Gracias Miguel Ya listo los reportes
texto preformateado precedido por 4 espacios
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-05-2019
Ran by RA (administrator) on RA1 (ECS H55H-CM) (04-05-2019 10:24:50)
Running from C:\Users\RA\Desktop
Loaded Profiles: RA (Available Profiles: RA)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Users\RA\Desktop\EditPad.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast Cleanup\TuneupSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast Cleanup\TuneupUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Check Point Software Technologies Ltd. -> ) C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\Endpoint Security\EFR\EFRService.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\Endpoint Security\Remediation\RemediationService.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\ICM\ICM-Service-NET.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
(Corel Corporation -> ) C:\Windows\System32\PSIService.exe
(DEVGURU CO LTD -> DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(Google Inc -> Google LLC) C:\Program Files\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Nalpeiron Ltd.) [File not signed] C:\Windows\System32\ASTSRV.EXE
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Protexis Inc. -> Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ZTE CORPORATION -> ) C:\ProgramData\ZDSupport\ZDServ\CancelAutoPlay_Server.exe
(ZTE CORPORATION -> ) C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [821144 2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap.dll [1377752 2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
HKLM\...\Run: [{54E12E9A-2265-4895-AD5B-EE20C37E3D63}] => C:\Program Files\Claro 3G\UUShell.exe [122112 2014-09-09] (ZTE CORPORATION -> )
HKLM\...\Run: [ZoneAlarm] => C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [146800 2018-07-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
HKLM\...\Run: [ZaAntiRansomware] => C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe [4226928 2019-02-28] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
HKLM\...\Run: [Corel Photo Downloader] => C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [531272 2007-08-28] (Corel Corporation -> Corel, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [225672 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-4205097835-220730537-2927603946-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7173848 2016-12-21] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-4205097835-220730537-2927603946-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [8065456 2019-04-12] (Support.com, Inc. -> SUPERAntiSpyware)
HKU\S-1-5-21-4205097835-220730537-2927603946-1000\...\MountPoints2: {00359afe-7fc2-11e8-bba5-1078d2843396} - E:\Windows\AutoRun.exe
HKU\S-1-5-21-4205097835-220730537-2927603946-1000\...\MountPoints2: {00359b11-7fc2-11e8-bba5-1078d2843396} - E:\Windows\AutoRun.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] ->
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\74.0.3729.131\Installer\chrmstp.exe [2019-05-02] (Google LLC -> Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-10-28]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software s.r.o. -> AVAST Software)
BootExecute: autocheck autochk /r \??\C:autocheck autochk *
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0244CD49-29C1-4F0D-BBC9-D931DDA1C654} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [7173848 2016-12-21] (Piriform Ltd -> Piriform Ltd)
Task: {0A6C9DCF-F64E-4594-BE15-1F4CFF91FDE9} - System32\Tasks\Avast Cleanup Update => C:\Program Files\AVAST Software\Avast Cleanup\TUNEUpdate.exe [1659000 2019-04-17] (AVAST Software s.r.o. -> AVAST Software)
Task: {1742B0A9-A017-4A31-B33F-1A0ADFFEFE67} - System32\Tasks\{17E72E3C-E23F-44A9-B831-030BC5E99CC0} => C:\Windows\system32\pcalua.exe -a "C:\ROSA TODOS\PAINTSHOP PRO\pluggins\+ instalando\sbpsetup140.exe" -d "C:\ROSA TODOS\PAINTSHOP PRO\pluggins\+ instalando"
Task: {2A27228A-9C9D-486A-9E3B-F42122005500} - System32\Tasks\Games\UpdateCheck_S-1-5-21-4205097835-220730537-2927603946-1000
Task: {31FAAC09-417C-45C3-B1CD-8A090AC99169} - System32\Tasks\{B0EFE7C5-7636-4D9C-A449-96B864F2CBB4} => C:\Users\RA\AppData\Local\Gtarcade\app\GTarcade.exe
