este es tan largo que lo divido en dos… es el frst
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 04-10-2020
Ejecutado por Usuario (administrador) sobre USUARIO-PC (MSI MS-7758) (05-10-2020 19:31:42)
Ejecutado desde C:\Users\Usuario\Desktop\recovery
Perfiles cargados: Usuario
Platform: Windows 10 Pro Versión 1903 18362.1082 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesos (Lista blanca) =================
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
() [Archivo no firmado] C:\Riot Games\LolScreenSaver\service\service.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) E:\adobe\Acrobat DC\Acrobat\acrotray.exe
(Apache Software Foundation) [Archivo no firmado] C:\Program Files (x86)\edb\pem\httpd\apache\bin\httpd.exe <2>
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <24>
(LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Parsec Cloud, Inc. -> Parsec) C:\Program Files\Parsec\pservice.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(PostgreSQL Global Development Group) [Archivo no firmado] C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe
(PostgreSQL Global Development Group) [Archivo no firmado] C:\Program Files\PostgreSQL\12\bin\postgres.exe <8>
(Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(Swift Media Entertainment, Inc. -> Blitz, Inc.) C:\Users\Usuario\AppData\Local\Programs\Blitz\Blitz.exe <12>
(TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registro (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [109160 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [EKHOH80Sound2] => C:\Program Files\Ozone Ekho H80 Headset\CPL\Ozone Ekho H80 Headset_x64.exe [2482176 2016-05-16] () [Archivo no firmado]
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [MouseDriver] => TiltWheelMouse.exe
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353776 2020-09-29] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410960 2019-03-01] (Adobe Systems Incorporated -> Adobe Inc.)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => E:\adobe\Acrobat DC\Acrobat\Acrotray.exe [4810224 2019-02-19] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [710264 2020-06-18] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATENCIÓN
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [Opera Browser Assistant] => C:\Users\Usuario\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3024408 2020-03-03] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [Parsec.App.0] => C:\Program Files\Parsec\parsecd.exe [431120 2020-09-11] (Parsec Cloud, Inc. -> Parsec)
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [com.blitz.app] => C:\Users\Usuario\AppData\Local\Programs\Blitz\Blitz.exe [108260048 2020-10-02] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [29262520 2020-07-29] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [utweb] => C:\Users\Usuario\AppData\Roaming\uTorrent Web\utweb.exe [5517440 2020-09-15] (Jenkins Win Client Build CA -> BitTorrent Inc.) [Archivo no firmado]
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [Battle.net] => E:\Games\battle net\Battle.net\Battle.net.exe [1090024 2020-09-26] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\Run: [GoogleChromeAutoLaunch_CF0D12F859BF15DAB73FDD0B7E1E013D] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-3258388393-2952615031-1351825659-1000\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --origin-trial-disabled-features=MeasureMemory --restore-last-sess (la entrada de datos tiene 96 más caracteres).
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65096 2019-02-19] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.121\Installer\chrmstp.exe [2020-09-23] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\85.0.5814.102\Installer\chrmstp.exe [2020-09-21] (Avast Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ScpToolkit Tray Notifications.lnk [2018-07-30]
ShortcutTarget: ScpToolkit Tray Notifications.lnk -> C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpTrayApp.exe (Open Source Developer, Benjamin Höglinger-Stelzer -> Scarlet.Crush Productions)
Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EOS Utility.lnk [2019-11-20]
ShortcutTarget: EOS Utility.lnk -> C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe (Canon Inc. -> Canon INC.)
Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-04-30]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Usuario\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2020-07-11]
ShortcutTarget: Twitch.lnk -> C:\Users\Usuario\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
GroupPolicy: Restricción ? <==== ATENCIÓN
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
==================== Tareas programadas (Lista blanca) ============
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
Task: {058479A9-8F35-4A8D-BF77-8BADBBDEA677} - System32\Tasks\Opera scheduled Autoupdate 1568153779 => c:\users\usuario\appdata\local\programs\opera\launcher.exe [1712152 2020-09-29] (Opera Software AS -> Opera Software)
Task: {0894A930-57AE-4D77-96C5-566AAF50B611} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0BAA5633-6091-48E7-A453-7988189B99E1} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {177F66E8-101B-4743-B7DD-09CAA4F7F4A1} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3258388393-2952615031-1351825659-1000
Task: {1A1C31F6-8CE3-44DE-B2B8-3A5F7438430B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-16] (Google Inc -> Google Inc.)
