Tengo instalado Windows 10 en mi computadora y recientemente me apareció el error IRQL NOT LESS OR EQUAL,en una pantalla azul con letras blancas. no se porque sea ese problema si me pueden apoyar.
desde ya muchas gracias.
Hola Arcanine
Las causas de ese error son muchísimas. Hay que empezar a descartar cosas:
Primero, si los recursos de Tu PC son suficientes para tener instalado Winows 10. Otros factores importantes son los programas que tengas instalados y la posibilidad de que se halla instalado algún malware. Por último, también hay que verificar la integridad física de los componentes del PC (Hardware) y la correcta instalación de los drivers de los mismos.
Vamos por partes …
Realiza los siguientes pasos, sin cambiar el orden:
1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.
2.- Descargá a Tu escritorio las siguientes herramientas:
3.- Seguí paso a paso las acciones …
Instalalo y actualizalo. Realiza un Análisis Completo. Pulsa en “Eliminar Seleccionados” para enviarlo a la cuarentena. Reinicias el sistema. En el apartado del manual “Historial” >> Registros de Aplicación >> Scan Log/Registro de Análisis encontrarás el informe del MBAM, que debes copiar y pegar en tu próxima respuesta.
Ejecutalo. (Clic derecho y selecciona Ejecutar como Administrador). Pulsa en el botón Escanear y espera a que se realice el proceso. Luego pulsa sobre el botón Limpiar. Espera a que se complete. Si te pidiera reiniciar el sistema Aceptas. Guardas el reporte que te aparecerá para copiarlo y pegarlo en tu próxima respuesta. El informe también se puede encontrar en “C:\AdwCleaner\AdwCleaner.txt”
Siguiendo Su manual, lo instalas y ejecutas. Cuando termine, eliminas todo lo que encuentre.
Instalalo y ejecutalo. En la pestaña limpiador dejas como esta configurada predeterminadamente, haces clic en analizar esperas que termine > clic en ejecutar limpiador. Clic en la pestaña Registro > clic en buscar problemas esperas que termine > clic en Reparar Seleccionadas y haces una copia de seguridad.
En Tu próxima respuesta debes pegar los reportes de Malwarebytes, AdwCleaner y ZHPCleaner.
Envuelve cada uno de los informes con una etiqueta escrita al inicio del informe y otra como este al final del mismo.
Nos comentas como sigue el problema original por el que abriste el tema.
Disculpa la tardanza; aquí traigo los informes de los programas:
-Detalles del registro-
Fecha del análisis: 19/11/18
Hora del análisis: 13:21
Archivo de registro: 61bcd53c-ec30-11e8-af37-e0d55e8bc5ca.json
-Información del software-
Versión de los componentes: 1.0.482
Versión del paquete de actualización: 1.0.7923
Licencia: Prueba
-Información del sistema-
SO: Windows 10 (Build 14393.0)
CPU: x64
Sistema de archivos: NTFS
Usuario: DESKTOP-N8C7JI0\Admin
-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 269886
Amenazas detectadas: 15
Amenazas en cuarentena: 14
Tiempo transcurrido: 2 hr, 47 min, 0 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 0
(No hay elementos maliciosos detectados)
Valor del registro: 0
(No hay elementos maliciosos detectados)
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 0
(No hay elementos maliciosos detectados)
Archivo: 15
RiskWare.Tool.HCK, C:\USERS\ADMIN\DESKTOP\AUTODESK.AUTOCAD.V2016.WIN64-ISO\CRACK\XF-ADSK2016_X64.7Z, En cuarentena, [7756], [65468],1.0.7923
RiskWare.Tool.HCK, C:\USERS\ADMIN\DESKTOP\AUTODESK.AUTOCAD.V2016.WIN64-ISO\CRACK\XF-ADSK2016_X86.7Z, En cuarentena, [7756], [65468],1.0.7923
HackTool.FilePatch, C:\USERS\ADMIN\DESKTOP\DAEMON.TOOLS.PRO.V8.2.0.708.MULTILINGUAL.INCL.PATCH\CRACK\2.EXE, En cuarentena, [7842], [281135],1.0.7923
HackTool.FilePatch, C:\USERS\ADMIN\DESKTOP\DAEMON.TOOLS.PRO.V8.2.0.708.MULTILINGUAL.INCL.PATCH\2 DAEMON.TOOLS.PRO.V8.2.0.BUILD.0708.AFTER.REGGEN.PATCH.ZIP, En cuarentena, [7842], [281135],1.0.7923
PUP.Optional.FusionCore, C:\USERS\ADMIN\DOWNLOADS\PROGRAMS\FILEZILLA_3.38.1_WIN64-SETUP_BUNDLED.EXE, En cuarentena, [7819], [599917],1.0.7923
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
El Informe de Adwcleaner:
# -------------------------------
# Malwarebytes AdwCleaner
# -------------------------------
# Build: 09-25-2018
# Database: 2018-11-19.1 (Cloud)
# Support: https://www.malwarebytes.com/support
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 11-19-2018
# Duration: 00:00:13
# OS: Windows 10 Pro
# Scanned: 32104
# Detected: 0
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
EL Informe de ZHPCleaner:
~ ZHPCleaner v2018.11.19.196 by Nicolas Coolman (2018/11/19)
~ Run by Admin (Administrator) (19/11/2018 16:43:24)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Reparar
~ Report : C:\Users\Admin\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Admin\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 14393)
---\\ Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados.
---\\ Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.
---\\ Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados.
---\\ Hosts carpeta (1)
~ El archivo hosts es legítimo (554)
---\\ Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados.
---\\ Explorador ( Archivos, Carpetas ) (17)
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\https+++www.softonic.com\.metadata =>.SUP.Softonic
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\https+++www.softonic.com\.metadata-v2 =>.SUP.Softonic
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\https+++www.softonic.com\idb\993782502OBNDE__KSDISG_NLA.sqlite =>.SUP.Softonic
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata =>.SUP.AkamaiHD
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata-v2 =>.SUP.AkamaiHD
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage.bak\default\http+++pxlgnpgecom-a.akamaihd.net\idb\2532886276bta_fcpe_.sqlite =>.SUP.AkamaiHD
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata =>.SUP.AkamaiHD
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata-v2 =>.SUP.AkamaiHD
MOVIDO carpeta: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\storage\default\http+++pxlgnpgecom-a.akamaihd.net\idb\2532886276bta_fcpe_.sqlite =>.SUP.AkamaiHD
MOVIDO carpeta: C:\ProgramData\KMSAutoS\KMSAuto Net.exe [MSFree Inc. - KMSAuto Net] =>HackTool.WinActivator
MOVIDO carpeta: C:\ProgramData\KMSAutoS\bin\KMSSS.exe [MDL Forum, mod by Ratiborus - KMS Server Emulator Service (XP)] =>HackTool.AutoKMS
MOVIDO carpeta: C:\Windows\AutoKMS\AutoKMS.exe [CODYQX4 - AutoKMS] =>HackTool.AutoKMS
MOVIDO carpeta: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS
MOVIDO archivo: C:\ProgramData\KMSAutoS =>HackTool.WinActivator
MOVIDO archivo: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
MOVIDO archivo: C:\Windows\AutoKMS =>HackTool.AutoKMS
MOVIDO archivo: C:\Users\Admin\AppData\Local\MSfree Inc =>HackTool.WinActivator
---\\ Registro ( Claves, Valores, Datos) (0)
~ No malintencionados o innecesarios artículos encontrados.
