Cobertura wifi muy baja de repente

(continua FRST)

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

S3 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3153872 2020-03-13] (philandro Software GmbH -> philandro Software GmbH)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [679400 2018-04-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10626648 2020-04-10] (Microsoft Corporation -> Microsoft Corporation)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2017-11-13] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 esifsvc; C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1883104 2019-01-05] (Intel Corporation -> Intel Corporation)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2019-10-02] (FUTUREMARK INC -> Futuremark)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\AppHelperCap.exe [515344 2020-03-27] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\NetworkCap.exe [514320 2020-03-27] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [332656 2018-05-02] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_79c5c41204d03777\x64\SysInfoCap.exe [516880 2020-03-27] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe [429008 2019-10-31] (HP Inc. -> HP Inc.)
S3 iaStorAfsService; C:\WINDOWS\System32\iaStorAfsService.exe [2788368 2018-10-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 igccservice; C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe [36720 2020-03-09] (Intel(R) pGFX 2020 -> )
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\SocketHeciServer.exe [876304 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_e3f9b958faa255f1\lib\TPMProvisioningService.exe [806152 2019-08-30] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe [648080 2019-07-18] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-19] (Malwarebytes Inc -> Malwarebytes)
R2 RstMwService; C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_48720fcc117e5841\RstMwService.exe [1969168 2018-10-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [1000736 2019-10-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\RpcAgentSrv.exe [136712 2019-11-25] (SiSoftware SPC -> SiSoftware) [Archivo no firmado]
R2 SECOMNService; C:\WINDOWS\System32\SECOMN64.exe [161296 2019-07-31] (Sound Research Corporation -> Sound Research, Corp.)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-03-01] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [290816 2019-12-13] (Microsoft Windows -> Microsoft Corporation)
R2 SynaAPOService; C:\WINDOWS\System32\SynAudSrv.exe [595176 2019-05-20] (Conexant Systems LLC -> Synaptics Incorporated.)
R2 SynaAudioService; C:\WINDOWS\System32\CxAudioSvc.exe [83464 2019-05-20] (Conexant Systems LLC -> Conexant Systems LLC.)
R2 SynTPEnhService; C:\WINDOWS\System32\SynTPEnhService.exe [383240 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15476144 2019-11-04] (VMware, Inc. -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe [3294680 2020-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe [103168 2020-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18736 2018-05-17] (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation)
S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X]

