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 003581240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 003141632 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 002717696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 002523136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 002471936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 002260312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001756592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-08-17 21:57 - 2020-08-17 21:57 - 001743680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001660536 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001612800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001512848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 001366144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-08-17 21:57 - 2020-08-17 21:57 - 001338368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001182248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 001123344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001055232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000917800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000716312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 000548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000522688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-08-17 21:57 - 2020-08-17 21:57 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000369304 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000152416 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-08-17 21:57 - 2020-08-17 21:57 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-08-17 21:57 - 2020-08-17 21:57 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-08-17 21:56 - 2020-08-17 21:57 - 007297536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 017792512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 004625184 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2020-08-17 21:56 - 2020-08-17 21:56 - 003712000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 002136064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000875424 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000201544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-08-17 21:56 - 2020-08-17 21:56 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-08-17 21:56 - 2020-08-17 21:56 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-08-17 21:56 - 2020-08-17 21:56 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-08-17 21:11 - 2020-07-18 05:07 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-08-17 21:11 - 2020-07-18 04:53 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-08-17 20:37 - 2020-08-17 20:37 - 000003368 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1533122075-3619368927-2184344722-1001
2020-08-17 20:37 - 2020-08-17 20:37 - 000002405 _____ C:\Users\Pilar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-08-09 17:30 - 2020-08-09 17:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2020-08-09 17:27 - 2020-08-19 06:12 - 000000000 ____D C:\Program Files (x86)\Microsoft Works
2020-08-09 17:26 - 2020-08-09 17:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2020-08-09 17:25 - 2020-08-09 17:25 - 000000000 ____D C:\WINDOWS\PCHEALTH
2020-08-09 17:21 - 2020-08-09 17:21 - 000000000 ____D C:\Program Files\Microsoft Office
2020-08-09 17:20 - 2020-08-09 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
2020-08-09 17:20 - 2020-08-09 17:20 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2020-08-09 17:20 - 2020-08-09 17:20 - 000000000 ____D C:\IDE
2020-08-09 17:19 - 2020-08-09 17:26 - 000000000 ____D C:\WINDOWS\SHELLNEW
2020-08-09 17:19 - 2020-08-09 17:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-08-09 17:19 - 2020-08-09 17:19 - 000000000 __RHD C:\MSOCache
2020-08-09 17:19 - 2020-08-09 17:19 - 000000000 ____D C:\Users\Pilar\AppData\Local\Microsoft Help
2020-08-09 17:04 - 2020-08-09 17:03 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-08-09 16:43 - 2020-08-09 16:43 - 000049024 _____ C:\ProgramData\agent.uninstall.1596984181.bdinstall.v2.bin
2020-08-09 16:31 - 2020-08-09 16:31 - 000002944 _____ C:\WINDOWS\system32\Tasks\Uninstaller_SkipUac_Pilar
2020-08-09 16:31 - 2020-08-09 16:31 - 000001446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2020-08-09 16:31 - 2020-08-09 16:31 - 000001306 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2020-08-09 16:31 - 2020-08-09 16:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2020-08-09 16:14 - 2020-08-09 16:14 - 000003102 _____ C:\WINDOWS\system32\Tasks\ASC_PerformanceMonitor
2020-08-09 16:11 - 2020-08-17 20:32 - 000000000 ____D C:\ProgramData\ProductData
2020-08-09 16:11 - 2020-08-09 16:15 - 000000000 ____D C:\Users\Pilar\AppData\LocalLow\IObit
2020-08-09 16:11 - 2020-08-09 16:11 - 000002892 _____ C:\WINDOWS\system32\Tasks\ASC_SkipUac_Pilar
2020-08-09 16:11 - 2020-08-09 16:11 - 000001306 _____ C:\Users\Public\Desktop\Advanced SystemCare.lnk
2020-08-09 16:11 - 2020-08-09 16:11 - 000000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2020-08-09 16:11 - 2020-08-09 16:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2020-08-09 16:11 - 2020-08-09 16:11 - 000000000 ____D C:\ProgramData\{F86B0233-9A85-4589-8AAF-524CC4F8211B}
2020-08-09 16:10 - 2020-08-09 16:31 - 000000000 ____D C:\Program Files (x86)\IObit
2020-08-09 16:07 - 2020-08-17 20:31 - 000000000 ____D C:\ProgramData\IObit
2020-08-09 16:07 - 2020-08-09 16:31 - 000000000 ____D C:\Users\Pilar\AppData\Roaming\IObit
2020-08-09 16:05 - 2020-08-09 16:06 - 050141952 _____ (IObit ) C:\Users\Pilar\Desktop\advanced-systemcare-free-13-6-0-291.exe
2020-07-28 13:28 - 2020-07-28 13:28 - 000864911 _____ C:\Users\Pilar\Desktop\Denuncia 1 (1).pdf
2020-07-28 13:27 - 2020-07-28 13:28 - 000819795 _____ C:\Users\Pilar\Desktop\Denuncia 2.pdf
2020-07-28 13:27 - 2020-07-28 13:27 - 000864911 _____ C:\Users\Pilar\Desktop\Denuncia 1.pdf
2020-07-26 14:08 - 2020-08-17 20:52 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-07-26 14:08 - 2020-08-17 20:52 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-07-26 14:08 - 2020-07-27 10:29 - 000003650 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-26 14:08 - 2020-07-27 10:29 - 000003526 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-26 12:12 - 2020-07-26 12:12 - 001173982 _____ C:\Users\Pilar\Downloads\Denuncia y contestación del pino año 2016 2.pdf
2020-07-26 12:11 - 2020-07-26 12:11 - 001335440 _____ C:\Users\Pilar\Downloads\Denuncia y contestación del pino año 2016.pdf
2020-07-26 10:18 - 2020-07-26 10:18 - 008015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 007823912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 007012864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 005099384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 001346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 001307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000967680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000406992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000345560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-07-26 10:18 - 2020-07-26 10:18 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-26 10:18 - 2020-07-26 10:18 - 000172032 _____ (Microsoft Corporation)