---\\ Resumen de elementos en su estación de trabajo (4)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic
https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
---\\ Limpieza adicional. (7)
~ Clave de registro Tracing borrados (7)
~ Quitar los antiguos informes de ZHPCleaner. (0)
---\\ Resultado de la reparación.
~ Reparación llevada a cabo con éxito
~ falta este navegador! (Opera Software)
~ Items escaneado : 1886
~ Items encontrado : 0
~ artículos cancelados : 0
~ Items opciones : 0/7
~ Ahorro de espacio (bytes) : 0
~ End of clean in 00h00mn05s
---\\ Reporte (2)
Desactiva temporalmente tu antivirus y cualquier programa de seguridad que tengas en funciones.
Descarga Farbar Recovery Scan Tool en el escritorio de Tu PC. Selecciona la versión adecuada para la arquitectura (32 o 64bits) de tu equipo.
Como saber si Mi Windows es de 32 0 64 Bits`
Guía: Como Ejecutar FRST
En Tu próxima respuesta, debes pegar los dos reportes generados.
Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(mas de 50.000 caracteres aprox.).
Envuelve cada uno de los informes con una etiqueta escrita al inicio del informe y otra como este al final del mismo.
Informe de Farbar FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15.11.2018
Ran by Admin (administrator) on DESKTOP-N8C7JI0 (19-11-2018 17:30:14)
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: defaultuser0 & Admin & DefaultAppPool)
Platform: Windows 10 Pro Version 1607 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0334122.inf_amd64_2e9fcce50cc19bdc\B333740\atiesrxx.exe
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0334122.inf_amd64_2e9fcce50cc19bdc\B333740\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\System32\mqtgsvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksdeui.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe
(MPC-HC Team) C:\Program Files\Combined Community Codec Pack 64bit\MPC\mpc-hc64.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.4.86.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1605.1582.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MsmqIntCert] => "C:\Windows\System32\regsvr32.exe" /s "C:\Windows\System32\mqrt.dll"
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3973176 2018-10-17] (Tonec Inc.)
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [4506304 2017-05-17] (Disc Soft Ltd)
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\MountPoints2: {60ea5ee5-e053-11e8-bbcd-e0d55e8bc5ca} - "F:\setup.exe"
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\MountPoints2: {60ea605e-e053-11e8-bbcd-e0d55e8bc5ca} - "H:\setup.exe"
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{ada121d7-d94f-4568-a803-316df8aa0ea2}: [NameServer],
Tcpip\..\Interfaces\{ada121d7-d94f-4568-a803-316df8aa0ea2}: [DhcpNameServer]
Internet Explorer:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/es-mx/?ocid=iehp
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2018-06-19] (Internet Download Manager, Tonec Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2018-06-19] (Internet Download Manager, Tonec Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation)
FF DefaultProfile: e9d8nqvf.default
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default [2018-11-19]
FF Homepage: Mozilla\Firefox\Profiles\e9d8nqvf.default -> www.google.com.mx
FF Extension: (Facebook Container) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\Extensions\@contain-facebook.xpi [2018-11-17]
FF Extension: (youtube-flash-html) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\Extensions\[email protected] [2018-11-07]
FF Extension: (Tab Session Manager) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\Extensions\[email protected] [2018-11-18]
FF Extension: (Malwarebytes Browser Extension) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2018-11-09]
FF Extension: (Video DownloadHelper) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-10-31]
FF Extension: (Firefox Monitor) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default\features\{e5e37dea-2ee5-4386-9abb-7f8c45c7693e}\[email protected] [2018-11-16]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi [2018-10-30]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi
FF HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi
FF Extension: (IDM Integration Module) - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2018-10-17]
FF HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Admin\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Admin\AppData\Roaming\IDM\idmmzcc5 [2018-10-30] [Legacy] [not signed]
FF HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Legacy]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2018-11-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2018-11-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2018-11-19]
CHR Extension: (Presentaciones) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-11-01]
CHR Extension: (Kaspersky Protection) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\amkpcclbbgegoafihnpgomddadjhcadd [2018-11-17]
CHR Extension: (Documentos) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-11-01]
CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-11-01]
CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-01]
CHR Extension: (Hojas de cálculo) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-11-01]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-11-01]
CHR Extension: (IDM Integration Module) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2018-11-01]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-11-01]
CHR Extension: (Gmail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-11-01]
CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-01]
CHR HKLM\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2018-10-18]
CHR HKLM-x32\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2018-10-18]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository\c0334122.inf_amd64_2e9fcce50cc19bdc\B333740\atiesrxx.exe [504592 2018-10-04] (AMD)
S2 AVP19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe [619640 2018-02-28] (AO Kaspersky Lab)
R3 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe [1841344 2017-05-17] (Disc Soft Ltd)
R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [17408 2018-10-30] (Microsoft Corporation)
R2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2018-05-02] (Intel Corporation) [File not signed]
S3 klvssbridge64_19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\vssbridge64.exe [416560 2018-10-30] (AO Kaspersky Lab)
R2 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (AO Kaspersky Lab)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 MSMQTriggers; C:\Windows\system32\mqtgsvc.exe [163840 2018-10-30] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2018-11-04] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-07-16] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11644656 2018-09-10] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0334122.inf_amd64_2e9fcce50cc19bdc\B333740\atikmdag.sys [47111440 2018-10-04] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0334122.inf_amd64_2e9fcce50cc19bdc\B333740\atikmpag.sys [587032 2018-10-04] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [107400 2018-10-03] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [243400 2018-01-27] (AO Kaspersky Lab)