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [88984 2017-04-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [108480 2018-09-07] (Alcorlink Corp. -> )
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [78832 2018-12-14] (Intel Corporation -> Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [75248 2018-12-14] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\WINDOWS\System32\drivers\esif_lf.sys [403440 2018-12-14] (Intel Corporation -> Intel Corporation)
R1 googledrivefs2935; C:\WINDOWS\System32\DRIVERS\googledrivefs2935.sys [126976 2020-01-13] (Google LLC -> Google, Inc.)
R1 googledrivefs2985; C:\WINDOWS\System32\DRIVERS\googledrivefs2985.sys [126296 2020-03-05] (Google LLC -> Google, Inc.)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [23960 2018-07-06] (HP Inc. -> HP Inc.)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr64.sys [37112 2015-06-17] (Hewlett-Packard Company -> Hewlett-Packard Company)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-04-18] (Martin Malik - REALiX -> REALiX(tm))
R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1092112 2018-10-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [73232 2018-10-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37104 2018-05-09] (Intel Corporation -> Intel Corporation)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-04-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MEIx64; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys [266128 2019-04-17] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 necbatt; C:\WINDOWS\System32\drivers\necbatt.sys [34880 2018-05-09] (NEC Personal Computers, Ltd. -> NEC Personal Computers, Ltd.)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1138120 2018-12-14] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\WINDOWS\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware Ltd -> SiSoftware)
S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [47656 2018-10-26] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [49416 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SynRMIHID; C:\WINDOWS\System32\drivers\SynRMIHID.sys [63016 2018-10-26] (Synaptics Incorporated -> Synaptics Incorporated)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [103224 2019-08-14] (VMware, Inc. -> VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [52576 2018-02-28] (VMware, Inc. -> VMware, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45960 2020-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [391392 2020-04-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-04-01] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Un mes (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-04-20 20:44 - 2020-04-20 20:46 - 000033713 _____ C:\Users\Pablo\Desktop\FRST.txt
2020-04-20 20:41 - 2020-04-20 20:41 - 000000607 _____ C:\Users\Pablo\Desktop\JRT.txt
2020-04-20 20:35 - 2020-04-20 20:35 - 000002938 _____ C:\Users\Pablo\Desktop\AdwCleaner.txt
2020-04-20 19:00 - 2020-04-20 20:45 - 000000000 ____D C:\FRST
2020-04-20 17:49 - 2020-04-20 17:49 - 000001812 _____ C:\Users\Pablo\Desktop\mbam_bien.txt
2020-04-19 20:39 - 2020-04-19 20:39 - 000000000 ____D C:\Users\Pablo\AppData\Local\mbam
2020-04-19 20:38 - 2020-04-19 20:38 - 000000000 ____D C:\Users\Pablo\AppData\Local\mbamtray
2020-04-19 20:38 - 2020-04-19 20:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2020-04-19 20:38 - 2020-04-19 20:37 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-04-19 20:38 - 2020-04-19 20:37 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2020-04-19 20:37 - 2020-04-19 20:37 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-04-19 20:37 - 2020-04-19 20:37 - 000000000 ____D C:\Program Files\Malwarebytes
2020-04-19 20:36 - 2020-04-19 20:37 - 000476704 _____ C:\Users\Pablo\Desktop\cc_20200419_203648.reg
2020-04-19 17:24 - 2020-04-19 17:24 - 001928352 _____ (Malwarebytes) C:\Users\Pablo\Desktop\MBSetup-0009996.0009996-consumer.exe
2020-04-19 17:23 - 2020-04-19 17:23 - 002281984 _____ (Farbar) C:\Users\Pablo\Desktop\FRST64.exe
2020-04-19 17:20 - 2020-04-19 17:20 - 008196784 _____ (Malwarebytes) C:\Users\Pablo\Desktop\adwcleaner_8.0.4.exe
2020-04-19 17:19 - 2020-04-19 17:19 - 001790024 _____ (Malwarebytes) C:\Users\Pablo\Desktop\JRT.exe
2020-04-18 15:54 - 2020-04-18 15:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2020-04-18 15:42 - 2020-04-18 15:42 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\instinfo
2020-04-18 15:41 - 2020-04-18 15:48 - 000000000 ____D C:\ProgramData\IObit
2020-04-18 15:41 - 2020-04-18 15:42 - 000000000 ____D C:\Users\Pablo\AppData\LocalLow\IObit
2020-04-18 15:41 - 2020-04-18 15:41 - 000027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
2020-04-18 15:41 - 2020-04-18 15:41 - 000000000 ____D C:\ProgramData\{E0224FF9-7AE3-4F9E-991A-2F004F7E3952}
2020-04-17 10:49 - 2020-04-17 10:49 - 000063060 _____ C:\Users\Pablo\Desktop\Notificacion_1587113342684.pdf
2020-04-17 08:37 - 2020-04-17 08:37 - 000000000 ____D C:\Users\Pablo\AppData\LocalLow\Intel
2020-04-17 08:36 - 2020-03-09 06:27 - 025076544 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 021460856 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 020356728 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 011920192 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 003219792 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_h265ve_64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 003212944 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_vp9ve_64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 003199344 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_h264ve_64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 003013440 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_mjpgvd_64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002996080 _____ (Intel Corporation) C:\WINDOWS\system32\mfx_mft_encrypt_64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002606216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_h265ve_32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002601512 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_vp9ve_32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002592424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_h264ve_32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002438976 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_mjpgvd_32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 002435368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfx_mft_encrypt_32.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 001785712 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-04-17 08:36 - 2020-03-09 06:27 - 001785712 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-04-17 08:36 - 2020-03-09 06:27 - 001376112 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-04-17 08:36 - 2020-03-09 06:27 - 001376112 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-04-17 08:36 - 2020-03-09 06:27 - 001079616 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 001079616 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000939328 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000939328 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000218728 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000186216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000126272 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-04-17 08:36 - 2020-03-09 06:27 - 000111424 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-04-17 08:36 - 2020-03-09 03:08 - 000071888 _____ C:\WINDOWS\SysWOW64\vp9e_32.vp
2020-04-17 08:36 - 2020-03-09 03:08 - 000066153 _____ C:\WINDOWS\SysWOW64\mj_32.vp
2020-04-17 08:36 - 2020-03-09 03:08 - 000013996 _____ C:\WINDOWS\system32\vp9e_64.vp
2020-04-17 08:36 - 2020-03-09 03:08 - 000013309 _____ C:\WINDOWS\system32\mj_64.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000072305 _____ C:\WINDOWS\SysWOW64\h265e_32.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000070721 _____ C:\WINDOWS\SysWOW64\he_32.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000057143 _____ C:\WINDOWS\SysWOW64\dev_32.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000056359 _____ C:\WINDOWS\system32\dev_64.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000014145 _____ C:\WINDOWS\system32\h265e_64.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000013589 _____ C:\WINDOWS\system32\he_64.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000001125 _____ C:\WINDOWS\SysWOW64\cpa_32.vp
2020-04-17 08:35 - 2020-03-09 03:08 - 000001125 _____ C:\WINDOWS\system32\cpa_64.vp
2020-04-17 08:29 - 2020-04-17 08:29 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 022636544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 019812864 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 018027520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 007756800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 005910016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 004611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 004129624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 003512320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 002951832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001870408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001545216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 001310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001013000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2020-04-17 08:29 - 2020-04-17 08:29 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2020-04-17 08:29 - 2020-04-17 08:29 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrad.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-04-17 08:29 - 2020-04-17 08:29 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasacct.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumapi.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iaspolcy.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-04-17 08:29 - 2020-04-17 08:29 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ias.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 017790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 014818816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 007849216 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 006523048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 004563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003802624 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003753472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003587384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 003547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 003109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 002800128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 002767928 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 002717184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 002131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 002114560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 002086656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001960448 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-04-17 08:28 - 2020-04-17 08:28 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001726264 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001719808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001665216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001656904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001646048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001612800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001603584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001512832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 001497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001427456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001397576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 001378528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 001263856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 001261808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001243648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001136128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001077064 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 001055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000915192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000811320 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000775696 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000759272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000684560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000673704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000673464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000618296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000538160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000515600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000513576 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-04-17 08:28 - 2020-04-17 08:28 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000339304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000277864 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000268008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000259776 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000147696 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000127280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000123952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000066624 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000050544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2020-04-17 08:28 - 2020-04-17 08:28 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wksprtPS.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-04-17 08:28 - 2020-04-17 08:28 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-04-17 08:28 - 2020-04-17 08:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-04-17 08:27 - 2020-04-17 08:28 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 002126144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000437560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000297272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-04-17 08:27 - 2020-04-17 08:27 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000151352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-04-17 08:27 - 2020-04-17 08:27 - 000059192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2020-04-17 08:27 - 2020-04-17 08:27 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2020-04-17 08:13 - 2020-03-17 05:57 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-04-17 08:13 - 2020-03-17 05:56 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-04-16 20:55 - 2020-04-16 20:55 - 000268488 _____ C:\Users\Pablo\Desktop\registry.txt
2020-04-16 20:49 - 2020-04-20 09:25 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-04-16 20:49 - 2020-04-16 20:49 - 000002888 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-04-16 20:49 - 2020-04-16 20:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-04-16 20:49 - 2020-04-16 20:49 - 000000000 ____D C:\Program Files\CCleaner
2020-04-16 11:00 - 2020-04-16 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2020-04-15 12:50 - 2020-04-15 12:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2020-04-15 12:50 - 2020-04-15 12:50 - 000000000 ____D C:\Program Files\VS Revo Group
2020-04-15 11:20 - 2014-01-31 14:44 - 000000000 ____D C:\Users\Pablo\Desktop\BooleDeusto_Jan2014_english
2020-04-15 09:39 - 2020-04-15 09:39 - 000180425 _____ C:\Users\Pablo\Desktop\Resumen encuesta de opinión.pdf
2020-04-13 13:42 - 2020-04-13 13:42 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome
2020-04-11 14:14 - 2020-04-11 14:14 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK
2020-04-08 19:45 - 2020-04-08 19:45 - 000003416 _____ C:\WINDOWS\system32\Tasks\ESET Notifier Uninstall
2020-04-06 19:21 - 2020-04-20 20:29 - 000000000 ____D C:\AdwCleaner
2020-04-05 12:19 - 2020-04-08 14:03 - 000000015 _____ C:\Users\Pablo\Desktop\preguntas OGE foro.txt
2020-04-04 20:31 - 2020-04-04 20:31 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\GifCam
2020-04-04 20:30 - 2020-04-04 20:30 - 000000000 ____D C:\Users\Pablo\Desktop\gifcam-6-0
2020-04-03 12:54 - 2020-04-03 12:54 - 000045733 _____ C:\Users\Pablo\Desktop\pago clases.pdf
2020-04-01 19:52 - 2020-04-01 19:52 - 000000000 ____D C:\Users\Pablo\AppData\Local\ESET
2020-03-29 14:12 - 2020-03-29 14:12 - 000541739 _____ C:\Users\Pablo\Desktop\Sesion 08 - (Alerta Sanitaria) Auto-evaluacion HERMITE.nb
2020-03-27 21:20 - 2020-03-27 21:20 - 001742469 _____ C:\Users\Pablo\Desktop\ALGEBRA_TODOSLOS_EXAMENES.pdf
2020-03-24 14:03 - 2020-03-24 14:03 - 000160429 _____ C:\Users\Pablo\Desktop\Preguntas Tipo Test del Tema 1.pdf
2020-03-22 16:58 - 2020-03-22 16:58 - 005111998 _____ C:\Users\Pablo\Desktop\CPlusPlusNotesForProfessionals.pdf

