Carpeta con virus?

Hola @Cristopher_Salinas_M

Realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga, instala y/o actualiza a las siguientes herramientas:

3.- Ejecutas respetando el orden los pasos:

CCleaner

Usando su opción Limpiador de acuerdo su Manual:

  • Para borrar Cookies, temporales de Internet y todos los archivos que este te muestre como obsoletos.
  • NO necesitamos este reporte

USBFix:

  • Conecte todos sus dispositivos extraibles, USB/Pendrive\Micro SD, etc.
  • Ejecute USBFix.exe
  • Una vez conectados todos sus dispositivos presione en "Ejecutar análisis."
  • Posteriormente seleccione “Full Análisis” y espere a que termine.
  • En caso de detectar amenazas, seleccione todo los elementos detectados y presione "Limpiar todo"
  • Si le pidiera reiniciar el sistema, Acepte .
  • Una vez que se reinicie el equipo, se abrirá el reporte de USBFix indicando lo detectado y lo eliminado.
  • Copie y pegue entero dicho reporte en su próxima respuesta (en caso de que no se abra, el reporte se guarda con el nombre de UsbFix_Report.txt en el Escritorio)

Una vez terminado el análisis, con todas las unidades conectadas, vuelva a ejecutar USBFix como Administrador, y vacune los mismos, siguiendo los pasos del Manual.

Malwarebytes

  • No olvides actualizarlo.
  • Lee detenidamente su Manual
  • Realiza un Análisis Personalizado. Seleccionas "Todas las Unidades"
  • Pulsa en “Eliminar Seleccionados” para enviar lo encontrado a la cuarentena.
  • Reinicias el Sistema.
  • En el apartado del manual “Historial” >> Registros de Aplicación >> Scan Log/Registro de Análisis encontrarás el informe del MBAM, que debes copiar y pegar en tu próxima respuesta.

4.- Nota Importante:

En tu próxima respuesta debes pegar los reportes de Malwarebytes y USBFix.

Guía: ¿Como Pegar reportes en el Foro?

Nos comentas.

Salu2

Hola @Cristopher_Salinas_M y con permiso

Que tema tenias abierto y con que cuenta?

Miugel abri este post Posible ataque de un gusano ? y con respecto al usbfix no puedo descargarlo , desde la pagina oficial creo solo me aparece la version de compra y desde el link que me mandaste solo me manda al inicio del foro ;-; lo baje de uptawn y no me deja usarlo pues no es la version mas reciente xD ayuda

Hola:

No debes hacer pasos que no te indiquemos, si no puedes abrir un enlace vienes y lo comentas. No queremos que descargues cualquier cosa de la red.

Saludos

 ----------------------------------------------------
# UsbFix Antivirus Free
# ----------------------------------------------------
# Versión : 11.012
# Base de datos : 2019.01.29 
# Contacto : https://www.usb-antivirus.com/es/contacto
# ----------------------------------------------------
# Tipo de escaneo : Full
# Usuario : user (Administrador)
# Dispositivo : USER-PC
# Comenzó : 07/03/2019 20:10:13
# ----------------------------------------------------

------------ | Discos analizados |

C:\	NTFS	(57GB/195GB)	[Fixed] 
D:\	NTFS	(165GB/270GB)	[Fixed] 

------------ | Elemento(s) infectado(s) |

Borrado! C:\Windows\SysWOW64\Updater.exe

------------ | Run |

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] Explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
04 - HKLM\..\Run : [PowerDVD13Agent] "C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe"
04 - HKLM\..\Run : [LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe"
04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
04 - [x64] HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui
04 - HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\..\Run : [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR

------------ | Tasks |

Task - Adobe Acrobat Update Task --> C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task - Adobe Flash Player NPAPI Notifier --> C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_Plugin.exe -check plugin
Task - Adobe Flash Player Updater --> C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task - AMDLinkUpdate --> C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe -AMDLinkUpdate
Task - Avast Emergency Update --> C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
Task - BlueStacksHelper --> D:\Bluestacks\BlueStacks\Client\Helper\BlueStacksHelper.exe -sr
Task - CCleaner Update --> C:\Program Files\CCleaner\CCUpdate.exe
Task - CCleanerSkipUAC --> "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Task - Driver Easy Scheduled Scan --> D:\MUS\DriverEasy\DriverEasy.exe --scan
Task - GameFire --> "D:\My pony descargas\GFTray.exe" /SkipUAC
Task - GameFireSkipUAC --> "D:\My pony descargas\GameFire.exe" /SkipUAC
Task - GoogleUpdateTaskMachineCore --> C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Task - GoogleUpdateTaskMachineUA --> C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Task - ModifyLinkUpdate --> "C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe" -UpdateCurrentUser
Task - StartCN --> "C:\Program Files\AMD\CNext\CNext\cncmd.exe" startwithdelay
Task - StartDVR --> "C:\Program Files\AMD\CNext\CNext\dvrcmd.exe"
Task - {17E24548-4AC6-4245-A880-18F6882C0440} --> C:\Windows\system32\pcalua.exe -a "D:\HALFLIFE\half life 2\hl2enhancer.exe" -d "D:\HALFLIFE\half life 2"
Task - {2CD6C93C-36B7-484D-83FC-B93AEE2427D5} --> C:\Windows\system32\pcalua.exe -a C:\Users\user\Downloads\Wolf-by-.CompucaliTV\setup.exe -d C:\Users\user\Downloads\Wolf-by-.CompucaliTV
Task - {7FBD0E2F-A226-4928-8552-0C121886BA46} --> C:\Windows\system32\pcalua.exe -a F:\setup.exe -d F:\
Task - {96E7149D-A174-4A0C-BA9E-74B8C9180FD2} --> C:\Windows\system32\pcalua.exe -a D:\HALLIFE\hl2enhancer.exe -d D:\HALLIFE
Task - {9CF9B835-5349-4EBC-8DEB-EB21F035A0BA} --> C:\Windows\system32\pcalua.exe -a E:\TL-WN951N\Setup.exe -d E:\TL-WN951N
Task - {C236FC9A-BEC4-498A-975D-251B6EEE6949} --> C:\Windows\system32\pcalua.exe -a D:\maplestory\appdata\Setup.exe -d D:\maplestory\appdata
Task - {EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} --> C:\Windows\system32\pcalua.exe -a F:\instmsia.exe -d F:\

------------ | C:\ %SystemDrive% - Disco fijo (NTFS) |

[21/03/2016 - 19:18:03 | A | 14 Ko] - WPI_Log_2016.03.21_19.12.43.txt
[22/02/2019 - 12:04:29 | A | 1 Ko] - DelFix.txt
[07/03/2019 - 19:12:53 | ASH | 9389724 Ko] - hiberfil.sys
[07/03/2019 - 19:12:59 | ASH | 18677760 Ko] - pagefile.sys
[26/02/2019 - 18:54:02 | SHD] - Config.Msi
[13/06/2017 - 21:21:47 | A | 17 Ko] - install.log
[30/04/2016 - 15:51:09 | A | 62 Ko] - respuesta secreta a blizzard.JPG
[13/06/2017 - 21:07:39 | A | 0 Ko] - AVScanner.ini
[26/05/2010 - 13:41:02 | A | 2057 Ko] - D3DCompiler_43.dll
[22/08/2013 - 00:03:24 | A | 3386 Ko] - d3dcompiler_47.dll
[05/10/2013 - 04:38:22 | A | 445 Ko] - msvcp120.dll
[05/10/2013 - 04:38:22 | A | 948 Ko] - msvcr120.dll
[08/04/2018 - 14:17:00 | SHD] - $RECYCLE.BIN
[13/07/2009 - 22:20:08 | D] - PerfLogs
[14/07/2009 - 00:08:56 | SHD] - Documents and Settings
[21/03/2016 - 19:02:40 | SHD] - Archivos de programa
[21/03/2016 - 19:02:41 | D] - Recovery
[21/03/2016 - 20:05:25 | D] - Intel
[23/03/2016 - 18:21:02 | D] - RaidCall
[11/04/2016 - 08:58:46 | AH | 0 Ko] - D9C97F8C33F5
[02/11/2016 - 20:33:10 | D] - KVRT_Data
[13/06/2017 - 21:21:43 | D] - webapprt
[13/06/2017 - 21:21:43 | D] - gmp-clearkey
[13/06/2017 - 21:21:43 | D] - dictionaries
[13/06/2017 - 21:21:43 | D] - defaults
[13/06/2017 - 21:21:43 | D] - browser
[16/06/2017 - 17:04:47 | D] - uninstall
[08/08/2017 - 17:25:47 | D] - PHDGD Virtual VRAM Tool
[14/12/2017 - 20:57:43 | D] - !! AllowLocalFiles
[08/04/2018 - 14:17:00 | RHD] - MSOCache
[29/09/2018 - 20:23:13 | D] - Autodesk
[04/12/2018 - 20:31:04 | HD] - $AV_ASW
[04/12/2018 - 21:00:10 | D] - Nueva carpeta
[14/12/2018 - 21:41:26 | D] - AMD
[17/12/2018 - 04:18:51 | D] - cygwin64
[22/12/2018 - 16:58:49 | RD] - Users
[26/02/2019 - 18:44:15 | RD] - Program Files
[28/02/2019 - 20:02:25 | D] - Windows
[28/02/2019 - 20:02:35 | HD] - ProgramData
[03/03/2019 - 01:54:22 | D] - AdwCleaner
[03/03/2019 - 02:36:30 | D] - SUPERDelete
[06/03/2019 - 14:31:42 | D] - UsbFix
[07/03/2019 - 20:08:47 | RD] - Program Files (x86)

------------ | D:\ - Disco fijo (NTFS) |

[13/04/2018 - 17:06:40 | AC | 0 Ko] - Perritas del 2018.txt
[16/04/2018 - 17:00:29 | AC | 0 Ko] - PERRITAS DEL FB.txt
[16/04/2018 - 20:48:39 | AC | 0 Ko] - perritas amigas del fb.txt
[20/10/2018 - 22:23:13 | AC | 0 Ko] - contraseña del modem.txt
[02/12/2018 - 23:03:54 | AC | 0 Ko] - text.txt
[03/12/2018 - 22:48:16 | AC | 0 Ko] - prueba.txt
[08/12/2018 - 00:16:16 | AC | 0 Ko] - textito.txt
[08/12/2018 - 00:47:47 | A | 0 Ko] - textoprueba.txt
[14/02/2019 - 09:52:02 | AC | 0 Ko] - Contra de carioco.txt
[07/03/2019 - 19:12:59 | ASH | 12519632 Ko] - pagefile.sys
[26/05/2011 - 13:23:54 | RA | 44 Ko] - EULA.rtf
[17/06/2017 - 16:34:35 | A | 10 Ko] - patron.png
[17/06/2017 - 16:39:03 | A | 11 Ko] - contraseña de router.png
[17/06/2017 - 16:34:35 | A | 17 Ko] - clave del wifi.JPG
[17/06/2017 - 16:34:40 | A | 116 Ko] - 234234sdf.JPG
[17/06/2017 - 16:35:33 | A | 62 Ko] - respuesta secreta a blizzard.JPG
[02/12/2018 - 17:02:36 | AC | 25 Ko] - CONTRA DE HOTMAIL.JPG
[19/01/2019 - 18:24:26 | AC | 53 Ko] - codigo de recuperacion.JPG
[31/01/2019 - 19:14:36 | AC | 42 Ko] - Contraseña de gmail.JPG
[18/09/2017 - 20:06:58 | A | 14 Ko] - Parte IV PERIFERICOS.docx
[24/04/2018 - 02:20:03 | AC | 13 Ko] - Como incluir a los adultos en el trabajos.docx
[16/06/2017 - 02:32:35 | A | 22 Ko] - maintenancetool.dat
[08/04/2018 - 15:51:54 | SHD] - $RECYCLE.BIN
[26/06/2017 - 02:09:29 | D] - Photoshop
[18/07/2017 - 01:04:24 | A | 0 Ko] - end
[17/03/2018 - 13:20:18 | D] - Action piratado
[04/04/2018 - 15:48:42 | D] - Driver de AMD
[03/08/2018 - 21:59:36 | D] - MUS
[28/08/2018 - 21:50:49 | DC] - WHATSAP DEL CELL
[05/09/2018 - 06:26:11 | D] - CUPHEAD
[19/09/2018 - 18:02:13 | D] - World of Warcraft
[23/09/2018 - 19:14:57 | D] - Camtia
[24/12/2018 - 13:50:24 | D] - WARCRAFT
[04/01/2019 - 03:27:38 | D] - Games
[04/01/2019 - 17:12:33 | HDC] - $AV_ASW
[05/01/2019 - 19:56:34 | DC] - UNITY
[27/01/2019 - 16:58:04 | DC] - GAMEMAKER
[02/02/2019 - 02:16:25 | DC] - Resident Evil 2
[02/02/2019 - 17:46:10 | DC] - Resident 2
[10/02/2019 - 12:39:22 | D] - Bluestacks
[19/02/2019 - 14:11:55 | D] - My pony descargas
[19/02/2019 - 14:11:59 | DC] - MiPony
[19/02/2019 - 17:45:34 | DC] - The Orange Box
[26/02/2019 - 12:35:25 | D] - StarCraft II
[07/03/2019 - 01:00:05 | DC] - Steam

Elemento(s) infectado(s) : 1
Elementos analizados : 64302 en 00h 00m 05s

# UsbFix-Report-01.txt [8604B]

------------ | E.O.F  |

Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 8/3/19
Hora del análisis: 14:56
Archivo de registro: 4833878a-41dc-11e9-bb00-e03f49a5aca6.json

-Información del software-
Versión: 3.7.1.2839
Versión de los componentes: 1.0.538
Versión del paquete de actualización: 1.0.9600
Licencia: Prueba

-Información del sistema-
SO: Windows 7 Service Pack 1
CPU: x64
Sistema de archivos: NTFS
Usuario: \

-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 549971
Amenazas detectadas: 0
Amenazas en cuarentena: 0
Tiempo transcurrido: 5 hr, 6 min, 21 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 0
(No hay elementos maliciosos detectados)

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

Hola la carpeta aun sigue ahi y no puedo borrarla xD por cierto el usb fix dice que tengo 2 usuarios de windows y solo tengo 1 cuenta de administrador , la de invitado esta desactivada es normal ? OwO

Hola:

Yo solo veo uno:

Nombre y ubicación de la carpeta.

Realiza lo siguiente:

1.- Desactiva temporalmente su antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el proceso.
  • Se abriran dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

Hola :v segun el usbfix si hay 2 usuarios :frowning: aca los reportes

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09.03.2019 01
Ran by user (administrator) on USER-PC (09-03-2019 12:24:21)
Running from C:\Users\user\Desktop
Loaded Profiles: user (Available Profiles: user & Invitado)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Finger Power Technology Co., Ltd. -> ) C:\Users\user\AppData\Local\Kingosoft\Kingo Root\update_37510\bin\KingoSoftService.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\efsui.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [File not signed] C:\Program Files (x86)\UsbFix\UsbFix.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_Plugin.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7562456 2014-03-25] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [PowerDVD13Agent] => C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe [513048 2013-03-20] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [49152 2006-09-29] () [File not signed]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\RunOnce: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-10] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Policies\Explorer: [] 
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\system32\ficvdec_x64.dll [652288 2013-05-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\xvidvfw.dll [243200 2011-06-24] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2011-07-16] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [74752 2011-10-28] () [File not signed]
HKLM\...\Drivers32: [msacm.l3codecp] => C:\Windows\SysWOW64\l3codecp.acm [220672 2009-07-13] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-05] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 200.48.225.130 200.48.225.146
Tcpip\..\Interfaces\{ECB8006B-44F4-4CB8-A255-02D848890824}: [DhcpNameServer] 200.48.225.130 200.48.225.146

Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_161\bin\ssv.dll [2018-03-28] (Oracle America, Inc. -> Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-28] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Aplicación auxiliar de inicio de sesión en la cuenta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File
Toolbar: HKLM-x32 - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File

FireFox:
========
FF DefaultProfile: ikujuja7.default
FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ikujuja7.default [2019-03-07]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ikujuja7.default\Extensions\[email protected] [2019-03-09]
FF Extension: (Avast Online Security) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ikujuja7.default\Extensions\[email protected] [2018-09-04]
FF Extension: (User Agent Switcher) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ikujuja7.default\Extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi [2017-10-13] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_142.dll [2019-02-12] (Adobe Systems Incorporated -> )
FF Plugin: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_142.dll [2019-02-12] (Adobe Systems Incorporated -> )
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\user\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2015-03-18] (Raidcall) [File not signed]
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-18] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-18] (Google Inc -> Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-10-15] (VideoLAN) [File not signed]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-01-31] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2082071340-3476837701-2702432445-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\user\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2017-05-18] (Unity Technologies SF -> Unity Technologies ApS)
StartMenuInternet: Firefox-A8758A538F23BB34 - D:\GonVisor\firefox.exe