C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
    2020-07-26 10:18 - 2020-07-26 10:18 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001991592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001952880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001581568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001463808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001284608 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000945176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000844096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000793320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000779080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000778872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000695208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000653824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000594992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000582056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000542288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000538664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000522240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
    2020-07-26 10:17 - 2020-07-26 10:17 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000442096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000406992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000405944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000268552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
    2020-07-26 10:17 - 2020-07-26 10:17 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
    2020-07-26 10:17 - 2020-07-26 10:17 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000190056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000176952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000150336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
    2020-07-26 10:17 - 2020-07-26 10:17 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
    2020-07-26 10:17 - 2020-07-26 10:17 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
    2020-07-26 10:17 - 2020-07-26 10:17 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000052152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
    2020-07-26 10:17 - 2020-07-26 10:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
    2020-07-26 10:16 - 2020-07-26 10:17 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 006169088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 003748352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001946144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001827328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001512960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001486848 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 001374208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001371136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001290192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001284608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001068544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 001048992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000889416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000867840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000742712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000684864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000628416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000628024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000549048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000518464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000478296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000467960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000392504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000311608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000311440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000266552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
    2020-07-26 10:16 - 2020-07-26 10:16 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000165840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000086272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
    2020-07-26 10:16 - 2020-07-26 10:16 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
    2020-07-26 10:16 - 2020-07-26 10:16 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 006233080 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 004014592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002505496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002357248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002285056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002264064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002161664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002074112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 002060288 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001877504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001745728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001723392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001604608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001392128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001385696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001271296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001151304 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001086776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001081344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001028336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 001008960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000958608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000919880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000904192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000821232 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000656696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
    2020-07-26 10:15 - 2020-07-26 10:15 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000524784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000411640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000399672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000381152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
    2020-07-26 10:15 - 2020-07-26 10:15 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000340328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000239928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000204608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
    2020-07-26 10:15 - 2020-07-26 10:15 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
    2020-07-26 10:15 - 2020-07-26 10:15 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000146232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000110040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
    2020-07-26 10:15 - 2020-07-26 10:15 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000076952 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000070248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
    2020-07-26 10:15 - 2020-07-26 10:15 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll

    ==================== Un mes (modificado) ==================

    (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

    2020-08-19 23:54 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
    2020-08-19 23:44 - 2016-04-03 21:57 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2020-08-19 23:44 - 2016-04-03 21:57 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2020-08-19 23:43 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
    2020-08-19 23:39 - 2019-08-08 00:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
    2020-08-19 12:36 - 2016-04-03 23:03 - 000000000 ____D C:\Users\Pilar\AppData\Roaming\vlc
    2020-08-19 12:32 - 2018-03-26 13:33 - 000000000 ____D C:\Users\Pilar\Documents\AXIS Companion - Clips
    2020-08-19 11:04 - 2016-04-03 21:49 - 000000000 ___RD C:\Users\Pilar\OneDrive
    2020-08-19 06:10 - 2013-08-22 15:25 - 000000199 _____ C:\WINDOWS\win.ini
    2020-08-19 01:49 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
    2020-08-19 01:47 - 2019-08-08 00:34 - 001773366 _____ C:\WINDOWS\system32\PerfStringBackup.INI
    2020-08-19 01:47 - 2019-03-19 13:59 - 000789814 _____ C:\WINDOWS\system32\perfh00A.dat
    2020-08-19 01:47 - 2019-03-19 13:59 - 000156068 _____ C:\WINDOWS\system32\perfc00A.dat
    2020-08-19 01:42 - 2016-04-03 21:33 - 000000000 __SHD C:\Users\Pilar\IntelGraphicsProfiles
    2020-08-19 01:40 - 2019-08-08 00:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
    2020-08-19 01:40 - 2017-11-11 12:03 - 000000000 ____D C:\Program Files (x86)\TeamViewer
    2020-08-19 01:40 - 2017-07-21 18:09 - 000000000 ____D C:\ProgramData\NVIDIA
    2020-08-19 01:39 - 2019-03-19 06:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
    2020-08-18 17:26 - 2016-04-06 19:33 - 000000000 ____D C:\Users\Pilar\AppData\Local\clear.fi
    2020-08-18 17:01 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
    2020-08-18 16:58 - 2018-04-01 20:38 - 000000000 ___RD C:\Users\Pilar\3D Objects
    2020-08-18 16:58 - 2016-02-13 19:04 - 000000000 __RHD C:\Users\Public\AccountPictures
    2020-08-18 16:56 - 2019-08-08 00:11 - 000616632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
    2020-08-18 16:55 - 2018-06-15 00:14 - 000000000 ____D C:\Program Files\Bitdefender Agent
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\setup
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
    2020-08-17 22:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
    2020-08-17 22:31 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
    2020-08-17 22:16 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
    2020-08-17 20:32 - 2019-09-12 23:56 - 000842296 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2020-08-17 20:32 - 2019-09-12 23:56 - 000175160 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
    2020-08-17 20:32 - 2019-08-08 00:56 - 000004614 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
    2020-08-17 20:32 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
    2020-08-17 20:31 - 2019-12-12 00:31 - 004510264 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
    2020-08-17 20:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
    2020-08-09 17:26 - 2019-08-08 00:25 - 000000000 ____D C:\Program Files (x86)\MSBuild
    2020-08-09 17:23 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
    2020-08-09 17:12 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
    2020-08-09 17:12 - 2018-06-20 19:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
    2020-08-09 17:02 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\ELAM
    2020-08-09 16:48 - 2019-04-16 23:24 - 000000000 ____D C:\Program Files (x86)\EaseUS
    2020-08-09 16:47 - 2018-06-15 00:21 - 000000000 ____D C:\ProgramData\Bitdefender
    2020-08-09 16:47 - 2018-06-14 22:50 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
    2020-08-09 16:45 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
    2020-08-09 16:25 - 2019-08-08 00:56 - 000002122 _____ C:\WINDOWS\system32\Tasks\Quick Access
    2020-08-09 16:25 - 2019-06-21 00:57 - 000000000 ___DC C:\WINDOWS\Panther
    2020-07-29 02:03 - 2019-08-08 00:21 - 000000000 ____D C:\Users\Pilar
    2020-07-26 12:35 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
    2020-07-26 12:34 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\System

    ==================== Archivos en la raíz de algunos directorios ========

    2018-12-09 00:02 - 2018-12-09 00:02 - 000007605 _____ () C:\Users\Pilar\AppData\Local\Resmon.ResmonCfg

    ==================== SigCheck ============================

    (No existe una corrección automática para los archivos que no pasan la verificación.)

