Bad_system_config_info

Disculpa, extraje la ISO en un usb pero no la he grabado en un DVD. No sé qué es crear un usb booteable. Pero bueno, algo hemos avanzado!.

Una preguntilla más que me quita el sueño, ¿con este método pierdo todos mis archivos personales?

Salu2

Hola @Inmaculada

En el enlace que te deje estaban los pasos para crear el Usb Booteable, pero si solo descargaste la .iso puedes quemarla a un DVD ( Métodos adicionarles para usar el archivo ISO para arrancar booteando desde el, como si fueras a instalar Windows, pero solo tienes que hacer los pasos para reparar el Inicio, o si esto no funcionará Reparar el Sistema.

Con reparar no se pierden los archivos personales si los programas instalados.

Revisa Restaurar Windows 10

Salu2

Finalmente pude crear el usb booteable y aceder al boot menu presionando f12… Pero ahora me dice esto:

`

Hola:

Como creaste el USB Booteable? Por que te esta dando error.

Prueba nuevamente hacerlo con Rufus.

Cómo crear un USB de Windows 10 apto para sistemas UEFI con Rufus, tienes que crearlo eligiendo especialmente la opción:

“Tipo de partición” debemos asegurarnos de marcar la opción “ Tipo de partición GPT para UEFI

Salu2

Buenas de nuevo.

Con la configuración que me especificaste ( GPT para UEFI) me daba el error del post anterior. Probé a crearlo con la configuración contraria (la que el propio error de la captura anterior me sugería) (MBR para BIOS). Con esto conseguí iniciar el windows desde el USB…

Le di entonces a reparar equipo como sugieren los tutoriales…

Esto nos lleva a opciones avanzadas del sistema nuevamente. Le doy a reparación de inicio como sugieren los pasos. Ahora aparece una nueva opción para elegir un target OS…

Al pinchar en (windows10) vuelve a salir lo típico de la reparación automática…

Tras intentar las reparaciones vuelve a fallar como siempre y nos devuelve al menú de opciones avanzadas…

PD: Adicionalmente han aparecido nuevas opciones para desinstalar actualizaciones…

Al darle nos da acceso a 2 opciones…pero ambas me tiran error…

img report

Hola @Inmaculada

Bien como tienes Windows 10 interprete el error al revés, pensé que era por tener Uefi.

Si ya nada funciona, no queda otra que probar formatear el equipo, lamentablemente perderás todos los datos.

Algo que vi interesante es este error:

E:\WINDOWS\System32\Logfiles\Srt\SrtTrail.txt

Algo daño severamente tu Sistema Operativo.

Te dejo un tema donde lamentablemente no pudimos solucionarlo, pero hay varios pasos que se pueden intentar antes de formatear:

Nos comentas.

Salu2

Buenos días again. Ejecutando los pasos indicados en el post relacionado que me sugeriste he sacado lo siguiente.

Tras ejecutar el comando chkdsk d: /r no he podido efectuar un reinicio normal. Después de esto he ejecutado el scan de la herramienta FRST y me ha generado el siguiente reporte…

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19-05.2019
Ran by SYSTEM on MININT-ENT3ML3 (23-05-2019 13:07:34)
Running from D:\
Platform: WIN_10 (X64) Language: Español (España, internacional)
Boot Mode: Recovery
ATTENTION: Could not load system hive.
La operaci�n se complet� correctamente.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM\...\Winlogon: [Shell]  [ ] <=== ATTENTION
HKLM-x32\...\Winlogon: [Shell] 
HKLM\...\InprocServer32: [Default-wbemess]  <==== ATTENTION
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox]  <==== ATTENTION
HKU\Default\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\Default User\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\usuario\...\Run: [instanteyedropper] => C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe [966656 2016-12-19] (SpiceBrains)
HKU\usuario\...\Run: [uTorrent] => C:\Users\usuario\AppData\Roaming\uTorrent\uTorrent.exe [1998008 2019-04-17] (BitTorrent Inc -> BitTorrent Inc.)
HKU\usuario\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> C:\Windows\SysWOW64\scecli.dll [2018-10-21] (Microsoft Corporation)
Startup: C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeskPins.lnk [2018-07-28]
ShortcutTarget: DeskPins.lnk -> C:\Program Files (x86)\DeskPins\deskpins.exe (Elias Fotinis)
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\update-S-1-5-21-3685274567-1915929357-1650106012-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-23 13:07 - 2019-05-23 13:07 - 000000000 ____D C:\FRST
2019-05-22 18:27 - 2019-05-22 18:27 - 000000000 ___HD C:\$SysReset
2019-05-22 12:14 - 2019-05-22 18:31 - 000000000 _____ C:\Recovery.txt
2019-05-15 23:30 - 2019-05-15 23:46 - 000000000 ____D C:\Windows\System32\config\backup
2019-05-15 20:12 - 2019-05-15 20:12 - 000000180 _____ C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-05-15 19:16 - 2019-05-15 19:19 - 506989568 _____ C:\Users\usuario\Downloads\SWAK_v019_Win.7z
2019-05-14 22:27 - 2019-05-14 22:27 - 003435362 _____ C:\Users\usuario\Desktop\Sin título-1.psd
2019-05-12 23:14 - 2019-05-15 19:56 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3685274567-1915929357-1650106012-1001
2019-05-11 17:20 - 2019-05-15 19:56 - 000003056 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update
2019-05-11 17:20 - 2019-04-17 22:45 - 000385904 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgVmm.sys
2019-05-11 17:20 - 2019-04-15 14:46 - 000476824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSP.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000220472 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgStm.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000205656 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgArPot.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000166896 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgMonFlt.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000112360 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRdr2.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000087992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRvrt.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000042336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgKbd.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000037368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgArDisk.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 001030832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSnx.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000320672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgblog.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000254680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsdriver.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000196560 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsh.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000058152 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbuniv.sys
2019-05-11 17:20 - 2019-01-04 10:56 - 000015280 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgElam.sys
2019-05-11 17:19 - 2019-04-15 13:59 - 000362928 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\avgBoot.exe
2019-05-05 22:48 - 2019-05-05 22:59 - 878668207 _____ C:\Users\usuario\Downloads\MNLJLEGFull-win.zip
2019-05-01 23:52 - 2019-05-01 23:52 - 000000000 ____D C:\Users\usuario\AppData\LocalLow\Anduo Games

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-15 21:41 - 2018-04-11 22:04 - 000524288 _____ C:\Windows\System32\config\BBI
2019-05-15 21:37 - 2018-05-22 08:52 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-15 21:36 - 2018-05-22 08:17 - 000000000 ____D C:\users\usuario
2019-05-15 21:30 - 2018-05-22 08:09 - 000000000 ____D C:\Windows\System32\SleepStudy
2019-05-15 21:30 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-15 20:34 - 2018-04-12 00:30 - 000000000 ____D C:\Windows\CbsTemp
2019-05-15 20:18 - 2018-04-12 00:36 - 000000000 ____D C:\Windows\INF
2019-05-15 20:12 - 2014-10-17 08:37 - 000000000 __SHD C:\Users\usuario\IntelGraphicsProfiles
2019-05-15 20:11 - 2016-08-22 05:31 - 000000000 ____D C:\ProgramData\NVIDIA
2019-05-15 20:09 - 2019-03-16 15:30 - 000767500 ____N C:\Windows\Minidump\051519-83671-01.dmp
2019-05-15 20:09 - 2019-03-12 21:44 - 000000000 ____D C:\Windows\Minidump
2019-05-15 19:56 - 2018-05-22 08:52 - 000003548 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-15 19:56 - 2018-05-22 08:52 - 000003324 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-15 19:56 - 2018-05-22 08:52 - 000003130 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{BE5E7A56-06F8-4DB8-B332-3C83A321CCD4}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002956 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002784 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002764 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Portatil-usuario
2019-05-15 19:56 - 2018-05-22 08:52 - 000002752 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3685274567-1915929357-1650106012-1001
2019-05-15 19:56 - 2018-05-22 08:52 - 000002718 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-Portatil-usuario
2019-05-15 19:56 - 2018-05-22 08:52 - 000002694 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002590 _____ C:\Windows\System32\Tasks\CreateExplorerShellUnelevatedTask
2019-05-15 19:56 - 2018-05-22 08:52 - 000002582 _____ C:\Windows\System32\Tasks\{44599D50-3B4E-4FD7-9E0A-23F7109A9601}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002524 _____ C:\Windows\System32\Tasks\USER_ESRV_SVC_QUEENCREEK
2019-05-15 19:56 - 2018-05-22 08:52 - 000002444 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2019-05-15 19:56 - 2018-05-22 08:52 - 000002392 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2019-05-15 19:56 - 2018-05-22 08:52 - 000002388 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2019-05-15 19:45 - 2018-09-01 10:37 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-05-15 15:29 - 2013-10-10 12:57 - 000000000 ____D C:\Windows\System32\MRT
2019-05-15 15:28 - 2013-10-10 12:57 - 132445408 ____C (Microsoft Corporation) C:\Windows\System32\MRT.exe
2019-05-12 23:14 - 2016-07-18 17:53 - 000000000 ___RD C:\Users\usuario\OneDrive
2019-05-12 19:36 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\AppReadiness
2019-05-11 17:21 - 2019-03-13 08:21 - 000002041 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2019-05-11 17:19 - 2018-04-12 00:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-05-11 16:40 - 2019-01-06 17:12 - 000000000 _____ C:\Windows\System32\last.dump
2019-05-11 11:49 - 2018-10-03 18:08 - 000010214 _____ C:\Users\usuario\Desktop\Nuevo documento de texto.txt
2019-05-11 02:04 - 2018-02-12 16:42 - 000001175 _____ C:\Users\usuario\Desktop\Modo 11.2v2.lnk
2019-05-10 23:49 - 2016-03-05 13:31 - 000000000 ____D C:\Users\usuario\AppData\Local\CrashDumps
2019-05-10 12:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\LiveKernelReports
2019-05-09 19:03 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-05 22:47 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\System32\NDF
2019-05-05 14:20 - 2018-05-28 08:13 - 000000000 ____D C:\Users\usuario\AppData\Local\D3DSCache
2019-05-04 11:25 - 2018-06-17 23:42 - 000000000 ____D C:\Users\usuario\AppData\Roaming\RenPy
2019-04-30 21:31 - 2013-10-10 11:02 - 000002258 _____ C:\Users\usuario\Desktop\Google Chrome.lnk
2019-04-24 21:03 - 2018-05-22 08:36 - 001777620 _____ C:\Windows\System32\PerfStringBackup.INI
2019-04-24 21:03 - 2018-04-12 17:19 - 000791524 _____ C:\Windows\System32\perfh00A.dat
2019-04-24 21:03 - 2018-04-12 17:19 - 000156672 _____ C:\Windows\System32\perfc00A.dat
2019-04-23 16:46 - 2013-12-11 01:27 - 000000000 ____D C:\Users\usuario\AppData\Roaming\vlc

