Pop up al escritorio

# -------------------------------
# Malwarebytes AdwCleaner 7.4.2.0
# -------------------------------
# Build:    10-21-2019
# Database: 2019-10-21.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    10-27-2019
# Duration: 00:00:21
# OS:       Windows 10 Pro
# Cleaned:  39
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted       C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
Deleted       C:\Program Files (x86)\IOBIT\Driver Booster
Deleted       C:\Program Files (x86)\IObit\Advanced SystemCare
Deleted       C:\ProgramData\IOBIT\Driver Booster
Deleted       C:\ProgramData\IObit\Advanced SystemCare
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
Deleted       C:\Users\pc\AppData\LocalLow\IObit\Advanced SystemCare
Deleted       C:\Users\pc\AppData\Roaming\IOBIT\Driver Booster
Deleted       C:\Users\pc\AppData\Roaming\IObit\Advanced SystemCare
Deleted       C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare

***** [ Files ] *****

Deleted       C:\Users\Public\Desktop\Driver Booster 6.lnk
Deleted       C:\Users\pc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Driver Booster.lnk

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted       C:\Windows\System32\Tasks\DRIVER BOOSTER SCHEDULER
Deleted       C:\Windows\System32\Tasks\DRIVER BOOSTER SKIPUAC (PC)

***** [ Registry ] *****

Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Advanced SystemCare 12
Deleted       HKLM\SOFTWARE\CLASSES\DIRECTORY\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted       HKLM\SOFTWARE\CLASSES\DRIVE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted       HKLM\SOFTWARE\CLASSES\LNKFILE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted       HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted       HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF41BBFE-12B8-4130-A98B-1359C3253805} 
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF41BBFE-12B8-4130-A98B-1359C3253805} 
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C01C430A-A1A2-46F4-8FE1-1707D76832BE} 
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DRIVER BOOSTER SKIPUAC (PC)
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler
Deleted       HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}
Deleted       HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted       HKLM\Software\Classes\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}
Deleted       HKLM\Software\Wow6432Node\IOBIT\ASC
Deleted       HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
Deleted       HKLM\Software\Wow6432Node\IObit\Driver Booster
Deleted       HKLM\Software\Wow6432Node\IObit\RealTimeProtector
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted       HKLM\Software\Wow6432Node\\Classes\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare_is1
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Driver Booster_is1

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner_Debug.log - [73015 octets] - [27/10/2019 05:03:57]
AdwCleaner[S00].txt - [6221 octets] - [27/10/2019 05:37:11]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
~ Run by pc (Administrator)  (27/10/2019 05:49:22)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : 
~ Type : Scanner
~ Report : C:\Users\pc\Desktop\ZHPCleaner (S).txt
~ Quarantine : C:\Users\pc\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : 
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit  (Build 18362)


---\\  Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Hosts carpeta (1)
~ El archivo hosts es legítimo (22)


---\\  Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Explorador ( Archivos, Carpetas ) (9)
ENCONTRADOS carpeta: C:\Users\pc\Desktop\uTorrent Web.lnk  [Bad : C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe](.BitTorrent Inc..)  =>BitTorrent (P2P)
ENCONTRADOS carpeta: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk  [Bad : C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe](.BitTorrent Inc..)  =>BitTorrent (P2P)
ENCONTRADOS carpeta: C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe [BitTorrent Inc. - µTorrent Web]  =>BitTorrent (P2P)
ENCONTRADOS carpeta: C:\Users\pc\Desktop\uTorrent Web.lnk    =>BitTorrent (P2P)
ENCONTRADOS carpeta: C:\Users\Public\Desktop\Advanced SystemCare 12.lnk    =>SUP.Optional.AdvancedSystemCare
ENCONTRADOS archivo: C:\Users\pc\AppData\Roaming\IOBIT\Driver Booster  =>.SUP.Energize
ENCONTRADOS archivo: C:\Users\pc\AppData\Roaming\IObit\Advanced SystemCare  =>SUP.Optional.AdvancedSystemCare
ENCONTRADOS archivo: C:\ProgramData\IObit\Advanced SystemCare  =>SUP.Optional.AdvancedSystemCare
ENCONTRADOS archivo: C:\ProgramData\IObit\ASCDownloader  =>SUP.Optional.AdvancedSystemCare


---\\  Registro ( Claves, Valores, Datos) (0)
~ No malintencionados o innecesarios artículos encontrados.


---\\  Resumen de elementos en su estación de trabajo (3)
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>SUP.Optional.AdvancedSystemCare
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/  =>.SUP.Energize


---\\ Resultado de la reparación.
~ ninguna reparación hecha
~ Google Chrome OK
~ Internet Explorer OK


---\\ STATISTIQUES
~ Items escaneado : 106909
~ Items encontrado : 15
~ artículos cancelados : 0
~ Items opciones : 6/13
~ Ahorro de espacio (bytes) : 0


~ End of search in 00h11mn56s

---\\  Reporte (0)
ZHPCleaner-[S]-27102019-06_01_18.txt
Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 27/10/19
Hora del análisis: 6:07
Archivo de registro: 288538e2-f899-11e9-8b8e-38eaa7e09f04.json

-Información del software-
Versión: 3.8.3.2965
Versión de los componentes: 1.0.629
Versión del paquete de actualización: 1.0.13087
Licencia: Prueba

-Información del sistema-
SO: Windows 10 (Build 18362.418)
CPU: x64
Sistema de archivos: NTFS
Usuario: pc-PC\pc

-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 282014
Amenazas detectadas: 14
Amenazas en cuarentena: 12
Tiempo transcurrido: 4 min, 9 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 8
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IOBIT_MONITOR_SERVER, En cuarentena, [3818], [580520],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASC12_PerformanceMonitor, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{D9C203AA-9448-4E6E-8425-5BAB07F95B42}, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{D9C203AA-9448-4E6E-8425-5BAB07F95B42}, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AdvancedSystemCareService12, En cuarentena, [3818], [380352],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASC12_SkipUac_pc, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CE7609E6-9071-4D6C-90E5-B10B23CEAC1A}, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{CE7609E6-9071-4D6C-90E5-B10B23CEAC1A}, En cuarentena, [3818], [380341],1.0.13087

Valor del registro: 1
PUP.Optional.AdvancedSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IOBIT_MONITOR_SERVER|IMAGEPATH, En cuarentena, [3818], [580520],1.0.13087

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 5
PUP.Optional.AdvancedSystemCare, C:\USERS\PUBLIC\DESKTOP\Advanced SystemCare 12.lnk, En cuarentena, [3818], [380338],1.0.13087
PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\TASKS\ASC12_PerformanceMonitor, En cuarentena, [3818], [380341],1.0.13087
PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\TASKS\ASC12_SkipUac_pc, En cuarentena, [3818], [380341],1.0.13087
Generic.Malware/Suspicious, C:\USERS\PC\DESKTOP\MICROSOFT OFFICE 2016-2019 FULL GRATIS.RAR, Sin acciones por parte del usuario, [0], [392686],1.0.13087
Generic.Malware/Suspicious, C:\USERS\PC\DESKTOP\MICROSOFT OFFICE 2016-2019\OINSTALL.EXE, Sin acciones por parte del usuario, [0], [392686],1.0.13087

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

Hola @MARCELO_BRAVO

Seleccionaste y eliminaste lo detectado por ZPHCleaner.??

Seleccionaste y eliminaste lo detectado por Malwarebytes, ya que este menciona sin acciones por parte del usuario.

Nos comentas.

Salu2

~ ZHPCleaner v2019.10.26.154 by Nicolas Coolman (2019/10/26)
~ Run by pc (Administrator)  (28/10/2019 04:31:41)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Reparar
~ Report : C:\Users\pc\Desktop\ZHPCleaner (R).txt
~ Quarantine : C:\Users\pc\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit  (Build 18362)

---\  Alternate Data Stream (ADS). (0)
~ No malintencionados o innecesarios artículos encontrados. (ADS)

---\  Servicios (0)
~ No malintencionados o innecesarios artículos encontrados. (Servicio)

---\  Navegadores de Internet (0)
~ No malintencionados o innecesarios artículos encontrados. (Navegador)

---\  Hosts carpeta (1)
~ El archivo hosts es legítimo (22)

---\  Tareas automáticas programadas. (0)
~ No malintencionados o innecesarios artículos encontrados. (Tarea)

---\  Explorador ( Archivos, Carpetas ) (6)
MOVIDO carpeta: C:\Users\pc\Desktop\uTorrent Web.lnk  [Bad : C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe](.BitTorrent Inc..)  =>BitTorrent (P2P)
MOVIDO carpeta: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk  [Bad : C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe](.BitTorrent Inc..)  =>BitTorrent (P2P)
MOVIDO archivo: C:\Users\pc\AppData\Roaming\IOBIT\Driver Booster  =>.SUP.Energize
MOVIDO archivo: C:\Users\pc\AppData\Roaming\IObit\Advanced SystemCare  =>SUP.Optional.AdvancedSystemCare
MOVIDO archivo: C:\ProgramData\IObit\Advanced SystemCare  =>SUP.Optional.AdvancedSystemCare
MOVIDO archivo: C:\ProgramData\IObit\ASCDownloader  =>SUP.Optional.AdvancedSystemCare

---\  Registro ( Claves, Valores, Datos) (0)
~ No malintencionados o innecesarios artículos encontrados. (Register)

---\  Resumen de elementos en su estación de trabajo (3)
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/  =>.SUP.Energize
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/  =>SUP.Optional.AdvancedSystemCare

---\ Limpieza adicional. (6)
~ Clave de registro Tracing borrados (6)
~ Quitar los antiguos informes de ZHPCleaner. (0)

---\ Resultado de la reparación.
~ Reparación llevada a cabo con éxito
~ Google Chrome OK
~ Internet Explorer OK

---\ STATISTIQUES
~ Items escaneado : 1047
~ Items encontrado : 0
~ artículos cancelados : 0
~ Items opciones : 6/13
~ Ahorro de espacio (bytes) : 0
~ End of clean in 00h00mn22s

---\  Reporte (3)
ZHPCleaner-[S]-27102019-06_01_18.txt
ZHPCleaner-[S]-28102019-04_28_09.txt
ZHPCleaner-[R]-28102019-04_32_03.txt

Hola @MARCELO_BRAVO

Perfecto…:+1:

Olvidaste comentar si aun persisten los Pop Ups.:thinking:


Realiza lo siguiente:

1.- Desactiva temporalmente tu antivirus y cualquier programa de seguridad.

2.- Descarga Farbar Recovery Scan Tool. en el escritorio, seleccionando la versión adecuada para la arquitectura (32 o 64bits) de su equipo. >> Como saber si mi Windows es de 32 o 64 bits.?