    ==================== Final de FRST.txt ========================
Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 19-08-2020
Ejecutado por Pilar (20-08-2020 00:09:54)
Ejecutado desde C:\Users\Pilar\Desktop
Windows 10 Home Versión 1903 18362.1016 (X64) (2019-08-07 22:57:31)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1533122075-3619368927-2184344722-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1533122075-3619368927-2184344722-503 - Limited - Disabled)
Invitado (S-1-5-21-1533122075-3619368927-2184344722-501 - Limited - Disabled)
Pilar (S-1-5-21-1533122075-3619368927-2184344722-1001 - Administrator - Enabled) => C:\Users\Pilar
WDAGUtilityAccount (S-1-5-21-1533122075-3619368927-2184344722-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Bitdefender Antivirus Free Antimalware (Enabled - Up to date) {51405D0C-825B-964D-00BD-77E435F203F3}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

abDocs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.10.2002 - Acer Incorporated)
abDocs Office AddIn (HKLM-x32\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.02.2001 - Acer Incorporated)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.01.2001 - Acer Incorporated)
abMusic (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 3.01.2003.6 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated)
Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3012 - Acer Incorporated)
Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3001 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8116 - Acer Incorporated)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2006 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8108 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3023 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8111 - Acer Incorporated)
Acer UEIP App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 2.00.3002 - Acer Incorporated)
Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 2.00.3002 - Acer Incorporated)
Actualización de NVIDIA 17.12.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 17.12.8 - NVIDIA Corporation) Hidden
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.414 - Adobe)
Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 13.6.0 - IObit)
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated)
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22402 - Microsoft Corporation)
AXIS Companion 3.66 (HKLM\...\{A6FE3FFD-BD70-4FD6-A436-62417F0A81EB}_is1) (Version: 3.66.001 - Axis Communications AB)
Backup and Sync from Google (HKLM\...\{01D33BEA-673C-439C-A7C7-DE5B236DB842}) (Version: 3.50.3166.0017 - Google, Inc.)
CyberLink PhotoDirector 5 (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.5926.02 - CyberLink Corp.)
CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.3602.02 - CyberLink Corp.)
DMSView version 2.16.2.24 (HKLM\...\{90499AC9-7707-4429-9A4B-DBB5F8C227B2}_is1) (Version: 2.16.2.24 - )
Dropbox 15 GB (HKLM-x32\...\{597A58EC-42D6-4940-8739-FB94491B013C}) (Version: 0.9.0 - Dropbox, Inc.)
Foxit PhantomPDF (HKLM-x32\...\{2DF18CA8-86F2-4F3A-A1BF-A2A7D39B9161}) (Version: 7.0.49.127 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.135 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HP Dropbox Plugin (HKLM-x32\...\{D1C1B048-C9E8-4DF9-BAE8-45F2BA467426}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP ENVY 5540 series Ayuda (HKLM-x32\...\{F1B8701C-EF3A-43C6-866B-E6E58BEECB19}) (Version: 35.0.0 - Hewlett Packard)
HP ENVY 5540 series Software básico del dispositivo (HKLM\...\{CD116E78-0FE6-4823-8A9A-1E0C3CA51EE4}) (Version: 36.0.72.54013 - Hewlett-Packard Co.)
HP Google Drive Plugin (HKLM-x32\...\{6651A86A-07EA-43E0-B4EC-4E1D809AC99E}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4703 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.5.0.1056 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.226.0 - Intel Corporation)
IObit Uninstaller 9 (HKLM-x32\...\IObitUninstall) (Version: 9.6.0.3 - IObit)
LibreOffice 6.0.5.2 (HKLM\...\{9645CDEF-085C-45F7-A3CD-B4B7046EF78C}) (Version: 6.0.5.2 - The Document Foundation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.59 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel 2007 Help Actualización (KB963678) (HKLM-x32\...\{90120000-0016-0C0A-0000-0000000FF1CE}_ENTERPRISE_{59E09C3D-4878-47D9-87DB-6D0018026889}) (Version:  - Microsoft)
Microsoft Office Outlook 2007 Help Actualización (KB963677) (HKLM-x32\...\{90120000-001A-0C0A-0000-0000000FF1CE}_ENTERPRISE_{59C244C2-0C37-4E85-8F7E-DBDD3958B694}) (Version:  - Microsoft)
Microsoft Office Powerpoint 2007 Help Actualización (KB963669) (HKLM-x32\...\{90120000-0018-0C0A-0000-0000000FF1CE}_ENTERPRISE_{F318245D-05AE-4681-A749-A036CE44AF29}) (Version:  - Microsoft)
Microsoft Office Word 2007 Help Actualización (KB963665) (HKLM-x32\...\{90120000-001B-0C0A-0000-0000000FF1CE}_ENTERPRISE_{377BA42A-1C84-45D6-94B8-6D00887D172D}) (Version:  - Microsoft)
Microsoft OneDrive (HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\OneDriveSetup.exe) (Version: 20.134.0705.0008 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26429 (HKLM-x32\...\{2019b6a0-8533-4a04-ac0e-b2c10bdb9841}) (Version: 14.14.26429.4 - Microsoft Corporation)
NVClient version 6.00.00.7 (HKLM\...\{0D6ABF13-9584-4904-827C-A8AE9A0C7E70}}_is1) (Version: 6.00.00.7 - )
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
NVWEBOCX version 1.16.4.28 (HKLM\...\{D8D35337-108D-49a6-8F7B-489D4C69FAE0}}_is1) (Version: 1.16.4.28 - )
Panel de control de NVIDIA 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 382.05 - NVIDIA Corporation) Hidden
Popcorn-Time (HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\...\Popcorn-Time) (Version: 0.3.10 - Popcorn Time)
Qualcomm Atheros QCA9377 Wireless LAN & Bluetooth Installer (HKLM-x32\...\{3241744A-BA36-41F0-B4AA-EF3946D00632}) (Version: 11.0.0.177L - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39063 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.36.826.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7451 - Realtek Semiconductor Corp.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 17.12.8 - NVIDIA Corporation) Hidden
Software para dispositivos de chipset Intel® (HKLM-x32\...\{f5d71765-7cd1-4e68-998f-5b379e725da3}) (Version: 10.0.22 - Intel(R) Corporation) Hidden
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.7.6 - TeamViewer)
TomTom MyDrive Connect 4.2.3.3625 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.3.3625 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F3874F6F-EA00-487D-BEAD-5FAA010E78F2}) (Version: 1.15.0.0 - Microsoft Corporation) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Win32DiskImager version 1.0.0 (HKLM-x32\...\{3DFFA293-DF2C-4B23-92E5-3433BDC310E1}}_is1) (Version: 1.0.0 - ImageWriter Developers)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version:  - )
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