Task: {1DA5E07F-A06D-4E0C-9C73-BD241B393D88} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-12] (AVAST Software s.r.o. -> AVAST Software)
Task: {1F4BC28A-EA53-42C8-B953-4AC602FE033A} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\sedlauncher.exe
Task: {20FC1C2B-196D-4FC3-9BF4-A5F55C2A93D7} - System32\Tasks\BlueStacksHelper
Task: {2D16BAC6-2442-4A44-936F-5C4FCCE19C69} - System32\Tasks\User_Feed_Synchronization-{7D571F52-4432-422D-B581-02B0FBEE8078}
Task: {36544B36-1ED1-490D-AB1A-CA56AB64660E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24910520 2020-07-29] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {39A4A871-244B-4991-AD60-8C0F6B7A1974} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {3B2A1011-AD9D-42F6-B03D-0A5EAC84FA9D} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3339872 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
Task: {3D933C8B-3853-4224-8F56-DF4117D8453E} - System32\Tasks\Opera scheduled assistant Autoupdate 1582724801 => C:\Users\Usuario\AppData\Local\Programs\Opera\launcher.exe [1712152 2020-09-29] (Opera Software AS -> Opera Software)
Task: {49561068-AC56-4353-9C79-86BB1C12BD53} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1910664 2020-09-09] (Avast Software s.r.o. -> AVAST Software)
Task: {52C58412-A234-4655-8F42-CA979522E063} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1741416 2020-09-17] (Avast Software s.r.o. -> Avast Software)
Task: {59D883B4-8483-4E05-B845-4DE0F7FFB809} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6F04EEE4-0D57-4D43-9A2E-847D3069D33A} - System32\Tasks\Adobe Flash Player PPAPI Notifier
Task: {77F67C6E-3E31-4C89-BBFE-CA953704911C} - \Microsoft\Windows\UNP\RunCampaignManager -> Ningún archivo <==== ATENCIÓN
Task: {856474ED-95F2-4688-821C-D39DED6D183E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {85AE1102-5A6F-4FAA-B6BD-211F941EF215} - System32\Tasks\Overwolf Updater Task => E:\archivos de programa\Overwolf\OverwolfUpdater.exe [2467160 2020-05-24] (Overwolf Ltd -> Overwolf LTD)
Task: {85D4D7F5-7860-4B31-B3D8-688D18F711CB} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {888A963F-6D4F-4AC8-9AC4-4F9D323217A3} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-12] (AVAST Software s.r.o. -> AVAST Software)
Task: {8DAF45A3-F949-4778-9B8F-9B6490549473} - System32\Tasks\Adobe Flash Player Updater
Task: {95DCB91C-C433-4BAB-B367-BD75338C39EC} - System32\Tasks\Adobe Flash Player NPAPI Notifier
Task: {98666265-6C66-42E3-98A5-C32D88037B6C} - System32\Tasks\ScpUpdater
Task: {9AE512B3-F945-405F-94BF-FC4885C471EA} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A2043E08-3211-4AF1-A649-33CC2528EB23} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A4D5EF26-EA13-412E-98A8-A2DE054C311D} - System32\Tasks\GyazoUpdateTaskMachine
Task: {A7C300B0-F63E-4849-8842-7F5ED04A31BD} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3292984 2020-06-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B2D45A2D-021E-4EF8-ABFC-B6C8150EC689} - System32\Tasks\GyazoUpdateTaskMachineDaily
Task: {B30B7084-7A02-4E29-BA25-DACC892BF8F9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-16] (Google Inc -> Google Inc.)