  • Ejecuta FRST.exe.
  • En el mensaje de la ventana del Disclaimer, pulsamos Yes
  • En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el proceso.
  • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

Guía: Como Ejecutar FRST

3.- En tu próxima respuesta, pega los reportes generados.

Guía : ¿Como Pegar reportes en el Foro?

Esperamos esos reporte.

Salu2

aun no subo el reporte de malware porque lleva 15 horas haciendo el scaneo podrias decirm como fsolucionar sta demora absurda?+

Hola @MARCELO_BRAVO

Es extraño por que el anterior análisis te duro apenas:

Tiempo transcurrido: 4 min, 9 seg

Suspende el análisis y continua con los pasos de FRST.

Salu2.

el analisis que duro 4 minutos fue un analisis rapido, no el personalizado. hago el analizi personalizado ahora?

Hola @MARCELO_BRAVO

Si realiza el personalizado, el tiempo de demora dependerá del tamaño de tu disco y la cantidad de archivos que poseas.

Salu2

Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 30/10/19
Hora del análisis: 0:25
Archivo de registro: e9b4198e-fac4-11e9-aa63-38eaa7e09f04.json

-Información del software-
Versión: 3.8.3.2965
Versión de los componentes: 1.0.629
Versión del paquete de actualización: 1.0.13111
Licencia: Prueba

-Información del sistema-
SO: Windows 10 (Build 18362.418)
CPU: x64
Sistema de archivos: NTFS
Usuario: pc-PC\pc

-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 575247
Amenazas detectadas: 29
Amenazas en cuarentena: 29
Tiempo transcurrido: 16 hr, 23 min, 40 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 0
(No hay elementos maliciosos detectados)

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 29
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DATABASE\AUTOUPDATE.DAT#66BA31C6EF3CC7A9, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN10_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN10_IA64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN10_X86\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN7_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN7_IA64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WIN7_X86\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WLH_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WLH_X86\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WNET_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WNET_X86\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WXP_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\WXP_X86\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DRIVERS\XP_AMD64\REGISTRYDEFRAGBOOTTIME.EXE#3B6905CC12F26548, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\ASCDOWNLOAD.EXE#AE140D6DBC2ACB73, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\ASC.EXE#BCA89C6CF0C4E245, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\DISKDEFRAG.EXE#1A06B4DD0C41DF1C, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\FEEDBACK.EXE#878733177CD8B111, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\HARDWARELIB.DLL#B8032EBEDD3CC15B, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\JUMPLISTDLL.DLL#3CE0A2571D886FA6, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\PEVENT11.EXE#73384BE48FC30C69, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\SCANNER.DLL#BF51FCA8AB299979, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\AUTOSWEEP.EXE#6B268D2475310A40, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\AUTOCARE.EXE#F1299658E33CAF02, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\ASCINIT.EXE#BA4A7D830EAFD9FB, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\CPUIDINTERFACE.DLL#7647E22C0EBDA773, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\AUTOUPDATE.EXE#D9811C24F0CBD9C6, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\ASCTRAY.EXE#5995F484B54071EE, En cuarentena, [3817], [396386],1.0.13111
PUP.Optional.AdvancedSystemCare, C:\ADWCLEANER\QUARANTINE\V1\20191027.053841\13\ADVANCED SYSTEMCARE\ASCSERVICE.EXE#23D6F3E4E85A1051, En cuarentena, [3817], [396386],1.0.13111

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

Hola @MARCELO_BRAVO

Ahora faltaría que realices los pasos del Post 8 con FRST.

Salu2

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-11-2019
Ran by pc (administrator) on PC-PC (Hewlett-Packard HP Pavilion g4 Notebook PC) (01-11-2019 07:51:26)
Running from C:\Users\pc\Desktop
Loaded Profiles: pc (Available Profiles: pc)
Platform: Windows 10 Pro Version 1903 18362.418 (X64) Language: Español (España, internacional)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(CyberLink -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(CyberLink -> cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\Pub\PubMonitor.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\pythonw.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\QtWebEngineProcess.exe
(The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\QtWebEngineProcess.exe
(The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\QtWebEngineProcess.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [UCam_Menu] => C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2007-12-24] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-03] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2010-03-13] (CyberLink -> cyberlink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\Run: [Voobly] => C:\Program Files (x86)\Voobly\voobly.exe [172032 2019-05-14] (Voobly) [File not signed]
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {58869893-d61d-11e9-944a-38eaa7e09f04} - "F:\autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a22214ca-e0b6-11e9-944d-38eaa7e09f04} - "F:\Autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a222152c-e0b6-11e9-944d-38eaa7e09f04} - "G:\Autorun.exe" 
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.87\Installer\chrmstp.exe [2019-10-31] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk [2019-10-26]
ShortcutTarget: GameRanger.lnk -> C:\Users\pc\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {012830BA-1C0E-45EA-902A-C09374227B47} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {0A4F7D9A-C02C-4B84-BAE2-2609351C016B} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {0E511249-9419-4719-8D4B-891293AF6E51} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {0E929701-8B9D-4C82-A995-98A8F645AEAE} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [156432 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {12144775-6A6D-4060-87FF-1F1994E04C6D} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {12F35235-796B-4687-AAC5-08E6D65F797E} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {16027C8A-C1A9-44A8-9746-FA02E8247805} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1D259DF9-95A4-4379-B9F7-2BF7FD5E765B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6304872 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {254ABDBB-451D-4556-99AD-14FC9F477E81} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe
Task: {302FF310-FF7D-4182-B63E-1120E9F4A475} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {385E59B7-BB3B-46AA-8D1E-F15049FD2041} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {3A87480F-A4E1-48FC-AB52-2B5CE6E6AF60} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3E021501-4263-4C6B-9316-557C95BFFA5D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {4944A21D-6FB3-4203-BFE2-82079831CBD2} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe
Task: {4C15816B-1438-4B23-9F1A-74C30872E550} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {4DF5A5A2-40A3-4C18-A7E6-351D69FD7ED8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-16] (Google Inc -> Google LLC)
Task: {58E17B97-8B0E-4907-B11A-E07059764895} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [156432 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {6107DC76-3552-47BE-9301-15D386382234} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {67B45B78-48F8-4332-936F-0ADFB8830D1E} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {7F8F3BFA-11E8-4A14-8C95-2A58BD19DF15} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd)
Task: {84C6F459-0FAB-4038-B016-BE4DD98ABF4C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27289376 2019-10-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {897D0269-4F18-4B06-868D-0B75094D7D31} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {8D399D4E-B3D4-4830-ADA5-7AEE6E1E43C1} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {91236A27-8C3B-4B37-81E3-40F72AAD54CC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6304872 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {980106C6-8007-4318-B40A-9C5F882DED5D} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A29A87CA-9FEF-4C05-BF4D-62C67A778E04} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {A7A17060-D1CA-4201-8EED-0D03E828AA36} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-16] (Google Inc -> Google LLC)
Task: {A8E02C08-AE1A-43DD-868A-6839D18A0037} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe
Task: {AB972A2B-2742-44B6-AAEC-B198BF9C44F9} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2170264 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {AD69BA2C-9A19-4D69-BFA0-04A2E0CFF8CD} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2170264 2019-10-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {B00904F4-A6D4-43E8-8452-B3CA58D6D789} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {B0BE9AB7-BEFA-4E70-B6C3-D7B845B3A27B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371}
Task: {BCF970D5-0250-489A-B6B5-922131AB0F9B} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {BDCAFBEB-CE16-4593-8F48-3168854199CA} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {C194A7C1-BE7F-4BCD-B55D-5B27974E1D3E} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit)
Task: {C214862E-7755-48BA-B48F-3C887C4FD787} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {C57748AA-6B41-4873-8B30-323045787B47} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C94986B7-6DBC-459D-92A4-E72B51E718D9} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {CAB6AF63-B1E2-4BCE-AF1B-04F6F78DF70B} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {CCE762DC-3A72-40B4-9AB7-436570A2CC80} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D0B38D4C-70BC-48BC-AB73-66A22E978D5C} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {DC22DAB4-08FF-4004-9C9E-9D95E59F37F2} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E1C86679-12A8-4770-8842-B1DE9DA364EC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E37DE543-9660-468F-B64D-CD077DF75BB5} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {EA8CE931-1241-4E60-AE20-BDEFAD1A2BE6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27289376 2019-10-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {EADD6916-6088-49F0-B4AC-5EB76D9F0412} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {EBA378B9-BA20-4AA1-866F-649E390FC117} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5923600 2019-09-18] (IObit Information Technology -> IObit)
Task: {F5B5494A-A227-4698-994B-CD1742F8B315} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3007760 2019-04-24] (IObit Information Technology -> IObit)
Task: {FB378B95-0C1A-48EE-83D0-1FFC6C937C40} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 127.0.0.1 validation.sls.microsoft.com
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{028ACEF8-A306-49FD-9401-0529D06F2029}: [DhcpNameServer] 192.168.43.1

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-940513610-2606913777-4097325418-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_231\bin\ssv.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-10-04] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=6.0.12.69 -> C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll [2008-09-10] (RealNetworks, Inc. -> RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.69 -> C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll [2008-09-10] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-02] (Google Inc -> Google LLC)

