Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-08-2019
Ran by Administrador (administrator) on ADMIN-PC (Gigabyte Technology Co., Ltd. H81M-S1) (23-08-2019 14:17:51)
Running from C:\Users\Administrador\Desktop
Loaded Profiles: Administrador (Available Profiles: ADMIN & Administrador)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.13\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.13\GoogleCrashHandler64.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avpui.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Policies\Explorer: [NoDesktop] 0
HKU\S-1-5-21-3646293972-1715237845-785201959-500\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-3646293972-1715237845-785201959-500\...\Policies\Explorer: []
HKU\S-1-5-21-3646293972-1715237845-785201959-500\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-3646293972-1715237845-785201959-500\...\MountPoints2: {0fcc3901-bf05-11e5-8ac6-806e6f6e6963} - E:\Run.exe
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -> Autodesk, Inc.)
HKLM\...\Drivers32: [vidc.ffds] => C:\Windows\system32\ff_vfw.dll [127488 2014-05-13] () [File not signed]
HKLM\...\Drivers32: [vidc.ffds] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-05-13] () [File not signed]
HKLM\...\Drivers32: [vidc.xvid] => C:\Windows\SysWOW64\xvidvfw.dll [235520 2014-04-08] () [File not signed]
HKLM\...\Drivers32: [vidc.x264] => C:\Windows\SysWOW64\x264vfw.dll [4102656 2013-12-16] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [vidc.lags] => C:\Windows\SysWOW64\lagarith.dll [216064 2013-12-16] ( ) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\LameACM.acm [756224 2012-02-28] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [msacm.divxa32] => C:\Windows\SysWOW64\DivXa32.acm [291408 2013-12-16] (Packed With Joy !) [File not signed]
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-02] (Adobe Inc. -> Adobe Systems, Inc.)
IFEO\asulaunch.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\AUpdate.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\autoreactivator.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\AutoUpdate.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\AvBugReport.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\avDump.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\BigUpgrade_IU.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\chrmstp.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\CrRestore.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\CrtCheck.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\DSPut.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\Dugtrio.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\Feedback.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\gf2hlp.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\IObitDownloader.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\iu9pre.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\IUProtip.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\IUService.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\iush.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\IUSoftUpdateTip.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\NoteIcon.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\ScreenShot.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\SendBugReportNew.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\Setup.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\SpecUTool.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\tulogcollector.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\TUNEUpdate.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\TuneupSvc.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\TuneupUI.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\Vulnerabilityfix.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
IFEO\Vulnerabilityfix_1908.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe
GroupPolicy\User: Restriction - Chrome <==== ATTENTION
CHR HKU\S-1-5-21-3646293972-1715237845-785201959-500\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {008FC030-3B3D-4551-906E-D7D9EF99089D} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe
Task: {1063334E-2F79-41FB-A402-DE9A45CE2332} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {118AE162-1210-4718-985D-47A4A692005B} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2596720 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {16E6D56A-B1F5-4156-9BD1-1B484F577B24} - System32\Tasks\{37E66FCC-6302-43A4-A454-0F1E37E19CB4} => C:\Windows\system32\pcalua.exe -a "D:\Mis documentos\x.TODO EN UNO\x.PROGRAMAS\PROGRAMAS_01\CAD\CONVERTIR PDF_DWG\AutoDWG.V3.0.2009\AutoDWG.exe" -d "D:\Mis documentos\x.TODO EN UNO\x.PROGRAMAS\PROGRAMAS_01\CAD\CONVERTIR PDF_DWG\AutoDWG.V3.0.2009"
Task: {17FA256E-B556-4188-A632-5B0EE0B96938} - System32\Tasks\{2106F4A1-5D24-44A6-8C80-D8E5D2BFA228} => C:\Windows\system32\pcalua.exe -a C:\Users\Administrador\Desktop\hp_designjet_70_series_system_maintenance.exe -d C:\Users\Administrador\Desktop
Task: {30387DA3-9D90-4449-86BC-8A4BE5798B17} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
Task: {32B2A2B7-738F-4291-A22C-4E47CD4D4B26} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2092720 2018-11-26] (Microsoft Corporation -> Microsoft)
Task: {378E33F4-3B90-43ED-919D-F73B5554AA30} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1957744 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {3A571691-7A08-41FA-A052-70F0315272B9} - System32\Tasks\Uninstaller_SkipUac_Administrador => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [5286672 2019-05-29] (IObit Information Technology -> IObit)
Task: {453B8AA9-DF35-4549-8E7C-28497E63C668} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation)
Task: {4601D5D6-5451-48F7-9A80-22118E2D3EA5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.)