Task: {32F43902-EE98-4A36-B0D4-01ECD62C14EC} - System32\Tasks\{46A01B35-EDAF-4A08-9CBF-54865CE3FBBE} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\Corel\Corel Paint Shop Pro Photo X2 - Installation Files\setup.exe" -d "C:\Program Files\Corel\Corel Paint Shop Pro Photo X2 - Installation Files"
Task: {40C40F67-C46F-4692-B1B4-BD2A8E122CE2} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1951312 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {4BD0FEF7-9BDF-413D-AFBF-60703318422E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [156456 2019-05-02] (Google Inc -> Google LLC)
Task: {4EDBEDB6-47E5-49E8-B5DD-ED9F151EFEC3} - System32\Tasks\{A0A38803-F567-425A-84B7-B0B7E518A2B5} => C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe [3675976 2008-09-07] (Corel Corporation -> Corel, Inc.) [File not signed]
Task: {78AA6463-6900-4BF9-9FD6-794318FFDD76} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [156456 2019-05-02] (Google Inc -> Google LLC)
Task: {943A4B7A-644B-43DA-9AB3-11DBFFAFB277} - System32\Tasks\Avast SecureLine Update => C:\Program Files\AVAST Software\SecureLine\VpnUpdate.exe
Task: {9CCE6E57-5146-4991-AA84-2BAE66B801CA} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2385800 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
Task: {ACBAF8DB-0DBF-4AA6-9B0F-CB34ED8E9B47} - System32\Tasks\{C206821E-D1D6-4225-BBF1-A06B00195717} => C:\Users\RA\AppData\Local\Gtarcade\app\GTarcade.exe
Task: {C201BEF2-FDED-4938-A385-D8C9E393A35D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [566592 2008-07-30] (Apple Inc. -> Apple Inc.)
Task: {D36AA111-7BB5-4687-B736-81C14DC6B43A} - System32\Tasks\{06F9049B-19A6-4FE6-9E8C-21F2A869A286} => C:\Users\RA\AppData\Local\Gtarcade\app\GTarcade.exe
Task: {E90B7A25-138F-4DF0-9AAA-14C558F4510D} - System32\Tasks\{4700CBAF-4D1F-4E05-90F4-B0F75E992F3A} => C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe [3675976 2008-09-07] (Corel Corporation -> Corel, Inc.) [File not signed]
Task: {EDAEA6C1-14D4-44E3-BEE7-75E3B76AC867} - System32\Tasks\{2FBA1665-1570-4BD6-92AD-0651E6F9EDCA} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe"
Task: {F148B608-AE93-4568-9D20-4F4B8688BC41} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {F7744858-77D9-47B2-AD02-126499029153} - System32\Tasks\Opera scheduled Autoupdate 1536968952 => C:\Users\RA\AppData\Local\Programs\Opera\launcher.exe [1235032 2019-01-09] (Opera Software AS -> Opera Software)
Task: {FB7BD3AB-0E10-461F-AF2C-4554D90B2BF1} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1983376 2019-04-03] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 200.109.78.12 200.44.32.12
Tcpip\..\Interfaces\{0F63CEC4-6495-48E0-905D-E4DCDB151F76}: [DhcpNameServer] 200.109.78.12 200.44.32.12
Tcpip\..\Interfaces\{DC2264C3-0F7A-458F-85D3-C43DD86B07F8}: [DhcpNameServer] 186.166.131.59 186.24.222.196
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-4205097835-220730537-2927603946-1000\Software\Microsoft\Internet Explorer\Main,Start Page =
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-4205097835-220730537-2927603946-1000 -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation) [File not signed]
FireFox:
========
FF DefaultProfile: byy9mu6n.default
FF ProfilePath: C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default [2019-05-04]
FF Extension: (ZenMate VPN - Mejor seguridad para Internet) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2019-03-09]
FF Extension: (ZenMate Security, Privacy & Unblock VPN) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2017-09-27] [Legacy]
FF Extension: (AdBlock) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2019-05-03]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2019-05-03]
FF Extension: (Touch VPN) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2019-03-05]
FF Extension: (Avast Online Security) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\[email protected] [2019-05-03]
FF Extension: (UnMHT) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\Extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi [2017-10-18] [Legacy]
FF Extension: (Baidu Search Update) - C:\Users\RA\AppData\Roaming\Mozilla\Firefox\Profiles\byy9mu6n.default\features\{dca8297b-be3f-4863-83e1-402bb1fd7e2b}\[email protected] [2019-05-03]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2018-09-16] [Legacy] [not signed]
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-11-14] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR Profile: C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default [2019-05-04]
CHR Extension: (Presentaciones) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-02]
CHR Extension: (Documentos) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-02]
CHR Extension: (Google Drive) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-02]
CHR Extension: (Touch VPN) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2019-05-02]
CHR Extension: (YouTube) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-02]
CHR Extension: (Traducir Texto Seleccionado) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbimffnjoeobhjhochngikepgfejjmgj [2019-05-02]
CHR Extension: (ZenMate VPN - Mejor seguridad para Internet) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2019-05-02]
CHR Extension: (Hojas de cálculo) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-02]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-05-02]
CHR Extension: (AdBlock) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-05-02]
CHR Extension: (Avast Online Security) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-05-02]
CHR Extension: (Botón Guardar de Pinterest) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2019-05-02]
CHR Extension: (Farmtown Flash Enabler) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiaaidojlpkackffhmogpjgofcnjmclp [2019-05-02]
CHR Extension: (AutoMute) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjcdcbhfpjkcjinohfaaihpcmpnpmpie [2019-05-02]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-05-02]
CHR Extension: (Gmail) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-02]
CHR Extension: (Chrome Media Router) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-02]
CHR Extension: (RightToCopy) - C:\Users\RA\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmcimdddlobkphnofejmeidjblideca [2019-05-02]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [143776 2017-01-30] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com)
R2 ASTSRV; C:\Windows\system32\ASTSRV.EXE [57344 2008-05-19] (Nalpeiron Ltd.) [File not signed]
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5398416 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [317280 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [333392 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R2 CleanupPSvc; C:\Program Files\AVAST Software\Avast Cleanup\TuneupSvc.exe [10227280 2019-04-17] (AVAST Software s.r.o. -> AVAST Software)
R2 CPEFR; C:\Program Files\CheckPoint\Endpoint Security\EFR\EFRService.exe [2760440 2019-02-28] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 CpSbaCipolla; C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33016 2019-02-17] (Check Point Software Technologies Ltd. -> )
R2 CpSbaUpdater; C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33016 2019-02-17] (Check Point Software Technologies Ltd. -> )
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [930240 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
S4 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10000464 2018-10-27] (Gramblr -> ) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2904000 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016704 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
R2 ProtexisLicensing; C:\Windows\system32\PSIService.exe [177704 2007-06-05] (Corel Corporation -> )
R2 RemediationService; C:\Program Files\CheckPoint\Endpoint Security\Remediation\RemediationService.exe [18168 2019-01-22] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-02] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
R2 TESvc; C:\Program Files\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe [319736 2019-02-06] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 vsmon; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [4292984 2018-07-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 ZA NET ICM Service; C:\Program Files\CheckPoint\ICM\ICM-Service-NET.exe [56688 2018-04-16] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 ZAARUpdateService; C:\Program Files\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe [50032 2019-02-28] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 ZAPrivacyService; C:\Program Files\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [114936 2018-07-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies, Ltd.)
