Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20.01.2019
Ran by Joseba (21-01-2019 22:33:33)
Running from C:\Users\Joseba\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2015-01-03 13:45:30)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrador (S-1-5-21-1412667433-2437821996-2063077104-500 - Administrator - Disabled)
HomeGroupUser$ (S-1-5-21-1412667433-2437821996-2063077104-1002 - Limited - Enabled)
Invitado (S-1-5-21-1412667433-2437821996-2063077104-501 - Limited - Disabled)
Joseba (S-1-5-21-1412667433-2437821996-2063077104-1001 - Administrator - Enabled) => C:\Users\Joseba
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1412667433-2437821996-2063077104-1001\...\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.)
Actualización de NVIDIA 25.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 25.0.0.0 - NVIDIA Corporation) Hidden
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.14 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.356 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.122 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.5.155 - Adobe Systems, Inc.)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 381.65 - NVIDIA Corporation) Hidden
aTube Catcher versión 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AutoCAD 2010 - Español (HKLM\...\{5783F2D7-8001-040A-0102-0060B0CE6BBA}) (Version: 18.0.309.0 - Autodesk) Hidden
AutoCAD 2010 - Español (HKLM\...\AutoCAD 2010 - Español) (Version: 18.0.55.0 - Autodesk)
AutoCAD 2010 - Español Version 3 (HKLM\...\AutoCAD 2010 - Español Version 3) (Version: 1 - Autodesk)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 19.1.3075 - AVG Technologies)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brother MFL-Pro Suite DCP-J315W (HKLM-x32\...\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}) (Version: 2.0.0.0 - Brother Industries, Ltd.)
calibre 64bit (HKLM\...\{9862A8CD-F8F4-4939-BAA6-DC87BDCE567D}) (Version: 3.28.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.52 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5306 - CDBurnerXP)
CianoplanPDF 3.0.1 (HKLM-x32\...\{7cca8a52-b149-4081-aa8f-b037fd35bb2e}) (Version: 3.0.1 - Cianoplan)
Combined Community Codec Pack 2014-07-13 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2014.07.13.0 - CCCP Project)
dBpowerAMP Music Converter (HKLM-x32\...\dBpowerAMP Music Converter) (Version: - )
devolo Cockpit (HKLM-x32\...\dlancockpit) (Version: 5.0.1.0 - devolo AG)
Dropbox (HKU\S-1-5-21-1412667433-2437821996-2063077104-1001\...\Dropbox) (Version: 64.4.141 - Dropbox, Inc.)
GIMP 2.10.2 (HKLM\...\GIMP-2_is1) (Version: 2.10.2 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden
Hamster Free ZIP Archiver 3.0.0.86 (HKLM-x32\...\Hamster Free ZIP Archiver_is1) (Version: 3.0.0.86 - HamsterSoft)
IL-2 Sturmovik Battle of Stalingrad (HKLM-x32\...\{66F649A9-0FA2-487E-BC0D-894BD7E89D5E}_is1) (Version: - 1C Game Studios)
Instalable DNIe (HKLM\...\{D2CE0562-13E0-4FC9-85F2-CA3D0392310E}) (Version: 14.0.0 - Cuerpo Nacional de Policía)
Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation)
K-Lite Codec Pack 10.9.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - )
Ludoteka versión 1.1 (HKLM-x32\...\{A8A82F27-5E59-423D-A9D0-9CBF7EF69378}_is1) (Version: 1.1 - Jokosare S.L.)
Malwarebytes versión 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
Microsoft .NET Framework 4.5.2 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}) (Version: - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 64.0.2 (x64 es-ES) (HKLM\...\Mozilla Firefox 64.0.2 (x64 es-ES)) (Version: 64.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 64.0.2.6947 - Mozilla)
MuseScore 2 (HKLM-x32\...\{7D01160E-D30F-4E88-8872-4A0A0A782E2E}) (Version: 2.3.2 - Werner Schweer and Others)
NVIDIA Controlador de 3D Vision 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 381.65 - NVIDIA Corporation)
NVIDIA Controlador de audio HD 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation)
NVIDIA Controlador de gráficos 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 381.65 - NVIDIA Corporation)
NVIDIA Controlador de la controladora 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation)
NVIDIA Software del sistema PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden
NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.10.0 - NVIDIA Corporation) Hidden
NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Panel de control de NVIDIA 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 381.65 - NVIDIA Corporation) Hidden
Paquete de idioma de AutoCAD 2010 - Español (HKLM\...\{5783F2D7-8001-040A-1102-0060B0CE6BBA}) (Version: 18.0.55.0 - Autodesk) Hidden
PDFTK Builder 3.9.4 (HKLM-x32\...\PDFTK Builder_is1) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.140.248 - Google, Inc.)
