Ran by Paola (administrator) on PAOLA-PC (Sony Corporation SVE14118FXW) (08-12-2019 03:21:33)
Running from C:\Users\Paola\Desktop
Loaded Profiles: Paola & DefaultAppPool (Available Profiles: Paola & DefaultAppPool)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Huawei Technologies Co.,Ltd. -> ) C:\ProgramData\MobileBrServ\mbbService.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) [File not signed] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avp.exe
(Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avpui.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Qualcomm Atheros -> Atheros Communications) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Skillbrains) [File not signed] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\Lightshot.exe
(Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
(StagWare) [File not signed] C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-04-24] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2752752 2018-09-21] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [RtsCM] => C:\Windows\RTSCM64.EXE [196824 2019-05-12] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2017-04-11] (OOO Lightshot -> )
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [134736 2015-09-09] (Qualcomm Atheros -> Atheros Communications) [File not signed]
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: E - E:\.\StartModem.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: F - F:\Setup.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {06b9a8a7-143a-11e9-b511-083e8ebb38a4} - E:\Setup.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {06b9a989-143a-11e9-b511-083e8ebb38a4} - E:\AutoRun.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {06b9a9c5-143a-11e9-b511-083e8ebb38a4} - E:\AutoRun.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {06b9aa01-143a-11e9-b511-083e8ebb38a4} - E:\AutoRun.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {347f8fca-e566-11e8-b235-083e8ebb38a4} - E:\Setup.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {499a2c7c-8557-11e9-9017-30f9edbcbec3} - E:\.\StartModem.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {ed5dde12-c721-11e8-8b62-083e8ebb38a4} - F:\Setup.exe
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\...\MountPoints2: {eda04367-0c54-11e9-b703-083e8ebb38a4} - E:\Setup.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-21] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2015-09-09] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2015-09-09] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {1B55B99F-ABF1-4F81-BAFC-FC3374881E1A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {1EECDA75-16CA-4C8B-863F-30CB38AFB17D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
Task: {26636F3D-F5C6-4D0C-AB66-E41ADD0D6126} - System32\Tasks\{797FDB2B-4F89-44AB-B116-14B7A4F33654} => C:\Users\Paola\Downloads\BlueSoleil_9.2.494.0\BlueSoleil 9.2.494.0\install\amd64\setup.exe [1024400 2016-04-12] (IVT CORPORATION -> IVT Corporation )
Task: {26E59862-CD42-49BA-8D15-45EF4787CE14} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {298BA11F-90AE-4CDF-990E-4A924DB1020B} - System32\Tasks\Opera scheduled Autoupdate 1555253192 => C:\Users\Paola\AppData\Local\Programs\Opera\launcher.exe
Task: {362115D0-2F85-4DB6-91EC-706CD701A334} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-02] (Google Inc -> Google Inc.)
Task: {37443E66-AEA4-4625-ACE2-D0FB6FB2AE1D} - System32\Tasks\AdobeAAMUpdater-1.0-Paola-PC-Paola => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {3D8CB085-276B-4A4A-8163-E1BE0C93AAE4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4409DB35-9DA2-4728-942D-DC520F2FECEC} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {46482C22-9675-4EC8-A3A4-31A80D352003} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [482160 2010-06-21] (Sony Corporation -> Sony Corporation)
Task: {4F3A8A22-B40B-40A6-A3A0-8D7F4E69C6C5} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [7018264 2018-07-18] (Nero AG -> Nero AG)
Task: {75836BC9-8F4A-4622-9CF1-1BFDEC78528A} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [482160 2010-06-21] (Sony Corporation -> Sony Corporation)
Task: {8641BDB4-7057-4B50-8C62-DA1571324AE0} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {88CB0485-A0D3-4C48-B3D2-AFAC0F67BBE0} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask
Task: {8ED510F3-F18F-4C55-88E8-1882B0CD7975} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {909057A1-D557-4CB5-BC41-BEB8B5812C26} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-02] (Google Inc -> Google Inc.)
Task: {954FBFBB-0D0E-48A7-BBE7-583DFABFFF7C} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2850751526-314786809-3439856657-1001 => C:\Users\Paola\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-08-28] (Mega Limited -> Mega Limited)
Task: {B99E58D2-BE6B-49CE-BD79-4F594D04D9E6} - System32\Tasks\update-S-1-5-21-2850751526-314786809-3439856657-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {D3186E2E-C5C3-4A2E-9434-7531C2165371} - \OneDrive Standalone Update Task-S-1-5-21-2850751526-314786809-3439856657-1000 -> No File <==== ATTENTION
Task: {D3DEFCF3-1D4E-4B9D-ABA6-70173B61FDB0} - System32\Tasks\{37C01CE5-7A82-4D41-986E-2147A775751E} => C:\Windows\system32\pcalua.exe -a C:\Users\Paola\Downloads\Programs\win64_152824.exe -d C:\Users\Paola\Downloads\Programs
Task: {D7735780-06C3-4CE5-B325-E9CDABA3BF37} - System32\Tasks\{6AFE08C5-B807-4F7D-A0A4-728091C6AE8F} => C:\Users\Paola\Downloads\TradelizeLoader.exe [329360 2019-08-17] (TRADELIZE PTE. LTD. -> )
Task: {DAA9E381-C8FE-40AF-9946-7E580E74970B} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [482160 2010-06-21] (Sony Corporation -> Sony Corporation)
Task: {E38BD379-F251-4B07-B4B2-320C5C5BBA78} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {ED311E2F-1755-497D-B2D6-952B79C52C59} - System32\Tasks\DriverHubUACDisablingTask => C:\Program Files (x86)\DriverHub\DriverHub.exe [6750880 2019-04-09] (ROSTPEI LTD -> ROSTPAY LTD)
Task: {EFFC0AB7-BE0C-42BE-8610-C69448F54678} - \OneDrive Standalone Update Task-S-1-5-21-2850751526-314786809-3439856657-500 -> No File <==== ATTENTION
Task: {F0F6AED8-A218-4A3B-9B8E-F322261F3D15} - System32\Tasks\Opera scheduled assistant Autoupdate 1557413820 => C:\Users\Paola\AppData\Local\Programs\Opera\launcher.exe
Task: {F84D8AE9-73B2-4171-B6E3-18DDCA4876E7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {FCFB2A38-1199-40B9-A2E2-C80FC753D599} - System32\Tasks\{DCC740EF-C8E5-4680-AE11-A85F35134423} => C:\Windows\system32\pcalua.exe -a "C:\Users\Paola\Downloads\TradelizeLoader (1).exe" -d C:\Users\Paola\Downloads