R2 ZDServ; C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe [432384 2014-09-09] (ZTE CORPORATION -> )
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [172424 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [220128 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [158240 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [255360 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [51264 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [40904 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [138480 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [36104 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\Windows\System32\drivers\aswNetSec.sys [388472 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [101200 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [73008 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [783232 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [403408 2019-04-12] (AVAST Software s.r.o. -> AVAST Software)
S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [165464 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [48152 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [312464 2019-05-02] (AVAST Software s.r.o. -> AVAST Software)
S3 BstkDrv; C:\Program Files\BlueStacks\BstkDrv.sys [218720 2018-02-21] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R2 cpbak; C:\Windows\System32\DRIVERS\cpbak.sys [54024 2018-07-10] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R1 CPEPMon; C:\Windows\System32\DRIVERS\CPEPMon.sys [91840 2019-01-27] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [90008 2014-12-02] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
R1 epnetflt; C:\Windows\system32\drivers\epnetflt.sys [94592 2018-12-24] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R1 epregflt; C:\Windows\system32\drivers\epregflt.sys [90888 2018-06-12] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R2 ISWKL; C:\Program Files\CheckPoint\Endpoint Security\Endpoint Common\Bin\ISWKL.sys [57584 2018-03-11] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 massfilter; C:\Windows\System32\DRIVERS\ztembbmassfilter.sys [11776 2012-11-22] (Microsoft Windows Hardware Compatibility Publisher -> MBB Incorporated)
S3 mtkmbim6.2; C:\Windows\System32\DRIVERS\mtkmbim7.sys [173568 2012-12-15] (Microsoft Windows Hardware Compatibility Publisher -> MBB)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26048 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [50744 2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SCDEmu; C:\Windows\System32\Drivers\SCDEmu.sys [112096 2011-11-14] (Power Software Ltd -> Power Software Ltd)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [184216 2014-12-02] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [365496 2018-07-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 WDC_SAM; C:\Windows\System32\DRIVERS\wdcsam.sys [20256 2015-04-30] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies)
S3 wdf_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [69120 2012-12-14] (Microsoft Windows Hardware Compatibility Publisher -> MBB)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [69120 2012-12-14] (Microsoft Windows Hardware Compatibility Publisher -> MBB)
U1 aswbdisk; no ImagePath
U3 iswSvc; no ImagePath
S3 MBAMSwissArmy; \SystemRoot\System32\Drivers\mbamswissarmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-05-04 10:24 - 2019-05-04 10:25 - 000029705 _____ C:\Users\RA\Desktop\FRST.txt
2019-05-04 10:23 - 2019-05-04 10:24 - 000000000 ____D C:\FRST