Chrome: 
=======
CHR DefaultProfile: Default
CHR Notifications: Default -> hxxps://maranhesduve.club; hxxps://py.checkio.org; hxxps://www.youtube.com
CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default [2019-11-01]
CHR DownloadDir: D:\Descargas
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Chrome Media Router) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8358352 2019-09-14] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11636808 2019-10-18] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [337888 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [279248 2019-08-13] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [43840 2012-09-24] (Hewlett-Packard Company -> Hewlett-Packard Company)
S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [69024 2019-05-29] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com)
S3 cpuz143; C:\WINDOWS\temp\cpuz143\cpuz143_x64.sys [48960 2019-10-26] (CPUID -> CPUID)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R0 hpdskflt; C:\WINDOWS\System32\DRIVERS\hpdskflt.sys [31040 2012-09-24] (Hewlett-Packard Company -> Hewlett-Packard Company)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-08-13] (Martin Malik - REALiX -> REALiX(tm))
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-10-29] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-10-29] (Malwarebytes Corporation -> Malwarebytes)
R3 netr28x; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2506384 2015-08-12] (MEDIATEK INC. -> MediaTek Inc.)
S3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [347576 2019-08-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1154336 2019-08-13] (Realtek Semiconductor Corp. -> Realtek )
R3 rtbth; C:\WINDOWS\System32\drivers\rtbth.sys [1219200 2015-06-03] (MEDIATEK INC. -> Ralink Technology, Corp.)
S3 Secdrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [11616 2001-08-29] () [File not signed]
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit Information Technology -> IObit)
S3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [52904 2016-04-28] (Synaptics Incorporated -> Synaptics Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-29] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP)
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl [146928 2010-03-13] (CyberLink -> CyberLink Corp.)
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [X]
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 07:51 - 2019-11-01 07:53 - 000028280 _____ C:\Users\pc\Desktop\FRST.txt
2019-11-01 07:51 - 2019-11-01 07:51 - 000000000 ____D C:\Users\pc\Desktop\FRST-OlderVersion
2019-11-01 07:50 - 2019-11-01 07:52 - 000000000 ____D C:\FRST
2019-10-29 21:56 - 2019-10-29 21:56 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-10-29 21:55 - 2019-10-29 21:55 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-10-29 06:25 - 2019-10-29 06:25 - 000000000 ____D C:\Users\pc\Documents\Scratch Projects
2019-10-28 20:56 - 2019-10-28 20:56 - 000003312 _____ C:\Users\pc\Desktop\GameRanger_Launch_Log.txt
2019-10-28 20:21 - 2019-11-01 07:51 - 001619456 _____ (Farbar) C:\Users\pc\Desktop\FRST64.exe
2019-10-28 17:05 - 2019-10-28 17:05 - 000000000 ____D C:\Program Files (x86)\Sony
2019-10-28 06:50 - 2019-10-28 06:50 - 000000000 _____ C:\AILog.txt
2019-10-28 04:32 - 2019-10-28 04:32 - 000002787 _____ C:\Users\pc\Desktop\ZHPCleaner (R).txt
2019-10-28 04:08 - 2019-10-28 04:08 - 000000962 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scratch 2.lnk
2019-10-28 04:08 - 2019-10-28 04:08 - 000000950 _____ C:\Users\Public\Desktop\Scratch 2.lnk
2019-10-28 04:08 - 2019-10-28 04:08 - 000000000 ____D C:\Users\pc\AppData\Roaming\edu.media.mit.Scratch2Editor
2019-10-28 04:08 - 2019-10-28 04:08 - 000000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2019-10-28 04:08 - 2019-10-28 04:08 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2019-10-28 04:08 - 2019-10-28 04:08 - 000000000 ____D C:\Program Files (x86)\Scratch 2
2019-10-28 04:07 - 2019-10-28 04:07 - 000000000 ____D C:\Users\pc\AppData\Local\Adobe
2019-10-27 06:12 - 2019-10-27 06:12 - 000003626 _____ C:\Users\pc\Desktop\malware.txt
2019-10-27 06:01 - 2019-10-28 04:28 - 000002850 _____ C:\Users\pc\Desktop\ZHPCleaner (S).txt
2019-10-27 05:45 - 2019-10-27 05:45 - 000004859 _____ C:\Users\pc\Desktop\AdwCleaneru.txt
2019-10-27 05:05 - 2019-10-28 04:38 - 000000000 ____D C:\Users\pc\AppData\Roaming\ZHP
2019-10-27 05:05 - 2019-10-27 05:05 - 000000907 _____ C:\Users\pc\Desktop\ZHPCleaner.lnk
2019-10-27 05:05 - 2019-10-27 05:05 - 000000000 ____D C:\Users\pc\AppData\Local\ZHP
2019-10-27 05:04 - 2019-10-27 05:04 - 000000000 ____D C:\Users\pc\AppData\Local\mbamtray
2019-10-27 05:04 - 2019-10-27 05:04 - 000000000 ____D C:\Users\pc\AppData\Local\mbam
2019-10-27 05:03 - 2019-10-27 05:38 - 000000000 ____D C:\AdwCleaner
2019-10-27 05:03 - 2019-10-27 05:03 - 007622344 _____ (Malwarebytes) C:\Users\pc\Desktop\adwcleaner_7.4.2.exe
2019-10-27 05:03 - 2019-10-27 05:03 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-10-27 05:03 - 2019-10-27 05:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-27 05:03 - 2019-10-27 05:03 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-27 05:03 - 2019-10-27 05:03 - 000000000 ____D C:\Program Files\Malwarebytes
2019-10-27 05:03 - 2019-09-30 06:25 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-10-27 05:03 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-10-27 00:39 - 2019-10-27 00:39 - 000002078 _____ C:\Users\Public\Desktop\The Conquerors.lnk
2019-10-27 00:35 - 2019-10-27 00:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2019-10-27 00:35 - 2019-10-27 00:35 - 000002251 _____ C:\Users\Public\Desktop\Age of Empires II.lnk
2019-10-27 00:34 - 2019-10-27 00:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Games
2019-10-27 00:32 - 2019-02-01 20:04 - 000000000 ____D C:\Users\pc\Desktop\The Conquerors (expansion)
2019-10-27 00:15 - 2019-10-27 00:16 - 358732634 _____ C:\Users\pc\Desktop\asdf.reg
2019-10-27 00:03 - 2019-11-01 07:12 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-27 00:03 - 2019-10-27 00:03 - 000002862 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-10-27 00:03 - 2019-10-27 00:03 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-10-27 00:03 - 2019-10-27 00:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-10-27 00:03 - 2019-10-27 00:03 - 000000000 ____D C:\Program Files\CCleaner
2019-10-26 23:59 - 2009-12-22 05:51 - 000000000 ____D C:\Users\pc\Desktop\AoE II
2019-10-26 23:27 - 2019-10-26 23:27 - 000001151 _____ C:\Users\pc\Desktop\GameRanger.lnk
2019-10-26 23:27 - 2019-10-26 23:27 - 000001137 _____ C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk
2019-10-26 23:27 - 2019-10-26 23:27 - 000000000 ____D C:\Users\pc\AppData\Roaming\GameRanger
2019-10-26 23:17 - 2019-10-26 23:17 - 000000000 ____D C:\ProgramData\Steam
2019-10-26 23:09 - 2019-10-26 23:47 - 000000000 ____D C:\Program Files (x86)\Age of Empires II HD
2019-10-26 23:01 - 2019-10-26 23:05 - 000000000 ____D C:\Users\pc\Downloads\Age Of Empires II HD [MULTI2][RELOADED][WwW.GamesTorrents.CoM]
2019-10-26 23:00 - 2019-10-29 21:58 - 000000000 ____D C:\Users\pc\AppData\Local\BitTorrentHelper
2019-10-26 22:59 - 2019-10-30 00:21 - 000000000 ____D C:\Users\pc\AppData\Roaming\uTorrent Web
2019-10-26 22:38 - 2019-10-26 22:39 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-10-26 19:24 - 2019-10-27 02:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voobly
2019-10-26 19:24 - 2019-10-26 19:24 - 000001048 _____ C:\Users\pc\Desktop\Voobly.lnk
2019-10-26 19:23 - 2019-10-31 15:43 - 000000000 ____D C:\Program Files (x86)\Voobly
2019-10-26 19:16 - 2001-08-29 23:02 - 000011616 _____ C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
2019-10-18 02:42 - 2019-10-18 02:42 - 000000000 ____D C:\Users\pc\AppData\LocalLow\Oracle
2019-10-16 19:43 - 2019-10-16 19:43 - 000032961 _____ C:\Users\pc\Comunicado interno crisis Salud HCVB Octubre 2019.pdf
2019-10-13 02:37 - 2019-10-13 02:38 - 000174076 _____ C:\Users\pc\cx_Freeze-6.0-cp37-cp37m-win_amd64.whl
2019-10-13 02:23 - 2019-10-13 02:23 - 000174076 _____ C:\Users\pc\Desktop\cx_Freeze-6.0-cp37-cp37m-win_amd64.whl
2019-10-13 00:15 - 2019-10-13 00:18 - 000000000 ____D C:\Users\pc\AppData\Local\Riot Games
2019-10-10 05:19 - 2019-10-10 05:19 - 000000000 ____D C:\Users\pc\AppData\Roaming\Python
2019-10-10 05:19 - 2019-10-10 05:19 - 000000000 ____D C:\Users\pc\AppData\Local\pip
2019-10-10 05:16 - 2019-10-10 05:16 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.7
2019-10-10 05:16 - 2019-10-10 05:16 - 000000000 ____D C:\Users\pc\AppData\Local\Package Cache
2019-10-10 03:26 - 2019-10-10 21:36 - 000000000 ____D C:\Users\pc\.idlerc
2019-10-10 00:28 - 2019-10-10 00:28 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-10-10 00:28 - 2019-10-10 00:28 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-10 00:28 - 2019-10-10 00:28 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-10 00:28 - 2019-10-10 00:28 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-10 00:28 - 2019-10-10 00:28 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2019-10-10 00:28 - 2019-10-10 00:28 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-10 00:27 - 2019-10-10 00:27 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-10 00:27 - 2019-10-10 00:27 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-10 00:27 - 2019-10-10 00:27 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-10 00:27 - 2019-10-10 00:27 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-10 00:27 - 2019-10-10 00:27 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-10 00:27 - 2019-10-10 00:27 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-10 00:27 - 2019-10-10 00:27 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-10 00:27 - 2019-10-10 00:27 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-10 00:26 - 2019-10-10 00:27 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 003947008 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-10 00:26 - 2019-10-10 00:26 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-10 00:26 - 2019-10-10 00:26 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-10 00:26 - 2019-10-10 00:26 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-10 00:00 - 2019-09-20 01:36 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-10 00:00 - 2019-09-20 01:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-06 00:29 - 2019-10-06 00:29 - 000000080 ___SH C:\bootTel.dat
2019-10-05 20:49 - 2019-10-05 21:03 - 000000424 __RSH C:\ProgramData\ntuser.pol
2019-10-05 17:05 - 2019-10-05 17:05 - 000003232 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_AutoAnalyze
2019-10-05 17:05 - 2019-10-05 17:05 - 000003072 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Startup
2019-10-05 17:05 - 2019-10-05 17:05 - 000003072 _____ C:\WINDOWS\system32\Tasks\IObitSelfCheckTask
2019-10-05 17:05 - 2019-10-05 17:05 - 000003068 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Update
2019-10-05 17:05 - 2019-10-05 17:05 - 000001229 _____ C:\Users\Public\Desktop\Smart Defrag 6.lnk
2019-10-05 17:05 - 2019-10-05 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag
2019-10-05 17:05 - 2019-09-12 09:59 - 000178960 _____ (IObit) C:\WINDOWS\system32\IObitSmartDefragExtension.dll
2019-10-05 17:05 - 2017-03-09 13:53 - 000030744 _____ (IObit) C:\WINDOWS\system32\Drivers\SmartDefragDriver.sys
2019-10-05 17:05 - 2016-03-22 11:02 - 000036824 _____ (IObit) C:\WINDOWS\system32\SmartDefragBootTime.exe
2019-10-05 04:45 - 2019-10-24 08:00 - 000000000 ____D C:\Users\pc\Desktop\programacion
2019-10-03 23:20 - 2019-10-03 23:20 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 002190864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001716752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001611792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001501712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001386000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 001043984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000827408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000816648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000666128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000659456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2019-10-03 23:20 - 2019-10-03 23:20 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000502784 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000495120 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-03 23:20 - 2019-10-03 23:20 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000394256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000258064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000231440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000228880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000202768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000181776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000173072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-03 23:20 - 2019-10-03 23:20 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-03 23:20 - 2019-10-03 23:20 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000037904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000021816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2019-10-03 23:20 - 2019-10-03 23:20 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2019-10-03 23:20 - 2019-10-03 23:20 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSErrRedir.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-03 23:19 - 2019-10-03 23:19 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-03 23:19 - 2019-10-03 23:19 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-03 23:19 - 2019-10-03 23:19 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-03 23:19 - 2019-10-03 23:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-03 23:18 - 2019-10-03 23:18 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-03 23:18 - 2019-10-03 23:18 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-03 23:18 - 2019-10-03 23:18 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-03 23:18 - 2019-10-03 23:18 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-03 23:18 - 2019-10-03 23:18 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-03 23:18 - 2019-10-03 23:18 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-01 07:33 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-01 07:19 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-01 07:14 - 2019-07-18 23:35 - 000000000 ____D C:\Users\pc\.spyder-py3
2019-11-01 07:08 - 2019-07-21 20:53 - 001523218 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-01 07:08 - 2019-03-19 08:59 - 000651016 _____ C:\WINDOWS\system32\perfh00A.dat
2019-11-01 07:08 - 2019-03-19 08:59 - 000123990 _____ C:\WINDOWS\system32\perfc00A.dat
2019-11-01 07:08 - 2019-03-19 01:50 - 000000000 ____D C:\WINDOWS\INF
2019-11-01 07:06 - 2019-07-23 21:37 - 000000000 __SHD C:\Users\pc\IntelGraphicsProfiles
2019-11-01 07:02 - 2019-07-21 21:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-01 07:02 - 2019-07-21 20:53 - 000000000 ____D C:\Users\pc
2019-11-01 07:02 - 2019-07-21 20:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-31 18:24 - 2019-07-11 16:42 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-31 18:24 - 2019-07-11 16:42 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-10-30 23:39 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-30 00:23 - 2019-09-27 01:56 - 000000000 ____D C:\Users\pc\AppData\Roaming\DAEMON Tools Lite
2019-10-29 21:56 - 2019-08-13 05:40 - 000000000 ____D C:\ProgramData\ProductData
2019-10-29 21:53 - 2019-03-19 01:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-29 13:59 - 2019-07-21 21:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-28 17:05 - 2019-08-01 18:00 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uso a distancia de tu PS4.lnk
2019-10-28 17:05 - 2019-08-01 18:00 - 000002158 _____ C:\Users\Public\Desktop\Uso a distancia de tu PS4.lnk
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\Users\pc\AppData\Roaming\IObit
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\ProgramData\IObit
2019-10-28 04:08 - 2019-07-11 16:34 - 000000000 ____D C:\ProgramData\Adobe
2019-10-28 04:08 - 2019-07-11 16:34 - 000000000 ____D C:\Program Files (x86)\Adobe
2019-10-28 04:07 - 2019-07-19 20:28 - 000000000 ____D C:\Users\pc\AppData\Roaming\Adobe
2019-10-27 05:42 - 2019-07-23 21:36 - 000000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2019-10-27 05:41 - 2019-07-21 20:44 - 000391944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-27 05:38 - 2019-08-13 05:40 - 000000000 ____D C:\Users\pc\AppData\LocalLow\IObit
2019-10-27 05:38 - 2019-08-13 05:39 - 000000000 ____D C:\Program Files (x86)\IObit
2019-10-27 05:31 - 2019-07-21 19:55 - 000000000 ___DC C:\WINDOWS\Panther
2019-10-27 05:03 - 2019-03-19 01:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-10-26 23:17 - 2019-07-11 16:18 - 000000000 ____D C:\Users\pc\AppData\Local\VirtualStore
2019-10-26 19:22 - 2019-03-19 02:00 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2019-10-26 19:22 - 2019-03-19 02:00 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2019-10-26 19:22 - 2019-03-19 02:00 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2019-10-26 19:22 - 2019-03-19 02:00 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2019-10-26 19:22 - 2019-03-19 01:57 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2019-10-26 19:22 - 2019-03-19 01:57 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2019-10-26 19:22 - 2019-03-19 01:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-26 06:27 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-10-26 06:25 - 2019-09-22 02:15 - 000000000 ____D C:\Program Files\Microsoft Office
2019-10-22 22:16 - 2019-07-21 21:02 - 000000000 ____D C:\Users\pc\AppData\Local\Packages
2019-10-18 02:45 - 2019-07-17 23:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-10-18 02:45 - 2019-07-17 23:03 - 000000000 ____D C:\Program Files\Java
2019-10-18 02:43 - 2019-07-17 23:03 - 000129080 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2019-10-13 20:48 - 2019-07-21 14:35 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-10-13 20:48 - 2019-03-19 09:01 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2019-10-13 20:48 - 2019-03-19 09:01 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-10-13 20:48 - 2019-03-19 09:01 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\system32\winrm
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\system32\WCN
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\system32\slmgr
2019-10-13 20:48 - 2019-03-19 08:59 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___SD C:\WINDOWS\system32\F12
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___SD C:\WINDOWS\system32\dsc
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\Com
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\IME
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\System
2019-10-13 20:48 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-10-13 20:48 - 2019-03-19 01:37 - 000000000 ____D C:\WINDOWS\servicing
2019-10-13 04:14 - 2019-07-18 18:13 - 000000000 ____D C:\Users\pc\AppData\Local\Vivox
2019-10-13 04:14 - 2019-03-19 09:01 - 000000000 ____D C:\WINDOWS\OCR
2019-10-13 04:14 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\es-MX
2019-10-13 00:16 - 2019-07-18 17:47 - 000000000 ____D C:\ProgramData\Riot Games
2019-10-12 14:45 - 2019-09-22 01:42 - 000000000 ____D C:\Users\pc\AppData\Local\Deployment
2019-10-11 23:47 - 2019-08-11 07:56 - 000000000 ____D C:\Users\pc\Desktop\U
2019-10-10 08:09 - 2019-03-19 01:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-10 08:09 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-10 08:09 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-10 03:22 - 2019-07-31 04:53 - 000000000 ____D C:\ProgramData\Package Cache
2019-10-10 02:50 - 2019-09-25 23:09 - 000006103 _____ C:\Users\pc\Desktop\ejercicio.py
2019-10-10 00:39 - 2019-07-21 20:05 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-10 00:35 - 2019-07-21 20:04 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-07 19:58 - 2019-09-25 23:46 - 000000153 _____ C:\Users\pc\Desktop\Sin título1.py
2019-10-05 20:49 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2019-10-05 20:49 - 2009-07-14 00:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-10-04 11:25 - 2019-07-21 21:02 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-04 11:25 - 2019-07-21 21:02 - 000000000 ___RD C:\Users\pc\3D Objects
2019-10-04 00:52 - 2019-03-19 09:01 - 000000000 ___SD C:\WINDOWS\system32\AppV
2019-10-04 00:52 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-02 16:18 - 2019-07-21 21:00 - 000003622 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-02 16:18 - 2019-07-21 21:00 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-02 16:17 - 2019-07-11 16:42 - 000000000 ____D C:\Program Files (x86)\Google