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\update-S-1-5-21-2850751526-314786809-3439856657-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 4.4.4.4
Tcpip\..\Interfaces\{3B17E6C1-E7D0-48E0-ABEE-88B0DE8815FF}: [NameServer] 204.69.234.1,204.74.101.1
Tcpip\..\Interfaces\{3C87B911-4EFC-46B1-B9AC-07FB793E35AC}: [NameServer] 204.69.234.1,204.74.101.1,192.168.44.1
Tcpip\..\Interfaces\{3C87B911-4EFC-46B1-B9AC-07FB793E35AC}: [DhcpNameServer] 192.168.44.1
Tcpip\..\Interfaces\{40696220-083B-4995-A3CF-FAAED7A29424}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{5C76EAEF-3FB2-4DA8-B890-883DA66138A8}: [DhcpNameServer] 8.8.8.8 4.4.4.4
Tcpip\..\Interfaces\{AACDAA57-1EF9-4E79-8697-6C6F2CAE5B48}: [NameServer] 198.153.192.1,198.153.194.1
Tcpip\..\Interfaces\{D825676D-6BEF-4116-BAF3-9D34DCC74D9E}: [NameServer] 204.69.234.1,204.74.101.1
Tcpip\..\Interfaces\{F3194DF5-9DBA-49FC-B912-8189191DEEF8}: [NameServer] 190.121.224.39 190.121.224.40
Tcpip\..\Interfaces\{F4F19F17-023D-4345-8AC2-2D8F807FC2B6}: [NameServer] 9.9.9.9,1.1.1.1,192.168.42.129
Tcpip\..\Interfaces\{F4F19F17-023D-4345-8AC2-2D8F807FC2B6}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{FE0BF672-3FB5-43CC-901B-B8354442E217}: [NameServer] 204.69.234.1,204.74.101.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2850751526-314786809-3439856657-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO: Kaspersky Protection -> {9F904093-6E18-4536-BF5F-B03689CF00F0} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\IEExt\ie_plugin.dll [2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-03-16] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Kaspersky Protection -> {9F904093-6E18-4536-BF5F-B03689CF00F0} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\IEExt\ie_plugin.dll [2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-03-16] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Kaspersky Protection Toolbar - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\IEExt\ie_plugin.dll [2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\IEExt\ie_plugin.dll [2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-03-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-03-15] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-03-15] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-03-15] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: m3iifm9h.default
FF ProfilePath: C:\Users\Paola\AppData\Roaming\Mozilla\Firefox\Profiles\3eqcbygi.default-release [2019-09-19]
FF ProfilePath: C:\Users\Paola\AppData\Roaming\Mozilla\Firefox\Profiles\m3iifm9h.default [2019-12-04]
FF NetworkProxy: Mozilla\Firefox\Profiles\m3iifm9h.default -> type", 0
FF Extension: (Tippin.me) - C:\Users\Paola\AppData\Roaming\Mozilla\Firefox\Profiles\m3iifm9h.default\Extensions\[email protected] [2019-05-22]
FF Extension: (SoundFixer) - C:\Users\Paola\AppData\Roaming\Mozilla\Firefox\Profiles\m3iifm9h.default\Extensions\[email protected] [2019-07-20]
FF Extension: (show-my-ip) - C:\Users\Paola\AppData\Roaming\Mozilla\Firefox\Profiles\m3iifm9h.default\Extensions\{b93d6beb-e3fc-4ca7-82e9-930a8b040d69}.xpi [2019-06-29]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\FFExt\light_plugin_firefox\addon.xpi [2019-09-05]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-09-06] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-03-01] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-03-01] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-2850751526-314786809-3439856657-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\Paola\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2019-09-06] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2850751526-314786809-3439856657-1001: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\Paola\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2019-09-06] (Google Inc (TEST) -> Epic Privacy Browser) [File not signed]
FF Plugin HKU\S-1-5-21-2850751526-314786809-3439856657-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\Paola\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-10-29] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-25] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-25] <==== ATTENTION
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.facebook.com/"
CHR Profile: C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default [2019-12-08]
CHR Extension: (Duolingo en la web) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2019-12-04]
CHR Extension: (Descargador de Vídeo Vimeo) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgpbghdbejagejmciefmekcklikpoeel [2019-12-05]
CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2019-12-05]
CHR Extension: (Save Your Tabs for Later) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlpkofiapmkalomecepjjhlkjhommkap [2019-12-05]
CHR Extension: (VT4Browsers) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\efbjojhplkelaegfbieplglfidafgoka [2019-12-08]
CHR Extension: (Moon: Shop online with Bitcoin) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmpejjklcibliopgbghpgfinhbjopnn [2019-12-04]
CHR Extension: (Dark Reader) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2019-12-07]
CHR Extension: (Tab Suspender) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiabciakcmgepblmdkmemdbbkilneeeh [2019-12-04]
CHR Extension: (Lolli: Earn Bitcoin When You Shop) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\fleenceagaplaefnklabikkmocalkcpo [2019-12-05]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-12-06]
CHR Extension: (Bottle Pay) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\jadhemmpfahnnnlekbggdpmhmlmoldje [2019-12-05]
CHR Extension: (Grammarly for Chrome) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2019-12-05]
CHR Extension: (Webcam Toy) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade [2019-12-05]
CHR Extension: (Volume Control - Control del volumen) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhhgpflelfbhnihnbjigpgdbahgkbghp [2019-12-05]
CHR Extension: (Waves Keeper) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpilbniiabackdjcionkobglmddfbcjo [2019-12-04]
CHR Extension: (LightShot (la herramienta de captura de pantalla)) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbniclmhobmnbdlbpiphghaielnnpgdp [2019-12-05]
CHR Extension: (Direct Message for Instagram™) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdpgppkombninhkfhaggckdmencplhmg [2019-12-05]
CHR Extension: (MeddleMonkey) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\moihledlmchhofenpacbhphnbnpakgmo [2019-12-05]
CHR Extension: (ProjectWork - professional project scheduling) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\mojhjfelociapcolpehhfffkfdghakhj [2019-12-05]