Presto 8.8 (HKLM-x32\...\{099EA4F2-0BE8-443B-B6EE-2B8FDF035DC0}) (Version: - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.)
Renta y Patrimonio 2016 (HKLM-x32\...\ST6UNST #1) (Version: - )
Renta y Patrimonio 2017 (HKLM-x32\...\ST6UNST #2) (Version: - )
Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.15024.5 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.15024.5 - Samsung Electronics Co., Ltd.)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0370 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden
SketchUp 2016 (HKLM\...\{1EE5F772-57F4-4299-8029-68F8A815E896}) (Version: 16.0.19912 - Trimble Navigation Limited)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.17054.16 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.17054.16 - Samsung Electronics Co., Ltd.)
Software Logitech para juegos 8.57 (HKLM\...\Logitech Gaming Software) (Version: 8.57.145 - Logitech Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TagScanner 6.0.31 (HKLM-x32\...\TagScanner_is1) (Version: - Sergey Serkov)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.132598 - TeamViewer)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Windows Driver Package - Dirección General de la Policía (UMPass) SmartCard (11/23/2017 1.0.2.6) (HKLM\...\4156F59B733E1BC3DE3D5DA2299224A42B2FF794) (Version: 11/23/2017 1.0.2.6 - Dirección General de la Policía)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\AutoCAD 2010\acadficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1412667433-2437821996-2063077104-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [Identificador de icono superpuesto para firmas digitales de AutoCAD] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2009-02-09] (Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2010-04-19] (Autodesk)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2019-01-16] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [HamsterFreeMenu] -> {2DEDD2C9-928E-4442-9417-769C969973B6} => C:\Program Files (x86)\Hamster Soft\Hamster Free ZIP Archiver\HamsterContextMenu64.dll [2014-11-12] (HamsterSoft)
ContextMenuHandlers1: [HamsterMenu] -> {2DEDD2C9-928E-4442-9417-769C969973B6} => C:\Program Files (x86)\Hamster Soft\Hamster Free ZIP Archiver\HamsterContextMenu64.dll [2014-11-12] (HamsterSoft)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-24] (Alexander Roshal)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-04-01] (NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShell.dll [2019-01-16] (AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [HamsterFreeMenu] -> {2DEDD2C9-928E-4442-9417-769C969973B6} => C:\Program Files (x86)\Hamster Soft\Hamster Free ZIP Archiver\HamsterContextMenu64.dll [2014-11-12] (HamsterSoft)
ContextMenuHandlers6: [HamsterMenu] -> {2DEDD2C9-928E-4442-9417-769C969973B6} => C:\Program Files (x86)\Hamster Soft\Hamster Free ZIP Archiver\HamsterContextMenu64.dll [2014-11-12] (HamsterSoft)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-24] (Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-1412667433-2437821996-2063077104-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ContextMenuHandlers4_S-1-5-21-1412667433-2437821996-2063077104-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
ContextMenuHandlers5_S-1-5-21-1412667433-2437821996-2063077104-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Joseba\AppData\Roaming\Dropbox\bin\DropboxExt64.26.0.dll [2019-01-08] (Dropbox, Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {15B4DE56-7290-4ACF-AE67-42551FD9F529} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation)
Task: {15E2E187-1087-49CA-ABBC-002A485E9899} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated)
Task: {1AE79A89-9D7D-4EB7-BEF6-BCC6F368B0B3} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {22AA874C-CEA9-4C5E-AEC8-01A0CCD414F1} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [2019-01-16] (AVG Technologies CZ, s.r.o.)