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-04-20 20:39 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-20 20:33 - 2019-03-04 05:30 - 000000000 __SHD C:\Users\Pablo\IntelGraphicsProfiles
2020-04-20 20:32 - 2019-11-23 16:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-20 20:32 - 2019-11-20 16:30 - 000000000 ____D C:\ProgramData\VMware
2020-04-20 20:32 - 2019-03-04 04:13 - 000000000 ____D C:\Intel
2020-04-20 20:31 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-04-20 20:29 - 2018-11-27 07:11 - 000000000 ____D C:\ProgramData\HP
2020-04-20 20:29 - 2018-11-27 07:10 - 000000000 ____D C:\Program Files (x86)\HP
2020-04-20 19:51 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-04-20 18:26 - 2020-03-13 17:45 - 000000000 ____D C:\Users\Pablo\AppData\Local\ElevatedDiagnostics
2020-04-20 17:40 - 2019-11-27 18:57 - 000000000 ____D C:\Users\Pablo\AppData\Local\HP_Inc
2020-04-20 17:36 - 2019-11-23 16:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-20 13:07 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-04-20 13:06 - 2019-11-19 13:41 - 000000000 ____D C:\Program Files\Microsoft Office
2020-04-20 09:32 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-20 09:32 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-04-20 09:29 - 2019-11-23 16:13 - 000524712 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-04-19 20:38 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-04-19 20:33 - 2019-11-23 15:19 - 000000000 ___DC C:\WINDOWS\Panther
2020-04-19 20:31 - 2020-02-11 19:53 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\TeamViewer
2020-04-19 20:31 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-04-19 15:42 - 2020-01-25 17:42 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2020-04-19 13:15 - 2019-11-20 16:55 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\VMware
2020-04-19 13:14 - 2019-11-20 16:55 - 000000000 ____D C:\Users\Pablo\AppData\Local\VMware
2020-04-19 12:23 - 2019-11-19 19:36 - 000000000 ____D C:\Users\Pablo\Desktop\ISOs
2020-04-19 11:30 - 2019-12-11 22:55 - 017895424 _____ C:\Users\Pablo\AppData\Roaming\Sandra.mdb
2020-04-19 10:56 - 2019-11-19 19:25 - 000000000 ___RD C:\Users\Pablo\Desktop\capturas
2020-04-18 16:16 - 2019-11-23 16:27 - 001987012 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-04-18 16:16 - 2019-03-19 13:59 - 000866152 _____ C:\WINDOWS\system32\perfh00A.dat
2020-04-18 16:16 - 2019-03-19 13:59 - 000192836 _____ C:\WINDOWS\system32\perfc00A.dat
2020-04-18 15:52 - 2019-11-23 14:46 - 000000000 ____D C:\Users\Pablo\AppData\Local\HP
2020-04-18 15:52 - 2018-11-27 07:09 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2020-04-18 15:51 - 2019-03-04 05:32 - 000000000 ____D C:\Users\Pablo\AppData\Local\Hewlett-Packard
2020-04-18 15:51 - 2019-03-04 05:30 - 000000000 ____D C:\Users\Pablo\AppData\Local\Packages
2020-04-18 15:50 - 2019-11-18 19:02 - 000000000 ____D C:\swsetup
2020-04-18 15:50 - 2018-11-27 07:09 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2020-04-18 15:45 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-04-17 20:51 - 2020-03-20 20:30 - 000000000 ____D C:\Users\Pablo\AppData\Roaming\discord
2020-04-17 12:10 - 2019-03-04 04:13 - 000000000 ____D C:\ProgramData\Intel
2020-04-17 12:07 - 2019-11-23 15:59 - 000000000 ____D C:\WINDOWS\HoloShell
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-04-17 12:07 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-04-17 12:05 - 2019-11-18 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

(continua FRST)