CHR Extension: (Linguix) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndgklmlnheedegipcohgcbjhhgddendc [2019-12-05]
CHR Extension: (MetaMask) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2019-12-05]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-04]
CHR Extension: (Keybase) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\ognfafcpbkogffpmmdglhbjboeojlefj [2019-12-04]
CHR Extension: (HubSpot: Email Tracking & Sales CRM for Gmail) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiiaigjnkhngdbnoookogelabohpglmd [2019-12-04]
CHR Extension: (Browsec VPN - Free and Unlimited VPN) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\omghfjlpggmjjaagoclmmobgdodcjboh [2019-12-05]
CHR Extension: (Miro) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg [2019-12-05]
CHR Extension: (Cacoo - Diagramación & Colaboración en tiempo real) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh [2019-12-04]
CHR Extension: (Chrome Media Router) - C:\Users\Paola\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-05]
CHR HKLM\...\Chrome\Extension: [elhpdacimkjpccooodognopfhbdgnpbk] - hxxps://chrome.google.com/webstore/detail/elhpdacimkjpccooodognopfhbdgnpbk
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [elhpdacimkjpccooodognopfhbdgnpbk] - hxxps://chrome.google.com/webstore/detail/elhpdacimkjpccooodognopfhbdgnpbk
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2019-03-01] (Adobe Systems Incorporated -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-09-09] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
R2 AVP20.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avp.exe [357416 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
S2 ICEsoundService; C:\Windows\system32\ICEsoundService64.exe [483808 2018-04-11] (ICEpower a/s -> ICEpower a/s)
S3 klvssbridge64_20.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\vssbridge64.exe [438928 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
S3 KSDE4.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 4.0\ksde.exe [619752 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-12-04] (Malwarebytes Inc -> Malwarebytes)
R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [242264 2014-11-20] (Huawei Technologies Co.,Ltd. -> )
R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [8704 2019-04-14] (StagWare) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12054872 2019-10-10] (TeamViewer GmbH -> TeamViewer GmbH)
S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [694016 2019-10-10] (Oracle Corporation -> Oracle Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\DRIVERS\amdkmafd.sys [21600 2018-09-21] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 AR9271; C:\Windows\System32\DRIVERS\athuwx.sys [2226176 2019-04-14] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.)
S3 atikmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [5020672 2009-07-13] (Microsoft Windows -> ATI Technologies Inc.)
R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [313112 2019-10-20] (Bluestack Systems, Inc. -> Bluestack System Inc. )
S3 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [22568 2014-08-12] (IVT CORPORATION -> IVT Corporation.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [246912 2019-02-16] (Kaspersky Lab -> AO Kaspersky Lab)
S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [243200 2009-10-21] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R0 FlashBoot; C:\Windows\System32\DRIVERS\FlashBoot.sys [17616 2019-06-18] (Challenger Backup Solutions, LLC -> Challenger Backup Solutions, LLC)
S3 GeneStor; C:\Windows\System32\DRIVERS\GeneStor.sys [131248 2019-06-18] (GENESYS LOGIC, INC. -> GenesysLogic)
R3 gmhidlow; C:\Windows\System32\DRIVERS\gmhidlow.sys [21008 2019-08-08] (KYE SYSTEMS CORP. -> )
S3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [117248 2009-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114304 2009-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [30960 2019-04-14] (Intel Corporation - Rapid Storage Technology -> Intel Corporation)
S3 IvtAudioBusSrv; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT CORPORATION -> IVT Corporation.)
S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT CORPORATION -> IVT Corporation.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [531584 2019-03-18] (Kaspersky Lab -> AO Kaspersky Lab)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [76624 2019-03-19] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [129152 2019-07-29] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [93312 2019-03-12] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [251512 2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [516216 2019-09-17] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [1123664 2019-10-17] (Kaspersky Lab -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [998016 2019-10-30] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klim6; C:\Windows\System32\DRIVERS\klim6.sys [58192 2019-03-19] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [79184 2019-03-18] (Kaspersky Lab -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [59512 2019-03-18] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [51328 2019-03-13] (Kaspersky Lab -> AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\DRIVERS\kltap.sys [48592 2018-03-16] (AnchorFree Inc -> The OpenVPN Project)
S4 klwfp; C:\Windows\System32\DRIVERS\klwfp.sys [105600 2019-03-05] (Kaspersky Lab -> AO Kaspersky Lab)
R1 klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [210280 2019-03-13] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [232272 2019-03-19] (Kaspersky Lab -> AO Kaspersky Lab)
S3 massfilter; C:\Windows\System32\drivers\massfilter.sys [11776 2009-09-04] (Microsoft Windows Hardware Compatibility Publisher -> ZTE Incorporated)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [190032 2016-04-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [779232 2016-08-04] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
U5 RTSUER; C:\Windows\System32\Drivers\RTSUER.sys [418784 2016-08-04] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [2584792 2019-05-12] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 SFEP; C:\Windows\System32\DRIVERS\SFEP.sys [12032 2018-09-21] (Microsoft Windows Hardware Compatibility Publisher -> Sony Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [51352 2019-04-14] (Synaptics Incorporated -> Synaptics Incorporated)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [237376 2019-10-11] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [248464 2019-10-11] (Oracle Corporation -> Oracle Corporation)
S3 wdf_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [43128 2011-08-11] (mtkkey -> MediaTek Inc.)