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default [2019-03-09]
CHR Extension: (Traductor de Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-12-06]
CHR Extension: (Google Drive) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-21]
CHR Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2019-02-20]
CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-21]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-01-23]
CHR Extension: (Adobe Acrobat) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-08-25]
CHR Extension: (AdBlock) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-25]
CHR Extension: (Save to Facebook) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfikkaogpplgnfjmbjdpalkhclendgd [2018-07-14]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-03-20]
CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-21]
CHR Extension: (Chrome Media Router) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-15]
CHR Extension: (Cortar audio) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2017-11-24]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome.37PBB64OUV2S5YBH5CJCM6UGAA - C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [499080 2018-12-06] (Advanced Micro Devices, Inc. -> AMD)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-05-07] (ASUSTeK Computer Inc. -> )
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6758976 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [357304 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R2 Bonjour Service; C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe [390504 2017-07-26] (Apple Inc. -> Apple Inc.)
R2 CyberLink PowerDVD 13 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [77576 2013-03-20] (CyberLink Corp. -> CyberLink)
R2 CyberLink PowerDVD 13 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [323336 2013-03-20] (CyberLink Corp. -> CyberLink)
S3 Disc Soft Lite Bus Service; D:\Games\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd -> Disc Soft Ltd)
S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-04-25] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation)
R2 KingoSoftService; C:\Users\user\AppData\Local\Kingosoft\Kingo Root\update_37510\bin\checkupdate.exe [367584 2016-07-28] (Finger Power Technology Co., Ltd. -> )
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [724992 2006-10-09] (Nero AG) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2016-12-04] (Even Balance, Inc. -> )
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3892256 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [3943664 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233712 2018-02-06] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [442472 2017-11-12] (Windscribe Limited -> Windscribe Limited)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [495720 2018-08-29] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [52739464 2018-12-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [581000 2018-12-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [92944 2018-10-03] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225680 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196072 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320696 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57960 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [249672 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167304 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034432 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [474456 2019-02-15] (AVAST Software s.r.o. -> AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216784 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [379952 2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104840 2018-09-26] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [269408 2018-02-23] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R1 cgnetfilter1521; C:\Windows\System32\drivers\cgnetfilter1521.sys [81696 2017-03-22] (CyberGhost SRL -> Windows (R) Win 7 DDK provider)
R3 CMUAC; C:\Windows\System32\DRIVERS\CMUAC.sys [646656 2015-06-25] (C-MEDIA ELECTRONICS INC. -> C-MEDIA)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-08-15] (Disc Soft Ltd -> Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2017-07-02] (DT Soft Ltd -> DT Soft Ltd)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-04-03] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [3789824 2014-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [49304 2014-12-28] (ManyCam LLC -> Visicom Media Inc.)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [198512 2019-02-28] (Malwarebytes Corporation -> Malwarebytes)
S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35992 2014-12-28] (ManyCam LLC -> Visicom Media Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [201296 2018-04-21] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0090.sys [38432 2017-03-01] (SoftEther Corporation -> SoftEther Corporation)
S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2016-06-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [32496 2013-01-10] (Synaptics Incorporated -> Synaptics Incorporated)
S3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2017-09-06] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [36792 2017-08-24] (ProtonVPN AG -> The OpenVPN Project)
S3 tapwindscribe0901; C:\Windows\System32\DRIVERS\tapwindscribe0901.sys [45560 2017-09-13] (Windscribe Limited -> The OpenVPN Project)
R3 USBET; C:\Windows\System32\DRIVERS\ETdrv.sys [6416256 2011-07-08] (Etron Technology, Inc. -> Etron)
R1 VBoxUSBMon; C:\Windows\System32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (Duodian Online Technology Co. Ltd. -> BigNox Corporation)
R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [35840 2017-05-06] (Beijing Wolicheng Technology Co., Ltd. -> Windows (R) Win 7 DDK provider)
R2 {09F57980-3432-4AFC-957D-27AC45FAE1F5}; C:\Program Files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl [130320 2013-03-19] (CyberLink Corp. -> CyberLink Corp.)
U1 aswbdisk; no ImagePath
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [X]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\D:\My pony descargas\GameFire.sys [X]
S3 X6va063; \??\C:\Windows\SysWOW64\Drivers\X6va063 [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