Packages:
=========
- Games App - -> C:\Program Files\WindowsApps\WildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-04-08] (WildTangent Games)
Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.3007.0_x86__48frkmn4z8aw4 [2016-07-10] (Acer Incorporated)
Banco Santander España -> C:\Program Files\WindowsApps\143C86FB.BancoSantanderEspaa_2.2.2.0_x64__394qpgrep535r [2017-07-07] (Banco Santander S.A.)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.174.500.0_x86__kgqvnymyfvs32 [2020-08-17] (king.com)
eBay -> C:\Program Files\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw [2016-04-08] (eBay, Inc)
Evernote -> C:\Program Files\WindowsApps\Evernote.Evernote_6.25.9091.0_x86__q4d96b2w5wcc2 [2020-07-08] (Evernote)
Fitbit -> C:\Program Files\WindowsApps\Fitbit.Fitbit_2.44.1997.0_x64__6mqt6hf9g46tw [2019-10-05] (Fitbit)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_115.1.152.0_x64__v10z8vjag6ke6 [2020-06-19] (HP Inc.)
Kindle -> C:\Program Files\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp [2016-04-08] (AMZN Mobile LLC)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8042.0_x64__8wekyb3d8bbwe [2020-08-17] (Microsoft Studios) [MS Ad]
Momentos especiales -> C:\Program Files\WindowsApps\Microsoft.MovieMoments_6.3.9654.20464_x64__8wekyb3d8bbwe [2016-04-03] (Microsoft Corporation)
MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.36.20714.0_x64__8wekyb3d8bbwe [2020-06-15] (Microsoft Corporation) [MS Ad]
MSN Dinero -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.36.20714.0_x64__8wekyb3d8bbwe [2020-06-15] (Microsoft Corporation) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-06-15] (Microsoft Corporation) [MS Ad]
MSN Recetas -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-04-08] (Microsoft Corporation) [MS Ad]
MSN Salud y Bienestar -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-04-08] (Microsoft Corporation) [MS Ad]
MSN Viajes -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-04-08] (Microsoft Corporation) [MS Ad]
Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-06-19] (MAGIX)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-08] (Twitter Inc.)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-04-20] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-04-20] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-04-20] (Acer Incorporated -> Acer Incorporated)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> Ningún archivo
ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2020-06-01] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2015-01-27] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-08] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2020-06-01] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2020-06-01] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-08] (IObit Information Technology -> IObit)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-09-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-08] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Drivers32: [msacm.jbg711] => G711Codec.acm
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [Archivo no firmado]