Task: {27073C8F-C482-4B99-A247-F10893557F0F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation)
Task: {277961E0-1448-4EC3-AB1E-B42B0BBE012D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation)
Task: {36C1D827-2ADF-4C6D-BF29-3DA4767672FA} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation)
Task: {4B4AE81D-4D3E-4EC8-AD98-A5774E83BD55} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation)
Task: {5B3297E3-55E1-4FED-BD39-49AD3DBF780C} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks [Argument = /run /TN "\Microsoft\Windows\Setup\gwx\refreshgwxconfig"]
Task: {5D50BC4E-4CC5-4566-A1B4-6EA2D503464B} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-12-12] ()
Task: {682ACCC2-50D8-4FE9-86EE-53ABC9F791EA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2019-01-10] (Piriform Software Ltd)
Task: {6FDAF252-4ECA-4C18-A9EE-FECAA48C04C1} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation)
Task: {75A8D4D1-F826-40BE-BB04-EB851A79DD64} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-07-17] (Google Inc.)
Task: {92CB6972-3D9B-46E9-A008-E9E1ECA898BB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-01-10] (Piriform Ltd)
Task: {9B61721E-27BD-4444-859E-6367BD6F9493} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2019-01-16] (AVG Technologies CZ, s.r.o.)
Task: {AFD1F28B-0A65-4127-838F-637E8101422B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_Plugin.exe [2018-10-27] (Adobe Systems Incorporated)
Task: {B3A3E922-EAC0-47BC-BB18-E4B580BB8EBB} - System32\Tasks\Google Update => C:\Windows\upr.exe <==== ATTENTION
Task: {C85C4808-79F7-4E31-AFDF-AAAAC2F0B4E5} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1412667433-2437821996-2063077104-1001Core => C:\Users\Joseba\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {CE42661E-6439-4E64-B076-ACC9DB658C04} - System32\Tasks\Apagar dentroo de 2 horas => C:\Windows\System32\shutdown.exe [2009-07-14] (Microsoft Corporation)
Task: {D205203E-22D1-4D6D-A530-037712BDECA9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation)
Task: {F3BFFF8E-E78E-4419-A772-9B19162475F1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-07-17] (Google Inc.)
Task: {F53EFB01-2FE4-49DF-A479-844A3EA4DD32} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1412667433-2437821996-2063077104-1001UA => C:\Users\Joseba\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {FD1EFAEA-11D7-471D-9343-C69A5F2ED7A8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1412667433-2437821996-2063077104-1001Core.job => C:\Users\Joseba\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1412667433-2437821996-2063077104-1001UA.job => C:\Users\Joseba\AppData\Local\Dropbox\Update\DropboxUpdate.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2019-01-16 13:54 - 2019-01-16 13:54 - 000662960 _____ () C:\Program Files (x86)\AVG\Antivirus\streamback.dll
2019-01-16 13:54 - 2019-01-16 13:54 - 000550832 _____ () C:\Program Files (x86)\AVG\Antivirus\gui_cache.dll
2019-01-16 13:54 - 2019-01-16 13:54 - 001967536 _____ () C:\Program Files (x86)\AVG\Antivirus\shepherdsync.dll
2019-01-21 22:07 - 2019-01-21 22:07 - 006938312 _____ () C:\Program Files (x86)\AVG\Antivirus\defs\19012104\algo64.dll
2011-03-16 23:07 - 2011-03-16 23:07 - 004297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2015-01-05 23:14 - 2005-03-12 01:07 - 000087040 _____ () C:\Windows\System32\pdfcmnnt.dll
2014-09-18 08:23 - 2014-09-18 08:23 - 000866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2014-10-14 19:51 - 2014-10-14 19:51 - 001050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2014-09-18 08:23 - 2014-09-18 08:23 - 000059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2014-10-14 19:51 - 2014-10-14 19:51 - 000242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2017-03-14 21:28 - 2017-05-03 21:21 - 001267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2015-01-07 13:47 - 2015-01-07 23:33 - 000076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2019-01-16 13:54 - 2019-01-16 13:54 - 093696960 _____ () C:\Program Files (x86)\AVG\Antivirus\libcef.dll
2018-10-20 15:55 - 2019-01-11 17:55 - 002712432 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2019-01-10 11:01 - 2019-01-10 11:01 - 000103560 _____ () C:\Program Files\CCleaner\lang\lang-1034.dll
2019-01-09 23:00 - 2019-01-08 14:07 - 001140552 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll
2019-01-09 23:00 - 2019-01-08 14:07 - 002103112 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\dropbox_crashpad.dll
2019-01-09 23:00 - 2019-01-08 14:09 - 000023376 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\tornado.speedups.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000025456 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000148968 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\_cffi_backend.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 001878888 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000025960 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000118232 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\pywintypes36.dll
2019-01-09 23:00 - 2019-01-08 14:07 - 000109024 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32api.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000082760 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\fastpath.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000418776 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\pythoncom36.dll
2019-01-09 23:00 - 2019-01-08 14:08 - 000074072 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000027616 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32event.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000049128 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32process.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000026600 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32clipboard.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000131552 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32file.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000182752 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32gui.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000027616 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32pipe.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000119272 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32security.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000401752 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32com.shell.shell.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000028640 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32job.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000034664 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000062304 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winshell.compiled._winshell.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000023520 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\mmapfile.