Task: {5D341876-0863-45C8-B845-B049EF00C6AB} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2596720 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {64763FD9-1D18-4475-9A22-5B34FEAEF64A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [652664 2019-04-17] (HP Inc. -> HP Inc.)
Task: {6C86592A-0062-483F-8457-E20F3D30186E} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {7387B793-8E64-4701-AAA8-FD38357ADF48} - System32\Tasks\AutoKMS => C:\windows\AutoKMS\AutoKMS.exe [1725440 2019-07-24] () [File not signed]
Task: {81353286-5166-4C68-A6FA-D26A4E396CE0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-21] (Google Inc -> Google LLC)
Task: {8D25BC2C-CCBF-43D7-B645-79A4CF99E2D3} - System32\Tasks\{B14465CA-C945-4601-92B2-A6037A894923} => C:\Windows\system32\pcalua.exe -a "C:\Users\Administrador\Desktop\Google Earth Pro\Crack.exe" -d "C:\Users\Administrador\Desktop\Google Earth Pro"
Task: {8D437BC2-7F4E-409C-BECE-E18EC6CC211F} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [39600 2018-11-26] (Microsoft Corporation -> Microsoft)
Task: {92A1DA3B-7C25-46C3-BFDB-6DD0A83F0D8C} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {9F3E1E27-39AF-46C2-BDD2-9F5B44448DF1} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation)
Task: {A13997D2-2EEC-4F5F-909E-47D479C148E4} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1957744 2018-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {B2E8E205-DDCC-4A05-A03D-3B1B09C3F345} - System32\Tasks\GMHSkipUAC => C:\Program Files (x86)\Glarysoft\Malware Hunter\MalwareHunter.exe [2438640 2019-06-24] (Glarysoft LTD -> Glarysoft Ltd)
Task: {B6C28291-DCB9-4052-9FAC-4169139874A0} - System32\Tasks\{0DD784CF-7792-4EC1-A548-D77185C50C93} => C:\Windows\system32\pcalua.exe -a C:\Users\Administrador\Desktop\Teclado\ITP55_64Esp.exe -d C:\Users\Administrador\Desktop\Teclado
Task: {B6E60306-E638-4125-BA8D-85116D764170} - System32\Tasks\SnailDriverSkipUSC => C:\Program Files (x86)\SnailSuite\SnailDriver\SnailLaunch.exe [814592 2016-09-17] (SnailDrivers) [File not signed]
Task: {BF5F092C-07CA-4614-AEA1-659D8D35E800} - System32\Tasks\ASC12_SkipUac_Administrador => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [8693008 2019-04-16] (IObit Information Technology -> IObit)
Task: {C8F15F60-F032-40DF-AD6F-0114B6EB40E0} - System32\Tasks\Servicio de actualización del software de InstallShield => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [81920 2005-08-11] (Macrovision Corporation) [File not signed]
Task: {DB453B03-BBE7-432D-BAF3-F642AE2744FE} - System32\Tasks\SnailDriverSkipUAC => C:\Program Files (x86)\SnailSuite\SnailDriver\SnailDriver.exe [193024 2016-09-17] (TODO: <公司名>) [File not signed]
Task: {EE12FD02-BB8A-43D0-A305-29F3AC9C6757} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {F271CAF7-70DE-4A17-8C81-B652BC6DE10B} - System32\Tasks\{7362B3AF-EDD1-4E4E-8CE4-66305EE48056} => C:\Windows\system32\pcalua.exe -a C:\Users\Administrador\Desktop\SpyHunter-Installer.exe -d C:\Users\Administrador\Desktop
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: 0.0.0.0 telemetry.malwarebytes.com
Tcpip\Parameters: [DhcpNameServer] 200.42.4.204 200.49.130.41
Tcpip\..\Interfaces\{C7AC4F82-B698-41B6-B34A-BA86023ECADC}: [DhcpNameServer] 200.42.4.204 200.49.130.41
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com
HKU\S-1-5-21-3646293972-1715237845-785201959-500\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com
HKU\S-1-5-21-3646293972-1715237845-785201959-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com.ar/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit Information Technology -> IObit)
BHO: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect118.cab
FireFox:
========
FF DefaultProfile: tlpk1ujp.default
FF ProfilePath: C:\Users\Administrador\AppData\Roaming\Mozilla\Firefox\Profiles\lk4l18w2.default [2019-08-09]
FF user.js: detected! => C:\Users\Administrador\AppData\Roaming\Mozilla\Firefox\Profiles\lk4l18w2.default\user.js [2016-07-22]
FF SearchPlugin: C:\Users\Administrador\AppData\Roaming\Mozilla\Firefox\Profiles\lk4l18w2.default\searchplugins\yahoo-partner.xml.bak.bak [2016-06-08]