R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2019-09-04] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 ZTEusbmdm6k; C:\Windows\System32\DRIVERS\ZTEusbmdm6k.sys [119680 2009-09-19] (Microsoft Windows Hardware Compatibility Publisher -> ZTE Incorporated)
S3 ZTEusbnmea; C:\Windows\System32\DRIVERS\ZTEusbnmea.sys [119680 2009-09-19] (Microsoft Windows Hardware Compatibility Publisher -> ZTE Incorporated)
S3 ZTEusbser6k; C:\Windows\System32\DRIVERS\ZTEusbser6k.sys [119680 2009-09-19] (Microsoft Windows Hardware Compatibility Publisher -> ZTE Incorporated)
S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 IvtComBusSrv; System32\Drivers\btcombus.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 03:21 - 2019-12-08 03:23 - 000035639 _____ C:\Users\Paola\Desktop\FRST.txt
2019-12-08 03:21 - 2019-12-08 03:21 - 000000000 ___RD C:\Users\Paola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2019-12-08 03:08 - 2019-12-07 13:51 - 002263552 _____ (Farbar) C:\Users\Paola\Desktop\FRST64.exe
2019-12-07 13:52 - 2019-12-07 14:02 - 000043533 _____ C:\Users\Paola\Downloads\Addition.txt
2019-12-07 13:51 - 2019-12-07 14:02 - 000055136 _____ C:\Users\Paola\Downloads\FRST.txt
2019-12-07 13:51 - 2019-12-07 13:51 - 000000000 ____D C:\Users\Paola\Downloads\FRST-OlderVersion
2019-12-07 13:49 - 2019-12-08 03:22 - 000000000 ____D C:\FRST
2019-12-07 03:52 - 2019-12-07 03:52 - 000000491 _____ C:\Users\Paola\Downloads\UTC--2019-12-07T07-52-05.120Z--b948430eee899a6d40ec6cc49e5a8705b03a8921
2019-12-07 03:34 - 2019-12-07 13:51 - 002263552 _____ (Farbar) C:\Users\Paola\Downloads\FRST64.exe
2019-12-07 00:01 - 2019-12-07 00:02 - 001351763 _____ C:\Users\Paola\Downloads\Cointigopitchdecklast(2).pdf
2019-12-06 00:58 - 2019-12-06 01:01 - 009102193 _____ C:\Users\Paola\Downloads\iocta_2019.pdf
2019-12-06 00:22 - 2019-12-06 00:22 - 000801932 _____ C:\Users\Paola\Downloads\dnmbible.pdf
2019-12-06 00:14 - 2019-12-06 00:14 - 000023611 _____ C:\Users\Paola\Desktop\energy-report.html
2019-12-05 01:21 - 2019-12-05 01:22 - 000001930 _____ C:\Users\Paola\Desktop\Rkill.txt
2019-12-05 00:58 - 2019-12-05 00:58 - 000000000 ____D C:\Users\Paola\Downloads\WinsockFix_InfoSpyware
2019-12-05 00:52 - 2019-12-05 01:19 - 000000748 _____ C:\Users\Paola\Desktop\ESET Online Scanner.lnk
2019-12-05 00:52 - 2019-12-05 00:52 - 000000000 ____D C:\Users\Paola\AppData\Local\ESET
2019-12-05 00:33 - 2019-12-05 00:45 - 008162616 _____ (ESET spol. s r.o.) C:\Users\Paola\Downloads\esetonlinescanner_esn.exe
2019-12-05 00:29 - 2019-12-05 00:29 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\Paola\Downloads\iExplore.exe
2019-12-05 00:17 - 2019-12-05 00:27 - 205263808 _____ C:\Users\Paola\Downloads\cureit.exe
2019-12-05 00:07 - 2019-12-05 00:07 - 000341794 _____ C:\Users\Paola\Downloads\IF-DNS.exe
2019-12-05 00:07 - 2019-12-05 00:07 - 000251211 _____ C:\Users\Paola\Downloads\Guía para cambiar las DNS - Guías, manuales, tutoriales y más - ForoSpyware.pdf
2019-12-05 00:04 - 2019-12-05 00:07 - 008218800 _____ (Malwarebytes) C:\Users\Paola\Downloads\adwcleaner_8.0.0.exe
2019-12-05 00:03 - 2019-12-05 00:03 - 004773088 _____ (SOSVirus) C:\Users\Paola\Downloads\UsbFix_2019_11.022.exe
2019-12-04 23:59 - 2019-12-05 00:01 - 005054744 _____ (AO Kaspersky Lab) C:\Users\Paola\Downloads\tdsskiller.exe
2019-12-04 23:52 - 2019-12-04 23:56 - 001883976 _____ (Malwarebytes) C:\Users\Paola\Downloads\MBSetup.exe
2019-12-04 23:50 - 2019-12-04 23:51 - 005404387 _____ (Raúl Argente ) C:\Users\Paola\Downloads\ARegClean-old.exe
2019-12-04 23:50 - 2019-12-04 23:50 - 000702243 _____ C:\Users\Paola\Downloads\WinsockFix_InfoSpyware.zip
2019-12-04 23:49 - 2019-12-04 23:50 - 000791393 _____ (Lars Hederer ) C:\Users\Paola\Downloads\erunt-setup.exe
2019-12-04 23:49 - 2019-12-04 23:49 - 001115450 _____ C:\Users\Paola\Downloads\RegSeeker.3.01.setup.zip
2019-12-04 15:56 - 2019-12-04 15:56 - 000000000 ____D C:\Users\Paola\Downloads\ComIntRep_4010
2019-12-04 15:54 - 2019-12-04 15:55 - 003337234 _____ (Rizonesoft ) C:\Users\Paola\Downloads\ComIntRep_4010_Setup.exe
2019-12-04 15:54 - 2019-12-04 15:55 - 003122169 _____ C:\Users\Paola\Downloads\ComIntRep_4010.zip