2019-05-04 10:17 - 2019-05-04 10:18 - 001788928 _____ (Farbar) C:\Users\RA\Desktop\FRST.exe
2019-05-04 10:15 - 2019-05-04 10:15 - 000001048 _____ C:\Users\RA\Desktop\sdddff.txt
2019-05-04 09:35 - 2019-05-04 09:37 - 007025360 _____ (Malwarebytes) C:\Users\RA\Desktop\adwcleaner_7.3.exe
2019-05-04 09:19 - 2019-05-04 09:19 - 000000299 _____ C:\Users\RA\Desktop\Chequear_ Disco_Windows.bat
2019-05-04 08:31 - 2019-05-04 08:37 - 000000000 ___RD C:\Users\RA\Documents\MEGA
2019-05-04 08:29 - 2019-05-04 08:29 - 000000000 ____D C:\Users\RA\AppData\Local\Mega Limited
2019-05-04 08:27 - 2019-05-04 08:46 - 029150648 _____ (MEGA Limited) C:\Users\RA\Desktop\MEGAsyncSetup.exe
2019-05-03 15:48 - 2019-05-03 15:48 - 252298628 _____ C:\Windows\MEMORY.DMP
2019-05-03 15:48 - 2019-05-03 15:48 - 000160776 _____ C:\Windows\Minidump\050319-10654-01.dmp
2019-05-03 12:01 - 2019-05-03 12:01 - 000056014 _____ C:\Users\RA\Downloads\CLORURO DE MAGNESIO -w oshar com 6.pdf
2019-05-03 12:00 - 2019-05-03 12:04 - 011675047 _____ C:\Users\RA\Downloads\1a- La Rueda Medicinal 216.pdf
2019-05-03 11:59 - 2019-05-03 12:03 - 000841222 _____ C:\Users\RA\Downloads\Nuestros Animales Ocultos -w angelred com 126.pdf
2019-05-03 11:58 - 2019-05-03 12:01 - 004828459 _____ C:\Users\RA\Downloads\1b- Las Cartas de la Medicina 53.pdf
2019-05-03 11:43 - 2019-05-03 12:03 - 220845225 _____ C:\Users\RA\Downloads\rebelion_en_la_granja_george_orwell_completa.mp4
2019-05-03 05:49 - 2019-05-03 05:49 - 000003288 ____N C:\bootsqm.dat
2019-05-02 20:51 - 2019-05-02 20:51 - 005748152 _____ (Check Point Software Technologies Ltd.) C:\Users\RA\Downloads\zaSetupWeb_156_028_18012.exe
2019-05-02 13:52 - 2019-05-02 14:04 - 081284120 _____ C:\Users\RA\Downloads\madonna_maluma_medellin_billboard_music_awards_.mp4
2019-05-02 13:36 - 2019-05-02 13:42 - 064968385 _____ C:\Users\RA\Downloads\gian_marco_sacala_a_bailar.mp4
2019-05-02 13:12 - 2019-05-02 13:13 - 089387488 _____ C:\Users\RA\Downloads\gian_marco_sacala_a_bailar.mp4.crdownload
2019-05-02 12:09 - 2019-05-02 12:09 - 000003565 _____ C:\Users\RA\Desktop\sffgdgg.yxy.txt
2019-05-02 12:00 - 2019-05-02 12:00 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-05-02 12:00 - 2019-05-02 12:00 - 000000000 ____D C:\Program Files\Malwarebytes
2019-05-02 11:43 - 2019-05-02 12:17 - 000003658 _____ C:\Users\RA\Desktop\Rkill.txt
2019-05-02 11:27 - 2019-05-02 11:31 - 000000238 _____ C:\Windows\ntbtlog.txt
2019-05-02 06:43 - 2019-05-02 06:43 - 000002003 _____ C:\Users\Public\Desktop\Avast Premier.lnk
2019-05-02 06:43 - 2019-05-02 06:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2019-05-02 06:26 - 2019-04-11 10:48 - 000311176 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-05-02 02:15 - 2019-05-02 02:17 - 017208138 _____ C:\Users\RA\Downloads\Pan de Pita fácil y rápido - EN SOLO 1 HORA.mp4
2019-05-02 01:41 - 2019-05-02 01:41 - 000002240 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-02 01:41 - 2019-05-02 01:41 - 000002199 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-05-02 01:22 - 2019-05-02 01:22 - 001214008 _____ (Google LLC) C:\Users\RA\Downloads\ChromeSetup.exe
2019-05-01 09:50 - 2019-05-01 09:50 - 000000189 _____ C:\Users\RA\Desktop\salmos.txt
2019-05-01 09:13 - 2019-05-01 09:14 - 005747696 _____ (Check Point Software Technologies Ltd.) C:\Users\RA\Downloads\zafwSetupWeb_156_028_18012.exe
2019-04-30 13:24 - 2019-04-30 13:24 - 000082895 _____ C:\Users\RA\Downloads\251c5715-23a9-4786-9b25-bef133d4a2b8.tmp
2019-04-29 12:18 - 2019-04-29 12:18 - 000522224 _____ C:\Windows\system32\FNTCACHE.DAT