FF ProfilePath: C:\Users\Administrador\AppData\Mozilla\Firefox\Profiles\tlpk1ujp.default [2019-08-23]
FF user.js: detected! => C:\Users\Administrador\AppData\Mozilla\Firefox\Profiles\tlpk1ujp.default\user.js [2019-08-23]
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Administrador\AppData\Mozilla\Firefox\Profiles\tlpk1ujp.default\Extensions\[email protected] [2019-03-26]
FF Extension: (Space Fantasy Redux) - C:\Users\Administrador\AppData\Mozilla\Firefox\Profiles\tlpk1ujp.default\Extensions\{f5453979-a039-4066-8aee-cb64fc98f936}.xpi [2019-08-23]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi [2019-04-18]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_207.dll [2019-06-14] (Adobe Inc. -> )
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_207.dll [2019-06-14] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1235205.dll [2019-03-15] (Adobe Systems, Inc.) [File not signed]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.13\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.13\npGoogleUpdate3.dll [2019-08-21] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-07-31] (Adobe Inc. -> Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2018-12-26] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2018-12-26] <==== ATTENTION
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd
CHR HKLM\...\Chrome\Extension: [mchjnmdbdlkdbfliogedbnpnanfjnolk] - hxxps://chrome.google.com/webstore/detail/mchjnmdbdlkdbfliogedbnpnanfjnolk
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
S4 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1295376 2016-07-01] (Autodesk, Inc -> Autodesk Inc.)
R2 AdvancedSystemCareService12; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1266960 2019-04-16] (IObit Information Technology -> IObit)
S3 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [246784 2015-08-03] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
S4 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 AVP19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe [619640 2018-02-28] (Kaspersky Lab -> AO Kaspersky Lab)
S3 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [885992 2018-04-06] (Intel(R) Software Development Products -> )
S2 HPSLPSVC; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S2 HPSLPSVC; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-13] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344184 2017-01-13] (Intel Corporation - pGFX -> Intel Corporation)
S3 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation)
S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation)
S4 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [153360 2019-05-29] (IObit Information Technology -> IObit)
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 klvssbridge64_19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\vssbridge64.exe [414352 2018-12-06] (Kaspersky Lab -> AO Kaspersky Lab)
S3 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (Kaspersky Lab -> AO Kaspersky Lab)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [185064 2018-04-06] (Intel(R) Software Development Products -> )
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11786992 2018-11-14] (TeamViewer GmbH -> TeamViewer GmbH)
S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [885992 2018-04-06] (Intel(R) Software Development Products -> )
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)
S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [495720 2018-08-29] (Wondershare Technology Co.,Ltd -> Wondershare)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmafd; C:\Windows\System32\DRIVERS\amdkmafd.sys [23240 2016-04-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [21622784 2015-08-04] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [665088 2015-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [65248 2015-04-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 anodlwf; C:\Windows\System32\DRIVERS\anodlwfx.sys [15872 2010-05-29] () [File not signed]
S2 ATE_PROCMON; no ImagePath
S3 athur; C:\Windows\System32\DRIVERS\athurx.sys [1847296 2010-01-05] (Atheros Communications, Inc.) [File not signed]