R3 dtproscsibus; C:\Windows\System32\drivers\dtproscsibus.sys [30264 2018-11-04] (Disc Soft Ltd)
R2 GLCKIO2; C:\Program Files (x86)\GIGABYTE\RGBFusion\GLCKIO2.sys [19392 2018-03-08] ()
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [123520 2018-05-02] (Intel Corporation)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [73416 2018-10-22] (AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [123152 2018-10-22] (AO Kaspersky Lab)
R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [89168 2018-10-22] (AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29208 2017-03-30] (AO Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [220472 2018-10-30] (AO Kaspersky Lab)
R1 KLHK; C:\Windows\System32\drivers\klhk.sys [1214752 2018-10-30] (AO Kaspersky Lab)
S3 klids; C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\klids.sys [185576 2018-10-30] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1113912 2018-10-30] (AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [57032 2018-02-12] (AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [58048 2018-01-15] (AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [83496 2017-12-11] (AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [50648 2017-05-30] (AO Kaspersky Lab)
S3 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [45768 2018-10-22] (AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\drivers\kltap.sys [48080 2018-02-12] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [238528 2018-11-01] (AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\Windows\System32\Drivers\klupd_klif_kimul.sys [100136 2018-11-15] (AO Kaspersky Lab)
S3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [289856 2018-11-01] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [110640 2018-11-01] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [193168 2018-11-01] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [100552 2018-02-17] (AO Kaspersky Lab)
R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [161080 2018-10-22] (AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [203968 2018-02-24] (AO Kaspersky Lab)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [213216 2018-10-15] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [223000 2018-10-15] (Oracle Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S4 RAMDiskVE; \SystemRoot\System32\Drivers\RAMDiskVE.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-19 17:30 - 2018-11-19 17:30 - 000019403 _____ C:\Users\Admin\Desktop\FRST.txt
2018-11-19 17:30 - 2018-11-19 17:30 - 000000000 ____D C:\FRST
2018-11-19 17:29 - 2018-11-19 17:29 - 002416128 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2018-11-19 17:28 - 2018-11-19 17:28 - 000000570 _____ C:\DelFix.txt
2018-11-19 16:48 - 2018-11-19 16:48 - 000017788 _____ C:\Users\Admin\Documents\cc_20181119_164813.reg
2018-11-19 16:48 - 2018-11-19 16:48 - 000001028 _____ C:\Users\Admin\Documents\cc_20181119_164828.reg
2018-11-19 16:36 - 2018-11-19 16:43 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ZHP
2018-11-19 16:36 - 2018-11-19 16:36 - 000000000 ____D C:\Users\Admin\AppData\Local\ZHP
2018-11-19 12:02 - 2018-11-19 12:02 - 000003160 _____ C:\Windows\System32\Tasks\StartCN
2018-11-19 12:02 - 2018-11-19 12:02 - 000003074 _____ C:\Windows\System32\Tasks\StartDVR
2018-11-19 12:02 - 2018-11-19 12:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2018-11-19 12:02 - 2018-11-19 12:02 - 000000000 ____D C:\Program Files (x86)\AMD
2018-11-19 12:01 - 2018-11-19 12:01 - 000000000 ____D C:\Windows\LastGood.Tmp
2018-11-19 11:58 - 2018-11-19 11:58 - 025520000 _____ (AMD Inc.) C:\Users\Admin\Downloads\radeon-software-adrenalin-18.9.3-minimalsetup-181005_64bit.exe
2018-11-19 11:58 - 2018-11-19 11:58 - 000000060 _____ C:\ProgramData\SoftwareUpdateTemp.xml
2018-11-19 11:58 - 2018-11-19 11:58 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ATI
2018-11-19 11:58 - 2018-11-19 11:58 - 000000000 ____D C:\Users\Admin\AppData\Local\ATI
2018-11-19 11:58 - 2018-11-19 11:58 - 000000000 ____D C:\ProgramData\ATI
2018-11-18 22:51 - 2018-11-18 22:52 - 000000000 ____D C:\Users\Admin\Desktop\Nueva carpeta (2)
2018-11-18 19:16 - 2018-11-18 19:16 - 000690524 _____ C:\Users\Admin\Downloads\De visita a la casa de Mi Tia, por una semana la penetre rico - XVIDEOS.COM.TS
2018-11-18 19:14 - 2018-11-18 19:15 - 017674444 _____ C:\Users\Admin\Downloads\College Student hulicam ng Classmate - www.kanortube.com - XVIDEOS.COM.TS
2018-11-18 19:07 - 2018-11-18 19:07 - 018782704 _____ C:\Users\Admin\Downloads\Colegiala Amateur Casero - XVIDEOS.COM.TS
2018-11-18 19:05 - 2018-11-18 19:05 - 095381612 _____ C:\Users\Admin\Downloads\Woman has sex with dogs and snakes - XVIDEOS.COM.TS
2018-11-18 19:04 - 2018-11-18 19:05 - 108257732 _____ C:\Users\Admin\Downloads\www.girls4cock.com --- PetVideo — Young Chick plays with - XVIDEOS.COM.TS
2018-11-18 19:03 - 2018-11-18 19:04 - 141295724 _____ C:\Users\Admin\Downloads\Monroe - XVIDEOS.COM.TS
2018-11-18 16:11 - 2018-11-18 16:11 - 000000000 ____D C:\Users\Admin\Desktop\Tor Browser
2018-11-18 00:55 - 2018-11-18 00:55 - 027250788 _____ C:\Users\Admin\Downloads\Niña gritando de placer - XVIDEOS.COM.TS
2018-11-17 22:28 - 2018-11-17 23:01 - 000000000 ____D C:\Users\Admin\dwhelper
2018-11-16 21:39 - 2018-11-16 21:39 - 000000016 _____ C:\ProgramData\mntemp
2018-11-16 21:19 - 2018-11-16 21:37 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2018-11-16 21:19 - 2018-11-16 21:19 - 000255928 _____ (Malwarebytes) C:\Windows\system32\Drivers\76245599.sys
2018-11-16 20:58 - 2018-11-16 20:58 - 000028272 _____ C:\Windows\system32\Drivers\truesight.sys
2018-11-16 20:55 - 2018-11-16 20:57 - 000000000 ____D C:\ProgramData\RogueKiller
2018-11-16 20:15 - 2018-11-16 20:15 - 000111152 _____ (Malwarebytes) C:\Windows\system32\Drivers\SET32F2.tmp
2018-11-16 19:42 - 2018-11-16 19:42 - 000000000 ____D C:\Users\Admin\AppData\Local\mbam
2018-11-16 19:41 - 2018-11-16 21:19 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-11-16 19:41 - 2018-11-16 20:48 - 000152688 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2018-11-16 19:41 - 2018-11-16 19:41 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-11-16 19:41 - 2018-11-16 19:41 - 000000000 ____D C:\Users\Admin\AppData\Local\mbamtray
2018-11-16 19:41 - 2018-11-16 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-11-16 19:41 - 2018-11-16 19:41 - 000000000 ____D C:\Program Files\Malwarebytes
2018-11-16 18:29 - 2018-11-16 18:29 - 000022734 _____ C:\Windows\system32\results.xml
2018-11-16 09:24 - 2018-11-16 18:29 - 000000000 __SHD C:\Users\Admin\IntelGraphicsProfiles