2019-04-27 23:01 - 2019-04-27 23:01 - 000263812 _____ C:\Users\RA\Downloads\¿Cómo se potabiliza el agua_.html
2019-04-27 23:01 - 2019-04-27 23:01 - 000000000 ____D C:\Users\RA\Downloads\¿Cómo se potabiliza el agua__files
2019-04-26 10:43 - 2019-04-26 10:56 - 113321218 _____ C:\Users\RA\Downloads\manuel_carrasco_que_bonito_es_querer_.mp4
2019-04-25 19:44 - 2019-04-25 19:52 - 083575380 _____ C:\Users\RA\Downloads\lola_indigo_lalo_ebratt_maldicion.mp4
2019-04-25 07:21 - 2019-04-25 07:21 - 000000000 ____D C:\Users\Public\BlueStacks
2019-04-25 04:55 - 2019-04-25 05:06 - 110082141 _____ C:\Users\RA\Downloads\agua_gelical_el_agua_de_vida_como_prepararla_luis_antonio_melon_gomez_.mp4
2019-04-24 14:24 - 2019-04-24 14:25 - 011061801 _____ C:\Users\RA\Downloads\Fotos kaeina drive-download-20190424T182406Z-001.zip
2019-04-24 14:12 - 2019-04-24 14:21 - 000000000 ____D C:\Users\RA\Downloads\cartas
2019-04-24 14:09 - 2019-04-24 14:14 - 019844544 _____ C:\Users\RA\Downloads\Inwo cards complet cartas completo.rar
2019-04-24 12:41 - 2019-04-24 12:41 - 000445827 _____ C:\Users\RA\Downloads\VISIONES LUCIDAS_ ILLUMINATI, EL JUEGO DE CARTAS (TODAS LAS CARTAS + FOTO).html
2019-04-24 12:41 - 2019-04-24 12:41 - 000000000 ____D C:\Users\RA\Downloads\VISIONES LUCIDAS_ ILLUMINATI, EL JUEGO DE CARTAS (TODAS LAS CARTAS + FOTO)_files
2019-04-24 12:32 - 2019-04-24 12:32 - 001164762 _____ C:\Users\RA\Downloads\illuminati cartas en español NWO similitudes - Paranormal en Taringa!.html
2019-04-24 12:32 - 2019-04-24 12:32 - 000000000 ____D C:\Users\RA\Downloads\illuminati cartas en español NWO similitudes - Paranormal en Taringa!_files
2019-04-24 11:26 - 2019-04-24 11:26 - 000318025 _____ C:\Users\RA\Downloads\Illuminati, el Juego de Cartas (TODAS las Cartas + Foto) – LA REVOLUCIÓN PACÍFICA.html
2019-04-24 11:26 - 2019-04-24 11:26 - 000000000 ____D C:\Users\RA\Downloads\Illuminati, el Juego de Cartas (TODAS las Cartas + Foto) – LA REVOLUCIÓN PACÍFICA_files
2019-04-22 05:02 - 2019-04-22 05:02 - 003071939 _____ C:\Users\RA\Downloads\Lacalle Raquel - Los símbolos de la prehistoria.epub
2019-04-22 04:00 - 2019-04-22 04:00 - 002357507 _____ C:\Users\RA\Downloads\manual practico de conversacion arabe romanizado -español.pdf
2019-04-21 03:43 - 2019-04-21 04:13 - 088286436 _____ C:\Users\RA\Downloads\Backstreet Boys - DNA - 2019, FLAC.zip
2019-04-21 00:08 - 2019-04-21 00:08 - 015727949 _____ C:\Users\RA\Downloads\cuaderno1.pdf
2019-04-20 23:59 - 2019-04-20 23:59 - 000022937 _____ C:\Users\RA\Downloads\tcl1c.swf
2019-04-20 23:58 - 2019-04-20 23:58 - 000747715 _____ C:\Users\RA\Downloads\swfdata.swf
2019-04-20 23:57 - 2019-04-20 23:57 - 000161137 _____ C:\Users\RA\Downloads\autobus-palabras.swf
2019-04-19 10:30 - 2019-04-19 10:32 - 021467595 _____ C:\Users\RA\Downloads\chuchuwa_canciones_infantiles.mp4
2019-04-19 09:52 - 2019-04-19 10:06 - 146116561 _____ C:\Users\RA\Downloads\CAPERUCITA ROJA - cuento infantil.mp4
2019-04-19 01:35 - 2019-04-19 01:42 - 074641217 _____ C:\Users\RA\Downloads\wetransfer-8fe06a.zip
2019-04-19 01:21 - 2019-04-19 01:21 - 003910646 _____ C:\Users\RA\Downloads\AprendeaConfiarenTiMismoyRecuperaTuAutoestimaCursoCompleto320.pdf
2019-04-19 01:20 - 2019-04-19 01:20 - 001900967 _____ C:\Users\RA\Downloads\El Manual De La Técnica Alexander (Richard Brennan).pdf
2019-04-19 01:18 - 2019-04-19 01:18 - 001900967 _____ C:\Users\RA\Downloads\manual-de-la-tecnica-alexander-richard-brennanpdf.pdf
2019-04-19 00:57 - 2019-04-19 01:00 - 028521395 _____ C:\Users\RA\Downloads\wetransfer-3b8e42.zip