Task: {C604541E-0B8D-4FEE-A95B-68D90C025A2D} - System32\Tasks\Adobe Acrobat Update Task
Task: {D239FAF0-FA73-41DF-8E5B-86A9F2615795} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647656 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E23D750D-1590-4C8E-A6D7-EDCEA897CC21} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-07-29] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E43918E8-426C-4717-A0F3-9C975B6B8519} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E9A88C9F-2FEA-47FD-80D0-D7221C477C0C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FF8A5BE2-4B04-4C6A-A006-9AB427DF8906} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1910664 2020-09-09] (Avast Software s.r.o. -> AVAST Software)
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\ScpUpdater.job => C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpUpdater.exe
==================== Internet (Lista blanca) ====================
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
Hosts: Hay más de una entrada en Hosts. Consulte la sección Hosts de Addition.txt
Tcpip\..\Interfaces\{bfcc7af6-2d90-4d3a-b38f-30ba2f70ae33}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{bfcc7af6-2d90-4d3a-b38f-30ba2f70ae33}: [DhcpNameServer] 212.230.135.1 212.230.135.2
Tcpip\..\Interfaces\{cab23bc0-22c9-4a7e-9f5e-85b3abe23ed5}: [DhcpNameServer] 8.8.8.8
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restricción <==== ATENCIÓN
FireFox:
========
FF DefaultProfile: uep0xvgk.default-1527610375559
FF ProfilePath: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559 [2020-10-05]
FF Extension: (Facebook Container) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\@contain-facebook.xpi [2020-08-26]
FF Extension: (TunnelBear VPN) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2020-08-26]
FF Extension: (JSONView) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2019-03-18]
FF Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2020-08-26]
FF Extension: (Touch VPN: proxy y VPN gratuitos) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2020-08-26]
FF Extension: (Privacy Possum) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2019-07-30]
FF Extension: (Avast Online Security) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\[email protected] [2020-08-26]
FF Extension: (Imagus) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\{00000f2a-7cde-4f20-83ed-434fcb420d71}.xpi [2020-08-26] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (YouTube High Definition) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2020-08-26]
FF Extension: (Futuristic Theme) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\uep0xvgk.default-1527610375559\Extensions\{97d79286-54b7-497b-a00d-273d08135110}.xpi [2019-03-26]
FF HKLM\...\Firefox\Extensions: [[email protected]] - E:\adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - E:\adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-02-18]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - E:\adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_303.dll [2019-12-14] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.261.2 -> C:\Program Files\Java\jre1.8.0_261\bin\dtplugin\npDeployJava1.dll [2020-10-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.261.2 -> C:\Program Files\Java\jre1.8.0_261\bin\plugin2\npjp2.dll [2020-10-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-03-01] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_303.dll [2019-12-14] (Adobe Inc. -> )
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Acrobat -> E:\adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-02-19] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-03-01] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [Ningún archivo]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default [2020-10-05]
CHR HomePage: Default -> presearch.org
CHR StartupUrls: Default -> "hxxp://google/","hxxps://www.google.com/","hxxp://kl.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=876&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.5.0&install_country=ES&install_date=20130320&user_guid=97DBC8AA94C64E7D91BD6A92212F567E&machine_id=6bab2ccf8186bf4d24477dd24047f463&browser=CR&os=win&os_version=5.1-x86-SP2","hxxp://kl.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=876&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.5.0&install_country=ES&install_date=20130321&user_guid=AE61F2D15E9D4332BEA60E301754113E&machine_id=625218538b63457dacfa90a50d7c5b00&browser=CR&os=win&os_version=5.1-x86-SP2"
CHR NewTab: Default -> Active:"chrome-extension://fbknefhkjhbolemlchjhacbgckdjggod/newtab.html"
CHR Extension: (Traductor de Google) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-18]
CHR Extension: (Presentaciones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]
CHR Extension: (Safe Torrent Scanner) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2020-08-17]
CHR Extension: (Documentos) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-16]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17]
CHR Extension: (AdGuard AdBlocker) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2020-08-17]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-16]
CHR Extension: (Honey) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2020-10-03]
CHR Extension: (Plays.tv Chrome Extension) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbpfcepjgonbhjiaokfnomnfpfljabkh [2016-11-04]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-09-11]
CHR Extension: (OneTab) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-09-14]
CHR Extension: (Watch2Gether) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cimpffimgeipdhnhjohpbehjkcdpjolg [2020-07-30]
CHR Extension: (Steam Inventory Helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2020-10-03]
CHR Extension: (Clipchamp –convertir, comprimir y grabar vídeo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\delkpojpfkkfgmknffmblbhmlamkjioi [2016-12-02]
CHR Extension: (Slither.io Skins, Mods, Hack & Guide) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\dggomkijbihggjgcgdbnleolpleddaid [2016-04-19]
CHR Extension: (Tampermonkey) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2020-09-22]
CHR Extension: (Gitpod - Dev Environments in a Browser Tab) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\dodmmooeoklaejobgleioelladacbeki [2020-10-05]
CHR Extension: (Xdebug helper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\eadndfjplgieldjbigjakmdgkmoaaaoc [2020-02-24]
CHR Extension: (Adobe Acrobat) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-09-21]
CHR Extension: (Dark Reader) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2020-09-26]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-08-07]
CHR Extension: (Presearch.org Start With Us) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbknefhkjhbolemlchjhacbgckdjggod [2019-03-18]
CHR Extension: (CyberGhost VPN - Free Proxy) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcbnikgemihknccdjaihjnfbapinljpi [2016-04-16]
CHR Extension: (Hojas de cálculo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16]
CHR Extension: (Gyazo) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdaeeijbbijklfcpahbghahojgfgebo [2020-08-17]
CHR Extension: (EditThisCookie) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2019-11-08]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-09-21]
CHR Extension: (Avast Online Security) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-06-04]
CHR Extension: (Telegram) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hadgilakbfohcfcgfbioeeehgpkopaga [2020-04-21]
CHR Extension: (Keywords Everywhere - Keyword Tool) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbapdpeemoojbophdfndmlgdhppljgmp [2020-10-03]
CHR Extension: (JetBrains IDE Support) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmhgeddbohgjknpmjagkdomcpobmllji [2020-02-24]
CHR Extension: (Presearch) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\inpoelmimmiplkcldmdljiboidfkcfbh [2019-04-17]
CHR Extension: (Vine Video Download) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\jebahcljabjndemkadpdnablhinojkil [2016-04-16]
CHR Extension: (Form Editor) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\klaecimjlbpfompicealiiifcdjnkbpn [2020-10-05]
CHR Extension: (The Great Suspender) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2020-06-01]
CHR Extension: (Personal Trainer) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmgohkgndpahjklgpdihieeedjeneoke [2016-04-16]
CHR Extension: (Amazon Keyword Tool for free: SellerApp) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\lebpbmopodkmcadehlkmghfcfmgnacdm [2020-10-03]
CHR Extension: (Webcam Toy) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade [2018-06-19]
CHR Extension: (Extensión de Google Keep para Chrome) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2020-10-03]
CHR Extension: (Web IG Story - Aplicación de escritorio para Instagram) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpokmfekimfmecgdhjdbhidphhchlgml [2019-09-30]
CHR Extension: (Asistente de compras AliExpress) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbpccgpiidnajgnapidpjmcjakjhkbom [2019-10-19]
CHR Extension: (Google Maps) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhkaebcjjhencmpkapnbdaogjamfbcj [2020-04-21]
CHR Extension: (Keepa - Amazon Price Tracker) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\neebplgakaahbhdphmkckjjcegoiijjo [2020-10-03]
CHR Extension: (Curling) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhalnajmigjnpjpdbpkpgfhekbjmolhp [2016-04-16]
CHR Extension: (Save to Pocket) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2020-09-26]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-01]
CHR Extension: (ColorPick Eyedropper) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohcpnigalekghcmgcdcenkpelffpdolg [2020-08-07]
CHR Extension: (Downloader for Instagram™ + Direct Message) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\olkpikmlhoaojbbmmpejnimiglejmboe [2020-10-05]
CHR Extension: (TunnelBear VPN) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\omdakjcmkglenbhjadbccaookpfjihpa [2020-08-19]
CHR Extension: (Netflix Party) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\oocalimimngaihdkbihfgmpkcpnmlaoa [2020-08-07]
CHR Extension: (Marc Ecko) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjonmehjfmkejjifhhknofdnacklmjk [2016-04-16]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-08-29]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\System Profile [2016-11-27]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
Opera:
=======
OPR DownloadDir: E:\descargas opera
OPR Extension: (Grab Any Media) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\eialfgnkhmnmabhnidakjhdjmmkbjaai [2019-12-03]
OPR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\ekmmelpnmfdegjhnmadddcfjcahpajnm [2020-08-04]
OPR Extension: (EditThisCookie) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2019-11-11]
OPR Extension: (HBO Sync) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\gbjjiboahenbmgokijecbolffaocafap [2020-09-06]
OPR Extension: (Dark Mode) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\jabpfojepndedlelamfloejfoopkogcf [2019-09-11]
OPR Extension: (Install Chrome Extensions) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2019-12-14]
OPR Extension: (Flash Video Downloader (FVD)) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\neacgcjokggofibnbfapeaejhclmpple [2019-12-03]
OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2020-08-18]
OPR Extension: (Downloader for Instagram™ + Direct Message) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\olkpikmlhoaojbbmmpejnimiglejmboe [2020-08-03]
==================== Servicios (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [88136 2019-09-10] (Adobe Inc. -> Adobe Systems)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-14] (Adobe Inc. -> Adobe)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2019-03-01] (Adobe Systems Incorporated -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-06-04] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6514072 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-12] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-04-12] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\85.0.5814.102\elevation_service.exe [1080640 2020-09-09] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1404936 2020-06-11] (BattlEye Innovations e.K. -> )
S2 Ds3Service; C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpService.exe [394944 2016-04-12] (Open Source Developer, Benjamin Höglinger-Stelzer -> Scarlet.Crush Productions)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2020-09-16] (EasyAntiCheat Oy -> Epic Games, Inc)
S2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [12419128 2020-08-05] (EnigmaSoft Limited -> EnigmaSoft Limited)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 LolScreenSaverService; C:\Riot Games\LolScreenSaver\service\service.exe [707072 2016-03-30] () [Archivo no firmado]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2466608 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3344176 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S3 OverwolfUpdater; E:\archivos de programa\Overwolf\OverwolfUpdater.exe [2467160 2020-05-24] (Overwolf Ltd -> Overwolf LTD)
R2 Parsec; C:\Program Files\Parsec\pservice.exe [394256 2020-09-11] (Parsec Cloud, Inc. -> Parsec)
R2 PEMHTTPD; C:\Program Files (x86)\edb\pem\httpd\apache\bin\httpd.exe [25088 2020-03-31] (Apache Software Foundation) [Archivo no firmado]
R2 postgresql-x64-12; C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe [116736 2020-05-12] (PostgreSQL Global Development Group) [Archivo no firmado]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6150504 2020-09-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [526904 2020-08-05] (EnigmaSoft Limited -> EnigmaSoft Limited)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12758528 2019-12-16] (TeamViewer GmbH -> TeamViewer Germany GmbH)
S3 Tomcat8; C:\apache-tomcat-8.5.46-windows-x64\apache-tomcat-8.5.46\bin\Tomcat8.exe [118392 2019-09-16] (The Apache Software Foundation -> Apache Software Foundation)
S3 Tomcat9; E:\tomcat\bin\Tomcat9.exe [124024 2019-10-07] (The Apache Software Foundation -> Apache Software Foundation)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9814968 2020-09-29] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Controladores (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37136 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205880 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [235584 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [195648 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [60480 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16824 2020-07-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42768 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175192 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [514448 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109272 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84848 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851600 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466232 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216816 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [323272 2020-07-09] (Avast Software s.r.o. -> AVAST Software)
R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-09-04] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2019-09-11] (Microsoft Corporation) [Archivo no firmado]
R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-02-27] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-09-10] (Martin Malik - REALiX -> REALiX(tm))
R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
S3 KINONI_Wave; C:\WINDOWS\system32\drivers\kinonivad.sys [32360 2016-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-08-03] (Malwarebytes Inc -> Malwarebytes)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2016-05-27] (AnchorFree Inc -> Anchorfree Inc.)