2018-11-16 09:24 - 2018-11-16 09:25 - 000000000 ____D C:\Users\Admin\AppData\Local\Intel
2018-11-16 09:24 - 2018-11-16 09:24 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2018-11-16 09:22 - 2018-02-17 23:51 - 000277952 _____ C:\Windows\system32\igfxCPL.cpl
2018-11-16 09:22 - 2018-02-17 23:51 - 000144824 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2018-11-16 09:22 - 2018-02-17 23:51 - 000119744 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2018-11-16 09:21 - 2018-02-17 23:51 - 000820168 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2018-11-16 09:19 - 2018-11-16 20:15 - 000000000 ____D C:\Intel
2018-11-14 19:28 - 2018-11-14 19:28 - 000001273 _____ C:\Users\Admin\Desktop\CrystalDiskInfo.lnk
2018-11-14 19:28 - 2018-11-14 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2018-11-14 19:28 - 2018-11-14 19:28 - 000000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2018-11-13 20:24 - 2018-11-13 20:24 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Adobe
2018-11-13 10:05 - 2018-11-13 10:05 - 000000000 ____D C:\Users\Admin\AppData\Roaming\vlc
2018-11-13 10:04 - 2018-11-13 10:04 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2018-11-13 10:04 - 2018-11-13 10:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2018-11-13 10:04 - 2018-11-13 10:04 - 000000000 ____D C:\Program Files\VideoLAN
2018-11-12 15:20 - 2018-11-13 08:31 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2018-11-12 15:19 - 2018-11-13 08:30 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-11-12 15:19 - 2018-11-12 15:19 - 000002124 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2018-11-12 15:19 - 2018-11-12 15:19 - 000000000 ____D C:\Program Files (x86)\Adobe
2018-11-10 10:14 - 2018-11-10 10:14 - 000277248 _____ C:\Users\Admin\Desktop\Desk Projection.rar
2018-11-10 10:14 - 2018-11-10 10:10 - 000000000 ____D C:\Users\Admin\Desktop\Desk Projection
2018-11-10 09:00 - 2018-11-10 09:05 - 000000000 ____D C:\Users\Admin\Documents\tps
2018-11-09 22:22 - 2018-11-09 22:22 - 000000026 _____ C:\Users\Admin\Desktop\telefonos hermilo tamez.txt
2018-11-09 22:15 - 2018-11-09 23:38 - 000000000 ____D C:\Users\Admin\Documents\Camtasia
2018-11-09 22:12 - 2018-10-05 17:17 - 000000000 ____D C:\Users\Admin\Desktop\TechSmith.Camtasia.Studio.v2018.0.4.3822.Incl.Patch-DavicoRm
2018-11-09 15:10 - 2018-11-09 15:10 - 000314858 _____ C:\Users\Admin\Desktop\Eventos de hoy_20181109150556.xls
2018-11-09 14:11 - 2018-11-19 16:37 - 000003800 _____ C:\Windows\System32\Tasks\AutoKMS
2018-11-09 13:53 - 2018-11-09 13:53 - 000002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002662 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive para la Empresa.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Empresarial 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2018-11-09 13:53 - 2018-11-09 13:53 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2016
2018-11-09 13:51 - 2018-11-09 13:51 - 000000000 ____D C:\Windows\PCHEALTH
2018-11-09 13:51 - 2018-11-09 13:51 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2018-11-09 13:51 - 2018-11-09 13:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-11-09 13:51 - 2018-11-09 13:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2018-11-09 13:51 - 2018-11-09 13:51 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2018-11-09 13:50 - 2018-11-09 13:52 - 000000000 ____D C:\Windows\SHELLNEW
2018-11-09 13:50 - 2018-11-09 13:51 - 000000000 ____D C:\Program Files\Microsoft Office
2018-11-09 13:50 - 2018-11-09 13:50 - 000000000 ____D C:\Users\Admin\AppData\Local\Microsoft Help
2018-11-09 13:50 - 2018-11-09 13:50 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-11-09 13:50 - 2018-11-09 13:50 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-11-09 13:50 - 2018-11-09 13:50 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2018-11-09 13:49 - 2018-11-09 13:49 - 000000000 __RHD C:\MSOCache
2018-11-08 08:38 - 2018-11-15 21:09 - 000100136 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_kimul.sys
2018-11-07 09:51 - 2018-11-12 07:10 - 000002834 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-N8C7JI0-Admin
2018-11-07 09:42 - 2018-11-07 09:42 - 000000000 ____D C:\Users\Admin\Documents\Adobe
2018-11-07 09:41 - 2018-11-07 09:51 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2018-11-07 09:40 - 2018-11-07 09:40 - 000001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2018-11-07 09:38 - 2018-11-07 09:38 - 000000000 ____D C:\Program Files\Adobe
2018-11-07 09:37 - 2018-11-07 09:40 - 000000000 ____D C:\Program Files\Common Files\Adobe
2018-11-07 09:37 - 2018-11-07 09:37 - 000001619 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2018-11-07 09:33 - 2018-11-13 08:28 - 000000000 ____D C:\ProgramData\Adobe
2018-11-07 09:32 - 2018-11-19 10:21 - 000000000 ____D C:\Users\Admin\AppData\Local\Adobe
2018-11-07 09:28 - 2018-11-16 08:51 - 000000000 ____D C:\Users\Admin\Desktop\Nueva carpeta
2018-11-06 22:32 - 2018-11-06 22:35 - 000000000 ____D C:\Users\Admin\.openshot_qt
2018-11-06 08:19 - 2016-02-01 08:21 - 000000000 ____D C:\Users\Admin\Desktop\cicad1516
2018-11-06 07:56 - 2018-11-06 08:03 - 2348263338 _____ C:\Users\Admin\Desktop\AUTODESK.AUTOCAD.V2016.WIN64-ISO.rar
2018-11-06 07:53 - 2015-03-14 08:44 - 000000000 ____D C:\Users\Admin\Desktop\AUTODESK.AUTOCAD.V2016.WIN64-ISO
2018-11-04 23:41 - 2018-11-04 23:42 - 4290903984 ____C C:\RAMDisk.img
2018-11-04 23:38 - 2018-11-04 23:38 - 000001995 _____ C:\Users\Public\Desktop\Radeon RAMDisk Configuration Utility.lnk
2018-11-04 23:38 - 2018-11-04 23:38 - 000000000 ____D C:\Users\Admin\AppData\Local\Dataram_Corporation
2018-11-04 23:38 - 2018-11-04 23:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Radeon RAMDisk
2018-11-04 23:38 - 2018-11-04 23:38 - 000000000 ____D C:\Program Files (x86)\Radeon RAMDisk
2018-11-04 15:05 - 2018-11-04 15:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-11-04 15:01 - 2018-11-19 16:47 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2018-11-04 15:01 - 2018-11-04 15:06 - 000000000 ____D C:\ProgramData\Ubisoft
2018-11-04 15:01 - 2018-11-04 15:01 - 000000000 ____D C:\Users\Admin\AppData\Local\Ubisoft Game Launcher
2018-11-04 15:00 - 2018-11-04 15:00 - 000189248 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2018-11-04 15:00 - 2018-11-04 15:00 - 000075136 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2018-11-04 14:59 - 2018-11-04 14:59 - 000000000 ____D C:\Users\Admin\AppData\Roaming\PunkBuster
2018-11-04 14:58 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2018-11-04 14:58 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2018-11-04 14:58 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2018-11-04 14:58 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2018-11-04 14:58 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2018-11-04 14:58 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2018-11-04 14:53 - 2018-11-04 15:05 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-11-04 14:53 - 2018-11-04 14:59 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2018-11-04 14:38 - 2018-11-04 14:38 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Macromedia