Error(1) reading file: "C:\Users\user\Desktop\PROYECTO X "
2019-03-09 12:24 - 2019-03-09 12:26 - 000027198 _____ C:\Users\user\Desktop\FRST.txt
2019-03-09 12:24 - 2019-03-09 12:24 - 000000000 ____D C:\FRST
2019-03-09 12:22 - 2019-03-09 12:22 - 002434560 _____ (Farbar) C:\Users\user\Desktop\FRST64.exe
2019-03-09 12:22 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 683491.crdownload
2019-03-09 12:21 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 958300.crdownload
2019-03-09 12:15 - 2019-03-09 12:15 - 000003098 _____ C:\Windows\System32\Tasks\AMDLinkUpdate
2019-03-08 21:06 - 2019-03-08 21:06 - 000001528 _____ C:\Users\user\Desktop\malware.txt
2019-03-07 20:08 - 2019-03-09 12:23 - 000001891 _____ C:\Users\user\Desktop\UsbFix Anti-Malware.lnk
2019-03-07 20:08 - 2019-03-09 12:23 - 000000000 ____D C:\Program Files (x86)\UsbFix
2019-03-07 20:08 - 2019-03-07 20:08 - 004576600 _____ (SOSVirus) C:\Users\user\Desktop\UsbFix_2019_11.012.exe
2019-03-06 14:31 - 2019-03-06 14:31 - 003824032 _____ (SOSVirus) C:\Users\user\Downloads\usbfix-9-053.exe
2019-03-06 14:31 - 2019-03-06 14:31 - 000000000 ____D C:\UsbFix
2019-03-04 13:37 - 2019-03-04 13:37 - 002016143 _____ C:\Users\user\Downloads\R1_U4_S9_2018-2 (1).pdf
2019-03-04 13:37 - 2019-03-04 13:37 - 001076040 _____ C:\Users\user\Downloads\R1_U4_S11_2018-2 (1).pdf
2019-03-04 13:37 - 2019-03-04 13:37 - 000976891 _____ C:\Users\user\Downloads\R1_U4_S12_2018-2 (2).pdf
2019-03-03 02:36 - 2019-03-03 02:36 - 000000000 ____D C:\SUPERDelete
2019-03-03 02:16 - 2019-03-03 02:16 - 000003584 _____ C:\Users\user\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-03-03 02:02 - 2019-03-03 02:02 - 001015869 _____ C:\Users\user\Downloads\unlocker-1.9.0.exe
2019-03-03 02:01 - 2019-03-03 02:01 - 022809008 _____ C:\Users\user\Desktop\PROYECTO X .rar
2019-03-03 01:54 - 2019-03-03 01:54 - 000000000 ____D C:\AdwCleaner
2019-03-03 01:33 - 2019-03-05 17:05 - 000000000 ___DX C:\Users\user\Desktop\Video Informativo de sistemas
2019-03-03 01:30 - 2019-03-03 01:30 - 000073373 _____ C:\Users\user\Downloads\WhatsApp Image 2019-02-27 at 11.47.07 PM.jpeg
2019-03-01 21:04 - 2019-03-01 21:04 - 000619860 _____ C:\Users\user\Downloads\Semana 8 (1).pptx
2019-03-01 21:04 - 2019-03-01 21:04 - 000498486 _____ C:\Users\user\Downloads\Semana 6 (1).pptx
2019-03-01 21:04 - 2019-03-01 21:04 - 000373020 _____ C:\Users\user\Downloads\IPTABLES.pptx
2019-02-28 20:02 - 2019-02-28 20:02 - 000198512 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2019-02-28 20:02 - 2019-02-28 20:02 - 000001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-02-28 20:02 - 2019-02-28 20:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-02-28 20:02 - 2019-01-08 15:32 - 000153328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-02-26 21:05 - 2014-07-08 21:03 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2019-02-26 21:05 - 2014-07-08 21:03 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2019-02-26 21:05 - 2014-07-08 21:03 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2019-02-26 21:05 - 2014-07-08 21:03 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2019-02-26 21:05 - 2014-07-08 21:03 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2019-02-26 21:05 - 2014-07-08 20:31 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2019-02-26 21:05 - 2014-07-08 20:31 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2019-02-26 21:05 - 2014-07-08 20:31 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2019-02-26 21:05 - 2014-07-08 20:31 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2019-02-26 21:05 - 2014-07-08 20:31 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2019-02-26 21:02 - 2019-01-27 10:23 - 000396888 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-02-26 21:02 - 2019-01-27 09:32 - 000348760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-02-26 21:02 - 2019-01-25 20:02 - 025736192 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-02-26 21:02 - 2019-01-25 19:50 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-02-26 21:02 - 2019-01-25 19:50 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-02-26 21:02 - 2019-01-25 19:38 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-02-26 21:02 - 2019-01-25 19:37 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-02-26 21:02 - 2019-01-25 19:36 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-02-26 21:02 - 2019-01-25 19:36 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-02-26 21:02 - 2019-01-25 19:36 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-02-26 21:02 - 2019-01-25 19:35 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-02-26 21:02 - 2019-01-25 19:32 - 005778944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-02-26 21:02 - 2019-01-25 19:29 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-02-26 21:02 - 2019-01-25 19:28 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-02-26 21:02 - 2019-01-25 19:27 - 020279808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-02-26 21:02 - 2019-01-25 19:25 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-02-26 21:02 - 2019-01-25 19:24 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-02-26 21:02 - 2019-01-25 19:24 - 000790016 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-02-26 21:02 - 2019-01-25 19:24 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-02-26 21:02 - 2019-01-25 19:24 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-02-26 21:02 - 2019-01-25 19:18 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-02-26 21:02 - 2019-01-25 19:17 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-02-26 21:02 - 2019-01-25 19:14 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-02-26 21:02 - 2019-01-25 19:07 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-02-26 21:02 - 2019-01-25 19:07 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-02-26 21:02 - 2019-01-25 19:06 - 000498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-02-26 21:02 - 2019-01-25 19:06 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-02-26 21:02 - 2019-01-25 19:06 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-02-26 21:02 - 2019-01-25 19:06 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-02-26 21:02 - 2019-01-25 19:05 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-02-26 21:02 - 2019-01-25 19:05 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-02-26 21:02 - 2019-01-25 19:03 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-02-26 21:02 - 2019-01-25 19:03 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-02-26 21:02 - 2019-01-25 19:03 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-02-26 21:02 - 2019-01-25 19:01 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-02-26 21:02 - 2019-01-25 19:00 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-02-26 21:02 - 2019-01-25 18:59 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-02-26 21:02 - 2019-01-25 18:59 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-02-26 21:02 - 2019-01-25 18:58 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-02-26 21:02 - 2019-01-25 18:57 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-02-26 21:02 - 2019-01-25 18:56 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-02-26 21:02 - 2019-01-25 18:56 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-02-26 21:02 - 2019-01-25 18:50 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-02-26 21:02 - 2019-01-25 18:48 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-02-26 21:02 - 2019-01-25 18:48 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-02-26 21:02 - 2019-01-25 18:48 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-02-26 21:02 - 2019-01-25 18:46 - 015283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-02-26 21:02 - 2019-01-25 18:46 - 002135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-02-26 21:02 - 2019-01-25 18:46 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-02-26 21:02 - 2019-01-25 18:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-02-26 21:02 - 2019-01-25 18:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-02-26 21:02 - 2019-01-25 18:43 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-02-26 21:02 - 2019-01-25 18:40 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-02-26 21:02 - 2019-01-25 18:40 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-02-26 21:02 - 2019-01-25 18:39 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-02-26 21:02 - 2019-01-25 18:37 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-02-26 21:02 - 2019-01-25 18:34 - 004858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-02-26 21:02 - 2019-01-25 18:34 - 004494336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-02-26 21:02 - 2019-01-25 18:32 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-02-26 21:02 - 2019-01-25 18:31 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-02-26 21:02 - 2019-01-25 18:30 - 002060288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-02-26 21:02 - 2019-01-25 18:29 - 013680640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-02-26 21:02 - 2019-01-25 18:29 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-02-26 21:02 - 2019-01-25 18:22 - 001556480 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-02-26 21:02 - 2019-01-25 18:12 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-02-26 21:02 - 2019-01-25 18:11 - 004386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-02-26 21:02 - 2019-01-25 18:08 - 001331200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-02-26 21:02 - 2019-01-25 18:06 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-02-26 20:53 - 2011-03-11 01:41 - 000410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2019-02-26 20:53 - 2011-03-11 01:41 - 000166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2019-02-26 20:53 - 2011-03-11 01:41 - 000148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2019-02-26 20:53 - 2011-03-11 01:41 - 000107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2019-02-26 20:53 - 2011-03-11 01:41 - 000027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2019-02-26 20:53 - 2011-03-11 01:33 - 002565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2019-02-26 20:53 - 2011-03-11 01:30 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2019-02-26 20:53 - 2011-03-11 00:33 - 001699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2019-02-26 20:53 - 2011-03-11 00:31 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2019-02-26 18:44 - 2019-02-26 18:44 - 000000000 ___SD C:\Windows\system32\CompatTel
2019-02-26 18:44 - 2019-02-26 18:44 - 000000000 ____D C:\Windows\system32\appraiser
2019-02-26 18:17 - 2015-07-30 08:13 - 000124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2019-02-26 18:17 - 2015-07-30 08:13 - 000103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-02-26 18:15 - 2013-10-14 18:00 - 000028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2019-02-26 18:05 - 2019-02-26 18:05 - 000942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2019-02-26 18:05 - 2019-02-26 18:05 - 000616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2019-02-26 18:05 - 2019-02-26 18:05 - 000247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2019-02-26 18:05 - 2019-02-26 18:05 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2019-02-26 18:05 - 2019-02-26 18:05 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2019-02-26 17:11 - 2019-02-26 17:17 - 000000000 ____D C:\Windows\system32\MRT
2019-02-26 17:10 - 2019-02-26 17:10 - 129330784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-02-26 16:33 - 2017-04-27 17:50 - 003550208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2019-02-26 16:33 - 2017-04-12 08:05 - 004296704 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2019-02-26 16:20 - 2012-03-01 01:46 - 000023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2019-02-26 16:20 - 2012-03-01 01:28 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2019-02-26 16:20 - 2012-03-01 00:29 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2019-02-26 16:12 - 2014-06-30 17:24 - 000008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2019-02-26 16:12 - 2014-06-30 17:14 - 000008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2019-02-26 16:12 - 2014-06-06 01:16 - 000035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2019-02-26 16:12 - 2014-06-06 01:12 - 000035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2019-02-26 16:12 - 2014-03-09 16:48 - 001389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2019-02-26 16:12 - 2014-03-09 16:48 - 000171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2019-02-26 16:12 - 2014-03-09 16:47 - 000619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2019-02-26 16:12 - 2014-03-09 16:47 - 000099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2019-02-26 16:06 - 2019-01-15 02:06 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-02-26 16:06 - 2019-01-15 02:06 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-02-26 16:06 - 2019-01-15 02:03 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 001211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2019-02-26 16:06 - 2019-01-15 02:03 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2019-02-26 16:06 - 2019-01-15 02:02 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2019-02-26 16:06 - 2019-01-15 02:02 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2019-02-26 16:06 - 2019-01-15 02:02 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2019-02-26 16:06 - 2019-01-15 02:02 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-02-26 16:06 - 2019-01-15 01:52 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-02-26 16:06 - 2019-01-15 01:51 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-02-26 16:06 - 2019-01-15 01:32 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-02-26 16:06 - 2019-01-15 01:31 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2019-02-26 16:06 - 2019-01-15 01:29 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2019-02-26 16:06 - 2019-01-11 22:08 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2019-02-26 16:06 - 2019-01-11 21:55 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2019-02-26 16:06 - 2019-01-11 21:36 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-02-26 16:06 - 2019-01-11 21:36 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-02-26 16:06 - 2019-01-11 21:36 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2019-02-26 16:06 - 2019-01-08 22:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 22:06 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:55 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:38 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2019-02-26 16:06 - 2019-01-08 21:35 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2019-02-26 16:06 - 2019-01-08 21:35 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-02-26 16:06 - 2019-01-08 21:35 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-02-26 16:06 - 2019-01-08 21:34 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-02-26 16:06 - 2019-01-08 21:34 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2019-02-26 16:06 - 2019-01-08 21:34 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2019-02-26 16:06 - 2019-01-08 21:33 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:33 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:33 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2019-02-26 16:06 - 2019-01-08 21:33 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2019-02-26 16:06 - 2019-01-07 12:19 - 003228160 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-02-26 16:06 - 2019-01-01 11:05 - 003247104 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-02-26 16:06 - 2019-01-01 11:05 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2019-02-26 16:06 - 2019-01-01 11:05 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-02-26 16:06 - 2019-01-01 11:04 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-02-26 16:06 - 2019-01-01 10:58 - 002368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-02-26 16:06 - 2019-01-01 10:58 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2019-02-26 16:06 - 2019-01-01 10:58 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2019-02-26 16:06 - 2019-01-01 10:39 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2019-02-26 16:06 - 2019-01-01 10:39 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2019-02-26 16:06 - 2018-12-28 15:02 - 001680616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-02-26 16:06 - 2018-12-28 14:59 - 002072576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-02-26 16:06 - 2018-12-28 14:59 - 000876032 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-02-26 16:06 - 2018-12-28 14:59 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-02-26 16:06 - 2018-12-28 14:59 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2019-02-26 16:06 - 2018-12-28 14:48 - 001425920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-02-26 16:06 - 2018-12-28 14:48 - 000582144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-02-26 16:06 - 2018-12-07 22:08 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2019-02-26 16:06 - 2018-12-07 22:08 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2019-02-26 16:06 - 2018-12-07 22:08 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2019-02-26 16:06 - 2018-12-07 21:56 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2019-02-26 16:06 - 2018-12-07 21:56 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2019-02-26 16:06 - 2018-12-07 21:47 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-02-26 16:06 - 2018-12-07 21:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2019-02-26 16:06 - 2018-12-04 11:07 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2019-02-26 16:06 - 2018-12-04 11:07 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-02-26 16:06 - 2018-12-04 10:55 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-02-26 16:06 - 2018-12-02 11:06 - 000687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2019-02-26 16:06 - 2018-11-28 17:02 - 014635520 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2019-02-26 16:06 - 2018-11-28 17:02 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2019-02-26 16:06 - 2018-11-28 17:02 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2019-02-26 16:06 - 2018-11-28 17:02 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2019-02-26 16:06 - 2018-11-28 17:02 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2019-02-26 16:06 - 2018-11-28 16:50 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2019-02-26 16:06 - 2018-11-28 16:50 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2019-02-26 16:06 - 2018-11-28 16:38 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2019-02-26 16:06 - 2018-11-28 16:38 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2019-02-26 16:06 - 2018-11-17 21:43 - 000467856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-02-26 16:06 - 2018-11-17 21:43 - 000297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2019-02-26 16:06 - 2018-11-17 21:43 - 000249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2019-02-26 16:06 - 2018-11-11 12:01 - 000366824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2019-02-26 16:06 - 2018-11-11 11:58 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2019-02-26 16:06 - 2018-11-11 11:45 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2019-02-26 16:06 - 2018-11-08 11:58 - 002009600 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-02-26 16:06 - 2018-11-08 11:58 - 001889280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2019-02-26 16:06 - 2018-11-08 11:58 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2019-02-26 16:06 - 2018-11-08 11:58 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2019-02-26 16:06 - 2018-11-08 11:43 - 001391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-02-26 16:06 - 2018-11-08 11:43 - 001241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2019-02-26 16:06 - 2018-11-08 11:43 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2019-02-26 16:06 - 2018-11-08 11:43 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2019-02-26 16:06 - 2018-11-05 23:36 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2019-02-26 16:06 - 2018-11-05 23:20 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-02-26 16:06 - 2018-10-26 22:42 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
2019-02-26 16:06 - 2018-10-26 22:42 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2019-02-26 16:06 - 2018-10-26 22:42 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2019-02-26 16:06 - 2018-10-26 22:42 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
2019-02-26 16:06 - 2018-10-26 22:27 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll
2019-02-26 16:06 - 2018-10-26 22:27 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2019-02-26 16:06 - 2018-10-26 22:27 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2019-02-26 16:06 - 2018-10-26 22:11 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2019-02-26 16:06 - 2018-10-26 22:11 - 000156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2019-02-26 16:06 - 2018-10-26 22:04 - 000141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2019-02-26 16:06 - 2018-10-26 22:04 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2019-02-26 16:06 - 2018-10-26 22:04 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshcon.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000017872 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000017856 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000017360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000016336 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000015808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000014312 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000014272 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012736 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2019-02-26 16:06 - 2018-10-12 08:05 - 000011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2019-02-26 16:06 - 2018-10-06 10:59 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-02-26 16:06 - 2018-10-06 10:58 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-02-26 16:06 - 2018-10-06 10:44 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-02-26 16:06 - 2018-10-06 10:43 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-02-26 16:06 - 2018-09-22 21:55 - 002319872 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 002222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-02-26 16:06 - 2018-09-22 21:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 001549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 001400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 000197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2019-02-26 16:06 - 2018-09-22 21:37 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2019-02-26 16:06 - 2018-09-22 21:34 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-02-26 16:06 - 2018-09-22 21:34 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-02-26 16:06 - 2018-09-22 21:33 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-02-26 16:06 - 2018-09-22 21:22 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-02-26 16:06 - 2018-09-22 21:22 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-02-26 16:06 - 2018-09-22 21:21 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2019-02-26 16:06 - 2018-09-22 21:21 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2019-02-26 16:06 - 2018-09-08 19:59 - 002851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2019-02-26 16:06 - 2018-09-08 19:57 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2019-02-26 16:06 - 2018-09-08 19:44 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2019-02-26 16:06 - 2018-08-31 10:08 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-02-26 16:06 - 2018-08-28 00:50 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2019-02-26 16:06 - 2018-08-12 15:32 - 000378464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2019-02-26 16:06 - 2018-08-12 15:31 - 001894496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-02-26 16:06 - 2018-08-12 15:31 - 000289376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-02-26 16:06 - 2018-08-12 15:28 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2019-02-26 16:06 - 2018-08-12 15:14 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2019-02-26 16:06 - 2018-08-10 10:54 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-02-26 16:06 - 2018-08-10 10:54 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-02-26 16:06 - 2018-08-10 10:40 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2019-02-26 16:06 - 2018-08-10 10:20 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2019-02-26 16:06 - 2018-08-03 10:55 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2019-02-26 16:06 - 2018-08-03 10:39 - 000084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2019-02-26 16:06 - 2018-07-29 10:55 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2019-02-26 16:06 - 2018-07-06 11:09 - 000947904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-02-26 16:06 - 2018-06-29 10:55 - 000695808 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2019-02-26 16:06 - 2018-06-29 10:55 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2019-02-26 16:06 - 2018-06-29 10:55 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2019-02-26 16:06 - 2018-06-29 10:40 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2019-02-26 16:06 - 2018-06-29 10:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2019-02-26 16:06 - 2018-06-08 11:21 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2019-02-26 16:06 - 2018-06-08 11:19 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2019-02-26 16:06 - 2018-06-08 11:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2019-02-26 16:06 - 2018-06-08 10:55 - 000330240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2019-02-26 16:06 - 2018-06-08 10:54 - 000269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2019-02-26 16:06 - 2018-06-08 10:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2019-02-26 16:06 - 2018-06-08 10:28 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2019-02-26 16:06 - 2018-06-08 08:05 - 002860032 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-02-26 16:06 - 2018-05-14 22:44 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-02-26 16:06 - 2018-05-14 22:44 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2019-02-26 16:06 - 2018-05-14 22:44 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-02-26 16:06 - 2018-05-14 22:44 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2019-02-26 16:06 - 2018-05-14 22:24 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2019-02-26 16:06 - 2018-05-14 22:23 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2019-02-26 16:06 - 2018-05-14 22:13 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2019-02-26 16:06 - 2018-05-14 22:13 - 000782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2019-02-26 16:06 - 2018-05-14 22:13 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2019-02-26 16:06 - 2018-05-14 22:13 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2019-02-26 16:06 - 2018-05-14 22:01 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2019-02-26 16:06 - 2018-05-14 22:01 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2019-02-26 16:06 - 2018-05-11 16:19 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2019-02-26 16:06 - 2018-05-10 19:40 - 000741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2019-02-26 16:06 - 2018-05-10 19:40 - 000084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2019-02-26 16:06 - 2018-04-25 11:02 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2019-02-26 16:06 - 2018-04-18 11:03 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
2019-02-26 16:06 - 2018-04-18 10:41 - 000016896 _____ (Microsoft Corporation) C:\Windows\hh.exe
2019-02-26 16:06 - 2018-04-10 11:35 - 001735168 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2019-02-26 16:06 - 2018-04-10 11:34 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2019-02-26 16:06 - 2018-04-10 11:33 - 001241600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2019-02-26 16:06 - 2018-04-10 11:32 - 000487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2019-02-26 16:06 - 2018-03-14 12:16 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2019-02-26 16:06 - 2018-03-14 12:12 - 000192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2019-02-26 16:06 - 2018-03-14 12:12 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2019-02-26 16:06 - 2018-03-14 11:57 - 000093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2019-02-26 16:06 - 2018-03-14 11:57 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2019-02-26 16:06 - 2018-03-14 11:53 - 002651648 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-02-26 16:06 - 2018-03-06 13:13 - 000148160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2019-02-26 16:06 - 2018-03-06 13:11 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2019-02-26 16:06 - 2018-03-06 13:11 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2019-02-26 16:06 - 2018-03-06 13:10 - 000170176 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2019-02-26 16:06 - 2018-03-06 13:07 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2019-02-26 16:06 - 2018-03-06 13:07 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2019-02-26 16:06 - 2018-02-21 22:28 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2019-02-26 16:06 - 2018-02-21 22:06 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2019-02-26 16:06 - 2018-02-10 13:35 - 000122560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS
2019-02-26 16:06 - 2018-02-10 13:35 - 000068288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2019-02-26 16:06 - 2018-02-10 13:35 - 000064192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
2019-02-26 16:06 - 2018-02-10 13:35 - 000060608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
2019-02-26 16:06 - 2018-02-10 13:35 - 000036032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
2019-02-26 16:06 - 2018-02-10 13:35 - 000031936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
2019-02-26 16:06 - 2018-02-10 13:35 - 000023744 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2019-02-26 16:06 - 2018-02-10 13:35 - 000012096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
2019-02-26 16:06 - 2018-02-10 13:23 - 002292224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2019-02-26 16:06 - 2018-02-10 13:11 - 003665920 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2019-02-26 16:06 - 2018-02-10 12:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
2019-02-26 16:06 - 2018-02-10 12:36 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
2019-02-26 16:06 - 2018-02-10 12:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
2019-02-26 16:06 - 2018-02-10 12:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
2019-02-26 16:06 - 2018-01-12 11:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2019-02-26 16:06 - 2018-01-12 11:26 - 000308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2019-02-26 16:06 - 2018-01-11 11:41 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2019-02-26 16:06 - 2018-01-11 11:22 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2019-02-26 16:06 - 2017-12-31 21:21 - 000288488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2019-02-26 16:06 - 2017-12-31 21:18 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2019-02-26 16:06 - 2017-12-31 21:18 - 000842752 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2019-02-26 16:06 - 2017-12-31 21:18 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2019-02-26 16:06 - 2017-12-31 21:18 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000264704 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2019-02-26 16:06 - 2017-12-31 21:18 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2019-02-26 16:06 - 2017-12-31 21:04 - 000559616 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2019-02-26 16:06 - 2017-12-31 21:00 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2019-02-26 16:06 - 2017-12-31 21:00 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2019-02-26 16:06 - 2017-12-31 21:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
2019-02-26 16:06 - 2017-12-31 20:55 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2019-02-26 16:06 - 2017-12-31 20:50 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2019-02-26 16:06 - 2017-12-31 20:46 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2019-02-26 16:06 - 2017-12-31 20:43 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2019-02-26 16:06 - 2017-12-31 20:43 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapPeerProxy.dll
2019-02-26 16:06 - 2017-12-31 20:43 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapAuthProxy.dll
2019-02-26 16:06 - 2017-12-31 20:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
2019-02-26 16:06 - 2017-12-31 20:41 - 000754176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2019-02-26 16:06 - 2017-12-05 12:36 - 001484288 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2019-02-26 16:06 - 2017-12-05 12:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2019-02-26 16:06 - 2017-12-05 12:08 - 001176576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2019-02-26 16:06 - 2017-12-05 12:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2019-02-26 16:06 - 2017-12-05 12:08 - 000179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-02-26 16:06 - 2017-12-05 12:08 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2019-02-26 16:06 - 2017-12-05 12:08 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2019-02-26 16:06 - 2017-12-05 11:04 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2019-02-26 16:06 - 2017-12-05 10:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
2019-02-26 16:06 - 2017-11-02 11:55 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2019-02-26 16:06 - 2017-11-02 11:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2019-02-26 16:06 - 2017-11-02 10:11 - 000075264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2019-02-26 16:06 - 2017-10-11 19:55 - 002058240 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2019-02-26 16:06 - 2017-10-11 19:37 - 001363968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2019-02-26 16:06 - 2017-10-11 19:20 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-02-26 16:06 - 2017-09-13 10:28 - 000886272 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2019-02-26 16:06 - 2017-09-13 10:28 - 000448512 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2019-02-26 16:06 - 2017-09-13 10:28 - 000414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2019-02-26 16:06 - 2017-09-13 10:28 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2019-02-26 16:06 - 2017-09-13 10:28 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2019-02-26 16:06 - 2017-09-13 10:05 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-02-26 16:06 - 2017-09-08 09:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2019-02-26 16:06 - 2017-09-08 09:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 003203584 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 002150912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 001032192 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
2019-02-26 16:06 - 2017-08-14 12:35 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2019-02-26 16:06 - 2017-08-14 12:34 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2019-02-26 16:06 - 2017-08-13 16:46 - 001112576 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2019-02-26 16:06 - 2017-08-13 16:45 - 000162816 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2019-02-26 16:06 - 2017-08-13 16:45 - 000040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2019-02-26 16:06 - 2017-08-13 16:37 - 002144256 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2019-02-26 16:06 - 2017-08-13 16:30 - 001401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2019-02-26 16:06 - 2017-08-11 01:35 - 000757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2019-02-26 16:06 - 2017-08-11 01:35 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2019-02-26 16:06 - 2017-08-11 01:35 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2019-02-26 16:06 - 2017-08-11 01:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2019-02-26 16:06 - 2017-08-11 01:35 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2019-02-26 16:06 - 2017-08-11 01:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2019-02-26 16:06 - 2017-08-11 01:34 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2019-02-26 16:06 - 2017-08-11 01:34 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2019-02-26 16:06 - 2017-08-11 01:34 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2019-02-26 16:06 - 2017-08-11 01:20 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2019-02-26 16:06 - 2017-08-11 01:19 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2019-02-26 16:06 - 2017-08-11 01:19 - 000299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2019-02-26 16:06 - 2017-08-11 01:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2019-02-26 16:06 - 2017-08-11 01:19 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
2019-02-26 16:06 - 2017-08-11 01:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
2019-02-26 16:06 - 2017-08-11 01:12 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2019-02-26 16:06 - 2017-08-11 01:03 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2019-02-26 16:06 - 2017-08-11 01:00 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2019-02-26 16:06 - 2017-07-29 09:56 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2019-02-26 16:06 - 2017-07-21 09:26 - 000518144 _____ C:\Windows\SysWOW64\msjetoledb40.dll
2019-02-26 16:06 - 2017-07-21 09:26 - 000409600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexch40.dll
2019-02-26 16:06 - 2017-07-21 09:26 - 000290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjtes40.dll
2019-02-26 16:06 - 2017-07-21 09:26 - 000282624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstext40.dll
2019-02-26 16:06 - 2017-07-14 10:29 - 000486400 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-02-26 16:06 - 2017-07-14 10:29 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2019-02-26 16:06 - 2017-07-14 10:10 - 000382976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-02-26 16:06 - 2017-07-14 09:57 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-02-26 16:06 - 2017-07-14 09:50 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-02-26 16:06 - 2017-07-14 09:50 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2019-02-26 16:06 - 2017-07-07 10:33 - 000363752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2019-02-26 16:06 - 2017-07-01 08:05 - 000616448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl40.dll
2019-02-26 16:06 - 2017-07-01 08:05 - 000375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-02-26 16:06 - 2017-07-01 08:05 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-02-26 16:06 - 2017-07-01 08:05 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter40.dll
2019-02-26 16:06 - 2017-06-12 17:49 - 001363456 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2019-02-26 16:06 - 2017-06-12 17:49 - 000594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2019-02-26 16:06 - 2017-06-12 17:49 - 000475136 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2019-02-26 16:06 - 2017-06-12 17:49 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2019-02-26 16:06 - 2017-06-12 17:29 - 001227264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2019-02-26 16:06 - 2017-06-12 17:29 - 000444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2019-02-26 16:06 - 2017-06-12 17:29 - 000390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2019-02-26 16:06 - 2017-06-12 17:28 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2019-02-26 16:06 - 2017-06-12 17:14 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2019-02-26 16:06 - 2017-06-12 17:14 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
2019-02-26 16:06 - 2017-06-12 17:06 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2019-02-26 16:06 - 2017-06-12 17:06 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resmon.exe
2019-02-26 16:06 - 2017-06-02 03:10 - 000733696 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-02-26 16:06 - 2017-05-10 10:33 - 000091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
2019-02-26 16:06 - 2017-05-10 10:16 - 000091368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MigAutoPlay.exe
2019-02-26 16:06 - 2017-05-07 10:33 - 000094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2019-02-26 16:06 - 2017-05-07 10:29 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2019-02-26 16:06 - 2017-04-04 09:53 - 000496128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2019-02-26 16:06 - 2017-03-10 11:32 - 001389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2019-02-26 16:06 - 2017-03-10 11:32 - 000300544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2019-02-26 16:06 - 2017-03-10 11:20 - 001508352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2019-02-26 16:06 - 2017-03-10 11:20 - 000237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2019-02-26 16:06 - 2017-03-10 10:57 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2019-02-26 16:06 - 2017-03-10 10:55 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-02-26 16:06 - 2017-03-10 10:55 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-02-26 16:06 - 2017-03-07 11:30 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2019-02-26 16:06 - 2017-03-07 11:17 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2019-02-26 16:06 - 2017-03-03 20:27 - 001574912 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2019-02-26 16:06 - 2017-03-03 20:27 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2019-02-26 16:06 - 2017-03-03 20:14 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2019-02-26 16:06 - 2017-03-03 20:14 - 000077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll
2019-02-26 16:06 - 2017-02-09 11:32 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2019-02-26 16:06 - 2017-02-09 11:32 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2019-02-26 16:06 - 2017-02-09 11:14 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2019-02-26 16:06 - 2016-10-11 10:31 - 001148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2019-02-26 16:06 - 2016-10-11 10:31 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2019-02-26 16:06 - 2016-10-11 10:31 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2019-02-26 16:06 - 2016-10-11 10:18 - 000430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2019-02-26 16:06 - 2016-10-11 10:18 - 000202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2019-02-26 16:06 - 2016-10-11 09:55 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-02-26 16:06 - 2016-10-11 08:33 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2019-02-26 16:06 - 2016-10-11 08:06 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2019-02-26 16:06 - 2016-09-12 16:08 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2019-02-26 16:06 - 2016-09-12 15:49 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2019-02-26 16:06 - 2016-09-08 15:34 - 000263680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2019-02-26 16:06 - 2016-09-08 15:34 - 000208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2019-02-26 16:06 - 2016-09-08 15:34 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2019-02-26 16:06 - 2016-09-08 15:34 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2019-02-26 16:06 - 2016-08-12 11:26 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2019-02-26 16:06 - 2016-08-06 10:31 - 000347136 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2019-02-26 16:06 - 2016-08-06 10:31 - 000310784 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2019-02-26 16:06 - 2016-08-06 10:31 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2019-02-26 16:06 - 2016-08-06 10:31 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2019-02-26 16:06 - 2016-08-06 10:15 - 001178112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2019-02-26 16:06 - 2016-08-06 10:15 - 000249344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2019-02-26 16:06 - 2016-08-06 10:15 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2019-02-26 16:06 - 2016-08-06 10:15 - 000146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2019-02-26 16:06 - 2016-08-06 10:01 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2019-02-26 16:06 - 2016-08-06 10:01 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2019-02-26 16:06 - 2016-08-06 09:53 - 000199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2019-02-26 16:06 - 2016-08-06 09:53 - 000012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2019-02-26 16:06 - 2016-08-06 09:53 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 001202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000440320 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-02-26 16:06 - 2016-06-14 12:16 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-02-26 16:06 - 2016-06-14 10:21 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2019-02-26 16:06 - 2016-06-14 10:15 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-02-26 16:06 - 2016-06-14 10:00 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2019-02-26 16:06 - 2016-06-14 10:00 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-02-26 16:05 - 2019-01-15 02:03 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2019-02-26 16:05 - 2019-01-15 02:03 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2019-02-26 16:05 - 2019-01-15 02:03 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2019-02-26 16:05 - 2019-01-15 02:02 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2019-02-26 16:05 - 2019-01-15 01:52 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-02-26 16:05 - 2019-01-15 01:52 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-02-26 16:05 - 2019-01-15 01:52 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-02-26 16:05 - 2019-01-15 01:51 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-02-26 16:05 - 2019-01-15 01:38 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2019-02-26 16:05 - 2019-01-15 01:33 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2019-02-26 16:05 - 2019-01-15 01:32 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2019-02-26 16:05 - 2019-01-15 01:32 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-02-26 16:05 - 2019-01-11 22:08 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-02-26 16:05 - 2019-01-11 21:55 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-02-26 16:05 - 2019-01-08 22:10 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-02-26 16:05 - 2019-01-08 22:09 - 005552360 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-02-26 16:05 - 2019-01-08 22:09 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-02-26 16:05 - 2019-01-08 22:09 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-02-26 16:05 - 2019-01-08 22:08 - 001664352 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-02-26 16:05 - 2019-01-08 22:07 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2019-02-26 16:05 - 2019-01-08 22:07 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-02-26 16:05 - 2019-01-08 22:07 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-02-26 16:05 - 2019-01-08 22:06 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-02-26 16:05 - 2019-01-08 22:06 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2019-02-26 16:05 - 2019-01-08 22:06 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2019-02-26 16:05 - 2019-01-08 21:58 - 004055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-02-26 16:05 - 2019-01-08 21:58 - 003960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-02-26 16:05 - 2019-01-08 21:57 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-02-26 16:05 - 2019-01-08 21:55 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-02-26 16:05 - 2019-01-08 21:55 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-02-26 16:05 - 2019-01-08 21:45 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2019-02-26 16:05 - 2019-01-08 21:45 - 000033408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-02-26 16:05 - 2019-01-08 21:45 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2019-02-26 16:05 - 2019-01-08 21:41 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2019-02-26 16:05 - 2019-01-08 21:41 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2019-02-26 16:05 - 2019-01-08 21:41 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2019-02-26 16:05 - 2019-01-08 21:38 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2019-02-26 16:05 - 2019-01-08 21:38 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
2019-02-26 16:05 - 2019-01-08 21:37 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2019-02-26 16:05 - 2019-01-08 21:34 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-02-26 16:05 - 2019-01-08 21:34 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-02-26 16:05 - 2019-01-08 21:34 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-02-26 16:05 - 2019-01-08 21:34 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-02-26 16:05 - 2019-01-08 21:34 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2019-02-26 16:05 - 2019-01-08 21:34 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2019-02-26 16:05 - 2019-01-01 11:08 - 000114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2019-02-26 16:05 - 2019-01-01 11:04 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2019-02-26 16:05 - 2019-01-01 10:57 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2019-02-26 16:05 - 2018-12-28 14:59 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2019-02-26 16:05 - 2018-12-28 14:48 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2019-02-26 16:05 - 2018-12-28 14:32 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2019-02-26 16:05 - 2018-12-28 13:09 - 000419608 _____ C:\Windows\SysWOW64\locale.nls
2019-02-26 16:05 - 2018-12-28 13:09 - 000419608 _____ C:\Windows\system32\locale.nls
2019-02-26 16:05 - 2018-12-07 22:08 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2019-02-26 16:05 - 2018-12-07 22:08 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2019-02-26 16:05 - 2018-12-07 22:08 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2019-02-26 16:05 - 2018-12-07 21:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
2019-02-26 16:05 - 2018-12-07 21:47 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-02-26 16:05 - 2018-12-07 21:47 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-02-26 16:05 - 2018-12-07 21:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2019-02-26 16:05 - 2018-12-07 21:41 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2019-02-26 16:05 - 2018-12-04 10:55 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2019-02-26 16:05 - 2018-11-28 16:38 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2019-02-26 16:05 - 2018-11-17 21:56 - 000459632 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-02-26 16:05 - 2018-11-17 21:44 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-02-26 16:05 - 2018-11-17 21:44 - 000546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-02-26 16:05 - 2018-10-26 22:41 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll
2019-02-26 16:05 - 2018-10-26 22:04 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dispex.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000998480 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000918408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000066000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000063936 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000021968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000015824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000013768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000013264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2019-02-26 16:05 - 2018-10-12 08:05 - 000012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2019-02-26 16:05 - 2018-10-06 11:03 - 000383720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2019-02-26 16:05 - 2018-10-06 10:59 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-02-26 16:05 - 2018-10-06 10:58 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-02-26 16:05 - 2018-10-06 10:58 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2019-02-26 16:05 - 2018-10-06 10:50 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2019-02-26 16:05 - 2018-10-06 10:44 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-02-26 16:05 - 2018-10-06 10:43 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-02-26 16:05 - 2018-10-06 10:16 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2019-02-26 16:05 - 2018-10-06 08:42 - 001988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2019-02-26 16:05 - 2018-10-06 08:05 - 002565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2019-02-26 16:05 - 2018-09-22 21:54 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-02-26 16:05 - 2018-09-22 21:37 - 000034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2019-02-26 16:05 - 2018-09-08 20:02 - 000986824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-02-26 16:05 - 2018-09-08 20:02 - 000265416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-02-26 16:05 - 2018-08-29 20:47 - 001230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2019-02-26 16:05 - 2018-08-29 20:10 - 001424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2019-02-26 16:05 - 2018-08-15 21:18 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2019-02-26 16:05 - 2018-08-13 16:49 - 001391856 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-02-26 16:05 - 2018-08-13 10:54 - 014183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-02-26 16:05 - 2018-08-13 10:53 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-02-26 16:05 - 2018-08-13 10:40 - 012880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-02-26 16:05 - 2018-08-13 10:40 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-02-26 16:05 - 2018-08-12 15:32 - 000140976 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2019-02-26 16:05 - 2018-08-12 15:27 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2019-02-26 16:05 - 2018-08-10 10:55 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2019-02-26 16:05 - 2018-08-10 10:54 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2019-02-26 16:05 - 2018-08-10 10:27 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2019-02-26 16:05 - 2018-07-18 10:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2019-02-26 16:05 - 2018-06-29 10:55 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2019-02-26 16:05 - 2018-06-29 10:14 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2019-02-26 16:05 - 2018-06-27 10:55 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2019-02-26 16:05 - 2018-06-27 10:43 - 000363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 001602048 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000783872 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000612352 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000470016 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000443392 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-02-26 16:05 - 2018-06-08 08:05 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2019-02-26 16:05 - 2018-05-11 16:19 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2019-02-26 16:05 - 2018-05-02 10:32 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2019-02-26 16:05 - 2018-05-02 10:32 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2019-02-26 16:05 - 2018-05-02 10:32 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2019-02-26 16:05 - 2018-05-02 10:32 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2019-02-26 16:05 - 2018-05-02 10:32 - 000007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2019-02-26 16:05 - 2018-04-25 10:18 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2019-02-26 16:05 - 2018-04-18 11:03 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2019-02-26 16:05 - 2018-04-18 10:51 - 000523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2019-02-26 16:05 - 2018-04-18 10:51 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll
2019-02-26 16:05 - 2018-04-18 10:35 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe
2019-02-26 16:05 - 2018-04-07 11:41 - 000371392 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2019-02-26 16:05 - 2018-03-14 12:12 - 003165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2019-02-26 16:05 - 2018-03-14 12:07 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2019-02-26 16:05 - 2018-03-14 11:57 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-02-26 16:05 - 2018-03-14 11:57 - 000030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2019-02-26 16:05 - 2018-03-14 11:53 - 000709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-02-26 16:05 - 2018-03-14 11:52 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-02-26 16:05 - 2018-03-14 11:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-02-26 16:05 - 2018-03-14 11:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2019-02-26 16:05 - 2018-03-14 11:52 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2019-02-26 16:05 - 2018-03-14 11:52 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2019-02-26 16:05 - 2018-02-10 13:35 - 000334528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2019-02-26 16:05 - 2018-02-10 13:35 - 000185024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2019-02-26 16:05 - 2018-02-10 13:35 - 000063168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2019-02-26 16:05 - 2018-02-10 13:35 - 000020160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2019-02-26 16:05 - 2018-02-10 13:35 - 000015040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2019-02-26 16:05 - 2018-02-10 13:23 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
2019-02-26 16:05 - 2018-02-10 13:11 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2019-02-26 16:05 - 2018-02-10 13:11 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
2019-02-26 16:05 - 2018-02-10 12:36 - 000108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
2019-02-26 16:05 - 2018-02-10 12:26 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2019-02-26 16:05 - 2018-02-10 12:26 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
2019-02-26 16:05 - 2018-02-10 12:25 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
2019-02-26 16:05 - 2018-01-12 11:27 - 004834816 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2019-02-26 16:05 - 2018-01-12 11:16 - 003405824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2019-02-26 16:05 - 2017-12-31 21:21 - 000213736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2019-02-26 16:05 - 2017-12-31 21:18 - 001741312 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 001361408 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000366592 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2019-02-26 16:05 - 2017-12-31 21:18 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2019-02-26 16:05 - 2017-12-31 21:00 - 000304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2019-02-26 16:05 - 2017-12-31 20:59 - 000309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2019-02-26 16:05 - 2017-12-31 20:55 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2019-02-26 16:05 - 2017-12-31 20:47 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2019-02-26 16:05 - 2017-12-31 20:46 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2019-02-26 16:05 - 2017-12-05 12:36 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2019-02-26 16:05 - 2017-12-05 12:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2019-02-26 16:05 - 2017-11-02 11:55 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2019-02-26 16:05 - 2017-11-02 11:55 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2019-02-26 16:05 - 2017-11-02 10:11 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2019-02-26 16:05 - 2017-11-02 10:11 - 000115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2019-02-26 16:05 - 2017-11-02 09:56 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2019-02-26 16:05 - 2017-10-16 18:04 - 001001984 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2019-02-26 16:05 - 2017-10-16 17:46 - 000953344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2019-02-26 16:05 - 2017-10-11 19:20 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2019-02-26 16:05 - 2017-09-13 10:28 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-02-26 16:05 - 2017-09-13 10:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-02-26 16:05 - 2017-09-13 10:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2019-02-26 16:05 - 2017-09-13 10:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2019-02-26 16:05 - 2017-09-13 10:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2019-02-26 16:05 - 2017-09-13 10:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2019-02-26 16:05 - 2017-08-19 10:28 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2019-02-26 16:05 - 2017-08-19 10:10 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2019-02-26 16:05 - 2017-08-16 10:29 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2019-02-26 16:05 - 2017-08-16 10:10 - 000629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2019-02-26 16:05 - 2017-08-13 16:45 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2019-02-26 16:05 - 2017-08-11 01:20 - 000071680 _____ C:\Windows\system32\PrintBrmUi.exe
2019-02-26 16:05 - 2017-08-11 01:20 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2019-02-26 16:05 - 2017-08-11 01:09 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2019-02-26 16:05 - 2017-08-11 00:58 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2019-02-26 16:05 - 2017-07-07 10:29 - 001143296 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2019-02-26 16:05 - 2017-07-07 10:10 - 000973312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
2019-02-26 16:05 - 2017-07-01 08:05 - 000866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswdat10.dll
2019-02-26 16:05 - 2017-07-01 08:05 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2019-02-26 16:05 - 2017-06-12 17:14 - 000379392 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2019-02-26 16:05 - 2017-06-12 17:06 - 000303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2019-02-26 16:05 - 2017-05-12 11:25 - 001251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-02-26 16:05 - 2017-05-12 10:58 - 001648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-02-26 16:05 - 2017-05-12 10:58 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2019-02-26 16:05 - 2017-03-30 10:03 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2019-02-26 16:05 - 2017-03-30 09:58 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
2019-02-26 16:05 - 2016-11-10 11:32 - 001009152 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2019-02-26 16:05 - 2016-11-10 11:19 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-02-26 16:05 - 2016-10-11 10:32 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2019-02-26 16:05 - 2016-10-11 10:31 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2019-02-26 16:05 - 2016-10-11 10:31 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
2019-02-26 16:05 - 2016-10-11 10:31 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 001027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2019-02-26 16:05 - 2016-10-11 10:18 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2019-02-26 16:05 - 2016-10-11 10:18 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime
2019-02-26 16:05 - 2016-10-11 10:18 - 000069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2019-02-26 16:05 - 2016-09-08 09:55 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2019-02-26 16:05 - 2016-08-06 10:31 - 002023424 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2019-02-26 16:05 - 2016-08-06 10:31 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2019-02-26 16:05 - 2016-08-06 10:15 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2019-02-26 16:05 - 2016-06-14 12:16 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2019-02-26 16:05 - 2016-06-14 12:11 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2019-02-26 16:05 - 2016-06-14 10:21 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2019-02-26 16:02 - 2016-01-22 01:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2019-02-26 16:02 - 2016-01-22 01:18 - 000723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2019-02-26 16:02 - 2016-01-22 01:04 - 000642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2019-02-26 16:02 - 2016-01-22 01:04 - 000535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2019-02-26 16:02 - 2013-11-26 03:16 - 003419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2019-02-26 16:02 - 2013-11-22 17:48 - 003928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2019-02-26 16:01 - 2019-02-26 16:01 - 000619860 _____ C:\Users\user\Downloads\Semana 8.pptx
2019-02-26 16:01 - 2015-07-14 22:19 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2019-02-26 16:01 - 2014-11-10 22:08 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2019-02-26 16:01 - 2014-11-10 21:44 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2019-02-26 16:00 - 2015-07-22 19:02 - 000879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2019-02-26 16:00 - 2015-07-22 12:53 - 000635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2019-02-26 16:00 - 2015-05-25 13:19 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2019-02-26 16:00 - 2015-05-25 13:18 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2019-02-26 16:00 - 2015-05-25 13:18 - 000104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2019-02-26 16:00 - 2015-05-25 13:18 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2019-02-26 16:00 - 2015-05-25 13:18 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2019-02-26 16:00 - 2015-05-25 13:18 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2019-02-26 16:00 - 2015-05-25 13:01 - 000092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2019-02-26 16:00 - 2015-05-25 13:00 - 000364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2019-02-26 16:00 - 2015-05-25 13:00 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2019-02-26 16:00 - 2015-05-25 13:00 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2019-02-26 16:00 - 2015-05-25 13:00 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2019-02-26 16:00 - 2015-05-25 13:00 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2019-02-26 15:59 - 2016-03-16 13:50 - 000156672 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2019-02-26 15:59 - 2016-03-16 13:28 - 000176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2019-02-26 15:59 - 2016-03-16 13:28 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2019-02-26 15:59 - 2012-10-03 12:44 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2019-02-26 15:59 - 2012-10-03 12:42 - 000569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-02-26 15:59 - 2012-10-03 11:42 - 000175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2019-02-26 15:58 - 2015-12-08 16:54 - 002285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2019-02-26 15:58 - 2015-12-08 16:54 - 001620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 001568768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 001325056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2019-02-26 15:58 - 2015-12-08 16:54 - 000739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2019-02-26 15:58 - 2015-12-08 16:54 - 000154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000970240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2adec.dll
2019-02-26 15:58 - 2015-12-08 16:53 - 000829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2019-02-26 15:58 - 2015-12-08 16:53 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2019-02-26 15:58 - 2015-12-08 16:53 - 000153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2019-02-26 15:58 - 2015-12-08 16:53 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2019-02-26 15:58 - 2015-12-08 16:53 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2019-02-26 15:58 - 2015-12-08 16:53 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 002777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 001955328 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001575424 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001393152 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 001307136 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 001232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 001026048 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 001010688 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 000978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000653824 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000447488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 000292352 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000189952 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2019-02-26 15:58 - 2015-12-08 14:07 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2019-02-26 15:58 - 2015-12-08 14:07 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2019-02-26 15:58 - 2015-12-08 14:06 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2019-02-26 15:58 - 2015-12-08 13:54 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2019-02-26 15:58 - 2015-12-08 13:12 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2019-02-26 15:58 - 2015-12-08 13:11 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2019-02-26 15:58 - 2014-07-16 21:07 - 001118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2019-02-26 15:58 - 2014-07-16 21:07 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2019-02-26 15:58 - 2014-07-16 21:07 - 000150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2019-02-26 15:58 - 2014-07-16 20:40 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2019-02-26 15:58 - 2014-07-16 20:39 - 001051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2019-02-26 15:58 - 2014-07-16 20:21 - 000212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2019-02-26 15:58 - 2014-06-17 21:18 - 000692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2019-02-26 15:58 - 2014-06-17 20:51 - 000646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2019-02-26 15:58 - 2014-03-04 04:44 - 000722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2019-02-26 15:58 - 2014-03-04 04:44 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2019-02-26 15:58 - 2014-03-04 04:43 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2019-02-26 15:58 - 2014-03-04 04:43 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2019-02-26 15:58 - 2014-03-04 04:43 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2019-02-26 15:58 - 2014-03-04 04:43 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2019-02-26 15:58 - 2014-03-04 04:43 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2019-02-26 15:58 - 2014-03-04 04:17 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2019-02-26 15:58 - 2013-12-03 21:27 - 000488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2019-02-26 15:58 - 2013-12-03 21:27 - 000485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2019-02-26 15:58 - 2013-12-03 21:27 - 000123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2019-02-26 15:58 - 2013-12-03 21:27 - 000123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2019-02-26 15:58 - 2013-12-03 21:26 - 000528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2019-02-26 15:58 - 2013-12-03 21:16 - 000658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2019-02-26 15:58 - 2013-12-03 21:16 - 000626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2019-02-26 15:58 - 2013-12-03 21:16 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2019-02-26 15:58 - 2013-12-03 21:16 - 000552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2019-02-26 15:58 - 2013-12-03 21:03 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2019-02-26 15:58 - 2013-12-03 21:03 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2019-02-26 15:58 - 2013-12-03 21:03 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2019-02-26 15:58 - 2013-12-03 21:03 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2019-02-26 15:58 - 2013-12-03 21:02 - 000390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2019-02-26 15:58 - 2013-12-03 20:54 - 000594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2019-02-26 15:58 - 2013-12-03 20:54 - 000572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2019-02-26 15:58 - 2013-12-03 20:54 - 000510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2019-02-26 15:58 - 2013-12-03 20:54 - 000508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2019-02-26 15:58 - 2013-04-25 18:30 - 001505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2019-02-26 15:58 - 2013-03-31 17:52 - 001887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2019-02-26 15:58 - 2012-04-26 00:41 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2019-02-26 15:58 - 2012-04-26 00:34 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2019-02-26 15:57 - 2015-10-29 12:50 - 000342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2019-02-26 15:57 - 2015-10-29 12:50 - 000072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2019-02-26 15:57 - 2015-10-29 12:50 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2019-02-26 15:57 - 2015-10-29 12:50 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2019-02-26 15:57 - 2015-10-29 12:50 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2019-02-26 15:57 - 2015-10-29 12:49 - 000295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2019-02-26 15:57 - 2015-10-29 12:49 - 000020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2019-02-26 15:57 - 2015-02-02 22:31 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2019-02-26 15:57 - 2015-02-02 22:12 - 000171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2019-02-26 15:57 - 2012-12-07 08:20 - 000441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2019-02-26 15:57 - 2012-12-07 08:15 - 002746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2019-02-26 15:57 - 2012-12-07 07:26 - 000308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2019-02-26 15:57 - 2012-12-07 07:20 - 002576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2019-02-26 15:57 - 2012-12-07 06:20 - 000045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2019-02-26 15:57 - 2012-12-07 06:20 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2019-02-26 15:57 - 2012-12-07 06:19 - 000015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2019-02-26 15:57 - 2012-12-07 05:46 - 000015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2019-02-26 15:56 - 2016-04-14 08:49 - 000603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2019-02-26 15:56 - 2016-04-14 08:21 - 000647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2019-02-26 15:56 - 2015-07-10 12:51 - 003722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-02-26 15:56 - 2015-07-10 12:51 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2019-02-26 15:56 - 2015-07-10 12:51 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-02-26 15:56 - 2015-07-10 12:34 - 003221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-02-26 15:56 - 2015-07-10 12:34 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2019-02-26 15:56 - 2015-07-10 12:33 - 000131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2019-02-26 15:56 - 2015-04-12 22:28 - 000328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-02-26 15:56 - 2014-08-01 06:53 - 001031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2019-02-26 15:56 - 2014-08-01 06:35 - 000793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2019-02-26 15:56 - 2013-05-13 00:50 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2019-02-26 15:56 - 2013-05-12 22:43 - 001192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2019-02-26 15:56 - 2013-05-12 22:08 - 000903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2019-02-26 15:56 - 2013-05-12 22:08 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2019-02-26 15:56 - 2010-12-23 05:42 - 001118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2019-02-26 15:56 - 2010-12-23 05:36 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2019-02-26 15:56 - 2010-12-23 00:54 - 000850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2019-02-26 15:56 - 2010-12-23 00:50 - 000199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2019-02-26 15:55 - 2016-08-29 10:04 - 003229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-02-26 15:55 - 2016-08-29 09:55 - 002972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-02-26 15:55 - 2016-07-07 10:08 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2019-02-26 15:55 - 2016-05-12 12:15 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2019-02-26 15:55 - 2016-05-12 12:14 - 000373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2019-02-26 15:55 - 2016-05-12 12:14 - 000032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2019-02-26 15:55 - 2016-05-12 10:18 - 000591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2019-02-26 15:55 - 2016-05-12 10:18 - 000274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2019-02-26 15:55 - 2016-05-12 10:18 - 000079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2019-02-26 15:55 - 2016-05-12 10:18 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2019-02-26 15:55 - 2016-05-12 10:18 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2019-02-26 15:55 - 2016-05-12 10:06 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2019-02-26 15:55 - 2016-05-12 09:57 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2019-02-26 15:55 - 2016-05-12 09:57 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2019-02-26 15:55 - 2016-05-11 12:02 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2019-02-26 15:55 - 2016-05-11 12:02 - 000296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2019-02-26 15:55 - 2016-05-11 10:19 - 000231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2019-02-26 15:55 - 2016-05-11 10:19 - 000206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2019-02-26 15:55 - 2016-03-09 13:54 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2019-02-26 15:55 - 2016-03-09 13:34 - 000216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2019-02-26 15:55 - 2016-02-05 13:56 - 000020480 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2019-02-26 15:55 - 2016-02-05 13:54 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2019-02-26 15:55 - 2016-02-05 12:33 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2019-02-26 15:55 - 2016-01-20 19:51 - 000073664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys
2019-02-26 15:55 - 2015-11-13 18:09 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2019-02-26 15:55 - 2015-11-13 18:09 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2019-02-26 15:55 - 2015-11-13 18:08 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2019-02-26 15:55 - 2015-11-13 17:50 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2019-02-26 15:55 - 2015-11-13 17:50 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2019-02-26 15:55 - 2015-11-13 17:49 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2019-02-26 15:55 - 2015-06-03 15:21 - 000451080 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2019-02-26 15:55 - 2014-12-18 22:06 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2019-02-26 15:55 - 2014-12-11 12:47 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2019-02-26 15:55 - 2014-02-03 21:35 - 000274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2019-02-26 15:55 - 2014-02-03 21:35 - 000190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2019-02-26 15:55 - 2014-02-03 21:35 - 000027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2019-02-26 15:55 - 2014-02-03 21:28 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2019-02-26 15:55 - 2014-02-03 21:00 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2019-02-26 15:55 - 2013-10-29 21:32 - 000335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2019-02-26 15:55 - 2013-10-29 21:19 - 000301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2019-02-26 15:55 - 2013-06-25 17:55 - 000785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2019-02-26 15:55 - 2013-05-10 00:49 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2019-02-26 15:55 - 2013-05-09 22:20 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2019-02-26 15:55 - 2012-11-28 17:56 - 000054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2019-02-26 15:55 - 2012-11-28 17:56 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2019-02-26 15:55 - 2012-11-28 17:56 - 000000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2019-02-26 15:55 - 2012-10-09 13:17 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2019-02-26 15:55 - 2012-10-09 13:17 - 000055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2019-02-26 15:55 - 2012-10-09 12:40 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2019-02-26 15:55 - 2012-10-09 12:40 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2019-02-26 15:55 - 2012-08-21 16:01 - 000245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2019-02-26 15:55 - 2012-01-04 05:44 - 000509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2019-02-26 15:55 - 2012-01-04 03:58 - 000442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2019-02-26 15:55 - 2011-06-16 00:49 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2019-02-26 15:55 - 2011-06-15 23:33 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2019-02-26 15:55 - 2011-04-09 01:58 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2019-02-26 15:55 - 2011-04-09 00:56 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2019-02-26 15:55 - 2011-03-11 01:34 - 001395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2019-02-26 15:55 - 2011-03-11 01:34 - 001359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2019-02-26 15:55 - 2011-03-11 00:33 - 001164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2019-02-26 15:55 - 2011-03-11 00:33 - 001137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2019-02-26 15:54 - 2016-03-09 14:00 - 000396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2019-02-26 15:54 - 2016-03-09 13:40 - 000316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2019-02-26 15:54 - 2016-02-04 20:19 - 000381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2019-02-26 15:54 - 2016-02-04 13:41 - 000296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2019-02-26 15:54 - 2016-02-03 13:07 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2019-02-26 15:54 - 2015-12-08 16:53 - 000509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2019-02-26 15:54 - 2015-12-08 14:07 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2019-02-26 15:54 - 2015-11-05 14:05 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2019-02-26 15:54 - 2015-11-05 14:02 - 000014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2019-02-26 15:54 - 2015-11-05 04:53 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2019-02-26 15:54 - 2015-07-09 12:58 - 001632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2019-02-26 15:54 - 2015-07-09 12:58 - 000082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2019-02-26 15:54 - 2015-07-09 12:57 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2019-02-26 15:54 - 2015-07-09 12:57 - 000193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2019-02-26 15:54 - 2015-07-09 12:42 - 001372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2019-02-26 15:54 - 2015-07-09 12:42 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2019-02-26 15:54 - 2015-07-09 12:42 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2019-02-26 15:54 - 2015-06-01 19:07 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2019-02-26 15:54 - 2015-06-01 18:47 - 000210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2019-02-26 15:54 - 2015-04-24 13:17 - 000633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2019-02-26 15:54 - 2015-04-24 12:56 - 000530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2019-02-26 15:54 - 2015-04-10 22:19 - 000069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2019-02-26 15:54 - 2015-01-28 22:19 - 002543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2019-02-26 15:54 - 2015-01-28 22:02 - 002311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2019-02-26 15:54 - 2014-10-29 21:03 - 000165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2019-02-26 15:54 - 2014-10-29 20:45 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2019-02-26 15:54 - 2014-06-18 17:23 - 001943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2019-02-26 15:54 - 2014-06-18 17:23 - 001131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2019-02-26 15:54 - 2014-06-18 17:23 - 000156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2019-02-26 15:54 - 2014-06-18 17:23 - 000156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2019-02-26 15:54 - 2014-06-18 17:23 - 000081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2019-02-26 15:54 - 2014-06-18 17:23 - 000073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2019-02-26 15:54 - 2014-01-27 21:32 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2019-02-26 15:54 - 2013-10-18 21:18 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2019-02-26 15:54 - 2013-10-18 20:36 - 000159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2019-02-26 15:54 - 2013-10-03 21:28 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2019-02-26 15:54 - 2013-10-03 21:25 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2019-02-26 15:54 - 2013-10-03 20:58 - 000152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2019-02-26 15:54 - 2013-10-03 20:56 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2019-02-26 15:54 - 2013-08-28 20:29 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2019-02-26 15:54 - 2013-08-04 21:25 - 000155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2019-02-26 15:54 - 2013-07-12 05:41 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2019-02-26 15:54 - 2013-07-12 05:41 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2019-02-26 15:54 - 2013-07-12 05:40 - 000109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2019-02-26 15:54 - 2013-03-19 00:53 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2019-02-26 15:54 - 2013-02-11 23:12 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023x.sys
2019-02-26 15:54 - 2013-02-11 23:12 - 000019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2019-02-26 15:54 - 2013-01-24 01:01 - 000223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2019-02-26 15:54 - 2012-11-22 22:13 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2019-02-26 15:54 - 2012-11-02 00:59 - 000478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2019-02-26 15:54 - 2012-11-02 00:11 - 000376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2019-02-26 15:54 - 2012-09-25 17:47 - 000078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2019-02-26 15:54 - 2012-09-25 17:46 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2019-02-26 15:54 - 2012-07-04 17:16 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2019-02-26 15:54 - 2012-07-04 17:13 - 000136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2019-02-26 15:54 - 2012-07-04 17:13 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2019-02-26 15:54 - 2012-07-04 16:16 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2019-02-26 15:54 - 2012-07-04 16:14 - 000041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2019-02-26 15:54 - 2012-07-04 15:26 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rndismpx.sys
2019-02-26 15:54 - 2012-07-04 15:26 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2019-02-26 15:54 - 2012-03-17 02:58 - 000075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2019-02-26 15:54 - 2012-02-16 23:57 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2019-02-26 15:54 - 2011-12-30 01:26 - 000515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2019-02-26 15:54 - 2011-12-30 00:27 - 000478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2019-02-26 15:54 - 2011-12-16 03:46 - 000634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2019-02-26 15:54 - 2011-12-16 02:52 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2019-02-26 15:54 - 2011-08-27 00:37 - 000331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2019-02-26 15:54 - 2011-08-26 23:26 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2019-02-26 15:54 - 2011-08-17 00:26 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2019-02-26 15:54 - 2011-08-17 00:25 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2019-02-26 15:54 - 2011-08-16 23:24 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2019-02-26 15:54 - 2011-08-16 23:19 - 000075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2019-02-26 15:54 - 2011-06-15 05:02 - 000212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2019-02-26 15:54 - 2011-06-15 05:02 - 000163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2019-02-26 15:54 - 2011-06-15 05:02 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2019-02-26 15:54 - 2011-06-15 05:02 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2019-02-26 15:54 - 2011-06-15 03:55 - 000319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2019-02-26 15:54 - 2011-06-15 03:55 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2019-02-26 15:54 - 2011-06-15 03:55 - 000122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2019-02-26 15:54 - 2011-06-15 03:55 - 000086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2019-02-26 15:54 - 2011-06-15 03:55 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2019-02-26 15:54 - 2011-05-24 06:42 - 000404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2019-02-26 15:54 - 2011-05-24 05:40 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2019-02-26 15:54 - 2011-05-24 05:40 - 000044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2019-02-26 15:54 - 2011-05-24 05:39 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2019-02-26 15:54 - 2011-05-24 05:37 - 000252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2019-02-26 15:54 - 2011-02-18 05:51 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2019-02-26 15:54 - 2011-02-18 00:39 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2019-02-26 15:54 - 2011-02-12 06:34 - 000267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2019-02-26 15:54 - 2011-02-05 12:10 - 000020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2019-02-26 15:54 - 2011-02-05 12:10 - 000019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2019-02-26 15:54 - 2011-02-05 12:10 - 000017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll
2019-02-26 15:53 - 2016-02-09 04:55 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2019-02-26 15:53 - 2015-11-03 14:04 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2019-02-26 15:53 - 2015-11-03 13:55 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2019-02-26 15:53 - 2015-03-03 23:41 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2019-02-26 15:53 - 2015-03-03 23:10 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2019-02-26 15:53 - 2014-10-24 20:57 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2019-02-26 15:53 - 2014-10-24 20:32 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2019-02-26 15:53 - 2014-09-04 00:23 - 000424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2019-02-26 15:53 - 2014-09-04 00:04 - 000372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2019-02-26 15:32 - 2015-02-03 22:16 - 000465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2019-02-26 15:32 - 2015-02-03 21:54 - 000417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2019-02-26 14:23 - 2019-02-26 14:23 - 034790450 _____ C:\Users\user\Downloads\windows6.1-kb4012212-x64_2decefaa02e2058dcd965702509a992d8c4e92b3 (1).msu
2019-02-26 00:04 - 2019-02-26 00:04 - 018452833 _____ C:\Users\user\Downloads\Masturbandose.wmv
2019-02-22 12:03 - 2019-02-22 12:04 - 000000911 _____ C:\DelFix.txt
2019-02-22 12:03 - 2019-02-22 12:03 - 000000000 ____D C:\Windows\ERUNT
2019-02-20 14:01 - 2019-02-20 14:01 - 000816916 _____ C:\Users\user\Downloads\Amazon expo3 ppt (1).pptx
2019-02-20 14:01 - 2019-02-20 14:01 - 000498486 _____ C:\Users\user\Downloads\Semana 6.pptx
2019-02-20 13:59 - 2019-02-20 13:59 - 000816916 _____ C:\Users\user\Downloads\Amazon expo3 ppt.pptx
2019-02-20 10:39 - 2019-02-20 10:39 - 000767656 _____ C:\Users\user\Desktop\AMAZON.pptx
2019-02-20 10:36 - 2019-02-20 10:39 - 000766897 _____ C:\Users\user\Downloads\AMAZON.pptx
2019-02-19 19:33 - 2019-02-19 19:33 - 000012872 _____ (SurfRight B.V.) C:\Windows\system32\bootdelete.exe
2019-02-19 18:15 - 2019-02-19 19:33 - 000000000 ____D C:\ProgramData\HitmanPro
2019-02-19 18:13 - 2019-02-19 18:13 - 000002646 _____ C:\Users\user\Desktop\virus de eset.txt
2019-02-19 14:52 - 2019-02-19 14:53 - 011576808 _____ (SurfRight B.V.) C:\Users\user\Desktop\hitmanpro_x64.exe
2019-02-19 14:52 - 2019-02-19 14:52 - 007666296 _____ (ESET spol. s r.o.) C:\Users\user\Desktop\ESETOnlineScanner_ESL.exe
2019-02-18 22:43 - 2019-02-18 22:43 - 000113196 _____ C:\Users\user\Documents\cc_20190218_224313.reg
2019-02-14 13:48 - 2019-02-14 13:48 - 000002003 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2019-02-14 13:47 - 2019-02-14 13:47 - 000249672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-02-14 13:46 - 2019-02-14 13:46 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-02-14 13:46 - 2019-02-14 09:26 - 000362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-02-11 12:57 - 2019-02-11 12:57 - 001552109 _____ C:\Users\user\Downloads\R1_U4_S8_2018-2 (1) (1).pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 002016143 _____ C:\Users\user\Downloads\R1_U4_S9_2018-2.pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 001552109 _____ C:\Users\user\Downloads\R1_U4_S8_2018-2.pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 001552109 _____ C:\Users\user\Downloads\R1_U4_S8_2018-2 (1).pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 001225454 _____ C:\Users\user\Downloads\R1_U2_S6_2018-3.pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 001076040 _____ C:\Users\user\Downloads\R1_U4_S11_2018-2.pdf
2019-02-11 12:56 - 2019-02-11 12:56 - 000976891 _____ C:\Users\user\Downloads\R1_U4_S12_2018-2 (1).pdf
2019-02-10 11:03 - 2019-03-09 12:13 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2019-02-10 11:03 - 2019-02-10 11:08 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2019-02-10 11:03 - 2019-02-10 11:03 - 000001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2019-02-10 11:03 - 2019-02-10 11:03 - 000001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2019-02-10 11:03 - 2019-02-10 11:03 - 000000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2019-02-10 11:03 - 2019-02-10 11:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2019-02-10 11:03 - 2018-02-06 19:04 - 000032168 _____ (Safer-Networking Ltd.) C:\Windows\system32\sdnclean64.exe
2019-02-10 10:59 - 2019-02-10 11:01 - 069910960 _____ (Safer-Networking Ltd. ) C:\Users\user\Downloads\spybotsd-2.7.64.0.exe
2019-02-07 19:05 - 2019-02-27 09:17 - 000440776 _____ C:\Windows\system32\FNTCACHE.DAT