R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104976 2016-04-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [243400 2018-01-27] (Kaspersky Lab -> AO Kaspersky Lab)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 ElRawDisk; C:\Windows\system32\drivers\rsdrvx64.sys [26024 2009-02-12] (EldoS Corporation -> EldoS Corporation)
S3 gdrv; no ImagePath
S3 GUMHFilters; C:\Program Files (x86)\Glarysoft\Malware Hunter\Native\winxp_x64\GUMHFilter.sys [41232 2019-06-24] (Glarysoft LTD -> Glarysoft Ltd)
R1 GUSBootStartup; C:\Windows\System32\drivers\GUSBootStartup.sys [28936 2019-06-11] (Glarysoft LTD -> Glarysoft Ltd)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-11-14] (Martin Malik - REALiX -> REALiX(tm))
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31728 2015-11-12] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S4 IMFMBRProtect; no ImagePath
S4 IMFSafeBox; no ImagePath
S3 iobit_monitor_server; no ImagePath
S4 IUFileFilter; no ImagePath
S3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [19312 2019-05-29] (IObit Information Technology -> IObit)
S3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [25488 2019-05-29] (IObit Information Technology -> IObit)
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [528576 2018-02-20] (Kaspersky Lab -> AO Kaspersky Lab)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [72016 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [122488 2019-08-08] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [86656 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [217216 2019-08-08] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [1093240 2019-08-08] (Kaspersky Lab -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1123456 2019-08-08] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klim6; C:\Windows\System32\DRIVERS\klim6.sys [56144 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [56656 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [57464 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [49280 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\DRIVERS\kltap.sys [48080 2018-02-12] (AnchorFree Inc -> The OpenVPN Project)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [81632 2017-11-07] (Kaspersky Lab -> AO Kaspersky Lab)
R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [177280 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [201552 2019-04-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-08-23] (Malwarebytes Corporation -> Malwarebytes)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [199736 2016-09-21] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 netr28ux; C:\Windows\System32\DRIVERS\Dnetr28ux.sys [1617472 2011-04-28] (Ralink Technology Corporation -> Ralink Technology Corp.)
R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2018-12-07] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [43008 2018-04-06] (Intel Corporation -> )
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [51808 2019-05-14] (Synaptics Incorporated -> Synaptics Incorporated)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [52736 2012-04-25] (Apple, Inc.) [File not signed]
R3 WirelessKeyboardFilter; C:\Windows\System32\DRIVERS\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation)
R3 XtuAcpiDriver; C:\Windows\System32\DRIVERS\XtuAcpiDriver.sys [62856 2017-10-24] (Intel Corporation -> Intel Corporation)
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X]
U3 DfSdkS; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-08-23 14:17 - 2019-08-23 14:18 - 000031804 _____ C:\Users\Administrador\Desktop\FRST.txt
2019-08-23 14:17 - 2019-08-23 14:17 - 000000000 ____D C:\FRST
2019-08-23 13:46 - 2019-08-23 13:46 - 058016000 _____ (Google LLC) C:\Users\Administrador\Desktop\ChromeStandaloneSetup64.exe
2019-08-23 13:42 - 2019-08-23 13:42 - 001612800 _____ (Farbar) C:\Users\Administrador\Desktop\FRST64.exe
2019-08-23 13:27 - 2019-08-23 13:27 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-08-23 13:26 - 2019-08-23 13:26 - 000000000 ____H C:\asc_rdflag
2019-08-23 13:22 - 2019-08-23 13:22 - 000003046 _____ C:\Windows\System32\Tasks\SmartDefrag_Update
2019-08-23 13:15 - 2018-07-11 15:28 - 000029096 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe
2019-08-23 12:44 - 2019-08-23 12:50 - 000092928 _____ C:\Users\Administrador\Desktop\TANQUE TORRE 3000_6000 LITROS.dwg
2019-08-23 12:44 - 2019-08-23 12:44 - 000000218 ____H C:\Users\Administrador\Documents\Dibujo1.dwl2
2019-08-23 12:44 - 2019-08-23 12:44 - 000000068 ____H C:\Users\Administrador\Documents\Dibujo1.dwl
2019-08-22 23:48 - 2019-08-22 23:48 - 000002852 _____ C:\Windows\System32\Tasks\ASC12_SkipUac_Administrador
2019-08-22 23:48 - 2019-08-22 23:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2019-08-22 19:01 - 2019-08-22 19:02 - 000000000 ____D C:\Users\Administrador\Desktop\PROGRAMA
2019-08-22 14:36 - 2019-08-23 13:25 - 000000000 ____D C:\Users\Administrador\AppData\Local\NPE
2019-08-22 12:06 - 2019-08-22 12:06 - 000000000 ____D C:\Users\Administrador\AppData\Local\mbam
2019-08-22 00:09 - 2019-08-22 00:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-08-22 00:09 - 2019-08-22 00:09 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-08-22 00:09 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-08-21 20:52 - 2019-08-22 00:05 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-08-21 19:43 - 2019-08-21 19:43 - 000000000 ____D C:\Users\Administrador\AppData\Local\TeamViewer
2019-08-20 13:53 - 2019-08-20 14:02 - 595527211 _____ C:\Users\Administrador\Downloads\desktop01 (1).mp4
2019-08-14 13:12 - 2019-08-21 20:41 - 000000000 ____D C:\Windows\SysWOW64\%Data%
2019-08-13 20:28 - 2019-08-21 23:14 - 002897400 _____ (Google) C:\Users\Administrador\Downloads\chrome_cleanup_tool.exe
2019-08-12 22:39 - 2019-08-22 23:45 - 000000000 ____D C:\Users\Administrador\Desktop\prosesar
2019-08-05 13:22 - 2019-08-05 13:22 - 003708541 _____ C:\Users\Administrador\Downloads\HDCleanerX64.zip
2019-07-24 12:49 - 2019-07-13 05:14 - 000334848 _____ (Microsoft Corporation) C:\Windows\system32\sipnotify.exe
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-08-23 13:54 - 2016-12-20 14:15 - 000009320 _____ C:\Users\Administrador\AppData\Microsoft Excel 97-2003.EML
2019-08-23 13:54 - 2016-12-20 14:15 - 000009320 _____ C:\Users\Administrador\AppData\Microsoft Excel 97-2003.EML
2019-08-23 13:49 - 2018-11-06 13:37 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2019-08-23 13:35 - 2009-07-14 01:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-08-23 13:35 - 2009-07-14 01:45 - 000026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-08-23 13:34 - 2016-12-26 13:30 - 000000000 ____D C:\Users\Administrador\AppData\LocalLow\Mozilla
2019-08-23 13:28 - 2016-01-19 21:01 - 000000000 __SHD C:\Users\Administrador\IntelGraphicsProfiles
2019-08-23 13:26 - 2014-02-15 09:08 - 129916928 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2019-08-23 13:26 - 2014-02-15 09:08 - 005087232 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak
2019-08-23 13:26 - 2014-02-15 09:08 - 000061440 _____ C:\Windows\system32\config\SAM.iodefrag.bak
2019-08-23 13:26 - 2014-02-15 09:08 - 000024576 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak
2019-08-23 13:26 - 2009-07-14 02:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-08-23 13:25 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\inf
2019-08-23 13:04 - 2016-02-29 01:04 - 000000000 ____D C:\Program Files (x86)\System Ninja
2019-08-22 23:48 - 2019-06-07 14:29 - 000000000 ____D C:\ProgramData\IObit
2019-08-22 23:48 - 2014-01-20 15:08 - 000000000 ____D C:\Users\Administrador\AppData\LocalLow\IObit
2019-08-22 23:48 - 2012-07-15 12:03 - 000000000 ____D C:\Program Files (x86)\IObit
2019-08-22 15:13 - 2010-11-21 04:09 - 000752418 _____ C:\Windows\system32\perfh00A.dat
2019-08-22 15:13 - 2010-11-21 04:09 - 000160952 _____ C:\Windows\system32\perfc00A.dat
2019-08-22 15:13 - 2009-07-14 02:13 - 001690816 _____ C:\Windows\system32\PerfStringBackup.INI
2019-08-22 14:36 - 2013-03-12 15:08 - 000000000 ____D C:\ProgramData\Norton
2019-08-22 00:11 - 2012-07-29 15:50 - 000004012 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{9404E00C-0B80-4B48-8A6F-8FF35E91C91B}
2019-08-22 00:09 - 2019-05-29 17:52 - 000000000 ____D C:\Program Files\Malwarebytes
2019-08-22 00:06 - 2012-04-19 12:57 - 000000000 ____D C:\Users\Administrador
