Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-12-2019
Ran by pc (administrator) on PC-PC (Gigabyte Technology Co., Ltd. Z87X-UD3H) (06-12-2019 11:06:43)
Running from C:\Users\pc\Desktop
Loaded Profiles: pc (Available Profiles: pc)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(devolo AG -> devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Turtle Entertainment GmbH -> ) C:\Program Files\EslWire\service\WireHelperSvc.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13651672 2013-09-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [525344 2018-03-24] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: J - J:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: K - K:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: {94a646c7-af01-11e3-90eb-806e6f6e6963} - D:\Run.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: {9b04a7fa-e0b3-11e6-94f7-74d4351c9282} - H:\setup.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: {c0b75ee0-0eaa-11e5-a4f9-74d4351c9282} - G:\iStudio.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: {d1d113d3-3004-11e7-a7b2-74d4351c9282} - K:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\MountPoints2: {d1d113d7-3004-11e7-a7b2-74d4351c9282} - J:\HiSuiteDownLoader.exe
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-22] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-05-03] (Adobe Inc. -> Adobe Systems, Inc.)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [165520 2019-10-17] (NVIDIA Corporation -> NVIDIA Corporation)
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0641AAE0-D7BC-4EE9-A11F-20884ECCE040} - System32\Tasks\BlueStacksHelper => C:\ProgramData\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {1006A27A-12C1-43B6-8833-89DBF262AFA2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-05-28] (Google Inc -> Google Inc.)
Task: {1233710A-0F81-4B1B-9726-1554DB523051} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1C9B6B67-2F6F-435F-8F44-0A834A1C3E62} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {23621F75-E2AB-4003-8A04-C5FABF2A60D5} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2E0F0797-7581-4D15-9B15-C693C1A4404C} - System32\Tasks\WTLRTME => C:\Users\pc\AppData\Roaming\WTLRTME.exe <==== ATTENTION
Task: {3B04D701-8DB9-4C30-BCC1-BD15B78FF2E2} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3F4F0616-88DB-4ADD-9C20-B0227932FDF6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4B0EBCA2-0492-468B-8A9E-49149064B15D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {52B6B375-BC61-4AEA-BF54-AA6FAEBF9888} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6AFFA13B-7429-41FA-AAFA-9E4D4D1D6616} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2431304 2019-11-19] (Overwolf Ltd -> Overwolf LTD)
Task: {7E9D1284-BFD2-4DD2-9BE9-CD0A48AF85E2} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8277868C-BB28-440C-B481-980FE0399C89} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {83821D70-BFE7-4AB0-B422-E4258A9278F5} - System32\Tasks\{835B4D75-E8DD-4F71-872B-6146767D4AAA} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [137152 2016-06-01] (VideoLAN -> VideoLAN)
Task: {84F9B2D7-E7CA-4843-B528-667D7139C4CB} - System32\Tasks\{0F88A1E6-C9B3-4921-B817-837A246182A9} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [137152 2016-06-01] (VideoLAN -> VideoLAN)
Task: {8F8018D3-0FDB-477D-895E-5201EB3D9B1F} - System32\Tasks\IWEOJYP => C:\Users\pc\AppData\Roaming\IWEOJYP.exe <==== ATTENTION
Task: {939F5754-FE14-4060-AACD-44CE90356643} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-17] (Adobe Inc. -> Adobe)
Task: {9C023E4E-EEBD-4242-BFD5-8B94BD939392} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ACF7F468-48D9-4C3C-AE39-31561F0925E7} - System32\Tasks\C2BkvTEs1ugKf1w74WC6Z2gH => C:\Users\pc\AppData\Roaming\C2BkvTEs1ugKf1w74WC6Z2gH.exe <==== ATTENTION
Task: {B254F624-25E7-45A2-84B3-B90BB0E8F9DE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D4A54F10-65EB-4451-BE14-3F08507B48EA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-05-28] (Google Inc -> Google Inc.)