2018-11-04 11:51 - 2018-11-04 11:51 - 000001149 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2018-11-04 11:51 - 2018-11-04 11:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2018-11-04 11:51 - 2018-10-15 11:27 - 000168824 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2018-11-04 11:51 - 2018-10-15 11:26 - 000984512 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2018-11-04 11:37 - 2018-11-04 11:37 - 000001122 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2018-11-04 11:37 - 2018-11-04 11:37 - 000000000 ____D C:\Users\Admin\AppData\Local\VS Revo Group
2018-11-04 11:36 - 2018-11-04 11:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2018-11-04 11:36 - 2018-11-04 11:36 - 000000000 ____D C:\ProgramData\VS Revo Group
2018-11-04 11:36 - 2018-11-04 11:36 - 000000000 ____D C:\Program Files\VS Revo Group
2018-11-04 11:36 - 2016-12-21 14:52 - 000040240 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2018-11-04 11:26 - 2018-11-19 16:47 - 000000000 ____D C:\Users\Admin\AppData\Roaming\DAEMON Tools Pro
2018-11-04 11:26 - 2018-11-16 20:40 - 000000000 ____D C:\Program Files\DAEMON Tools Pro
2018-11-04 11:26 - 2018-11-04 11:26 - 000030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtproscsibus.sys
2018-11-04 11:26 - 2018-11-04 11:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2018-11-04 11:20 - 2018-11-04 11:31 - 000000000 ____D C:\ProgramData\DAEMON Tools Pro
2018-11-04 11:19 - 2018-11-19 16:29 - 000000000 ____D C:\Users\Admin\Desktop\Daemon.Tools.Pro.v8.2.0.708.Multilingual.Incl.Patch
2018-11-04 09:07 - 2018-11-04 09:07 - 028097916 _____ C:\Users\Admin\Downloads\Gigantic dildo Goliath for Hotkinkyjo ass - anal fun HKJLIVE 01.11.2018 - XVIDEOS.COM.TS
2018-11-03 10:16 - 2018-11-17 22:39 - 000000000 ____D C:\Users\Admin\AppData\Roaming\FileZilla
2018-11-03 10:16 - 2018-11-03 15:57 - 000000000 ____D C:\Users\Admin\AppData\Local\FileZilla
2018-11-03 10:15 - 2018-11-03 10:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2018-11-03 10:15 - 2018-11-03 10:15 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2018-11-03 08:03 - 2018-11-03 08:04 - 199634545 _____ C:\Users\Admin\Downloads\Ver Tonari no Kyuuketsuki-san Episodio 5 Online Sub Español .mp4
2018-11-02 17:14 - 2018-11-02 17:33 - 000000155 _____ C:\Windows\winamp.ini
2018-11-02 17:14 - 2018-11-02 17:14 - 000001052 _____ C:\Users\Admin\Desktop\Winamp.lnk
2018-11-02 17:14 - 2018-11-02 17:14 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp
2018-11-02 17:14 - 2018-11-02 17:14 - 000000000 ____D C:\Program Files (x86)\Winamp
2018-11-02 17:14 - 2003-10-28 18:34 - 000462848 ____N (Sonic Solutions) C:\Windows\SysWOW64\px.dll
2018-11-02 17:14 - 2003-10-28 18:33 - 000286720 ____N (Sonic Solutions) C:\Windows\SysWOW64\pxwave.dll
2018-11-02 17:14 - 2003-10-28 18:33 - 000143360 ____N (Sonic Solutions) C:\Windows\SysWOW64\pxmas.dll
2018-11-02 17:14 - 2003-10-28 04:02 - 000053248 ____N C:\Windows\SysWOW64\pxhpinst.exe
2018-11-02 17:14 - 2003-10-27 03:00 - 000319488 ____N (Sonic Solutions) C:\Windows\SysWOW64\pxdrv.dll
2018-11-02 17:14 - 2003-10-14 03:00 - 000028672 ____N (Sonic Solutions) C:\Windows\SysWOW64\vxblock.dll
2018-11-01 23:45 - 2018-11-01 23:45 - 000852692 _____ C:\Users\Admin\Downloads\JellyBeanNose GIFs (THT and others; freshly made, lighting i(2).mp4
2018-11-01 23:44 - 2018-11-01 23:44 - 000000000 ____D C:\Program Files\net.downloadhelper.coapp
2018-11-01 23:43 - 2018-11-01 23:43 - 000688604 _____ C:\Users\Admin\Downloads\JellyBeanNose GIFs (THT and others; freshly made, lighting i(1).mp4
2018-11-01 23:42 - 2018-11-01 23:42 - 001132925 _____ C:\Users\Admin\Downloads\JellyBeanNose GIFs (THT and others; freshly made, lighting i.mp4
2018-11-01 20:10 - 2018-11-10 08:55 - 000000000 ____D C:\Users\Admin\AppData\Local\Downloaded Installations
2018-11-01 20:10 - 2018-11-01 20:10 - 000002120 _____ C:\Users\Public\Desktop\RGBFusion.lnk
2018-11-01 20:10 - 2018-11-01 20:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
2018-11-01 20:10 - 2018-11-01 20:10 - 000000000 ____D C:\Program Files (x86)\GIGABYTE
2018-11-01 20:06 - 2018-10-26 01:36 - 000000000 ____D C:\Users\Admin\Desktop\B18.1019.1_Pack
2018-11-01 08:38 - 2018-11-12 14:32 - 000002375 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-11-01 08:38 - 2018-11-12 14:32 - 000002334 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-11-01 08:38 - 2018-11-05 08:29 - 000003608 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-11-01 08:38 - 2018-11-05 08:29 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-11-01 08:38 - 2018-11-01 08:46 - 000000000 ____D C:\Users\Admin\AppData\Local\Google
2018-11-01 08:38 - 2018-11-01 08:38 - 000000000 ____D C:\Program Files (x86)\Google
2018-11-01 08:36 - 2018-11-19 12:00 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\AMD
2018-11-01 08:08 - 2018-11-01 08:08 - 000289856 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys
2018-11-01 08:07 - 2018-11-01 19:24 - 000193168 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_mark.sys
2018-11-01 08:07 - 2018-11-01 08:07 - 000238528 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
2018-11-01 08:07 - 2018-11-01 08:07 - 000110640 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys
2018-10-30 19:56 - 2018-10-30 19:56 - 000000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Reciente
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Plantillas
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Mis documentos
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Menú Inicio
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Impresoras
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Entorno de red
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mis vídeos
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mis imágenes
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mi música
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Datos de programa
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\Configuración local
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historial
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Datos de programa
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Archivos temporales de Internet
2018-10-30 19:56 - 2018-10-30 19:56 - 000000000 ____D C:\Users\DefaultAppPool
2018-10-30 18:45 - 2018-10-30 18:45 - 000000000 ____D C:\Users\Admin\Desktop\Leatrix_Latency_Fix_3.03
2018-10-30 18:44 - 2018-10-30 18:44 - 000000000 ____D C:\Windows\system32\msmq
2018-10-30 17:01 - 2018-10-30 17:01 - 000000852 _____ C:\Users\Admin\Documents\cc_20181030_170107.reg
2018-10-30 16:20 - 2018-10-30 16:20 - 000027434 _____ C:\Users\Admin\Documents\cc_20181030_162044.reg
2018-10-30 16:20 - 2018-10-30 16:20 - 000004032 _____ C:\Users\Admin\Documents\cc_20181030_162054.reg
2018-10-30 16:19 - 2018-11-19 13:20 - 000003936 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-10-30 16:19 - 2018-11-19 13:20 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2018-10-30 16:19 - 2018-10-30 16:19 - 000002870 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2018-10-30 16:19 - 2018-10-30 16:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-10-30 16:19 - 2018-10-30 16:19 - 000000000 ____D C:\Program Files\CCleaner
2018-10-30 16:17 - 2018-10-30 16:17 - 000000000 ____D C:\Windows\system32\appmgmt
2018-10-30 15:21 - 2018-10-30 15:21 - 000000000 ____D C:\Program Files\Common Files\AV
2018-10-30 15:20 - 2018-10-30 15:20 - 000002209 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2018-10-30 15:20 - 2018-10-30 15:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
2018-10-30 15:20 - 2018-10-30 15:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2018-10-30 15:20 - 2013-05-06 08:13 - 000110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2018-10-30 15:19 - 2018-11-19 16:32 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2018-10-30 15:19 - 2018-10-30 15:20 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2018-10-30 15:19 - 2018-10-30 15:19 - 001214752 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2018-10-30 15:19 - 2018-10-30 15:19 - 001113912 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2018-10-30 15:19 - 2018-10-30 15:19 - 000220472 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2018-10-30 15:19 - 2018-10-30 15:19 - 000152960 _____ (AO Kaspersky Lab) C:\Windows\system32\klhkum.dll
2018-10-30 15:18 - 2018-10-30 18:44 - 000000000 ____D C:\inetpub
2018-10-30 15:18 - 2018-10-30 15:18 - 001731692 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2018-10-30 15:18 - 2018-10-30 15:18 - 000000000 ____D C:\Windows\SysWOW64\BestPractices
2018-10-30 15:18 - 2018-10-30 15:18 - 000000000 ____D C:\Windows\system32\BestPractices
2018-10-30 15:17 - 2018-10-30 15:17 - 000000000 ____D C:\Program Files\Reference Assemblies
2018-10-30 15:17 - 2018-10-30 15:17 - 000000000 ____D C:\Program Files\MSBuild
2018-10-30 15:17 - 2018-10-30 15:17 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2018-10-30 15:17 - 2018-10-30 15:17 - 000000000 ____D C:\Program Files (x86)\MSBuild
2018-10-30 15:16 - 2015-08-11 22:52 - 000000000 ____D C:\sources
2018-10-30 15:16 - 2015-06-17 18:10 - 001166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2018-10-30 15:16 - 2015-06-17 18:10 - 000124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2018-10-30 15:16 - 2015-06-17 18:10 - 000035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2018-10-30 15:16 - 2015-05-29 21:07 - 000778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2018-10-30 15:16 - 2015-05-29 21:07 - 000102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2018-10-30 15:16 - 2015-05-29 21:07 - 000035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2018-10-30 15:01 - 2018-10-30 15:01 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2018-10-30 14:22 - 2018-11-05 18:25 - 000000000 ____D C:\Users\Admin\VirtualBox VMs
2018-10-30 14:08 - 2018-10-30 14:08 - 019641208 _____ C:\Users\Admin\Downloads\Oracle_VM_VirtualBox_Extension_Pack-5.2.20-125813.vbox-extpack
2018-10-30 14:07 - 2018-11-17 23:14 - 000000000 ____D C:\Users\Admin\.VirtualBox
2018-10-30 14:06 - 2018-11-04 11:51 - 000000000 ____D C:\Program Files\Oracle
2018-10-30 11:29 - 2018-11-18 23:57 - 000000000 ____D C:\Users\Admin\AppData\Roaming\WhatsApp
2018-10-30 11:29 - 2018-11-09 08:48 - 000002265 _____ C:\Users\Admin\Desktop\WhatsApp.lnk
2018-10-30 11:29 - 2018-11-09 08:48 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2018-10-30 11:29 - 2018-11-09 08:47 - 000000000 ____D C:\Users\Admin\AppData\Local\WhatsApp
2018-10-30 11:29 - 2018-11-09 08:47 - 000000000 ____D C:\Users\Admin\AppData\Local\SquirrelTemp
2018-10-30 10:51 - 2018-10-30 10:51 - 000003786 _____ C:\Windows\System32\Tasks\KMSAutoNet
2018-10-30 10:17 - 2018-10-30 10:17 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TightVNC
2018-10-30 10:05 - 2018-10-30 10:12 - 000000000 ____D C:\Users\Admin\Desktop\Respaldo Bianca Pavimentos
2018-10-30 08:40 - 2018-10-30 08:40 - 000000000 ____D C:\Users\Admin\AppData\Roaming\MPC-HC
2018-10-30 08:40 - 2018-10-30 08:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit
2018-10-30 08:40 - 2018-10-30 08:40 - 000000000 ____D C:\Program Files\Combined Community Codec Pack 64bit
2018-10-30 07:49 - 2018-11-19 16:47 - 000000000 ____D C:\Users\Admin\AppData\Roaming\TeamViewer
2018-10-30 07:49 - 2018-11-19 16:29 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2018-10-30 07:49 - 2018-10-30 07:49 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 13.lnk
2018-10-30 07:49 - 2018-10-30 07:49 - 000001104 _____ C:\Users\Public\Desktop\TeamViewer 13.lnk
2018-10-30 07:43 - 2018-10-30 07:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightVNC
2018-10-30 07:43 - 2018-10-30 07:43 - 000000000 ____D C:\Program Files\TightVNC
2018-10-30 07:32 - 2018-11-19 16:47 - 000000000 ____D C:\Windows\Minidump
2018-10-30 07:25 - 2018-10-30 07:25 - 057284896 _____ C:\Users\Admin\Downloads\PROWinx64Legacy.exe
2018-10-30 07:21 - 2018-10-30 07:21 - 000000000 ____D C:\Users\Admin\Desktop\Aida64
2018-10-30 07:13 - 2018-10-30 07:18 - 000000000 ____D C:\Users\Admin\Documents\Mabinogi
2018-10-30 07:13 - 2018-10-30 07:13 - 000000000 ____D C:\Users\Admin\Documents\마비노기
2018-10-30 07:13 - 2018-10-30 07:13 - 000000000 ____D C:\ProgramData\Nexon
2018-10-30 07:12 - 2018-10-30 07:12 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-10-30 07:12 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2018-10-30 07:12 - 2010-06-02 04:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2018-10-30 07:12 - 2010-06-02 04:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2018-10-30 07:12 - 2010-06-02 04:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2018-10-30 07:12 - 2010-06-02 04:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2018-10-30 07:12 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 002526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2018-10-30 07:12 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2018-10-30 07:12 - 2010-02-04 10:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2018-10-30 07:12 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2018-10-30 07:12 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2018-10-30 07:12 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2018-10-30 07:12 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2018-10-30 07:12 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2018-10-30 07:12 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2018-10-30 07:12 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2018-10-30 07:12 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2018-10-30 07:12 