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000053736 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32service.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000065504 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32evtlog.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000025944 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000068968 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winenumhandles.compiled._WinEnumHandles.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000028520 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000027488 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\crashpad.compiled._Crashpad.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000032224 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32ts.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000156504 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000092496 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt562.sip.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 001778000 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000518992 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000052056 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineCore.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 001929552 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 003821392 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000044888 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000132944 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000218456 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000205656 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000061408 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32print.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000051552 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000027624 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\win32profile.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000033632 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winreindex.compiled._winreindex.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000028008 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000025960 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000025448 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000025960 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000031600 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000486880 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winxpgui.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000029040 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 011830608 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\nucleus_python.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000029024 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:07 - 000036312 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\librsync.dll
2019-01-09 23:00 - 2019-01-08 14:09 - 000025960 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.advapi32.compiled._winffi_advapi32.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000433992 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2019-01-09 23:00 - 2019-01-08 14:09 - 000038240 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\wind3d11.compiled._wind3d11.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:08 - 000025920 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\libEGL.DLL
2019-01-09 23:00 - 2019-01-08 14:08 - 001592128 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2019-01-09 23:00 - 2019-01-08 14:09 - 000029544 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.shell32.compiled._winffi_shell32.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000241488 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\windragdrop.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000102736 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWinExtras.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000025448 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.gdi32.compiled._winffi_gdi32.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000037200 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngine.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000029544 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000530768 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.cp36-win32.pyd
2019-01-09 23:00 - 2019-01-08 14:09 - 000348496 _____ () C:\Users\Joseba\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.cp36-win32.pyd
2012-09-23 19:44 - 2012-09-23 19:44 - 000010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\es_es\acrotray.esp
2017-03-14 21:28 - 2017-05-03 21:21 - 001040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Joseba:Heroes & Generals [38]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0]
AlternateDataStreams: C:\Users\Joseba\Dropbox:user.myxattr [0]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-1412667433-2437821996-2063077104-1001\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2018-12-03 22:19 - 000003727 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 209.34.83.73:443
127.0.0.1 209.34.83.73:43
127.0.0.1 209.34.83.67:443
127.0.0.1 209.34.83.67:43
127.0.0.1 ood.opsource.net
127.0.0.1 199.7.52.190:80
127.0.0.1 OCSP.SPO1.VERISIGN.COM
127.0.0.1 199.7.54.72:80
127.0.0.1 192.150.14.69
127.0.0.1 192.150.18.101
127.0.0.1 192.150.18.108
127.0.0.1 192.150.22.40
127.0.0.1 192.150.8.100
127.0.0.1 192.150.8.118
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-4.adobe.com
127.0.0.1 3dns.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com
127.0.0.1 activate.wip2.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip4.adobe.com
127.0.0.1 adobe-dns-1.adobe.com
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Calibre2\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
HKU\S-1-5-21-1412667433-2437821996-2063077104-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Joseba\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 80.58.61.250 - 80.58.61.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
MSCONFIG\startupfolder: C:^Users^Joseba^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupreg: AceStream => C:\Users\Joseba\AppData\Roaming\ACEStream\engine\ace_engine.exe
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
MSCONFIG\startupreg: ControlCenter3 => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun
MSCONFIG\startupreg: Dropbox Update => "C:\Users\Joseba\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
MSCONFIG\startupreg: HFALoader => C:\Program Files (x86)\Hamster Soft\Hamster Free ZIP Archiver\HamsterArc.exe -loader
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{09ACB2E4-9932-4969-84CF-37075D404713}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{DD141B41-46BC-4175-82AD-0058389A2D84}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{07492CB0-DFFF-43D5-87E2-81CBD1DA6DAA}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft, Inc.)