S3 tapwp01; C:\WINDOWS\System32\drivers\tapwp01.sys [40664 2014-12-11] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 t_mouse.sys; C:\WINDOWS\system32\DRIVERS\t_mouse.sys [6144 2012-12-19] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 VBoxNetAdp; C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [237368 2020-01-14] (Oracle Corporation -> Oracle Corporation)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [5548776 2020-09-29] (Riot Games, Inc. -> Riot Games, Inc.)
R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2020-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-08-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344288 2019-08-29] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-29] (Microsoft Windows -> Microsoft Corporation)
S3 WinRing0_1_2_0; C:\Users\Usuario\Desktop\OpenHardwareMonitor\OpenHardwareMonitorLib.sys [14544 2019-09-06] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [47096 2018-02-03] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
U4 ekrn; no ImagePath
S3 VBAudioVACMME; \SystemRoot\System32\drivers\vbaudio_cable64_win7.sys [X]
S3 VBAudioVMVAIOMME; \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys [X]
S1 VBoxUSBMon; \SystemRoot\system32\DRIVERS\VBoxUSBMon.sys [X]
==================== NetSvcs (Lista blanca) ===================
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
==================== Un mes (creado) ===================
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
2020-10-05 19:20 - 2020-10-05 19:20 - 002040904 _____ (Malwarebytes) C:\Users\Usuario\Downloads\MBSetup-0009996.0009996-consumer.exe
2020-10-05 19:16 - 2020-10-05 19:16 - 008414384 _____ (Malwarebytes) C:\Users\Usuario\Downloads\adwcleaner_8.0.7.exe
2020-10-05 00:06 - 2020-10-05 00:06 - 000000000 ___HD C:\$WinREAgent
2020-10-04 16:40 - 2020-10-04 16:40 - 000797760 _____ C:\Users\Usuario\Downloads\delfix.exe
2020-10-04 16:40 - 2020-10-04 16:40 - 000000250 _____ C:\DelFix.txt
2020-10-04 16:40 - 2020-10-04 16:40 - 000000000 ____D C:\WINDOWS\ERUNT
2020-10-04 16:33 - 2020-10-05 19:32 - 000000000 ____D C:\FRST
2020-10-04 16:31 - 2020-10-04 16:31 - 002326304 _____ (Malwarebytes Corporation) C:\Users\Usuario\Downloads\mb-check-3.1.10.1000.exe
2020-10-04 16:25 - 2020-10-04 16:31 - 002299392 _____ (Farbar) C:\Users\Usuario\Downloads\FRST64.exe
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ___SD C:\WINDOWS\system32\lxss
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ____D C:\WINDOWS\system32\BestPractices
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ____D C:\Users\Public\Documents\Hyper-V
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ____D C:\ProgramData\Documents\Hyper-V
2020-10-04 16:03 - 2020-10-04 16:03 - 000000000 ____D C:\Program Files\Hyper-V
2020-10-03 23:14 - 2020-10-03 23:14 - 000000223 _____ C:\Users\Usuario\Desktop\Phasmophobia.url
2020-10-03 23:06 - 2020-10-03 23:06 - 000000000 ____D C:\Users\Usuario\AppData\LocalLow\Kinetic Games
2020-10-03 23:04 - 2020-10-03 23:04 - 000000000 ____D C:\Users\Usuario\AppData\Local\ElevatedDiagnostics
2020-10-03 22:47 - 2020-10-03 22:47 - 000435646 _____ C:\Users\Usuario\Downloads\Phasmohobia_crack_1.rar
2020-10-03 22:47 - 2020-10-03 22:47 - 000016048 _____ C:\Users\Usuario\Downloads\DE63C927D816DAB8EAA19A25875CBE6A3A02D1F6_1_1.torrent
2020-10-03 21:14 - 2020-10-03 21:14 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2020-10-03 19:36 - 2020-10-03 19:36 - 014364672 _____ C:\Users\Usuario\Downloads\wsl_update_x64.msi
2020-09-23 23:50 - 2020-09-23 23:50 - 000000223 _____ C:\Users\Usuario\Desktop\Wallpaper Engine.url
2020-09-21 22:46 - 2020-09-21 22:46 - 000000000 ____D C:\Users\Usuario\AppData\Local\g3
2020-09-20 19:03 - 2020-09-20 19:03 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\NVIDIA
2020-09-19 16:53 - 2020-09-19 16:53 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\Goldberg SteamEmu Saves
2020-09-19 16:52 - 2020-09-19 16:52 - 000000000 ____D C:\Users\Usuario\Desktop\among us
2020-09-19 14:59 - 2020-09-19 14:59 - 000000000 ____D C:\Program Files\BlueStacks
2020-09-16 22:25 - 2020-09-21 22:46 - 000000000 ____D C:\Users\Usuario\AppData\Roaming\EasyAntiCheat
2020-09-16 21:51 - 2020-09-16 21:51 - 000000289 _____ C:\Users\Usuario\Desktop\Spellbreak.url
2020-09-10 00:15 - 2020-09-10 00:15 - 005503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 004309504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000928768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2020-09-10 00:15 - 2020-09-10 00:15 - 000724480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000709632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFSR.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOVER.exe
2020-09-10 00:15 - 2020-09-10 00:15 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUTILITY.dll
2020-09-10 00:15 - 2020-09-10 00:15 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-09-10 00:15 - 2020-09-10 00:15 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSERES.dll
2020-09-10 00:14 - 2020-10-03 17:30 - 001113400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxcore.sys
2020-09-10 00:14 - 2020-10-03 17:30 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsl.exe
2020-09-10 00:14 - 2020-10-03 17:30 - 000106808 _____ (Microsoft Corporation) C:\WINDOWS\system32\p9np.dll
2020-09-10 00:14 - 2020-10-03 17:30 - 000091464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\p9rdr.sys
2020-09-10 00:14 - 2020-10-03 17:30 - 000078648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p9np.dll
2020-09-10 00:14 - 2020-10-03 17:30 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wslconfig.exe
2020-09-10 00:14 - 2020-10-03 17:30 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\bash.exe
2020-09-10 00:14 - 2020-10-03 17:30 - 000015672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxss.sys
2020-09-10 00:14 - 2020-09-10 00:14 - 032928920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 031598936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 025444864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 022642176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 019852288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 019812864 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 018032128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 015487816 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmms.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 007761408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 007284736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 006526448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 006519608 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmchipset.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 006304256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 006069360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 005907456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 005848848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 005767744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 005041152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 005003832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 004859904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 004605952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 004538368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 004470272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003822592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003740456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003525608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003501568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003500856 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcompute.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 003416064 _____ (Microsoft Corporation) C:\WINDOWS\system32\HostNetSvc.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 002799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-09-10 00:14 - 2020-09-10 00:14 - 002774088 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002585032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002565120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002494752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002429608 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmwp.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 002422384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 002369336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002315472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002259680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002230240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002190664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 002138264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 001957552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001750016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001704960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001698816 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001672544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001664696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001659208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001653792 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001512960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001491160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001459200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001421392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001397560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 001386824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001369088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001326592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001307464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001272160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001247744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 001246208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001218424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 001151808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001141048 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001138688 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001124864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001108384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001099600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 001054160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 001012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 001009200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000894032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000892728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000867328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000844088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000783496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000768504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000748384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000744960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000744240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 000738072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 000706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000682752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 000675032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000671560 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000667312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000666288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-09-10 00:14 - 2020-09-10 00:14 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000628400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000593480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000572208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000564480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000544336 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-09-10 00:14 - 2020-09-10 00:14 - 000528896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000466352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-09-10 00:14 - 2020-09-10 00:14 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll