Inicio lento y salto de paginas publicidad

Hola amigos buenas tardes, Desde hace unos días el inicio del ordenador es demasiado lento, incluso habiendo borrado los programas innecesarios que se cargan al iniciar. Ademas, en algunas paginas web (p.ej. ww.mejorenvo.me) al cliquear en alguno de los enlaces me abre otras páginas) , lo cual no pasaba antes. Muchas gracias por vuestra ayuda. Un saludo,

Hola @yaguico1.

Para revisar tu máquina, sigue estos pasos, en el orden indicado y leyendo todo lo explicado. :+1:

:one: Desactiva temporalmente el Antivirus :arrow_forward: Cómo deshabilitar temporalmente su Antivirus, mientras estemos realizando TODOS los pasos.

Vamos a descargar en TU ESCRITORIO(y NO en otro lugar :face_with_monocle:) todas las herramientas que vamos a utilizar en este procedimiento (pero no las ejecutes todavía) :


:two: Ejecutas las herramientas de una en una y en el orden indicado :



CCleaner.-

  • Instalas y Ejecutas CCleaner siguiendo los pasos indicados en el manual.

  • Úsalo primero en su opción de Limpiador para borrar cookies, temporales de Internet y todos los archivos que te muestre como obsoletos.

  • Después usa su opción de Registro para limpiar todo el registro de Windows(haciendo copia de seguridad).

Malwarebytes.-

  • Instalas y Ejecutas MBAM siguiendo los pasos indicados en el manual.

  • Realiza un Análisis Personalizado. :white_check_mark:

  • Seleccionando TODOS a Cuarentena para enviarlo a la cuarentena y Reinicias el sistema.

  • En el apartado del programa :arrow_forward: Historial de detecciones :arrow_backward: encontrarás el informe de MBAM, que debes copiar y pegar en tu próxima respuesta, para poder analizarlo.

AdwCleaner.-

  • Ejecuta Adwcleaner.exe.

  • Pulsamos en el botón Analizar ahora, y espera a que se realice el proceso, inmediatamente pulsa siempre sobre el botón Iniciar Reparación.

  • Espera a que se complete y sigue las instrucciones, si te pidiera Reiniciar el sistema Aceptas.

  • El log/informe lo encontramos en la pestaña “Informes”, volviendo a abrir el programa si fuese necesario, para poder copiarlo y pegarlo en tu próxima respuesta.

  • El informe también se puede encontrar en C:\AdwCleaner\Logs\AdwCleaner[C00].txt

Junkware Removal Tool.-

  • Ejecuta JRT.exe.

  • Y pulsar cualquier tecla para continuar, esperar pacientemente a que termine el proceso.

  • Si en algún momento te pide Reiniciar hazlo.

  • Al finalizar, un registro/informe (JRT.txt) se guardara en el escritorio y se abrirá automáticamente.

  • Copia y pega el contenido de JRT.txt en tu próxima respuesta.

Farbar Recovery Scan Tool.-

  • Ejecuta FRST.exe.

  • En el mensaje de la ventana del Disclaimer/Responsabilidad, pulsamos Sí/Yes

  • En la ventana principal pulsamos en el botón Analizar/Scan y esperamos a que concluya el proceso.

  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

:three: Poner los informes en tu próxima respuesta de :

  • Malwarebytes, AdwCleaner, JRT, FRST + Addition.txt, y en ese orden. :+1:

Debes copiarlos y pegarlos con todo su contenido y usaras varios mensajes si recibes un mensaje de error indicando que es muy largo(más de 64.000 caracteres aprox.).

Y nos cuentas como funciona tu equipo en relación al problema planteado. :face_with_monocle:

Saludos Javier.

Hola Javier te paso el primer informe

Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 19/3/20
Hora del análisis: 19:00
Archivo de registro: 92fec5d8-6a0b-11ea-b317-68f728537674.json

-Información del software-
Versión: 4.1.0.56
Versión de los componentes: 1.0.848
Versión del paquete de actualización: 1.0.20770
Licencia: Caducado

-Información del sistema-
SO: Windows 10 (Build 17763.1098)
CPU: x64
Sistema de archivos: NTFS
Usuario: EldeJuan\Juan

-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 319222
Amenazas detectadas: 0
Amenazas en cuarentena: 0
Tiempo transcurrido: 9 min, 17 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 0
(No hay elementos maliciosos detectados)

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

2º Informe

# -------------------------------
# Malwarebytes AdwCleaner 8.0.3.0
# -------------------------------
# Build:    03-03-2020
# Database: 2020-03-02.1 (Local)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start:    03-19-2020
# Duration: 00:00:25
# OS:       Windows 10 Home
# Scanned:  31902
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner_Debug.log - [50983 octets] - [07/11/2019 17:11:49]
AdwCleaner[S00].txt - [3341 octets] - [07/11/2019 17:12:36]
AdwCleaner[S01].txt - [3403 octets] - [07/11/2019 17:13:14]
AdwCleaner[C01].txt - [3220 octets] - [07/11/2019 17:15:00]
AdwCleaner[S02].txt - [1572 octets] - [07/11/2019 17:37:44]
AdwCleaner[S03].txt - [1633 octets] - [17/01/2020 19:14:27]
AdwCleaner[C03].txt - [1821 octets] - [17/01/2020 19:15:04]
AdwCleaner[S04].txt - [1835 octets] - [07/02/2020 14:02:35]
AdwCleaner[S05].txt - [1896 octets] - [07/02/2020 14:03:23]
AdwCleaner[S06].txt - [1957 octets] - [15/03/2020 19:53:55]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S07].txt ##########

3er. informe

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64 
Ran by Juan (Administrator) on 19/03/2020 at 19:55:52,71
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0 




Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 19/03/2020 at 20:06:03,19
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

4º informe


Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 08-03-2020
Ejecutado por Juan (administrador) sobre ELDEJUAN (LENOVO 20354) (19-03-2020 20:07:16)
Ejecutado desde C:\Users\Juan\Desktop
Perfiles cargados: Juan (Perfiles disponibles: Juan)
Platform: Windows 10 Home Versión 1809 17763.1098 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesos (Lista blanca) =================

(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Huawei Technologies Co., Ltd. -> ) [Archivo no firmado] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) [Archivo no firmado] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Windows\System32\LenovoWiFiHotspotSvr.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe

==================== Registro (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-02-26] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo (Beijing) Limited -> Lenovo)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534712 2019-04-23] (CyberLink Corp. -> CyberLink Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [5060864 2015-06-16] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534712 2019-04-23] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-07-29] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [237416 2020-03-03] (IDSA Production signing key -> Intel)
HKLM-x32\...\Run: [BePCSC] => C:\Program Files (x86)\EmvSmartCardReader\BePCSC.exe [130560 2007-05-03] () [Archivo no firmado]
HKLM-x32\...\Run: [SmartMon] => C:\Program Files (x86)\EmvSmartCardReader\SmartMON.exe [234496 2006-12-18] () [Archivo no firmado]
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (Shenzhen Yi Xing Investment Co., Ltd. -> iSkySoft)
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [] => [X]
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [9198512 2019-04-09] (Support.com, Inc. -> SUPERAntiSpyware)
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [Power2GoExpress13] => C:\Program Files (x86)\CyberLink\Power2Go13\Power2GoExpress.exe [3697848 2019-07-29] (CyberLink Corp. -> CyberLink Corp.)
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3a75-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe" 
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3aa0-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe" 
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {643df438-3955-11ea-840f-0071cca1738a} - "F:\HiSuiteDownLoader.exe" 
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {7cd6a871-e66f-11e8-83b4-0071cca1738a} - "F:\HiSuiteDownLoader.exe" 
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4417008 2020-03-11] (Microsoft Windows -> Microsoft Corporation) <==== ATENCIÓN
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\Lenovo\Bluetooth Software\\BtwCP.dll [2014-03-14] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> 
Startup: C:\Users\Juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Supervisar alertas de tinta - HP Deskjet 3000 J310 series.lnk [2018-10-01]
ShortcutAndArgument: Supervisar alertas de tinta - HP Deskjet 3000 J310 series.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 3000 J310 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN0CM25GYQ05HZ;CONNECTION=USB;MONITOR=1;
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN

==================== Tareas programadas (Lista blanca) ============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

Task: {016D987F-B719-41F2-8468-06FCB5D94725} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-08-17] (Google Inc -> Google Inc.)
Task: {06FAC000-63CB-4962-BF8B-92E12B460A0C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {06FD6B67-1D21-4C71-B691-595F6FE039AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {0856F86C-B72E-44D1-AE03-349BECDAC8C3} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\4 => C:\WINDOWS\RTFTrack.exe [5060864 2015-06-16] (Realtek Semiconductor Corp -> Realtek semiconductor)
Task: {0A50BBC0-3627-4BBF-BC51-09DC02853B29} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Ningún archivo <==== ATENCIÓN
Task: {10696397-ECDC-4D3D-AD52-65BEBD8BE87B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {12611164-CB2D-4B76-94A0-7C9815D0767A} - System32\Tasks\Avira\System Speedup\TestScheduler => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe
Task: {16D54C73-6BCE-4A96-B6BD-3BC09E14FEFD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-08-17] (Google Inc -> Google Inc.)
Task: {1A9070E1-638A-4E59-ADC4-26FC356E34F6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {24DCF9AA-0F1D-46F9-A393-59DCF9295E5C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Ningún archivo <==== ATENCIÓN
Task: {29A807CE-D8ED-4CD0-8316-D2EEA6DC5CED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {2CB658CF-DF76-4D2F-A268-E4B88E943D8C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
Task: {2DC4948C-DABC-4F8A-990C-1113AFC10F85} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {36A45B55-AAB6-4C8A-98DE-C36BD927605F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3924F007-F1EE-4109-8503-F0B752290757} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3D0F6290-AA42-41F1-9255-449DBC8CBD6D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {42FF1A75-EC8D-49FA-99BE-9627A3E6963A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {4523E0DF-AF7B-4A93-AD6E-CF92EADC8F0A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4A80605E-C8CC-4146-A0DA-00FEAAD3104A} - System32\Tasks\HPCeeScheduleForJuan => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [99392 2016-05-12] (Hewlett-Packard Company -> HP Development Company, L.P.)
Task: {4C045FD5-3B60-4F55-B630-B35A8E3EC419} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
Task: {4FF4A3FA-4BFD-4183-B250-7F944C69591A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe
Task: {5585529D-C55C-4503-9CEB-9A98D87367D1} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\3 => C:\Program Files (x86)\EmvSmartCardReader\SmartMON.exe [234496 2006-12-18] () [Archivo no firmado]
Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [31232 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
Task: {5CC87ACE-92F0-449A-8F1F-B4877207FF3B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [286096 2020-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {6E901901-3172-4C2B-9634-3168388566B3} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {708B530D-7717-41B7-B013-FFCED96D47AC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {71AA6051-0D0A-4A1A-8D5B-CA2669B00852} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7415C6A0-D624-4844-BC2C-AEF58C30F739} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7541325E-67F0-4778-A4C3-73D22BD04864} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_Plugin.exe [1457208 2019-07-16] (Adobe Inc. -> Adobe)
Task: {79860A99-5D56-46FB-8D46-7C927A2FAA40} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [17184 2014-09-10] (LENOVO -> Lenovo)
Task: {81BC6CA8-1D55-4852-9012-4B221F0B38D6} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
Task: {83A2BE84-2C8C-4F89-A630-ECFBDE71E7E6} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-07-16] (Adobe Inc. -> Adobe)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {87FF2F9C-1F46-4354-8223-6D4772AD4633} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8FC6B5F5-E711-4545-9F10-CEBBC00DEA88} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {94E869E4-9850-4122-83C6-A6BD9C567810} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [1449472 2018-08-14] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {964D2D7F-2B9A-47BB-8877-603A8ED9315A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {98850092-A65D-47CA-ACF9-3B409A5414A8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [286096 2020-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {994591F7-2272-4139-B9B8-5B6138124AED} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {A0AE4D0E-32AF-41E1-B75D-6F699D7A797A} - System32\Tasks\{1E108F67-4046-4687-B76A-EC8F24A56D15} => C:\WINDOWS\system32\pcalua.exe -a E:\_Start.exe -d E:\
Task: {A78620A4-7167-4621-97D0-242490613E1F} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AB1FC69A-5E52-488B-939F-D52B13DD506D} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\1 => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (Shenzhen Yi Xing Investment Co., Ltd. -> iSkySoft)
Task: {ABF25B7B-D0B1-4FB9-B8D1-AEFEA4CD2F3B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {B4E2CD8E-647F-48A3-940F-C4000CF1FD14} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B9FAC695-B746-4DC2-84EC-A8BDBE22015F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C2033355-A817-4F7B-AC08-705F3E8B3188} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe
Task: {C7BC6A24-E53E-4962-AB63-7CDDEC4C3F40} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [17152 2014-08-18] (LENOVO -> Lenovo)
Task: {C9A5DA8B-E89D-48C4-AA24-9FDCD6661110} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\2 => C:\Program Files (x86)\EmvSmartCardReader\BePCSC.exe [130560 2007-05-03] () [Archivo no firmado]
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {D0E0046B-3969-4A61-A1C8-40FF807EB774} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {D39CD7B7-3587-432B-9D17-7275A2AFF9B9} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
Task: {DED2FA03-2DED-4277-B00F-EA7131E0AA7E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ED65D48D-DEFD-412D-B34B-8EC492ED305E} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe
Task: {F5538C80-A996-414C-824D-F4D7C0EF05B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe

(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)

Task: C:\WINDOWS\Tasks\HPCeeScheduleForJuan.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Internet (Lista blanca) ====================

(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)

Tcpip\Parameters: [DhcpNameServer] 80.58.61.250 80.58.61.254
Tcpip\..\Interfaces\{26db4211-1bd0-440a-92ae-b4dd068bc57a}: [DhcpNameServer] 80.58.61.250 80.58.61.254
Tcpip\..\Interfaces\{8569eec4-f102-4731-9b3b-c838840c91b3}: [DhcpNameServer] 80.58.61.250 80.58.61.254

Internet Explorer:
==================
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://es.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10454__190928__yaie
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
SearchScopes: HKU\S-1-5-21-1046919139-3393652339-1846237276-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2019-10-25] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2019-10-25] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2019-10-25] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-07-16] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2019-10-25] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-07-16] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-10-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: WSISAllmytubechrome - {4724F5AF-4E6D-41CA -  Ningún archivo

Edge: 
======
DownloadDir: C:\Users\Juan\Downloads

FireFox:
========
FF DefaultProfile: ffnsc1b0.default
FF ProfilePath: C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default [2020-03-19]
FF Homepage: Mozilla\Firefox\Profiles\ffnsc1b0.default -> hxxps://www.malwarebytes.org/restorebrowser/
FF Extension: (hotfix-update-xpi-intermediate) - C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\Extensions\[email protected] [2019-05-10]
FF Extension: (Avira Password Manager) - C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\Extensions\[email protected] [2019-11-02]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\Extensions\[email protected] [2019-07-03]
FF Extension: (Avast Online Security) - C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\Extensions\[email protected] [2019-07-03]
FF SearchPlugin: C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\searchplugins\bing-lavasoft-ff59.xml [2019-09-18]
FF HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Firefox\Extensions: [[email protected]] - C:\Users\Juan\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => no encontrado
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_223.dll [2019-07-16] (Adobe Inc. -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Ningún archivo]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_223.dll [2019-07-16] (Adobe Inc. -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-07-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-07-16] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-04-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1046919139-3393652339-1846237276-1002: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Juan\AppData\Roaming\ACEStream\player\npace_plugin.dll [Ningún archivo]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default [2020-03-19]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://drive.google.com; hxxps://forospyware.com; hxxps://kkhxzrp.tk; hxxps://www.farmavazquez.com
CHR HomePage: Default -> hxxp://www.google.com
CHR Extension: (Documentos) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-03-20]
CHR Extension: (Google Drive) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-03-20]
CHR Extension: (YouTube) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-03-20]
CHR Extension: (Conversor de archivos de Online-Convert.com) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dicgkflojhbopmagcacdklcpdfdcnhko [2019-09-16]
CHR Extension: (Adobe Acrobat) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-03-03]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-11]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-03-18]
CHR Extension: (Avast Online Security) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-02-28]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2020-03-15]
CHR Extension: (EPUBReader) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhhclmfgfllimlhabjkgkeebkbiadflb [2019-09-25]
CHR Extension: (Player para ver Movistar+) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kenfcfndncbbggmafjjeihkdclggbojn [2020-01-22]
CHR Extension: (Descargador de videos para FB) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbfelcbbdflmahghonblgdjhmoeclfnl [2018-11-28]
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-13]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Video Downloader para FaceBook™) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfnmibjifkhhblmdmaocfohebdpfppkf [2019-11-14]
CHR Extension: (Gmail) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-14]
CHR Extension: (Youtube to Mp3 Converter) - C:\Users\Juan\Desktop\Convertidor mp3 YouTube [2017-01-24]
CHR Profile: C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-03-19]
CHR Profile: C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-03-19]
CHR Extension: (Presentaciones) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-13]
CHR Extension: (Documentos) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-13]
CHR Extension: (Google Drive) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-13]
CHR Extension: (YouTube) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-13]
CHR Extension: (Avira Password Manager) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2020-01-24]
CHR Extension: (Avira Safe Shopping) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2020-01-24]
CHR Extension: (Tampermonkey) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2020-01-24]
CHR Extension: (Adobe Acrobat) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-09-20]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-01-24]
CHR Extension: (Hojas de cálculo) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-13]
CHR Extension: (Avira Navegación segura) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2020-01-24]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-01-24]
CHR Extension: (Avast Online Security) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-01-24]
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2019-05-13]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-01-24]
CHR Extension: (Gmail) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-13]
CHR Extension: (Chrome Media Router) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-01-24]
CHR Profile: C:\Users\Juan\AppData\Local\Google\Chrome\User Data\System Profile [2020-03-19]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]
CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]

==================== Servicios (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2017-01-31] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3058256 2019-02-13] (Microsoft Corporation -> Microsoft Corporation)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [37224 2020-03-03] (IDSA Production signing key -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [143720 2020-03-03] (IDSA Production signing key -> Intel)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [134872 2017-10-30] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2019-09-25] (Mixbyte Inc -> Freemake)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Archivo no firmado]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373688 2017-06-12] (Intel(R) pGFX -> Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Archivo no firmado]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [561408 2014-09-22] (LENOVO -> Lenovo)
R2 LenovoWiFiHotspotSvr; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192 2014-12-21] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6933272 2020-03-15] (Malwarebytes Inc -> Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Controladores (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

R3 ApkbfiltrService; C:\WINDOWS\System32\drivers\Apkbfiltr.sys [31016 2015-07-23] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
R2 CLFCL5.19; C:\WINDOWS\system32\DRIVERS\CLFCL5.19\000.fcl [46824 2019-04-08] (CyberLink Corp. -> CyberLink Corp.)
R3 CLVirtualBus01; C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 EMVSCARD; C:\WINDOWS\System32\Drivers\EMVSCARD.sys [24576 2008-09-08] (Microsoft Windows Hardware Compatibility Publisher -> USB Smart Card Reader)
S3 ETDSMBus; C:\WINDOWS\system32\DRIVERS\ETDSMBus.sys [32328 2017-10-30] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
S3 fiddrv64; no ImagePath
S3 gfiark; C:\WINDOWS\System32\drivers\gfiark.sys [40584 2015-08-27] (Threattrack Security, Inc. -> ThreatTrack Security)
S3 gfiutil; C:\WINDOWS\System32\drivers\gfiutil.sys [32400 2016-03-04] (ThreatTrack Security, Inc. -> ThreatTrack Security)
S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [57728 2020-02-07] (SurfRight B.V. -> )
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-03-19] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-03-19] (Malwarebytes Inc -> Malwarebytes)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_83a389b28f4c421e\nvlddmkm.sys [17544792 2019-02-04] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
S3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2019-12-04] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1167768 2019-10-21] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [445016 2019-09-25] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3068160 2015-06-16] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [40368 2019-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-05] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [47496 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [337632 2019-06-05] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] (CyberLink -> "CyberLink)
R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)

==================== NetSvcs (Lista blanca) ===================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)