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-11-2019
Ran by pc (01-11-2019 07:53:39)
Running from C:\Users\pc\Desktop
Windows 10 Pro Version 1903 18362.418 (X64) (2019-07-22 00:01:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrador (S-1-5-21-940513610-2606913777-4097325418-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-940513610-2606913777-4097325418-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-940513610-2606913777-4097325418-1002 - Limited - Enabled)
Invitado (S-1-5-21-940513610-2606913777-4097325418-501 - Limited - Disabled)
pc (S-1-5-21-940513610-2606913777-4097325418-1000 - Administrator - Enabled) => C:\Users\pc
WDAGUtilityAccount (S-1-5-21-940513610-2606913777-4097325418-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.125 - Adobe)
Adobe Reader X - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated)
AIMP 3 .00.815 (HKLM-x32\...\AIMP 3 .00.815) (Version:  - )
Anaconda3 2019.03 (Python 3.7.3 64-bit) (HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\Anaconda3 2019.03 (Python 3.7.3 64-bit)) (Version: 2019.03 - Anaconda, Inc.)
Arduino (HKLM-x32\...\Arduino) (Version: 1.8.9 - Arduino LLC)
Asistente para soporte y recuperación de Microsoft (HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\f9a89bd2a46a7606) (Version: 16.0.3306.3 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.1516 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.1707 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.0948 - Disc Soft Ltd)
GameRanger (HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\GameRanger) (Version:  - GameRanger Technologies)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.87 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.24.15 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4358 - Intel Corporation)
Java 8 Update 231 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180231F0}) (Version: 8.0.2310.11 - Oracle Corporation)
K-Lite Codec Pack 6.6.6 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.6.6 - )
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
Malwarebytes versión 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Microsoft Age of Empires II (HKLM-x32\...\Age of Empires 2.0) (Version:  - )
Microsoft Age of Empires II: The Conquerors Expansion (HKLM-x32\...\Age of Empires II: The Conquerors Expansion 1.0) (Version:  - )
Microsoft Office Profesional Plus 2019 - es-es (HKLM\...\ProPlus2019Retail - es-es) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Office Professional Plus 2019 - en-us (HKLM\...\ProPlus2019Retail - en-us) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Project Professional 2019 - en-us (HKLM\...\ProjectPro2019Retail - en-us) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Project Professional 2019 - es-es (HKLM\...\ProjectPro2019Retail - es-es) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Visio Professional 2019 - en-us (HKLM\...\VisioPro2019Retail - en-us) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Visio Professional 2019 - es-es (HKLM\...\VisioPro2019Retail - es-es) (Version: 16.0.12026.20344 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Need for Speed™ Carbono (HKLM-x32\...\{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}) (Version:  - )
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12026.20344 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12026.20344 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.12026.20344 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.12026.20344 - Microsoft Corporation) Hidden
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Python 3.7.4 (64-bit) (HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\{8ae589dd-de2e-42cd-af56-102374115fee}) (Version: 3.7.4150.0 - Python Software Foundation)
Python 3.7.4 Add to Path (64-bit) (HKLM\...\{16AB56AD-A068-4407-B239-25D2A507743D}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Core Interpreter (64-bit) (HKLM\...\{92A73F83-DC16-4316-945A-B66BC12362A7}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Development Libraries (64-bit) (HKLM\...\{B86709C3-962E-4C62-BF25-CF8D06267D72}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Documentation (64-bit) (HKLM\...\{4BC82D3B-BBC7-4BAF-899D-10AF5745E4AB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Executables (64-bit) (HKLM\...\{6DDB726E-09CE-44B4-A129-B62AD1604A95}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 pip Bootstrap (64-bit) (HKLM\...\{F92D31AF-F447-4A85-B0FD-CE6378F7625A}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Standard Library (64-bit) (HKLM\...\{5BF79310-A787-430F-93DD-CC8A9787679D}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Tcl/Tk Support (64-bit) (HKLM\...\{E5B772D5-8CCD-461B-BC60-B10DFB5704AB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Test Suite (64-bit) (HKLM\...\{794D5EC8-A92F-4969-A318-449C2E71D8C4}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Utility Scripts (64-bit) (HKLM\...\{16F74529-EDE0-4BBD-B2AF-89AF9C696EA8}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{D722DA3A-92F5-454A-BD5D-A48C94D82300}) (Version: 3.7.6762.0 - Python Software Foundation)
Real Alternative 1.9.0 (HKLM-x32\...\RealAlt_is1) (Version: 1.9.0 - )
Scratch 2 Offline Editor (HKLM-x32\...\{6E988774-5309-E02E-7EA8-F19CB65C2063}) (Version: 255 - Massachusetts Institute of Technology) Hidden
Scratch 2 Offline Editor (HKLM-x32\...\edu.media.mit.Scratch2Editor) (Version: 461 - Massachusetts Institute of Technology)
Smart Defrag 6 (HKLM-x32\...\Smart Defrag_is1) (Version: 6.3 - IObit)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated)
Uso a distancia de tu PS4 (HKLM-x32\...\{5EF8E631-35B8-4A88-B874-8AAE0EB6B386}) (Version: 3.0.0.09250 - Sony Interactive Entertainment Inc.)
uTorrent Web (HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\utweb) (Version: 1.0.5 - BitTorrent, Inc.)
Voobly Game Data (HKLM-x32\...\Voobly_is1) (Version: Voobly Game Datas - Voobly)
Winamp (HKLM-x32\...\Winamp) (Version: 5.6  - Nullsoft, Inc)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)