2020-04-17 12:05 - 2019-11-18 19:35 - 000000000 ____D C:\Program Files\Java
2020-04-17 08:34 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-04-16 20:50 - 2020-02-13 22:21 - 000000000 ____D C:\temp
2020-04-16 11:01 - 2019-11-19 16:02 - 000000000 ____D C:\ProgramData\Foxit Software
2020-04-16 08:25 - 2019-11-18 19:04 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-14 21:11 - 2020-03-17 19:17 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForPablo.job
2020-04-14 17:49 - 2020-03-17 19:17 - 000003256 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForPablo
2020-04-09 20:00 - 2020-03-19 21:55 - 000000000 ____D C:\Users\Pablo\.atom
2020-04-09 20:00 - 2020-03-19 21:54 - 000000000 ____D C:\Users\Pablo\AppData\Local\atom
2020-04-08 19:39 - 2019-11-19 17:00 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-04-02 20:04 - 2019-11-19 22:33 - 000000000 ____D C:\Program Files\WinRAR
2020-04-01 19:31 - 2018-10-11 07:56 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-04-01 19:20 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\ELAM
2020-03-27 14:24 - 2020-03-15 15:07 - 000000000 ____D C:\ProgramData\Wondershare Filmora
2020-03-26 12:45 - 2019-12-18 21:54 - 000000578 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics

==================== Archivos en la raíz de algunos directorios ========

2019-12-11 22:55 - 2020-04-19 11:30 - 017895424 _____ () C:\Users\Pablo\AppData\Roaming\Sandra.mdb
2020-01-21 19:44 - 2020-01-21 19:44 - 000000001 _____ () C:\Users\Pablo\AppData\Local\llftool.4.40.agreement

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================

Addition

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 19-04-2020
Ejecutado por Pablo (20-04-2020 20:47:10)
Ejecutado desde C:\Users\Pablo\Desktop
Windows 10 Home Versión 1909 18363.778 (X64) (2019-11-23 14:33:38)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-4151126174-2042055496-4284500140-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4151126174-2042055496-4284500140-503 - Limited - Disabled)
Invitado (S-1-5-21-4151126174-2042055496-4284500140-501 - Limited - Disabled)
Pablo (S-1-5-21-4151126174-2042055496-4284500140-1001 - Administrator - Enabled) => C:\Users\Pablo
WDAGUtilityAccount (S-1-5-21-4151126174-2042055496-4284500140-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antivirus Free Antimalware (Disabled - Up to date) {51405D0C-825B-964D-00BD-77E435F203F3}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.0.501 - ABBYY Production LLC)
Adobe Digital Editions 4.5 (HKLM-x32\...\Adobe Digital Editions 4.5) (Version: 4.5.10 - Adobe Systems Incorporated)
AnyDesk (HKLM-x32\...\AnyDesk) (Version: ad 5.4.2 - philandro Software GmbH)
Ashampoo Driver Updater (HKLM\...\{265D0F08-8140-4C87-A47E-F6BDB7C48216}_is1) (Version: 1.2.1 - Ashampoo GmbH & Co. KG)
Atom (HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\atom) (Version: 1.45.0 - GitHub Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
CodeBlocks (HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\CodeBlocks) (Version: 17.12 - The Code::Blocks Team)
Codex version 2.1.1 (HKLM-x32\...\{CB4C7D26-CE2E-4AF7-AAD0-853606352084}_is1) (Version: 2.1.1 - James Scholes)
CPUID HWMonitor 1.41 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.41 - CPUID, Inc.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Discord (HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
doxygen 1.8.17 (HKLM\...\doxygen_is1) (Version: 1.8.17 - Dimitri van Heesch)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version:  - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{FD036A57-F81D-4865-AAF0-811558EA76AE}) (Version: 4.5.1 - Seiko Epson Corporation)
EPSON XP-352 355 Series Printer Uninstall (HKLM\...\EPSON XP-352 355 Series) (Version:  - Seiko Epson Corporation)
EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.7.2.29539 - Foxit Software Inc.)
Futuremark SystemInfo (HKLM-x32\...\{6F4F465A-8166-4BE0-9DA6-57B9ECE184EB}) (Version: 5.22.743.0 - Futuremark)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 81.0.4044.113 - Google LLC)
Google Drive File Stream (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 37.0.8.0 - Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HP Deskjet 2540 series Software básico del dispositivo (HKLM\...\{2FE8E982-BB5C-4660-81AF-B9DD389A5F58}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.0 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{D13AEB56-7A17-43F1-9839-A30B6C50CC56}) (Version: 12.9.18.3 - HP Inc.)
Icecream Screen Recorder versión 5.99 (HKLM-x32\...\{7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1) (Version: 5.99 - Icecream Apps)
Intel Extreme Tuning Utility (HKLM-x32\...\{1d91bf86-43a0-4b7a-8fdf-76c3bfb5a36f}) (Version: 6.4.1.23 - Intel Corporation)
Intel Extreme Tuning Utility (HKLM-x32\...\{FA506D5A-CCF5-4D4D-A218-FFB31F36EACF}) (Version: 6.4.1.23 - Intel Corporation) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.7.0.1009 - Intel Corporation)
Java 8 Update 251 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Java(TM) SE Development Kit 11.0.6 (64-bit) (HKLM\...\{FB40F6A5-6A0A-5685-8579-2605295B7BFD}) (Version: 11.0.6.0 - Oracle Corporation)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Manuales de EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.56.1.0 - Seiko Epson Corporation)
Microsoft Office Profesional Plus 2019 - es-es (HKLM\...\ProPlus2019Retail - es-es) (Version: 16.0.12624.20466 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
MiniTool Partition Wizard Free 11 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Software Limited)
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12624.20442 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12624.20466 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.12624.20442 - Microsoft Corporation) Hidden
PowerToys (HKLM\...\{43588760-2C63-4E9A-B751-88330C677FE9}) (Version: 0.14.1 - Microsoft)
R for Windows 3.6.2 (HKLM\...\R for Windows 3.6.2_is1) (Version: 3.6.2 - R Core Team)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.88 - REALTEK Semiconductor Corp.)
Revo Uninstaller 2.1.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.1 - VS Revo Group, Ltd.)
SecureW2 Enterprise Client 3.5.17 (HKLM-x32\...\SecureW2 Enterprise Client) (Version:  - )
SiSoftware Sandra Lite 2020 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2596}_is1) (Version: 30.24.2020.1 - SiSoftware)
Skype versión 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.)
Software para dispositivos de chipset Intel® (HKLM-x32\...\{eb0d4a41-3065-42b0-a868-c60d42d3ea98}) (Version: 10.1.17695.8086 - Intel(R) Corporation) Hidden
SyncFolders versión 3.4.527 (HKLM-x32\...\{0B3B4477-CBE0-4131-95D9-E4DE0AC1055F}_is1) (Version: 3.4.527 - G.J. Weerheim)
Transmission 2.94 (d8e60ee44f) (x64) (HKLM\...\{F822870C-AD55-47D1-A705-21661A02386B}) (Version: 2.94.0 - Transmission Project)
VMware Workstation (HKLM\...\{C975449F-C205-4CBF-9911-680F2E5F810B}) (Version: 15.5.1 - VMware, Inc.)
Wargaming.net Game Center (HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\Wargaming.net Game Center) (Version: 19.8.0.7920 - Wargaming.net)
WebM Media Foundation Components (HKLM-x32\...\webmmf) (Version: 1.0.1.2 - WebM Project)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Wolfram Mathematica 12 (M-WIN-L 12.0.0 6206958) (HKLM\...\M-WIN-L 12.0.0 6206958_is1) (Version: 12.0.0 - Wolfram Research, Inc.)
WolframScript (A-WIN32-WolframScript 12.0.0 2019040701) (HKLM-x32\...\{460ACB2E-59A1-11E9-848B-0CC47AC03162}) (Version: 12.0.89 - Wolfram Research, Inc.)
Wondershare Filmora9(Build 9.3.7) (HKLM\...\Wondershare Filmora9_is1) (Version:  - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
World_of_Warships_EU (HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\WOWS.EU.PRODUCTION) (Version:  - Wargaming.net)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