==================== Tres meses (creado) ===================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-03-19 20:07 - 2020-03-19 20:09 - 000043598 _____ C:\Users\Juan\Desktop\FRST.txt
2020-03-19 20:06 - 2020-03-19 20:08 - 000000000 ____D C:\FRST
2020-03-19 20:06 - 2020-03-19 20:06 - 000000546 _____ C:\Users\Juan\Desktop\JRT.txt
2020-03-19 19:51 - 2020-03-19 19:51 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-03-19 19:51 - 2020-03-19 19:51 - 000214496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-03-19 19:29 - 2020-03-19 19:29 - 000002018 _____ C:\Users\Juan\Desktop\AdwCleaner[S07].txt
2020-03-19 19:26 - 2020-03-19 19:26 - 008199856 _____ (Malwarebytes) C:\Users\Juan\Desktop\adwcleaner_8.0.3.exe
2020-03-19 19:24 - 2020-03-19 19:24 - 000001539 _____ C:\Users\Juan\Desktop\malware.txt
2020-03-19 18:16 - 2020-03-19 18:16 - 002279936 _____ (Farbar) C:\Users\Juan\Desktop\FRST64.exe
2020-03-19 18:13 - 2020-03-19 18:13 - 001790024 _____ (Malwarebytes) C:\Users\Juan\Desktop\JRT.exe
2020-03-19 18:07 - 2020-03-19 18:07 - 001928352 _____ (Malwarebytes) C:\Users\Juan\Desktop\MBSetup.exe
2020-03-19 13:17 - 2020-03-19 13:17 - 000000000 ____D C:\Users\Juan\Documents\samsung
2020-03-17 11:26 - 2020-03-17 12:59 - 000000000 ____D C:\Users\Juan\AppData\LocalLow\BitTorrent
2020-03-16 10:57 - 2020-03-19 18:57 - 000000000 ____D C:\Users\Juan\AppData\Roaming\BitTorrent
2020-03-16 10:57 - 2020-03-16 10:57 - 000000965 _____ C:\Users\Juan\Desktop\BitTorrent.lnk
2020-03-14 19:44 - 2020-03-14 19:44 - 000100170 _____ C:\Users\Juan\Downloads\Informe-03032020.pdf
2020-03-13 20:25 - 2020-03-13 20:25 - 004665282 _____ C:\Users\Juan\Downloads\The Humane League - Cow Brush _ Facebook.mp4
2020-03-11 19:33 - 2020-03-11 19:33 - 011723776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 003550624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 002751336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 002469432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 002323688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 002273296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 002100056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001876960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001707208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001605000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001430880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001296360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001288648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001201128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 001076040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000763032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2020-03-11 19:33 - 2020-03-11 19:33 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 026807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 023463424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 019020288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 013013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 012306432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 008907776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 007923712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 007870976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 004872704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 004664320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 004066816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 003952760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 003909632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 003703808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 002986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 002298880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 002182456 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 002150912 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeangle.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001750528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001229824 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2020-03-11 19:32 - 2020-03-11 19:32 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2020-03-11 19:32 - 2020-03-11 19:32 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2020-03-11 19:32 - 2020-03-11 19:32 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000870400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000850432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000829440 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000796160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000662528 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000522104 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-11 19:32 - 2020-03-11 19:32 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFIPP.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSHExtensions.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-03-11 19:32 - 2020-03-11 19:32 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactHarvesterDS.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-03-11 19:32 - 2020-03-11 19:32 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopView.Internal.Broker.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000098816 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-11 19:32 - 2020-03-11 19:32 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 015220224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 006545096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 006445056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 006318840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 005915936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 005777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 005608120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 005309080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 005210896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 004628480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 004344832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 003429888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 003416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Controls.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 003096064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 002349056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 002279296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 002264344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001759232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001720936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001693696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001675008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001606144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001573480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001495480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001465264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001427592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001294336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001292800 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 001278808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001222456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001122304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001076224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000964984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000934912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000926056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000909624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2020-03-11 19:31 - 2020-03-11 19:31 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000828728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000821760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000805504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000791864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000774968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000718944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000661304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000661056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000648392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000622632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000604248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000574864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000555440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000542504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000461488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcIso.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000453208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-03-11 19:31 - 2020-03-11 19:31 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000439976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000408528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000373560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000312632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000279416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000277840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockScreenData.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationManager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000243216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000239664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000219656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Cortana.Persona.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-03-11 19:31 - 2020-03-11 19:31 - 000205312 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\feclient.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000176112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000175928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpcsp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddisplay.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.OneCore.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oledlg.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000140304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000124440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DSCache.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000108392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olecli32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000107008 _____ C:\WINDOWS\SysWOW64\WindowsDefaultHeatProcessor.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olethk32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000106048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000094496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerHost.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountControlSettings.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2020-03-11 19:31 - 2020-03-11 19:31 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Background.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvHelper.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olesvr32.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFrameworkInternalPS.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 19:31 - 2020-03-11 19:31 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-11 19:30 - 2020-03-11 19:31 - 003873704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 006942720 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 005086208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 004736512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 004018688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 003490304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002981888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002917688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002779272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002701816 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 002627088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 002074984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001962296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 001961984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001862656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001837136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001761280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-11 19:30 - 2020-03-11 19:30 - 001702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001678800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001473080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001390888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 001360912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 001346192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-11 19:30 - 2020-03-11 19:30 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001272360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 001162088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001125392 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001098128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 001012224 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2020-03-11 19:30 - 2020-03-11 19:30 - 000998928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000930816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000788480 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000736272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.ComposerFramework.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000655160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 000641696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000542536 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_User.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000535048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000496872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000492216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneDataSync.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-11 19:30 - 2020-03-11 19:30 - 000409912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000366728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000363320 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-11 19:30 - 2020-03-11 19:30 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000274448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000264208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-03-11 19:30 - 2020-03-11 19:30 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000252264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\feclient.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000240376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsInternal.ComposableShell.DesktopHosting.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\oledlg.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000168488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.SettingsExtensibility.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000157536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000139648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000132480 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\efslsaext.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000106376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000105784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PersonalizationCSP.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvHelper.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\desktopimgdownldr.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000074752 ____R (Microsoft Corporation) C:\WINDOWS\system32\mdmpostprocessevaluator.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpussvr.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000072984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrameHost.exe
2020-03-11 19:30 - 2020-03-11 19:30 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-11 19:30 - 2020-03-11 19:30 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-11 19:29 - 2020-03-11 19:30 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 017484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 009672208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 007888896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 007556600 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 006058032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 005577872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 005528576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 005301248 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 004853760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 004589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 004417008 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 004050432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 003636736 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 003630592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 003361080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002634752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002620928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002611136 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002437344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002433024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002418176 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 002233856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002197504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002185216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002086192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001844456 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001830712 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001796400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001751640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001720320 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001287584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001194496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001169920 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001081656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001051648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 001038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001035264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001021952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 001005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000987736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000938296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000928768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000903368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000872960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000862224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 000848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000818640 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000780408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000739840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000723456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000678376 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000650240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000622336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000605576 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000604552 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000603792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-11 19:29 - 2020-03-11 19:29 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000508720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000505856 _____ (Microsoft Corporation)
C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000494080 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-03-11 19:29 - 2020-03-11 19:29 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000468792 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000458240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000443368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000439096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000418576 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000399376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000386360 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxDecoder.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenData.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000347784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000320728 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000314072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000312704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000304952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000293856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Cortana.Persona.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InputPersonalization.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000262656 _____ C:\WINDOWS\system32\HeatCore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000262336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000239120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddisplay.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000200720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000199680 _____ C:\WINDOWS\system32\IHDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingCSP.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000152576 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vfuprov.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000149240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.DisplayEnhancementOverride.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DSCache.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000148480 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\StaticDictDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsExtensibilityHandlers.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000138624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.ShellCommon.Broker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000134456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000125440 _____ C:\WINDOWS\system32\WindowsDefaultHeatProcessor.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000121536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\HashtagDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sihost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000106296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopShellExt.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000099896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpnUserService.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2020-03-11 19:29 - 2020-03-11 19:29 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000090608 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-11 19:29 - 2020-03-11 19:29 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityServicePal.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2020-03-11 19:29 - 2020-03-11 19:29 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 007700480 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 003581440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 003334496 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002707456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 002590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002466816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002149160 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002015400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 002004992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001893376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001771824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001743376 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001701384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001677312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001674752 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001519488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001387512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001293768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001258296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 001205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001049600 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 001049400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000988240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000904104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000902464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000890400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000863528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000769760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000681416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000680944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000652304 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000650552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000532184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000510504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000506408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000467984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-11 19:28 - 2020-03-11 19:28 - 000461840 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000451120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000446480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000407712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000390128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000385552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000376784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000367208 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000298808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000283240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000282424 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000276496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTF.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000255128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmBroker.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000252944 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wosc.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.OneCore.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000222008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000213816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MTF.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000193552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000163448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Security.Attestation.DeviceAttestation.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000149488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000147944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000141728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000133432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000130872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000118472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvEmulation.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000109704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000103952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-03-11 19:28 - 2020-03-11 19:28 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingFilterDS.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MuiUnattend.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-03-11 19:28 - 2020-03-11 19:28 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsCtfMonitor.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo-overrides.dll
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-11 19:28 - 2020-03-11 19:28 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-06 12:29 - 2020-03-06 12:29 - 000000000 ____D C:\Users\Juan\Downloads\GUIACANTABRIA
2020-03-06 11:55 - 2020-03-06 11:55 - 000000000 ____D C:\Users\Juan\Documents\Plantillas personalizadas de Office
2020-02-29 12:00 - 2020-02-29 12:01 - 000000000 ____D C:\Users\Juan\AppData\Roaming\Anvsoft
2020-02-29 12:00 - 2020-02-29 12:00 - 000000000 ____D C:\Users\Juan\Documents\Any Video Converter
2020-02-29 11:59 - 2020-02-29 12:30 - 000000000 ____D C:\Program Files (x86)\Anvsoft
2020-02-18 17:49 - 2020-02-18 17:57 - 000534528 _____ (Dirección General de la Policía) C:\Users\Juan\AppData\Local\DNIeService.exe
2020-02-12 17:20 - 2020-02-12 12:55 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2020-02-12 17:20 - 2020-02-12 12:55 - 000179608 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2020-02-12 15:42 - 2020-02-12 15:42 - 000000000 ____D C:\ProgramData\ssh
2020-02-12 12:16 - 2020-02-12 12:16 - 024617472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-02-12 12:16 - 2020-02-12 12:16 - 001267216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-02-12 12:16 - 2020-02-12 12:16 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 003656704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 002770944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 002086400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 001647104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 001476096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 001219584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 001193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2020-02-12 12:15 - 2020-02-12 12:15 - 001166336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2020-02-12 12:15 - 2020-02-12 12:15 - 000917816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000883200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000876032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000801280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000560640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000541472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000212480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\recdisc.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000186880 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000156712 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000128616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-02-12 12:15 - 2020-02-12 12:15 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasphone.exe
2020-02-12 12:15 - 2020-02-12 12:15 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2020-02-12 12:14 - 2020-02-12 12:14 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-02-12 12:14 - 2020-02-12 12:14 - 000764216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2020-02-12 12:14 - 2020-02-12 12:14 - 000588600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-02-12 12:14 - 2020-02-12 12:14 - 000519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2020-02-12 12:14 - 2020-02-12 12:14 - 000465424 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-02-12 12:14 - 2020-02-12 12:14 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-02-12 12:14 - 2020-02-12 12:14 - 000431416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2020-02-12 12:14 - 2020-02-12 12:14 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-02-12 12:14 - 2020-02-12 12:14 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-02-12 12:13 - 2020-02-12 12:13 - 003329536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 003269632 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 003006464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 002879488 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 002292224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 001824768 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 001566720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 001538560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-02-12 12:13 - 2020-02-12 12:13 - 001259832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-02-12 12:13 - 2020-02-12 12:13 - 001087800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 001056272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000953344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000950272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000860160 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-02-12 12:13 - 2020-02-12 12:13 - 000856432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000758928 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-02-12 12:13 - 2020-02-12 12:13 - 000677144 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000657408 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000591376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-02-12 12:13 - 2020-02-12 12:13 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000405520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-02-12 12:13 - 2020-02-12 12:13 - 000402584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000398416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000331104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000253256 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000203064 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000189496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-02-12 12:13 - 2020-02-12 12:13 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-02-12 12:13 - 2020-02-12 12:13 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Websocket.dll
2020-02-12 12:13 - 2020-02-12 12:13 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasphone.exe
2020-02-12 12:13 - 2020-02-12 12:13 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 002928640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000751632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-02-12 12:12 - 2020-02-12 12:12 - 000662024 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000606224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-02-12 12:12 - 2020-02-12 12:12 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-02-12 12:12 - 2020-02-12 12:12 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2020-02-07 13:41 - 2020-02-07 13:42 - 000099384 _____ C:\TDSSKiller.3.1.0.28_07.02.2020_13.41.40_log.txt
2020-01-29 13:34 - 2020-01-29 13:35 - 000000000 ____D C:\Users\Juan\Documents\SANDRO
2020-01-21 11:12 - 2020-01-21 11:12 - 000001075 _____ C:\Users\Public\Desktop\HiSuite.lnk
2020-01-21 11:12 - 2020-01-21 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite
2020-01-21 11:11 - 2019-12-27 03:18 - 000287232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbnet.sys
2020-01-21 11:11 - 2019-12-27 03:18 - 000226560 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys
2020-01-21 11:11 - 2019-12-27 03:18 - 000127360 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_cdcacm.sys
2020-01-21 11:11 - 2019-12-27 03:18 - 000116864 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_usbdev.sys
2020-01-21 11:11 - 2019-12-27 03:18 - 000018944 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbccgpfilter.sys
2020-01-21 11:10 - 2020-01-21 11:12 - 000000000 ____D C:\Program Files (x86)\HiSuite
2020-01-15 12:48 - 2020-01-15 12:48 - 001936520 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 001670800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 001084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000572416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000410616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000350416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-01-15 12:48 - 2020-01-15 12:48 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2019-12-23 13:53 - 2020-02-29 14:18 - 000000000 ____D C:\Users\Juan\Downloads\Musica Emilia

