Informes Farbar Recovery Scan Tool:
Frst.txt - Part 1 - (Linea 0 a 499)
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-10-2019
Ran by A-Carles (ATTENTION: The user is not administrator) on PC-A75 (ASUS All Series) (29-10-2019 17:46:28)
Running from D:\- 02 - PROGRAMES-I\02_ANTIVIRUS\00_Informes_Antivirus-log\PROGRAMES AVUI\05_Farbar Recovery Scan Tool
Loaded Profiles: PC-ADMIN & ARES & A-Carles_1Monitor & A-Carles (Available Profiles: PC-ADMIN & ARES & A-Carles_1Monitor & A-Carles)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe
(AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
Failed to access process -> aaHMSvc.exe
Failed to access process -> afwServ.exe
Failed to access process -> AGMService.exe
Failed to access process -> AGSService.exe
Failed to access process -> app_updater.exe
Failed to access process -> armsvc.exe
Failed to access process -> aspnet_state.exe
Failed to access process -> AsSysCtrlService.exe
Failed to access process -> AsusFanControlService.exe
Failed to access process -> atiesrxx.exe
Failed to access process -> atkexComSvc.exe
Failed to access process -> AVGSvc.exe
Failed to access process -> avgsvca.exe
Failed to access process -> BrYNSvc.exe
Failed to access process -> btwdins.exe
Failed to access process -> conhost.exe
Failed to access process -> conhost.exe
Failed to access process -> csrss.exe
Failed to access process -> csrss.exe
Failed to access process -> EKPLogger.exe
Failed to access process -> GoogleCrashHandler.exe
Failed to access process -> GoogleCrashHandler64.exe
Failed to access process -> httpd.exe
Failed to access process -> httpd.exe
Failed to access process -> IPROSetMonitor.exe
Failed to access process -> ITBMSvc.exe
Failed to access process -> jhi_service.exe
Failed to access process -> KBReader.exe
Failed to access process -> KeyExpressService.exe
Failed to access process -> LMS.exe
Failed to access process -> lsass.exe
Failed to access process -> lsm.exe
Failed to access process -> MBAMService.exe
Failed to access process -> mdm.exe
Failed to access process -> mysqld.exe
Failed to access process -> NASvc.exe
Failed to access process -> NVDisplay.Container.exe
Failed to access process -> PMSvc.exe
Failed to access process -> SearchFilterHost.exe
Failed to access process -> SearchIndexer.exe
Failed to access process -> SearchProtocolHost.exe
Failed to access process -> services.exe
Failed to access process -> smss.exe
Failed to access process -> spoolsv.exe
Failed to access process -> ss_conn_service.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> TuneUpUtilitiesService64.exe
Failed to access process -> unsecapp.exe
Failed to access process -> wininit.exe
Failed to access process -> winlogon.exe
Failed to access process -> wlanext.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> WmiPrvSE.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [528384 2015-11-10] (Greenshot) [File not signed]
HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239192 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [309680 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8844032 2016-01-27] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8029576 2016-11-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-09-25] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239192 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2892800 2017-03-30] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [571392 2011-10-30] (Nikon Corporation) [File not signed]
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [EKPUSBEventWatcher] => C:\Program Files (x86)\FUJIFILM\DX100\x86\EKPUSBEventWatcher.exe [3889752 2015-11-25] (FUJIFILM Corporation -> Seiko Epson Corporation)
HKLM-x32\...\Run: [EKPProcWatcher] => C:\Program Files (x86)\FUJIFILM\DX100\x86\EKPProcWatcher.exe [3567704 2015-11-25] (FUJIFILM Corporation -> Seiko Epson Corporation)
HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3581440 2017-04-26] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [RUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2011-09-20] (Renesas Electronics Corporation -> Renesas Electronics Corporation)
HKLM\...\RunOnce: [MSPCLOCK] => rundll32.exe streamci,StreamingDeviceSetup {97ebaacc-95bd-11d0-a3ea-00a0c9223196},{53172480-4791-11D0-A5D6-28DB04C10000},{53172480-4791-11D0-A5D6-28DB04C10000}
HKLM\...\RunOnce: [MSPQM] => rundll32.exe streamci,StreamingDeviceSetup {DDF4358E-BB2C-11D0-A42F-00A0C9223196},{97EBAACB-95BD-11D0-A3EA-00A0C9223196},{97EBAACB-95BD-11D0-A3EA-00A0C9223196}
HKLM\...\RunOnce: [MSKSSRV] => rundll32.exe streamci,StreamingDeviceSetup {96E080C7-143C-11D1-B40F-00A0C9223196},{3C0D501A-140B-11D1-B40F-00A0C9223196},{3C0D501A-140B-11D1-B40F-00A0C9223196}
HKLM\...\RunOnce: [MSTEE.CxTransform] => rundll32.exe streamci,StreamingDeviceSetup {cfd669f1-9bc2-11d0-8299-0000f822fe8a},{CF1DDA2C-9743-11D0-A3EE-00A0C9223196},{CF1DDA2C-9743-11D0-A3EE-00A0C9223196},C:\Windows\inf\ksfilter.inf,MSTEE.Interf (the data entry has 11 more characters).