2019-12-04 15:38 - 2019-12-08 00:31 - 001114490 _____ C:\Windows\ntbtlog.txt
2019-12-04 05:03 - 2019-12-04 05:03 - 767038110 _____ C:\Windows\MEMORY.DMP
2019-12-04 05:03 - 2019-12-04 05:03 - 001106560 _____ C:\Windows\Minidump\120419-23306-01.dmp
2019-12-04 05:03 - 2019-12-04 05:03 - 000000000 ____D C:\Windows\Minidump
2019-12-04 00:50 - 2019-12-04 00:50 - 000000000 ____D C:\Users\Paola\AppData\Local\cache
2019-12-04 00:43 - 2019-12-04 00:50 - 000001948 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-12-04 00:43 - 2019-12-04 00:50 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2019-12-04 00:42 - 2019-12-04 00:43 - 001883976 _____ (Malwarebytes) C:\Users\Paola\Downloads\MBSetup-009996.009996.exe
2019-12-03 02:48 - 2019-12-03 02:48 - 000002377 _____ C:\Users\Paola\Desktop\Authy Desktop.lnk
2019-12-03 02:40 - 2019-12-03 02:41 - 005905920 _____ C:\Users\Paola\Downloads\eddie-ui_2.16.3_windows-7_x64_installer.exe
2019-12-03 01:53 - 2019-12-03 01:54 - 000000000 ____D C:\Program Files (x86)\ChrisPC DNS Switch
2019-12-03 01:47 - 2019-12-03 01:47 - 001374096 _____ (Chris P.C. srl ) C:\Users\Paola\Downloads\setup_chrispc_dns_switch_4_10.exe
2019-12-03 01:21 - 2019-12-03 01:22 - 000322642 _____ (dnsleaktest.com ) C:\Users\Paola\Downloads\dnsfixsetup.exe
2019-12-03 00:18 - 2019-12-03 00:19 - 005227019 _____ C:\Users\Paola\Downloads\namebench-1.3.1-Windows.exe
2019-12-03 00:11 - 2019-12-03 00:12 - 007380480 _____ C:\Users\Paola\Downloads\relay-windows-amd64.exe
2019-12-02 23:20 - 2019-12-02 23:21 - 002015232 _____ C:\Users\Paola\Downloads\DNSFilter_Agent_Setup.msi
2019-12-02 11:49 - 2019-12-02 11:49 - 000061128 _____ C:\Users\Paola\Downloads\NTRA201912021149166313897968.PDF
2019-12-02 11:43 - 2019-12-02 11:43 - 000118371 _____ C:\Users\Paola\Downloads\11b.pdf
2019-11-29 22:54 - 2019-11-29 22:54 - 000562691 _____ C:\Users\Paola\Downloads\SSRN-id3258508.pdf
2019-11-29 22:33 - 2019-11-29 22:33 - 002354373 _____ C:\Users\Paola\Downloads\TradingAndArbitrageInCrypto-currenc_preview.pdf
2019-11-29 03:45 - 2019-11-29 03:46 - 002430564 _____ C:\Users\Paola\Downloads\[Marvin_Neuefeind,_Marcin_Kacperczyk]_Cryptocurren(z-lib.org).epub
2019-11-28 14:00 - 2019-11-28 14:13 - 152985689 _____ (Bisq ) C:\Users\Paola\Downloads\Bisq-64bit-1.2.3.exe
2019-11-28 13:52 - 2019-12-04 22:49 - 000000000 ____D C:\Users\Paola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenBazaar
2019-11-28 13:52 - 2019-11-28 14:22 - 000000000 ____D C:\Users\Paola\openbazaar
2019-11-28 13:52 - 2019-11-28 13:52 - 000000000 ____D C:\Users\Paola\OpenBazaar2.0-ClientData
2019-11-28 13:52 - 2019-11-28 13:52 - 000000000 ____D C:\Users\Paola\AppData\Roaming\OpenBazaar2
2019-11-28 13:51 - 2019-12-04 22:49 - 000000000 ____D C:\Users\Paola\AppData\Local\OpenBazaar2
2019-11-28 13:40 - 2019-11-28 13:48 - 113817144 _____ (OpenBazaar) C:\Users\Paola\Downloads\OpenBazaar2-2.3.5-Setup-64.exe
2019-11-28 03:09 - 2019-11-28 03:09 - 004184627 _____ C:\Users\Paola\Downloads\video-1574924543.mp4
2019-11-27 22:54 - 2019-11-27 22:54 - 000482552 _____ C:\Users\Paola\Downloads\[Silverglate_Harvey]_Three_Felonies_a_Day__How_the(z-lib.org).epub
2019-11-27 22:40 - 2019-11-27 22:40 - 000873961 _____ C:\Users\Paola\Downloads\[Martin_Meadows]_365_Days_With_Self-Discipline__36(z-lib.org) (1).epub
2019-11-27 22:14 - 2019-11-27 22:15 - 005214933 _____ C:\Users\Paola\Downloads\[Mikael_Krogerus,_Roman_Tsch_ppeler]_The_Decision_(z-lib.org).epub
2019-11-26 17:52 - 2019-11-26 17:53 - 009239923 _____ C:\Users\Paola\Downloads\[Swami_Venkatesananda]_Vasistha's_Yoga(z-lib.org).epub
2019-11-26 17:52 - 2019-11-26 17:52 - 003911480 _____ C:\Users\Paola\Downloads\[Swami_Venkatesananda]_The_Concise_Ramayana_of_Val(z-lib.org).pdf
2019-11-26 17:41 - 2019-11-26 17:49 - 078963121 _____ C:\Users\Paola\Downloads\[Ian_Chilvers]_The_Concise_Oxford_Dictionary_of_Ar(z-lib.org).pdf
2019-11-26 17:40 - 2019-11-26 17:40 - 002528740 _____ C:\Users\Paola\Downloads\[Sri_Munagala_Venkataramiah]_Talks_with_Sri_Ramana(z-lib.org).pdf
2019-11-26 17:34 - 2019-11-26 17:36 - 016935587 _____ C:\Users\Paola\Downloads\[Winthrop_Sargeant_(Translation_and_Commentary),_H(z-lib.org).pdf
2019-11-26 17:16 - 2019-11-26 17:16 - 001864209 _____ C:\Users\Paola\Downloads\[Laura_Hillenbrand]_Unbroken__A_World_War_II_Story(z-lib.org).epub
2019-11-26 17:16 - 2019-11-26 17:16 - 001594739 _____ C:\Users\Paola\Downloads\[Cal_Newport]_Deep_Work__Rules_for_focused_success(z-lib.org).pdf
2019-11-26 15:34 - 2011-03-11 02:41 - 001659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-11-26 15:34 - 2011-03-11 02:41 - 000410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2019-11-26 15:34 - 2011-03-11 02:41 - 000166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2019-11-26 15:34 - 2011-03-11 02:41 - 000148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2019-11-26 15:34 - 2011-03-11 02:41 - 000107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2019-11-26 15:34 - 2011-03-11 02:41 - 000027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2019-11-26 15:34 - 2011-03-11 02:33 - 002565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2019-11-26 15:34 - 2011-03-11 02:30 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2019-11-26 15:34 - 2011-03-11 01:33 - 001699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2019-11-26 15:34 - 2011-03-11 01:31 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2019-11-26 12:14 - 2019-11-26 12:15 - 000546153 _____ C:\Users\Paola\Downloads\Newsletter_3_-_New_HIGH_Potential_Spec.pdf
2019-11-25 04:16 - 2019-11-25 04:16 - 000000000 ____D C:\Users\Paola\Downloads\dnscrypt-proxy-win64-2.0.33
2019-11-25 04:15 - 2019-11-25 04:16 - 002927364 _____ C:\Users\Paola\Downloads\dnscrypt-proxy-win64-2.0.33.zip
2019-11-24 02:03 - 2019-11-24 02:03 - 001006124 _____ C:\Users\Paola\Downloads\[Viktor_E._Frankl]_Man's_search_for_meaning(z-lib.org).pdf
2019-11-24 02:03 - 2019-11-24 02:03 - 000626437 _____ C:\Users\Paola\Downloads\[Robert_Greene,_Joost_Elffers]_The_48_laws_of_powe(z-lib.org).epub
2019-11-24 02:00 - 2019-11-24 02:00 - 003640731 _____ C:\Users\Paola\Downloads\[Dale_Carnegie_&_Associates]_How_to_Win_Friends_an(z-lib.org).epub
2019-11-24 01:55 - 2019-11-24 01:55 - 007366247 _____ C:\Users\Paola\Downloads\[Andrew_Aziz]_Advanced_Techniques_in_Day_Trading__(z-lib.org).epub
2019-11-24 01:54 - 2019-11-24 01:53 - 001197613 ____R C:\Users\Paola\Downloads\[David_Epstein]_Range__How_Generalists_Triumph_in_(z-lib.org).epub
2019-11-24 01:16 - 2019-11-24 01:16 - 004172413 _____ C:\Users\Paola\Downloads\[Gabrielle_Stobbe]_Just_Enough_English_Grammar_Ill(z-lib.org) (1).pdf
2019-11-24 01:12 - 2019-11-24 01:14 - 023557778 _____ C:\Users\Paola\Downloads\[DK,_Catherine_Collin,_Nigel_Benson,_Joannah_Ginsb(z-lib.org).pdf
2019-11-24 01:11 - 2019-11-24 01:12 - 003291237 _____ C:\Users\Paola\Downloads\[Bryson]_The_Fluoride_Deception_(history_water_flo(z-lib.org).pdf
2019-11-23 02:14 - 2019-11-23 02:14 - 000166021 _____ C:\Users\Paola\Downloads\FCS-9825063-Elvis Perez.pdf
2019-11-23 02:10 - 2019-11-23 02:10 - 000026522 _____ C:\Users\Paola\Downloads\edb59193-9fe8-40d1-ae13-e5a71eb97cfb.pdf
2019-11-20 02:45 - 2019-11-20 02:45 - 000262963 _____ C:\Users\Paola\Downloads\elvis.pdf
2019-11-20 02:07 - 2019-11-20 02:07 - 000084505 _____ C:\Users\Paola\Downloads\acta de discusion perez elvis.pdf
2019-11-20 02:04 - 2019-11-20 02:04 - 000075792 _____ C:\Users\Paola\Downloads\Perez Elvis.pdf
2019-11-19 16:57 - 2019-11-19 16:57 - 000003864 _____ C:\Windows\system32\Tasks\BlueStacksHelper
2019-11-18 15:47 - 2019-11-18 15:47 - 000032966 _____ C:\Users\Paola\Downloads\01 Requisitos Constacia CD Trabajo (1).pdf
2019-11-18 04:15 - 2019-11-28 11:44 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-11-18 03:41 - 2019-11-18 03:41 - 000032966 _____ C:\Users\Paola\Downloads\01 Requisitos Constacia CD Trabajo.pdf
2019-11-17 11:21 - 2019-11-17 11:21 - 000000000 ____D C:\Users\Paola\Documents\My Games
2019-11-17 11:21 - 2019-11-17 11:21 - 000000000 ____D C:\Users\Paola\AppData\LocalLow\FuelGames
2019-11-17 10:51 - 2019-11-17 11:18 - 000000000 ____D C:\Users\Paola\Downloads\Apollo
2019-11-17 09:46 - 2019-11-23 03:32 - 000000000 ____D C:\Users\Paola\AppData\Roaming\apollo-launcher
2019-11-17 09:46 - 2019-11-17 10:31 - 000002475 _____ C:\Users\Paola\Desktop\Immutable.lnk
2019-11-17 09:46 - 2019-11-17 09:46 - 000002483 _____ C:\Users\Paola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Immutable.lnk
2019-11-17 09:45 - 2019-11-17 09:46 - 000000000 ____D C:\Users\Paola\AppData\Local\apollo-launcher-updater
2019-11-17 09:20 - 2019-11-17 09:40 - 045973800 _____ (Immutable) C:\Users\Paola\Downloads\Immutable+Setup+0.4.5.exe
2019-11-17 09:19 - 2019-11-17 09:19 - 000009019 _____ C:\Users\Paola\Downloads\descarga (1).htm
2019-11-14 09:00 - 2019-11-14 09:00 - 000937555 _____ C:\Users\Paola\Desktop\SRO.pptx
2019-11-13 00:56 - 2019-11-14 09:00 - 000937550 _____ C:\Users\Paola\Desktop\Presentación1.pptx
2019-11-12 23:36 - 2019-11-12 23:36 - 000874796 _____ C:\Users\Paola\Desktop\LOGO PEDIATRIA.psd
2019-11-12 23:35 - 2019-11-12 23:35 - 000000000 ____D C:\Users\Paola\AppData\Local\Tempzxpsign6d85f12768e50a27
2019-11-12 23:35 - 2019-11-12 23:35 - 000000000 ____D C:\Users\Paola\AppData\Local\Tempzxpsign5b05367c641b9dbb
2019-11-12 23:32 - 2019-11-12 23:32 - 000000000 ____D C:\Users\Paola\AppData\Local\Tempzxpsigna009bbd1ccd0ed25
2019-11-12 23:32 - 2019-11-12 23:32 - 000000000 ____D C:\Users\Paola\AppData\Local\Tempzxpsign7784c76f86bb2ffb
2019-11-12 23:29 - 2019-11-12 23:30 - 000398315 _____ C:\Users\Paola\Desktop\LOGO PEDIATRIA.htm
2019-11-12 22:12 - 2019-12-08 03:07 - 001289728 ___SH C:\Users\Paola\Downloads\Thumbs.db
2019-11-12 02:10 - 2019-11-12 02:10 - 002260658 _____ C:\Users\Paola\Downloads\tesis presentacion.pptx
2019-11-12 01:53 - 2019-11-12 01:53 - 000981640 _____ C:\Users\Paola\Downloads\Dialnet-ConsensoInternacionalDeGastroenteritisAgudaEnUrgen-6958326.pdf
2019-11-12 01:53 - 2019-11-12 01:53 - 000981640 _____ C:\Users\Paola\Downloads\Dialnet-ConsensoInternacionalDeGastroenteritisAgudaEnUrgen-6958326 (1).pdf
2019-11-11 00:13 - 2019-11-11 00:13 - 000000318 _____ C:\Users\Paola\Downloads\S0120491215000075.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-08 03:22 - 2018-09-21 11:09 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2019-12-08 03:20 - 2009-07-14 00:45 - 000025760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-12-08 03:20 - 2009-07-14 00:45 - 000025760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-12-08 03:12 - 2019-10-04 14:56 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2019-12-08 03:12 - 2019-10-04 14:56 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2019-12-08 03:09 - 2019-06-01 14:37 - 000000435 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2019-12-08 03:09 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\tracing
2019-12-08 03:07 - 2017-11-02 08:35 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-12-08 03:06 - 2019-07-25 16:30 - 000065536 _____ C:\Windows\system32\Ikeext.etl
2019-12-08 03:06 - 2009-07-14 01:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-12-07 16:58 - 2019-05-07 15:03 - 000000000 ____D C:\Users\Paola\Downloads\Telegram Desktop
2019-12-07 02:49 - 2019-08-01 23:57 - 000000000 ____D C:\Users\Paola\Downloads\snes9x-1.60-win32-x64
2019-12-06 21:16 - 2018-09-27 21:42 - 000000000 ____D C:\Users\Paola\AppData\Roaming\vlc
2019-12-05 12:58 - 2019-05-19 11:36 - 000000000 ____D C:\Users\Paola\AppData\Local\ElevatedDiagnostics
2019-12-04 22:54 - 2019-11-05 15:54 - 000000000 ____D C:\Users\Paola\AppData\Local\DeepL
2019-12-04 22:48 - 2018-09-25 20:07 - 000000388 _____ C:\Windows\Tasks\update-sys.job
2019-12-04 22:48 - 2018-09-25 20:07 - 000000388 _____ C:\Windows\Tasks\update-S-1-5-21-2850751526-314786809-3439856657-1001.job
2019-12-04 19:17 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\Registration
2019-12-04 18:24 - 2019-08-04 13:22 - 000000000 ____D C:\Users\Paola\Desktop\Screenshoot
2019-12-04 18:24 - 2019-08-04 13:21 - 000000000 ____D C:\Users\Paola\Desktop\PDF
2019-12-04 18:23 - 2019-06-18 19:02 - 000000000 ____D C:\Users\Paola\Desktop\Screenshots
2019-12-04 17:06 - 2019-09-05 17:05 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update
2019-12-04 12:22 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\system32\NDF
2019-12-04 11:56 - 2019-09-16 18:58 - 000000000 ____D C:\Users\Paola\Downloads\Once upon a Time in Hollywood [TS][Subtitulado][wWw.EliteTorrent.IO]
2019-12-04 00:56 - 2018-09-21 12:44 - 000000000 ____D C:\Users\Paola\AppData\Local\CrashDumps