==================== Tres meses (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-03-19 20:11 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-19 20:09 - 2018-11-20 11:01 - 000535082 _____ C:\WINDOWS\ZAM.krnl.trace
2020-03-19 20:09 - 2018-11-20 11:01 - 000520257 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2020-03-19 19:58 - 2016-09-15 18:00 - 000000000 ____D C:\ProgramData\NVIDIA
2020-03-19 19:44 - 2019-01-15 15:14 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-03-19 19:39 - 2018-09-10 19:38 - 000000000 ____D C:\Program Files (x86)\Avira
2020-03-19 19:39 - 2017-10-18 14:02 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-03-19 19:39 - 2015-04-08 17:43 - 000000000 __SHD C:\Users\Juan\IntelGraphicsProfiles
2020-03-19 19:35 - 2019-01-15 15:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-03-19 19:34 - 2018-09-15 07:09 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-03-19 19:27 - 2015-09-06 10:22 - 000000000 ____D C:\Users\Juan\Documents\Archivos de Outlook
2020-03-19 19:00 - 2016-11-06 17:19 - 000000000 ____D C:\Users\Juan\AppData\Local\CrashDumps
2020-03-19 18:57 - 2019-11-27 11:34 - 001388432 _____ C:\Users\Public\VOIP.dat
2020-03-19 18:53 - 2019-01-15 14:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-03-19 18:40 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2020-03-19 18:34 - 2019-11-02 12:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2020-03-19 18:34 - 2018-09-10 19:38 - 000000000 ____D C:\ProgramData\Avira
2020-03-19 18:29 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-03-19 18:28 - 2014-12-21 23:48 - 000000000 ____D C:\ProgramData\Package Cache
2020-03-19 15:02 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-19 15:02 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-03-19 14:44 - 2018-02-01 13:51 - 000000346 _____ C:\WINDOWS\Tasks\HPCeeScheduleForJuan.job
2020-03-19 13:52 - 2015-04-25 18:18 - 000000000 ____D C:\Users\Juan\AppData\Roaming\Samsung
2020-03-19 13:52 - 2015-04-25 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2020-03-19 13:52 - 2015-04-25 18:16 - 000000000 ____D C:\Program Files (x86)\Samsung
2020-03-19 13:52 - 2014-12-21 23:07 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-03-19 13:19 - 2015-04-25 18:18 - 000000000 ____D C:\Users\Juan\AppData\Local\Samsung
2020-03-19 13:19 - 2015-04-25 18:16 - 000000000 ____D C:\ProgramData\Samsung
2020-03-19 13:15 - 2015-04-25 18:18 - 000000000 ____D C:\Users\Public\Documents\NativeFus_Log
2020-03-18 09:37 - 2019-01-15 15:14 - 000003234 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForJuan
2020-03-18 08:47 - 2019-01-15 15:14 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-03-18 08:46 - 2018-03-14 20:20 - 000002310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-03-18 08:46 - 2018-03-14 20:20 - 000002269 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-03-18 08:46 - 2016-10-30 13:48 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-03-17 13:21 - 2019-10-03 18:18 - 000000000 ____D C:\Users\Juan\Downloads\TORRENTS
2020-03-17 13:05 - 2016-02-25 17:05 - 000000000 ____D C:\Users\Juan\AppData\Roaming\vlc
2020-03-17 12:55 - 2016-10-20 18:07 - 000000000 ____D C:\Users\Juan\AppData\Roaming\WhatsApp
2020-03-15 19:50 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-03-15 19:44 - 2019-10-03 18:17 - 000000000 ____D C:\Users\Juan\AppData\Roaming\uTorrent
2020-03-15 19:25 - 2019-09-11 18:17 - 000002032 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-03-15 19:24 - 2019-09-11 18:17 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-03-15 19:24 - 2019-09-11 18:17 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2020-03-15 18:31 - 2019-01-15 15:02 - 001775182 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-15 18:31 - 2018-09-15 17:36 - 000789814 _____ C:\WINDOWS\system32\perfh00A.dat
2020-03-15 18:31 - 2018-09-15 17:36 - 000156068 _____ C:\WINDOWS\system32\perfc00A.dat
2020-03-15 13:15 - 2019-10-03 18:23 - 000000000 ____D C:\Users\Juan\AppData\Local\BitTorrentHelper
2020-03-14 18:25 - 2015-12-10 18:02 - 000000000 ___RD C:\Users\Juan\3D Objects
2020-03-14 18:25 - 2015-04-09 00:37 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-14 18:22 - 2019-01-15 14:40 - 000474864 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-03-14 18:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-14 18:17 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ___RD C:\Program Files\Windows Defender
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ShellComponents
2020-03-14 18:16 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-14 18:16 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-03-14 18:16 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\servicing
2020-03-11 19:49 - 2015-04-09 15:07 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-11 19:40 - 2015-04-09 15:07 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-03-07 19:23 - 2019-01-11 18:54 - 000000000 ____D C:\Users\Juan\AppData\Local\WhatsApp
2020-03-07 14:42 - 2019-11-25 19:39 - 000001521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2020-03-07 14:42 - 2014-12-21 22:58 - 000000000 ____D C:\Program Files (x86)\Intel
2020-03-06 13:26 - 2018-10-09 10:42 - 000000000 ____D C:\Users\Juan\AppData\Roaming\Telegram Desktop
2020-03-06 11:56 - 2015-04-19 09:32 - 000000000 ____D C:\Users\Juan\Documents\PARTICULAR
2020-03-04 12:12 - 2019-11-25 19:53 - 000001458 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2020-03-04 12:12 - 2017-10-18 14:02 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-03-04 12:11 - 2019-11-25 19:52 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:11 - 2019-11-25 19:52 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:11 - 2014-12-21 23:03 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-03-04 12:10 - 2019-11-25 19:52 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2019-11-25 19:52 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-03-04 12:10 - 2017-10-18 14:02 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-03-04 11:38 - 2019-07-16 18:22 - 000000000 ____D C:\Users\Juan\Downloads\RESIDENCIAS
2020-02-28 12:48 - 2019-01-15 15:14 - 000003364 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1046919139-3393652339-1846237276-1002
2020-02-28 12:48 - 2019-01-15 14:47 - 000002448 _____ C:\Users\Juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-02-28 12:48 - 2015-08-07 12:50 - 000000000 ___RD C:\Users\Juan\OneDrive
2020-02-26 11:03 - 2017-12-02 17:11 - 000000000 ____D C:\Users\Juan\AppData\Local\Packages
2020-02-23 11:28 - 2017-10-12 11:40 - 000000000 ____D C:\Program Files\rempl
2020-02-22 13:54 - 2015-05-23 12:44 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-02-21 12:51 - 2015-04-09 14:21 - 000000000 ____D C:\Program Files\Microsoft Office 15

==================== Archivos en la raíz de algunos directorios ========

2019-11-27 11:34 - 2020-03-19 18:57 - 001388432 _____ () C:\Users\Public\VOIP.dat
2020-02-18 17:49 - 2020-02-18 17:57 - 000534528 _____ (Dirección General de la Policía) C:\Users\Juan\AppData\Local\DNIeService.exe

==================== SigCheckExt =========================

2016-07-16 12:42 - 2016-07-16 12:42 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AllJoynDiscoveryPlugin.dll
2013-08-22 12:45 - 2013-08-22 12:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-fibers-l2-1-1.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll
2013-08-22 12:43 - 2013-08-22 12:43 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-devices-config-l1-1-1.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-mm-misc-l1-1-1.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-security-cryptoapi-l1-1-0.dll
2016-08-15 10:48 - 2016-07-01 04:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2015-10-30 08:19 - 2015-10-30 08:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafCdp.dll
2017-04-19 12:10 - 2017-03-28 06:37 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll
2015-04-18 11:51 - 2014-10-29 02:59 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
2015-04-18 11:52 - 2014-10-29 02:54 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-msa-ui-l1-1-0.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-misc-l1-2-0.dll
2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll
2017-03-15 16:17 - 2017-03-04 07:26 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-07-16 12:43 - 2016-07-16 23:44 - 003584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkAnalysisLegacyCom.dll
2016-09-19 17:02 - 2013-01-23 09:31 - 000057856 _____ (Nokia) C:\WINDOWS\system32\nmwcdclsX64.dll
2015-10-30 08:18 - 2015-10-30 08:18 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flashlight.dll
2015-06-10 17:06 - 2015-05-25 14:23 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2016-07-16 12:42 - 2016-07-16 12:42 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDiscoveryPlugin.dll
2016-07-16 12:42 - 2016-07-16 12:42 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiOnboardingPlugin.dll
2015-04-17 19:23 - 2015-03-14 02:51 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2013-08-22 05:17 - 2013-08-22 05:17 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-fibers-l2-1-1.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-psm-appnotify-l1-1-0.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-devices-config-l1-1-1.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-mm-misc-l1-1-1.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-security-cryptoapi-l1-1-0.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000974848 _____ C:\WINDOWS\SysWOW64\cis-2.4.dll
2016-07-16 12:43 - 2016-07-16 12:43 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\configmanager2.dll
2016-07-16 12:43 - 2016-07-16 12:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coredpus.dll
2014-12-21 22:58 - 2013-08-21 08:16 - 000053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll
2006-06-14 18:54 - 2006-06-14 18:54 - 000057344 _____ C:\WINDOWS\SysWOW64\CTAlc001.dll
2015-10-30 08:19 - 2015-10-30 08:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafCdp.dll
2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-msa-ui-l1-1-0.dll
2013-08-22 05:14 - 2013-08-22 05:13 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-misc-l1-2-0.dll
2013-08-22 05:14 - 2013-08-22 05:13 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll
2017-03-15 16:17 - 2017-03-04 07:18 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-07-16 12:44 - 2016-07-16 23:45 - 002549760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkAnalysisLegacyCom.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000081920 _____ C:\WINDOWS\SysWOW64\issacapi_bs-2.3.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000065536 _____ C:\WINDOWS\SysWOW64\issacapi_pe-2.3.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000057344 _____ C:\WINDOWS\SysWOW64\issacapi_se-2.3.dll
2013-08-27 14:00 - 2013-08-27 14:00 - 000001536 _____ C:\WINDOWS\SysWOW64\IusEventLog.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MACXMLProto.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000118784 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MaDRM.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000049152 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaJGUILib.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000045320 _____ (MARKANY) C:\WINDOWS\SysWOW64\MAMACExtract.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000024576 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MASetupCleaner.exe
2013-12-30 09:52 - 2013-12-30 09:52 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaXMLProto.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000057344 _____ (Marktek) C:\WINDOWS\SysWOW64\MK_Lyric.dll
2015-10-30 08:19 - 2016-09-14 19:54 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2015-10-30 08:19 - 2016-09-14 19:54 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000245760 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSCLib.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000155648 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSFLib.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000352256 _____ (Sample Corporation) C:\WINDOWS\SysWOW64\MSLUR71.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000040960 _____ (Telechips Inc.,) C:\WINDOWS\SysWOW64\MTTELECHIP.dll
2013-12-30 09:52 - 2013-12-30 09:52 - 000057344 _____ (Marktek Inc.) C:\WINDOWS\SysWOW64\MTXSYNCICON.dll
2014-04-30 18:47 - 2014-04-30 18:47 - 000135168 _____ (Musiccity Co.Ltd.) C:\WINDOWS\SysWOW64\muzaf1.dll
2014-04-30 18:47 - 2014-04-30 18:47 - 000491520 _____ (Musiccity Co.Ltd.) C:\WINDOWS\SysWOW64\muzapp.dll
2014-04-30 18:47 - 2014-04-30 18:47 - 000172032 _____ (Musiccity Co.Ltd.) C:\WINDOWS\SysWOW64\muzapp.exe
2014-04-30 18:47 - 2014-04-30 18:47 - 000200704 _____ ( (c) MusicCity) C:\WINDOWS\SysWOW64\muzwmts.dll
2019-11-25 21:19 - 2019-11-25 21:20 - 001697280 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2015-04-25 18:16 - 2013-12-30 09:53 - 004659712 _____ (Dmitry Streblechenko) C:\WINDOWS\SysWOW64\Redemption.dll
2020-03-19 18:16 - 2020-03-19 18:16 - 002279936 _____ (Farbar) C:\Users\Juan\Desktop\FRST64.exe
2020-02-18 17:49 - 2020-02-18 17:57 - 000534528 _____ (Dirección General de la Policía) C:\Users\Juan\AppData\Local\DNIeService.exe