2019-04-18 15:33 - 2019-04-18 15:35 - 003651139 _____ C:\Users\RA\Downloads\Alexander Technique INGLES 159.pdf
2019-04-18 15:11 - 2019-04-18 15:11 - 000056481 _____ C:\Users\RA\Downloads\8-FyGD3I.jpg_large
2019-04-16 20:32 - 2019-04-16 20:34 - 000000000 ____D C:\Users\RA\Downloads\mandalas
2019-04-16 03:38 - 2019-04-16 03:39 - 018892192 _____ (AVAST Software) C:\Users\RA\Downloads\avast_secureline_setup.exe
2019-04-16 00:46 - 2019-05-03 11:40 - 000000000 ____D C:\Users\RA\Downloads\libros
2019-04-15 17:17 - 2019-04-15 17:17 - 000368781 _____ C:\Users\RA\Downloads\Duele ver estas imágenes de NotreDame engullida por el fuego.mp4
2019-04-14 22:35 - 2019-04-14 22:35 - 000183639 _____ C:\Users\RA\Downloads\tecnica para crecer el cbello.html
2019-04-14 22:35 - 2019-04-14 22:35 - 000000000 ____D C:\Users\RA\Downloads\tecnica para crecer el cbello_files
2019-04-13 01:19 - 2019-04-13 01:34 - 055741879 _____ C:\Users\RA\Downloads\Como Dibujar una Marina con Lapiz muy Facil y Paso a Paso.mp4
2019-04-12 14:49 - 2019-04-12 14:49 - 000000077 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2019-04-12 12:56 - 2019-04-12 12:56 - 000043719 _____ C:\Users\RA\Downloads\El Pollo.mp4
2019-04-12 03:53 - 2019-04-12 06:06 - 000000000 ____D C:\Users\RA\Downloads\torta sin horno
2019-04-11 10:48 - 2019-05-02 06:42 - 000312464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-04-11 10:48 - 2019-04-12 14:49 - 000403408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000783232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000388472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000255360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000220128 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000172424 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000165464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000158240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000138480 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000101200 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000073008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000051264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000040904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-04-11 10:48 - 2019-04-11 10:48 - 000036104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys
2019-04-08 18:54 - 2019-04-08 18:58 - 009281897 _____ C:\Users\RA\Downloads\concuerto en la llanura.mp4
2019-04-04 03:55 - 2019-04-04 03:55 - 000009808 _____ C:\Users\RA\Downloads\degradado primer plano gradientiCorelx.zip
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-05-04 10:06 - 2009-07-14 00:34 - 000021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-05-04 10:06 - 2009-07-14 00:34 - 000021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-05-04 09:58 - 2017-06-04 16:22 - 000000000 ____D C:\ProgramData\NVIDIA
2019-05-04 09:58 - 2009-07-14 00:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-04 09:31 - 2017-06-12 18:29 - 000000000 ____D C:\Users\RA\Desktop\oraciones TUITER
2019-05-04 08:24 - 2017-06-04 20:27 - 000000000 ____D C:\Users\RA\AppData\LocalLow\Mozilla
2019-05-04 07:55 - 2018-10-15 17:53 - 000007623 _____ C:\Users\RA\AppData\Local\Resmon.ResmonCfg
2019-05-04 06:29 - 2017-06-04 19:22 - 000000000 ____D C:\Users\RA\Desktop\TAZATE
2019-05-04 05:53 - 2017-12-31 16:02 - 000000000 ____D C:\Users\RA\Downloads\martin driver
2019-05-03 22:31 - 2017-09-11 08:32 - 000000000 ____D C:\Users\RA\AppData\Local\CrashDumps
2019-05-03 21:26 - 2017-06-13 10:58 - 000000000 ____D C:\Users\RA\AppData\Local\Corel