Packages:
=========
Correo y Calendario -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-07-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-07-22] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Studios) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{D9AC5E73-BB10-467b-B884-AA1E475C51F5}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-09-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [183808 2010-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\yv12vfw.dll [237568 2010-11-03] (www.helixcommunity.org) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2010-01-17] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [108032 2010-12-11] () [File not signed]
HKLM\...\Drivers32: [vidc.iv50] => C:\WINDOWS\SysWOW64\ir50_32original.dll [746496 2019-03-19] (Microsoft Windows -> Intel Corporation)
HKLM\...\Drivers32: [msacm.iac2] => C:\WINDOWS\SysWOW64\iac25_32.ax [197632 2019-03-19] (Microsoft Windows -> Intel Corporation)
HKLM\...\Drivers32: [VIDC.IV41] => C:\Windows\SysWOW64\IR41_32.AX [9216 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anaconda3 (64-bit)\Anaconda Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> "/K" C:\Users\pc\Anaconda3\Scripts\activate.bat C:\Users\pc\Anaconda3

==================== Loaded Modules (Whitelisted) =============

2018-07-16 17:23 - 2018-07-16 17:23 - 000093184 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\bottleneck\move.cp37-win_amd64.pyd
2018-07-16 17:23 - 2018-07-16 17:23 - 000019456 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\bottleneck\nonreduce.cp37-win_amd64.pyd
2018-07-16 17:23 - 2018-07-16 17:23 - 000042496 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\bottleneck\nonreduce_axis.cp37-win_amd64.pyd
2018-07-16 17:23 - 2018-07-16 17:23 - 000093184 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\bottleneck\reduce.cp37-win_amd64.pyd
2018-08-02 13:07 - 2018-08-02 13:07 - 000026112 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\fastcache\_lrucache.cp37-win_amd64.pyd
2018-08-01 13:36 - 2018-08-01 13:36 - 000144384 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\kiwisolver.cp37-win_amd64.pyd
2019-03-11 16:15 - 2019-03-11 16:15 - 000170496 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\lxml\_elementpath.cp37-win_amd64.pyd
2019-03-11 16:15 - 2019-03-11 16:15 - 001779712 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\lxml\etree.cp37-win_amd64.pyd
2019-02-26 12:49 - 2019-02-26 12:49 - 000014848 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\markupsafe\_speedups.cp37-win_amd64.pyd
2019-03-14 12:04 - 2019-03-14 12:04 - 000063488 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_contour.cp37-win_amd64.pyd
2019-03-14 12:03 - 2019-03-14 12:03 - 000172544 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_image.cp37-win_amd64.pyd
2019-03-14 12:04 - 2019-03-14 12:04 - 000151552 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_path.cp37-win_amd64.pyd
2019-03-14 12:03 - 2019-03-14 12:03 - 000033280 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_png.cp37-win_amd64.pyd
2019-03-14 12:04 - 2019-03-14 12:04 - 000368640 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_qhull.cp37-win_amd64.pyd
2019-03-14 12:04 - 2019-03-14 12:04 - 000106496 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\_tri.cp37-win_amd64.pyd
2019-03-14 12:04 - 2019-03-14 12:04 - 000196096 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\backends\_backend_agg.cp37-win_amd64.pyd
2019-03-14 12:03 - 2019-03-14 12:03 - 000093184 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\matplotlib\ft2font.cp37-win_amd64.pyd
2019-03-18 08:24 - 2019-03-18 08:24 - 000011776 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\menuinst\winshortcut.cp37-win_amd64.pyd
2019-01-11 18:32 - 2019-01-11 18:32 - 000271360 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\mkl_fft\_pydfti.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000010240 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\_mklinit.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000102400 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\core\_multiarray_tests.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 002671616 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\core\_multiarray_umath.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000070144 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\fft\fftpack_lite.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000153600 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\linalg\_umath_linalg.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000022016 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\linalg\lapack_lite.cp37-win_amd64.pyd
2019-03-01 18:22 - 2019-03-01 18:22 - 000713216 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\numpy\random\mtrand.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 001417728 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\algos.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000631808 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\groupby.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000159232 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\hashing.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000532480 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\hashtable.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000512000 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\index.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000045568 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\indexing.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000227328 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\internals.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 001931776 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\interval.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 002028544 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\join.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000069120 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\json.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000371712 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\lib.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000079360 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\missing.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000190976 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\ops.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000446976 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\parsers.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000061440 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\properties.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000217088 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\reduction.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000229888 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\reshape.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000081408 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\skiplist.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000704000 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\sparse.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000068096 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\testing.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000250368 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslib.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000056832 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\ccalendar.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000311808 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\conversion.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000224256 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\fields.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000117760 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\frequencies.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000176640 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\nattype.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000046592 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\np_datetime.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000347648 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\offsets.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000309248 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\parsing.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000379392 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\period.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000219648 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\resolution.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000313344 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\strptime.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000385536 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\timedeltas.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000417280 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\timestamps.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000196096 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\tslibs\timezones.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000571392 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\window.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000192512 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\_libs\writers.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000072704 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\io\msgpack\_packer.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000086016 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\io\msgpack\_unpacker.cp37-win_amd64.pyd
2019-03-14 13:50 - 2019-03-14 13:50 - 000012288 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pandas\util\_move.cp37-win_amd64.pyd
2019-01-11 20:20 - 2019-01-11 20:20 - 000578560 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PIL\_imaging.cp37-win_amd64.pyd
2019-03-11 20:11 - 2019-03-11 20:11 - 000074240 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\psutil\_psutil_windows.cp37-win_amd64.pyd
2019-03-11 18:37 - 2019-03-11 18:37 - 000033280 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\pvectorc.cp37-win_amd64.pyd
2018-09-19 17:23 - 2018-09-19 17:23 - 002218496 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtCore.pyd
2018-09-19 17:21 - 2018-09-19 17:21 - 002345472 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtGui.pyd
2018-09-19 17:24 - 2018-09-19 17:24 - 000652800 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtNetwork.pyd
2018-09-19 17:29 - 2018-09-19 17:29 - 000252416 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtPrintSupport.pyd
2018-09-19 17:26 - 2018-09-19 17:26 - 000427008 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtQml.pyd
2018-09-19 17:27 - 2018-09-19 17:27 - 000723968 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtQuick.pyd
2018-09-19 17:28 - 2018-09-19 17:28 - 000114176 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtSvg.pyd
2018-09-19 17:25 - 2018-09-19 17:25 - 000037888 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtWebChannel.pyd
2018-09-19 17:25 - 2018-09-19 17:25 - 000057344 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtWebEngineCore.pyd
2018-09-19 17:25 - 2018-09-19 17:25 - 000195072 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtWebEngineWidgets.pyd
2018-09-19 17:17 - 2018-09-19 17:17 - 004951040 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\PyQt5\QtWidgets.pyd
2018-08-01 20:41 - 2018-08-01 20:41 - 000137216 _____ () [File not signed] C:\Users\pc\Anaconda3\Lib\site-packages\pywin32_system32\pywintypes37.dll
2019-02-20 15:46 - 2019-02-20 15:46 - 000064000 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\_lib\_ccallback_c.cp37-win_amd64.pyd
2019-02-20 15:46 - 2019-02-20 15:46 - 000041984 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\_lib\messagestream.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000236032 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\interpolate\_bspl.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000100864 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\interpolate\_fitpack.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000301568 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\interpolate\_ppoly.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000240640 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\interpolate\dfitpack.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000297472 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\interpolate\interpnd.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000037888 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\io\matlab\mio_utils.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000159232 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\io\matlab\mio5_utils.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000106496 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\io\matlab\streams.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000249856 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\_decomp_update.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000579072 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\_fblas.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 001377280 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\_flapack.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000054272 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\_flinalg.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000203264 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\_solve_toeplitz.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000232448 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\cython_blas.cp37-win_amd64.pyd
2019-02-20 15:43 - 2019-02-20 15:43 - 000668160 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\linalg\cython_lapack.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000419328 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\_csparsetools.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 002152448 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\_sparsetools.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000165376 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\csgraph\_min_spanning_tree.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000261632 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\csgraph\_reordering.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000201728 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\csgraph\_shortest_path.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000126976 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\csgraph\_tools.cp37-win_amd64.pyd
2019-02-20 15:44 - 2019-02-20 15:44 - 000124928 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\sparse\csgraph\_traversal.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000083456 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\spatial\_distance_wrap.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000156672 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\spatial\_hausdorff.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000154624 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\spatial\_voronoi.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000420352 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\spatial\ckdtree.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000776192 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\spatial\qhull.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000032768 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\special\_comb.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000069632 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\special\_ellip_harm_2.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 001076224 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\special\_ufuncs.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000104960 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\special\_ufuncs_cxx.cp37-win_amd64.pyd
2019-02-20 15:45 - 2019-02-20 15:45 - 000341504 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\scipy\special\specfun.cp37-win_amd64.pyd
2018-08-01 13:39 - 2018-08-01 13:39 - 000108544 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\sip.pyd
2019-03-25 12:28 - 2019-03-25 12:28 - 000010240 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\tornado\speedups.cp37-win_amd64.pyd
2018-08-01 20:41 - 2018-08-01 20:41 - 000011264 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\win32\_win32sysloader.pyd
2018-08-01 20:41 - 2018-08-01 20:41 - 000137216 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\win32\pywintypes37.dll
2018-08-01 20:41 - 2018-08-01 20:41 - 000131584 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\win32\win32api.pyd
2018-08-01 20:41 - 2018-08-01 20:41 - 000034304 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\win32\win32cred.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000051200 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\_device.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000060416 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\_poll.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000046592 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\_proxy_steerable.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000028672 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\_version.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000068096 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\constants.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000065024 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\context.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000030720 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\error.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000086016 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\message.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000134656 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\socket.cp37-win_amd64.pyd
2019-02-26 00:35 - 2019-02-26 00:35 - 000041472 _____ () [File not signed] C:\Users\pc\Anaconda3\lib\site-packages\zmq\backend\cython\utils.cp37-win_amd64.pyd
2017-11-13 17:55 - 2017-11-13 17:55 - 000012288 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\charset.dll
2017-11-13 17:55 - 2017-11-13 17:55 - 000938496 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\iconv.dll
2019-01-19 16:35 - 2019-01-19 16:35 - 000082432 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libexslt.dll
2017-11-09 02:32 - 2017-11-09 02:32 - 000229376 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libjpeg.dll
2019-01-11 17:22 - 2019-01-11 17:22 - 000192512 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libpng16.dll
2018-03-28 04:12 - 2018-03-28 04:12 - 000282112 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libsodium.dll
2019-01-19 13:12 - 2019-01-19 13:12 - 001294848 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libxml2.dll
2019-01-19 16:35 - 2019-01-19 16:35 - 000218112 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\libxslt.dll
2018-08-01 20:42 - 2018-08-01 20:42 - 000552448 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\pythoncom37.dll
2019-03-12 17:08 - 2019-03-12 17:08 - 001018880 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\sqlite3.dll
2019-01-28 18:30 - 2019-01-28 18:30 - 000629248 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\tiff.dll
2018-11-21 13:46 - 2018-11-21 13:46 - 000084992 _____ () [File not signed] C:\Users\pc\Anaconda3\Library\bin\zlib.dll
2019-02-01 10:57 - 2019-02-01 10:57 - 000451072 _____ (iMatix Corporation) [File not signed] C:\Users\pc\Anaconda3\Library\bin\libzmq-mt-4_3_1.dll
2019-03-27 20:13 - 2019-03-27 20:13 - 000065024 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_asyncio.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000081920 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_bz2.pyd
2019-07-18 23:22 - 2019-03-27 20:13 - 000125952 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_ctypes.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000261120 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_decimal.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000202240 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_elementtree.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000031744 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_hashlib.pyd
2019-03-27 20:14 - 2019-03-27 20:14 - 000249856 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_lzma.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000037376 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_overlapped.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000020480 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_queue.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000068608 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_socket.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000078848 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_sqlite3.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000114176 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_ssl.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000059904 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\_tkinter.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000193024 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\pyexpat.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000019456 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\select.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 001065472 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\DLLs\unicodedata.pyd
2019-03-27 20:13 - 2019-03-27 20:13 - 000051712 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\python3.dll
2019-03-27 20:13 - 2019-03-27 20:13 - 003745280 _____ (Python Software Foundation) [File not signed] C:\Users\pc\Anaconda3\python37.dll
2018-07-26 18:50 - 2018-07-26 18:50 - 000617984 _____ (The FreeType Project) [File not signed] C:\Users\pc\Anaconda3\Library\bin\freetype.dll
2017-11-16 19:58 - 2017-11-16 19:58 - 026216448 _____ (The ICU Project) [File not signed] C:\Users\pc\Anaconda3\Library\bin\icudt58.dll
2017-11-16 19:58 - 2017-11-16 19:58 - 002713088 _____ (The ICU Project) [File not signed] C:\Users\pc\Anaconda3\Library\bin\icuin58.dll
2017-11-16 19:58 - 2017-11-16 19:58 - 001905664 _____ (The ICU Project) [File not signed] C:\Users\pc\Anaconda3\Library\bin\icuuc58.dll
2019-07-18 23:22 - 2019-03-07 14:00 - 003406336 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\pc\Anaconda3\Library\bin\libcrypto-1_1-x64.dll
2019-03-07 14:00 - 2019-03-07 14:00 - 000681472 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\pc\Anaconda3\Library\bin\libssl-1_1-x64.dll
2019-07-18 23:22 - 2018-12-12 18:38 - 005109760 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Core.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 005924352 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Gui.dll
2018-12-12 18:38 - 2018-12-12 18:38 - 001226240 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Network.dll
2018-12-12 18:45 - 2018-12-12 18:45 - 000286720 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Positioning.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 000319488 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5PrintSupport.dll
2018-12-12 18:41 - 2018-12-12 18:41 - 003432960 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Qml.dll
2018-12-12 18:41 - 2018-12-12 18:41 - 003465728 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Quick.dll
2018-12-12 18:42 - 2018-12-12 18:42 - 000072192 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5QuickWidgets.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Svg.dll
2018-12-12 18:44 - 2018-12-12 18:44 - 000111616 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5WebChannel.dll
2018-12-12 19:17 - 2018-12-12 19:17 - 068311040 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5WebEngineCore.dll
2018-12-12 19:17 - 2018-12-12 19:17 - 000221696 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5WebEngineWidgets.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 005572608 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\Qt5Widgets.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000035328 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\iconengines\qsvgicon.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qgif.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qicns.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qico.dll
2018-12-12 18:39 - 2018-12-12 18:39 - 000038400 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qjpeg.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qsvg.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qtga.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000371200 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qtiff.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qwbmp.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 000505856 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\imageformats\qwebp.dll
2018-12-12 18:40 - 2018-12-12 18:40 - 001264128 _____ (The Qt Company Ltd.) [File not signed] C:\Users\pc\Anaconda3\Library\plugins\platforms\qwindows.dll
2018-05-16 16:07 - 2018-05-16 16:07 - 000155136 _____ (The Tukaani Project <hxxp://tukaani.org/>) [File not signed] C:\Users\pc\Anaconda3\Library\bin\liblzma.dll
2018-11-05 21:21 - 2018-11-05 21:21 - 000380416 _____ (Yann Collet, Facebook, Inc.) [File not signed] C:\Users\pc\Anaconda3\Library\bin\libzstd.dll
==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 23:34 - 2019-07-11 16:39 - 000000864 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 validation.sls.microsoft.com