Task: {E0C8B74C-A9BC-4943-AF88-BCFEB6BE237F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-23] (Piriform Ltd -> Piriform Ltd)
Task: {EF836BC3-A141-43A3-9B77-22BEF4CCEA54} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F2E979B5-6741-4A45-9AF5-9B22A9624C7D} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\C2BkvTEs1ugKf1w74WC6Z2gH.job => C:\Users\pc\AppData\Roaming\C2BkvTEs1ugKf1w74WC6Z2gH.exe <==== ATTENTION
Task: C:\Windows\Tasks\IWEOJYP.job => C:\Users\pc\AppData\Roaming\IWEOJYP.exe <==== ATTENTION
Task: C:\Windows\Tasks\WTLRTME.job => C:\Users\pc\AppData\Roaming\WTLRTME.exe <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 212.166.211.1 212.166.132.104
Tcpip\..\Interfaces\{74928498-32D1-4553-8FF8-3F820B38594F}: [DhcpNameServer] 212.166.211.1 212.166.132.104
Tcpip\..\Interfaces\{ADE081CF-4601-4E7E-93EF-598C6E2EF98E}: [DhcpNameServer] 192.168.42.129
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.es/
HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lamarabunta.org/search.php?search_id=newposts
hxxps://modxvm.com/en/
hxxp://nightly.modxvm.com/
hxxps://koreanrandom.com/forum/forum/57-xvm-english-support-and-discussions/?setlanguage=1&langurlbits=forum/57-xvm-english-support-and-discussions/&langid=1
hxxps://wot-life.com/eu/player/Rodma-500399764/
hxxp://www.wotstats.org/stats/eu/rodma/20181021/
hxxp://www.clasicosbasicos.org/plataforma/pc
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3950879380-2275949493-3388743034-1000 -> {A4C22122-B920-46A2-8BB2-900D117DFF73} URL = hxxps://es.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\ssv.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\...\Firefox\Extensions: [[email protected]] - C:\Users\pc\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll [2016-10-15] (Adobe Systems Incorporated -> )
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll [2016-10-15] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\pc\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-27] (Raidcall) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-03] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-03] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3950879380-2275949493-3388743034-1000: @acestream.net/acestreamplugin,version=3.0.2 -> C:\Users\pc\AppData\Roaming\ACEStream\player\npace_plugin.dll [No File]
FF Plugin HKU\S-1-5-21-3950879380-2275949493-3388743034-1000: @acestream.net/acestreamplugin,version=3.1.28 -> C:\Users\pc\AppData\Roaming\ACEStream\player\npace_plugin.dll [No File]
Chrome:
=======
CHR DefaultProfile: Profile 2
CHR HomePage: Profile 2 -> hxxps://www.google.es/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8
CHR StartupUrls: Profile 2 -> "hxxps://www.google.es/"
CHR DefaultSearchURL: Profile 2 -> hxxps://es.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default
CHR DefaultSearchKeyword: Profile 2 -> Yahoo
CHR DefaultSuggestURL: Profile 2 -> hxxps://es.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR Notifications: Profile 2 -> hxxps://forospyware.com; hxxps://forum.warthunder.com; hxxps://forum.worldofwarships.eu; hxxps://ivpaste.com; hxxps://juegos.loteriasyapuestas.es; hxxps://koreanrandom.com; hxxps://loterias-by.accengage.net; hxxps://puregaming.es; hxxps://streamp1ay.me; hxxps://web.telegram.org; hxxps://wotanksmodscom.foxpush.net; hxxps://www.adslzone.net; hxxps://www.danone.es; hxxps://www.faceit.com; hxxps://www.gamesradar.com; hxxps://www.ofertia.com; hxxps://www.reddit.com; hxxps://www.softonic.com; hxxps://www.travelclub.es; hxxps://www.vodafone.es
CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default [2018-04-09]
CHR Extension: (Presentaciones) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-04-09]
CHR Extension: (Documentos) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-04-09]
CHR Extension: (Google Drive) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-04-09]
CHR Extension: (YouTube) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-04-09]
CHR Extension: (Adobe Acrobat) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-04-09]
CHR Extension: (Hojas de cálculo) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-04-09]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-04-09]
CHR Extension: (Skype) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2018-04-09]
CHR Extension: (Ace Script) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-04-09]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-09]
CHR Extension: (Yahoo Partner) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\npdicihegicnhaangkdmcgbjceoemeoo [2018-04-09]
CHR Extension: (Gmail) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-04-09]
CHR Extension: (Chrome Media Router) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-09]
CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-12-06]
CHR Extension: (Presentaciones) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Documentos) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Google Drive) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-14]
CHR Extension: (Session Manager) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\bbcnbpafconjjigibnhbfmmgdbbkcjfi [2018-04-21]
CHR Extension: (YouTube) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-14]
CHR Extension: (Búsqueda de Google) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-14]
CHR Extension: (Adobe Acrobat) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-10-04]
CHR Extension: (Hojas de cálculo) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-03]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-11-28]
CHR Extension: (Ace Script) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-14]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30]
CHR Extension: (Chrome Media Router) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-06]
CHR HKU\S-1-5-21-3950879380-2275949493-3388743034-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]
CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo]
CHR HKLM-x32\...\Chrome\Extension: [olghjjajidfdflkafeekiojnfmiolccp]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8395968 2019-11-03] (BattlEye Innovations e.K. -> )
R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [4981936 2019-04-23] (devolo AG -> devolo AG)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3648616 2018-09-13] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [776832 2018-05-06] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 EslWireHelper; C:\Program Files\EslWire\service\WireHelperSvc.exe [663056 2016-04-12] (Turtle Entertainment GmbH -> )
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [355232 2015-08-09] (Intel Corporation - pGFX -> Intel Corporation)
S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [279848 2007-06-27] (Nero AG -> Nero AG)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2431304 2019-11-19] (Overwolf Ltd -> Overwolf LTD)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [118184 2018-05-14] (Alcorlink Corp. -> )
S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [269408 2018-02-23] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-06-20] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-06-20] (Disc Soft Ltd -> Disc Soft Ltd)
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [545776 2017-09-22] (Intel(R) INTELND1617 -> Intel Corporation)
R0 ESLWireAC; C:\Windows\System32\drivers\ESLWireACD.sys [100488 2017-05-20] (Turtle Entertainment GmbH -> <Turtle Entertainment>)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-10-28] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R0 mvs91xx; C:\Windows\System32\DRIVERS\mvs91xx.sys [327464 2013-09-06] (Marvell Semiconductor -> Marvell Semiconductor, Inc.)
R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [36496 2019-04-23] (devolo AG -> Riverbed Technology, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [75600 2019-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
S3 SgamingkbFltr; C:\Windows\System32\drivers\GKS16Fltr.sys [14848 2011-12-20] (LXD Development, Inc.) [File not signed]
R1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [131096 2016-10-18] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [203856 2016-10-18] (Oracle Corporation -> Oracle Corporation)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
R1 WindroyeBoxDrv; C:\Program Files\WindroyeBox\WindroyeBoxDrv.sys [252672 2015-03-03] (北京文安卓立科技有限公司 -> Windroy Corporation)
R3 XtuAcpiDriver; C:\Windows\System32\DRIVERS\XtuAcpiDriver.sys [54168 2017-04-18] (Intel Corporation -> Intel Corporation)
S3 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-06 10:44 - 2019-12-06 10:48 - 000067319 _____ C:\Users\pc\Desktop\Addition.txt
2019-12-06 10:39 - 2019-12-06 11:10 - 000029523 _____ C:\Users\pc\Desktop\FRST.txt
2019-12-06 10:39 - 2019-12-06 11:09 - 000000000 ____D C:\FRST
2019-12-06 10:37 - 2019-12-06 10:38 - 002263552 _____ (Farbar) C:\Users\pc\Desktop\FRST64.exe
2019-12-06 10:36 - 2019-12-06 10:36 - 000874052 _____ C:\Users\pc\Downloads\Läckberg,_Camilla_Fjällbacka_06.mobi
2019-12-06 10:27 - 2019-12-06 10:27 - 000678569 _____ C:\Users\pc\Downloads\Läckberg,_Camilla_Fjällbacka_06.epub
2019-12-06 10:26 - 2019-12-06 10:26 - 000637734 _____ C:\Users\pc\Downloads\Loba negra - Juan Gomez-Jurado.epub
2019-12-05 21:53 - 2019-12-05 21:53 - 000018655 _____ C:\Users\pc\Downloads\El grinch.HDrip1,79gb.torrent
2019-12-05 21:53 - 2019-12-05 21:53 - 000018655 _____ C:\Users\pc\Downloads\El grinch.HDrip1,79gb (1).torrent
2019-12-05 21:02 - 2019-12-05 21:02 - 000623645 _____ C:\Users\pc\Downloads\Los secretos de la reina - Xulio R Trigo.epub
2019-12-05 20:58 - 2019-12-05 20:58 - 000856574 _____ C:\Users\pc\Downloads\La mansion de los chocolates - Nikolai, Maria.epub
2019-12-05 20:58 - 2019-12-05 20:58 - 000578770 _____ C:\Users\pc\Downloads\Frankissstein_ una historia de - Jeanette Winterson.epub
2019-12-05 20:57 - 2019-12-05 20:57 - 000641865 _____ C:\Users\pc\Downloads\La nostalgia del limonero - Mari Pau Dominguez (1).epub
2019-12-05 20:56 - 2019-12-05 20:56 - 000641865 _____ C:\Users\pc\Downloads\La nostalgia del limonero - Mari Pau Dominguez.epub
2019-12-05 20:55 - 2019-12-05 20:55 - 001142231 _____ C:\Users\pc\Downloads\El alma de las flores - Viviana Rivero.epub
2019-12-05 20:55 - 2019-12-05 20:55 - 001117147 _____ C:\Users\pc\Downloads\Diosas de Hollywood - Cristina Morato.epub
2019-12-05 20:54 - 2019-12-05 20:54 - 000907944 _____ C:\Users\pc\Downloads\La cruz de madera - Lola Solana.epub
2019-12-05 20:54 - 2019-12-05 20:54 - 000291291 _____ C:\Users\pc\Downloads\Secretos de mariposa - Victoria Morrigan.epub
2019-12-05 20:53 - 2019-12-05 20:53 - 000419064 _____ C:\Users\pc\Downloads\Trilogia de la niebla 03 Las lu - Carlos Ruiz Zafon.epub
2019-12-05 20:53 - 2019-12-05 20:53 - 000318948 _____ C:\Users\pc\Downloads\Trilogia de la niebla 02 El pal - Carlos Ruiz Zafon.epub
2019-12-05 20:52 - 2019-12-05 20:53 - 000413064 _____ C:\Users\pc\Downloads\Trilogia de la niebla 01 El pri - Carlos Ruiz Zafon.epub
2019-12-05 20:42 - 2019-12-06 10:36 - 000000000 ____D C:\-- Epub
2019-12-05 20:41 - 2019-12-05 20:41 - 000000000 ____D C:\Users\pc\AppData\Roaming\calibre
2019-12-05 20:40 - 2019-12-05 20:40 - 002084651 _____ C:\Users\pc\Downloads\Notre-Dame - Ken Follett.epub
2019-12-05 20:27 - 2019-12-05 20:27 - 000000000 ____D C:\Users\pc\Documents\eBook Converter
2019-12-05 20:26 - 2019-12-05 20:26 - 000001251 _____ C:\Users\pc\Desktop\ePub Converter.lnk
2019-12-05 20:26 - 2019-12-05 20:26 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ePub Converter
2019-12-05 20:26 - 2019-12-05 20:26 - 000000000 ____D C:\Program Files (x86)\eBookConverter
2019-12-05 20:23 - 2019-12-05 20:23 - 063204900 _____ C:\Users\pc\Downloads\ePub.Converter.v2.7.109.352.Incl.Patch-RCG.rar
2019-12-05 17:55 - 2019-12-05 17:55 - 000013020 _____ C:\Users\pc\Downloads\glass-blurayrip.torrent
2019-12-05 17:54 - 2019-12-05 17:54 - 000026102 _____ C:\Users\pc\Downloads\el-protegido-microhd-1080-px.torrent
2019-12-05 17:54 - 2019-12-05 17:54 - 000018842 _____ C:\Users\pc\Downloads\Multiple_MicroHD_1080p.torrent
2019-12-05 14:04 - 2019-12-05 14:04 - 000388608 _____ (Trend Micro Inc.) C:\Users\pc\Desktop\HijackThis.exe
2019-12-05 13:57 - 2019-12-05 13:57 - 000000590 _____ C:\Users\pc\Documents\pp.txt
2019-12-05 13:51 - 2019-12-05 13:51 - 000000532 _____ C:\Users\pc\Desktop\ESET Online Scanner.lnk
2019-12-05 13:51 - 2019-12-05 13:51 - 000000000 ____D C:\Users\pc\AppData\Local\ESET
2019-12-05 13:50 - 2019-12-05 13:50 - 008162616 _____ (ESET spol. s r.o.) C:\Users\pc\Desktop\esetonlinescanner_esn.exe
2019-12-05 08:16 - 2019-12-05 08:15 - 008218800 _____ (Malwarebytes) C:\Users\pc\Desktop\adwcleaner_8.0.0.exe
2019-12-05 08:15 - 2019-12-05 08:15 - 008218800 _____ (Malwarebytes) C:\Users\pc\Downloads\adwcleaner_8.0.0.exe
2019-11-30 23:54 - 2019-11-30 23:54 - 000000000 ____D C:\testintel2
2019-11-28 18:14 - 2019-11-28 18:16 - 000000000 ____D C:\Users\pc\Desktop\-- W7ACTIVATION
2019-11-26 17:48 - 2019-11-26 17:48 - 000120938 _____ C:\Users\pc\Downloads\Vengadores-Endgame-OPEN-MATTE-Imax-2019.avi.torrent
2019-11-24 11:23 - 2019-11-24 11:23 - 000020868 _____ C:\Users\pc\Downloads\Los_Descendientes_3.torrent
2019-11-24 11:16 - 2019-11-24 11:16 - 000019723 _____ C:\Users\pc\Downloads\The_Mandalorian_1x01.torrent
2019-11-24 11:16 - 2019-11-24 11:16 - 000018909 _____ C:\Users\pc\Downloads\The_Mandalorian_1x03.torrent
2019-11-24 11:16 - 2019-11-24 11:16 - 000016003 _____ C:\Users\pc\Downloads\The_Mandalorian_1x02.torrent
2019-11-24 09:39 - 2019-11-24 09:39 - 000009934 _____ C:\Users\pc\Desktop\Contraseñas de Chrome.csv
2019-11-23 16:44 - 2019-11-23 16:44 - 000000000 ____D C:\testintel
2019-11-16 15:41 - 2019-11-16 15:41 - 000000000 ____D C:\Users\pc\AppData\Roaming\813df830e475125792f3f3fe3f2c865bOLD
2019-11-16 15:40 - 2019-11-16 15:41 - 000000000 ____D C:\testfolder
2019-11-09 18:05 - 2019-11-09 18:05 - 000000000 ____D C:\Users\pc\AppData\Local\CrashReportClient
2019-11-07 19:03 - 2019-11-07 19:03 - 009851314 _____ C:\Users\pc\Downloads\J1mB0s-Contour-Icon-dlya-wot.rar
2019-11-06 17:11 - 2019-11-06 17:11 - 000001583 _____ C:\Users\pc\Desktop\World of Tanks EU.lnk
2019-11-06 17:11 - 2019-11-06 17:11 - 000000720 _____ C:\Users\pc\Desktop\World of Tanks EU (2).lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-12-06 11:08 - 2011-04-12 10:10 - 000748758 _____ C:\Windows\system32\perfh00A.dat
2019-12-06 11:08 - 2011-04-12 10:10 - 000159728 _____ C:\Windows\system32\perfc00A.dat
2019-12-06 11:08 - 2009-07-14 06:13 - 001681640 _____ C:\Windows\system32\PerfStringBackup.INI
2019-12-06 11:06 - 2014-03-19 02:34 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-06 11:03 - 2016-11-12 15:40 - 000000000 __SHD C:\Users\pc\IntelGraphicsProfiles
2019-12-06 10:59 - 2015-11-14 17:44 - 000001008 _____ C:\Windows\Tasks\C2BkvTEs1ugKf1w74WC6Z2gH.job
2019-12-06 10:59 - 2015-01-02 16:14 - 000001672 _____ C:\Windows\Tasks\WTLRTME.job
2019-12-06 10:59 - 2015-01-02 16:00 - 000001672 _____ C:\Windows\Tasks\IWEOJYP.job
2019-12-06 10:59 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-12-06 10:58 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2019-12-06 07:39 - 2009-07-14 05:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-12-06 07:39 - 2009-07-14 05:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-12-06 07:34 - 2014-04-26 15:15 - 000000000 ____D C:\Users\pc\AppData\Local\CrashDumps
2019-12-05 22:40 - 2014-03-29 16:45 - 000000000 ____D C:\Users\pc\AppData\Roaming\vlc
2019-12-05 22:03 - 2014-05-09 08:20 - 000000000 ____D C:\Users\pc\AppData\Roaming\uTorrent
2019-12-05 21:53 - 2019-06-05 07:09 - 000000000 ____D C:\Users\pc\AppData\Local\BitTorrentHelper
2019-12-05 21:19 - 2014-03-19 22:28 - 000000000 ____D C:\Users\pc\AppData\Roaming\TS3Client
2019-12-05 17:10 - 2019-02-27 16:17 - 000002101 _____ C:\Users\pc\Desktop\TeamSpeak Overlay.lnk
2019-12-05 17:10 - 2014-03-21 00:51 - 000000000 ____D C:\Users\pc\AppData\Local\Overwolf
2019-12-05 14:04 - 2018-11-09 09:38 - 000000000 ____D C:\Users\pc\Downloads\--- Mirandomelo
2019-12-05 13:55 - 2017-06-20 10:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War WARHAMMER
2019-12-05 13:55 - 2017-06-20 10:04 - 000000000 ____D C:\Program Files\Total War WARHAMMER
2019-12-05 08:17 - 2015-11-23 15:45 - 000000000 ____D C:\Program Files (x86)\Yahoo!
2019-12-05 08:16 - 2015-01-02 17:06 - 000000000 ____D C:\AdwCleaner
2019-11-28 18:53 - 2014-11-04 15:37 - 000000000 ____D C:\Program Files (x86)\Overwolf
2019-11-24 11:20 - 2016-08-02 15:51 - 000000000 ____D C:\- Series
2019-11-22 17:39 - 2014-04-01 15:32 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-17 10:48 - 2017-05-28 09:23 - 000004488 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-11-17 10:48 - 2014-10-09 08:37 - 000000000 ____D C:\Users\pc\AppData\Local\Adobe
2019-11-17 10:48 - 2014-04-30 11:02 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-11-17 10:48 - 2014-04-30 11:02 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-11-17 10:48 - 2014-04-30 11:02 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-11-17 10:48 - 2014-04-30 11:02 - 000000000 ____D C:\Windows\system32\Macromed
2019-11-16 15:41 - 2018-03-12 21:26 - 000000000 ____D C:\Users\pc\AppData\Roaming\813df830e475125792f3f3fe3f2c865b
2019-11-16 15:41 - 2014-03-19 02:15 - 000000000 ____D C:\ProgramData\Intel
2019-11-15 22:37 - 2017-05-19 17:39 - 000001311 _____ C:\Users\pc\Desktop\Roblox Player.lnk
2019-11-15 22:37 - 2017-05-19 17:39 - 000001130 _____ C:\Users\pc\Desktop\Roblox Studio.lnk
2019-11-15 22:37 - 2017-05-19 17:39 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2019-11-15 22:17 - 2015-11-08 18:11 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-11-06 17:19 - 2017-02-22 16:32 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net
2019-11-06 17:15 - 2014-03-19 04:23 - 000000000 ____D C:\Games
2019-11-06 17:11 - 2014-03-19 04:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
==================== Files in the root of some directories ========
2018-02-02 20:52 - 2018-02-02 20:52 - 000000048 ____H () C:\Program Files (x86)\rad0fviyrv.dat
2015-04-19 13:20 - 2015-04-19 13:20 - 000005872 _____ () C:\Users\pc\AppData\Roaming\C2BkvTEs1ugKf1w74WC6Z2gH
2014-09-01 09:18 - 2014-09-01 09:18 - 000001248 _____ () C:\Users\pc\AppData\Roaming\IWEOJYP
2018-03-28 15:57 - 2018-04-18 21:03 - 000095906 _____ () C:\Users\pc\AppData\Roaming\logs.tmp
2016-01-02 11:09 - 2016-01-02 11:09 - 000000000 _____ () C:\Users\pc\AppData\Roaming\mediaload.io.lock
2016-02-07 14:10 - 2016-02-07 14:10 - 000000000 _____ () C:\Users\pc\AppData\Roaming\mediaload.io.url.lock
2018-03-28 15:57 - 2014-03-20 23:49 - 000053248 ____H (Microsoft Corporation) C:\Users\pc\AppData\Roaming\regasm.exe
2014-09-01 09:18 - 2014-09-01 09:18 - 000001248 _____ () C:\Users\pc\AppData\Roaming\WTLRTME
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2019-11-30 22:31
==================== End of FRST.txt ========================