Packages:
=========
Ajuste del suelo -> C:\Windows\SystemApps\RoomAdjustment_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
Best of Wallpapers 2019 Exclusive -> C:\Program Files\WindowsApps\Microsoft.BestofWallpapers2019Exclusive_2.0.0.0_neutral__8wekyb3d8bbwe [2020-03-14] (Microsoft Corporation)
Centro de comando de gráficos Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2727.0_x64__8j3eq9eme6ctt [2020-03-14] (INTEL CORP) [Startup Task]
Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2020-03-14] (Microsoft Corporation)
Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-14] (Microsoft Corporation)
Connect -> C:\Windows\SystemApps\Microsoft.Windows.DevicesFlowHost_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
Descubrir la realidad mixta -> C:\Windows\SystemApps\MixedRealityLearning_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_1.7.197.0_x64__dt26b99r8h8gj [2020-01-20] (Realtek Semiconductor Corp)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.38.0_x64__v10z8vjag6ke6 [2019-11-22] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.6.598.0_x64__v10z8vjag6ke6 [2020-04-19] (HP Inc.)
HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6 [2020-02-04] (HP Inc.)
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x64__8wekyb3d8bbwe [2019-11-19] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x86__8wekyb3d8bbwe [2019-11-19] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-11-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-11-22] (Microsoft Corporation) [MS Ad]
Mini Radio Player -> C:\Program Files\WindowsApps\28287mfYSoftware.MiniRadioPlayer_5.8.12.0_x64__wvfna79ywx00a [2020-04-13] (mfY Software) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
Novedades para ti -> C:\Windows\SystemApps\WhatsNew_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
Passthrough -> C:\Windows\SystemApps\passthrough_cw5n1h2txyewy [2020-04-17] (Microsoft Corporation)
QuickLook -> C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.7.0_neutral__egxr34yet59cg [2020-04-08] (Paddy Xu) [Startup Task]
Sign In -> C:\Windows\SystemApps\WebAuthBridgeInternet_cw5n1h2txyewy [2019-11-23] (ms-resource:PublisherDisplayName)
Sign In -> C:\Windows\SystemApps\WebAuthBridgeInternetSso_cw5n1h2txyewy [2019-11-23] (ms-resource:PublisherDisplayName)
Sign In -> C:\Windows\SystemApps\WebAuthBridgeIntranetSso_cw5n1h2txyewy [2019-11-23] (ms-resource:PublisherDisplayName)
Synaptics TouchPad -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPConsumerDApp_19005.35054.0.0_x64__807d65c4rvak2 [2020-03-14] (Synaptics Incorporated)
Windows Terminal -> C:\Program Files\WindowsApps\Microsoft.WindowsTerminal_0.10.781.0_x64__8wekyb3d8bbwe [2020-03-23] (Microsoft Corporation)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-4151126174-2042055496-4284500140-1001_Classes\CLSID\{6F534954-E2B3-D07F-CA97-348B43BECFAC}\InprocServer32 -> C:\WINDOWS\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [    GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [    GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> Ningún archivo
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => C:\Program Files (x86)\ABBYY FineReader 12\FRIntegration.x64.dll [2014-01-30] (ABBYY PRODUCTION LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\ConvertToPDFShellExtension_x64.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2019-11-04] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers2: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2019-11-04] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-19] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Program Files\PowerToys\modules\PowerRenameExt.dll [2019-12-05] (Microsoft Corporation) [Archivo no firmado]
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> Ningún archivo
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> Ningún archivo
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Ningún archivo
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\37.0.8.0\drivefsext.dll [2020-03-05] (Google LLC -> Google, Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Ningún archivo
ContextMenuHandlers6: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => C:\Program Files (x86)\ABBYY FineReader 12\FRIntegration.x64.dll [2014-01-30] (ABBYY PRODUCTION LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\ConvertToPDFShellExtension_x64.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-19] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Ningún archivo
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

ShortcutWithArgument: C:\Users\Pablo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos cargados (Lista blanca) =============

2016-09-14 15:31 - 2016-09-14 15:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [Archivo no firmado] C:\WINDOWS\System32\enppmon.dll

==================== Alternate Data Streams (Lista blanca) ========

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2018-09-15 09:31 - 2020-03-15 15:07 - 000000858 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 platform.wondershare.com

2019-12-18 21:54 - 2020-03-26 12:45 - 000000578 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
92.168.137.77 pablo-PC.mshome.net # 2020 2 5 14 12 21 6 647

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Wolfram Research\WolframScript\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files\doxygen\bin
HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pablo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 80.58.61.254 - 80.58.61.250
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Block)
Firewall de Windows está habilitado.

Network Binding:
=============
Ethernet: VMware Bridge Protocol -> vmware_bridge (enabled) 
VMware Network Adapter VMnet8: VMware Bridge Protocol -> vmware_bridge (disabled) 
Wi-Fi: VMware Bridge Protocol -> vmware_bridge (enabled) 
VMware Network Adapter VMnet1: VMware Bridge Protocol -> vmware_bridge (disabled) 

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk"
HKLM\...\StartupApproved\Run: => "MTPW"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKLM\...\StartupApproved\Run32: => "Bonus.SSR.FR12"
HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000000"
HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

(Continua Addition)

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{E22D9C19-1391-4D41-B6F5-34C6F7758C66}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{85F5EB70-3A91-4597-A577-B7233A6E136D}] => (Allow) LPort=5357
FirewallRules: [{CC630447-AAF6-4A97-A754-DD4526828BEE}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{AA58978A-E772-49CB-8A1B-07CFB42E2078}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> )
FirewallRules: [{AA2BC921-E765-4740-B75B-A0CE1223DC33}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> )
FirewallRules: [{0D61B498-684D-4D3C-A464-77D8CA564FFC}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{0C5494EA-D671-443C-B3E0-D09AB47C836F}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{99CBA7B9-5A09-4C32-9581-2E3F2FCDE94E}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{43CBD17C-5EA5-4460-AF06-64F448715040}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\SystemFiles\Components\WSMCore\bin\WSMKernelX.exe (Wolfram Research, Inc. -> )
FirewallRules: [{0CFD6021-FA07-4645-A273-338F5BFA6CFF}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{D527C560-1766-4829-A1EE-507492D8CC98}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\SystemFiles\Components\WSMCore\bin\SessionManager.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{A12A4B17-EE95-40F9-907A-7BA861C7F5D1}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{C72EBD5B-C6A3-4F7F-9DC2-4C6958AB9618}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\math.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{722A1B5D-DFCE-4AAE-83D7-F12F764919AE}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{F7F92FCE-9BD3-4C95-B058-9A8ECAC29AE6}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\MathKernel.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{A4DDC6C9-BC48-4089-B5EA-F6EB8905C7C4}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{62ECE8F7-7249-45FB-9378-FD38611B7596}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\12.0\Mathematica.exe (Wolfram Research, Inc. -> Wolfram Research, Inc.)
FirewallRules: [{5E8111C2-6A45-4D3E-BC2C-275527B9B710}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe Ningún archivo
FirewallRules: [{D86AE60B-B4CB-4C17-AFE2-EA50BC3244D6}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe Ningún archivo
FirewallRules: [TCP Query User{F9706D1D-461A-454A-8802-62D0B6FBD6D5}C:\program files\transmission\transmission-qt.exe] => (Block) C:\program files\transmission\transmission-qt.exe (Mike Gelfand -> Transmission Project)
FirewallRules: [UDP Query User{95C732B6-DFEA-49C2-B926-C9F41C18DFE0}C:\program files\transmission\transmission-qt.exe] => (Block) C:\program files\transmission\transmission-qt.exe (Mike Gelfand -> Transmission Project)
FirewallRules: [{67D56B30-326C-4973-B64F-53688D0DD16C}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\RpcAgentSrv.exe (SiSoftware SPC -> SiSoftware) [Archivo no firmado]
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe Ningún archivo
FirewallRules: [TCP Query User{4B931DC1-66AE-47E2-8559-67BE466531E9}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{8590CB32-58E0-41A7-A3E4-F9E90C21F22F}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{B29D2F93-A334-4342-BA05-A037481999D3}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8E025F8A-EF14-43D3-9F01-496742764EB9}] => (Allow) LPort=2869
FirewallRules: [{41B0AB79-83A4-45E4-B691-D5FA2E618D4A}] => (Allow) LPort=1900
FirewallRules: [{16F5AC2C-1E86-4B5F-9CBE-4C1A5C2119F2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7355236C-AAFB-4823-B058-0E32E4E08BC5}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BAEE48D4-6FE9-4270-8AB3-9C8BDC2ECCC9}] => (Allow) %systemroot%\system32\alg.exe Ningún archivo
FirewallRules: [{CDBEB7CF-DB13-45B0-8326-40390F2CD0A4}] => (Allow) %systemroot%\system32\alg.exe Ningún archivo
FirewallRules: [{A9676E30-5B2C-430D-90A7-B2A310453CEA}] => (Allow) %systemroot%\system32\alg.exe Ningún archivo
FirewallRules: [{5CE4C8D2-7C82-4D54-B4E6-157A069CD69B}] => (Allow) %systemroot%\system32\alg.exe Ningún archivo
FirewallRules: [{D49820C7-0A6A-45F5-916B-C5AD4547362E}] => (Allow) %systemroot%\system32\alg.exe Ningún archivo
FirewallRules: [{E5BF8C95-0759-4F36-9034-4C38805E5F19}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{7115538C-3DDA-4DE0-9834-011D59F3FC79}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{94FABA14-DF95-4D9C-9FDA-0FF4A4FB5353}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{05C95DD7-2254-4D75-881E-DFC3EE7694FC}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{CCA9EAFD-81E8-497A-97AC-0F53AD3366B3}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{FF894793-3D14-4D5D-88C6-C7F57C770593}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
FirewallRules: [{1FD05145-064F-45A3-9212-62FD24A1A372}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{02744CA8-65C4-4346-8E61-46591D438FEE}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\WNt600x64\RpcSandraSrv.exe (SiSoftware SPC -> SiSoftware) [Archivo no firmado]

==================== Puntos de Restauración =========================

19-04-2020 20:34:06 CCleaner
20-04-2020 20:28:51 AdwCleaner_BeforeCleaning_20/04/2020_20:28:50
20-04-2020 20:38:41 JRT Pre-Junkware Removal

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (04/20/2020 08:46:40 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2908,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/20/2020 08:31:43 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: NT AUTHORITY)
Description: Se denegó el acceso a los datos de rendimiento al usuario "SYSTEM" (valor de GetUserName() para el subproceso en ejecución) porque se intentó acceder desde el módulo "C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe" (valor de GetModuleFileName() para el elemento binario que emitió la consulta).