==================== KnownDLLs (Whitelisted) =========================


==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2019-04-10 03:15] - [2019-03-14 15:52] - 003933296 _____ (Microsoft Corporation) C8FB56B60458B09C1CAEBD4DAF1AC8BB

C:\Windows\SysWOW64\explorer.exe
[2019-04-10 03:15] - [2019-03-14 15:08] - 003611264 _____ (Microsoft Corporation) 399F1C4172B3D9A75682E5DE94154F71

C:\Windows\System32\svchost.exe
[2019-02-14 00:55] - [2019-01-09 06:39] - 000085472 _____ (Microsoft Corporation) 0861726716C9610CE5F6BCF3F4858DA1

C:\Windows\SysWOW64\svchost.exe
[2019-02-14 00:55] - [2019-01-09 06:43] - 000071456 _____ (Microsoft Corporation) C01CB20D971C3262F1F856B4539DD27C

C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll
[2019-01-09 17:14] - [2019-01-01 07:41] - 001159680 _____ (Microsoft Corporation) 2383579559B1EB66C4FA2297119CEDD0

C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\dllhost.exe => MD5 is legit
C:\Windows\SysWOW64\dllhost.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Association (Whitelisted) =============


==================== Restore Points  =========================


==================== Memory info =========================== 

Percentage of memory in use: 19%
Total physical RAM: 4016.91 MB
Available physical RAM: 3216 MB
Total Virtual: 4016.91 MB
Available Virtual: 3261.99 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.5 GB) (Free:209.22 GB) NTFS
Drive d: (USB Windows 10) (Removable) (Total:7.55 GB) (Free:3.52 GB) NTFS
Drive f: () (Fixed) (Total:0.92 GB) (Free:0.36 GB) NTFS
Drive x: (Boot) (Fixed) (Total:0.49 GB) (Free:0.49 GB) NTFS
Drive y: (Reservado para el sistema) (Fixed) (Total:0.34 GB) (Free:0.05 GB) NTFS ==>[system with boot components (obtained from drive)]


==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: D66A409D)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=464.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=940 MB) - (Type=27)

========================================================
Disk: 1 (Size: 7.5 GB) (Disk ID: 12C1383E)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)
==================== End of FRST.txt ============================

Hola @Inmaculada

Aquí tampoco puede ver completamente el Sistema pero el reporte se ve mas completo.

Realiza lo siguiente:

Paso 1.-: En el equipo limpio:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega estos archivos dentro del Notepad:

start
HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM\...\Winlogon: [Shell]  [ ] <=== ATTENTION
HKLM\...\InprocServer32: [Default-wbemess]  <==== ATTENTION
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox]  <==== ATTENTION
GroupPolicy: Restriction - Chrome <==== ATTENTION
Copy: C:\Windows\Minidump\051519-83671-01.dmp D:\
CMD: bootrec.exe /fixmbr
CMD: bootrec.exe /fixboot
end

Lo guardas bajo el nombre de fixlist.txt en la misma USB donde se encuentra frst64.exe.. <<< Esto es muy importante.

Paso 2.-: En el equipo complicado:

  • Inicia nuevamente las opciones de Recuperación del Sistema hasta seleccionar Símbolo del Sistema.
  • Una vez dentro de la Ventana de Comandos escribe tal cual x:frst64.exe donde x debe ser reemplazada por la letra de Tu unidad Usb.
  • Presionas Enter.

En el reporte la unidad USB fue corrida desde D: pero confirmarlo.

Se abrirá la ventana del programa:

  • Presionas una sola vez el botón Fix y esperas a que termine.
  • Se guardara un reporte en tu unidad Usb llamado (Fixlog.txt) que pegaras en tu próxima respuesta.
  • Cierras la ventana del programa si quedo abierta.
  • En la Consola escribes tal cual : shutdown /r esto reiniciara el equipo y ver si puede entrar en modo normal.

Nota: Si aun no reinicia revisa (en el equipo limpio) si en tu unidad USB se copio el archivo

C:\Windows\Minidump\051519-83671-01.dmp,

Y lo pegas en tu próxima respuesta también.

Salu2

Fix result of Farbar Recovery Scan Tool (x64) Version: 19-05.2019
Ran by SYSTEM (24-05-2019 19:26:55) Run:1
Running from D:\
Boot Mode: Recovery
==============================================

fixlist content:
*****************
start
HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM\...\Winlogon: [Shell]  [ ] <=== ATTENTION
HKLM\...\InprocServer32: [Default-wbemess]  <==== ATTENTION
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox]  <==== ATTENTION
GroupPolicy: Restriction - Chrome <==== ATTENTION
Copy: C:\Windows\Minidump\051519-83671-01.dmp D:\
CMD: bootrec.exe /fixmbr
CMD: bootrec.exe /fixboot
end
*****************

HKLM\...\Winlogon: [Userinit]  <==== ATTENTION => Could not restore
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value restored successfully
HKLM\Software\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32\\Default => value restored successfully
HKLM\Software\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InprocServer32\\Default => value restored successfully
C:\Windows\System32\GroupPolicy\Machine => moved successfully
C:\Windows\System32\GroupPolicy\GPT.ini => moved successfully
C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully
================== "Copy: C:\Windows\Minidump\051519-83671-01.dmp D:\" ===================

"C:\Windows\Minidump\051519-83671-01.dmp" copied successfully

=== End of Copy: ===

========= bootrec.exe /fixmbr =========

La operación se completó correctamente.

========= End of CMD: =========


========= bootrec.exe /fixboot =========

Acceso denegado.

========= End of CMD: =========


==== End of Fixlog 19:27:04 ====

Varias cosas que merece la pena mencionar…

Primero que nada disculpa porque he estado muy liada y no he podido ponerme hasta ahora. No sé si lo hice bien porque inicié el pc complicado de forma normal y NO desde el booting menú esta vez (no sé si esto importa). También en la parte que me decías “copia y pega estos archivos en el notepad” yo solo copié el texto que me pegaste literalmente no copié ningún archivo (no sé si esto es lo que querías).

Cuando corrí el programa y le dí a fix me apareció un mensaje de que mi papelera estaba dañada y cerré el mensaje… (este mensaje me aparecía siempre en mi pc cuando lo reiniciaba)

El comando shutdown /r no funcionaba con el cmd así que tuve que reiniciar apagando y encendiendo.

El archivo 051519-83671-01.dmp, se ha copiado en mi unidad USB

Eso es todo, salu2 y gracias por todo hasta ahora.

Hola @Inmaculada

Así tenias que intentar entrar. Funcionó? Arranco Normal?

Me exprese mal era exactamente eso que hiciste el "Texto"

Y arrancó??

Sube el archivo ve el siguiente enlace:

Analizar los archivos Minidump Online.

Desde tu equipo sin problemas. Nos subes ese reporte.

Salu2

No, no arrancó, hizo lo de siempre: diagnóstico>intentando reparaciones y devuelta al pantallazo azul del menú de opciones avanzadas.

Arrancó hasta el pantallazo azul de siempre

Parece que esa página ha dejado de ofrecer el servicio de análisis de archivos en línea. Sabe de otra semejante?

Hola @Inmaculada

Que suerte la nuestra!!

En el equipo sin problemas copia el archivo dentro de la siguiente carpeta:

Y en ese Pc realiza los pasos :

Salu2

Perdona el retraso, trabajo en hostelería y no he tenido ni un rato este finde. Te paso el reporte que me pediste del archivo minidump

==================================================
Dump File         : 051519-83671-01.dmp
Crash Time        : 15/05/2019 21:07:37
Bug Check String  : 
Bug Check Code    : 0x00000154
Parameter 1       : ffffa488`12cb8000
Parameter 2       : ffff8088`3dc5d0b0
Parameter 3       : 00000000`00000002
Parameter 4       : 00000000`00000000
Caused By Driver  : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+1aa0a0
File Description  : 
Product Name      : 
Company           : 
File Version      : 
Processor         : x64
Crash Address     : ntoskrnl.exe+1aa0a0
Stack Address 1   : 
Stack Address 2   : 
Stack Address 3   : 
Computer Name     : 
Full Path         : C:\Users\Usuario\Downloads\051519-83671-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 17134
Dump File Size    : 767.500
Dump File Time    : 27/05/2019 14:38:15
==================================================

Hola @Inmaculada

Vuelve a ejecutar FRST desde el USB tal como los pasos que hiciste anteriormente y nos traes un reporte fresco.

Antes de comenzar descarga un nuevo FRST lo colocas en el USB desde el equipo sin problemas, y eliminas el viejo.