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)


==================== BCD ================================

Administrador de arranque de firmware
-----------------------------------
Identificador           {fwbootmgr}
displayorder            {bootmgr}
                        {a4776ce0-89a4-11e4-9829-806e6f6e6963}
                        {7b1495ad-89a5-11e4-9829-85449752fcdc}
                        {a4776cde-89a4-11e4-9829-806e6f6e6963}
                        {a4776cdf-89a4-11e4-9829-806e6f6e6963}
timeout                 0

Administrador de arranque de Windows
----------------------------------
Identificador           {bootmgr}
device                  partition=\Device\HarddiskVolume2
path                    \EFI\Microsoft\Boot\bootmgfw.efi
description             Windows Boot Manager
locale                  es-ES
inherit                 {globalsettings}
default                 {current}
resumeobject            {fddba9ce-65d5-11e8-8df9-dab38a9f0cb8}
displayorder            {current}
toolsdisplayorder       {memdiag}
timeout                 0

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {7b1495ad-89a5-11e4-9829-85449752fcdc}
device                  partition=\Device\HarddiskVolume3
path                    \EFI\Microsoft\Boot\LrsBootMgr.efi
description             Lenovo Recovery System

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {7b1495ae-89a5-11e4-9829-85449752fcdc}
description             EFI Network 0 for IPv4 (68-F7-28-53-76-74) 

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {a4776cde-89a4-11e4-9829-806e6f6e6963}
description             EFI USB Device

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {a4776cdf-89a4-11e4-9829-806e6f6e6963}
description             EFI DVD/CDROM

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {a4776ce0-89a4-11e4-9829-806e6f6e6963}
description             EFI Network

Aplicaci�n de firmware (101fffff)
---------------------------------
Identificador           {a4776ce2-89a4-11e4-9829-806e6f6e6963}
description             EFI Network 0 for IPv6 (68-F7-28-53-76-74) 

Cargador de arranque de Windows
-----------------------------
Identificador           {2fee8205-18cb-11e9-8953-e7e809ab0d2e}
device                  ramdisk=[\Device\HarddiskVolume7]\Recovery\WindowsRE\Winre.wim,{2fee8206-18cb-11e9-8953-e7e809ab0d2e}
path                    \windows\system32\winload.efi
description             Windows Recovery Environment
locale                  es-ES
inherit                 {bootloadersettings}
displaymessage          Recovery
osdevice                ramdisk=[\Device\HarddiskVolume7]\Recovery\WindowsRE\Winre.wim,{2fee8206-18cb-11e9-8953-e7e809ab0d2e}
systemroot              \windows
nx                      OptIn
bootmenupolicy          Standard
winpe                   Yes

Cargador de arranque de Windows
-----------------------------
Identificador           {current}
device                  partition=C:
path                    \WINDOWS\system32\winload.efi
description             Windows 10
locale                  es-ES
inherit                 {bootloadersettings}
recoverysequence        {2fee8205-18cb-11e9-8953-e7e809ab0d2e}
displaymessageoverride  Recovery
recoveryenabled         Yes
isolatedcontext         Yes
allowedinmemorysettings 0x15000075
osdevice                partition=C:
systemroot              \WINDOWS
resumeobject            {fddba9ce-65d5-11e8-8df9-dab38a9f0cb8}
nx                      OptIn
bootmenupolicy          Standard

Reanudar tras hibernaci�n
-------------------------
Identificador           {fddba9ce-65d5-11e8-8df9-dab38a9f0cb8}
device                  partition=C:
path                    \WINDOWS\system32\winresume.efi
description             Windows Resume Application
locale                  es-ES
inherit                 {resumeloadersettings}
recoverysequence        {2fee8205-18cb-11e9-8953-e7e809ab0d2e}
recoveryenabled         Yes
isolatedcontext         Yes
allowedinmemorysettings 0x15000075
filedevice              partition=C:
filepath                \hiberfil.sys
bootmenupolicy          Standard
debugoptionenabled      No

Herramienta de comprobaci�n de memoria de Windows
-------------------------------------------------
Identificador           {memdiag}
device                  partition=\Device\HarddiskVolume2
path                    \EFI\Microsoft\Boot\memtest.efi
description             Herramienta de diagn�stico de memoria de Windows
locale                  es-ES
inherit                 {globalsettings}
badmemoryaccess         Yes

Configuraci�n de EMS
--------------------
Identificador           {emssettings}
bootems                 No

Configuraci�n del depurador
---------------------------
Identificador           {dbgsettings}
debugtype               Serial
debugport               1
baudrate                115200

Defectos de RAM
---------------
Identificador           {badmemory}

Configuraci�n global
--------------------
Identificador           {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}

Configuraci�n del cargador de arranque
------------------------------------
Identificador           {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}

Configuraci�n de hipervisor
-------------------
Identificador           {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200

Reanudar la configuraci�n del cargador
--------------------------------------
Identificador           {resumeloadersettings}
inherit                 {globalsettings}

Opciones de dispositivo
-----------------------
Identificador           {2fee8206-18cb-11e9-8953-e7e809ab0d2e}
description             Windows Recovery
ramdisksdidevice        partition=\Device\HarddiskVolume7
ramdisksdipath          \Recovery\WindowsRE\boot.sdi

==================== Final de FRST.txt ========================

ultimo

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 08-03-2020
Ejecutado por Juan (19-03-2020 20:12:48)
Ejecutado desde C:\Users\Juan\Desktop
Windows 10 Home Versión 1809 17763.1098 (X64) (2019-01-15 14:16:44)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1046919139-3393652339-1846237276-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1046919139-3393652339-1846237276-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1046919139-3393652339-1846237276-1004 - Limited - Enabled)
Invitado (S-1-5-21-1046919139-3393652339-1846237276-501 - Limited - Disabled)
Juan (S-1-5-21-1046919139-3393652339-1846237276-1002 - Administrator - Enabled) => C:\Users\Juan
WDAGUtilityAccount (S-1-5-21-1046919139-3393652339-1846237276-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

Actualización de NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
Adobe Flash Player 30 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.223 - Adobe)
Apple Application Support (32 bits) (HKLM-x32\...\{E5347310-C82F-4833-AA36-8D11E5A8A86A}) (Version: 6.6 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{D745E014-74DD-43A3-98DF-E7D38164B681}) (Version: 6.6 - Apple Inc.)
Asistente para actualización a Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22589 - Microsoft Corporation)
BitTorrent (HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\BitTorrent) (Version: 7.10.5.45597 - BitTorrent Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.59 - Piriform)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0718.0b - CyberLink Corp.)
CyberLink PowerDVD 19 (HKLM-x32\...\{729D20C8-FC13-4BE9-B0BB-E86F76600647}) (Version: 19.0.1516.62 - CyberLink Corp.)
Dependency Package Update (HKLM\...\{5252431C-288E-409D-ADCF-24407E0E6F70}) (Version: 1.6.29.00 - Lenovo Inc.) Hidden
Dependency Package Update (HKLM\...\{FFED38DF-94DC-4FF9-96C1-A6990EDA6B03}) (Version: 1.6.29.00 - Lenovo Inc.) Hidden
Dependency Package Update (HKLM-x32\...\{1D2682EA-75DD-44B6-BF2D-CD3C49EAD012}) (Version: 1.6.38.01 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{4430150F-61B3-4142-BE04-EAC68C8DDA18}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{4AF6C9BC-D8DB-4286-94D9-474CE54ADAA2}) (Version: 1.6.38.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{503B47A9-E34A-4841-ADD7-417191D5DB5E}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{546FF45D-2467-4950-AAFB-0A06ACBB6B2C}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{5B2190E9-199D-450A-94B3-4D6826C770C2}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{5BEFE1E1-F597-4B79-913B-15FFDB25B744}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{63DE35C9-B080-4D03-B110-99E14FD35BCE}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{65316098-0220-4D5C-B37A-6136083A0897}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Dependency Package Update (HKLM-x32\...\{E966DBE4-5075-465E-BA81-BC9A3A3204B3}) (Version: 1.6.32.00 - Lenovo Group Limited) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.441 - Google LLC) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 10.0.1.100 - Huawei Technologies Co.,Ltd)
honestech VHS to DVD 3.0 SE (HKLM-x32\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 3.0 - honestech)
honestech VHS to DVD 3.0 SE (HKLM-x32\...\{65682C80-9540-49A0-BB85-730552E3F2B6}) (Version: 3.0 - Honest Technology) Hidden
HP Deskjet 3000 J310 series Ayuda (HKLM-x32\...\{654A65DA-7173-4B51-ACEB-F855201EE033}) (Version: 140.0.66.66 - Hewlett Packard)
HP Deskjet 3000 J310 series Software básico del dispositivo (HKLM\...\{1913B294-841E-4D16-A236-6464BD4BB062}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Solutions Framework (HKLM-x32\...\{7759F11B-DF54-4726-9A01-61701580D786}) (Version: 12.12.32.3 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Instalable DNIe (HKLM\...\{D2CE0562-13E0-4FC9-85F2-CA3D0392310E}) (Version: 14.0.0 - Cuerpo Nacional de Policía)
Intel Driver && Support Assistant (HKLM-x32\...\{4DF3098D-2A9A-46DF-8B8C-9DD31D319739}) (Version: 20.2.9.6 - Intel) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.0.1098 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{a2f234ef-6c54-4ad2-a401-107bcbdfdef2}) (Version: 20.2.9.6 - Intel)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Java 8 Update 172 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180172F0}) (Version: 8.0.1720.11 - Oracle Corporation)
Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 201 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180201F0}) (Version: 8.0.2010.9 - Oracle Corporation)
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9500 - Broadcom Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10256 - Realtek Semiconductor Corp.)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Lenovo FusionEngine  (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.)
Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.) Hidden
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.)
Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.201 - Lenovo)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Manuales de usuario (HKLM-x32\...\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo) Hidden
Metric Collection SDK 35 (HKLM-x32\...\{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}) (Version: 1.2.0006.00 - Lenovo Group Limited) Hidden
Microsoft Office Professional Plus 2013 - es-es (HKLM\...\ProPlusRetail - es-es) (Version: 15.0.5215.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.11.25325 (HKLM-x32\...\{404c9c27-8377-4fd1-b607-7ca635db4e49}) (Version: 14.11.25325.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA Controlador de gráficos 391.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 391.35 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5215.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.5215.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0C0A-0000-0000000FF1CE}) (Version: 15.0.5215.1000 - Microsoft Corporation) Hidden
Onekey Theater (HKLM-x32\...\{91CC5BAE-A098-40D3-A43B-C0DC7CE263FE}) (Version: 3.0.1.2 - Lenovo)
Panel de control de NVIDIA 391.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 391.35 - NVIDIA Corporation) Hidden
Paquete de controladores de Windows - Lenovo (ACPIVPC) System  (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
Paquete de controladores de Windows - Lenovo (WUDFRd) LenovoVhid  (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Playlist tool (HKLM-x32\...\{2C4A5877-21D1-4A15-9D20-24BA54A24093}) (Version: 1.00.0000 - IOMEGA )
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39052 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
SmartCard Reader Driver Installation (HKLM-x32\...\{22146F14-CCA4-4A44-8DE9-809A7085F1AE}) (Version: 1.2.4.27 - Alcor Micro,Crop. ) Hidden
SmartCard Reader Driver Installation (HKLM-x32\...\InstallShield_{22146F14-CCA4-4A44-8DE9-809A7085F1AE}) (Version: 1.2.4.27 - Alcor Micro,Crop. )
Soporte para el iPod (HKLM\...\{E8676067-68D7-483A-BC2B-A7FF808077E2}) (Version: 120.7.3.55 - Apple Inc.)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 8.0.1038 - SUPERAntiSpyware.com)
Telegram Desktop version 1.9.14 (HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.9.14 - Telegram FZ-LLC)
UESDK (HKLM-x32\...\{EB3F6640-58AE-4886-B8BA-466B6939A933}_is1) (Version: 1.0.2.7 - Lenovo)
User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WhatsApp (HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\WhatsApp) (Version: 0.4.930 - WhatsApp)
Windows Driver Package - Dirección General de la Policía (UMPass) SmartCard  (11/23/2017 1.0.2.6) (HKLM\...\4156F59B733E1BC3DE3D5DA2299224A42B2FF794) (Version: 11/23/2017 1.0.2.6 - Dirección General de la Policía)
Windows Repair Toolbox version 2.0.1.0 (HKLM-x32\...\{A8D7DA31-9E70-437D-97C4-C4887752E029}_is1) (Version: 2.0.1.0 - Alexandre Coelho)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)