2019-08-22 00:05 - 2016-08-16 12:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-21 23:26 - 2012-04-25 16:32 - 000003332 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-08-21 23:26 - 2012-04-25 16:32 - 000003204 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-08-21 23:26 - 2012-04-25 16:32 - 000000000 ____D C:\Program Files (x86)\Google
2019-08-21 23:22 - 2012-04-24 20:21 - 000000000 ____D C:\Users\Administrador\AppData\Local\Google
2019-08-21 21:07 - 2019-04-09 14:30 - 000000229 _____ C:\Windows\SysWOW64\_WKERNEL.SYL
2019-08-21 20:58 - 2013-03-02 09:19 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-08-21 20:58 - 2013-03-02 09:19 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-08-21 20:58 - 2012-04-22 17:30 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-08-21 20:58 - 2012-04-22 17:30 - 000000000 ____D C:\Windows\system32\Macromed
2019-08-21 20:42 - 2012-04-19 12:55 - 000000000 ____D C:\Users\ADMIN
2019-08-21 20:41 - 2019-06-07 14:25 - 000000000 ____D C:\Users\Administrador\AppData\IObit
2019-08-21 20:41 - 2019-06-07 14:25 - 000000000 ____D C:\Users\Administrador\AppData\IObit
2019-08-21 20:41 - 2019-04-09 14:30 - 000000000 ____D C:\Program Files (x86)\WinUtilities
2019-08-21 20:41 - 2016-08-09 01:37 - 000000000 ____D C:\ProgramData\FLEXnet
2019-08-21 20:41 - 2015-10-14 13:03 - 000000000 ____D C:\Windows\pss
2019-08-21 20:41 - 2014-01-20 15:08 - 000000000 ____D C:\ProgramData\ProductData
2019-08-21 20:41 - 2012-04-19 17:35 - 000000000 ____D C:\Users\Administrador\.rainlendar2
2019-08-21 20:41 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\servicing
2019-08-21 20:41 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\registration
2019-08-21 20:41 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-08-21 20:41 - 2009-07-14 00:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2019-08-21 20:36 - 2019-03-06 14:12 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2019-08-20 20:19 - 2016-07-31 17:11 - 000000000 ____D C:\Users\Administrador\AppData\Local\ElevatedDiagnostics
2019-08-19 19:52 - 2016-06-20 15:28 - 000000000 ____D C:\Users\Administrador\Documents\Add-in Express
2019-08-16 13:48 - 2015-08-21 21:34 - 035139584 _____ C:\Windows\system32\config\components.iodefrag.bak
2019-08-13 16:20 - 2015-02-24 14:42 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-08-13 16:19 - 2015-11-09 17:10 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-08-08 14:30 - 2018-11-06 13:37 - 001123456 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2019-08-08 14:30 - 2018-11-06 13:37 - 000217216 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2019-08-08 14:30 - 2018-02-02 03:45 - 000122488 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klbackupflt.sys
2019-08-08 14:29 - 2018-07-25 12:30 - 001093240 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2019-08-08 14:29 - 2017-11-02 15:54 - 000151768 _____ (AO Kaspersky Lab) C:\Windows\system32\klhkum.dll
2019-08-06 16:52 - 2012-04-19 20:49 - 000000000 ____D C:\Users\Administrador\AppData\Local\cache
2019-07-26 15:41 - 2019-07-18 13:50 - 000002938 _____ C:\Windows\System32\Tasks\SnailDriverSkipUAC
2019-07-26 15:40 - 2019-07-18 13:49 - 000002938 _____ C:\Windows\System32\Tasks\SnailDriverSkipUSC
2019-07-24 19:22 - 2016-12-19 23:32 - 000000000 ____D C:\Windows\AutoKMS
==================== Files in the root of some directories ================
2016-06-20 10:35 - 2016-06-20 10:35 - 002272256 _____ () C:\Users\Administrador\ZHPCleaner.exe
2016-12-20 14:14 - 2016-12-20 14:23 - 000038430 _____ () C:\Users\Administrador\AppData\Microsoft Excel 97-2003.ADR
2016-12-20 14:15 - 2019-08-23 13:54 - 000009320 _____ () C:\Users\Administrador\AppData\Microsoft Excel 97-2003.EML
2019-07-15 16:37 - 2019-07-15 16:37 - 000001021 _____ () C:\Users\Administrador\AppData\Local\recently-used.xbel
2012-07-26 08:00 - 2019-05-03 14:35 - 000007605 _____ () C:\Users\Administrador\AppData\Local\Resmon.ResmonCfg
2012-04-22 19:22 - 2012-04-22 19:22 - 000017408 _____ () C:\Users\Administrador\AppData\Local\WebpageIcons.db
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2019-08-21 13:58
==================== End of FRST.txt ============================