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.43.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A276A0C9-A368-45A6-A952-F42FF1676C63}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{572120A9-0CD3-4092-84EF-66FF4C87445D}C:\users\pc\anaconda3\pythonw.exe] => (Allow) C:\users\pc\anaconda3\pythonw.exe (Python Software Foundation) [File not signed]
FirewallRules: [TCP Query User{48FCF3C7-2F6C-4D35-BA16-0E703D740D76}C:\users\pc\anaconda3\pythonw.exe] => (Allow) C:\users\pc\anaconda3\pythonw.exe (Python Software Foundation) [File not signed]
FirewallRules: [UDP Query User{920F50A5-BBE4-4C89-8BA7-FB14E59A895E}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [TCP Query User{B3AC174C-FB3C-4F01-B80C-11EF65744134}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [UDP Query User{A094ED79-6376-44FE-AB3E-129978381BE4}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [TCP Query User{CAD4438A-FD82-497D-8DFB-10DCAA8CB577}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [{D3CCA5FA-D507-408E-91C2-D8BBACBBE8F8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD9.EXE No File
FirewallRules: [{C40828AA-55CE-4C5C-BCE1-7DE54269FD5D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [UDP Query User{172282FE-0923-4B08-B56C-D164F96543FA}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [TCP Query User{2A3677BD-E3E6-436D-8294-0A3198329C70}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [{36D077E6-DEC2-4187-B6E1-19C991AC0DF6}] => (Allow) C:\Riot Games\League of Legends\League of Legends\LeagueClient.exe (Riot Games, Inc. -> )
FirewallRules: [{EFBAF836-A167-4044-B1E0-DBD6F3D221FD}] => (Allow) C:\Riot Games\League of Legends\League of Legends\LeagueClient.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{51606F7A-8B22-4ABB-BFD6-CB51387CA444}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [UDP Query User{4D8F6D3E-DFC5-4B81-9CE3-5CA87EC8264C}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [{CB526515-1ED8-4139-A2A0-6C984A0F0727}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{4C153651-F3B8-4A3D-9BD6-D1CBF0ADC163}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{B5A81B72-F9E9-4FF7-9329-D4AC061EDF4C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{12F75BA8-9AE2-4698-89D4-888E366EB7B5}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{ED7C643F-0CE2-478C-AF63-B6929FE49559}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [{10E13F96-A0F9-44A9-A1A4-4455CD6313B7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [TCP Query User{FB69A6D1-BDBE-4A03-8D77-5EF4CC9A97C5}C:\riot games\league of legends\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\league of legends\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [UDP Query User{1F4B08CA-489D-4F93-92DD-BC21FF0B11EA}C:\riot games\league of legends\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\league of legends\game\league of legends.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{254C610D-E831-4F18-8784-FBC8FF13A4F4}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File
FirewallRules: [UDP Query User{00CA2093-724E-48A3-A28D-459F64B27C09}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File
FirewallRules: [TCP Query User{A32B39D9-AE57-42C1-BF76-79B3EED4333D}C:\users\pc\anaconda3\pythonw.exe] => (Allow) C:\users\pc\anaconda3\pythonw.exe (Python Software Foundation) [File not signed]
FirewallRules: [UDP Query User{A3F952B3-3123-47D2-B9BC-6DC1E2D23C93}C:\users\pc\anaconda3\pythonw.exe] => (Allow) C:\users\pc\anaconda3\pythonw.exe (Python Software Foundation) [File not signed]
FirewallRules: [{BEDE4418-24A7-4AD7-AC2F-1964A48E28A7}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{86D9C76C-4709-4B89-A72C-A427FC9AE00D}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [TCP Query User{C774CE1B-BE3A-4F32-884C-2FC91A07EA1D}C:\program files (x86)\voobly\voobly.exe] => (Allow) C:\program files (x86)\voobly\voobly.exe (Voobly) [File not signed]
FirewallRules: [UDP Query User{D288A548-4B08-482D-BCDA-BBDCBC369021}C:\program files (x86)\voobly\voobly.exe] => (Allow) C:\program files (x86)\voobly\voobly.exe (Voobly) [File not signed]
FirewallRules: [TCP Query User{1791B55D-D8A3-4B0D-8B4C-FD8C37C8B46F}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [UDP Query User{BA187E2C-9631-460F-81D8-716114FFF40A}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{CB3A475A-1EDB-4276-865A-EB8FEA9AAC09}] => (Allow) C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [File not signed]
FirewallRules: [{F044681F-FE29-4892-AE76-E68B1B07E85E}] => (Allow) C:\Users\pc\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [File not signed]
FirewallRules: [TCP Query User{B0FAB231-1970-41CB-8363-35A12288E2BB}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [UDP Query User{257B9336-721F-477B-AC6B-F77AA3A92F89}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [TCP Query User{AE982E2F-BDD4-42A9-991A-C6E03D3AA607}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{2EBE4A38-3A5B-4567-A534-E9FABEA0123A}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{33918269-D09A-45D9-8710-EAAD3D62CE6A}C:\users\pc\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\pc\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [UDP Query User{B5183E23-BA5B-48CC-BC4D-2F4AAF215762}C:\users\pc\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\pc\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [{0CB9B3B4-DCC3-471A-B0D8-40F0B9F577EB}] => (Allow) C:\Program Files (x86)\Sony\PS4 Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.)
FirewallRules: [TCP Query User{415FC769-2750-4644-9DF0-247EB2EAFD9C}C:\users\pc\appdata\roaming\utorrent web\utweb.exe] => (Block) C:\users\pc\appdata\roaming\utorrent web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [File not signed]
FirewallRules: [UDP Query User{6B73DB19-1611-4FA6-895D-2E0AA5EEFC98}C:\users\pc\appdata\roaming\utorrent web\utweb.exe] => (Block) C:\users\pc\appdata\roaming\utorrent web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [File not signed]
FirewallRules: [TCP Query User{4AFEBD4C-7A6E-4F04-9C64-EAF14574CCDC}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [UDP Query User{DB81C9E2-722D-45DF-8F35-F30C09F3C2F1}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe] => (Allow) C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{46AE7E0D-4295-4138-A4C6-A136CA70E067}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

21-10-2019 03:08:56 Punto de control programado
26-10-2019 19:21:11 Instalador de Módulos de Windows
28-10-2019 04:30:26 ZHPcleaner

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/01/2019 07:38:37 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2256,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (11/01/2019 07:31:47 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5264,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (11/01/2019 07:24:59 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6072,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (11/01/2019 07:11:57 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4248,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/31/2019 08:30:55 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10476,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/31/2019 07:44:30 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9372,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/31/2019 07:37:46 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7820,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/31/2019 07:23:15 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13564,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


System errors:
=============
Error: (11/01/2019 07:07:09 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Administrador de mapas descargados no respondió después de iniciar.

Error: (11/01/2019 07:02:10 AM) (Source: Microsoft-Windows-HAL) (EventID: 13) (User: NT AUTHORITY)
Description: Se activó el temporizador de vigilancia del sistema.

Error: (11/01/2019 07:02:42 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: El cierre anterior del sistema a las 22:42:00 del ‎31/‎10/‎2019 resultó inesperado.

Error: (10/31/2019 06:46:09 PM) (Source: BTHUSB) (EventID: 16) (User: )
Description: Error en la autenticación mutua entre el adaptador Bluetooth local y un dispositivo con la dirección de dispositivo Bluetooth (a4:53:85:05:51:9d).

Error: (10/31/2019 06:46:09 PM) (Source: HidBth) (EventID: 4) (User: )
Description: Error en la conexión inicial con el dispositivo HID de Bluetooth . Este dispositivo se quitó como dispositivo personal o vinculado. Vuelva a instalarlo.

Error: (10/31/2019 06:46:03 PM) (Source: BTHUSB) (EventID: 16) (User: )
Description: Error en la autenticación mutua entre el adaptador Bluetooth local y un dispositivo con la dirección de dispositivo Bluetooth (a4:53:85:05:51:9d).

Error: (10/30/2019 02:18:43 AM) (Source: NetBT) (EventID: 4321) (User: )
Description: No se pudo registrar el nombre "PC-PC          :0" en la interfaz con dirección IP 192.168.0.8.
El equipo la con dirección IP 192.168.0.7 no admite el nombre reclamado por este equipo.

Error: (10/30/2019 02:18:42 AM) (Source: NetBT) (EventID: 4321) (User: )
Description: No se pudo registrar el nombre "PC-PC          :20" en la interfaz con dirección IP 192.168.0.8.
El equipo la con dirección IP 192.168.0.7 no admite el nombre reclamado por este equipo.


Windows Defender:
===================================
Date: 2019-10-26 19:42:31.387
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {D23E17A2-29AC-488D-8BD9-755D6644F301}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-22 13:32:22.465
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {060E5D43-CF61-4DA4-BC15-892D18D21858}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-21 22:26:20.372
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {0F710E36-8455-40FE-81E3-BBEC6181E9F0}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-21 21:23:57.564
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {22DAFBBB-E04C-49A5-BF50-F9E5A762ED9B}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-17 19:05:44.719
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {09CD5EBC-73B3-40C0-9A7B-C27C9EB76F27}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM

Date: 2019-10-29 22:07:41.856
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.305.927.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16500.1
Código de error: 0x80240438
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

Date: 2019-10-21 18:52:46.026
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.305.304.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16500.1
Código de error: 0x80240016
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

Date: 2019-10-12 14:51:00.334
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.303.1424.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16400.2
Código de error: 0x8024402c
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

Date: 2019-10-08 18:37:50.652
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.303.1161.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16400.2
Código de error: 0x80240438
Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. 

CodeIntegrity:
===================================

Date: 2019-11-01 07:26:56.366
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-31 18:18:56.474
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-31 18:18:45.067
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-31 01:11:27.582
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-29 22:10:48.545
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-27 13:08:50.184
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2019-10-27 12:21:31.954
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.

Date: 2019-10-27 06:01:33.454
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

==================== Memory info =========================== 

BIOS: Insyde F.22 11/22/2012
Motherboard: Hewlett-Packard 183B
Processor: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz
Percentage of memory in use: 55%
Total physical RAM: 8090.36 MB
Available physical RAM: 3603.36 MB
Total Virtual: 16282.36 MB
Available Virtual: 11354.89 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:194.57 GB) (Free:102.12 GB) NTFS
Drive d: () (Fixed) (Total:672.2 GB) (Free:670.43 GB) NTFS

\\?\Volume{c3a219a4-a40f-11e9-bc46-806e6f6e6963}\ (Reservado para el sistema) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 081D9D96)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=194.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=64 GB) - (Type=05)
Partition 4: (Not Active) - (Size=672.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

gracias por la ayuda, es un alivio solucionar este problema.

Hola @MARCELO_BRAVO

No entendí, :thinking: desaparecieron o aun nop?

Sigue estos pasos:

1.- Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

2.- Desactiva Temporalmente tu antivirus.

3.- Abre un nuevo archivo Notepad y copia y pega este contenido:


Start
CloseProcesses:
CreateRestorePoint:
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {58869893-d61d-11e9-944a-38eaa7e09f04} - "F:\autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a22214ca-e0b6-11e9-944d-38eaa7e09f04} - "F:\Autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a222152c-e0b6-11e9-944d-38eaa7e09f04} - "G:\Autorun.exe" 
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
GroupPolicy: Restriction ? <==== ATTENTION
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {4944A21D-6FB3-4203-BFE2-82079831CBD2} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe
Task: {4C15816B-1438-4B23-9F1A-74C30872E550} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {A29A87CA-9FEF-4C05-BF4D-62C67A778E04} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {A8E02C08-AE1A-43DD-868A-6839D18A0037} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe
Task: {C194A7C1-BE7F-4BCD-B55D-5B27974E1D3E} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit)
Task: {EBA378B9-BA20-4AA1-866F-649E390FC117} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5923600 2019-09-18] (IObit Information Technology -> IObit)
Task: {F5B5494A-A227-4698-994B-CD1742F8B315} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3007760 2019-04-24] (IObit Information Technology -> IObit)
CHR Notifications: Default -> hxxps://maranhesduve.club; hxxps://py.checkio.org; hxxps://www.youtube.com
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [X]
C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [X]
U3 idsvc; no ImagePath
C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys
C:\Program Files (x86)\IObit\Advanced SystemCare
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\Users\pc\AppData\Roaming\IObit
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\ProgramData\IObit
2019-10-27 05:38 - 2019-08-13 05:40 - 000000000 ____D C:\Users\pc\AppData\LocalLow\IObit
2019-10-27 05:38 - 2019-08-13 05:39 - 000000000 ____D C:\Program Files (x86)\IObit
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [183808 2010-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\yv12vfw.dll [237568 2010-11-03] (www.helixcommunity.org) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2010-01-17] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [108032 2010-12-11] () [File not signed]
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
FirewallRules: [{A276A0C9-A368-45A6-A952-F42FF1676C63}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{920F50A5-BBE4-4C89-8BA7-FB14E59A895E}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [TCP Query User{B3AC174C-FB3C-4F01-B80C-11EF65744134}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [UDP Query User{A094ED79-6376-44FE-AB3E-129978381BE4}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [TCP Query User{CAD4438A-FD82-497D-8DFB-10DCAA8CB577}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [{D3CCA5FA-D507-408E-91C2-D8BBACBBE8F8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD9.EXE No File
FirewallRules: [UDP Query User{172282FE-0923-4B08-B56C-D164F96543FA}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [TCP Query User{2A3677BD-E3E6-436D-8294-0A3198329C70}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [{CB526515-1ED8-4139-A2A0-6C984A0F0727}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{4C153651-F3B8-4A3D-9BD6-D1CBF0ADC163}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{B5A81B72-F9E9-4FF7-9329-D4AC061EDF4C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{12F75BA8-9AE2-4698-89D4-888E366EB7B5}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{ED7C643F-0CE2-478C-AF63-B6929FE49559}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [{10E13F96-A0F9-44A9-A1A4-4455CD6313B7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [TCP Query User{254C610D-E831-4F18-8784-FBC8FF13A4F4}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File
FirewallRules: [UDP Query User{00CA2093-724E-48A3-A28D-459F64B27C09}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Nos comentas .

Salu2.