Error: (04/20/2020 08:31:25 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina CoCreateInstance. HR = 0x8007045b, Se está cerrando el sistema.
.

Error: (04/20/2020 08:31:25 PM) (Source: VSS) (EventID: 13) (User: )
Description: Información del Servicio de instantáneas de volumen: el servidor COM con CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} y el nombre CEventSystem no puede iniciarse. [0x8007045b, Se está cerrando el sistema.
]

Error: (04/20/2020 07:58:06 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2616,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/20/2020 07:14:20 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1540,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/20/2020 06:17:40 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2628,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (04/20/2020 05:56:36 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11008,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


Errores del sistema:
=============
Error: (04/20/2020 08:41:41 PM) (Source: googledrivefs2935) (EventID: 2) (User: )
Description: The driver version of the disk does not match.

Error: (04/20/2020 08:39:47 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Realtek Audio Universal Service terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 0 milisegundos: Reiniciar el servicio.

Error: (04/20/2020 08:35:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio HP Comm Recovery no pudo iniciarse debido al siguiente error: 
El sistema no puede encontrar el archivo especificado.

Error: (04/20/2020 08:35:27 PM) (Source: googledrivefs2935) (EventID: 2) (User: )
Description: The driver version of the disk does not match.

Error: (04/20/2020 08:31:29 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: El módulo de extensibilidad de WLAN se detuvo inesperadamente.

Ruta de acceso del módulo: C:\WINDOWS\system32\Rtlihvs.dll

Error: (04/20/2020 08:31:29 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: El módulo de extensibilidad de WLAN se detuvo inesperadamente.

Ruta de acceso del módulo: C:\WINDOWS\system32\Rtlihvs.dll

Error: (04/20/2020 08:31:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio VMware Workstation Server terminó inesperadamente. Esto se ha repetido 2 veces. Se realizará la siguiente acción correctora en 60000 milisegundos: Reiniciar el servicio.

Error: (04/20/2020 08:31:24 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: El módulo de extensibilidad de WLAN se detuvo inesperadamente.

Ruta de acceso del módulo: C:\WINDOWS\system32\Rtlihvs.dll


Windows Defender:
===================================
Date: 2020-04-18 13:20:24.834
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {C32463F8-E9CC-45FA-90F8-2D511D0CB80B}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-04-18 12:19:58.205
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {70CCED95-94A0-4995-A0DE-A8DE5C67AEF4}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-04-14 11:38:14.437
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {18905A74-CE24-4100-AD98-376A7CF9431A}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-04-14 11:18:40.858
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {AFF037B6-CE19-494D-B355-BBD1733148C6}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-04-14 10:40:40.593
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {020FA0C7-B504-41E3-9283-A27C9BF84772}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-04-19 15:42:21.011
Description: 
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores 
Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.

Date: 2020-04-18 21:29:50.584
Description: 
La característica Protección en tiempo real de Antivirus de Windows Defender encontró un error:
Característica: Durante el acceso
Código de error: 0x8007043c
Descripción del error: El servicio no puede iniciarse en modo a prueba de errores 
Motivo: La inteligencia de seguridad antimalware dejó de funcionar por motivos desconocidos. En algunos casos, reiniciar el servicio puede que resuelva el problema.

CodeIntegrity:
===================================

Date: 2020-04-19 20:34:05.790
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Drive File Stream\37.0.8.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2020-04-15 08:30:56.096
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Drive File Stream\37.0.8.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 21:00:58.779
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Drive File Stream\37.0.8.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2020-04-08 19:38:53.631
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-08 19:38:51.616
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-08 19:38:41.337
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-08 10:38:33.240
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-04-08 10:38:33.237
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Información de la memoria =========================== 

BIOS: Insyde F.22 08/28/2019
Placa base: HP 8532
Procesador: Intel(R) Core(TM) i5-8265U CPU @ 1.60GHz
Porcentaje de memoria en uso: 54%
RAM física total: 8078.3 MB
RAM física disponible: 3712.73 MB
Virtual total: 9358.3 MB
Virtual disponible: 5074.27 MB

==================== Unidades ================================

Drive c: (Windows) (Fixed) (Total:480.28 GB) (Free:298.55 GB) NTFS
Drive e: (DATOS) (Fixed) (Total:450 GB) (Free:281.89 GB) NTFS
Drive g: (Google Drive File Stream) (Fixed) (Total:480.28 GB) (Free:283.62 GB) FAT32

\\?\Volume{4ab4f153-73af-4822-bb7f-29053751ec64}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.43 GB) NTFS
\\?\Volume{57422655-f28b-492c-90cb-25fb315952fa}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.17 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 2E1BA8B7)

Partition: GPT.

==================== Final de Addition.txt =======================

No he visto detecciones graves ni en MBAM ni en AdwCleaner, el resto no entiendo bien los reportes así que ni idea. La cosa es que no noto mejoría en el problema… tiene momentos (segundos) de lucidez, pero rápidamente vuelve a caer la cobertura.

Un saludo.

Actualización 16:10 de la tarde: no está mejor, está peor. Ya no puedo ni conectarme desde el mismo sitio de siempre. Escribo esto desde el móvil al lado del ordenador y con 3/4 rayas de cobertura wifi. ¿Qué pasa aquí? Nunca me ha hecho más falta una conexión estable a internet :sob::sob:. Estaba conectado y se ha desconectado solo. Ahora conecta, ahora se desconecta, y así…

Hola.

Paciencia, por favor, que estamos analizando tus informes. :face_with_monocle: :roll_eyes:

Sabes que tienes instalado y activo este programa :

AnyDesk (HKLM-x32…\AnyDesk) (Version: ad 5.4.2 - philandro Software GmbH)

Y para que usas esta aplicacion :

SecureW2 Enterprise Client 3.5.17 (HKLM-x32…\SecureW2 Enterprise Client) (Version: - )

Saludos.

Espero pacientemente, y mientras respondo:

AnyDesk es un programa de control remoto, lo usamos excepcionalmente por si un profesor tiene que darnos asistencia con POO. No debería estar activo… nunca lo abro y el inicio automático está desactivado :thinking:, además, puese el servicio en incio manual:

En cuanto al SecureW2, es necesario para poder conectarse al wifi en la Universidad… aunque viendo lo visto poca falta me va a hacer ya este año :frowning:

Hola.

Correcto, conozco el programa y lo uso a menudo, por eso te preguntaba para saber SI eras consciente de tenerlo instalado.

Existen dos entradas “enganchadas” que te voy a eliminar y cuando tuvieras que usarlo lo ejecutas TU manualmente o te creas un BAT en el escritorio para lanzar el ejecutable, SI necesitas ayuda con eso me lo comentas.

Perfecto… :+1:solo queria saberlo para dejarlo o eliminarlo, por mi puedes dejarlo TU decides.



Bien… y ahora sigue estos pasos, :arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe(en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla :white_check_mark: Create registry backup, las demás casillas NO. :face_with_monocle:

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Ningún archivo
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Ningún archivo
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Ningún archivo
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Ningún archivo
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Ningún archivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ningún archivo
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Ningún archivo
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Ningún archivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Ningún archivo
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Ningún archivo
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Ningún archivo
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Ningún archivo
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-03-13]
ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH)
HKU\S-1-5-21-4151126174-2042055496-4284500140-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\Installer\chrmstp.exe [2020-04-16] (Google LLC -> Google LLC)
GroupPolicy: Restricción ? <==== ATENCIÓN
Task: {2DE10D38-507F-49EA-94C9-976A4AB0D923} - System32\Tasks\ESET Notifier Uninstall => cmd.exe /C rmdir /q /s "C:\ProgramData\ESET Notifier"
Task: {4DF16152-C02F-41BE-85A7-BD315895DCD0} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4151126174-2042055496-4284500140-500 => C:\Users\Pablo\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {67F77AD4-F3AA-488F-8979-B58B2B72ED68} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
ProxyServer: [S-1-5-21-4151126174-2042055496-4284500140-1001] => 192.168.49.1:8282
S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X]
2020-04-18 15:41 - 2020-04-18 15:48 - 000000000 ____D C:\ProgramData\IObit
2020-04-18 15:41 - 2020-04-18 15:42 - 000000000 ____D C:\Users\Pablo\AppData\LocalLow\IObit
2020-04-08 19:45 - 2020-04-08 19:45 - 000003416 _____ C:\WINDOWS\system32\Tasks\ESET Notifier Uninstall
2020-04-01 19:52 - 2020-04-01 19:52 - 000000000 ____D C:\Users\Pablo\AppData\Local\ESET
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe(Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.

Y ahora inicia tu equipo desde el :arrow_forward: Modo Seguro – con funciones de Red, de Windows

Y ahora usa el 2º MÉTODO: de esta Faq de Windows 8(aplicable a Windows 10) :arrow_forward: ¿Cómo iniciar Windows 8/8.1 en Modo Seguro?, para trabajar desde ese modo de windows.

  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).

  • Presionar el botón FIX/Corregir y aguardar a que termine.

  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pegar el contenido de este fichero en tu próxima respuesta. :+1:

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Saludos.

Muchas gracias por la ayuda, tengo un par de cuestiones al respecto:

¿Qué quieres decir con eso? No entiendo exactamente.

Y la otra, ¿vamos a tocar algo muy peligroso?, tengo exámenes online y no puedo correr ningún riesgo.

Saludos.

Hola.

Que existen dos entradas del programa que se cargan al iniciar el sistema y NO son necesarias, eso es necesario SI se pretende tener activo el programa para que pueda tomarse el control remoto del equipo sin supervisión. :thinking:

Peligroso en si mismo NO tocaremos nada y espero además que mejore la conexión del wifi.

Pero SI quieres dejalo asi hasta que tengas el examen. :face_with_monocle:

Saludos.

Voy a ver si puedo de alguna forma rescatar un repetidor WiFi que tengo por ahí olvidado, y mientras que pasan todos los exámenes y todo, prefiero dejar esto en Stand-By. Solo de pensar que pueda romperse algo ahora me da firiche, ni tengo tiempo apenas de arreglarlo ni puedo permitirme tener que estar un día entero sin PC.

Lo dicho, cuando esté la cosa más tranquila volveré por aquí y haré el procedimiento que me pasaste antes, y comentaré los resultados.

Muchas gracias. Un saludo.

Hola.

Perfecto. :+1:

Saludos.

1 me gusta

Madre mía, lo ejecuté hace ya unas semanas y el “mañana respondo” se me olvidó :expressionless:

Ha funcionado, creo, bien. No veo, al menos de momento, esas caídas tan bruscas de la cobertura del WiFi.

Muchas gracias por la ayuda y la enorme paciencia. Un saludo.

Perfecto @ph_spy :+1: excelente, nos alegra ver que ya está el problema inicial completamente arreglado, ahora solo queda eliminar las herramientas usadas.

Para hacerlo descarga :arrow_forward: DelFix.exe en tu escritorio.

  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador -).

  • Marca todas las casillas, y pulsas en Run

Se abrirá el informe (DelFix.txt), puedes cerrarlo.


Para cualquier otro problema, no dudes en volver a postear., ya sabes dónde estamos. :+1:

Tema Solucionado.

Saludos, Javier.

1 me gusta