==================== Accesos directos & WMI ========================

==================== Módulos cargados (Lista blanca) =============

2015-04-27 09:29 - 2015-01-16 08:40 - 000930888 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Archivo no firmado] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Pilar\Downloads\ChromeStandaloneSetup64.exe:SmartScreen [7]

==================== Modo Seguro (Lista blanca) ==================

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1533122075-3619368927-2184344722-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pilar\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\87f.jpg
DNS Servers: 80.58.61.250 - 80.58.61.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Firewall de Windows está deshabilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{31A926DF-879D-4A34-8FE5-BA9121A72F24}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [UDP Query User{01E7EF18-8777-4F48-9CEA-8F7F04A3BEE3}C:\users\pilar\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\pilar\appdata\local\popcorn-time\popcorn-time.exe (The NWJS Community) [Archivo no firmado]
FirewallRules: [TCP Query User{68F9A0D2-B029-4891-B5A0-9CEB683B4B7F}C:\users\pilar\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\pilar\appdata\local\popcorn-time\popcorn-time.exe (The NWJS Community) [Archivo no firmado]
FirewallRules: [UDP Query User{FDCDA872-89E6-4ABB-B22C-8031332307F4}C:\program files\axis communications\axis companion\axiscompanion.exe] => (Allow) C:\program files\axis communications\axis companion\axiscompanion.exe (Axis Communications AB -> Axis Communications)
FirewallRules: [TCP Query User{05012F14-CE84-4041-9889-07A16E162087}C:\program files\axis communications\axis companion\axiscompanion.exe] => (Allow) C:\program files\axis communications\axis companion\axiscompanion.exe (Axis Communications AB -> Axis Communications)
FirewallRules: [UDP Query User{B28C0AC0-735D-4D52-889A-70872813D766}C:\program files\nvclient_v6\searchtool.exe] => (Allow) C:\program files\nvclient_v6\searchtool.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{DA0DC401-A6C2-4A86-8261-83327B160251}C:\program files\nvclient_v6\searchtool.exe] => (Allow) C:\program files\nvclient_v6\searchtool.exe () [Archivo no firmado]
FirewallRules: [{B04E2230-25E0-4857-97D4-CEBE6FD85943}] => (Block) C:\users\pilar\desktop\search tool\searchtools v2.exe () [Archivo no firmado]
FirewallRules: [{A1A94F5B-2E00-486E-BA74-302C84DAE384}] => (Block) C:\users\pilar\desktop\search tool\searchtools v2.exe () [Archivo no firmado]
FirewallRules: [UDP Query User{105A9A3D-716E-4808-B9DA-D62E3BA0C888}C:\users\pilar\desktop\search tool\searchtools v2.exe] => (Allow) C:\users\pilar\desktop\search tool\searchtools v2.exe () [Archivo no firmado]
FirewallRules: [TCP Query User{38F71803-22AB-40D1-AD37-4031AFD82A7E}C:\users\pilar\desktop\search tool\searchtools v2.exe] => (Allow) C:\users\pilar\desktop\search tool\searchtools v2.exe () [Archivo no firmado]
FirewallRules: [{568BB9EF-AB73-42CC-8D63-78D5AFEE2644}] => (Allow) C:\Program Files\HP\HP ENVY 5540 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{BF0BE14C-D28E-4B03-BD7A-1017AF4BA86B}] => (Allow) LPort=5357
FirewallRules: [{952ED2A6-5532-45BD-BCB6-8BE6B33FD0B9}] => (Allow) C:\Program Files\HP\HP ENVY 5540 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{7C011DA5-EDAF-45E2-B812-49F5C164592B}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{D49726F3-BE5B-429A-939F-3D45E9D62D2E}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{D84E691A-079A-4885-B1D5-E117B56EB78E}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{076ABD0A-9F85-419F-AA54-790D33AAE18A}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{AD333D40-BAB2-40AA-A9BF-59DA96FAE073}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{E0E89C45-9372-4B56-9279-E90C1ED529E8}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{3BB94A20-352D-45C9-8A60-BABEED0EADBE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F88E4870-0900-4990-9FB3-EB76C354228F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CA60E35A-5DA7-46C5-B32B-CA6EFBE56ECC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{69502D65-E22C-49F4-ACD9-397B2FBDC892}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{45AF7446-AB10-49B0-BBEE-44AE7BB90638}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1FDF229F-7CC8-4BCB-896D-6B0DCC695CAF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{88176FAC-6005-4036-BF72-8EC81AC8D675}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{FEABEDCF-717C-420D-8EB4-08EACFC76A74}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{6429167B-0D91-4B88-8896-7EAB042DFE5F}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{4251B141-239F-4A94-B4A4-7B658FCA21B6}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{C854C388-0C43-420F-A42B-D9466EF36C0F}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{D361D331-6663-4A36-A466-E8C5027D1878}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{873A76FA-5CD8-4AFC-818A-753F8A55FCB9}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{AD4D4508-9B84-4A55-B9FF-D7670FEDA9B8}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{A01B0433-87E2-41DB-9265-EF3CE2BA47A8}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{AD0A3CCD-9319-4395-9FED-FC6425CD115D}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{789CF6D1-0123-43FF-A7DF-44BFCFEABF08}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{7D2FEEB2-9274-449F-8D1D-38DC5D05B475}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{2FFBDD22-D55A-40C1-84B4-832DEF00DF91}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1DEBFF40-7F9E-470D-8694-8C14A3C494AA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3662E144-2553-4D3C-BE8B-3F184B231E7B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{F00D684E-F77C-43DF-9BEE-E52DF8EFB0D2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{CB2F7BDE-027A-4D1B-94A1-EC67C19830C4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CFD03BDA-76BB-4D3F-9ED9-218B6CA0FB3C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A239D122-55E2-4B0F-B526-BD2586CB22D4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0B6F06C8-6862-4E0B-BC3D-713BECF24D83}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CCE23515-80D8-47CF-9C93-086A85292777}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