Packages:
=========
Adobe Photoshop Express: Editor de imágenes, Ajustes, Filtros, Efectos, Bordes -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobePhotoshopExpress_3.0.316.0_x64__ynb6jyjzte8ga [2019-05-25] (Adobe Inc.)
Complemento de Fotos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2018-09-13] (Microsoft Corporation)
Complemento de motor del medio de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-25] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-05] (HP Inc.)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa [2020-01-29] (Apple Inc.) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2001.12.0_x64__k1h2ywk1493x8 [2020-02-28] (LENOVO INC.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.36.20583.0_x64__8wekyb3d8bbwe [2020-03-06] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-02-28] (Microsoft Studios) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20503.0_x64__8wekyb3d8bbwe [2020-03-06] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-26] (Netflix, Inc.)
Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2019-07-19] (Adobe Systems Incorporated)
Traductor -> C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe [2019-08-02] (Microsoft Corporation)

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1046919139-3393652339-1846237276-1002_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key -> Intel)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [$PowerDVD19] -> {F29ECC0C-F1D0-4132-B1BC-E317171FFC76} => C:\ProgramData\CyberLink\PowerDVD19\OpenWith\PDVD_Shell64.dll [2019-04-23] (CyberLink Corp. -> CyberLink Corp.)
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} =>  -> Ningún archivo
ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} =>  -> Ningún archivo
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-07-29] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} =>  -> Ningún archivo
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} =>  -> Ningún archivo
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-07-29] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} =>  -> Ningún archivo
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Ningún archivo
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-06-12] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} =>  -> Ningún archivo
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

ShortcutWithArgument: C:\Users\Juan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Emilia - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Módulos cargados (Lista blanca) =============

2014-02-26 09:11 - 2014-02-26 09:11 - 000523264 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\ISDI2.dll
2014-02-26 09:11 - 2014-02-26 09:11 - 000297984 _____ (Intel Corporation) [Archivo no firmado] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\PsiData.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Juan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\69657004.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\69657004.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

(Si una entrada es incluida en el fixlist, será eliminada del registro.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\localhost -> localhost

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2017-09-29 14:46 - 2018-11-21 11:45 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

2018-01-04 17:57 - 2018-07-17 14:26 - 000000439 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Lenovo\FusionEngine;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Lenovo\Bluetooth Software\;C:\Program Files\Lenovo\Bluetooth Software\syswow64;C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Juan\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg
DNS Servers: El medio no está conectado a internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: KiesPDLR.exe => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe Run
MSCONFIG\startupreg: McAfee Security Scan Plus => C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe
MSCONFIG\startupreg: OneDrive => "C:\Users\Juan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run: => "ForteConfig"
HKLM\...\StartupApproved\Run: => "OnekeyStudio"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "AvgUi"
HKLM\...\StartupApproved\Run: => "PowerDVD19Agent"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "KiesTrayAgent"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "Avira System Speedup User Starter"
HKLM\...\StartupApproved\Run32: => "PowerDVD19Agent"
HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G13"
HKLM\...\StartupApproved\Run32: => "Intel Driver & Support Assistant"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\StartupFolder: => "Supervisar alertas de tinta - HP Deskjet 3000 J310 series.lnk"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\StartupFolder: => "PlutoTV.lnk"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\StartupFolder: => "b710b983ee09b41bae829ba721b618c0.lnk"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "KiesPDLR.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "SmartSwitchPDLR.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "DeleteMarkAny"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "Power2GoExpress8"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "b710b983ee09b41bae829ba721b618c0"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "SUPERAntiSpyware"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "Power2GoExpress13"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "f6a2f4e3"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{1F50A48E-E3CD-4C2A-8340-899A2DB0F32D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{BAD7BE0B-0A6B-49F3-96AF-6F6882585CD6}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{A2F53677-718A-4AA0-929D-58D11934FE2C}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{225FDDA6-B806-47E2-BBD6-55D75E685435}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{420F9272-EB2C-441D-9463-E406EE88AE74}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E0B231D7-17CF-4E2B-87A9-6396ECC9F528}] => (Allow) LPort=55100
FirewallRules: [{753B9685-F8D1-4403-B7D6-5535C8DFF0C3}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6006C106-56E3-46B7-9CAF-B378AE3893F7}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{15348103-5B16-4AA0-BA21-3964AD42EE51}] => (Allow) C:\Program Files\HP\HP Deskjet 3000 J310 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{978D4C23-A158-4288-8197-DD5EA1A6BED2}] => (Allow) C:\Program Files\HP\HP Deskjet 3000 J310 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0761C4D5-1606-4217-953F-AA61E75C780A}] => (Allow) C:\Program Files\HP\HP Deskjet 3000 J310 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{A35E1A6C-99E9-4FE4-83CC-7A07FD344B50}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E13FBA72-1306-4B05-9386-1F21BA3F83AC}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [{20A6DA43-B77A-4F9A-BA4A-1D24DAD290BC}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [{8A068013-B2A7-4DF1-8AEB-A0EE868E039D}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{6C2A7ADD-41A8-41B9-A1C8-4CDAC96F6305}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\ShareModule32\Kernel\DMS\CLMSServerPDVD19.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{084AFC33-76BC-4AAA-A193-C35037631F81}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{E0C0F42A-E408-4AAC-984F-987884740E14}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{F37FAD31-8F65-4A65-B2E7-8373EACD0425}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\CastingStation.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{7972F9BE-700F-4BB8-99D3-F34C9D0299EB}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AEF59E88-8652-4936-83AD-DDEB17364993}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D30CE0E9-4F1A-456A-A381-6A2B1F433D4F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BE2BE2C4-D54E-4D80-AAF5-C19AFF5EC9BC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{D9583EC5-8E1F-41B9-ADB9-1C2D76397317}C:\users\juan\downloads\windows_repair_toolbox\downloads\snappy\sdio\sdio_x64.exe] => (Allow) C:\users\juan\downloads\windows_repair_toolbox\downloads\snappy\sdio\sdio_x64.exe (Mr Glenn Stuart Delahoy -> Glenn Delahoy)
FirewallRules: [UDP Query User{34B36C80-0F43-4690-A080-1B5CAD89D990}C:\users\juan\downloads\windows_repair_toolbox\downloads\snappy\sdio\sdio_x64.exe] => (Allow) C:\users\juan\downloads\windows_repair_toolbox\downloads\snappy\sdio\sdio_x64.exe (Mr Glenn Stuart Delahoy -> Glenn Delahoy)
FirewallRules: [TCP Query User{4D83A6EA-A1FD-4191-8BF8-C31646BD77F1}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{15D84968-8006-46DF-A5C3-0C3AA21FF1D4}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{177B56F0-29DA-456B-B585-14AAADC33F44}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AC995494-198B-429F-92F3-C572D122FBC5}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CCC1EB6B-D6D2-41F7-A1CD-4617334FE8A7}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{24CD0BE8-E197-4EBD-BF52-A78511141C41}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{451A5648-4D66-48F7-89ED-6B83DE862F1F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{6F251A62-F294-4278-A2B0-677D051EC0B8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8BA9C42A-3F4D-4686-93F2-3C72FF3CD036}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C5450040-25A8-4E12-B855-E001701B687B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12104.2.43056.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{3B1EC076-9E85-4070-B01A-39B789B93A88}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6B81D137-0304-48F1-837A-847C2ECD8030}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2BADF15D-768D-4C39-8AE6-4277E766DA51}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{93C10515-2AFD-4857-A8CE-E75F843D9A96}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E8F0E170-4CE8-4E1F-A94C-25AB94B302FF}] => (Allow) C:\Users\Juan\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{5A41F8CB-17D0-429F-815B-28DFA5B0CE7F}] => (Allow) C:\Users\Juan\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{E17646FA-432B-407A-99C1-EDB2490EB56D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{EDFC057E-CE33-4D33-93C0-BF75390719A8}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [{20E21501-4EE7-4C2A-9565-20C4044B8666}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [Archivo no firmado]
FirewallRules: [{DF5D66AD-5439-460B-A9C9-0E6ACF2297B0}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Ningún archivo
FirewallRules: [{9796DBDF-5CC8-44FA-A364-319E70490471}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Ningún archivo
FirewallRules: [{DEC246A3-0ABA-48DF-8458-93858C634A97}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Ningún archivo

==================== Puntos de Restauración =========================

11-03-2020 18:58:38 Windows Update
15-03-2020 19:57:08 JRT Pre-Junkware Removal
19-03-2020 18:30:19 Removed Avira Home Guard
19-03-2020 19:56:04 JRT Pre-Junkware Removal

==================== Dispositivos defectuosos en el Administrador de dispositivos ============

Name: Microsoft Wi-Fi Direct Virtual Adapter #5
Description: Adaptador virtual de Wi-Fi Direct de Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: vwifimp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (03/19/2020 07:35:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: FreemakeUtilsService.exe, versión: 1.0.0.0, marca de tiempo: 0x5d8b2df3
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.17763.1098, marca de tiempo: 0xe934af74
Código de excepción: 0xe0434352
Desplazamiento de errores: 0x00121a62
Identificador del proceso con errores: 0xec8
Hora de inicio de la aplicación con errores: 0x01d5fe1d1d501f2f
Ruta de acceso de la aplicación con errores: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: e6179a0e-713b-4309-83d7-93b10173294f
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (03/19/2020 07:35:08 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicación: FreemakeUtilsService.exe
Versión de Framework: v4.0.30319
Descripción: el proceso terminó debido a una excepción no controlada.
Información de la excepción: System.IO.FileNotFoundException
   en FreemakeUtilsService.Program.Main(System.String[])

Error: (03/19/2020 07:00:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: mbamtray.exe, versión: 4.0.0.591, marca de tiempo: 0x5e691699
Nombre del módulo con errores: Qt5Core.dll, versión: 5.14.1.0, marca de tiempo: 0x5e4172be
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x0000000000219d05
Identificador del proceso con errores: 0x2db0
Hora de inicio de la aplicación con errores: 0x01d5fe184158aeb7
Ruta de acceso de la aplicación con errores: C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
Ruta de acceso del módulo con errores: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
Identificador del informe: ce97f736-9999-4c05-ae5f-8cd160357c1a
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (03/19/2020 06:30:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().