FirewallRules: [{6E6BA941-0C01-496C-9EB7-802CDF7F5FBE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft, Inc.)
FirewallRules: [{83941E49-6A03-46EA-A467-6B37C437BC7A}] => (Allow) C:\Users\Joseba\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
FirewallRules: [{09C320D6-88F3-4B65-891D-B6EC682C1069}] => (Allow) C:\Users\Joseba\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
FirewallRules: [TCP Query User{67776779-3E44-4CCF-BA1D-918809FD27FB}C:\users\joseba\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\joseba\appdata\roaming\dropbox\bin\dropbox.exe (Dropbox, Inc.)
FirewallRules: [UDP Query User{C9C3A1FF-941C-4891-ABBD-477BB71670B1}C:\users\joseba\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\joseba\appdata\roaming\dropbox\bin\dropbox.exe (Dropbox, Inc.)
FirewallRules: [{585D0D21-1B68-461B-8075-617932F6AE6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestra.exe ()
FirewallRules: [{792E7A7F-5093-468A-874B-B4BFF605E731}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestra.exe ()
FirewallRules: [{AAA103FE-B4EC-4454-84F1-C1E30A07B55A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe ()
FirewallRules: [{67FB6695-5BAC-4163-A55A-283D0AA92B3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe ()
FirewallRules: [{432B68E1-BEBB-4FCD-AAF6-A58BFCB6E7AD}] => (Allow) C:\Program Files (x86)\CianoplanPDF\CianoplanPDF.exe (Cianoplan)
FirewallRules: [{E4FC131C-3AA8-4A88-B224-FD1ECCAF91DF}] => (Allow) C:\Program Files (x86)\CianoplanPDF\CianoplanPDF.exe (Cianoplan)
FirewallRules: [{B30CB9A6-5DF4-415B-8F6A-260DFD8A3A20}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe ()
FirewallRules: [{BC9BA363-BF97-434E-B6A1-396451A64AD9}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe ()
FirewallRules: [{7676E1F5-F6F2-407D-A731-6C8854E3169E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe ()
FirewallRules: [{3FF07674-ED7B-419A-AF13-53A1D42F316F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe ()
FirewallRules: [{A0E269FB-DB0C-449D-A947-9E32A5156757}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
FirewallRules: [{24BCEF6C-A38E-4EC7-A175-320CC4E9701F}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
FirewallRules: [{9A940DA9-CEF0-4116-827E-F4C286E1CDD3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
FirewallRules: [{24AB9A57-2C78-4D8F-AE7C-C25DBFB00BB8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
FirewallRules: [{2A8AC3E6-8104-40A0-94F1-EA04EAC56267}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc.)
FirewallRules: [{904FFEE6-DF64-4301-B417-497D1713207B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc.)
FirewallRules: [{18B5DE2E-B67D-4EC0-BE11-67F6D7C0C20A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [{85768A89-A1D6-4E79-81FE-81D41CAA62F5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [{6B769F88-7DF3-4052-A9B3-2E49206467D0}] => (Allow) C:\Users\Joseba\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
FirewallRules: [{291F44BC-3888-448B-B4A6-89F482A497C0}] => (Allow) C:\Users\Joseba\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
FirewallRules: [TCP Query User{0974D167-023A-497B-B4BA-65AA278CE2CA}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [UDP Query User{6D323A07-114D-4110-BD0D-3B1318516C39}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [{068084AA-5FDF-40E6-BE29-4691F35602EB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [{BF1DA876-D7CF-4409-B609-A45730714661}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
FirewallRules: [{82B2E2AF-0D2E-4190-8042-EC6FD16B9222}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{25BFFF5E-DB9B-48CD-BB31-06F903DC475D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation)
FirewallRules: [{DDD6834A-55C2-4A38-9627-0C6621D30939}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{964C4AEA-5183-4F20-ABDA-C47A4B98AF9A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{ADB639EF-5FE0-4FA9-A998-77E70F215895}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\HotwLauncher.exe (Microsoft)
FirewallRules: [{BDF39C31-5F7A-4859-8C18-F5A9A986FEED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\HotwLauncher.exe (Microsoft)
FirewallRules: [{844DA831-4EC4-444D-A49B-566340ABD51A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{A28C462B-21DC-49F5-A165-24620FADC1F0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{6251E526-93BA-44B3-8886-B2F284DAFCBD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{641D9D12-720D-41C9-8A93-D5E9F78403DE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{4F7396AA-EAFE-4CA8-8ADC-58C16FFAD49B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestraLargeAddressAware.exe ()
FirewallRules: [{0CBAF81B-AEFE-4D04-B096-C24662A3F97F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestraLargeAddressAware.exe ()
FirewallRules: [{AAC8B209-0516-46CE-90C8-AF1E2D3C9F8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (Reto-Moto ApS)
FirewallRules: [{70699FFE-950D-4C71-B487-B296ECF956AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (Reto-Moto ApS)
FirewallRules: [{6464DCA5-EF20-4CB8-9F13-0730F35B0961}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [TCP Query User{C72982D0-CE1D-40FA-9F30-1AAAC7E66722}C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\launcher.exe] => (Allow) C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\launcher.exe (1C-777 Limited)
FirewallRules: [UDP Query User{EDE6D501-9277-4F30-8235-390323226FC1}C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\launcher.exe] => (Allow) C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\launcher.exe (1C-777 Limited)
FirewallRules: [TCP Query User{78010E16-BB4B-4684-B86D-4951A5F9A611}C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\il-2.exe] => (Allow) C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\il-2.exe (1C-777 Limited)
FirewallRules: [UDP Query User{6EC903B8-EE06-49B9-9A9A-F6AB69DF118D}C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\il-2.exe] => (Allow) C:\program files (x86)\1c game studios\il-2 sturmovik battle of stalingrad\bin\game\il-2.exe (1C-777 Limited)
FirewallRules: [{FA165DB2-3E84-4B5E-B780-3D5CF14910D4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{DC85BB46-4C12-44E2-AAA4-7E66D8CC10A3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{1AB0A86C-0EEF-435A-BD74-9549BF71E7FF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{FE9638DF-E033-4E06-B4A9-36C37AB32701}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
FirewallRules: [{B4856D23-8AE2-4F59-808A-58EEBCE7CA87}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{A04A1995-12B4-4297-BA0B-7938CDAF8456}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
FirewallRules: [{7F3BE407-6217-4CCC-A7EA-1C62A50116F3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
FirewallRules: [{43CB3B30-2D27-4411-9C3E-638C92498501}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (devolo AG)
FirewallRules: [{696E5F92-39AC-4F06-8729-89F241F66437}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (devolo AG)
FirewallRules: [{33A36C0B-BE0C-45C4-916B-6B0FBC65EC10}] => (Allow) C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies CZ, s.r.o.)
FirewallRules: [{281E5ADC-65C0-463B-B508-6A22625F97DB}] => (Allow) C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies CZ, s.r.o.)
FirewallRules: [{26815951-8725-48E0-BDF0-36FF5B880055}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestraLargeAddressAware.exe ()
FirewallRules: [{EE008C39-1F4D-4014-B3DB-911DE4745E70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra\System\RedOrchestraLargeAddressAware.exe ()
FirewallRules: [{296F11C1-469B-4580-B6CC-A37B95446B48}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
FirewallRules: [{D4F5579D-B57C-4BE3-B72E-E7CC555B94E9}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd)
==================== Restore Points =========================
30-12-2018 14:58:56 Punto de control programado
07-01-2019 21:15:47 Punto de control programado
==================== Faulty Device Manager Devices =============
Name: Tarjeta LAN inalámbrica 802.11n
Description: Tarjeta LAN inalámbrica 802.11n
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Ralink Technology, Corp.