Salu2

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-05.2019
Ran by SYSTEM on MININT-LP6M0VD (28-05-2019 13:43:29)
Running from D:\
Platform: WIN_10 (X64) Language: Español (España, internacional)
Boot Mode: Recovery
ATTENTION: Could not load system hive.
La operaci�n se complet� correctamente.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM-x32\...\Winlogon: [Userinit] 
HKLM-x32\...\Winlogon: [Shell] 
HKLM\...26dfa299cadb\InprocServer32: [Authentication UI Logon UI]  <==== ATTENTION
HKU\Default\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\Default User\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\usuario\...\Run: [instanteyedropper] => C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe [966656 2016-12-19] (SpiceBrains)
HKU\usuario\...\Run: [uTorrent] => C:\Users\usuario\AppData\Roaming\uTorrent\uTorrent.exe [1998008 2019-04-17] (BitTorrent Inc -> BitTorrent Inc.)
HKU\usuario\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> C:\Windows\SysWOW64\scecli.dll [2018-10-21] (Microsoft Corporation)
Startup: C:\Users\usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeskPins.lnk [2018-07-28]
ShortcutTarget: DeskPins.lnk -> C:\Program Files (x86)\DeskPins\deskpins.exe (Elias Fotinis)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\update-S-1-5-21-3685274567-1915929357-1650106012-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-23 13:07 - 2019-05-28 13:43 - 000000000 ____D C:\FRST
2019-05-22 18:27 - 2019-05-22 18:27 - 000000000 ___HD C:\$SysReset
2019-05-22 12:14 - 2019-05-23 13:14 - 000000000 _____ C:\Recovery.txt
2019-05-15 23:30 - 2019-05-15 23:46 - 000000000 ____D C:\Windows\System32\config\backup
2019-05-15 20:12 - 2019-05-15 20:12 - 000000180 _____ C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-05-15 19:16 - 2019-05-15 19:19 - 506989568 _____ C:\Users\usuario\Downloads\SWAK_v019_Win.7z
2019-05-14 22:27 - 2019-05-14 22:27 - 003435362 _____ C:\Users\usuario\Desktop\Sin título-1.psd
2019-05-12 23:14 - 2019-05-15 19:56 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3685274567-1915929357-1650106012-1001
2019-05-11 17:20 - 2019-05-15 19:56 - 000003056 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update
2019-05-11 17:20 - 2019-04-17 22:45 - 000385904 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgVmm.sys
2019-05-11 17:20 - 2019-04-15 14:46 - 000476824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSP.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000220472 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgStm.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000205656 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgArPot.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000166896 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgMonFlt.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000112360 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRdr2.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000087992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRvrt.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000042336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgKbd.sys
2019-05-11 17:20 - 2019-04-15 13:59 - 000037368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgArDisk.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 001030832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSnx.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000320672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgblog.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000254680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsdriver.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000196560 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsh.sys
2019-05-11 17:20 - 2019-04-15 13:58 - 000058152 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbuniv.sys
2019-05-11 17:20 - 2019-01-04 10:56 - 000015280 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgElam.sys
2019-05-11 17:19 - 2019-04-15 13:59 - 000362928 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\avgBoot.exe
2019-05-05 22:48 - 2019-05-05 22:59 - 878668207 _____ C:\Users\usuario\Downloads\MNLJLEGFull-win.zip
2019-05-01 23:52 - 2019-05-01 23:52 - 000000000 ____D C:\Users\usuario\AppData\LocalLow\Anduo Games

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-24 19:27 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2019-05-24 19:27 - 2012-07-26 09:12 - 000000000 ___HD C:\Windows\System32\GroupPolicy
2019-05-15 21:41 - 2018-04-11 22:04 - 000524288 _____ C:\Windows\System32\config\BBI
2019-05-15 21:37 - 2018-05-22 08:52 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-15 21:36 - 2018-05-22 08:17 - 000000000 ____D C:\users\usuario
2019-05-15 21:30 - 2018-05-22 08:09 - 000000000 ____D C:\Windows\System32\SleepStudy
2019-05-15 21:30 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-15 20:39 - 2018-04-12 00:30 - 000000000 ____D C:\Windows\CbsTemp
2019-05-15 20:18 - 2018-04-12 00:36 - 000000000 ____D C:\Windows\INF
2019-05-15 20:12 - 2014-10-17 08:37 - 000000000 __SHD C:\Users\usuario\IntelGraphicsProfiles
2019-05-15 20:11 - 2016-08-22 05:31 - 000000000 ____D C:\ProgramData\NVIDIA
2019-05-15 20:09 - 2019-03-16 15:30 - 000767500 ____N C:\Windows\Minidump\051519-83671-01.dmp
2019-05-15 20:09 - 2019-03-12 21:44 - 000000000 ____D C:\Windows\Minidump
2019-05-15 19:56 - 2018-09-01 10:37 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-05-15 19:56 - 2018-05-22 08:52 - 000003548 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-15 19:56 - 2018-05-22 08:52 - 000003324 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-15 19:56 - 2018-05-22 08:52 - 000003130 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{BE5E7A56-06F8-4DB8-B332-3C83A321CCD4}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002956 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002784 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002764 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Portatil-usuario
2019-05-15 19:56 - 2018-05-22 08:52 - 000002752 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3685274567-1915929357-1650106012-1001
2019-05-15 19:56 - 2018-05-22 08:52 - 000002718 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-Portatil-usuario
2019-05-15 19:56 - 2018-05-22 08:52 - 000002694 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002590 _____ C:\Windows\System32\Tasks\CreateExplorerShellUnelevatedTask
2019-05-15 19:56 - 2018-05-22 08:52 - 000002582 _____ C:\Windows\System32\Tasks\{44599D50-3B4E-4FD7-9E0A-23F7109A9601}
2019-05-15 19:56 - 2018-05-22 08:52 - 000002524 _____ C:\Windows\System32\Tasks\USER_ESRV_SVC_QUEENCREEK
2019-05-15 19:56 - 2018-05-22 08:52 - 000002444 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2019-05-15 19:56 - 2018-05-22 08:52 - 000002392 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2019-05-15 19:56 - 2018-05-22 08:52 - 000002388 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2019-05-15 15:35 - 2013-10-10 12:57 - 000000000 ____D C:\Windows\System32\MRT
2019-05-15 15:28 - 2013-10-10 12:57 - 132445408 ____C (Microsoft Corporation) C:\Windows\System32\MRT.exe
2019-05-12 23:14 - 2016-07-18 17:53 - 000000000 ___RD C:\Users\usuario\OneDrive
2019-05-12 19:36 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\AppReadiness
2019-05-11 17:21 - 2019-03-13 08:21 - 000002041 _____ C:\Users\Public\Desktop\AVG AntiVirus FREE.lnk
2019-05-11 17:19 - 2018-04-12 00:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-05-11 16:40 - 2019-01-06 17:12 - 000000000 _____ C:\Windows\System32\last.dump
2019-05-11 11:49 - 2018-10-03 18:08 - 000010214 _____ C:\Users\usuario\Desktop\Nuevo documento de texto.txt
2019-05-11 02:04 - 2018-02-12 16:42 - 000001175 _____ C:\Users\usuario\Desktop\Modo 11.2v2.lnk
2019-05-10 23:49 - 2016-03-05 13:31 - 000000000 ____D C:\Users\usuario\AppData\Local\CrashDumps
2019-05-10 12:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\LiveKernelReports
2019-05-09 19:03 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-05 22:47 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\System32\NDF
2019-05-05 14:20 - 2018-05-28 08:13 - 000000000 ____D C:\Users\usuario\AppData\Local\D3DSCache
2019-05-04 11:25 - 2018-06-17 23:42 - 000000000 ____D C:\Users\usuario\AppData\Roaming\RenPy
2019-04-30 21:31 - 2013-10-10 11:02 - 000002258 _____ C:\Users\usuario\Desktop\Google Chrome.lnk

==================== KnownDLLs (Whitelisted) =========================


==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2019-04-10 03:15] - [2019-03-14 15:52] - 003933296 _____ (Microsoft Corporation) C8FB56B60458B09C1CAEBD4DAF1AC8BB

C:\Windows\SysWOW64\explorer.exe
[2019-04-10 03:15] - [2019-03-14 15:08] - 003611264 _____ (Microsoft Corporation) 399F1C4172B3D9A75682E5DE94154F71

C:\Windows\System32\svchost.exe
[2019-02-14 00:55] - [2019-01-09 06:39] - 000085472 _____ (Microsoft Corporation) 0861726716C9610CE5F6BCF3F4858DA1

C:\Windows\SysWOW64\svchost.exe
[2019-02-14 00:55] - [2019-01-09 06:43] - 000071456 _____ (Microsoft Corporation) C01CB20D971C3262F1F856B4539DD27C

C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll
[2019-01-09 17:14] - [2019-01-01 07:41] - 001159680 _____ (Microsoft Corporation) 2383579559B1EB66C4FA2297119CEDD0

C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\dllhost.exe => MD5 is legit
C:\Windows\SysWOW64\dllhost.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Association (Whitelisted) =============


==================== Restore Points  =========================


==================== Memory info =========================== 

Percentage of memory in use: 20%
Total physical RAM: 4016.91 MB
Available physical RAM: 3213.09 MB
Total Virtual: 4016.91 MB
Available Virtual: 3264.35 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.5 GB) (Free:209.22 GB) NTFS
Drive d: (USB Windows 10) (Removable) (Total:7.55 GB) (Free:3.52 GB) NTFS
Drive f: () (Fixed) (Total:0.92 GB) (Free:0.36 GB) NTFS
Drive x: (Boot) (Fixed) (Total:0.49 GB) (Free:0.49 GB) NTFS
Drive y: (Reservado para el sistema) (Fixed) (Total:0.34 GB) (Free:0.05 GB) NTFS ==>[system with boot components (obtained from drive)]


==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: D66A409D)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=464.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=940 MB) - (Type=27)

========================================================
Disk: 1 (Size: 7.5 GB) (Disk ID: 12C1383E)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)
==================== End of FRST.txt ============================

Hola @Inmaculada

Disculpa la demora, he estado investigando tu tema y no nos quedan muchas opciones.:angry:

Realiza lo siguiente:

Paso 1.-: En el equipo limpio:

Inicio >>> Ejecutar >>>Escribes notepad.exe.

Ahora copia y pega dentro del Notepad:

start
HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM\...26dfa299cadb\InprocServer32: [Authentication UI Logon UI]  <==== ATTENTION
folder: C:\Windows\System32\config
Copy: C:\$SysReset\Logs\Setupact.log  D:\
CMD: bootrec.exe /rebuildbcd
end

Lo guardas bajo el nombre de fixlist.txt en la misma USB donde se encuentra frst64.exe.. <<< Esto es muy importante.

Paso 2.-: En el equipo complicado:

  • Inicia nuevamente las opciones de Recuperación del Sistema hasta seleccionar Símbolo del Sistema.
  • Una vez dentro de la Ventana de Comandos escribe tal cual x:frst64.exe donde x debe ser reemplazada por la letra de Tu unidad Usb.
  • Presionas Enter.