26-07-2020 09:39:12 Instalador de Módulos de Windows
09-08-2020 16:55:51 Removed Microsoft Office
17-08-2020 21:09:29 Windows Update

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (08/20/2020 12:01:23 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (162996,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (08/19/2020 11:51:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (150736,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (08/19/2020 11:39:41 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (152488,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (08/19/2020 12:36:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: Explorer.EXE, versión: 10.0.18362.997, marca de tiempo: 0x2419a7bd
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00000000056b0fd8
Identificador del proceso con errores: 0x1a88
Hora de inicio de la aplicación con errores: 0x01d675b912dc43f6
Ruta de acceso de la aplicación con errores: C:\WINDOWS\Explorer.EXE
Ruta de acceso del módulo con errores: unknown
Identificador del informe: 22e2be9c-ba64-4530-b247-313b44a590dc
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (08/19/2020 11:52:24 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (143588,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (08/19/2020 11:46:47 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: ACER_MAMÁ)
Description: No se puede abrir el objeto de rendimiento del servicio del servidor. Los primeros cuatro bytes (DWORD) de la sección de datos contienen el código de estado.

Error: (08/19/2020 11:46:47 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1018) (User: ACER_MAMÁ)
Description: Se deshabilitó la recopilación de datos de los contadores de rendimiento del servicio "Outlook" en esta sesión, debido a uno o más errores generados por la biblioteca de contadores de rendimiento de este servicio. Los errores que exigieron esta acción se escribieron en el registro de eventos de la aplicación.

Error: (08/19/2020 11:46:47 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1021) (User: ACER_MAMÁ)
Description: Windows no puede abrir el archivo DLL del contador extensible de 32 bits "C:\PROGRA~2\Microsoft Office\Office12\OLMAPI32.DLL" en un entorno de 64 bits (código de error de Win32 193). Ponte en contacto con el proveedor de archivos para obtener una versión de 64 bits. También puedes abrir el archivo DLL del contador extensible de 32 bits mediante la versión de 32 bits del monitor de rendimiento. Para usar esta herramienta, abre la carpeta Windows, a continuación la carpeta SysWOW64 e inicia Perfmon.exe.


Errores del sistema:
=============
Error: (08/19/2020 11:40:53 PM) (Source: DCOM) (EventID: 10010) (User: ACER_MAMÁ)
Description: El servidor Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca no se registró con DCOM dentro del tiempo de espera requerido.

Error: (08/19/2020 06:16:45 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Error de instalación: error de Windows al instalar la siguiente actualización, error 0x80240017: Actualización para Microsoft Office Outlook 2007 Junk Email Filter (KB2880505).

Error: (08/19/2020 06:05:24 AM) (Source: DCOM) (EventID: 10005) (User: ACER_MAMÁ)
Description: Error de DCOM "1053" al intentar iniciar el servicio WSearch con argumentos "No disponible" para ejecutar el servidor:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (08/19/2020 06:05:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Windows Search no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (08/19/2020 06:05:24 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Windows Search.

Error: (08/19/2020 06:05:24 AM) (Source: DCOM) (EventID: 10005) (User: ACER_MAMÁ)
Description: Error de DCOM "1053" al intentar iniciar el servicio WSearch con argumentos "No disponible" para ejecutar el servidor:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (08/19/2020 06:05:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Windows Search no pudo iniciarse debido al siguiente error: 
El servicio no respondió a tiempo a la solicitud de inicio o de control.

Error: (08/19/2020 06:05:24 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Windows Search.


Windows Defender:
===================================
Date: 2020-08-19 23:51:18.117
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {852C2714-4781-4688-B17A-6C65CA5D9142}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: Acer_Mamá\Pilar

Date: 2020-08-19 09:01:11.240
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {37AEBAE8-4A0B-45FB-90FE-75F6641F7BE2}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-08-19 07:51:07.153
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {EC30309A-AAC8-4726-A6E8-25E3E041AD7D}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-08-19 07:44:29.255
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {D9D9A65D-29F7-414E-8941-1BC9CCBE7342}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-08-19 07:34:25.730
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {5A5287D8-1DF9-4405-9DBE-6C277DA2F093}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-08-17 21:08:57.221
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.321.1021.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.17300.4
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. 

Date: 2020-08-17 21:08:57.220
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.321.1021.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiSpyware
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.17300.4
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. 

Date: 2020-08-17 21:08:57.220
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.321.1021.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.17300.4
Código de error: 0x80070020
Descripción del error: El proceso no tiene acceso al archivo porque está siendo utilizado por otro proceso. 

Date: 2020-08-17 21:06:40.992
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.321.1021.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.17300.4
Código de error: 0x80070102
Descripción del error: Tiempo de espera de la operación de espera agotado. 

Date: 2020-08-17 21:06:40.990
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.321.1021.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.17300.4
Código de error: 0x80070102
Descripción del error: Tiempo de espera de la operación de espera agotado. 

CodeIntegrity:
===================================

Date: 2020-07-29 01:59:31.625
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-07-29 01:59:31.603
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-07-26 14:08:40.017
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-07-26 14:08:39.987
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-07-09 00:06:20.018
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-07-09 00:06:20.001
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\vsservppl.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender Antivirus Free\connectagent.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-06-19 13:33:57.538
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\klhk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-06-19 13:33:57.511
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\klhk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Información de la memoria =========================== 

BIOS: Insyde Corp. V1.07 03/17/2015
Placa base: Acer ZORO_BH
Procesador: Intel(R) Core(TM) i3-4005U CPU @ 1.70GHz
Porcentaje de memoria en uso: 89%
RAM física total: 4016.7 MB
RAM física disponible: 435.8 MB
Virtual total: 7728.7 MB
Virtual disponible: 3244.64 MB

==================== Unidades ================================

Drive c: (Acer) (Fixed) (Total:915.29 GB) (Free:773.89 GB) NTFS

\\?\Volume{776cb44c-b84c-4c32-a655-2f80eaa6b2a8}\ (Recovery) (Fixed) (Total:0.59 GB) (Free:0.28 GB) NTFS
\\?\Volume{9df9358f-9104-4679-b5da-ce8908796264}\ (Push Button Reset) (Fixed) (Total:15.22 GB) (Free:2.59 GB) NTFS
\\?\Volume{0ace41e6-d645-4d17-babe-41d7caed14fd}\ (ESP) (Fixed) (Total:0.29 GB) (Free:0.24 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: E5FBF6F2)

Partition: GPT.

==================== Final de Addition.txt =======================

Con todo esto que me dices, el problema va mas a lla de lo puramente informatico.

Pra que alguien haga eso, es por motivos determinados,pero eso tu sabras,y aquí no es un lugra dode podamos hacer nada

Si ya esta en manos de la policia,pues ahi deberías esperar,

Como este tema se escapa a lo que aqui podemos tratar, debemos cerrar el tema

Suerte