2019-05-03 21:26 - 2017-06-13 10:40 - 000000000 ____D C:\Users\RA\Documents\My PSP Files
2019-05-03 15:48 - 2017-11-13 15:59 - 000000000 ____D C:\Windows\Minidump
2019-05-03 05:50 - 2018-10-20 22:58 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
2019-05-03 01:15 - 2018-10-28 02:29 - 000000000 ____D C:\Users\RA\AppData\Local\AVAST Software
2019-05-02 20:18 - 2017-06-04 16:21 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-05-02 13:28 - 2009-07-14 00:53 - 000032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-05-02 12:08 - 2018-02-08 12:15 - 000000000 ____D C:\Program Files\B1 Free Archiver
2019-05-02 11:56 - 2018-07-07 02:11 - 000000000 ____D C:\Users\RA\Desktop\Nueva carpeta
2019-05-02 11:31 - 2009-07-13 22:37 - 000000000 ____D C:\Windows\inf
2019-05-02 02:27 - 2019-03-04 06:20 - 000000000 ____D C:\Users\RA\Downloads\receta
2019-05-02 01:41 - 2019-03-21 10:51 - 000000000 ____D C:\Program Files\Google
2019-04-30 14:20 - 2019-02-07 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeGamePick
2019-04-30 14:20 - 2019-02-07 01:14 - 000000000 ____D C:\Program Files\FreeGamePick
2019-04-30 14:18 - 2018-10-28 02:16 - 000000000 ____D C:\ProgramData\AVAST Software
2019-04-29 00:11 - 2017-06-04 21:39 - 000000000 ____D C:\Users\RA\AppData\Roaming\vlc
2019-04-29 00:06 - 2018-07-28 11:49 - 000001024 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-04-28 23:56 - 2018-12-13 14:45 - 000000000 ____D C:\Users\RA\Downloads\LOCHY
2019-04-28 23:55 - 2018-10-16 15:26 - 000000000 ____D C:\GUARDAR
2019-04-28 05:48 - 2017-09-22 02:26 - 000000000 _____ C:\Windows\system32\last.dump
2019-04-28 05:40 - 2017-06-04 11:58 - 000000000 ____D C:\Users\RA
2019-04-28 00:35 - 2009-07-13 22:37 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-04-28 00:34 - 2019-01-10 10:50 - 000000000 ____D C:\Program Files\Claro 3G
2019-04-28 00:34 - 2017-06-23 05:48 - 000000000 ____D C:\Users\RA\AppData\Roaming\Stellarium
2019-04-28 00:34 - 2017-06-04 20:39 - 000000000 ___RD C:\Users\RA\Desktop\Photoshop cs5
2019-04-28 00:34 - 2009-07-13 22:37 - 000000000 ____D C:\Windows\system32\NDF
2019-04-28 00:34 - 2009-07-13 22:37 - 000000000 ____D C:\Windows\registration
2019-04-26 14:05 - 2018-10-29 00:30 - 000000595 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2019-04-18 04:37 - 2017-06-13 05:48 - 000000000 ____D C:\Users\RA\Desktop\CODIGOS SAGRADOS
2019-04-18 02:26 - 2018-12-17 11:54 - 000000000 ____D C:\Users\RA\Downloads\mabel
2019-04-17 02:53 - 2017-06-19 12:30 - 000000000 ____D C:\Plugins
2019-04-12 20:20 - 2017-06-20 12:58 - 000000000 ____D C:\Users\RA\AppData\Local\ElevatedDiagnostics
2019-04-11 10:50 - 2018-10-28 02:29 - 000000000 ____D C:\Users\RA\AppData\Roaming\AVAST Software
2019-04-11 10:38 - 2018-10-28 02:17 - 000000000 ____D C:\Program Files\AVAST Software
2019-04-07 00:49 - 2019-03-28 22:21 - 000000000 ____D C:\Users\RA\AppData\Roaming\Jewel Match 3
2019-04-06 13:34 - 2019-03-09 07:27 - 000000000 ____D C:\Users\RA\Downloads\avast
2019-04-06 02:24 - 2017-06-04 19:23 - 000000000 ____D C:\Users\RA\Desktop\Intalando
==================== Files in the root of some directories =======
2018-10-15 17:53 - 2019-05-04 07:55 - 000007623 _____ () C:\Users\RA\AppData\Local\Resmon.ResmonCfg
2008-02-05 13:28 - 2008-02-05 13:28 - 000000051 _____ () C:\Users\RA\AppData\Local\setup.txt
2017-06-18 14:04 - 2017-06-18 14:04 - 000000000 _____ () C:\Users\RA\AppData\Local\{54C679D3-E250-4D19-8B05-105A919A621D}
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2019-04-29 22:10
==================== End of FRST.txt ============================