En el reporte la unidad USB fue corrida desde D: pero confirmarlo.

Se abrirá la ventana del programa:

  • Presionas una sola vez el botón Fix y esperas a que termine.
  • Se guardara un reporte en tu unidad Usb llamado (Fixlog.txt) que pegaras en tu próxima respuesta.
  • Cierras la ventana del programa si quedo abierta.

Prueba reiniciar.

Nos pegas los dos reportes que se crearán en tu Usb.

Salu2

Fix result of Farbar Recovery Scan Tool (x64) Version: 27-05.2019
Ran by SYSTEM (30-05-2019 23:07:25) Run:2
Running from D:\
Boot Mode: Recovery
==============================================

fixlist content:
*****************
start
HKLM\...\Winlogon: [Userinit]  <==== ATTENTION
HKLM\...26dfa299cadb\InprocServer32: [Authentication UI Logon UI]  <==== ATTENTION
folder: C:\Windows\System32\config
Copy: C:\$SysReset\Logs\Setupact.log  D:\
CMD: bootrec.exe /rebuildbcd
end
*****************

HKLM\...\Winlogon: [Userinit]  <==== ATTENTION => Could not restore
HKLM\Software\Classes\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InprocServer32\\Default => value restored successfully

========================= folder: C:\Windows\System32\config ========================

2018-04-11 22:04 - 2019-05-15 21:41 - 000524288 ____A [3040057DF42A6A33750BE769630B04B6] () C:\Windows\System32\config\BBI
2018-04-11 22:04 - 2018-04-11 22:04 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\BBI.LOG1
2018-04-11 22:04 - 2018-04-11 22:04 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\BBI.LOG2
2018-04-11 22:04 - 2018-04-11 22:04 - 000065536 __ASH [2F96325DA015142537C30080100FF7B1] () C:\Windows\System32\config\BBI{8ebe960d-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-11 22:04 - 2018-04-11 22:04 - 000524288 __ASH [895663BD706EE74ADDA2C14C15F30DCC] () C:\Windows\System32\config\BBI{8ebe960d-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-11 22:04 - 2018-04-11 22:04 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\BBI{8ebe960d-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-05-21 11:13 - 2018-05-22 09:08 - 000028672 ____A [BA89A68EC49A68A544E7CF5A376974B2] () C:\Windows\System32\config\BCD-Template
2018-05-21 23:35 - 2018-05-21 23:35 - 000028672 __ASH [660020AD3B99CFA62A6DA2942E50C9C6] () C:\Windows\System32\config\BCD-Template.LOG
2018-05-21 23:35 - 2018-05-21 23:35 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\BCD-Template.LOG1
2018-05-21 23:35 - 2018-05-21 23:35 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\BCD-Template.LOG2
2018-04-11 22:04 - 2019-05-15 20:42 - 055574528 ____A [40F444C82C890AFD8F7E9A444AFF5A8E] () C:\Windows\System32\config\COMPONENTS
2018-04-11 22:04 - 2018-04-11 22:04 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\COMPONENTS.LOG1
2018-04-11 22:04 - 2018-04-11 22:04 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\COMPONENTS.LOG2
2018-04-12 18:34 - 2019-05-15 16:12 - 000065536 __ASH [80BD0733C433C685321D4B8AF700DCE4] () C:\Windows\System32\config\COMPONENTS{8ebe95e2-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2019-05-08 14:56 - 000524288 __ASH [8A6A3139E7C8E8933C4E166C0415F00F] () C:\Windows\System32\config\COMPONENTS{8ebe95e2-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2019-05-15 16:12 - 000524288 __ASH [2A67B40C98563461C4B1B449D0422274] () C:\Windows\System32\config\COMPONENTS{8ebe95e2-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2018-05-22 08:09 - 000008192 ____A [148B4A8EF4C4E2572EA9B1C632A71E29] () C:\Windows\System32\config\DEFAULT
2018-04-11 22:04 - 2019-05-16 00:09 - 000008192 __ASH [6BAD5F23FB3298BD37645F1D3BD3EBF9] () C:\Windows\System32\config\DEFAULT.LOG1
2018-04-11 22:04 - 2019-05-16 00:09 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\DEFAULT.LOG2
2018-04-12 18:34 - 2018-04-12 18:35 - 000065536 __ASH [00684E84A17F309E7876F3FBBBB95B64] () C:\Windows\System32\config\DEFAULT{8ebe95f0-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [CB5B1E40935817174AE402203C285368] () C:\Windows\System32\config\DEFAULT{8ebe95f0-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\DEFAULT{8ebe95f0-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2019-05-15 20:21 - 005591040 ____A [EA6316DD4C3DF39D501566FC414B2477] () C:\Windows\System32\config\DRIVERS
2018-04-11 22:04 - 2018-04-11 22:04 - 000589824 __ASH [2119A94A1B592FED663FDCCFA6383DAB] () C:\Windows\System32\config\DRIVERS.LOG1
2018-04-11 22:04 - 2018-04-11 22:04 - 001048576 __ASH [4FA847E6DCBD94E741FBF5C432B7FA57] () C:\Windows\System32\config\DRIVERS.LOG2
2019-04-15 17:14 - 2019-04-15 17:17 - 000065536 __ASH [6192C1EC1D7F3BF2EA5E768A61B349B9] () C:\Windows\System32\config\DRIVERS{2f04f73c-5f99-11e9-878d-240a64b6dfd5}.TM.blf
2019-04-15 17:14 - 2019-04-15 17:17 - 000524288 __ASH [864C51997FEA41EB30487C6ACB3D40E0] () C:\Windows\System32\config\DRIVERS{2f04f73c-5f99-11e9-878d-240a64b6dfd5}.TMContainer00000000000000000001.regtrans-ms
2019-04-15 17:14 - 2019-04-15 17:17 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\DRIVERS{2f04f73c-5f99-11e9-878d-240a64b6dfd5}.TMContainer00000000000000000002.regtrans-ms
2018-04-12 18:34 - 2019-04-10 05:10 - 000065536 __ASH [961A7A1961DA53CEBC04920FF57996D1] () C:\Windows\System32\config\DRIVERS{8ebe95e8-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2019-04-10 05:10 - 000524288 __ASH [E82228398ACE4DB9E340A579A7C12527] () C:\Windows\System32\config\DRIVERS{8ebe95e8-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\DRIVERS{8ebe95e8-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2019-01-07 00:22 - 000032768 ____A [CF406789D1174A9192DE4364BA814DA7] () C:\Windows\System32\config\ELAM
2018-04-11 22:04 - 2018-04-11 22:04 - 000032768 __ASH [945D20769B95C2458846A66CEDAB74C1] () C:\Windows\System32\config\ELAM.LOG1
2018-04-11 22:04 - 2018-04-11 22:04 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\ELAM.LOG2
2018-05-21 10:03 - 2018-05-21 10:03 - 000065536 __ASH [014EBEE9D61AF8F85E57CB5D877857AC] () C:\Windows\System32\config\ELAM{8ebe9616-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-05-21 10:03 - 2018-05-21 10:03 - 000524288 __ASH [0F817C2DD576099A7E6F36F6B0EF6BD7] () C:\Windows\System32\config\ELAM{8ebe9616-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-05-21 10:03 - 2018-05-21 10:03 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\ELAM{8ebe9616-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2018-05-22 08:09 - 000008192 ____A [5C5C0197FCA1DB973701A9FB340FC1AF] () C:\Windows\System32\config\SAM
2018-04-11 22:04 - 2019-05-16 00:09 - 000008192 __ASH [3C39917C9B98451665381D1BFD583E47] () C:\Windows\System32\config\SAM.LOG1
2018-04-11 22:04 - 2019-05-16 00:09 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SAM.LOG2
2018-04-12 18:34 - 2018-04-12 18:35 - 000065536 __ASH [B540CC6CAA4DC3A84D879008AF250003] () C:\Windows\System32\config\SAM{8ebe95db-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [98F4A9A6ACA914076F81483A1AC9503D] () C:\Windows\System32\config\SAM{8ebe95db-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\SAM{8ebe95db-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2018-05-22 08:09 - 000008192 ____A [59E5336688463636C37BBA0D884FD77C] () C:\Windows\System32\config\SECURITY
2018-04-11 22:04 - 2019-05-16 00:09 - 000008192 __ASH [98B44207DFFE06669837BFDBA47CF334] () C:\Windows\System32\config\SECURITY.LOG1
2018-04-11 22:04 - 2019-05-16 00:09 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SECURITY.LOG2
2018-04-12 18:34 - 2018-04-12 18:35 - 000065536 __ASH [A70D5CC94BF9AD2D70B66364D906166F] () C:\Windows\System32\config\SECURITY{8ebe95d2-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [D826D124146521B2A19639B83A825869] () C:\Windows\System32\config\SECURITY{8ebe95d2-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\SECURITY{8ebe95d2-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2019-05-30 23:05 - 000008192 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SOFTWARE
2018-04-11 22:04 - 2019-05-16 00:09 - 000008192 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SOFTWARE.LOG1
2018-04-11 22:04 - 2019-05-16 00:09 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SOFTWARE.LOG2
2018-04-12 18:34 - 2018-04-12 18:35 - 000065536 __ASH [EEC6AF5F92A9AD5C9FFC61B0E7BD0A2E] () C:\Windows\System32\config\SOFTWARE{8ebe95c6-3dcb-11e8-a9d9-7cfe90913f50}.TM.blf
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [45C315FFDF72CDE3E9100218E2843018] () C:\Windows\System32\config\SOFTWARE{8ebe95c6-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\SOFTWARE{8ebe95c6-3dcb-11e8-a9d9-7cfe90913f50}.TMContainer00000000000000000002.regtrans-ms
2018-04-11 22:04 - 2019-05-16 22:02 - 000008192 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SYSTEM
2018-04-11 22:04 - 2019-05-16 00:08 - 000008192 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SYSTEM.LOG1
2018-04-11 22:04 - 2019-05-16 00:08 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\SYSTEM.LOG2
2018-04-12 18:34 - 2018-04-12 18:35 - 000065536 __ASH [96622F7F4F41C818505FC97C8F562EC2] () C:\Windows\System32\config\SYSTEM{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TM.blf
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [32CB1AA7584830BF9CC138EB10D6C261] () C:\Windows\System32\config\SYSTEM{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TMContainer00000000000000000001.regtrans-ms
2018-04-12 18:34 - 2018-04-12 18:35 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\SYSTEM{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TMContainer00000000000000000002.regtrans-ms
2018-05-21 10:03 - 2018-05-21 10:03 - 000008192 ____A [142D60D262559C9204049086E6A0211D] () C:\Windows\System32\config\userdiff
2018-05-21 10:03 - 2018-05-21 10:03 - 000008192 __ASH [B2F12C75798B3DD7B0FE4F6CD7EB44B4] () C:\Windows\System32\config\userdiff.LOG1
2018-05-21 10:03 - 2018-05-21 10:03 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\userdiff.LOG2
2018-05-21 10:03 - 2018-05-21 10:03 - 000065536 __ASH [097B10A4AD15E5248EB60CD9F55C0F28] () C:\Windows\System32\config\userdiff{6dc86d0a-5cc5-11e8-85e4-240a64b6dfd5}.TM.blf
2018-05-21 10:03 - 2018-05-21 10:03 - 000524288 __ASH [7AD932482E43F4BD010D5A04A24502B7] () C:\Windows\System32\config\userdiff{6dc86d0a-5cc5-11e8-85e4-240a64b6dfd5}.TMContainer00000000000000000001.regtrans-ms
2018-05-21 10:03 - 2018-05-21 10:03 - 000524288 __ASH [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\userdiff{6dc86d0a-5cc5-11e8-85e4-240a64b6dfd5}.TMContainer00000000000000000002.regtrans-ms
2019-05-15 23:30 - 2019-05-15 23:46 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\backup
2019-05-15 23:32 - 2019-05-15 21:41 - 000524288 ____A [3040057DF42A6A33750BE769630B04B6] () C:\Windows\System32\config\backup\BBI
2019-05-15 23:32 - 2018-05-22 09:08 - 000028672 ____A [BA89A68EC49A68A544E7CF5A376974B2] () C:\Windows\System32\config\backup\BCD-Template
2019-05-15 23:32 - 2019-05-15 20:42 - 055574528 ____A [79830C370C2356FC3B38F753946C8947] () C:\Windows\System32\config\backup\COMPONENTS
2019-05-15 23:32 - 2018-05-22 08:09 - 000008192 ____A [DEF94C43231CCD6F20E552CBB220B11A] () C:\Windows\System32\config\backup\DEFAULT
2019-05-15 23:32 - 2019-05-15 20:21 - 005591040 ____A [BF59CE12F8D4A13FCBB418681B8DDB4C] () C:\Windows\System32\config\backup\DRIVERS
2019-05-15 23:32 - 2019-01-07 00:22 - 000032768 ____A [CF406789D1174A9192DE4364BA814DA7] () C:\Windows\System32\config\backup\ELAM
2019-05-15 23:32 - 2018-05-22 08:09 - 000008192 ____A [03036F8B7CE9DD245C17A4220EE808BD] () C:\Windows\System32\config\backup\SAM
2019-05-15 23:32 - 2018-05-22 08:09 - 000008192 ____A [1ED4CC4901943686BDB893FB646201A1] () C:\Windows\System32\config\backup\SECURITY
2019-05-15 23:46 - 2019-05-15 23:49 - 000008192 ____A [FB421465FD55C87D589B2861B8C818F9] () C:\Windows\System32\config\backup\SOFTWARE
2019-05-15 23:32 - 2018-05-22 08:08 - 000008192 ____A [EC6049DCAFB95B9EE5CC4C45431C6FCA] () C:\Windows\System32\config\backup\SYSTEM
2019-05-15 23:32 - 2018-05-21 10:03 - 000008192 ____A [142D60D262559C9204049086E6A0211D] () C:\Windows\System32\config\backup\userdiff
2018-05-21 11:31 - 2018-05-22 09:07 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\bbimigrate
2017-09-29 09:45 - 2018-05-22 08:11 - 000786432 ____A [81CF426BCEB0EA42A3B154D2C07C4A77] () C:\Windows\System32\config\bbimigrate\BBI
2017-09-29 09:45 - 2017-09-29 09:45 - 000008192 ____A [4A1B98509B74BCEC10B7737D32E101BE] () C:\Windows\System32\config\bbimigrate\BBI.LOG1
2017-09-29 09:45 - 2017-09-29 09:45 - 000240640 ____A [9C561396726E52BB418061F728A6FBFD] () C:\Windows\System32\config\bbimigrate\BBI.LOG2
2018-04-12 00:38 - 2018-04-12 00:38 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\Journal
2018-04-12 00:38 - 2018-05-22 08:09 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\RegBack
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\RegBack\DEFAULT
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\RegBack\SAM
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\RegBack\SECURITY
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\RegBack\SOFTWARE
2018-05-22 08:08 - 2018-05-22 08:08 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\RegBack\SYSTEM
2018-04-12 00:38 - 2018-04-12 00:38 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile
2018-04-12 00:38 - 2018-04-12 00:38 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData
2018-04-12 00:38 - 2019-03-12 19:52 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local
2019-01-06 16:42 - 2019-01-06 16:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg
2019-01-06 16:42 - 2019-01-06 16:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg\log
2019-01-06 16:42 - 2019-01-06 16:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg\log\fmw1
2019-01-06 16:42 - 2019-01-06 16:44 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg\log\fmwlight
2019-01-06 16:44 - 2019-05-15 20:23 - 000370753 ____A [1FC2D89FF928AEEA8A3035C93A041960] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg\log\fmwlight\light.log
2019-01-06 16:44 - 2019-01-06 16:44 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\systemprofile\AppData\Local\Avg\log\fmwlight\light.log.lock
2018-09-21 23:44 - 2019-05-15 16:05 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\CrashDumps
2019-05-10 19:37 - 2019-05-10 19:37 - 000976529 ____A [19F5B781A34C82F22DB073DE07D0461C] () C:\Windows\System32\config\systemprofile\AppData\Local\CrashDumps\overseer.exe.17724.dmp
2019-05-14 06:53 - 2019-05-14 06:53 - 005618197 ____A [22B75DE4B624D198016C81FB4B7D2695] () C:\Windows\System32\config\systemprofile\AppData\Local\CrashDumps\taskhostw.exe.3884.dmp
2019-05-15 16:05 - 2019-05-15 16:05 - 000774108 ____A [6953B2221FCBDF71D65A14A3A7320B71] () C:\Windows\System32\config\systemprofile\AppData\Local\CrashDumps\wuauclt.exe.10832.dmp
2018-05-22 08:18 - 2018-05-22 08:58 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache
2018-05-22 08:58 - 2018-05-22 08:58 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\583641b082f50f42
2018-05-22 08:58 - 2018-05-22 08:58 - 000065552 ____A [D841B8444351C2DEFE8F2B29AE79B272] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\583641b082f50f42\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.idx
2018-05-22 08:58 - 2019-03-18 08:17 - 000000004 ____A [F49655F856ACB8884CC0ACE29216F511] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\583641b082f50f42\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.lock
2018-05-22 08:58 - 2018-05-22 08:58 - 000002976 ___AC [51F98C12411BFFABDB5256E00C49ADF5] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\583641b082f50f42\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.val
2018-05-22 08:18 - 2018-05-22 08:18 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\b3474141becdd6ac
2018-05-22 08:18 - 2018-05-22 08:18 - 000065552 ____A [5534C12B398B81B7538A65D0383A4C18] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\b3474141becdd6ac\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.idx
2018-05-22 08:18 - 2019-02-22 09:24 - 000000004 ____A [F49655F856ACB8884CC0ACE29216F511] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\b3474141becdd6ac\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.lock
2018-05-22 08:18 - 2018-05-22 08:18 - 000002976 ___AC [A09160FFD2E2526256E7D648854BA7AC] () C:\Windows\System32\config\systemprofile\AppData\Local\D3DSCache\b3474141becdd6ac\F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.val
2018-05-23 20:42 - 2018-05-23 20:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing
2018-05-23 20:42 - 2019-05-10 23:50 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage
2018-05-23 20:42 - 2019-05-11 22:33 - 000008192 ____A [F0DA19534E2C4B33B893E7A94E3E1278] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSS.chk
2018-05-23 20:42 - 2019-05-11 22:33 - 000065536 ____A [33196C93F252805EA47C81B0CCE67995] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSS.log
2018-05-23 20:42 - 2019-05-10 23:50 - 000065536 ____A [620E7D5AD2570055B627DC018432F08D] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSS0002F.log
2018-05-23 20:42 - 2018-05-23 20:42 - 000065536 ____A [FCD6BCB56C1689FCEF28B57C22475BAD] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSSres00001.jrs
2018-05-23 20:42 - 2018-05-23 20:42 - 000065536 ____A [FCD6BCB56C1689FCEF28B57C22475BAD] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSSres00002.jrs
2018-05-23 20:42 - 2019-04-26 04:53 - 000065536 ____A [95B0FBCE1BC107B5E6DB0ADFF71C55FB] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSStmp.log
2018-05-23 20:42 - 2019-05-11 22:33 - 001048576 ____A [61C9ED63E0512E5C71916B8A585DB318] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSTokenDB2.dat
2018-05-23 20:42 - 2019-05-11 22:33 - 000016384 ____A [4EE94B975487F4D759573D1E38C89C14] () C:\Windows\System32\config\systemprofile\AppData\Local\DataSharing\Storage\DSTokenDB2.jfm
2018-09-21 23:44 - 2018-09-21 23:44 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\DBG
2018-07-12 01:16 - 2018-07-12 01:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics
2018-07-12 01:16 - 2018-07-12 01:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439
2018-07-12 01:16 - 2018-07-12 01:16 - 000009979 ____A [5AC0271FACF8F5FE60B633832F669FB4] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\latest.cab
2018-07-12 01:16 - 2018-07-12 01:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000
2018-07-12 01:16 - 2018-07-12 01:16 - 000009502 ____A [B37C3CB0E245C8D9DC894B6A091EA4EE] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000\AppsDiagnostic.debugreport.xml
2018-07-12 01:16 - 2018-07-12 01:16 - 000004636 ____A [5B9795680A65A38974CE314B32697BE7] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000\BITSDiagnostic.debugreport.xml
2018-07-12 01:16 - 2018-07-12 01:16 - 000006920 ____A [96BDC37ED86D9E2802DD804EFA507018] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000\ResultReport.xml
2018-07-12 01:16 - 2018-07-12 01:16 - 000000341 ____A [070799A209EF693761A681249AED8DE6] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000\results.xml
2018-07-12 01:16 - 2018-07-12 01:10 - 000049050 ____A [0F391DB2D621C2E9ED8EA3119A3FAEED] () C:\Windows\System32\config\systemprofile\AppData\Local\ElevatedDiagnostics\1508469439\2018071200.000\results.xsl
2018-05-21 11:21 - 2018-11-05 21:54 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft
2018-05-22 20:57 - 2018-05-22 20:57 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0
2018-05-22 20:57 - 2018-12-02 15:18 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs
2018-10-11 19:03 - 2018-10-11 19:03 - 000000642 ____A [E5CCA5D54542F1C319704100E25CB056] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\KillerLU.exe.log
2018-05-22 20:57 - 2019-05-15 16:43 - 000000642 ____A [28BA68915068E06A00CE28BF1E7CCE33] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\NGenTask.exe.log
2018-07-12 01:16 - 2018-07-12 01:16 - 000004341 ____A [11E5CE8C251284FE4AB1CD46630113AC] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\sdiagnhost.exe.log
2018-05-30 11:31 - 2019-04-15 03:33 - 000000653 ____A [817D4BEA2DE8C963E028EDB7F0F0216A] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\SurSvc.exe.log
2018-05-22 21:01 - 2019-05-15 16:43 - 000000226 ____A [205B01F422B6FDB8A2C9C00F06E383AC] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\taskhostw.exe.log
2018-05-29 15:32 - 2019-05-09 03:00 - 000000847 ____A [28C631C3E96369AD2B5E07E64A245D9E] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\tzsync.exe.log
2018-10-11 19:03 - 2019-04-15 11:22 - 000000867 ____A [04FF61A85DB1EEB9B25A4A3885ACFCB5] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\xTendSoftAPService.exe.log
2018-12-02 15:18 - 2018-12-02 15:18 - 000000867 ____A [D072FD28169012C3ECA1137D6E671A12] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\xTendUtilityService.exe.log
2013-10-25 04:43 - 2019-05-11 00:19 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Credentials
2019-05-11 00:19 - 2019-05-11 00:19 - 000011288 __ASH [8ECCD4247E305C6625581752A101ED33] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Credentials\DFBE70A7E5CC19A398EBF1B96859CE5D
2018-05-22 08:52 - 2018-05-22 08:52 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\IdentityCRL
2018-05-22 08:52 - 2018-05-22 08:52 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\IdentityCRL\production
2018-05-22 08:52 - 2018-05-22 08:52 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\IdentityCRL\production\temp
2018-05-22 09:03 - 2018-05-22 09:03 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\InstallAgent
2018-05-22 09:03 - 2019-05-09 19:05 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\InstallAgent\Checkpoints
2018-05-22 08:22 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Internet Explorer
2018-05-22 08:37 - 2018-05-22 08:37 - 000001406 ____A [F047103DC7ABA221EDCF7DC9B76431B3] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Internet Explorer\ie4uinit-apply.log
2018-05-22 08:22 - 2018-05-22 08:22 - 000000654 ____A [5F6FCD723E2D6F9CD317AC2ABB337AEA] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Internet Explorer\ie4uinit-show.log
2018-05-22 08:29 - 2018-05-22 09:21 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office
2018-05-22 08:29 - 2019-04-10 05:13 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0
2019-01-11 19:41 - 2019-03-28 11:42 - 000126677 ____A [77BE56D1BCBAA5EF3E524CE478EF559C] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\officec2rclient.exe_Rules.xml
2019-04-10 05:13 - 2019-04-12 23:43 - 000118090 ____A [D6BF57F99073385644DC9A7172D865D5] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\officeclicktorun.exe_Rules.xml
2018-05-22 16:19 - 2018-05-22 16:19 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\WebServiceCache
2018-05-22 16:19 - 2018-05-22 16:19 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\WebServiceCache\AllUsers
2018-05-22 16:19 - 2019-04-15 11:23 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\WebServiceCache\AllUsers\officeclient.microsoft.com
2019-04-15 11:22 - 2019-04-15 11:22 - 000101585 ____A [5315ED5D90353727E216A48D9E933FB4] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\16.0\WebServiceCache\AllUsers\officeclient.microsoft.com\EFEA7DAF-F1F5-4C4D-9D2C-FC978C05F149
2018-05-22 09:21 - 2019-04-15 12:38 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Office\OTele
2016-07-18 17:36 - 2016-07-18 17:36 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Vault
2016-07-18 17:36 - 2016-07-18 17:36 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Vault\4BF4C442-9B8A-41A0-B380-DD4A704DDB28
2016-07-18 17:36 - 2016-07-18 17:36 - 000000438 ____A [54179592F04FBBBC29A2C460F5F8A84F] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Vault\4BF4C442-9B8A-41A0-B380-DD4A704DDB28\Policy.vpol
2016-07-18 17:36 - 2016-07-18 17:36 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Vault\UserProfileRoaming
2016-07-18 17:36 - 2016-07-18 17:36 - 000000001 ____A [93B885ADFE0DA089CDF634904FD59F71] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Vault\UserProfileRoaming\Latest.dat
2018-05-22 08:09 - 2019-02-02 18:35 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows
2018-05-22 08:55 - 2018-05-22 08:55 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCacheLock.dat
2018-05-22 08:53 - 2018-05-22 08:53 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\0
2018-05-22 08:53 - 2018-05-22 08:54 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\3082
2018-05-22 08:54 - 2019-03-18 08:08 - 000444281 ____A [E53668AE5D7579BAEA1F7537DF91038C] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\3082\StructuredQuerySchema.bin
2018-05-22 08:22 - 2019-03-18 08:20 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Caches
2019-03-18 08:20 - 2019-03-18 08:20 - 000444320 ____A [B939F59CB514EC102EFA41CFE958DF6F] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Caches\{000AE79C-B905-4D30-88C9-B63C603DA134}.3.ver0x0000000000000001.db
2018-05-22 08:54 - 2018-05-22 08:54 - 000016384 ____A [765EE2DFAE34BB8D4782A9548CFCD1B1] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Caches\cversions.3.db
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\CloudAPCache
2018-05-22 08:09 - 2018-05-22 08:09 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\CloudAPCache\MicrosoftAccount
2019-02-02 18:35 - 2019-02-02 18:35 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [2DD3F3C33E7100EC0D4DBBCA9774B044] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_1280.db
2019-02-02 18:35 - 2019-02-02 18:35 - 001048576 ____A [450364AA5E57ABD1636704051BC24C2E] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [635E15CB045FF4CF0E6A31C827225767] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_1920.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [F6B463BE7B50F3CC5D911B76002A6B36] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_256.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [2D84AD5CFDF57BD4E3656BCFD9A864EA] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_2560.db
2019-02-02 18:35 - 2019-02-02 18:35 - 001048576 ____A [6DAA707543342F668CE6DAFCC6427133] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_32.db
2019-02-02 18:35 - 2019-02-02 18:35 - 001048576 ____A [952AC852CDC6FFA50479679D0F878A16] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_48.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [D192F7C343602D02E3E020807707006E] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_768.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [2A8875D2AF46255DB8324AAD9687D0B7] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_96.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [F732BF1006B6529CFFBA2B9F50C4B07F] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_custom_stream.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [FC94FE7BD3975E75CEFAD79F5908F7B3] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_exif.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000007416 ____A [F2014B1962D22C4BDE09A975532CABE5] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [379523B9F5D5B954E719B664846DBF8F] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_sr.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [5F243BF7CC0A348B6D31460A91173E71] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_wide.db
2019-02-02 18:35 - 2019-02-02 18:35 - 000000024 ____A [DB7C049E5E4E336D76D5A744C28C54C8] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Explorer\iconcache_wide_alternate.db
2018-05-22 10:19 - 2018-05-22 10:19 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History
2018-05-22 10:19 - 2018-05-22 10:19 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5
2018-05-22 08:55 - 2018-05-22 10:19 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache
2018-05-22 10:19 - 2018-05-22 10:19 - 000000000 _SHDL [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5
2018-05-22 08:55 - 2019-05-15 19:24 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE
2018-05-22 08:55 - 2018-05-22 08:55 - 000000000 __ASH [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
2018-05-22 10:19 - 2018-05-22 10:19 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCookies
2016-08-22 06:44 - 2018-06-17 13:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications
2016-08-22 06:44 - 2019-03-20 07:22 - 000172032 ____A [5FA140D8382CFFE7F105C2233862BBA5] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\wpndatabase.db
2016-08-22 07:04 - 2019-05-15 20:16 - 000032768 ____A [B22D451811F686B908DFE9D7DE28C7A4] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\wpndatabase.db-shm
2016-08-22 06:44 - 2019-05-15 20:23 - 003996432 ____A [8439348532D2DFE8BECD29A433CE9F96] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\wpndatabase.db-wal
2016-08-22 06:44 - 2016-08-22 06:44 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\wpnidm
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PRICache
2018-05-22 08:55 - 2019-05-06 08:53 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache
2018-05-22 08:55 - 2019-05-09 16:09 - 000008192 ____A [AAF6A7CBF66A47FE937EAD2CB2DD7481] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V01.chk
2018-05-22 08:55 - 2019-05-06 08:53 - 000524288 ____A [69EED24F0A02CCD793433935792D22B1] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V01.log
2018-06-14 02:58 - 2019-02-16 12:06 - 000524288 ____A [82D6CC57EDA8A163DAB9CC7E59B42BF8] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V010000B.log
2018-09-29 14:58 - 2019-03-30 02:31 - 000524288 ____A [6DF3671438C445DE871A3F0663986533] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V010000C.log
2018-10-22 14:41 - 2019-05-06 08:53 - 000524288 ____A [04A7CFDE0032049F601F9DD79B716B64] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V010000D.log
2018-05-22 08:55 - 2018-05-22 08:55 - 000524288 ____A [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V01res00001.jrs
2018-05-22 08:55 - 2018-05-22 08:55 - 000524288 ____A [59071590099D21DD439896592338BF95] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V01res00002.jrs
2018-05-22 08:55 - 2019-01-30 07:29 - 000524288 ____A [441976228759C28F2BB14D04B14968B7] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
2018-05-22 08:55 - 2019-05-06 08:53 - 026738688 ____A [229D00718032C867B176B87F40FE4192] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
2018-05-22 08:55 - 2019-05-06 08:53 - 000016384 ____A [8CE60C457A9C1DC42F66322301E352D8] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm
2018-11-05 21:54 - 2018-11-09 16:51 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\XboxLive
2018-05-22 08:09 - 2019-03-23 02:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost\AC
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost\AC\INetCache
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost\AC\INetCookies
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost\AC\INetHistory
2018-05-22 16:16 - 2018-05-22 16:16 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\microsoft.windows.fontdrvhost\AC\Temp
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\INetCache
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\INetCookies
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 __SHD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\INetHistory
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\Temp
2019-01-16 10:49 - 2019-01-16 10:49 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Local\PeerDistRepub
2018-04-12 00:38 - 2018-05-22 09:04 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow
2018-05-22 09:04 - 2019-01-17 17:42 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft
2018-05-22 09:04 - 2018-05-22 09:04 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache
2018-05-22 09:04 - 2019-05-15 14:57 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
2019-01-19 19:10 - 2019-05-15 18:56 - 000000471 ___AS [0AD5987A129BE0E596F126AA5D90585F] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_8AA3051B99A018B52FE90E01B1EAAEB0
2019-02-07 19:48 - 2019-05-11 16:33 - 000000471 ___AS [129ABE59C998587B58FF848F3A208140] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_A9487A378872807F99238E9334B9E448
2019-04-16 09:27 - 2019-04-16 09:27 - 000001664 ___AS [812765A9F097A035C5CFEB432EAFE7E7] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_977AD6A17C5BE319557C9B5015BA994D
2019-04-19 10:00 - 2019-04-19 10:00 - 000001831 ___AS [0BF5CD1AEC15F302DE228BC36F1F4638] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
2018-05-22 09:04 - 2019-04-09 06:18 - 000006529 ___AS [1D58CFA769ED4A8A240BE2A6D60457FA] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
2019-01-13 13:01 - 2019-05-15 20:16 - 000161064 ___AS [BA2D3D2EA0ACCF03DE18838506326960] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\62B5AF9BE9ADC1085C3C56EC07A82BF6
2018-05-22 09:04 - 2019-05-13 06:37 - 000057523 ___AS [7EB117D4F238090940DBE43EFBCDF1F4] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
2018-05-28 09:11 - 2018-05-28 09:11 - 000000413 ___AS [16D1A162253A56DF8172516F742DC324] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165
2019-04-17 14:27 - 2019-04-17 14:27 - 000005130 ___AS [99AC1556C0C1DAA502979F165B260EB0] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\82CB34DD3343FE727DF8890D352E0D8F
2019-01-13 13:00 - 2019-03-28 11:23 - 000000712 ___AS [4CCF13AA852D42A9B224A101C89275C3] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8DFDF057024880D7A081AFBF6D26B92F
2019-04-16 09:27 - 2019-04-16 09:27 - 000001754 ___AS [B2990A1404E0837A17123D9FC2D53CEA] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_6043FC604A395E1485AF7AC16D16B7CE
2019-01-04 10:58 - 2019-04-13 10:11 - 000000471 ___AS [3A3118F18222690C7B9C802E9AE9E189] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CA4458E7366E94A3C3A9C1FE548B6D21_A0C1EC418E4E1157EA6F57EC72D47E0F
2019-01-10 07:21 - 2019-01-10 07:21 - 000000468 ___AS [D9D754520AE3340AA37CCA6115EEE05B] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_FDB452422670E72EDD3FB3D65568F821
2019-04-16 09:27 - 2019-04-16 09:27 - 000001441 ___AS [05F5A7134CBF897E5090576B64F7A366] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC
2019-04-15 13:47 - 2019-04-15 13:47 - 000001611 ___AS [B4553C6B2911600B49B2E1AF6EFD99B4] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EA618097E393409AFA316F0F87E2C202_1958C8FC5F0E0F8549703D0A9B9309B5
2019-01-06 16:41 - 2019-04-13 09:58 - 000001611 ___AS [C2237502C37EDE72AA06DFF6F5E5F533] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EA618097E393409AFA316F0F87E2C202_1E65FD33F74047223AF4D58CBFD34BCE
2019-04-16 09:27 - 2019-04-16 09:27 - 000001611 ___AS [F6CBDD33E836B3D05F787E4CAB39B4BC] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EA618097E393409AFA316F0F87E2C202_D6AC6DB4596D014A5C3B55DDECA25033
2019-04-21 10:16 - 2019-05-15 20:16 - 000066803 ___AS [272B17225AC9BF22DEEA2D898410303F] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ECF3006D44DA211141391220EE5049F4
2018-05-30 11:34 - 2019-05-15 18:56 - 000000471 ___AS [E1C0B58B9CDFC494AD8F0B6A08731017] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
2019-01-04 10:58 - 2019-04-13 10:11 - 000000471 ___AS [6EE2F3436A648F31745EE11B52D2B3A0] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EE44ECA143B76F2B9F2A5AA75B5D1EC6_847118BE2683F0C241D1D702F3A3F5F9
2019-03-12 19:14 - 2019-04-15 05:03 - 000000471 ___AS [87AF00E4E17EA55A4C70CB87E1D9C672] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F5F320A94D4D2B4465D8F17E2BB2D351_33A56A124B8529D67FBB768498950F64
2018-05-22 09:04 - 2018-05-26 12:25 - 000007796 ___AS [FB60E1AFE48764E6BF78719C07813D32] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB0D848F74F70BB2EAA93746D24D9749
2018-05-22 09:04 - 2019-05-15 14:57 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
2019-01-19 19:10 - 2019-05-15 18:57 - 000000438 ___AS [9B9BA0BD8BFA01B0462CD0F2193AE1CC] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_8AA3051B99A018B52FE90E01B1EAAEB0
2019-02-07 19:48 - 2019-05-11 16:34 - 000000442 ___AS [4C77DC89B86F6E8495CEDE63C81E8808] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_A9487A378872807F99238E9334B9E448
2019-04-16 09:27 - 2019-04-16 09:27 - 000000408 ___AS [688B4F64C181A5935D4605CE42FC716A] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_977AD6A17C5BE319557C9B5015BA994D
2019-04-19 10:00 - 2019-04-19 10:01 - 000000486 ___AS [8D9343088EA867B51AA5F8DDF12530B3] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
2018-05-22 09:04 - 2019-05-15 06:26 - 000000340 ___AS [9A9DFC7E3BA2231E81D5043EFF952933] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
2019-01-13 13:01 - 2019-05-15 20:16 - 000000236 ___AS [E4311CAC95C6552F22A4DB356A15F564] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\62B5AF9BE9ADC1085C3C56EC07A82BF6
2018-05-22 09:04 - 2019-05-13 10:00 - 000000328 ___AS [2920841C9B4484F300D83FF5D8E7E80A] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
2018-05-28 09:11 - 2018-05-28 09:11 - 000000212 ___AS [6CBD5A599000C641393E09DBDC20E6CF] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165
2019-04-17 14:27 - 2019-04-17 14:27 - 000000222 ___AS [0F18BECA24C8FA5D8BF33CC9407FC316] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\82CB34DD3343FE727DF8890D352E0D8F
2019-01-13 13:00 - 2019-05-15 14:57 - 000000214 ___AS [768307EAE9FFDEB3D18BF2F7A82EE924] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8DFDF057024880D7A081AFBF6D26B92F
2019-04-16 09:27 - 2019-04-16 09:27 - 000000398 ___AS [DC2C696CA4CB3FDCDF3C1494738231CA] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_6043FC604A395E1485AF7AC16D16B7CE
2019-01-04 10:58 - 2019-04-13 10:12 - 000000426 ___AS [04F275F5DF05F813EC30DE2B945DD0BB] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CA4458E7366E94A3C3A9C1FE548B6D21_A0C1EC418E4E1157EA6F57EC72D47E0F
2019-01-10 07:21 - 2019-01-10 07:22 - 000000402 ___AS [A50A363ADDE2CA84FDCDD39770000ED0] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_FDB452422670E72EDD3FB3D65568F821
2019-04-16 09:27 - 2019-04-16 09:27 - 000000404 ___AS [A62D1BF2A3D98F8D8756B3213ED3B6C9] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC
2019-04-15 13:47 - 2019-04-15 13:48 - 000000402 ___AS [1F2E840F3C6D0BE0524977B411931450] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EA618097E393409AFA316F0F87E2C202_1958C8FC5F0E0F8549703D0A9B9309B5
2019-01-06 16:41 - 2019-04-13 09:59 - 000000402 ___AS [FF3163AC92D47E45419991387C07F3B5] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EA618097E393409AFA316F0F87E2C202_1E65FD33F74047223AF4D58CBFD34BCE
2019-04-16 09:27 - 2019-04-16 09:27 - 000000402 ___AS [E3EA000C04BDE83312D3BC831C258D79] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EA618097E393409AFA316F0F87E2C202_D6AC6DB4596D014A5C3B55DDECA25033
2019-04-21 10:16 - 2019-05-15 20:16 - 000000194 ___AS [2347C7975FC3B12353C1D89467CB8E5D] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ECF3006D44DA211141391220EE5049F4
2018-05-30 11:34 - 2019-05-15 18:57 - 000000426 ___AS [DD28E3AAF538EECF46580B87AA2ED9D6] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
2019-01-04 10:58 - 2019-04-13 10:12 - 000000438 ___AS [786269254BCDDC5B20DA0E579EB97084] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EE44ECA143B76F2B9F2A5AA75B5D1EC6_847118BE2683F0C241D1D702F3A3F5F9
2019-03-12 19:14 - 2019-04-15 05:05 - 000000410 ___AS [EF74F7C504CFBD4C9233DB4FC65E4388] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F5F320A94D4D2B4465D8F17E2BB2D351_33A56A124B8529D67FBB768498950F64
2018-05-22 09:04 - 2019-05-15 06:26 - 000000330 ___AS [0A30F4B46714F7AADBDF0AA176EEC53F] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB0D848F74F70BB2EAA93746D24D9749
2019-01-17 17:42 - 2019-01-17 17:42 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\Silverlight
2018-04-12 00:38 - 2019-01-06 18:23 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming
2018-05-22 08:13 - 2018-05-22 08:13 - 000003315 ____A [FE33A3A7500CFC7CFE61289C3A8F4150] () C:\Windows\System32\config\systemprofile\AppData\Roaming\ETDCoInstaller.log
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Adobe
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Adobe\Flash Player
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Adobe\Flash Player\NativeCache
2018-05-21 11:21 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft
2018-05-21 11:30 - 2018-05-21 11:30 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates
2018-05-21 11:30 - 2018-05-22 08:10 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My
2018-05-22 08:10 - 2018-05-22 08:10 - 000000000 ___AS [D41D8CD98F00B204E9800998ECF8427E] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\AppContainerUserCertRead
2014-10-17 08:29 - 2014-10-17 08:29 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
2018-05-22 08:10 - 2018-05-22 08:10 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
2018-05-22 08:10 - 2018-05-22 08:10 - 000000000 ___SD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
2016-07-18 17:36 - 2016-07-18 17:36 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Vault
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ___RD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ___RD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
2018-05-22 08:37 - 2018-05-22 08:37 - 000000000 ___RD [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2018-05-22 08:37 - 2018-05-22 08:37 - 000000082 ___SH [1C61DC21F9B83172D65BE1E94B79026F] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\desktop.ini
2018-05-22 08:37 - 2018-05-22 08:37 - 000001259 ____A [4DD30E4711D98921978DBC49DC5680B4] () C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk
2019-01-06 18:23 - 2019-04-15 05:03 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\systemprofile\AppData\Roaming\WTablet
2019-04-14 10:47 - 2019-04-14 10:47 - 000271051 ____A [E4EE920BB654F5636B3EE6F970C1B79F] () C:\Windows\System32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.bak
2019-04-15 05:03 - 2019-04-15 05:03 - 000271051 ____A [E4EE920BB654F5636B3EE6F970C1B79F] () C:\Windows\System32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.dat
2018-04-12 00:38 - 2019-04-15 17:12 - 000000000 ____D [00000000000000000000000000000000] () C:\Windows\System32\config\TxR
2019-04-15 17:12 - 2019-05-15 21:41 - 005242880 __ASH [B7590EA315873F7DCC13234C3C57BD62] () C:\Windows\System32\config\TxR\{2f04f5ee-5f99-11e9-878d-806e6f6e6963}.TxR.0.regtrans-ms
2019-04-15 17:12 - 2019-04-15 17:12 - 005242880 __ASH [367CF1FF63245A37879460DFA93831E0] () C:\Windows\System32\config\TxR\{2f04f5ee-5f99-11e9-878d-806e6f6e6963}.TxR.1.regtrans-ms
2019-04-15 17:12 - 2019-04-15 17:12 - 005242880 __ASH [5F363E0E58A95F06CBE9BBC662C5DFB6] () C:\Windows\System32\config\TxR\{2f04f5ee-5f99-11e9-878d-806e6f6e6963}.TxR.2.regtrans-ms
2019-04-15 17:12 - 2019-05-15 21:41 - 000065536 __ASH [82F8E0105FFD57AEA4DEFCBECF992057] () C:\Windows\System32\config\TxR\{2f04f5ee-5f99-11e9-878d-806e6f6e6963}.TxR.blf
2019-04-15 17:12 - 2019-05-15 21:37 - 000065536 __ASH [A44E50996C62D38F5E33689462D5FA52] () C:\Windows\System32\config\TxR\{2f04f5ef-5f99-11e9-878d-806e6f6e6963}.TM.blf
2019-04-15 17:12 - 2019-05-10 23:51 - 000524288 __ASH [40DAB9C2D01C80D87685A65667B193CB] () C:\Windows\System32\config\TxR\{2f04f5ef-5f99-11e9-878d-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms
2019-04-15 17:12 - 2019-05-15 21:37 - 000524288 __ASH [839EEABA54354569A4DA523DC412AE36] () C:\Windows\System32\config\TxR\{2f04f5ef-5f99-11e9-878d-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms
2018-05-22 08:11 - 2019-04-15 14:02 - 005242880 __ASH [CF50DD4061F3281AA577F481A3195D98] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.0.regtrans-ms
2018-05-22 08:11 - 2019-03-18 00:56 - 005242880 __ASH [F722BA99D7ED6B25DA9E709E57D650CB] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.1.regtrans-ms
2018-05-22 08:11 - 2019-03-18 00:56 - 005242880 __ASH [BFF661D216949A65DA05A5738C4E8FA3] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.2.regtrans-ms
2018-06-16 12:37 - 2019-04-10 05:10 - 005242880 __ASH [47C6BBB424DB6A55E5697202F41469D7] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.3.regtrans-ms
2018-06-16 12:37 - 2019-04-10 05:10 - 005242880 __ASH [51674CA9B1242FE4486F96AB68AC3A76] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.4.regtrans-ms
2018-05-22 08:11 - 2019-04-15 14:02 - 000065536 __ASH [8F08B76696B4E0E9F2A181D1E9C76621] () C:\Windows\System32\config\TxR\{ad35a796-3ddf-11e8-a9db-e41d2db3b7b1}.TxR.blf
2018-05-22 08:08 - 2019-04-15 14:02 - 000065536 __ASH [9A2710B7BE3A887990A638CAA2E52E54] () C:\Windows\System32\config\TxR\{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TM.blf
2018-05-22 08:08 - 2019-04-08 00:17 - 000524288 __ASH [E43F698B2717C8901648EC591C44EAB3] () C:\Windows\System32\config\TxR\{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TMContainer00000000000000000001.regtrans-ms
2018-05-22 08:08 - 2019-04-15 14:02 - 000524288 __ASH [BDDE49FA2FBE4C12C9E7141E1F780C3B] () C:\Windows\System32\config\TxR\{ad35a797-3ddf-11e8-a9db-e41d2db3b7b1}.TMContainer00000000000000000002.regtrans-ms

====== End of Folder: ======

================== "Copy: C:\$SysReset\Logs\Setupact.log  D:\" ===================

"C:\$SysReset\Logs\Setupact.log " => Could not copy (Error:2)

=== End of Copy: ===

========= bootrec.exe /rebuildbcd =========

Examinando todos los discos en busca de instalaciones de Windows.

Espere, esta operación puede tardar unos minutos...

Instalaciones de Windows examinadas correctamente.
Total de instalaciones de Windows identificadas: 0
La operación se completó correctamente.

========= End of CMD: =========


==== End of Fixlog 23:17:01 ====

Hola @Inmaculada

En uno de los comandos que indique en el fixlist no trae buenas noticias.

========= bootrec.exe /rebuildbcd =========

Examinando todos los discos en busca de instalaciones de Windows.

Espere, esta operación puede tardar unos minutos…

Instalaciones de Windows examinadas correctamente. Total de instalaciones de Windows identificadas: 0 La operación se completó correctamente.

========= End of CMD: =========

No encuentra instalaciones de Windows, por ello no podemos reparar.

Si tienes información importante podríamos intentar rescatarla a través de un Live Cd/USB de Linux y un pendrive/o disco duro externo dependiendo la cantidad de información que tengas que recuperar.

Pero para recuperar tu equipo tendrás que formatear.

Nos comentas que quieres hacer.

Salu2

Conforme pasaba el tiempo me iba haciendo cada ve más a la idea del formateo. He visto que el cmd tiene comandos como copy y paste y se introduce por las carpetas pero no sé usarlo.

A mi me interesaría salvar carpetas concretas con archivos pequeños. No tengo contenido multimedia o aplicaciones que no puedan volver a ser descargados. Pero aparte de los archivos me gustaría poder recuperar mis marcadores de chrome. Tampoco me gustaría tener que instalar linux. Estaba bien con la versión de prueba esa de windows que tiene todas las opciones bloqueadas pero hace su función. También me conformaría con windows 7.

Sabes como puedo recuperar esas cosas que te he dicho?. Tampoco sé como formatear desde las opciones avanzadas.

Una pregunta ¿qué pasa si cuando booteo con el usb le doy a instalar windows en vez de reparar windows?

Salu2 y gracias por esta gran asistencia que me estas brindado. Lo aprecio muchísimo.

Hola @Inmaculada

Son muy interesantes, pero en este caso no sirven por que no pueden ver tu Sistema, lo que queda demostrado con FRST y algunos comandos del CMD:

No necesitas instalar Linux, tienes que quemar a un CD/DVD una iso de Linux, para usarlo como LiveCd, o sea correrás un Sistema Operativo desde el CD no desde el disco duro de tu equipo, y desde allí podrás copiar lo que necesites a un USB

No es desde allí desde donde formateas sino desde tu USB con la imagen .iso.

Justamente Formateas. :+1:

Revisa el enlace a partir del Paso 2 Formatear el PC e instalar Windows 10 desde cero ya que tu ya tienes el USB preparado con la .iso.

Paso 2: Arrancar desde el pendrive USB

Gracias a ti por confiar!!!

Cualquier duda vienes y consultas.

Pd: Con todo lo que hemos hecho desde las opciones avanzadas formatear sera super facil, solo mira bien los tutoriales.

Ah casi me olvido en cuanto a tus Marcadores de Google Chrome, cuando inicies con el Live CD siguiendo el tutorial que te deje deberás buscar la siguiente ruta:

  • C:\Users\TU_USUARIO\AppData\Local\Google\Chrome\User Data*Default*

Copiaras la carpeta y la pasaras al Usb que tengas conectado para salvar los archivos.

Aquí los pasos para reestablecerlos en la nueva re-instalación:


Una duda:

Tu tenias Windows 10 pero bloqueado o sea sin activar?

Que Sistema Operativo venia originalmente en tu equipo?

Salu2