Service: netr28x
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/09/2019 10:06:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: GWXUX.exe, versión: 6.3.9600.17813, marca de tiempo: 0x554a15f3
Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.23418, marca de tiempo: 0x5708a857
Código de excepción: 0xc0000005
Desplazamiento de errores: 0x0000000000048d84
Id. del proceso con errores: 0x156c
Hora de inicio de la aplicación con errores: 0x01d4a85f225878d4
Ruta de acceso de la aplicación con errores: C:\Windows\System32\GWX\GWXUX.exe
Ruta de acceso del módulo con errores: C:\Windows\SYSTEM32\ntdll.dll
Id. del informe: 61956014-1452-11e9-a897-20cf30200a73
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: No se puede inicializar el índice.
Detalles:
El catálogo del índice de contenido está dañado. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: No se puede inicializar la aplicación.
Contexto: aplicación Windows
Detalles:
El catálogo del índice de contenido está dañado. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: No se puede inicializar el objeto Recopilador.
Contexto: aplicación Windows, catálogo SystemIndex
Detalles:
El catálogo del índice de contenido está dañado. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: No se puede inicializar el complemento <Search.TripoliIndexer>.
Contexto: aplicación Windows, catálogo SystemIndex
Detalles:
No se ha encontrado el elemento. (HRESULT : 0x80070490) (0x80070490)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: No se puede inicializar el complemento <Search.JetPropStore>.
Contexto: aplicación Windows, catálogo SystemIndex
Detalles:
El catálogo del índice de contenido está dañado. (HRESULT : 0xc0041801) (0xc0041801)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 9002) (User: )
Description: El servicio Windows Search no puede cargar la información del almacén de propiedades.
Contexto: aplicación Windows, catálogo SystemIndex
Detalles:
La base de datos del índice de contenido está dañada. (HRESULT : 0xc0041800) (0xc0041800)
Error: (01/09/2019 07:50:56 AM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: El servicio Windows Search se está deteniendo porque hay un problema con el indizador: The catalog is corrupt.
Detalles:
El catálogo del índice de contenido está dañado. (HRESULT : 0xc0041801) (0xc0041801)
System errors:
=============
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Protección de software terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Servicio de uso compartido de red del Reproductor de Windows Media terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 30000 milisegundos: Reiniciar el servicio.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio Instalador de módulos de Windows terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 120000 milisegundos: Reiniciar el servicio.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA LocalSystem Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 6000 milisegundos: Reiniciar el servicio.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio devolo Network Service se terminó de manera inesperada. Esto ha sucedido 1 veces.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: El servicio NVIDIA Telemetry Container terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 1000 milisegundos: Reiniciar el servicio.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio SAMSUNG Mobile Connectivity Service se terminó de manera inesperada. Esto ha sucedido 1 veces.
Error: (01/21/2019 08:26:58 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio PnkBstrA se terminó de manera inesperada. Esto ha sucedido 1 veces.
CodeIntegrity:
===================================
Date: 2018-05-30 14:21:54.966
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\gpapi.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
Date: 2018-05-30 14:21:54.866
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\gpapi.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
Date: 2018-05-30 14:21:54.681
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\FWPUCLNT.DLL porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
Date: 2018-05-30 14:21:54.485
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
Date: 2018-05-30 14:21:54.383
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\NapiNSP.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
Date: 2018-05-30 14:21:54.283
Description:
Integridad de código no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume2\Windows\System32\nlaapi.dll porque el conjunto de hashes de imagen por página no se encuentra en el sistema.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz
Percentage of memory in use: 22%
Total physical RAM: 12286.05 MB
Available physical RAM: 9530.83 MB
Total Virtual: 24570.29 MB
Available Virtual: 21726.99 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:223.47 GB) (Free:51.11 GB) NTFS
Drive d: (Disco local) (Fixed) (Total:465.76 GB) (Free:160.83 GB) NTFS
\\?\Volume{9977717a-934d-11e4-8ab3-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 7A562138)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: BD2D2258)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================