Details:
AddLegacyDriverFiles: Unable to back up image of binary avgntflt.

System Error:
El sistema no puede encontrar el archivo especificado.
.

Error: (03/19/2020 05:42:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa SearchUI.exe (versión 10.0.17763.1075) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.

Id. de proceso: 1d98

Hora de Inicio: 01d5fe0d481ecbed

Hora de finalización: 4294967295

Ruta de la aplicación: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

Id. de informe: 7be01954-9f48-4398-a415-fa10695c92ca

Nombre completo del paquete con errores: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy

Id. de la aplicación relativa al paquete con errores: CortanaUI

Tipo de bloqueo: Cross-process

Error: (03/19/2020 02:47:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: igfxEM.exe, versión: 6.15.10.4642, marca de tiempo: 0x58dabd88
Nombre del módulo con errores: igfxEM.exe, versión: 6.15.10.4642, marca de tiempo: 0x58dabd88
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x00000000000306bf
Identificador del proceso con errores: 0x1fac
Hora de inicio de la aplicación con errores: 0x01d5fdf4e8010763
Ruta de acceso de la aplicación con errores: C:\WINDOWS\system32\igfxEM.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\system32\igfxEM.exe
Identificador del informe: e31527ab-10b8-4765-9685-89844d2823c5
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (03/19/2020 02:44:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: FreemakeUtilsService.exe, versión: 1.0.0.0, marca de tiempo: 0x5d8b2df3
Nombre del módulo con errores: KERNELBASE.dll, versión: 10.0.17763.1098, marca de tiempo: 0xe934af74
Código de excepción: 0xe0434352
Desplazamiento de errores: 0x00121a62
Identificador del proceso con errores: 0xf0c
Hora de inicio de la aplicación con errores: 0x01d5fdf485999186
Ruta de acceso de la aplicación con errores: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Ruta de acceso del módulo con errores: C:\WINDOWS\System32\KERNELBASE.dll
Identificador del informe: b134d9be-70dd-48b3-bd68-8fc82efe6de8
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:

Error: (03/19/2020 02:44:38 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicación: FreemakeUtilsService.exe
Versión de Framework: v4.0.30319
Descripción: el proceso terminó debido a una excepción no controlada.
Información de la excepción: System.IO.FileNotFoundException
   en FreemakeUtilsService.Program.Main(System.String[])


Errores del sistema:
=============
Error: (03/19/2020 07:58:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.

Error: (03/19/2020 07:58:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA Display Container LS terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 1000 milisegundos: Reiniciar el servicio.

Error: (03/19/2020 07:51:55 PM) (Source: DCOM) (EventID: 10016) (User: EldeJuan)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
 y APPID 
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
 al usuario EldeJuan\Juan con SID (S-1-5-21-1046919139-3393652339-1846237276-1002) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/19/2020 07:41:25 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {784E29F4-5EBE-4279-9948-1E8FE941646D} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (03/19/2020 07:40:20 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID 
Windows.SecurityCenter.WscBrokerManager
 y APPID 
No disponible
 al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/19/2020 07:40:20 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Iniciar Local para la aplicación de servidor COM con CLSID 
Windows.SecurityCenter.WscDataProtection
 y APPID 
No disponible
 al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/19/2020 07:39:10 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos establecido de forma predeterminada en el equipo no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 y APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

Error: (03/19/2020 07:39:10 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 y APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 al usuario NT AUTHORITY\SERVICIO LOCAL con SID (S-1-5-19) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.


Windows Defender:
===================================
Date: 2019-07-02 14:08:18.035
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para obtener más información consulte lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:HTML/FakeAlert&threatid=2147726713&enterprise=0
Nombre: Trojan:HTML/FakeAlert
Id.: 2147726713
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Juan\Downloads\This computer is BLOCKED.html; webfile:_C:\Users\Juan\Downloads\This computer is BLOCKED.html|https://jgioajgag.ml/google/index.html|pid:5192,ProcessStart:132065419823080288
Origen de detección: Internet
Tipo de detección: Concreto
Fuente de detección: Descargas y datos adjuntos
Usuario: EldeJuan\Juan
Nombre de proceso: Unknown
Versión de firma: AV: 1.297.217.0, AS: 1.297.217.0, NIS: 1.297.217.0
Versión de motor: AM: 1.1.16100.4, NIS: 1.1.16100.4

Date: 2019-07-02 13:52:24.276
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para obtener más información consulte lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:HTML/FakeAlert&threatid=2147726713&enterprise=0
Nombre: Trojan:HTML/FakeAlert
Id.: 2147726713
Gravedad: Grave
Categoría: Caballo de Troya
Ruta de acceso: file:_C:\Users\Juan\Downloads\This computer is BLOCKED.html; webfile:_C:\Users\Juan\Downloads\This computer is BLOCKED.html|https://jgioajgag.ml/google/index.html|pid:7684,ProcessStart:132065403460346888
Origen de detección: Internet
Tipo de detección: Concreto
Fuente de detección: Descargas y datos adjuntos
Usuario: EldeJuan\Juan
Nombre de proceso: Unknown
Versión de firma: AV: 1.297.217.0, AS: 1.297.217.0, NIS: 1.297.217.0
Versión de motor: AM: 1.1.16100.4, NIS: 1.1.16100.4

Date: 2019-06-29 21:24:42.027
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para obtener más información consulte lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DelfInject&threatid=2147597831&enterprise=0
Nombre: VirTool:Win32/DelfInject
Id.: 2147597831
Gravedad: Grave
Categoría: Herramienta
Ruta de acceso: containerfile:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip; file:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip->Overlord-[BDremux-1080p]-(torrent0).torrent->overlord-fullbluray.torrent-.vbe; webfile:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip|https://mejortorrent1.net/post_dd2_mejortorrent.php|pid:1972,ProcessStart:132063097664287527
Origen de detección: Internet
Tipo de detección: FastPath
Fuente de detección: Descargas y datos adjuntos
Usuario: EldeJuan\Juan
Nombre de proceso: Unknown
Versión de firma: AV: 1.297.170.0, AS: 1.297.170.0, NIS: 1.297.170.0
Versión de motor: AM: 1.1.16100.4, NIS: 1.1.16100.4

Date: 2019-06-29 21:24:12.844
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para obtener más información consulte lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DelfInject&threatid=2147597831&enterprise=0
Nombre: VirTool:Win32/DelfInject
Id.: 2147597831
Gravedad: Grave
Categoría: Herramienta
Ruta de acceso: containerfile:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip; file:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip->Overlord-[BDremux-1080p]-(torrent0).torrent->overlord-fullbluray.torrent-.vbe; webfile:_C:\Users\Juan\Downloads\Overlord-[BDremux-1080p].zip|https://mejortorrent1.net/post_dd2_mejortorrent.php|pid:1972,ProcessStart:132063097664287527
Origen de detección: Internet
Tipo de detección: FastPath
Fuente de detección: Descargas y datos adjuntos
Usuario: EldeJuan\Juan
Nombre de proceso: Unknown
Versión de firma: AV: 1.297.170.0, AS: 1.297.170.0, NIS: 1.297.170.0
Versión de motor: AM: 1.1.16100.4, NIS: 1.1.16100.4

Date: 2019-06-21 20:38:58.962
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {A9DEFF7E-A2A7-40CF-9B0A-D295F4C2A13E}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2020-03-19 20:06:12.788
Description: 
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.297.340.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de firma: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión de motor actual: 
Versión de motor anterior: 1.1.16100.4
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-03-19 20:06:12.788
Description: 
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.297.340.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de firma: AntiSpyware
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión de motor actual: 
Versión de motor anterior: 1.1.16100.4
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-03-19 20:06:12.787
Description: 
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.297.340.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de firma: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión de motor actual: 
Versión de motor anterior: 1.1.16100.4
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-03-19 20:06:12.778
Description: 
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.297.340.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de firma: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión de motor actual: 
Versión de motor anterior: 1.1.16100.4
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-03-19 20:06:12.778
Description: 
Antivirus de Windows Defender encontró un error al intentar actualizar las firmas.
Nueva versión de firma: 
Versión de firma anterior: 1.297.340.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de firma: AntiSpyware
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión de motor actual: 
Versión de motor anterior: 1.1.16100.4
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

CodeIntegrity:
===================================

Date: 2020-03-19 20:03:13.089
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.908
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.774
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.702
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.522
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.455
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.154
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-03-19 20:03:12.055
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Información de la memoria =========================== 

BIOS: LENOVO 9BCN29WW 10/20/2014
Placa base: LENOVO Lancer 5A5
Procesador: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
Porcentaje de memoria en uso: 19%
RAM física total: 16276.27 MB
RAM física disponible: 13095.42 MB
Virtual total: 17300.27 MB
Virtual disponible: 14403.63 MB

==================== Unidades ================================

Drive c: (Windows8_OS) (Fixed) (Total:891.28 GB) (Free:735.31 GB) NTFS ==>[sistema con componentes de arranque (obtenido de unidad)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.08 GB) NTFS

\\?\Volume{5149ece9-f8d6-4424-9d23-ec132599cd92}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.66 GB) NTFS
\\?\Volume{b68b30b3-738e-4cca-afdf-826259dad300}\ (PBR_DRV) (Fixed) (Total:12.9 GB) (Free:2.02 GB) NTFS
\\?\Volume{42e3163a-5513-4b1b-9d0a-5bc724204da0}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 6E57DA3C)

Partition: GPT.

==================== Final de Addition.txt =======================

Bien… y ahora sigue estos pasos, :arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe(en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla :white_check_mark: Create registry backup, las demás casillas NO. :face_with_monocle:

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Ningún archivo
ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Ningún archivo
ContextMenuHandlers1: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => -> Ningún archivo
ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Ningún archivo
ContextMenuHandlers4: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => -> Ningún archivo
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Ningún archivo
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Ningún archivo
AlternateDataStreams: C:\Users\Juan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]
MSCONFIG\startupreg: McAfee Security Scan Plus => C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\StartupFolder: => "b710b983ee09b41bae829ba721b618c0.lnk"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "b710b983ee09b41bae829ba721b618c0"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "f6a2f4e3"
HKLM\...\Run: [] => [X]
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [] => [X]
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3a75-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3aa0-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {643df438-3955-11ea-840f-0071cca1738a} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {7cd6a871-e66f-11e8-83b4-0071cca1738a} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4417008 2020-03-11] (Microsoft Windows -> Microsoft Corporation) <==== ATENCIÓN
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] ->
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
Task: {0A50BBC0-3627-4BBF-BC51-09DC02853B29} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Ningún archivo <==== ATENCIÓN
Task: {24DCF9AA-0F1D-46F9-A393-59DCF9295E5C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Ningún archivo <==== ATENCIÓN
Task: {A0AE4D0E-32AF-41E1-B75D-6F699D7A797A} - System32\Tasks\{1E108F67-4046-4687-B76A-EC8F24A56D15} => C:\WINDOWS\system32\pcalua.exe -a E:\_Start.exe -d E:\
Handler: WSISAllmytubechrome - {4724F5AF-4E6D-41CA - Ningún archivo
FF SearchPlugin: C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\searchplugins\bing-lavasoft-ff59.xml [2019-09-18]
FF HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Firefox\Extensions: [[email protected]] - C:\Users\Juan\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => no encontrado
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Ningún archivo]
FF Plugin HKU\S-1-5-21-1046919139-3393652339-1846237276-1002: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Juan\AppData\Roaming\ACEStream\player\npace_plugin.dll [Ningún archivo]
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-13]
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2019-05-13]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]
CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
S3 fiddrv64; no ImagePath
R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe(Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.