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2018-10-30 07:12 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2018-10-30 07:12 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2018-10-30 07:12 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2018-10-30 07:12 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2018-10-30 07:12 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2018-10-30 07:12 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2018-10-30 07:12 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2018-10-30 07:12 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2018-10-30 07:12 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2018-10-30 07:12 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2018-10-30 07:12 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2018-10-30 07:12 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2018-10-30 07:12 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2018-10-30 07:12 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2018-10-30 07:12 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2018-10-30 07:12 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2018-10-30 07:12 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2018-10-30 07:12 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2018-10-30 07:12 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2018-10-30 07:12 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2018-10-30 07:12 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2018-10-30 07:12 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2018-10-30 07:12 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2018-10-30 07:12 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2018-10-30 07:12 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2018-10-30 07:12 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2018-10-30 07:12 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2018-10-30 07:12 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2018-10-30 07:12 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2018-10-30 07:12 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2018-10-30 07:12 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2018-10-30 07:12 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2018-10-30 07:12 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2018-10-30 07:12 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2018-10-30 07:12 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2018-10-30 07:12 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2018-10-30 07:12 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2018-10-30 07:12 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2018-10-30 07:12 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2018-10-30 07:12 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2018-10-30 07:12 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2018-10-30 07:12 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2018-10-30 07:12 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2018-10-30 07:12 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2018-10-30 07:12 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2018-10-30 07:12 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2018-10-30 07:12 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2018-10-30 07:12 - 2007-04-04 18:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2018-10-30 07:12 - 2007-04-04 18:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2018-10-30 07:12 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2018-10-30 07:12 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2018-10-30 07:12 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2018-10-30 07:12 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2018-10-30 07:12 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2018-10-30 07:12 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2018-10-30 07:12 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2018-10-30 07:12 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2018-10-30 07:12 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2018-10-30 07:12 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2018-10-30 07:12 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2018-10-30 07:12 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2018-10-30 07:12 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2018-10-30 07:12 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2018-10-30 07:12 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2018-10-30 07:12 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2018-10-30 07:12 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2018-10-30 07:12 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2018-10-30 07:12 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2018-10-30 07:12 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2018-10-30 07:12 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2018-10-30 07:12 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2018-10-30 07:12 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2018-10-30 07:12 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2018-10-30 07:12 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2018-10-30 07:12 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2018-10-30 07:12 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2018-10-30 07:12 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2018-10-30 07:12 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2018-10-30 07:12 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2018-10-30 07:12 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2018-10-30 07:12 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
Segunda parte de FRST:
2018-10-30 07:12 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2018-10-30 07:12 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2018-10-30 07:12 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2018-10-30 07:12 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2018-10-30 07:12 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2018-10-30 07:12 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2018-10-30 07:12 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2018-10-30 07:12 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2018-10-30 07:12 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2018-10-30 07:12 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2018-10-30 07:12 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2018-10-30 07:12 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2018-10-30 07:12 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2018-10-30 07:12 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2018-10-30 07:12 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2018-10-30 07:12 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2018-10-30 07:08 - 2018-11-19 16:47 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IDM
2018-10-30 07:08 - 2018-11-19 16:28 - 000000000 ____D C:\Users\Admin\AppData\Roaming\DMCache
2018-10-30 07:08 - 2018-11-19 13:53 - 000000000 ____D C:\Users\Admin\Downloads\Video
2018-10-30 07:08 - 2018-11-18 16:27 - 000000000 ____D C:\Users\Admin\Downloads\Compressed
2018-10-30 07:08 - 2018-10-30 07:08 - 000000000 ____D C:\ProgramData\IDM
2018-10-30 07:05 - 2018-10-30 07:05 - 000002198 _____ C:\Users\Admin\Desktop\Mabinogi.lnk
2018-10-30 07:05 - 2018-10-30 07:05 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon
2018-10-30 07:03 - 2018-10-30 07:03 - 004214704 _____ (Don HO [email protected]) C:\Users\Admin\Downloads\npp.7.5.9.Installer.exe
2018-10-30 07:03 - 2018-10-30 07:03 - 000001104 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
2018-10-30 07:03 - 2018-10-30 07:03 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Notepad++
2018-10-30 07:03 - 2018-10-30 07:03 - 000000000 ____D C:\Users\Admin\AppData\Local\Notepad++
2018-10-30 07:03 - 2018-10-30 07:03 - 000000000 ____D C:\Program Files (x86)\Notepad++
2018-10-30 07:01 - 2018-11-17 23:18 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager
2018-10-30 07:01 - 2018-11-17 23:17 - 000001082 _____ C:\Users\Admin\Desktop\Internet Download Manager.lnk
2018-10-30 07:01 - 2018-10-30 07:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2018-10-30 07:01 - 2018-10-30 07:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2018-10-30 07:00 - 2018-10-30 07:00 - 002524384 _____ (Kaspersky Lab) C:\Users\Admin\Downloads\startup_14804.exe
2018-10-30 07:00 - 2018-07-11 05:03 - 000000000 ____D C:\Users\Admin\Desktop\Internet.Download.Manager.v6.31.Build.3.Retail.FiNAL.Incl.Crack-addhaloka+PORTABLE
2018-10-30 06:56 - 2018-10-30 06:56 - 017267404 _____ C:\Users\Admin\Downloads\6.31.3.rar
2018-10-30 06:47 - 2018-10-30 06:47 - 000000000 ____D C:\Nexon
2018-10-30 06:42 - 2018-10-30 06:42 - 000002156 _____ C:\Users\Public\Desktop\Nexon Launcher.lnk
2018-10-30 06:42 - 2018-10-30 06:42 - 000000000 ____D C:\Users\Admin\AppData\Roaming\NexonLauncherSwapApp
2018-10-30 06:42 - 2018-10-30 06:42 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Nexon Launcher
2018-10-30 06:40 - 2018-11-19 16:28 - 000000000 ____D C:\Users\Admin\AppData\Roaming\NexonLauncher
2018-10-30 06:40 - 2018-10-30 06:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2018-10-30 06:40 - 2018-10-30 06:40 - 011765112 _____ C:\Users\Admin\Downloads\NexonLauncherSetup.exe
2018-10-30 06:40 - 2018-10-30 06:40 - 000000000 ____D C:\Program Files (x86)\Nexon
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================
Informe de Addition:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15.11.2018
Ran by Admin (19-11-2018 17:30:58)
Running from C:\Users\Admin\Desktop
Windows 10 Pro Version 1607 (X64) (2018-10-30 05:48:32)
Boot Mode: Normal
==================== Accounts: =============================
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
==================== Alternate Data Streams (Whitelisted) =========
==================== Safe Mode (Whitelisted) ===================
==================== Association (Whitelisted) ===============
==================== Internet Explorer trusted/restricted ===============
==================== Hosts content: ==========================
==================== Other Areas ============================
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
==================== FirewallRules (Whitelisted) ===============
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
==================== Memory info ===========================
==================== Drives ================================
==================== MBR & Partition Table ==================
==================== End of Addition.txt ============================
Cuanto tiempo hace que usas Kaspersky como antivirus ?
Abrí un nuevo archivo Notepad y copia y pega este contenido:
() C:\Windows\SysWOW64\PnkBstrA.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(MPC-HC Team) C:\Program Files\Combined Community Codec Pack 64bit\MPC\mpc-hc64.exe
HKLM\...\Run: [MsmqIntCert] => "C:\Windows\System32\regsvr32.exe" /s "C:\Windows\System32\mqrt.dll"
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3973176 2018-10-17] (Tonec Inc.)
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\MountPoints2: {60ea5ee5-e053-11e8-bbcd-e0d55e8bc5ca} - "F:\setup.exe"
HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\MountPoints2: {60ea605e-e053-11e8-bbcd-e0d55e8bc5ca} - "H:\setup.exe"
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
FF DefaultProfile: e9d8nqvf.default
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\e9d8nqvf.default [2018-11-19]
FF Extension: (IDM Integration Module) - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2018-10-17]
FF HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Admin\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Admin\AppData\Roaming\IDM\idmmzcc5 [2018-10-30] [Legacy] [not signed]
FF HKU\S-1-5-21-1755836162-1755776415-1301256422-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Legacy]
CHR HKLM\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2018-10-18]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2018-11-04] ()
CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.
Aqui esta el informe de Farbar:
Fix result of Farbar Recovery Scan Tool (x64) Version: 15.11.2018
Ran by Admin (19-11-2018 17:49:27) Run:1
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: defaultuser0 & Admin & DefaultAppPool)
Boot Mode: Normal
fixlist content:
llevare unos 20 días me canse de Avast y estaba probando Kaspersky para ver si compraba una licencia de la version Internet Security
Y como sigue el problema que mencionaste inicialmente ?
Durante los escaneos no me ha vuelto a aparecer el error de pantalla azul, pero siento que la maquina tarda mucho en arrancar, cuando inicia en la barra de tareas tengo ancladas un par de aplicaciones tarda como 30 segundos después de que me muestra el escritorio en aparecer. Eso y también uso dos monitores el segundo monitor parpadea de vez en cuando cuando abro un video o entro a un video online.
Controla el Pc y nos comentas cómo sigue el problema que planteaste inicialmente.
Volve a descargar Delfix y ejecútalo tal como lo hiciste anteriormente.
Espero esa respuesta.
Voy a meterle caña a la maquina y te comento en un par de minutos, si algo mas esta pasando.
No me ha vuelto a mostrar la pantalla azul con letras blancas. Espero que no vuelva a aparecer.
Descargá la herramienta Delfix a Tu escritorio.
Ejecutala, Tildá la casilla Remove disinfection tools y presioná Run
Al terminar Se abrirá un reporte llamado DelFix.txt, verifica que se hayan eliminado las herramientas usadas para desinfectar el Pc.
Para cualquier otro problema, no dudes en volver a postear. Ya sabes dónde estamos.
Tema Solucionado
Este tema se cerró automáticamente 2 días después del último post. No se permiten nuevas respuestas.