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-03-09 12:22 - 2009-07-13 23:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-03-09 12:22 - 2009-07-13 23:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-03-09 12:13 - 2009-07-14 00:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-03-09 00:18 - 2018-04-03 18:00 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2019-03-09 00:14 - 2017-04-06 18:31 - 000000000 ____D C:\Users\user\AppData\Local\Battle.net
2019-03-08 23:39 - 2018-12-14 21:51 - 000003152 _____ C:\Windows\System32\Tasks\StartCN
2019-03-08 23:39 - 2018-12-14 21:51 - 000003122 _____ C:\Windows\System32\Tasks\ModifyLinkUpdate
2019-03-08 23:39 - 2018-12-14 21:51 - 000003066 _____ C:\Windows\System32\Tasks\StartDVR
2019-03-08 23:39 - 2018-09-04 22:42 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-03-08 23:39 - 2018-03-13 22:22 - 000004488 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-03-08 23:39 - 2017-08-25 08:57 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-03-08 23:39 - 2016-12-04 14:45 - 000003034 _____ C:\Windows\System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB}
2019-03-08 23:39 - 2016-12-04 14:39 - 000003028 _____ C:\Windows\System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46}
2019-03-08 23:39 - 2016-06-04 16:20 - 000004320 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-03-08 23:39 - 2016-03-23 15:11 - 000002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-03-08 23:39 - 2016-03-21 23:49 - 000003470 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-03-08 23:39 - 2016-03-21 23:49 - 000003342 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-03-08 23:35 - 2018-09-05 07:12 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-03-07 23:38 - 2016-05-08 14:20 - 000000000 ____D C:\Users\user\AppData\Local\CrashDumps
2019-03-07 19:38 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\NDF
2019-03-06 23:22 - 2017-04-06 18:27 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2019-03-05 15:55 - 2016-03-21 23:49 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-05 15:55 - 2016-03-21 23:49 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-03-03 12:29 - 2018-06-15 22:59 - 000000000 __RDX C:\Users\user\Desktop\REDES MICROSFT
2019-03-03 02:42 - 2018-12-22 16:57 - 000000000 ____D C:\Program Files\Recuva
2019-03-03 01:31 - 2018-09-11 08:29 - 000000000 ____D C:\Users\user\Desktop\Examen de Programacion
2019-03-02 14:39 - 2018-10-10 04:28 - 000000000 ____D C:\Users\user\AppData\Local\ElevatedDiagnostics
2019-03-01 22:33 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\rescache
2019-03-01 11:28 - 2016-03-21 19:12 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-03-01 11:28 - 2016-03-21 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-03-01 11:28 - 2016-03-21 19:12 - 000000000 ____D C:\Program Files (x86)\WinRAR
2019-03-01 10:58 - 2018-09-04 21:40 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-02-28 20:02 - 2016-03-30 23:23 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-02-27 22:50 - 2019-01-21 10:37 - 000000000 ____D C:\Users\user\AppData\Roaming\Wireshark
2019-02-27 09:25 - 2010-11-21 02:09 - 000747396 _____ C:\Windows\system32\perfh00A.dat
2019-02-27 09:25 - 2010-11-21 02:09 - 000158868 _____ C:\Windows\system32\perfc00A.dat
2019-02-27 09:25 - 2009-07-14 00:13 - 001676890 _____ C:\Windows\system32\PerfStringBackup.INI
2019-02-27 09:25 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\inf
2019-02-27 09:23 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\AppCompat
2019-02-26 21:39 - 2016-03-22 01:24 - 000113592 _____ C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT
2019-02-26 21:14 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-02-26 19:09 - 2016-03-21 19:04 - 000001401 _____ C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2019-02-26 19:03 - 2016-03-21 05:58 - 000000000 ____D C:\Windows\Panther
2019-02-26 18:49 - 2016-03-21 19:16 - 000000000 ____D C:\ProgramData\CyberLink
2019-02-26 18:45 - 2009-07-13 22:20 - 000000000 ____D C:\Program Files\Common Files\System
2019-02-26 18:44 - 2010-11-21 02:19 - 000000000 ____D C:\Windows\ShellNew
2019-02-26 18:44 - 2009-07-14 00:32 - 000000000 ____D C:\Program Files\Windows Defender
2019-02-26 18:44 - 2009-07-14 00:32 - 000000000 ____D C:\Program Files\DVD Maker
2019-02-26 18:44 - 2009-07-14 00:32 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\Setup
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\migwiz
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\Dism
2019-02-26 18:44 - 2009-07-13 22:20 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2019-02-26 17:26 - 2016-03-21 23:27 - 001650540 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-02-26 16:48 - 2009-07-13 21:34 - 000000502 _____ C:\Windows\win.ini
2019-02-26 16:30 - 2016-03-21 19:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2019-02-24 09:35 - 2016-03-23 15:11 - 000000000 ____D C:\Program Files\CCleaner
2019-02-22 12:00 - 2017-08-25 08:56 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-02-19 19:33 - 2016-08-20 16:44 - 000000000 ____D C:\Users\user\AppData\Roaming\mgyun
2019-02-19 14:53 - 2016-09-15 00:54 - 000000000 ____D C:\Users\user\AppData\Local\ESET
2019-02-19 13:50 - 2009-07-14 00:08 - 000032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-02-18 22:50 - 2016-12-11 15:24 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-02-18 22:49 - 2019-01-04 02:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity 2018.3.0f2 (64-bit)
2019-02-15 19:33 - 2018-04-21 16:19 - 000000328 _____ C:\Windows\Tasks\Driver Easy Scheduled Scan.job
2019-02-15 10:59 - 2018-12-15 16:04 - 000003072 _____ C:\Windows\System32\Tasks\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2}
2019-02-15 10:56 - 2017-07-07 23:56 - 000002984 _____ C:\Windows\System32\Tasks\GameFireSkipUAC
2019-02-15 10:55 - 2018-12-15 16:01 - 000003132 _____ C:\Windows\System32\Tasks\{17E24548-4AC6-4245-A880-18F6882C0440}
2019-02-15 10:55 - 2018-04-21 16:19 - 000003734 _____ C:\Windows\System32\Tasks\Driver Easy Scheduled Scan
2019-02-15 10:55 - 2017-08-22 10:38 - 000003068 _____ C:\Windows\System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA}
2019-02-15 10:55 - 2017-07-18 01:44 - 000003104 _____ C:\Windows\System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949}
2019-02-15 10:55 - 2017-07-07 23:56 - 000003292 _____ C:\Windows\System32\Tasks\GameFire
2019-02-15 10:55 - 2016-12-04 14:54 - 000003196 _____ C:\Windows\System32\Tasks\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5}
2019-02-15 10:54 - 2018-06-14 10:23 - 000003564 _____ C:\Windows\System32\Tasks\BlueStacksHelper
2019-02-15 10:52 - 2018-09-04 21:40 - 000474456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-02-15 10:52 - 2017-03-07 12:21 - 000000000 ____D C:\Windows\pss
2019-02-15 00:00 - 2018-09-04 21:46 - 000000000 ____D C:\Users\user\AppData\Roaming\AVAST Software
2019-02-15 00:00 - 2018-09-04 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2019-02-15 00:00 - 2017-12-07 16:43 - 000000000 ____D C:\ProgramData\AVAST Software
2019-02-14 09:27 - 2018-10-19 11:04 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-02-14 09:27 - 2018-09-04 21:40 - 000379952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-02-14 09:27 - 2018-09-04 21:40 - 000216784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-02-14 09:27 - 2018-09-04 21:40 - 000167304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-02-14 09:27 - 2018-09-04 21:40 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-02-14 09:27 - 2018-09-04 21:40 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-02-14 09:26 - 2019-01-14 08:43 - 000225680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-02-14 09:26 - 2019-01-04 03:25 - 000320696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-02-14 09:26 - 2019-01-04 03:25 - 000196072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-02-14 09:26 - 2019-01-04 03:25 - 000057960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-02-14 09:26 - 2018-09-04 21:40 - 001034432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-02-14 09:26 - 2018-09-04 21:40 - 000205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-02-12 12:22 - 2016-06-04 16:20 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-02-12 12:22 - 2016-06-04 16:20 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-02-12 12:22 - 2016-06-04 16:19 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-02-12 12:22 - 2016-06-04 16:19 - 000000000 ____D C:\Windows\system32\Macromed
2019-02-09 12:45 - 2016-03-22 00:03 - 000000000 ____D C:\Users\user\AppData\Roaming\vlc
2019-02-09 12:13 - 2018-10-07 01:55 - 000000000 ____D C:\Users\user\Downloads\Nueva carpeta (2)
2019-02-09 12:03 - 2017-06-30 23:49 - 000000000 ____D C:\Users\user\AppData\Roaming\WhatsApp
2019-02-09 12:03 - 2017-06-30 23:49 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2019-02-09 09:31 - 2017-06-26 03:18 - 000000132 _____ C:\Users\user\AppData\Roaming\Adobe PNG Format CS5 Prefs

==================== Files in the root of some directories =======

2017-06-26 03:18 - 2019-02-09 09:31 - 000000132 _____ () C:\Users\user\AppData\Roaming\Adobe PNG Format CS5 Prefs
2016-04-12 22:08 - 2017-02-08 20:21 - 000000132 _____ () C:\Users\user\AppData\Roaming\Prefs. de formato PNG de Adobe CS6
2017-03-12 21:04 - 2017-03-12 21:04 - 000045270 _____ () C:\Users\user\AppData\Roaming\room_v3.dat
2019-03-03 02:16 - 2019-03-03 02:16 - 000003584 _____ () C:\Users\user\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-07-28 02:42 - 2016-07-28 03:22 - 000000172 _____ () C:\Users\user\AppData\Local\uts.ini

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-03-04 11:14

==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09.03.2019 01
Ran by user (09-03-2019 12:27:15)
Running from C:\Users\user\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2016-03-22 00:03:40)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrador (S-1-5-21-2082071340-3476837701-2702432445-500 - Administrator - Disabled)
Invitado (S-1-5-21-2082071340-3476837701-2702432445-501 - Limited - Disabled) => C:\Users\Invitado
user (S-1-5-21-2082071340-3476837701-2702432445-1000 - Administrator - Enabled) => C:\Users\user

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Spybot - Search and Destroy (Enabled - Out of date) {4C1D9672-63FE-5C90-371E-8FDA591C5B75}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Action! (HKLM-x32\...\Mirillis Action!) (Version: 1.18.0 - Mirillis)
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 19.010.20098 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.142 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.142 - Adobe Systems Incorporated)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 18.12.2 - Advanced Micro Devices, Inc.)
ANTRYX AXINI 7.1 GAMING HEADSET (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006620}) (Version: 1.00.0021 - C-Media Electronics, Inc.)
Aplicación Blizzard (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Application Verifier x64 External Package (HKLM\...\{D9908CED-5ABB-FEE9-FC84-743F4D38637C}) (Version: 10.1.16299.15 - Microsoft) Hidden
Autodesk CAD Manager Tools (HKLM\...\{28B89EEF-0111-0409-0110-CF3F3A09B77D}) (Version: 16.0.0.65 - Autodesk)
Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.2.2364 - AVAST Software)
BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 3.56.76.1867 - BlueStack Systems, Inc.)
Branding64 (HKLM\...\{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden
Camtasia Studio 8 (HKLM-x32\...\{A2A41B60-D51F-4C04-BC94-B4C94F7B6DC0}) (Version: 8.6.0.2054 - TechSmith Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform)
Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version:  - Cheat Engine)
Citra (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\{bc44478e-2d40-4882-943f-047c86551801}) (Version: 1.0.0 - Citra Team)
CyberLink PowerDVD 13 (HKLM-x32\...\InstallShield_{3CFDF154-7E60-4E98-A8DF-C693A4F8E6B6}) (Version: 13.0.2720.57 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Discord) (Version: 0.0.301 - Discord Inc.)
Doom 3 (HKLM-x32\...\{EEFB15EB-FE8B-47DF-A496-1C4D1420294A}) (Version: 1.00.0000 - Nombre de su organización) Hidden
Driver Easy 5.6.2 (HKLM\...\DriverEasy_is1) (Version: 5.6.2 - Easeware)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS)
Eines de correcció del Microsoft Office 2013: català (HKLM-x32\...\{90150000-001F-0403-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
EVEREST Ultimate Edition v4.60 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 4.60 - Lavalys, Inc.)
Facebook Gameroom 1.21.6907.27509 (HKLM-x32\...\{E34773A0-158F-4322-8849-2C13BBCD6C68}) (Version: 1.21.6907.27509 - Facebook)
FARO LS 1.1.505.0 (64bit) (HKLM-x32\...\{8834451B-6209-4E02-9EF4-4EF9E3C1F70F}) (Version: 5.5.0.44203 - FARO Scanner Production)
Ferramentas de verificación de Microsoft Office 2013 - Galego (HKLM-x32\...\{90150000-001F-0456-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Galería de fotos (HKLM-x32\...\{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Game Fire (HKLM\...\{6C64CABD-079D-4F32-A182-DDAE45311394}) (Version: 6.1.3025 - Smart PC Utilities)
GameMaker Studio 1.4.1760 versión 1.4.1760 (HKLM-x32\...\{C8052A0F-CAF1-4832-936A-5CA4A57350B2}_is1) (Version: 1.4.1760 - YOYO Games)
GameMaker-Studio 1.4 (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\GameMaker-Studio14) (Version:  - YoYo Games Ltd.)
GonVisor 2.52.01 (HKLM-x32\...\GonVisor_is1) (Version:  - GON)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 72.0.3626.121 - Google Inc.)
Google Chrome (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Google Chrome) (Version: 29.0.1530.2 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Half Life 2 (HKLM-x32\...\{93300300-9560-43E1-B890-635640466A13}) (Version: 1.00.0000 - Valve)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3574 - Intel Corporation)
Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java SE Development Kit 8 Update 161 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180161}) (Version: 8.0.1610.12 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kits Configuration Installer (HKLM-x32\...\{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden
K-Lite Codec Pack 7.9.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.9.0 - )
Loquendo TTS: Carmen (Spanish) (HKLM-x32\...\LoqTTS-Carmen_is1) (Version:  - )
Loquendo TTS: Diego (Spanish) (HKLM-x32\...\LoqTTS-Diego_is1) (Version:  - )
Loquendo TTS: Juan (Spanish) (HKLM-x32\...\LoqTTS-Juan_is1) (Version:  - )
Malwarebytes versión 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes)
Microsoft .NET Framework 4.7.2 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\...\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1089.1204 - Microsoft Corporation)
MiniTool Partition Wizard Free 10.2.3 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Solution Ltd.)
Mono for Windows (x64) (HKLM\...\{B164CF7E-892F-4CF8-A753-3239D3102F97}) (Version: 5.18.0.225 - Xamarin, Inc.)
MorphVOX Pro (HKLM-x32\...\{0BBDAD55-68E5-4ABD-91CD-C2A8E11B3743}) (Version: 4.3.13 - Screaming Bee)
Movie Maker (HKLM-x32\...\{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 58.0.1 (x64 es-ES) (HKLM\...\Mozilla Firefox 58.0.1 (x64 es-ES)) (Version: 58.0.1 - Mozilla)
MSI Development Tools (HKLM-x32\...\{973CACA2-E018-065B-0580-F2784802E299}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Nero 7 Ultra Edition (HKLM-x32\...\{F14B8ECC-BDA0-4987-9201-D7B7DBE11033}) (Version: 7.02.0936 - Nero AG)
NetBeans IDE 8.2 (HKLM\...\nbi-nb-base-8.2.0.0.201609300101) (Version: 8.2 - NetBeans.org)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Paquete de compatibilidad redirigido de documentación de Microsoft .NET Framework 4.7.1 (español) (HKLM-x32\...\{927FF4FD-8E47-4022-8545-22FD78FBC2AB}) (Version: 4.7.02558 - Microsoft Corporation) Hidden
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
PHDGD Virtual VRAM Tool version 1.0 (HKLM-x32\...\{FB97A218-8B43-43BE-A721-C199C6589D08}_is1) (Version: 1.0 - PHDGD/IntelliModder32)
Photoshop CS5 Extended 12.0 (HKLM-x32\...\Photoshop CS5 Extended 12.0) (Version:  - )
PowerDVD (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 7.0.2211.0 - CyberLink Corporation)
PSeInt (HKLM-x32\...\PSeInt) (Version:  - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.987 - Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7209 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Resident Evil 2 (HKLM-x32\...\Resident Evil 2_is1) (Version:  - )
Return to Castle Wolfenstein (HKLM-x32\...\Return to Castle Wolfenstein) (Version: 1.0 - Activision, Inc.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM-x32\...\{90150000-001F-0416-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Screen Recorder Launcher (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\ScreenRecorderLauncher) (Version: 2.0 - )
SDK ARM Additions (HKLM-x32\...\{7922BB77-0B59-840A-AC80-D560A34D75C5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{C87DF65C-A672-7E08-A083-E7D48FE8DB70}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.7.64.0 - Safer-Networking Ltd.)
StarCraft (HKLM-x32\...\StarCraft) (Version:  - Blizzard Entertainment)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1242 - SUPERAntiSpyware.com)
TextAloud 3.0 (HKLM-x32\...\TextAloud3_is1) (Version: 3.0 - NextUp.com)
TP-LINK TL-WDN4800 Driver (HKLM-x32\...\{70D605C7-C823-4750-BA72-BEB835713612}) (Version: 1.3.1 - TP-LINK)
TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK)
Traductor versión 3.0 (HKLM-x32\...\{E6394084-49EF-4122-A8DF-229CD370F2CC}_is1) (Version: 3.0 - Traducciones MCX)
Twitch (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 7.0.0.0 - Twitch Interactive, Inc.)
Unity Web Player (HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\UnityWebPlayer) (Version: 5.3.8f2 - Unity Technologies ApS)
Unity Web Player (x64) (All users) (HKLM\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS)
Universal CRT Extension SDK (HKLM-x32\...\{A5FA2886-1925-133F-0D41-B9A8ECEA0A2D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{B739B4C5-EEEC-8E70-0276-38C4779AF398}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{A9D6F52C-694E-3E41-7AB8-5BEB644742A5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{E053089E-7953-3219-814F-F485FC151C54}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{B9424F08-0617-C4F6-A798-5A9250C1A738}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D261CEA1-AB8D-9CFA-4407-BCEFC78661AC}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
USB Disk Security (HKLM-x32\...\USB Disk Security_is1) (Version:  - Zbshareware Lab)
UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 11.0.1.1 - SOSVirus (SOSVirus.Net))
vcpp_crt.redist.clickonce (HKLM-x32\...\{32DF9B1B-E622-4385-99E0-02461A428363}) (Version: 14.16.27012 - Microsoft Corporation) Hidden
Visual Studio Community 2017 (HKLM-x32\...\29407dad) (Version: 15.9.28307.222 - Microsoft Corporation)
VS Script Debugging Common (HKLM\...\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{340226AB-D0EF-4715-A331-AB3A416B5018}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{E70CC1B8-7ED5-4495-9C52-603FE87F38F4}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
vs_tipsmsi (HKLM-x32\...\{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0-3) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Warcraft III (HKLM-x32\...\Warcraft III) (Version: 0.0.0.0 - Blizzard Entertainment)
Webcam (HKLM-x32\...\{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 1.0.3.6 - ETRON)
WinAppDeploy (HKLM-x32\...\{9690D51C-4435-1C20-7819-66CCAB0F03F9}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
Windows SDK AddOn (HKLM-x32\...\{350F0ECD-0783-4529-8797-98F0AD33EAC0}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.16299.15 (HKLM-x32\...\{6195c203-b53c-4bb7-983a-6070a902e704}) (Version: 10.1.16299.15 - Microsoft Corporation)
Windscribe (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.80 Build 33 - Windscribe Limited)
WinRAR 5.70 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{385A1387-A488-9E90-3635-086129610034}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{D7DD3171-DA58-52A1-95B2-4769640855AF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{7336279F-8F8F-5530-A543-3BE963846C0A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E414A474-0A87-4F66-C409-A4D9857CFD34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{CE760B86-975B-F514-5673-0ED4332B801B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{5E67F8BE-D8D2-257F-CE19-419A2D5125C7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{A2AA063E-AF50-A1F5-8925-A06EB1556644}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{7D4C7F4A-02A9-E434-6451-C8787DF28C1F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{BC467065-9374-5345-DA3F-FCF073304A25}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden
Wondershare Recoverit(Build 7.1.6.11) (HKLM-x32\...\{829555DC-31E5-4FEA-B350-8FCF24CECD95}_is1) (Version: 7.1.6.11 - Wondershare Software Co.,Ltd.)
xDark™ VLC Player 2.0.4 (HKLM-x32\...\VLC media player) (Version: 2.0.4 - C18™)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082071340-3476837701-2702432445-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\user\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers1-x32: [TextAloud] -> {BF31B0FB-AE0E-488F-BFD6-416FA2F9915F} => D:\CUPHEAD\TextAloud\TAContextMenu.dll [2010-05-17] (NextUp Technologies, LLC -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-12-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DreamScene] -> {BE800AEB-A440-4B63-94CD-AA6B43647DF9} => C:\Windows\System32\DreamScene.dll [2017-12-19] (Microsoft Corporation -> Microsoft Corporation) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2014-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\Windows\system32\igfxOSP.dll [2014-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-02-14] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02290EBD-7399-4CBB-8CAD-391FA2026215} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {0944B01E-9CF9-47D0-8FDB-A41D3D21C909} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software)
Task: {0E1058DA-90AF-4BD5-A17A-490D45F31567} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe (AVAST Software s.r.o. -> AVAST Software)
Task: {116323FF-2EE2-4A33-9932-5BA3143D02F4} - System32\Tasks\{17E24548-4AC6-4245-A880-18F6882C0440} => C:\Windows\system32\pcalua.exe -a "D:\HALFLIFE\half life 2\hl2enhancer.exe" -d "D:\HALFLIFE\half life 2"
Task: {1D9CCD76-92F9-4FA6-A83F-0F148F5C9285} - System32\Tasks\{7FBD0E2F-A226-4928-8552-0C121886BA46} => C:\Windows\system32\pcalua.exe -a F:\setup.exe -d F:\
Task: {2F731959-6107-464E-B5C0-CA21C204E633} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {30D67F0E-390C-4039-AB5C-83DE0C718184} - System32\Tasks\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2} => C:\Windows\system32\pcalua.exe -a D:\HALLIFE\hl2enhancer.exe -d D:\HALLIFE
Task: {352B0BCC-CFAC-47BD-AC13-62D586AD0F5D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {3E6084B1-B554-484C-A537-F623EBD6E0D7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {45583B31-7DA0-41BB-B859-C0B32EFE7E0B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {536C0C89-1D33-4C90-8184-81127C24F790} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {56529DF1-ABDE-477E-88A9-1F37AD0281DA} - System32\Tasks\GameFire => D:\My pony descargas\GFTray.exe (Ahmed Osama -> Smart PC Utilities, Ltd.)
Task: {5797A340-887B-4B28-9C3B-DA8A24969EC4} - System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA} => C:\Windows\system32\pcalua.exe -a E:\TL-WN951N\Setup.exe -d E:\TL-WN951N
Task: {5D87D811-DFDF-4BCD-8C44-8633A916075F} - System32\Tasks\Driver Easy Scheduled Scan => D:\MUS\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware)
Task: {6F9E32F1-9C83-47C2-B986-2201C6191E05} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {7270011E-7DC4-4438-8840-B682901E12DB} - System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949} => C:\Windows\system32\pcalua.exe -a D:\maplestory\appdata\Setup.exe -d D:\maplestory\appdata
Task: {7AC1F32A-0973-4604-980B-1FD5DF099207} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_142_Plugin.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7B9C3287-83B5-4F93-A541-4FD1275637A8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7E2E5DC8-3643-4F8F-94CF-D4FA198A16C4} - System32\Tasks\{EFF8CBDC-EBA6-42B5-B86A-9DAD403631AB} => C:\Windows\system32\pcalua.exe -a F:\instmsia.exe -d F:\
Task: {9E4A1A36-3870-4EDB-ADC8-778DBC2ABC69} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {A3B5DBBF-D01A-4242-9F7B-1E8624ADBF89} - System32\Tasks\BlueStacksHelper => D:\Bluestacks\BlueStacks\Client\Helper\BlueStacksHelper.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {B9129505-66D2-421D-9DF8-1C2ED994DAB4} - System32\Tasks\GameFireSkipUAC => D:\My pony descargas\GameFire.exe (Ahmed Osama -> Smart PC Utilities, Ltd.)
Task: {BF5F64F6-9238-4B89-8344-5549DD06AFC9} - System32\Tasks\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5} => C:\Windows\system32\pcalua.exe -a C:\Users\user\Downloads\Wolf-by-.CompucaliTV\setup.exe -d C:\Users\user\Downloads\Wolf-by-.CompucaliTV
Task: {C02C53A2-1F10-450E-B052-1A455764A44E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {C249B1FB-5BFC-46EE-9498-41D2D99AD55C} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe
Task: {C7362AF2-CAAE-49C0-908C-CA8B466D5E7F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd -> Piriform Ltd)
Task: {D0CC274B-CAD1-4D76-8A0D-E6ECCEB98512} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe (Advanced Micro Devices, Inc.) [File not signed]
Task: {D0CD875B-5B76-4A33-8FFB-F9428CE293D0} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe (Advanced Micro Devices, Inc.) [File not signed]
Task: {E475A98B-D1A7-4540-90D3-A952E84362AC} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {F9A900D6-64BA-4AF5-9E75-6F2F06A71A55} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Driver Easy Scheduled Scan.job => D:\MUS\DriverEasy\DriverEasy.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

ShortcutWithArgument: C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\980b6e4d5257aa74\mobile browser emulator.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=lbofcampnkjmiomohpbaihdcbjhbfepf

==================== Loaded Modules (Whitelisted) ==============

2017-09-28 15:52 - 2017-09-28 15:52 - 000128000 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\DXGIDebug.dll
2017-12-19 00:02 - 2017-12-19 00:02 - 000275360 _____ (Microsoft Corporation -> Microsoft Corporation) [File not signed] C:\Windows\System32\DreamScene.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000359936 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 076160000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 003700224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 006321152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2018-12-06 19:46 - 2018-12-06 19:46 - 005812224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 003559424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 001077248 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000323584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 005603840 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000461312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 002822144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000187904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 001412608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2018-06-27 21:19 - 2018-06-27 21:19 - 002552832 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000345600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000502272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000328192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000059904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000053248 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000089088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2018-06-27 21:19 - 2018-06-27 21:19 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-02-18 05:27 - 2019-02-18 05:27 - 002005136 _____ (Sosvirus (Le Bozec Cedric, Dominique, Marie ) -> ) [File not signed] C:\Program Files (x86)\UsbFix\UsbFix.exe
2016-03-21 20:04 - 2019-03-09 12:13 - 000027648 _____ () [File not signed] C:\Program Files (x86)\ASUS\AXSP\1.01.02\PEbiosinterface32.dll
2016-03-21 19:16 - 2013-03-14 13:08 - 000499712 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\MSVCP71.dll
2016-03-21 19:16 - 2013-03-14 13:08 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\MSVCR71.dll
2017-09-28 18:41 - 2017-09-28 18:41 - 000266240 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\user\AppData\Local\Temp:$DATA​ [16]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-07-03 15:34 - 2019-01-04 03:08 - 000000091 _____ C:\Windows\system32\drivers\etc\hosts

127.0.0.1 www.mirillis.com
127.0.0.1 s0ft4pc.com
127.0.0.1 serwer2.paka-service.com

2017-08-22 08:46 - 2018-06-15 01:06 - 000000433 _____ C:\Windows\system32\drivers\etc\hosts.ics

192.168.137.1 user-PC.mshome.net # 2023 6 3 14 6 6 27 692

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\Skype\Phone;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\Skype\Phone\
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 200.48.225.130 - 200.48.225.146
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Avast Cleanup Premium.lnk => C:\Windows\pss\Avast Cleanup Premium.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftEther VPN Client Manager Startup.lnk => C:\Windows\pss\SoftEther VPN Client Manager Startup.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TP-LINK Wireless Configuration Utility.lnk => C:\Windows\pss\TP-LINK Wireless Configuration Utility.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Gameroom.lnk => C:\Windows\pss\Facebook Gameroom.lnk.Startup
MSCONFIG\startupfolder: C:^Users^user^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Twitch.lnk => C:\Windows\pss\Twitch.lnk.Startup
MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe" -tray
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\user\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: CyberGhost => "C:\Program Files\CyberGhost 6\CyberGhost.exe" /autostart /min
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "D:\Games\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: Discord => C:\Users\user\AppData\Local\Discord\app-0.0.297\Discord.exe
MSCONFIG\startupreg: jswtrayutil => "C:\Program Files (x86)\Jumpstart\jswtrayutil.exe"
MSCONFIG\startupreg: ManyCam => "D:\adsfad\ManyCam.exe" --silent
MSCONFIG\startupreg: NetLimiter => D:\adsfad\NLClientApp.exe /tray
MSCONFIG\startupreg: RemoteControl => "C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe"
MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SoftEther VPN Client UI Helper => "C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe" /uihelp
MSCONFIG\startupreg: Steam => "D:\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MSCONFIG\startupreg: USB Security => C:\Program Files (x86)\USB Disk Security\USBGuard.exe
MSCONFIG\startupreg: Windscribe => "C:\Program Files (x86)\Windscribe\Windscribe.exe" -os_restart                                                                                                                                                                                                           
MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{6E07BCC1-0862-4C31-AB38-5460331C9F36}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{DD2CB090-C266-4C00-BA33-3F702FDEABDE}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{9FF4791B-7F09-49D7-8524-4566072B46F6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{3DAEF23C-2E23-41E4-ADA0-06473BC0CA31}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{777821D1-E50C-4563-B213-526BAEA52BE3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{D1D6DE34-35D8-4398-A820-2BA94A235D91}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{B1A336F9-4161-4A85-946F-EDB315EE2BCA}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{206B98BA-B0D1-478E-9542-8D5B3152F714}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{76FC2E63-5080-4C4E-9983-1E560603654A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{970BFB4A-4B9E-4548-A049-B1B0A9763190}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{3E7622B3-BDDB-433D-9B84-ACF049CA50ED}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe No File
FirewallRules: [UDP Query User{1090D7E6-9B54-4450-AD35-5082ED8339AF}F:\lol\warcraft iii\war3.exe] => (Allow) F:\lol\warcraft iii\war3.exe No File
FirewallRules: [{953934EB-50D5-4D05-9F6F-A3BCCE36C692}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{ED80A89A-BDA9-48BF-BA69-4F9F36E343DA}] => (Allow) LPort=8317
FirewallRules: [{148F277A-1B1F-4345-A8F9-334A521B239A}] => (Allow) C:\Users\user\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C5894CF2-D177-44DF-A481-07A24BB8A4C5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{08D27178-0867-45A7-B7CA-1E1D1226A6B8}] => (Allow) LPort=2869
FirewallRules: [{83AD2631-6B9B-4F08-93EB-686C5EA50E9E}] => (Allow) LPort=1900
FirewallRules: [{A33F1EB1-22E2-474A-A8A4-55CFB039D96D}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{721A78DE-9CE0-4105-8F35-0D07CD5E664A}] => (Allow) LPort=1688
FirewallRules: [TCP Query User{813903E4-552D-44EF-89DF-663AAABC007E}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [UDP Query User{42A76B9B-2DE6-44CA-8CFF-72AE5ABE3CD8}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [{A335C6AA-39BD-4FE6-9529-16E2C8984542}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{BA2F2779-4016-48DB-BD8D-E26E0AB817D6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{9DF98C4F-DA8A-4D1D-9EE7-CCE45BFD6DA3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{84BA0CA2-E81D-4D35-A682-F3FA1FED3FBC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{F9BCD853-10BE-47FD-8FD3-6C85DAF2B627}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{4B824620-6AC5-4D05-BD43-690D93287C38}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{299418F7-C515-4FCC-94DB-30D3A1E1D9BB}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{CB11BF53-5486-40C6-9931-19C5FCD604C0}] => (Allow) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{6D860247-3B32-4564-B3C4-4D2775C915F2}C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe No File
FirewallRules: [UDP Query User{0845A244-0030-4821-9C99-1EC7D23706BD}C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_the_frozen_throne_enus.exe No File
FirewallRules: [TCP Query User{2892092D-7180-465A-8E32-944BD9778791}C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe No File
FirewallRules: [UDP Query User{44CFD743-C7F5-479B-A483-D74A527FBE71}C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe] => (Allow) C:\users\user\downloads\downloader_warcraft3_reign_of_chaos_enus.exe No File
FirewallRules: [{71F46EE0-2761-4AC5-8D19-F9E35B2A82BA}] => (Allow) LPort=3724
FirewallRules: [{E89C2174-FA91-4B6D-817E-AD4E70DFB87E}] => (Allow) LPort=3724
FirewallRules: [{944E37FC-A989-45AD-A7A9-687094F96CF8}] => (Allow) C:\Windows\SysWOW64\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6E884176-7642-4EE1-8362-5F7DA2C98282}] => (Allow) C:\Windows\SysWOW64\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1349F67E-C7CD-4536-A32C-F51C42C2EFD3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{ABDCF8D9-0655-4FD0-AB5D-131899EE3904}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{1011CF59-31FC-4503-92F9-530C5040781F}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [UDP Query User{36394593-EE70-44B6-995B-26C358EAA9C1}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Allow) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [TCP Query User{AFEFF4A0-BC98-40CD-936D-9E689AA86211}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [UDP Query User{F7E8F81B-F6C2-4E43-9991-BF85139348F7}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [TCP Query User{BC9DCB7B-397D-4359-AF72-39E88FEC7193}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [UDP Query User{7EA86A71-E1C4-4961-B1DA-133E4679C63D}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{9BBADBDF-40EE-4EAE-A4DF-BD8E2F5C8D24}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{5C9BF369-FFD1-4BEF-80AC-A964A96690BF}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{5C632CA4-6394-4892-A85B-CCDC81BF0063}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
FirewallRules: [TCP Query User{161089F4-EA24-482D-8A97-0C897A5AE309}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{C35E46E0-E2EB-47F6-9BDE-DECCA8ADDB7A}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{BE149088-7B15-40C1-9BFF-2C713D3C3664}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [UDP Query User{D6471DC8-297F-4DD4-887F-1443618304AF}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe (Windscribe Limited -> Windscribe Limited)
FirewallRules: [TCP Query User{EEBFA060-182A-4991-9EF3-386F4B4DC104}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Block) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [UDP Query User{5F922755-5A73-455D-8184-B365B9A36D54}D:\warcraft\warcraft 3 + frozen throne\war3.exe] => (Block) D:\warcraft\warcraft 3 + frozen throne\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [TCP Query User{48028065-34AD-4F7E-8CC8-6C9EA09B2859}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [UDP Query User{AE1AE471-7FE6-419E-8B0C-986779161D39}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [TCP Query User{F909E756-2C7A-4529-B244-8D0EBFEC4927}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [UDP Query User{C98D07F5-6489-46A3-B78D-503AFC71520C}C:\program files\amd\cnext\cnext\radeonsettings.exe] => (Block) C:\program files\amd\cnext\cnext\radeonsettings.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
FirewallRules: [TCP Query User{26CA6441-1E8F-4016-9E15-A991400C70AB}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [UDP Query User{796C2938-F899-42E9-937C-428582435CC3}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [TCP Query User{737673CB-7E9C-450C-96C6-88CF5614C32F}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [UDP Query User{A10FF309-B23F-4164-86F1-D17EDD329EC4}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [TCP Query User{949421F9-9528-46EE-BE47-5B92944304D8}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [UDP Query User{434D95B1-AE68-423A-908B-62326B5BF388}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [TCP Query User{FF2CB679-D85B-4F81-8E48-AD336D6CF011}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [UDP Query User{BEAFF19B-3F33-4C0F-A73B-967866C1240E}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [{5DC231D9-AAAF-439C-A1A9-F2DCF95503AD}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{30575252-8CD0-418A-9F60-6220D76B2B34}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{12DAE9E7-5A29-4CFF-8B39-3EB3B5D4D04C}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{9BB652F4-AF53-493A-9FF0-E8E43E4C12F5}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{EE3FDFA5-2850-40D4-8A09-4BDA245AB9C6}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FFC54B42-A6DB-4074-B15E-4B2C71304B36}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{133BEC77-C2C5-4CCB-932E-296FDD17D038}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [UDP Query User{BA0F057C-F4CA-43B3-BE92-16EC69D1C0EF}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [TCP Query User{6F811AFD-7966-4948-9FA1-55A55707DF2C}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [UDP Query User{F4A99602-F2A9-47C7-8C8C-FC467920EA72}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [TCP Query User{57643A92-20B1-4C14-9BC9-49C722D17555}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [UDP Query User{C2E6B9F4-62D6-436C-BDDD-4BDD832DDF18}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [{CDEB7B90-9EA2-4F97-8296-346B814774A5}] => (Allow) D:\Steam\steamapps\common\Yu-Gi-Oh! Duel Links\dlpc.exe () [File not signed]
FirewallRules: [{0928DA47-3FC2-4E1C-8D9C-C69F74B2FB58}] => (Allow) D:\Steam\steamapps\common\Yu-Gi-Oh! Duel Links\dlpc.exe () [File not signed]
FirewallRules: [{51A52DE9-461E-49B0-B75B-15ED90F38AA5}] => (Allow) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1077A498-9AC8-4FC7-AB55-02E28B39F57D}] => (Allow) C:\Program Files (x86)\Blizzard\Bonjour Service\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{B102AA6A-D753-42C2-8476-0BB1D4478EB4}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
FirewallRules: [UDP Query User{BD71E59C-8A10-48AC-80E6-F9B9DB3A9B9E}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
FirewallRules: [{119E80ED-E151-4742-B433-0E865897DC06}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{5E5487D6-0DB2-4027-BCB5-9AC33BDED6FE}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [TCP Query User{48876052-EC8B-4EB4-B7E5-14A2C7B55E94}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{1E9D31E7-C397-4401-AC58-50EC5C78E1FF}D:\starcraft ii\versions\base72282\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base72282\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [{A9FF5A24-5525-4C9C-B297-7D3EF1BBC90D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
StandardProfile\GloballyOpenPorts: [6112:UDP] => Enabled:war udp
StandardProfile\GloballyOpenPorts: [6112:TCP] => Enabled:war tcp

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: VPN Client Adapter - VPN
Description: VPN Client Adapter - VPN
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SoftEther Corporation
Service: Neo_VPN
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: TunnelBear Adapter V9
Description: TunnelBear Adapter V9
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TunnelBear Provider V9
Service: tap-tb-0901
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Realtek High Definition Audio
Description: Realtek High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: IntcAzAudAddService
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Windscribe VPN
Description: Windscribe VPN
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Windscribe.com
Service: tapwindscribe0901
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Qualcomm Atheros AR938x Wireless Network Adapter #2
Description: Qualcomm Atheros AR938x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/09/2019 12:14:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (03/08/2019 02:42:06 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (03/07/2019 11:38:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: war3.exe, versión: 1.26.0.6401, marca de tiempo: 0x4d83baa9
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xc000041d
Desplazamiento de errores: 0x73d04eb9
Id. del proceso con errores: 0x1b24
Hora de inicio de la aplicación con errores: 0x01d4d558f04a7fd1
Ruta de acceso de la aplicación con errores: D:\WARCRAFT\WarCraft 3 + Frozen Throne\war3.exe
Ruta de acceso del módulo con errores: unknown
Id. del informe: 11a7e3be-415c-11e9-a6e0-e03f49a5aca6

Error: (03/07/2019 07:14:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (03/07/2019 11:48:48 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.

Error: (03/06/2019 09:41:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: war3.exe, versión: 1.26.0.6401, marca de tiempo: 0x4d83baa9
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xc000041d
Desplazamiento de errores: 0x740c4eb9
Id. del proceso con errores: 0x2268
Hora de inicio de la aplicación con errores: 0x01d4d4793d067a49
Ruta de acceso de la aplicación con errores: D:\WARCRAFT\WarCraft 3 + Frozen Throne\war3.exe
Ruta de acceso del módulo con errores: unknown
Id. del informe: 90a4ae61-4082-11e9-acf7-e03f49a5aca6

Error: (03/06/2019 07:03:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: war3.exe, versión: 1.26.0.6401, marca de tiempo: 0x4d83baa9
Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000
Código de excepción: 0xc000041d
Desplazamiento de errores: 0x740c4eb9
Id. del proceso con errores: 0x1a10
Hora de inicio de la aplicación con errores: 0x01d4d464daf7c400
Ruta de acceso de la aplicación con errores: D:\WARCRAFT\WarCraft 3 + Frozen Throne\war3.exe
Ruta de acceso del módulo con errores: unknown
Id. del informe: 6b3629d4-406c-11e9-acf7-e03f49a5aca6

Error: (03/06/2019 02:13:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: No se pudo reactivar el filtro de eventos con la consulta "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" en el espacio de nombres "//./root/CIMV2" por el error 0x80041003. Los eventos no se podrán entregar a través de este filtro hasta que se corrija este problema.