Y ahora usa el 2º MÉTODO: de esta Faq de Windows 8(aplicable a Windows 10) :arrow_forward: ¿Cómo iniciar Windows 8/8.1 en Modo Seguro?, para trabajar desde ese modo de windows.

  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).

  • Presionar el botón FIX/Corregir y aguardar a que termine.

  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pegar el contenido de este fichero en tu próxima respuesta. :+1:

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Saludos.

Hola Javier, Antes que nada, muchas gracias por tu rápida respuesta. El arranque parece que ha mejorado algo. Pero al cliquear en algun enlace de la pagina que te indique (www.mejorenvo.me) se siguen abriendo otras de publicidad. En cualquier caso te mando el reporte

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 08-03-2020
Ejecutado por Juan (20-03-2020 14:26:33) Run:1
Ejecutado desde C:\Users\Juan\Desktop
Perfiles cargados: Juan (Perfiles disponibles: Juan)
Modo de Inicio: Safe Mode (minimal)
==============================================

fixlist contenido:
*****************
START

CREATERESTOREPOINT:

CLOSEPROCESSES:

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ning�n archivo

ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ning�n archivo

ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Ning�n archivo

ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Ning�n archivo

ContextMenuHandlers1: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => -> Ning�n archivo

ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Ning�n archivo

ContextMenuHandlers4: [SHAREit.FileContextMenuExt] -> {430BD134-576D-4E75-87CD-0F5C6221A82B} => -> Ning�n archivo

ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Ning�n archivo

ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Ning�n archivo

AlternateDataStreams: C:\Users\Juan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]

MSCONFIG\startupreg: McAfee Security Scan Plus => C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe

HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\StartupFolder: => "b710b983ee09b41bae829ba721b618c0.lnk"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "b710b983ee09b41bae829ba721b618c0"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\StartupApproved\Run: => "f6a2f4e3"

HKLM\...\Run: [] => [X]

HKLM-x32\...\Run: [] => [X]

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Run: [] => [X]

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3a75-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {15dd3aa0-28d5-11ea-840a-0071cca1738a} - "F:\HiSuiteDownLoader.exe"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {643df438-3955-11ea-840f-0071cca1738a} - "F:\HiSuiteDownLoader.exe"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\MountPoints2: {7cd6a871-e66f-11e8-83b4-0071cca1738a} - "F:\HiSuiteDownLoader.exe"

HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4417008 2020-03-11] (Microsoft Windows -> Microsoft Corporation) <==== ATENCI�N

HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-18] (Google LLC -> Google LLC)

HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] ->

FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricci�n <==== ATENCI�N

Task: {0A50BBC0-3627-4BBF-BC51-09DC02853B29} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Ning�n archivo <==== ATENCI�N

Task: {24DCF9AA-0F1D-46F9-A393-59DCF9295E5C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Ning�n archivo <==== ATENCI�N

Task: {A0AE4D0E-32AF-41E1-B75D-6F699D7A797A} - System32\Tasks\{1E108F67-4046-4687-B76A-EC8F24A56D15} => C:\WINDOWS\system32\pcalua.exe -a E:\_Start.exe -d E:\

Handler: WSISAllmytubechrome - {4724F5AF-4E6D-41CA - Ning�n archivo

FF SearchPlugin: C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\searchplugins\bing-lavasoft-ff59.xml [2019-09-18]

FF HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\...\Firefox\Extensions: [[email protected]] - C:\Users\Juan\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => no encontrado

FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Ning�n archivo]

FF Plugin HKU\S-1-5-21-1046919139-3393652339-1846237276-1002: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Juan\AppData\Roaming\ACEStream\player\npace_plugin.dll [Ning�n archivo]

CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-13]

CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2019-05-13]

CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]

CHR HKLM\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]

CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]

CHR HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]

CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]

CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]

CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]

CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]

CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]

S3 fiddrv64; no ImagePath

R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)

R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2018-11-20] (Zemana Ltd. -> Zemana Ltd.)

HOSTS:

REMOVEPROXY:

EMPTYTEMP:

CMD: netsh winsock reset

CMD: ipconfig /renew

CMD: ipconfig /flushdns

CMD: bitsadmin /reset /allusers

CMD: netsh advfirewall reset

CMD: netsh advfirewall set allprofiles state ON

CMD: netsh int ipv4 reset

CMD: netsh int ipv6 reset

END

*****************

Error: El punto de restauración solamente puede ser creado en modo normal.
Procesos cerrados correctamente.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\2.0 Zemana AntiMalware => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\CLVDShellExt => eliminado correctamente
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SHAREit.FileContextMenuExt => eliminado correctamente
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\CLVDShellExt => eliminado correctamente
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\SHAREit.FileContextMenuExt => eliminado correctamente
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => eliminado correctamente
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\2.0 Zemana AntiMalware => eliminado correctamente
C:\Users\Juan\OneDrive => ":${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity" ADS no pudo ser eliminado.
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\McAfee Security Scan Plus => eliminado correctamente
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk" => no encontrado
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\McAfee Security Scan Plus.lnk" => eliminado correctamente
"C:\Users\Juan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\b710b983ee09b41bae829ba721b618c0.lnk" => no encontrado
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\b710b983ee09b41bae829ba721b618c0.lnk" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\b710b983ee09b41bae829ba721b618c0" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\b710b983ee09b41bae829ba721b618c0" => no encontrado
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\f6a2f4e3" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\f6a2f4e3" => no encontrado
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\" => eliminado correctamente
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Microsoft\Windows\CurrentVersion\Run\\" => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15dd3a75-28d5-11ea-840a-0071cca1738a} => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{15dd3aa0-28d5-11ea-840a-0071cca1738a} => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{643df438-3955-11ea-840f-0071cca1738a} => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7cd6a871-e66f-11e8-83b4-0071cca1738a} => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell" => eliminado correctamente
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED} => eliminado correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0A50BBC0-3627-4BBF-BC51-09DC02853B29}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A50BBC0-3627-4BBF-BC51-09DC02853B29}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{24DCF9AA-0F1D-46F9-A393-59DCF9295E5C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24DCF9AA-0F1D-46F9-A393-59DCF9295E5C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A0AE4D0E-32AF-41E1-B75D-6F699D7A797A}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A0AE4D0E-32AF-41E1-B75D-6F699D7A797A}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\{1E108F67-4046-4687-B76A-EC8F24A56D15} => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1E108F67-4046-4687-B76A-EC8F24A56D15}" => eliminado correctamente
HKLM\Software\Classes\PROTOCOLS\Handler\WSISAllmytubechrome => eliminado correctamente
Handler: WSISAllmytubechrome - {4724F5AF-4E6D-41CA - Ning�n archivo => no pudo ser eliminado.: incorrect path. 
C:\Users\Juan\AppData\Roaming\Mozilla\Firefox\Profiles\ffnsc1b0.default\searchplugins\bing-lavasoft-ff59.xml => movido correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\Mozilla\Firefox\Extensions\\[email protected]" => eliminado correctamente
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
C:\Program Files\VideoLAN\VLC\npvlc.dll => movido correctamente
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
"HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN" => no encontrado
"C:\Program Files\VideoLAN\VLC\npvlc.dll" => no encontrado
HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\Software\MozillaPlugins\@acestream.net/acestreamplugin,version=3.1.32 => eliminado correctamente
"C:\Users\Juan\AppData\Roaming\ACEStream\player\npace_plugin.dll" => no encontrado
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-13] => Error: Ninguna corrección automática encontrada para esta entrada.
CHR Extension: (Ace Script) - C:\Users\Juan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2019-05-13] => Error: Ninguna corrección automática encontrada para esta entrada.
HKLM\SOFTWARE\Google\Chrome\Extensions\caljgklbbfbcjjanaijlacgncafpegll => eliminado correctamente
HKLM\SOFTWARE\Google\Chrome\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo => eliminado correctamente
HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Google\Chrome\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\caljgklbbfbcjjanaijlacgncafpegll => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => eliminado correctamente
HKLM\System\CurrentControlSet\Services\fiddrv64 => eliminado correctamente
fiddrv64 => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\ZAM => eliminado correctamente
ZAM => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\ZAM_Guard => eliminado correctamente
ZAM_Guard => servicio eliminado correctamente
C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-1046919139-3393652339-1846237276-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows


========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

No se puede vaciar la cach‚ de resoluci¢n de DNS: Error de una funci¢n durante la ejecuci¢n.


========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

Unable to connect to BITS - 0x8007043c
El servicio no puede iniciarse en modo a prueba de errores



========= Final de CMD: =========


========= netsh advfirewall reset =========


Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est  ejecutando e intenta la solicitud de nuevo.


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========


Error al intentar ponerse en contacto con el servicio Firewall de Windows Defender. Aseg£rate de que el servicio se est  ejecutando e intenta la solicitud de nuevo.


========= Final de CMD: =========


========= netsh int ipv4 reset =========

No hay valores configurados por el usuario para restablecer.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

No hay valores configurados por el usuario para restablecer.


========= Final de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 216074926 B
Java, Flash, Steam htmlcache => 524 B
Windows/system/drivers => 1411593 B
Edge => 1156791 B
Chrome => 63872875 B
Firefox => 13197592 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 888 B
NetworkService => 8640734 B
UpdatusUser => 8640734 B
Juan => 124265550 B

RecycleBin => 0 B
EmptyTemp: => 426.8 MB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 14:31:02 ====

Hola.

Perfecto. :+1:

Acabo de probar esa pagina y efectivamente lo que ocurre es que te saltan las típicas ventanas de publicidad que están “enganchadas” a los enlace que uno “pica” y son el “pago” que se tiene al usar ese tipo de paginas.

Desinstala de tu navegador por defecto(Chrome) la extensión de AdBlock e instálate la nueva y mejorada de AdBlock Plus :

Después de instalarlo cierra el navegador y comprueba su efectividad. :thinking:

Nos comentas.

Saludos.

Hola Javier, He desinstalado Adblock e instalado ABP y esa página sigue haciendo lo mismo. No importa, sabiendo, como tu dices que es el precio a pagar y que no son nada peligrosas, habrá que cerrarlas cuando salgan y ya está. Muchas gracias otra vez. Un saludo.

Hola. :+1:

Haz una prueba, instala de forma añadida la extensión de Malwareybtes :

Comprueba y comentas.

Saludos.

Hola Javier, Ya la he instalado en Google Chrome, y sigue ocurriendo en la pagina web que te comenté. Si no es dañino para el ordenador, creo que lo mejor será dejarlo asi. Un saludo y muchas gracias.

Perfecto @yaguico1 +1: excelente, nos alegra ver que ya está el problema inicial completamente arreglado, ahora solo queda eliminar las herramientas usadas.

Para hacerlo descarga :arrow_forward: DelFix.exe en tu escritorio.

  • Doble clic para ejecutarlo. (Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona - Ejecutar como Administrador -).

  • Marca todas las casillas, y pulsas en Run

Se abrirá el informe (DelFix.txt), puedes cerrarlo.


Para cualquier otro problema, no dudes en volver a postear., ya sabes dónde estamos. :+1:

Tema Solucionado.

Saludos, Javier.