2019-12-04 00:49 - 2019-08-08 19:47 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-12-03 02:48 - 2019-05-26 14:16 - 000000000 ____D C:\Users\Paola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twilio Inc
2019-12-03 02:47 - 2019-05-26 14:16 - 000000000 ____D C:\Users\Paola\AppData\Local\authy-electron
2019-12-03 02:46 - 2019-05-26 14:16 - 000000000 ____D C:\Users\Paola\AppData\Local\SquirrelTemp
2019-12-03 02:04 - 2019-04-14 12:50 - 000000000 ____D C:\Users\Paola\Downloads\kali-linux-light-2019-1a-amd64-iso
2019-12-03 01:51 - 2019-09-19 20:23 - 000000000 ____D C:\Users\Paola\Downloads\Blue Valentine (2010) [1080p]
2019-12-03 00:42 - 2018-11-13 08:59 - 000000000 ____D C:\Users\Paola\Desktop\NOKIA
2019-12-02 23:50 - 2019-10-01 03:34 - 000000000 ____D C:\Users\Paola\Downloads\7dhxFo
2019-12-02 23:50 - 2019-08-06 20:57 - 000000000 ____D C:\Users\Paola\Downloads\120439
2019-12-02 22:18 - 2011-04-12 05:10 - 000817890 _____ C:\Windows\system32\perfh00A.dat
2019-12-02 22:18 - 2011-04-12 05:10 - 000187258 _____ C:\Windows\system32\perfc00A.dat
2019-12-02 22:18 - 2009-07-14 01:13 - 001858332 _____ C:\Windows\system32\PerfStringBackup.INI
2019-12-02 22:18 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\inf
2019-12-02 10:44 - 2009-07-13 23:20 - 000000000 ____D C:\Windows\ModemLogs
2019-12-02 00:22 - 2019-09-04 17:23 - 000000000 ____D C:\ProgramData\NbfcService
2019-11-28 13:52 - 2018-09-21 11:07 - 000000000 ____D C:\Users\Paola
2019-11-28 11:44 - 2017-11-02 08:33 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-11-28 03:11 - 2018-09-22 11:44 - 000000000 ____D C:\Users\Paola\AppData\LocalLow\Mozilla
2019-11-27 17:51 - 2018-09-22 18:14 - 000000000 ____D C:\Windows\rescache
2019-11-26 16:02 - 2016-12-14 11:18 - 001832918 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-11-25 01:25 - 2019-08-01 22:51 - 000003174 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2850751526-314786809-3439856657-1001
2019-11-25 01:25 - 2019-08-01 22:51 - 000000000 ___RD C:\Users\Paola\OneDrive
2019-11-25 01:25 - 2018-09-21 11:07 - 000002190 _____ C:\Users\Paola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2019-11-22 16:35 - 2019-09-16 16:10 - 000000000 ____D C:\Users\Paola\Documents\My Kindle Content
2019-11-22 16:33 - 2019-05-26 11:29 - 000000000 ____D C:\Users\Paola\Desktop\Telegrams
2019-11-21 22:36 - 2017-11-02 08:32 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-20 09:25 - 2019-07-15 18:50 - 000000000 ____D C:\Users\Paola\Desktop\Julio 2019
2019-11-18 15:36 - 2019-09-03 16:46 - 000000000 ____D C:\Users\Paola\.VirtualBox
2019-11-18 15:35 - 2019-09-03 16:46 - 000000000 ____D C:\ProgramData\VirtualBox
2019-11-15 20:13 - 2019-05-06 12:21 - 000000000 ____D C:\Users\Paola\AppData\Roaming\Psiphon3
2019-11-15 20:02 - 2019-05-06 12:21 - 006754416 _____ C:\Users\Paola\Downloads\psiphon3.exe
2019-11-15 00:16 - 2017-11-02 08:33 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-11-14 15:39 - 2018-11-11 21:49 - 000000000 ____D C:\Users\Paola\Desktop\Trabajos en illustrator
2019-11-12 23:31 - 2018-10-25 23:07 - 000000033 _____ C:\Users\Paola\AppData\Roaming\AdobeWLCMCache.dat
2019-11-12 17:03 - 2010-11-20 23:27 - 000748816 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2019-11-10 03:39 - 2019-10-28 16:10 - 000000000 ____D C:\Users\Paola\Desktop\Respaldo USB paola
==================== Files in the root of some directories ========
2018-10-25 23:07 - 2019-11-12 23:31 - 000000033 _____ () C:\Users\Paola\AppData\Roaming\AdobeWLCMCache.dat
2019-09-05 20:13 - 2019-09-05 20:13 - 000000000 _____ () C:\Users\Paola\AppData\Roaming\MCVi2UserDetail.ini
2018-10-10 17:50 - 2018-10-10 17:50 - 000000410 _____ () C:\Users\Paola\AppData\Local\oobelibMkey.log
2018-10-06 20:54 - 2018-10-06 20:54 - 000000017 _____ () C:\Users\Paola\AppData\Local\resmon.resmoncfg
2018-09-25 20:07 - 2018-09-25 20:07 - 000000003 _____ () C:\Users\Paola\AppData\Local\updater.log
2018-09-25 20:07 - 2018-09-25 20:07 - 000000425 _____ () C:\Users\Paola\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2019-11-29 19:11
==================== End of FRST.txt ========================