System errors:
=============
Error: (03/09/2019 12:20:01 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Windows Update no respondió después de iniciar.

Error: (03/09/2019 12:18:02 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio ShellHWDetection.

Error: (03/09/2019 12:15:57 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos establecido de forma predeterminada en el equipo no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 y APPID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/09/2019 12:14:49 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio Intel(R) HD Graphics Control Panel Service se cerró con el siguiente error: 
Error no especificado

Error: (03/08/2019 02:47:21 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Windows Update no respondió después de iniciar.

Error: (03/08/2019 02:43:49 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Se recibió la siguiente alerta irrecuperable: 70.

Error: (03/08/2019 02:43:33 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos establecido de forma predeterminada en el equipo no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 y APPID 
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}
 al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/08/2019 02:43:23 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: El servicio Intel(R) HD Graphics Control Panel Service se cerró con el siguiente error: 
Error no especificado


CodeIntegrity:
===================================

Date: 2019-03-03 02:05:14.151
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.123
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.092
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:05:14.064
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.681
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.653
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.625
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

Date: 2019-03-03 02:04:40.597
Description: 
Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume3\Unlocker\UnlockerDriver5.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-4170 CPU @ 3.70GHz
Percentage of memory in use: 45%
Total physical RAM: 12226.2 MB
Available physical RAM: 6671.87 MB
Total Virtual: 42690.55 MB
Available Virtual: 36133.16 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:195.21 GB) (Free:58.87 GB) NTFS
Drive d: (Disco local ) (Fixed) (Total:270.45 GB) (Free:176.95 GB) NTFS

\\?\Volume{31cf6644-ef86-11e5-8214-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 3B7E4153)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=270.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Hola:

Mientras reviso los reportes, falta nombre y ubicaciòn de la carpeta.

Confirma si la carpeta es:

  • C:\Users\user\Desktop\PROYECTO X

Salu2.

si es esa xD esa misma es :v pero con lo de 2 usuarios que reporta el usb fix pasa algo ?

Hola:

No no hay problemas.

Uno es el Usuario Administrador que en Seven viene desactivado por defecto y otro es tu Usuario >> Usuario.


Sigue estos pasos:

Desinstala con Revo Uninstaller en su Modo Avanzado:

  • Spybot

Manual de Revo Uninstaller.

Luego desinstala con su Herramienta especifica

  • SuperAntiespyware

Posteriormente:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad y copia y pega este contenido:


Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\RunOnce: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-10] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Policies\Explorer: [] 
GroupPolicy: Restriction ? <==== ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Toolbar: HKLM - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File
Toolbar: HKLM-x32 - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 catchme; \??\C:\ComboFix\catchme.sys 
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [X]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
Task: {5797A340-887B-4B28-9C3B-DA8A24969EC4} - System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA} => C:\Windows\system32\pcalua.exe -a E:\TL-WN951N\Setup.exe -d E:\TL-WN951N
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\D:\My pony descargas\GameFire.sys [X]
S3 X6va063; \??\C:\Windows\SysWOW64\Drivers\X6va063 [X]
2019-03-09 12:22 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 683491.crdownload
2019-03-09 12:21 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 958300.crdownload
2019-02-26 00:04 - 2019-02-26 00:04 - 018452833 _____ C:\Users\user\Downloads\Masturbandose.wmv
2018-12-15 16:04 - 000003072 _____ C:\Windows\System32\Tasks\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2}
2018-12-15 16:01 - 000003132 _____ C:\Windows\System32\Tasks\{17E24548-4AC6-4245-A880-18F6882C0440}
2017-08-22 10:38 - 000003068 _____ C:\Windows\System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA}
2019-02-15 10:55 - 2017-07-18 01:44 - 000003104 _____ C:\Windows\System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949}
2016-12-04 14:54 - 000003196 _____ C:\Windows\System32\Tasks\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5}
Task: {7270011E-7DC4-4438-8840-B682901E12DB} - System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949} => C:\Windows\system32\pcalua.exe -a D:\maplestory\appdata\Setup.exe -d D:\maplestory\appdata
AlternateDataStreams: C:\Users\user\AppData\Local\Temp:$DATA​ [16]
FirewallRules: [TCP Query User{813903E4-552D-44EF-89DF-663AAABC007E}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [UDP Query User{42A76B9B-2DE6-44CA-8CFF-72AE5ABE3CD8}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [TCP Query User{BC9DCB7B-397D-4359-AF72-39E88FEC7193}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [UDP Query User{7EA86A71-E1C4-4961-B1DA-133E4679C63D}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{26CA6441-1E8F-4016-9E15-A991400C70AB}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [UDP Query User{796C2938-F899-42E9-937C-428582435CC3}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [TCP Query User{737673CB-7E9C-450C-96C6-88CF5614C32F}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [UDP Query User{A10FF309-B23F-4164-86F1-D17EDD329EC4}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [TCP Query User{949421F9-9528-46EE-BE47-5B92944304D8}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [UDP Query User{434D95B1-AE68-423A-908B-62326B5BF388}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [TCP Query User{FF2CB679-D85B-4F81-8E48-AD336D6CF011}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [UDP Query User{BEAFF19B-3F33-4C0F-A73B-967866C1240E}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [TCP Query User{133BEC77-C2C5-4CCB-932E-296FDD17D038}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [UDP Query User{BA0F057C-F4CA-43B3-BE92-16EC69D1C0EF}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [TCP Query User{6F811AFD-7966-4948-9FA1-55A55707DF2C}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [UDP Query User{F4A99602-F2A9-47C7-8C8C-FC467920EA72}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [TCP Query User{57643A92-20B1-4C14-9BC9-49C722D17555}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [UDP Query User{C2E6B9F4-62D6-436C-BDDD-4BDD832DDF18}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [TCP Query User{B102AA6A-D753-42C2-8476-0BB1D4478EB4}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
FirewallRules: [UDP Query User{BD71E59C-8A10-48AC-80E6-F9B9DB3A9B9E}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
Unlock: C:\Users\user\Desktop\PROYECTO X C:\Users\user\Desktop\PROYECTO X 

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Nos comentas .

Salu2.

Fix result of Farbar Recovery Scan Tool (x64) Version: 09.03.2019 01
Ran by user (09-03-2019 23:48:21) Run:1
Running from C:\Users\user\Desktop
Loaded Profiles: user (Available Profiles: user & Invitado)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\RunOnce: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-10] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\...\Policies\Explorer: [] 
GroupPolicy: Restriction ? <==== ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Toolbar: HKLM - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File
Toolbar: HKLM-x32 - No Name - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} -  No File
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 catchme; \??\C:\ComboFix\catchme.sys 
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [X]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
Task: {5797A340-887B-4B28-9C3B-DA8A24969EC4} - System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA} => C:\Windows\system32\pcalua.exe -a E:\TL-WN951N\Setup.exe -d E:\TL-WN951N
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\D:\My pony descargas\GameFire.sys [X]
S3 X6va063; \??\C:\Windows\SysWOW64\Drivers\X6va063 [X]
2019-03-09 12:22 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 683491.crdownload
2019-03-09 12:21 - 2019-03-09 12:22 - 000907915 _____ C:\Users\user\Downloads\Sin confirmar 958300.crdownload
2019-02-26 00:04 - 2019-02-26 00:04 - 018452833 _____ C:\Users\user\Downloads\Masturbandose.wmv
2018-12-15 16:04 - 000003072 _____ C:\Windows\System32\Tasks\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2}
2018-12-15 16:01 - 000003132 _____ C:\Windows\System32\Tasks\{17E24548-4AC6-4245-A880-18F6882C0440}
2017-08-22 10:38 - 000003068 _____ C:\Windows\System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA}
2019-02-15 10:55 - 2017-07-18 01:44 - 000003104 _____ C:\Windows\System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949}
2016-12-04 14:54 - 000003196 _____ C:\Windows\System32\Tasks\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5}
Task: {7270011E-7DC4-4438-8840-B682901E12DB} - System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949} => C:\Windows\system32\pcalua.exe -a D:\maplestory\appdata\Setup.exe -d D:\maplestory\appdata
AlternateDataStreams: C:\Users\user\AppData\Local\Temp:$DATA? [16]
FirewallRules: [TCP Query User{813903E4-552D-44EF-89DF-663AAABC007E}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [UDP Query User{42A76B9B-2DE6-44CA-8CFF-72AE5ABE3CD8}F:\liteserver\setup\data\wolf2mplite.exe] => (Allow) F:\liteserver\setup\data\wolf2mplite.exe No File
FirewallRules: [TCP Query User{BC9DCB7B-397D-4359-AF72-39E88FEC7193}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [UDP Query User{7EA86A71-E1C4-4961-B1DA-133E4679C63D}C:\program files\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_151\bin\javaw.exe
FirewallRules: [TCP Query User{26CA6441-1E8F-4016-9E15-A991400C70AB}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [UDP Query User{796C2938-F899-42E9-937C-428582435CC3}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe] => (Allow) D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe No File
FirewallRules: [TCP Query User{737673CB-7E9C-450C-96C6-88CF5614C32F}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [UDP Query User{A10FF309-B23F-4164-86F1-D17EDD329EC4}D:\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\world of warcraft\utils\wowvoiceproxy.exe No File
FirewallRules: [TCP Query User{949421F9-9528-46EE-BE47-5B92944304D8}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [UDP Query User{434D95B1-AE68-423A-908B-62326B5BF388}D:\starcraft ii\versions\base67188\sc2.exe] => (Allow) D:\starcraft ii\versions\base67188\sc2.exe No File
FirewallRules: [TCP Query User{FF2CB679-D85B-4F81-8E48-AD336D6CF011}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [UDP Query User{BEAFF19B-3F33-4C0F-A73B-967866C1240E}D:\starcraft ii\versions\base67926\sc2.exe] => (Allow) D:\starcraft ii\versions\base67926\sc2.exe No File
FirewallRules: [TCP Query User{133BEC77-C2C5-4CCB-932E-296FDD17D038}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [UDP Query User{BA0F057C-F4CA-43B3-BE92-16EC69D1C0EF}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [TCP Query User{6F811AFD-7966-4948-9FA1-55A55707DF2C}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [UDP Query User{F4A99602-F2A9-47C7-8C8C-FC467920EA72}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe] => (Allow) D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe No File
FirewallRules: [TCP Query User{57643A92-20B1-4C14-9BC9-49C722D17555}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [UDP Query User{C2E6B9F4-62D6-436C-BDDD-4BDD832DDF18}D:\starcraft ii\versions\base69232\sc2.exe] => (Allow) D:\starcraft ii\versions\base69232\sc2.exe No File
FirewallRules: [TCP Query User{B102AA6A-D753-42C2-8476-0BB1D4478EB4}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
FirewallRules: [UDP Query User{BD71E59C-8A10-48AC-80E6-F9B9DB3A9B9E}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe No File
Unlock: C:\Users\user\Desktop\PROYECTO X C:\Users\user\Desktop\PROYECTO X 

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\" => not found
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Smart Cleaning" => removed successfully
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => removed successfully
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page" => removed successfully
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page" => removed successfully
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{4BAAC1B8-0800-42C9-8FA6-08B211F356B8}" => removed successfully
HKLM\Software\Classes\CLSID\{4BAAC1B8-0800-42C9-8FA6-08B211F356B8} => not found
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{4BAAC1B8-0800-42C9-8FA6-08B211F356B8}" => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{4BAAC1B8-0800-42C9-8FA6-08B211F356B8} => not found
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => removed successfully
HKLM\System\CurrentControlSet\Services\catchme => removed successfully
catchme => service removed successfully
HKLM\System\CurrentControlSet\Services\GGSAFERDriver => removed successfully
GGSAFERDriver => service removed successfully
HKLM\System\CurrentControlSet\Services\NLNdisMP => removed successfully
NLNdisMP => service removed successfully
HKLM\System\CurrentControlSet\Services\NLNdisPT => removed successfully
NLNdisPT => service removed successfully
HKLM\System\CurrentControlSet\Services\NTIOLib_1_0_C => removed successfully
NTIOLib_1_0_C => service removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5797A340-887B-4B28-9C3B-DA8A24969EC4}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5797A340-887B-4B28-9C3B-DA8A24969EC4}" => removed successfully
C:\Windows\System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA}" => removed successfully
HKLM\System\CurrentControlSet\Services\VGPU => removed successfully
VGPU => service removed successfully
HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => removed successfully
WinRing0_1_2_0 => service removed successfully
HKLM\System\CurrentControlSet\Services\X6va063 => removed successfully
X6va063 => service removed successfully
C:\Users\user\Downloads\Sin confirmar 683491.crdownload => moved successfully
C:\Users\user\Downloads\Sin confirmar 958300.crdownload => moved successfully
C:\Users\user\Downloads\Masturbandose.wmv => moved successfully
C:\Windows\System32\Tasks\{96E7149D-A174-4A0C-BA9E-74B8C9180FD2} => moved successfully
C:\Windows\System32\Tasks\{17E24548-4AC6-4245-A880-18F6882C0440} => moved successfully
"C:\Windows\System32\Tasks\{9CF9B835-5349-4EBC-8DEB-EB21F035A0BA}" => not found
C:\Windows\System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949} => moved successfully
C:\Windows\System32\Tasks\{2CD6C93C-36B7-484D-83FC-B93AEE2427D5} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7270011E-7DC4-4438-8840-B682901E12DB}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7270011E-7DC4-4438-8840-B682901E12DB}" => removed successfully
"C:\Windows\System32\Tasks\{C236FC9A-BEC4-498A-975D-251B6EEE6949}" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C236FC9A-BEC4-498A-975D-251B6EEE6949}" => removed successfully
C:\Users\user\AppData\Local\Temp => ":$DATA?" ADS could not remove.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{813903E4-552D-44EF-89DF-663AAABC007E}F:\liteserver\setup\data\wolf2mplite.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{42A76B9B-2DE6-44CA-8CFF-72AE5ABE3CD8}F:\liteserver\setup\data\wolf2mplite.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BC9DCB7B-397D-4359-AF72-39E88FEC7193}C:\program files\java\jre1.8.0_151\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7EA86A71-E1C4-4961-B1DA-133E4679C63D}C:\program files\java\jre1.8.0_151\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{26CA6441-1E8F-4016-9E15-A991400C70AB}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{796C2938-F899-42E9-937C-428582435CC3}D:\my pony descargas\flltshltr112-pgme\fallout 4\fallout4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{737673CB-7E9C-450C-96C6-88CF5614C32F}D:\world of warcraft\utils\wowvoiceproxy.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A10FF309-B23F-4164-86F1-D17EDD329EC4}D:\world of warcraft\utils\wowvoiceproxy.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{949421F9-9528-46EE-BE47-5B92944304D8}D:\starcraft ii\versions\base67188\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{434D95B1-AE68-423A-908B-62326B5BF388}D:\starcraft ii\versions\base67188\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FF2CB679-D85B-4F81-8E48-AD336D6CF011}D:\starcraft ii\versions\base67926\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BEAFF19B-3F33-4C0F-A73B-967866C1240E}D:\starcraft ii\versions\base67926\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{133BEC77-C2C5-4CCB-932E-296FDD17D038}C:\users\user\appdata\local\akamai\netsession_win.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BA0F057C-F4CA-43B3-BE92-16EC69D1C0EF}C:\users\user\appdata\local\akamai\netsession_win.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6F811AFD-7966-4948-9FA1-55A55707DF2C}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F4A99602-F2A9-47C7-8C8C-FC467920EA72}D:\dawn iii\warhammer 40000 dawn of war iii\relicdow3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{57643A92-20B1-4C14-9BC9-49C722D17555}D:\starcraft ii\versions\base69232\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C2E6B9F4-62D6-436C-BDDD-4BDD832DDF18}D:\starcraft ii\versions\base69232\sc2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B102AA6A-D753-42C2-8476-0BB1D4478EB4}C:\program files (x86)\mipony\mipony.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BD71E59C-8A10-48AC-80E6-F9B9DB3A9B9E}C:\program files (x86)\mipony\mipony.exe" => removed successfully
"C:\Users\user\Desktop\PROYECTO X C:\Users\user\Desktop\PROYECTO X" => not found

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= End of CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


Adaptador de Ethernet Conexi¢n de  rea local:

   Sufijo DNS espec¡fico para la conexi¢n. . : cpe.tdp.com
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.1.60
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.1.1

Adaptador de t£nel isatap.cpe.tdp.com:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de t£nel Reusable ISATAP Interface {3AA24D03-5CFE-4FF4-8B29-BCE98ACDE544}:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : cpe.tdp.com

========= End of CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

{EC42AF7C-EE10-4C3D-99FF-4A10E427048F} canceled.
Unable to cancel {949090A8-9253-498E-8307-EFF2344BB1B3}.
1 out of 2 jobs canceled.

========= End of CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= End of CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= End of CMD: =========


========= netsh int ipv4 reset =========

Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


========= netsh int ipv6 reset =========

Global se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-2082071340-3476837701-2702432445-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 26130828 B
Java, Flash, Steam htmlcache => 380536068 B
Windows/system/drivers => 17384220 B
Edge => 0 B
Chrome => 743334639 B
Firefox => 51504196 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 80701053 B
systemprofile32 => 66267 B
LocalService => 132244 B
NetworkService => 66228 B
user => 516286352 B
Invitado => 416187 B

RecycleBin => 51094038 B
EmptyTemp: => 1.7 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:49:30 ====

sigo si npoder borrar la carpeta :frowning:

Hola:

Aun esta en tu escritorio.:thinking:

Dame mas datos, cuando lo creaste? La encriptaste en algun momento? Intentaste entrar a Modo Seguro y borrarla desde alli?

Te permite ver las propiedades? Boton Derecho sobre ella >>> Propiedades >>> Pestaña Seguridad .

Toma una imagen pinchando en cada usuario que te aparezcan y la subes.

Salu2.

lo cree hace como 1 año y nunca lo encripte xD ya intente borrarla desde el modo seguro y nada :frowning: y la seguridad no aparece dice que no esta permitido , lo unico extraño es que segun esto yo comparti esta carpeta image but nunca la comparti y aun cuando veo los archivos compartidos en la red no esta y ademas de eso mi pc no comparte ni archivos ni nada con la red ;-; image

hola encontre una posible solucion ,el tipo parece tener el mismo error que yo sin embargo no se como aplicar la solucion te dejo el link https://social.technet.microsoft.com/Forums/es-ES/ddde78a7-0c66-4ca6-aa9a-5e67d651883d/no-puedo-borrar-una-carpeta?forum=windows7es