Ran by pc (02-11-2019 07:25:59) Run:1
Running from C:\Users\pc\Desktop
Loaded Profiles: pc (Available Profiles: pc)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {58869893-d61d-11e9-944a-38eaa7e09f04} - "F:\autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a22214ca-e0b6-11e9-944d-38eaa7e09f04} - "F:\Autorun.exe" 
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\...\MountPoints2: {a222152c-e0b6-11e9-944d-38eaa7e09f04} - "G:\Autorun.exe" 
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
GroupPolicy: Restriction ? <==== ATTENTION
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {4944A21D-6FB3-4203-BFE2-82079831CBD2} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe
Task: {4C15816B-1438-4B23-9F1A-74C30872E550} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {A29A87CA-9FEF-4C05-BF4D-62C67A778E04} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {A8E02C08-AE1A-43DD-868A-6839D18A0037} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe
Task: {C194A7C1-BE7F-4BCD-B55D-5B27974E1D3E} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit)
Task: {EBA378B9-BA20-4AA1-866F-649E390FC117} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5923600 2019-09-18] (IObit Information Technology -> IObit)
Task: {F5B5494A-A227-4698-994B-CD1742F8B315} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3007760 2019-04-24] (IObit Information Technology -> IObit)
CHR Notifications: Default -> hxxps://maranhesduve.club; hxxps://py.checkio.org; hxxps://www.youtube.com
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [X]
C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [X]
U3 idsvc; no ImagePath
C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys
C:\Program Files (x86)\IObit\Advanced SystemCare
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\Users\pc\AppData\Roaming\IObit
2019-10-28 04:32 - 2019-08-13 05:39 - 000000000 ____D C:\ProgramData\IObit
2019-10-27 05:38 - 2019-08-13 05:40 - 000000000 ____D C:\Users\pc\AppData\LocalLow\IObit
2019-10-27 05:38 - 2019-08-13 05:39 - 000000000 ____D C:\Program Files (x86)\IObit
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\19.152.0801.0009\amd64\FileSyncShell64.dll => No File
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [183808 2010-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\yv12vfw.dll [237568 2010-11-03] (www.helixcommunity.org) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2010-01-17] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [839680 2008-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [108032 2010-12-11] () [File not signed]
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
FirewallRules: [{A276A0C9-A368-45A6-A952-F42FF1676C63}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe No File
FirewallRules: [UDP Query User{920F50A5-BBE4-4C89-8BA7-FB14E59A895E}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [TCP Query User{B3AC174C-FB3C-4F01-B80C-11EF65744134}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe No File
FirewallRules: [UDP Query User{A094ED79-6376-44FE-AB3E-129978381BE4}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [TCP Query User{CAD4438A-FD82-497D-8DFB-10DCAA8CB577}C:\users\pc\appdata\local\temp\kmsemul.exe] => (Allow) C:\users\pc\appdata\local\temp\kmsemul.exe No File
FirewallRules: [{D3CCA5FA-D507-408E-91C2-D8BBACBBE8F8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD9.EXE No File
FirewallRules: [UDP Query User{172282FE-0923-4B08-B56C-D164F96543FA}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [TCP Query User{2A3677BD-E3E6-436D-8294-0A3198329C70}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe] => (Allow) F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe No File
FirewallRules: [{CB526515-1ED8-4139-A2A0-6C984A0F0727}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{4C153651-F3B8-4A3D-9BD6-D1CBF0ADC163}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DriverBooster.exe No File
FirewallRules: [{B5A81B72-F9E9-4FF7-9329-D4AC061EDF4C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{12F75BA8-9AE2-4698-89D4-888E366EB7B5}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\DBDownloader.exe No File
FirewallRules: [{ED7C643F-0CE2-478C-AF63-B6929FE49559}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [{10E13F96-A0F9-44A9-A1A4-4455CD6313B7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.6.0\AutoUpdate.exe No File
FirewallRules: [TCP Query User{254C610D-E831-4F18-8784-FBC8FF13A4F4}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File
FirewallRules: [UDP Query User{00CA2093-724E-48A3-A28D-459F64B27C09}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe] => (Allow) C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe No File

CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
*****************

Processes closed successfully.
Restore point was successfully created.
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{58869893-d61d-11e9-944a-38eaa7e09f04} => removed successfully
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a22214ca-e0b6-11e9-944d-38eaa7e09f04} => removed successfully
HKU\S-1-5-21-940513610-2606913777-4097325418-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a222152c-e0b6-11e9-944d-38eaa7e09f04} => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{503739d0-4c5e-4cfd-b3ba-d881334f0df2}" => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{486D715E-6AA2-44CF-BC48-B6990CBB53C6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{486D715E-6AA2-44CF-BC48-B6990CBB53C6}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControlsMigration" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4944A21D-6FB3-4203-BFE2-82079831CBD2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4944A21D-6FB3-4203-BFE2-82079831CBD2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\End Of Support\Notify1" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C15816B-1438-4B23-9F1A-74C30872E550}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C15816B-1438-4B23-9F1A-74C30872E550}" => removed successfully
C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B42DD9C-5A26-4F27-BB95-34603F0997E5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B42DD9C-5A26-4F27-BB95-34603F0997E5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControls" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A29A87CA-9FEF-4C05-BF4D-62C67A778E04}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A29A87CA-9FEF-4C05-BF4D-62C67A778E04}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\SideShow\AutoWake => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\AutoWake" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A8E02C08-AE1A-43DD-868A-6839D18A0037}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A8E02C08-AE1A-43DD-868A-6839D18A0037}" => removed successfully
C:\WINDOWS\System32\Tasks\IObitSelfCheckTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IObitSelfCheckTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C194A7C1-BE7F-4BCD-B55D-5B27974E1D3E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C194A7C1-BE7F-4BCD-B55D-5B27974E1D3E}" => removed successfully
C:\WINDOWS\System32\Tasks\SmartDefrag_AutoAnalyze => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartDefrag_AutoAnalyze" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EBA378B9-BA20-4AA1-866F-649E390FC117}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EBA378B9-BA20-4AA1-866F-649E390FC117}" => removed successfully
C:\WINDOWS\System32\Tasks\SmartDefrag_Startup => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartDefrag_Startup" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F5B5494A-A227-4698-994B-CD1742F8B315}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F5B5494A-A227-4698-994B-CD1742F8B315}" => removed successfully
C:\WINDOWS\System32\Tasks\SmartDefrag_Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartDefrag_Update" => removed successfully
"Chrome Notifications" => removed successfully
HKLM\System\CurrentControlSet\Services\AscFileFilter => removed successfully
AscFileFilter => service removed successfully
"C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys" => not found
HKLM\System\CurrentControlSet\Services\AscRegistryFilter => removed successfully
AscRegistryFilter => service removed successfully
HKLM\System\CurrentControlSet\Services\idsvc => removed successfully
idsvc => service removed successfully
"C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys" => not found
"C:\Program Files (x86)\IObit\Advanced SystemCare" => not found
C:\Users\pc\AppData\Roaming\IObit => moved successfully
C:\ProgramData\IObit => moved successfully
C:\Users\pc\AppData\LocalLow\IObit => moved successfully
C:\Program Files (x86)\IObit => moved successfully
HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => removed successfully
HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => removed successfully
HKU\S-1-5-21-940513610-2606913777-4097325418-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\\VIDC.XVID" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\\VIDC.YV12" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\\msacm.ac3acm" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\\msacm.lameacm" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\\VIDC.FFDS" => not found
"CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"" => removed successfully
"BVTFilter" => removed successfully
"BVTConsumer" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A276A0C9-A368-45A6-A952-F42FF1676C63}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{920F50A5-BBE4-4C89-8BA7-FB14E59A895E}C:\program files\java\jre1.8.0_221\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B3AC174C-FB3C-4F01-B80C-11EF65744134}C:\program files\java\jre1.8.0_221\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A094ED79-6376-44FE-AB3E-129978381BE4}C:\users\pc\appdata\local\temp\kmsemul.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{CAD4438A-FD82-497D-8DFB-10DCAA8CB577}C:\users\pc\appdata\local\temp\kmsemul.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D3CCA5FA-D507-408E-91C2-D8BBACBBE8F8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{172282FE-0923-4B08-B56C-D164F96543FA}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2A3677BD-E3E6-436D-8294-0A3198329C70}F:\memoria interna\nueva carpeta\sdi_rus\sdi_x64_r1790.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CB526515-1ED8-4139-A2A0-6C984A0F0727}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4C153651-F3B8-4A3D-9BD6-D1CBF0ADC163}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B5A81B72-F9E9-4FF7-9329-D4AC061EDF4C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{12F75BA8-9AE2-4698-89D4-888E366EB7B5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ED7C643F-0CE2-478C-AF63-B6929FE49559}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{10E13F96-A0F9-44A9-A1A4-4455CD6313B7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{254C610D-E831-4F18-8784-FBC8FF13A4F4}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{00CA2093-724E-48A3-A28D-459F64B27C09}C:\users\pc\desktop\microsoft office 2016-2019\files\bin\kmss.exe" => removed successfully

========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= End of CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local mientras los medios
est‚n desconectados.
No se puede realizar ninguna operaci¢n en Conexi¢n de  rea local* 9 mientras los medios
est‚n desconectados.

Adaptador de Ethernet Conexi¢n de  rea local:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de LAN inal mbrica Conexi¢n de  rea local* 9:

   Estado de los medios. . . . . . . . . . . : medios desconectados
   Sufijo DNS espec¡fico para la conexi¢n. . : 

Adaptador de LAN inal mbrica Conexi¢n de red inal mbrica:

   Sufijo DNS espec¡fico para la conexi¢n. . : 
   Direcci¢n IPv6 . . . . . . . . . . : ::8006:1ae2:e883:6837
   Direcci¢n IPv6 temporal. . . . . . : ::993:711f:a92:dfdf
   V¡nculo: direcci¢n IPv6 local. . . : fe80::8006:1ae2:e883:6837%2
   Direcci¢n IPv4. . . . . . . . . . . . . . : 192.168.0.8
   M scara de subred . . . . . . . . . . . . : 255.255.255.0
   Puerta de enlace predeterminada . . . . . : 192.168.0.1

========= End of CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

0 out of 0 jobs canceled.

========= End of CMD: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= End of CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= End of CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= End of CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= End of CMD: =========


========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-940513610-2606913777-4097325418-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-940513610-2606913777-4097325418-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 32830328 B
Java, Flash, Steam htmlcache => 1065 B
Windows/system/drivers => 9384000 B
Edge => 58108 B
Chrome => 433862271 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 33058 B
Users => 33058 B
ProgramData => 33058 B
Public => 33058 B
systemprofile => 33058 B
systemprofile32 => 33058 B
LocalService => 33058 B
NetworkService => 69014 B
pc => 48987382 B

RecycleBin => 67161430 B
EmptyTemp: => 573.9 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 07:27:26 ====

Hola @MARCELO_BRAVO

El Fix perfecto, solo falta que comentes si desapareció el problema???

Salu2