HKLM\...\RunOnce: [MSTEE.Splitter] => rundll32.exe streamci,StreamingDeviceSetup {cfd669f1-9bc2-11d0-8299-0000f822fe8a},{0A4252A0-7E70-11D0-A5D6-28DB04C10000},{0A4252A0-7E70-11D0-A5D6-28DB04C10000},C:\Windows\inf\ksfilter.inf,MSTEE.Interf (the data entry has 11 more characters).
HKLM\...\RunOnce: [WDM_DRMKAUD] => C:\Windows\inf\WDMAUDIO.inf [9180 2017-05-03] (Microsoft Windows -> )
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [416256 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Policies\Explorer: [DontSetAutoplayCheckbox] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\...\MountPoints2: {61758add-56bf-11e8-814a-704d7bb3261e} - L:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\...\MountPoints2: {ba9ae526-118b-11e9-aa0f-704d7bb3261e} - K:\HiSuiteDownLoader.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.70\Installer\chrmstp.exe [2019-10-24] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2015-05-18] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] -> C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll [2015-05-18] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{FA71484C-B17A-4eca-BBC7-4905606C89E9}] -> C:\Program Files (x86)\ForensiT\User Profile Manager\ProfileManagerCredentialProvider64.dll [2013-01-21] () [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{F1DEEA6F-CD36-42CC-A2B7-D6208C7ED68B}] -> C:\Program Files (x86)\ForensiT\User Profile Manager\UserProfileManagerCredentialFilter64.dll [2015-11-04] (ForensiT Limited) [File not signed]
Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\Users\A-Carles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dllcontroller.exe [2019-01-20] () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2017-04-30]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.)
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 212.166.211.2 212.166.132.104
Tcpip\..\Interfaces\{1F644A82-F8A2-432F-A079-FFC6C05D25F3}: [DhcpNameServer] 62.81.29.254 62.81.16.213
Tcpip\..\Interfaces\{C60BBFB5-0A2A-4B22-A94E-AC5756808408}: [DhcpNameServer] 212.166.211.2 212.166.132.104
Internet Explorer:
==================
HKU\S-1-5-21-3520378656-2983391177-1615256727-1022\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.cat/
URLSearchHook: [S-1-5-21-3520378656-2983391177-1615256727-1000] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-21-3520378656-2983391177-1615256727-1007] ATTENTION => Default URLSearchHook is missing
URLSearchHook: [S-1-5-21-3520378656-2983391177-1615256727-1012] ATTENTION => Default URLSearchHook is missing
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-07-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-07-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ContributeBHO Class -> {074C1DC5-9320-4A9A-947D-C042949C6216} -> C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27] (Adobe Systems Incorporated -> Adobe Systems, Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27] (Adobe Systems Incorporated -> Adobe Systems, Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
FireFox:
========
FF DefaultProfile: 2018-06-26_Perfil-Firefox_65_Carles-OK
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES [2019-09-19]
FF DownloadDir: D:\00__DOCS_IMPORTANTS\- C - CASA - V i v e n d a\A - 1 - Cardenal Cisneros 54 (Mariola)\2015_LLOGUER_Airbnb\ICONES
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES -> hxxp://www.google.cat
FF Extension: (YouTube Video and Audio Downloader) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES\Extensions\[email protected] [2017-02-19] [Legacy]
FF Extension: (Video DownloadHelper) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2016-08-20] [Legacy]
FF Extension: (StrataStripe) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES\Extensions\{cbbbbcd0-3cf7-11dd-ae16-0800200c9a66}.xpi [2013-01-11] [Legacy] [not signed]
FF Extension: (Adblock Plus) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-08-20] [Legacy]
FF Extension: (Screenshoter) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2017-08-13_ARES\Extensions\{d9babd10-47de-11df-9879-0800200c9a66}.xpi [2016-04-27] [Legacy]
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_OK [2019-09-19]
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_OK -> hxxp://www.google.cat
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_Marcadors [2019-09-19]
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_Marcadors -> hxxp://www.google.cat
FF Extension: (YouTube Video and Audio Downloader) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_Marcadors\Extensions\[email protected] [2019-05-09] [Legacy]
FF Extension: (Video DownloadHelper) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2019-05-04_Perfil_Firefox-37_Carles_Marcadors\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-05-09] [Legacy]
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2015-04-03_Perfil-Firefox-37__TV3 [2019-09-19]
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2015-04-03_Perfil-Firefox-37__TV3 -> hxxp://www.google.cat
FF Extension: (YouTube Video and Audio Downloader) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2015-04-03_Perfil-Firefox-37__TV3\Extensions\[email protected] [2019-05-09] [Legacy]
FF Extension: (Video DownloadHelper) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2015-04-03_Perfil-Firefox-37__TV3\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-05-09] [Legacy]
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles_Marcadors [2019-09-19]
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles_Marcadors -> hxxp://www.google.cat
FF Extension: (No Name) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles_Marcadors\Extensions\instalats [2019-05-13] [not signed]
FF Extension: (Video DownloadHelper) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles_Marcadors\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-05-09]
FF Extension: (Theme Font & Size Changer) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles_Marcadors\Extensions\{f69e22c7-bc50-414a-9269-0f5c344cd94c}.xpi [2019-01-24]
FF Extension: (No Name) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_Carles-OK\extensions\{f69e22c7-bc50-414a-9269-0f5c344cd94c}.xpi [not found]
FF Extension: (No Name) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_Carles-OK\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [not found]
FF ProfilePath: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK [2019-10-29]
FF Homepage: D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK -> hxxp://www.google.cat
FF Extension: (No Name) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK\Extensions\instalats [2019-01-23] [not signed]
FF Extension: (Ver Imagen) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK\Extensions\{287dcf75-bec6-4eec-b4f6-71948a2eea29}.xpi [2019-10-16]
FF Extension: (Video DownloadHelper) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-05-09]
FF Extension: (Theme Font & Size Changer) - D:\- 00 - PERFILS USUARI\Mozilla-Firefox_Funcionant\2018-06-26_Perfil-Firefox_65_Carles-OK\Extensions\{f69e22c7-bc50-414a-9269-0f5c344cd94c}.xpi [2019-01-24]
FF HKLM-x32\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF Extension: (Adobe Contribute Toolbar) - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2017-05-04] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2017-05-29] [Legacy] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_255.dll [2019-09-16] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-07-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-07-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_255.dll [2019-09-16] (Adobe Inc. -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-07] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-3520378656-2983391177-1615256727-1022: @zoom.us/ZoomVideoPlugin -> C:\Users\A-Carles\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2019-07-11] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2017-01-03]
Chrome:
=======
CHR DefaultProfile: Default
CHR StartupUrls: Default -> "hxxps://web.whatsapp.com/","hxxps://web.telegram.org/","hxxp://agricultura.gencat.cat/ca/serveis/ofertes-treball/","hxxps://www.hofmann-pro.com/","hxxp://www.concordspain.com/","hxxps://www.conos-paradise.com/en/shop/country.html?iso=es&m=lithops","hxxps://tramits.paeria.cat/Ciutadania/DetallTramit.aspx?Cercador=True&IdTramit=1597"
CHR Profile: C:\Users\A-Carles\AppData\Local\Google\Chrome\User Data\Default [2019-10-29]
CHR DownloadDir: D:\POLITICA\CAT - C a t a l u n y a\WhhatsApp\0000_Grup_SomRepublica-Zona9-CDM
CHR Extension: (mobile browser emulator) - C:\Users\A-Carles\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbofcampnkjmiomohpbaihdcbjhbfepf [2019-10-27]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\A-Carles\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2019-09-05]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\A-Carles\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Chrome Media Router) - C:\Users\A-Carles\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-24]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-3520378656-2983391177-1615256727-1022) OperaStable - "C:\Users\PC-ADMIN\AppData\Local\Programs\Opera\Launcher.exe"
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [289160 2016-11-08] (Advanced Micro Devices, Inc. -> AMD)
R2 apache24; E:\00__WEB_Center\AppServ\Apache24\bin\httpd.exe [21504 2016-12-17] (Apache Software Foundation) [File not signed]
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-05-08] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.23\aaHMSvc.exe [963536 2016-04-18] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] (ASUSTeK Computer Inc. -> ) [File not signed]
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.11\AsusFanControlService.exe [418264 2016-04-22] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [409280 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [416568 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe [6893160 2019-05-28] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428264 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [298496 2017-03-22] (Brother Industries, Ltd.) [File not signed]
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-08-23] (Digital Wave Ltd -> Digital Wave Ltd)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 ITBMService; C:\Windows\SysWOW64\ITBMSvc.exe [48680 2017-06-16] (Intel Corporation -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-10-16] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 Key Express Service; C:\Program Files (x86)\InstallShield Installation Information\{8B69B7CC-E1E2-4680-8E3B-94ED1D16301E}\KeyExpressService.exe [99128 2015-05-08] (ASUSTeK Computer Inc. -> )
R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 lmhosts; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 mysql57; E:\00__WEB_Center\AppServ\MySQL\my.ini [13765 2017-05-14] () [File not signed]
R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 NlaSvc; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 nsi; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R2 PMSvc; C:\Program Files (x86)\ForensiT\User Profile Manager\PMSvc.exe [230400 2016-02-26] (ForensiT) [File not signed]
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-05-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
S3 ThunderboltService; C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe [1831064 2015-11-04] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [6598496 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [45920 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [38752 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [26558976 2016-11-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [520072 2016-11-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AndroidAFD; C:\Windows\SysWow64\drivers\AndroidAFDx64.sys [22552 2015-10-19] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R3 ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [24792 2014-06-13] (ASMedia Technology Inc. -> hxxp://www.asmedia.com.tw)
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2015-12-24] (ASUSTeK Computer Inc. -> )
R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation -> MCCI Corporation)
R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [96256 2016-03-30] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [207496 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [263056 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [206408 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [61520 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [42336 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [167920 2019-07-31] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R3 avgNetNd6; C:\Windows\System32\DRIVERS\avgNetNd6.sys [29944 2017-05-03] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R1 avgNetSec; C:\Windows\System32\drivers\avgNetSec.sys [549248 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [112360 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [87992 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [1030832 2019-07-31] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [477632 2019-05-21] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S2 avgStm; C:\Windows\System32\drivers\avgStm.sys [225656 2019-06-17] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [385904 2019-05-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [502256 2015-08-12] (Intel(R) Intel Network Drivers -> Intel Corporation)
R3 e1rexpress; C:\Windows\System32\DRIVERS\e1r62x64.sys [499184 2015-06-04] (Intel(R) Intel Network Drivers -> Intel Corporation)
R3 IntelTurboBoostMax; C:\Windows\System32\DRIVERS\IntelNit.sys [134008 2017-06-16] (Intel Corporation -> Intel Corporation)
R3 KBFilter; C:\Windows\SysWow64\drivers\KBFilter.sys [29496 2015-06-04] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-10-29] (Malwarebytes Corporation -> Malwarebytes)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [180480 2015-10-08] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [8228240 2012-09-19] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [114568 2012-08-27] (Renesas Electronics Corporation -> Renesas Electronics Corporation)
R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [230280 2012-08-27] (Renesas Electronics Corporation -> Renesas Electronics Corporation)
R0 secnvme; C:\Windows\System32\DRIVERS\secnvme.sys [91896 2017-03-20] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R0 secnvmeF; C:\Windows\System32\DRIVERS\secnvmeF.sys [30664 2017-03-20] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2017-05-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [166288 2017-05-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2017-02-21] (AVG Technologies CZ, s.r.o. -> AVG Netherlands B.V.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-10-29 17:46 - 2019-10-29 17:46 - 000000000 ____D C:\FRST
2019-10-29 17:36 - 2019-10-29 17:36 - 000004583 _____ C:\Users\PC-ADMIN\Desktop\JRT.txt
2019-10-29 17:20 - 2019-10-29 17:20 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-10-29 16:48 - 2019-10-29 17:18 - 000000000 ____D C:\AdwCleaner
2019-10-29 16:42 - 2019-10-29 16:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-29 16:42 - 2019-09-30 06:25 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-10-29 11:01 - 2019-10-29 11:01 - 000001334 _____ C:\Users\A-Carles\Desktop\PROG.lnk
2019-10-25 03:16 - 2019-10-25 03:17 - 000000000 ____D C:\Users\A-Carles\AppData\Roaming\NCH Software
2019-10-25 03:16 - 2019-10-25 03:16 - 000002195 _____ C:\Users\A-Carles\Desktop\Suite de NCH.lnk
2019-10-25 03:16 - 2019-10-25 03:16 - 000001197 _____ C:\Users\A-Carles\Desktop\Prism, convertidor de archivos de vídeo.lnk
2019-10-25 03:16 - 2019-10-25 03:16 - 000001183 _____ C:\Users\A-Carles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prism, convertidor de archivos de vídeo.lnk
2019-10-25 03:16 - 2019-10-25 03:16 - 000000000 ____D C:\Users\A-Carles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Suite de NCH
2019-10-25 03:16 - 2019-10-25 03:16 - 000000000 ____D C:\Users\A-Carles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas para vídeo
2019-10-25 03:16 - 2019-10-25 03:16 - 000000000 ____D C:\ProgramData\NCH Software
2019-10-25 02:16 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Roaming\HandBrake
2019-10-25 02:13 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Local\Movavi
2019-10-25 02:13 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Local\FreemakeVideoConverter
2019-10-25 02:13 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Local\CrashRpt
2019-10-25 02:12 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Local\ConverterAgent
2019-10-25 02:12 - 2019-10-25 02:16 - 000000000 ____D C:\Users\A-Carles\AppData\Local\converter
2019-10-18 14:31 - 2019-10-18 14:45 - 000000852 _____ C:\Users\A-Carles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2019-10-18 14:31 - 2019-10-18 14:45 - 000000804 _____ C:\Users\A-Carles\Desktop\Start Tor Browser.lnk
2019-10-18 14:08 - 2019-10-18 14:08 - 000000000 ____D C:\Users\A-Carles\Desktop\Tor Browser
2019-10-18 07:34 - 2019-10-11 03:22 - 000338944 _____ (Microsoft Corporation) C:\Windows\system32\sipnotify.exe
2019-10-17 23:18 - 2019-10-28 01:35 - 000001361 _____ C:\Users\Public\Desktop\Free MP4 Video Converter.lnk
2019-10-17 23:18 - 2019-10-17 23:18 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack
2019-10-17 23:16 - 2019-10-28 01:38 - 000000000 ____D C:\Users\A-Carles\AppData\Roaming\DVDVideoSoft
2019-10-17 23:16 - 2019-10-28 01:35 - 000001349 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2019-10-17 23:16 - 2019-10-28 01:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2019-10-17 23:16 - 2019-10-17 23:16 - 000001526 _____ C:\Users\Public\Desktop\Free Video to DVD Converter.lnk
2019-10-17 23:16 - 2019-10-17 23:16 - 000001325 _____ C:\Users\Public\Desktop\Free DVD Video Burner.lnk
2019-10-17 23:16 - 2019-10-17 23:16 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files
2019-10-17 23:14 - 2019-10-28 01:35 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft
2019-10-17 23:11 - 2019-10-17 23:18 - 000000000 ____D C:\Users\PC-ADMIN\AppData\Roaming\DVDVideoSoft
2019-10-16 16:58 - 2019-10-16 17:05 - 158271579 _____ C:\Users\A-Carles\Downloads\Beautiful Fucking - Sexy Little Fuckbit - Free Porn Videos -.mp4
2019-10-16 13:59 - 2019-10-16 13:59 - 000001080 _____ C:\Users\A-Carles\Downloads\WhhatsApp.lnk
2019-10-16 11:16 - 2019-10-16 11:17 - 000001607 _____ C:\Users\A-Carles\Desktop\OPOS (2).lnk
2019-10-10 15:09 - 2019-10-10 15:09 - 000001150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCF Manager By Devlomi.lnk
2019-10-10 15:09 - 2019-10-10 15:09 - 000001138 _____ C:\Users\Public\Desktop\VCF Manager By Devlomi.lnk
2019-10-10 15:09 - 2019-10-10 15:09 - 000000000 ____D C:\Program Files (x86)\VCF Manager By Devlomi
2019-10-09 04:08 - 2019-10-07 07:49 - 000390752 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2019-10-09 04:08 - 2019-10-07 06:57 - 000341896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2019-10-09 04:08 - 2019-10-06 05:12 - 025753088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-10-09 04:08 - 2019-10-06 05:00 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-10-09 04:08 - 2019-10-06 05:00 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2019-10-09 04:08 - 2019-10-06 04:49 - 002909184 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-10-09 04:08 - 2019-10-06 04:48 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2019-10-09 04:08 - 2019-10-06 04:47 - 000579584 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-10-09 04:08 - 2019-10-06 04:47 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2019-10-09 04:08 - 2019-10-06 04:47 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2019-10-09 04:08 - 2019-10-06 04:46 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2019-10-09 04:08 - 2019-10-06 04:41 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-10-09 04:08 - 2019-10-06 04:40 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2019-10-09 04:08 - 2019-10-06 04:38 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2019-10-09 04:08 - 2019-10-06 04:37 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2019-10-09 04:08 - 2019-10-06 04:37 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2019-10-09 04:08 - 2019-10-06 04:36 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-10-09 04:08 - 2019-10-06 04:36 - 000797696 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-10-09 04:08 - 2019-10-06 04:34 - 005500928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-10-09 04:08 - 2019-10-06 04:32 - 020290048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-10-09 04:08 - 2019-10-06 04:31 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2019-10-09 04:08 - 2019-10-06 04:28 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-10-09 04:08 - 2019-10-06 04:28 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2019-10-09 04:08 - 2019-10-06 04:23 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2019-10-09 04:08 - 2019-10-06 04:22 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2019-10-09 04:08 - 2019-10-06 04:22 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2019-10-09 04:08 - 2019-10-06 04:19 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2019-10-09 04:08 - 2019-10-06 04:19 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2019-10-09 04:08 - 2019-10-06 04:18 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-10-09 04:08 - 2019-10-06 04:18 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2019-10-09 04:08 - 2019-10-06 04:17 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2019-10-09 04:08 - 2019-10-06 04:17 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2019-10-09 04:08 - 2019-10-06 04:17 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2019-10-09 04:08 - 2019-10-06 04:16 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2019-10-09 04:08 - 2019-10-06 04:16 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-10-09 04:08 - 2019-10-06 04:15 - 002302464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-10-09 04:08 - 2019-10-06 04:12 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-10-09 04:08 - 2019-10-06 04:12 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2019-10-09 04:08 - 2019-10-06 04:11 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2019-10-09 04:08 - 2019-10-06 04:10 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-10-09 04:08 - 2019-10-06 04:10 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-10-09 04:08 - 2019-10-06 04:10 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2019-10-09 04:08 - 2019-10-06 04:07 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2019-10-09 04:08 - 2019-10-06 04:05 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2019-10-09 04:08 - 2019-10-06 04:05 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2019-10-09 04:08 - 2019-10-06 04:03 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-10-09 04:08 - 2019-10-06 04:03 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2019-10-09 04:08 - 2019-10-06 04:03 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2019-10-09 04:08 - 2019-10-06 04:00 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2019-10-09 04:08 - 2019-10-06 04:00 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2019-10-09 04:08 - 2019-10-06 03:59 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2019-10-09 04:08 - 2019-10-06 03:58 - 015413760 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-10-09 04:08 - 2019-10-06 03:57 - 004859904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-10-09 04:08 - 2019-10-06 03:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2019-10-09 04:08 - 2019-10-06 03:56 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2019-10-09 04:08 - 2019-10-06 03:56 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2019-10-09 04:08 - 2019-10-06 03:55 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2019-10-09 04:08 - 2019-10-06 03:53 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-10-09 04:08 - 2019-10-06 03:50 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2019-10-09 04:08 - 2019-10-06 03:49 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2019-10-09 04:08 - 2019-10-06 03:48 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-10-09 04:08 - 2019-10-06 03:48 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2019-10-09 04:08 - 2019-10-06 03:45 - 013808640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-10-09 04:08 - 2019-10-06 03:45 - 001566208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-10-09 04:08 - 2019-10-06 03:35 - 004387840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-10-09 04:08 - 2019-10-06 03:34 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2019-10-09 04:08 - 2019-10-06 03:32 - 001331712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-10-09 04:08 - 2019-10-06 03:30 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2019-10-09 04:08 - 2019-09-19 05:27 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2019-10-09 04:08 - 2019-09-17 03:32 - 004060896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2019-10-09 04:08 - 2019-09-17 03:32 - 003966688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2019-10-09 04:08 - 2019-09-17 03:32 - 000709856 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-10-09 04:08 - 2019-09-17 03:32 - 000627424 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-10-09 04:08 - 2019-09-17 03:31 - 005552864 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-10-09 04:08 - 2019-09-17 03:31 - 001319496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-10-09 04:08 - 2019-09-17 03:31 - 000263904 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-10-09 04:08 - 2019-09-17 03:31 - 000155360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-10-09 04:08 - 2019-09-17 03:31 - 000096992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2019-10-09 04:08 - 2019-09-17 03:30 - 001670784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000834048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2019-10-09 04:08 - 2019-09-17 03:29 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll