Trojan.Agent.AutoIt

2020-05-18 23:56 - 2020-05-18 23:56 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000105840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MixedRealityRuntime.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-05-18 23:56 - 2020-05-18 23:56 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkspbrokerAx.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSSessionUX.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasacct.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumapi.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iaspolcy.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSa.exe
2020-05-18 23:56 - 2020-05-18 23:56 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaProxy.exe
2020-05-18 23:56 - 2020-05-18 23:56 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ias.dll
2020-05-18 23:56 - 2020-05-18 23:56 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 025902080 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 022638592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 007756800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 007267840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 006710272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 006525936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 005945856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 005757872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 005340568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 004858368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 004612608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 002798592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-05-18 23:55 - 2020-05-18 23:55 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-05-18 23:55 - 2020-05-18 23:55 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 002259664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001990576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001975808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001952872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001737216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001686016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001665720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001654952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001545216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 001525760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001510912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001461760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001397560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 001393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001357312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001250816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001214264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001213440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001195008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001184256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001178608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001011712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000994304 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000943640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000911872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000896000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000894016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000891392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000881664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000843576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000801832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000792808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000778552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000777840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000776792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000775696 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000748544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000716800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000693672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000683288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000672944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000655360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000594472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000592944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000581544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000572200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000568136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000564480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2020-05-18 23:55 - 2020-05-18 23:55 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000539184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000501200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000466344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000441856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000441584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000405424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000325432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-05-18 23:55 - 2020-05-18 23:55 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000301064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TaskApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000268008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000246584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000245336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-05-18 23:55 - 2020-05-18 23:55 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000197432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUxClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000165176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Haptics.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbrokerAx.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000124504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\socialapis.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000090936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.Preview.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeopleAPIs.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-05-18 23:55 - 2020-05-18 23:55 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRBroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbussdapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Printers.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ffbroker.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSa.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe
2020-05-18 23:55 - 2020-05-18 23:55 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-05-18 23:55 - 2020-05-18 23:55 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-05-18 23:54 - 2020-05-18 23:54 - 014819328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 009929528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 007257816 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 006435328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 006168576 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 005111296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 004565456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 003974376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 003807232 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 003747328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 003655680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 003547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 003371416 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 002774088 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 002769000 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 002736640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 002087168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001999968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001934824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001825280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-05-18 23:54 - 2020-05-18 23:54 - 001726264 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001646552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001512832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 001486336 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 001406464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001373184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001370112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001306424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 001288648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001261808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001245696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000891544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000888352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000879064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000859944 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000847168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000811320 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000759272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000752584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000742200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000685368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000683848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000676072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000673296 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000650240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000628024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000618296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000580608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000547992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000543824 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000524208 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000518456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000515600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000513576 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-05-18 23:54 - 2020-05-18 23:54 - 000467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000460200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000390968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000375520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000333128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000311096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000310928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000266552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000260328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000259776 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000221496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SwitcherDataModel.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000147696 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000142760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000132712 _____ (Microsoft Corporation) 

Hola @Miguel2 y Bienvenido al Foro…!!

Antes de usar FRST debes usar otras herramientas que pueden ayudar en la desinfección de TU maquina.

Has usado alguna otra herramienta…??

Saludos.

2020-05-18 23:54 - 2020-05-18 23:54 - 000132712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000107616 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000058696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000050560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2020-05-18 23:54 - 2020-05-18 23:54 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wksprtPS.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-05-18 23:54 - 2020-05-18 23:54 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-05-18 23:54 - 2020-05-18 23:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 017791488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 009339392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 007902912 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 007849216 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 007297536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 006232568 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 005280192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 004624880 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 004005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 003581752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 003109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002854400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 002717184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 002504440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002465792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002354688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002256384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002114560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002072576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 002060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001960448 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001786880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001656904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001612800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001603584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001505592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001428480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001385176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001378528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001336832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001270784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001158144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001150784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001085752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001027816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001007928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000999616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000979264 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000957056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000945192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000916768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000915192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000819696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000768000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000738304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000716312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000706544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000622592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000614400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRClient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-05-18 23:53 - 2020-05-18 23:53 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000399672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000339824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000318680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000273208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000238904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Haptics.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Compression.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000152416 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000147776 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\socialapis.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleAPIs.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.Preview.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRBroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000088280 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbussdapi.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000060432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-05-18 23:53 - 2020-05-18 23:53 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-05-18 23:53 - 2020-05-18 23:53 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 002150232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 002131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001766400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001745208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001722880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001413712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001263856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 001072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000637480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2020-05-18 23:52 - 2020-05-18 23:52 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000437560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000410608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000297272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000250696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000151352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000069704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000059192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveTask.exe
2020-05-18 23:52 - 2020-05-18 23:52 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-05-18 23:52 - 2020-05-18 23:52 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2020-05-18 23:52 - 2020-05-18 23:52 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2020-05-18 23:30 - 2020-05-18 23:30 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-05-18 23:30 - 2020-05-18 23:30 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-05-18 19:36 - 2020-05-19 10:48 - 000073368 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2020-05-18 19:36 - 2020-05-18 19:36 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-05-18 19:36 - 2020-05-18 19:36 - 000214496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-05-18 19:36 - 2020-05-18 19:36 - 000195432 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2020-05-18 19:36 - 2020-05-18 19:36 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-05-18 19:36 - 2020-05-18 19:36 - 000002028 _____ C:\ProgramData\Escritorio\Malwarebytes.lnk
2020-05-18 19:36 - 2020-05-18 19:36 - 000000000 ____D C:\Users\migue\AppData\Local\mbamtray
2020-05-18 19:36 - 2020-05-18 19:36 - 000000000 ____D C:\Users\migue\AppData\Local\mbam
2020-05-18 19:35 - 2020-05-18 19:35 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-05-18 19:35 - 2020-05-18 19:35 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2020-05-18 19:35 - 2020-05-18 19:35 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-05-18 19:34 - 2020-05-18 19:34 - 001928352 _____ (Malwarebytes) C:\Users\migue\Downloads\MBSetup-0009996.0009996-consumer.exe
2020-05-18 19:34 - 2020-05-18 19:34 - 000000000 ____D C:\Program Files\Malwarebytes
2020-05-18 13:54 - 2020-05-18 13:54 - 001046592 _____ C:\Users\migue\Downloads\enunciadoPracticaPL2_2019_2020.pdf
2020-05-18 13:19 - 2020-05-18 13:19 - 000009144 _____ C:\Users\migue\Downloads\CalendarioAlumno (9).pdf
2020-05-18 12:03 - 2019-12-12 04:22 - 000833832 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll
2020-05-18 12:03 - 2019-12-12 00:22 - 001126552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll
2020-05-18 12:03 - 2019-12-12 00:22 - 000482096 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2020-05-18 12:03 - 2019-12-11 23:54 - 037280673 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2020-05-18 12:02 - 2019-11-29 10:01 - 000061452 _____ C:\WINDOWS\rtl8723d_mp_chip_bt40_fw_asic_rom_patch_new
2020-05-18 12:02 - 2019-11-29 10:01 - 000060660 _____ C:\WINDOWS\rtl8822c_mp_chip_bt40_fw_asic_rom_patch_new
2020-05-18 12:02 - 2019-11-29 10:01 - 000049592 _____ C:\WINDOWS\rtl8822b_mp_chip_bt40_fw_asic_rom_patch_new
2020-05-18 12:02 - 2019-11-29 10:01 - 000047792 _____ C:\WINDOWS\rtl8821c_mp_chip_bt40_fw_asic_rom_patch_new
2020-05-18 12:02 - 2019-11-29 10:01 - 000005032 _____ C:\WINDOWS\PidVid_List
2020-05-18 12:01 - 2019-11-27 09:45 - 003754208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2020-05-18 12:01 - 2019-11-27 09:45 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2020-05-18 12:01 - 2019-11-27 09:45 - 003380984 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001710592 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001386568 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001245920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001245920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001019736 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 001019736 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000949776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000917248 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2020-05-18 12:01 - 2019-11-27 09:45 - 000917248 _____ C:\WINDOWS\system32\atiapfxx.blb
2020-05-18 12:01 - 2019-11-27 09:45 - 000882704 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000882704 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000777232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000770272 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000583088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000567792 _____ C:\WINDOWS\system32\amdmiracast.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000562400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000501984 _____ C:\WINDOWS\system32\dgtrayicon.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000494000 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000489392 _____ 

Sí, estoy en este punto porque he seguido todo el proceso correspondiente. Ya me están ayudando malwarebytes, ccleaner etc

Bien… pues entonces cuando termines de poner el informe de FRST y Addition pon también los informes de AdwCleaner + Malwarebytes y el de JRT si lo hubieras usado.

Saludos.

2020-05-18 12:01 - 2019-11-27 09:45 - 000489392 _____ C:\WINDOWS\system32\GameManager64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000481504 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000477408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000475360 _____ C:\WINDOWS\system32\amdlogum.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000448736 _____ C:\WINDOWS\system32\atieah64.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000425904 _____ C:\WINDOWS\system32\EEURestart.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000392416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000390576 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000390368 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000361184 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000357600 _____ C:\WINDOWS\system32\clinfo.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000313264 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000313264 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000285104 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000285104 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-05-18 12:01 - 2019-11-27 09:45 - 000249568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000220920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000201032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000187064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000178448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000167648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000166416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000144912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000144608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000143584 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000138160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000138152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000134368 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000132832 _____ C:\WINDOWS\system32\atidxx64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000129760 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000129760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000129168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000117544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000117520 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000115936 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000114400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000099760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000084400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000079072 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000055728 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000052656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000034488 _____ C:\WINDOWS\system32\AMDKernelEvents.man
2020-05-18 12:01 - 2019-11-27 09:45 - 000028600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2020-05-18 12:01 - 2019-11-27 09:45 - 000028600 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2020-05-18 12:00 - 2019-12-06 01:54 - 000298598 _____ C:\WINDOWS\system32\Drivers\rtldata.txt
2020-05-18 11:59 - 2020-05-18 12:03 - 000000000 ____D C:\WINDOWS\TempInst
2020-05-18 01:06 - 2020-05-18 01:06 - 011607552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001770552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001490640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-05-18 01:06 - 2020-05-18 01:06 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-05-18 01:06 - 2020-05-18 01:06 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-05-18 01:06 - 2020-05-18 01:06 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2020-05-18 01:06 - 2020-05-18 01:06 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002698040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-05-18 01:05 - 2020-05-18 01:05 - 001218632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000929144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-05-18 01:05 - 2020-05-18 01:05 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000320312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000165504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-05-18 01:05 - 2020-05-18 01:05 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-05-18 01:05 - 2020-05-18 01:05 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-05-18 01:05 - 2020-05-18 01:05 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 004048896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 002522112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 001396152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-05-18 01:04 - 2020-05-18 01:04 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000833616 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000642216 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-05-18 01:04 - 2020-05-18 01:04 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-05-18 01:04 - 2020-05-18 01:04 - 000522384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000224056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000222520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000183608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-05-18 01:04 - 2020-05-18 01:04 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000056632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-05-18 01:04 - 2020-05-18 01:04 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000030008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000016912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-05-18 01:04 - 2020-05-18 01:04 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-05-18 01:04 - 2020-05-18 01:04 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-05-18 01:04 - 2020-05-18 01:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2020-05-17 18:20 - 2020-05-17 18:20 - 000001200 _____ C:\ProgramData\Escritorio\Avira.lnk
2020-05-17 18:16 - 2020-05-17 18:16 - 021132344 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2020-05-17 18:14 - 2020-05-17 18:14 - 000000000 ____D C:\WINDOWS\Lenovo

==================== Un mes (modificado) ==================

(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)

2020-05-20 11:38 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-05-20 10:53 - 2019-08-28 12:50 - 000000000 ____D C:\Users\migue\AppData\Roaming\uTorrent
2020-05-20 10:53 - 2019-08-14 12:04 - 000000000 ____D C:\Program Files (x86)\Steam
2020-05-20 10:53 - 2019-02-06 20:11 - 000000000 ____D C:\Users\migue\AppData\Roaming\TS3Client
2020-05-20 10:46 - 2019-11-06 20:44 - 000000000 ____D C:\WINDOWS\Minidump
2020-05-20 10:46 - 2019-08-21 13:15 - 000000000 ___DC C:\WINDOWS\Panther
2020-05-20 10:46 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-05-20 10:46 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-05-20 10:46 - 2019-01-06 14:58 - 000000000 ____D C:\Users\migue\AppData\Local\CrashDumps
2020-05-20 10:44 - 2018-11-28 22:12 - 000000000 ____D C:\Users\migue\AppData\Local\D3DSCache
2020-05-20 10:15 - 2018-11-27 14:58 - 000000000 ____D C:\Users\migue\AppData\Local\Host App Service
2020-05-20 10:12 - 2018-11-27 15:23 - 000000000 ____D C:\Users\migue\AppData\Roaming\Spotify
2020-05-19 23:00 - 2018-11-27 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2020-05-19 22:58 - 2018-11-27 15:14 - 000208016 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2020-05-19 22:26 - 2019-08-22 04:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-05-19 11:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-05-19 10:55 - 2018-11-27 15:04 - 000000000 ____D C:\Users\migue\AppData\Local\AMD
2020-05-19 10:54 - 2019-08-22 04:16 - 001773366 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-05-19 10:54 - 2019-03-19 13:59 - 000788560 _____ C:\WINDOWS\system32\perfh00A.dat
2020-05-19 10:54 - 2019-03-19 13:59 - 000155850 _____ C:\WINDOWS\system32\perfc00A.dat
2020-05-19 10:49 - 2018-11-27 15:03 - 000000000 ___RD C:\Users\migue\3D Objects
2020-05-19 10:49 - 2018-04-17 21:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-05-19 10:47 - 2019-08-22 04:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-05-19 10:47 - 2019-08-22 04:00 - 000457360 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-05-19 10:47 - 2018-12-04 19:29 - 000000420 _____ C:\WINDOWS\Tasks\update-sys.job
2020-05-19 10:47 - 2018-12-04 19:29 - 000000420 _____ C:\WINDOWS\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001.job
2020-05-19 10:46 - 2019-07-04 14:25 - 000000000 ____D C:\Users\migue\AppData\Roaming\AVAST Software
2020-05-19 10:46 - 2019-07-04 14:21 - 000000000 ____D C:\ProgramData\AVAST Software
2020-05-19 10:46 - 2018-09-10 23:27 - 000000000 ____D C:\Program Files\AMD
2020-05-19 02:13 - 2019-03-19 06:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\TextInput
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-05-19 02:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-05-19 02:10 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-05-19 02:10 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-05-19 02:10 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-05-19 02:10 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-05-19 02:10 - 2019-03-19 06:52 - 000000000 ____D C:\PerfLogs
2020-05-19 01:15 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-05-19 00:06 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-05-19 00:05 - 2018-11-28 15:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-05-19 00:02 - 2018-11-28 15:54 - 120636720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-05-18 23:52 - 2019-08-22 04:04 - 002874880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-05-18 19:35 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-05-18 19:21 - 2018-11-27 15:25 - 000000000 ____D C:\Users\migue\AppData\Local\Spotify
2020-05-18 15:31 - 2019-08-22 04:23 - 000003056 _____ C:\WINDOWS\system32\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001
2020-05-18 15:31 - 2019-08-22 04:23 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1055259697-3518968227-3811586982-1001
2020-05-18 15:31 - 2019-08-22 04:23 - 000002800 _____ C:\WINDOWS\system32\Tasks\update-sys
2020-05-18 15:31 - 2019-08-22 04:23 - 000002146 _____ C:\WINDOWS\system32\Tasks\StartCN
2020-05-18 15:31 - 2019-08-22 04:22 - 000003790 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2020-05-18 15:31 - 2019-08-22 04:22 - 000003550 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-05-18 15:31 - 2019-08-22 04:22 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-05-18 15:31 - 2019-08-22 04:22 - 000003454 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2020-05-18 15:31 - 2019-08-22 04:22 - 000003326 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-05-18 15:31 - 2019-08-22 04:22 - 000002566 _____ C:\WINDOWS\system32\Tasks\Avira_Antivirus_Systray
2020-05-18 15:31 - 2019-08-22 04:22 - 000002408 _____ C:\WINDOWS\system32\Tasks\App Explorer
2020-05-18 12:03 - 2018-09-10 23:25 - 000000000 ___HD C:\Program Files (x86)\Temp
2020-05-18 12:00 - 2019-08-22 04:22 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2020-05-18 12:00 - 2018-09-10 23:18 - 000000000 ____D C:\ProgramData\Lenovo
2020-05-18 11:59 - 2018-09-10 23:19 - 000000000 ____D C:\Program Files (x86)\Lenovo
2020-05-18 03:39 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-05-18 03:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-05-18 03:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-05-18 03:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-05-18 03:39 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-05-18 03:39 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
2020-05-17 20:32 - 2018-09-10 23:18 - 000000000 ____D C:\ProgramData\Package Cache
2020-05-17 20:31 - 2019-08-22 04:06 - 000000000 ____D C:\Users\migue
2020-05-17 20:00 - 2019-01-02 18:09 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-05-17 19:58 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-05-17 19:56 - 2019-01-06 18:11 - 000000000 ____D C:\Program Files\Microsoft Office
2020-05-17 19:54 - 2018-11-27 15:09 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-17 19:54 - 2018-11-27 15:09 - 000002265 _____ C:\ProgramData\Escritorio\Google Chrome.lnk
2020-05-17 19:18 - 2019-08-22 04:06 - 000002408 _____ C:\Users\migue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-17 19:18 - 2018-11-27 15:07 - 000000000 ___RD C:\Users\migue\OneDrive
2020-05-17 18:27 - 2018-11-27 15:14 - 000199752 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2020-05-17 18:18 - 2019-12-18 21:35 - 000000000 ____D C:\Users\migue\AppData\Roaming\.ACEStream
2020-05-17 18:17 - 2019-08-28 12:55 - 000000000 ____D C:\Users\migue\AppData\Local\BitTorrentHelper
2020-05-17 18:16 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-05-17 18:16 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-05-17 18:15 - 2018-09-10 23:19 - 000000000 ____D C:\Program Files\Lenovo

==================== Archivos en la raíz de algunos directorios ========

2018-12-04 19:29 - 2018-12-04 19:29 - 000000003 _____ () C:\Users\migue\AppData\Local\updater.log
2018-12-04 19:29 - 2018-12-04 19:29 - 000000425 _____ () C:\Users\migue\AppData\Local\UserProducts.xml

==================== SigCheck ============================

(No existe una corrección automática para los archivos que no pasan la verificación.)

==================== Final de FRST.txt ========================

Addition

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 13-05-2020 01
Ejecutado por migue (20-05-2020 11:40:07)
Ejecutado desde C:\Users\migue\OneDrive\Escritorio
Windows 10 Home Versión 1903 18362.836 (X64) (2019-08-22 02:23:33)
Modo de Inicio: Normal
==========================================================


==================== Cuentas: =============================

Administrador (S-1-5-21-1055259697-3518968227-3811586982-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1055259697-3518968227-3811586982-503 - Limited - Disabled)
Invitado (S-1-5-21-1055259697-3518968227-3811586982-501 - Limited - Disabled)
migue (S-1-5-21-1055259697-3518968227-3811586982-1001 - Administrator - Enabled) => C:\Users\migue
WDAGUtilityAccount (S-1-5-21-1055259697-3518968227-3811586982-504 - Limited - Disabled)

==================== Centro de Seguridad ========================

(Si una entrada es incluida en el fixlist, será eliminada.)

AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Programas instalados ======================

(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\uTorrent) (Version: 3.5.5.45608 - BitTorrent Inc.)
µTorrent (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\uTorrent) (Version: 3.5.5.45608 - BitTorrent Inc.)
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 20.009.20063 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.371 - Adobe)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2018.0418.1651.28500 - Advanced Micro Devices, Inc.)
Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.1.0.17816 - Perfect World Entertainment)
Avira (HKLM-x32\...\{4BC31208-EC3B-453B-8819-6B81AE3EC153}) (Version: 1.2.146.25871 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{caade1ea-26aa-4e8f-a4f0-59cf0c0e91a5}) (Version: 1.2.146.25871 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.2005.1882 - Avira Operations GmbH & Co. KG)
CCleaner (HKLM\...\CCleaner) (Version: 5.66 - Piriform)
Epic Games Launcher (HKLM-x32\...\{3EB077E6-4FDC-4E90-8BCA-FD19BB7624BF}) (Version: 1.1.183.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ForHonor (HKLM-x32\...\Uplay Install 569) (Version:  - Ubisoft)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 81.0.4044.138 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Java 8 Update 191 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Java SE Development Kit 8 Update 191 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180191}) (Version: 8.0.1910.12 - Oracle Corporation)
Java SE Development Kit 8 Update 191 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180191}) (Version: 8.0.1910.12 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
Legends of Runeterra (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Riot Game bacon.live) (Version:  - Riot Games, Inc)
Legends of Runeterra (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Riot Game bacon.live) (Version:  - Riot Games, Inc)
Lenovo App Explorer (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Host App Service) (Version: 0.273.3.880 - SweetLabs for Lenovo)
Lenovo App Explorer (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Host App Service) (Version: 0.273.3.880 - SweetLabs for Lenovo)
Lenovo Calliope USB Keyboard (HKLM\...\{520AA862-0064-4B41-B777-1FAFC1AD1293}) (Version: 1.12 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.2.93.0 - Lenovo Group Ltd.)
Lightshot-5.4.0.35 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.35 - Skillbrains)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Microsoft Office 365 - es-es (HKLM\...\o365homepremretail - es-es) (Version: 16.0.11929.20708 - Microsoft Corporation)
Microsoft Office 365 ProPlus - es-es (HKLM\...\O365ProPlusRetail - es-es) (Version: 16.0.11929.20708 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\OneDriveSetup.exe) (Version: 20.052.0311.0011 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\OneDriveSetup.exe) (Version: 20.052.0311.0011 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Teams) (Version: 1.3.00.362 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Teams) (Version: 1.3.00.362 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.7.1 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20708 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20708 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.11929.20708 - Microsoft Corporation) Hidden
Open Exam Suite 3.1.2 (HKLM-x32\...\Open Exam Suite) (Version: 3.1.2 - Bolorunduro Winner-Timothy)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8858.1 - Realtek Semiconductor Corp.)
Sky Player 6.8.0.0 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\com.bskyb.skyplayer_is1) (Version: 6.8.0.0 - Sky)
Sky Player 6.8.0.0 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\com.bskyb.skyplayer_is1) (Version: 6.8.0.0 - Sky)
Spotify (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Spotify) (Version: 1.1.32.618.gda5638a6 - Spotify AB)
Spotify (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Spotify) (Version: 1.1.32.618.gda5638a6 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.2.0.34161 - Microsoft Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 94.0 - Ubisoft)
uTorrent Web (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\utweb) (Version: 0.22.0 - BitTorrent, Inc.)
uTorrent Web (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\utweb) (Version: 0.22.0 - BitTorrent, Inc.)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)

Packages:
=========
AMD Radeon™ Settings Lite -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.59462344778C5_10.19.10006.0_x64__0a9344xs7nr4m [2020-05-18] (Advanced Micro Devices Inc.)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220 [2020-05-18] (Dolby Laboratories)
Extensión de vídeo MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-09-24] (Microsoft Corporation)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2018-11-27] (Fitbit)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2003.10.0_x64__k1h2ywk1493x8 [2020-05-18] (LENOVO INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2018-11-28] (LinkedIn)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.38.21323.0_x64__8wekyb3d8bbwe [2020-05-18] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-18] (Microsoft Studios) [MS Ad]
MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-05-18] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.96.725.0_x64__mcm4njqhnhss8 [2020-05-18] (Netflix, Inc.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.9.205.0_x64__dt26b99r8h8gj [2020-05-19] (Realtek Semiconductor Corp)
WordPad TextNote -> C:\Program Files\WindowsApps\54064serieusdating.nl.TextNote_2019.900.65.0_x64__f1ddevng8mbr0 [2020-05-18] (Qwabber) [MS Ad]

==================== Personalizado CLSID (Lista blanca): ==============

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

CustomCLSID: HKU\S-1-5-21-1055259697-3518968227-3811586982-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\migue\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1055259697-3518968227-3811586982-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\migue\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2019-06-17] (Notepad++ -> )
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2020-05-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-18] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-04-18] (Advanced Micro Devices, Inc.) [Archivo no firmado]
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-18] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2020-05-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Lista blanca) ====================

==================== Accesos directos & WMI ========================

(Las entradas pueden ser listadas para ser restauradas o eliminadas.)

ShortcutWithArgument: C:\Users\migue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\ARC Welder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=emfinbmielocnlhgmfkkmkngdoccbadn

==================== Módulos cargados (Lista blanca) =============

2018-04-04 17:26 - 2018-04-04 17:26 - 000015360 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2018-04-04 17:26 - 2018-04-04 17:26 - 002519040 _____ () [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2020-05-17 18:21 - 2019-05-28 14:06 - 001021440 _____ () [Archivo no firmado] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2020-05-18 11:59 - 2019-10-27 06:41 - 001631744 _____ (Robert Simpson, et al.) [Archivo no firmado] C:\Program Files (x86)\Lenovo\VantageService\3.2.93.0\x64\SQLite.Interop.dll
2020-05-17 18:26 - 2020-04-05 18:36 - 001343488 _____ (Robert Simpson, et al.) [Archivo no firmado] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\SQLite.Interop.dll
2018-12-04 19:29 - 2017-05-23 15:59 - 000494080 _____ (Skillbrains) [Archivo no firmado] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\Lightshot.dll
2018-12-04 19:29 - 2017-05-23 15:59 - 000256000 _____ (Skillbrains) [Archivo no firmado] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\uploader.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000032256 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000039936 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000034304 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000237056 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000025600 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000025600 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000024064 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000481792 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 001336320 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 001136128 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Charts.dll
2018-04-18 16:48 - 2018-04-18 16:48 - 005766144 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 006045184 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000964096 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 003233792 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 003406848 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000328704 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 005523456 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000282624 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000194560 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000049152 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000018432 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000018432 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000311296 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000139264 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000089600 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2018-04-04 17:26 - 2018-04-04 17:26 - 000018432 _____ (The Qt Company Ltd) [Archivo no firmado] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll

==================== Alternate Data Streams (Lista blanca) ========

(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [225]

==================== Modo Seguro (Lista blanca) ==================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Asociación (Lista blanca) =================

==================== Internet Explorer sitios de confianza/restringidos ==========

==================== Hosts contenido: =========================

(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2019-01-12 20:45 - 2019-07-14 14:15 - 000000562 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
192.168.137.14 Galaxy-J5-2016.mshome.net # 2019 7 0 21 12 15 12 210
192.168.137.165 Mike.mshome.net # 2019 7 0 21 12 5 48 622
192.168.137.1 MIKEPC.mshome.net # 2024 7 5 12 12 15 12 210

==================== Otras Áreas ===========================

(Actualmente no existe una corrección automática para esta sección.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKCU\Environment\\Path -> %USERPROFILE%\AppData\Local\Microsoft\WindowsApps
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104840894\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841050\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\migue\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\riven-wallpaper-4.png
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\Control Panel\Desktop\\Wallpaper -> C:\Users\migue\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\riven-wallpaper-4.png
DNS Servers: 80.58.61.250 - 80.58.61.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Firewall de Windows está habilitado.

==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==

(Si una entrada es incluida en el fixlist, será eliminada.)

HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream"

==================== Reglas de firewall (Lista blanca) ================

(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)

FirewallRules: [{6F7857D3-E14A-44DB-BDBC-F5220EB5635B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Hunter World\MonsterHunterWorld.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{46348085-5849-477D-8B57-876EB0770C24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Hunter World\MonsterHunterWorld.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{57E3D749-CD95-4D17-BBD6-06878032AC88}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Ningún archivo
FirewallRules: [{4FB19A51-50BF-4931-8FF0-70407F469199}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Ningún archivo
FirewallRules: [{B6A7DD80-0503-4CB3-9191-2DEB176B9152}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{79F7BB12-B36D-4E74-B49F-0098AF51CCB5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{A891E994-7CC6-4F40-AB56-FF2E57DE380B}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{A9BD0B68-C43E-4CF8-9B79-A1D9D10D2E8C}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{4D090268-84A0-4E9F-AED4-E911880B6FA8}] => (Allow) C:\Users\migue\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [{E5F04962-44A0-4471-A463-B3CD488ED36F}] => (Allow) C:\Users\migue\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Archivo no firmado]
FirewallRules: [UDP Query User{030E8091-6E4E-4119-ABBE-A216BE4CE19C}C:\program files (x86)\neverwinter_en\neverwinter\live\x64\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\x64\gameclient.exe (Cryptic Studios Inc. -> )
FirewallRules: [TCP Query User{49BA1372-6457-43B2-A0E5-12DB29C89B6A}C:\program files (x86)\neverwinter_en\neverwinter\live\x64\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\x64\gameclient.exe (Cryptic Studios Inc. -> )
FirewallRules: [UDP Query User{FC4DDC31-22BD-4537-9433-131C41122881}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{BAD8F36B-E63C-499C-9CD7-242F5A0D339D}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{686A39AC-644A-481C-80F5-C883C65D9889}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{08CA80DB-409B-4BE8-BF78-CC842923661A}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.199\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{7CF2512B-E597-475E-A74C-E4D5484F745F}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{26535176-FF98-4ED8-9C93-0379B9531E7B}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.198\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{071D3D68-A104-411D-831A-841DC4E96C3C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{243103EE-ED54-43DF-AB42-0B4CEF0456AD}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{9C0EB31B-8D68-48A4-BC16-BCF0C0CB8C79}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{55327CF5-E279-418D-AD43-61563584C441}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{70319363-64D2-4A66-8B35-B444A87F649D}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.195\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.195\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{A637471C-6185-49BD-A651-68BC68AD207A}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.195\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.195\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [{C2B3F812-C9EA-4553-89B5-8808C6E40812}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.11425.20202.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{0205996D-C5E5-47FB-AA0C-67893EE21CEC}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.194\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.194\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{B3AEF3F4-F6F0-4B11-8A85-5F68A3F55BE2}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.194\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.194\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{7BAF1E53-5197-43D1-AC83-0E0153CF21F1}C:\program files\megadede\megadede.exe] => (Allow) C:\program files\megadede\megadede.exe => Ningún archivo
FirewallRules: [TCP Query User{B6CB8F2A-61E5-4ED4-B99D-21842A9F8A37}C:\program files\megadede\megadede.exe] => (Allow) C:\program files\megadede\megadede.exe => Ningún archivo
FirewallRules: [UDP Query User{CD2B861D-3951-4F2A-98AA-AF85E01C0C1B}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.193\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.193\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{3EB98699-2C1C-4B15-A3E5-8E8A1AC4BF75}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.193\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.193\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{44EB24AE-5DCC-42EE-972C-847CF9EA7FF0}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{96AFE323-A3A4-45CE-8913-192D83F0F513}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{6E8C43F9-495A-408D-9548-20C0A72EC796}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{8691E91C-B47B-4F28-B42F-C4F6C83DB397}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{1521A78B-E4CF-4279-BFF8-FD4A6ED2E1F3}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{8917749A-B179-4407-88CD-D9A1FB01E1C4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{CE815322-6A32-422E-BC6B-32AACA0416C7}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{37A3CB6F-D6DF-4F12-ABF1-4F2080143930}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{58D0AD57-4706-4419-9C14-DA1E242D0EA4}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.191\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.191\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{53C7B5C2-2DFA-4F81-A5E3-116362FF9576}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.191\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.191\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{C5EFF4B5-7237-46D4-80AB-D1EF76900BE7}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{A6B5495E-8884-47D8-9CA5-6261AF573958}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.190\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{2E689955-C02D-4091-AFB1-A70CE3C92EA7}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{DC1BD58C-EA3B-4DB6-BCE1-1442AB840C1D}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.189\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{A5546775-2FD3-4C11-92F6-519E6632B150}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{7975A4D3-824D-4F8F-B9D4-4B958E220A99}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{BC40691E-A6F4-4342-83EA-C8CDFDEA3B69}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{FC834F9E-4EC9-4361-974C-3E8255DD9CF5}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.187\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{04B48D7E-FDEF-4460-ADB7-42E4C46EF7FD}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{46921E12-5560-4D2A-BDDB-D86F27F45CD6}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.185\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{3A54DECD-1460-40F0-A000-B30AEB9CDDD0}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{177750DA-D913-4AC4-A30F-43B3CC9C564D}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{7748DCC4-44FD-49E9-B400-CFD31EB8701A}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{DF7FE03A-D6EB-4961-9B7A-8F5773153B28}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.183\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{A6E12D89-7ADD-4101-B953-9CDBAF4E10F9}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.182\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.182\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{FB6A3F69-5AE4-4E52-9A9F-6C0C9F6B42C0}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.182\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.182\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{11ADFEF2-20FF-464D-848C-80C1567F9B9B}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{C312987E-3A67-41C9-BF98-80F25E95383C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.181\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{B8AAA6C3-C685-491A-8118-1DE0EC0DE6B9}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.180\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.180\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{83C1508B-09C0-48CE-88F0-BEC704E9F151}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.180\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.180\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{41910A99-43AA-43B2-A545-49B3212821D8}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.179\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.179\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{2BF0CB89-3C1B-4E45-87BE-260A4596A602}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.179\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.179\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{9AA1B193-68E4-4911-A997-3DCAC59DDFE6}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [TCP Query User{797F66BA-9A8B-45FD-BCB7-A93C3E0AF2F6}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.178\deploy\leagueclient.exe => Ningún archivo
FirewallRules: [UDP Query User{357F799A-881F-43E4-85CA-0B0AF028F549}C:\users\migue\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\migue\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{8B57A29D-1F2A-4D9B-B4DE-8070E081AA97}C:\users\migue\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\migue\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CFF8AFBB-700B-45D7-AFE7-39BD236E43FD}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => Ningún archivo
FirewallRules: [{C7F518C7-2131-4615-9259-652C4A7899B4}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => Ningún archivo
FirewallRules: [TCP Query User{2270F229-D28E-45D4-BCE9-90233C7875D6}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{ABC195D1-9DDD-46D6-B4F1-1BA80125A8AD}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{4F82D911-5E4E-4CF7-ABCC-C08D19F584FB}C:\users\migue\appdata\local\temp\rar$exa15816.39237\eagleget.exe] => (Allow) C:\users\migue\appdata\local\temp\rar$exa15816.39237\eagleget.exe => Ningún archivo
FirewallRules: [UDP Query User{BA380542-D658-44B9-BA10-4890299038FC}C:\users\migue\appdata\local\temp\rar$exa15816.39237\eagleget.exe] => (Allow) C:\users\migue\appdata\local\temp\rar$exa15816.39237\eagleget.exe => Ningún archivo
FirewallRules: [{A28071E7-FCF7-4F32-A03B-606980F0DF0F}] => (Allow) C:\Users\migue\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{1A4AF789-BD2D-4B9C-AADD-FD9B51B9992A}] => (Allow) C:\Users\migue\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{4B02ACC6-9AB7-4415-ADCA-11365C9C0849}C:\program files (x86)\ubisoft\ubisoft game launcher\games\forhonor\forhonor.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\forhonor\forhonor.exe (Blue Byte GmbH -> Ubisoft)
FirewallRules: [UDP Query User{9DD2C120-E307-427D-920C-A804B4D42C20}C:\program files (x86)\ubisoft\ubisoft game launcher\games\forhonor\forhonor.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\forhonor\forhonor.exe (Blue Byte GmbH -> Ubisoft)
FirewallRules: [{93358F5D-DEB7-446B-A895-732A2849300D}] => (Allow) C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
FirewallRules: [{B3F0EFB0-20CC-40C1-82E3-28F62B2391FD}] => (Allow) C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
FirewallRules: [{5674DC87-1C07-4124-B1D0-F900F257A2D1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{43C02BBB-919E-40FF-B368-95BA4AB7AD66}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C3658F0C-BFB5-469E-BB4C-3FFF66009987}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BACED8D0-EB50-45AE-95F2-0251B089C244}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ECD3F248-1E3F-438C-AAF7-5F3BF8431D0A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D803C27E-7877-406A-A548-9F17A59AA3FD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Puntos de Restauración =========================

05-03-2020 15:16:36 Punto de control programado
17-05-2020 19:18:50 Windows Update

==================== Dispositivos defectuosos en el Administrador de dispositivos ============


==================== Errores del registro de eventos: ========================

Errores de aplicación:
==================
Error: (05/20/2020 11:36:16 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (14668,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 11:26:33 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (15708,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 11:14:16 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (15144,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 11:05:53 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2028,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 10:50:43 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5052,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 10:33:04 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2944,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 10:25:05 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12408,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (05/20/2020 10:15:10 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0


Errores del sistema:
=============
Error: (05/20/2020 10:46:14 AM) (Source: DCOM) (EventID: 10000) (User: MIKEPC)
Description: No se puede iniciar un servidor DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Error 
"2147942767"
al iniciar este comando:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}

Error: (05/19/2020 10:54:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio McAfee WebAdvisor no pudo iniciarse debido al siguiente error: 
El sistema no puede encontrar el archivo especificado.

Error: (05/19/2020 02:13:00 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: El servicio Malwarebytes Service no se cerró correctamente después de recibir un control de aviso de apagado.

Error: (05/19/2020 02:10:02 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (05/19/2020 02:10:02 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (05/19/2020 02:10:02 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (05/19/2020 02:10:02 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} no se registró con DCOM dentro del tiempo de espera requerido.

Error: (05/19/2020 02:10:02 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: El servidor {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} no se registró con DCOM dentro del tiempo de espera requerido.


Windows Defender:
===================================
Date: 2020-02-13 19:51:06.949
Description: 
Antivirus de Windows Defender detectó malware u otro software potencialmente no deseado.
Para más información, consulta lo siguiente:
https://go.microsoft.com/fwlink/?linkid=37020&name=Worm:Win32/Soltern&threatid=2147745887&enterprise=0
Nombre: Worm:Win32/Soltern
Id.: 2147745887
Gravedad: Grave
Categoría: Gusano
Ruta de acceso: file:_C:\Windows\Temp\00000E3F-651579C1
Origen de detección: Equipo local
Tipo de detección: Concreto
Origen de detección: Protección en tiempo real
Usuario: NT AUTHORITY\SYSTEM
Nombre de proceso: C:\Program Files (x86)\Avira\Antivirus\avguard.exe
Versión de inteligencia de seguridad: AV: 1.309.917.0, AS: 1.309.917.0, NIS: 1.309.917.0
Versión de motor: AM: 1.1.16700.3, NIS: 1.1.16700.3

Date: 2020-01-15 22:53:47.485
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.291.1757.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.16200.1
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-01-15 22:53:47.485
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.291.1757.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiSpyware
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.16200.1
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-01-15 22:53:47.485
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.291.1757.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.16200.1
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-01-15 22:53:47.477
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.291.1757.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.16200.1
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

Date: 2020-01-15 22:53:47.477
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.291.1757.0
Origen de actualización: Centro de protección contra malware de Microsoft
Tipo de inteligencia de seguridad: AntiSpyware
Tipo de actualización: Completa
Usuario: NT AUTHORITY\Servicio de red
Versión actual del motor: 
Versión anterior del motor: 1.1.16200.1
Código de error: 0x80072ee7
Descripción del error: No se pudo resolver el nombre de servidor o su dirección 

CodeIntegrity:
===================================

Date: 2020-05-19 22:59:43.391
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Avira\Antivirus\avirasecuritycenteragent.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-18 19:27:55.942
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 19:27:47.782
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 19:17:36.860
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 19:07:37.728
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 18:57:37.647
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 18:47:37.566
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-05-18 18:37:37.474
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

==================== Información de la memoria =========================== 

BIOS: LENOVO M25KT23A 08/14/2018
Placa base: LENOVO 3141
Procesador: AMD Ryzen 5 2400G with Radeon Vega Graphics 
Porcentaje de memoria en uso: 72%
RAM física total: 7092.79 MB
RAM física disponible: 1968.2 MB
Virtual total: 11725.28 MB
Virtual disponible: 4502.42 MB

==================== Unidades ================================

Drive c: (Windows) (Fixed) (Total:930.27 GB) (Free:682.06 GB) NTFS

\\?\Volume{ce25c7c0-1152-4375-8c46-a8a8b92b8230}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.54 GB) NTFS
\\?\Volume{2e6cd052-d49c-4084-ad8f-8ccabce3e62a}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Tabla de particiones ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: AEB4562D)

Partition: GPT.

==================== Final de Addition.txt =======================

Malwarebytes

Malwarebytes
www.malwarebytes.com

-Detalles del registro-
Fecha del análisis: 20/5/20
Hora del análisis: 10:11
Archivo de registro: 7f1f1be4-9a71-11ea-94c0-309c23c94993.json

-Información del software-
Versión: 4.1.0.56
Versión de los componentes: 1.0.920
Versión del paquete de actualización: 1.0.24140
Licencia: Prueba

-Información del sistema-
SO: Windows 10 (Build 18362.836)
CPU: x64
Sistema de archivos: NTFS
Usuario: System

-Resumen del análisis-
Tipo de análisis: Análisis de amenazas
Análisis iniciado por:: Programador de tareas
Resultado: Completado
Objetos analizados: 290805
Amenazas detectadas: 1
Amenazas en cuarentena: 1
Tiempo transcurrido: 14 min, 41 seg

-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Desactivado
Heurística: Activado
PUP: Detectar
PUM: Detectar

-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)

Módulo: 0
(No hay elementos maliciosos detectados)

Clave del registro: 0
(No hay elementos maliciosos detectados)

Valor del registro: 1
Trojan.Agent.AutoIt.Generic, HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|5431FA94, En cuarentena, 5579, 783345, 1.0.24140, , ame, 

Datos del registro: 0
(No hay elementos maliciosos detectados)

Secuencia de datos: 0
(No hay elementos maliciosos detectados)

Carpeta: 0
(No hay elementos maliciosos detectados)

Archivo: 0
(No hay elementos maliciosos detectados)

Sector físico: 0
(No hay elementos maliciosos detectados)

WMI: 0
(No hay elementos maliciosos detectados)


(end)

Hola.

No usaste AdwCleaner…??

Y otra consulta, veo que tienes AVG instalado y activado, pero también observo que tienes AVAST instalado aunque en este caso Desactivado, cual de esos antivirus usas realmente…??

:arrow_right: ¿Por qué no es bueno usar dos antivirus a la vez? - InfoSpyware.

Nos comentas.

Saludos.

Buenas solo utilizo un antivirus y es AVG. El resto lo tengo deshabilitado. Adjunto el adw

# -------------------------------
# Malwarebytes AdwCleaner 8.0.4.0
# -------------------------------
# Build:    04-03-2020
# Database: 2020-05-19.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    05-20-2020
# Duration: 00:00:22
# OS:       Windows 10 Home
# Cleaned:  43
# Failed:   2


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted       C:\Users\Default\AppData\Local\Host App Service
Deleted       C:\Users\migue\AppData\LocalLow\.acestream
Deleted       C:\Users\migue\AppData\Local\Host App Service
Deleted       C:\Users\migue\AppData\Roaming\.acestream
Deleted       C:\Users\migue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media
Deleted       C:\Users\migue\AppData\Roaming\acestream
Deleted       C:\_acestream_cache_

***** [ Files ] *****

Deleted       C:\Windows\System32\Tasks_Migrated\App Explorer

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted       C:\Windows\System32\Tasks\APP EXPLORER

***** [ Registry ] *****

Deleted       HKCU\SOFTWARE\Classes\Applications\ace_player.exe
Deleted       HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acelive
Deleted       HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acemedia
Deleted       HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acestream
Deleted       HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tslive
Deleted       HKCU\Software\AceStream
Deleted       HKCU\Software\App Host Service
Deleted       HKCU\Software\Classes\.acelive
Deleted       HKCU\Software\Classes\.acemedia
Deleted       HKCU\Software\Classes\.acestream
Deleted       HKCU\Software\Classes\.tslive
Deleted       HKCU\Software\Classes\AudioCD\shell\PlayWithACEStream
Deleted       HKCU\Software\Classes\DVD\shell\PlayWithACEStream
Deleted       HKCU\Software\Classes\acestream
Deleted       HKCU\Software\Host App Service
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayCDAudioOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDAudioOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDMovieOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayMusicFilesOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlaySVCDMovieOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVCDMovieOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVideoFilesOnArrival
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AceStream
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
Deleted       HKCU\Software\RegisteredApplications|AceStream
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCAA3981-DD2B-42C1-B615-E78580B4584F} 
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{93358F5D-DEB7-446B-A895-732A2849300D}
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{B3F0EFB0-20CC-40C1-82E3-28F62B2391FD}
Deleted       HKLM\Software\Classes\.acestream
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{79690976-ED6E-403C-BBBA-F8928B5EDE17}

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted       Preinstalled.LenovoIMController   Folder   C:\Users\migue\AppData\Local\LENOVO\IMCONTROLLER
Deleted       Preinstalled.LenovoIMController   Folder   C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted       Preinstalled.LenovoIMController   Registry   HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
Not Deleted   Preinstalled.LenovoIMController   Folder   C:\ProgramData\LENOVO\IMCONTROLLER
Not Deleted   Preinstalled.LenovoIMController   Folder   C:\Windows\LENOVO\IMCONTROLLER


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [5731 octets] - [20/05/2020 13:06:03]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Hola.

Entendido… pues como te dije tienes restos todavía del antivirus de AVAST y para hacer su correcta desinstalación debes usar la :arrow_right: Herramientas de desinstalación de Antivirus, AntiSpyware y Firewall especifica que existe.

Hazlo mientras termino de analizar tus informes y dinos SI hubo algún problema.

Saludos.

Al estar deshabilitado no había problema pero lo acabo de borrar del todo siguiendo sus instrucciones. Muchas gracias.

Bien… y ahora sigue estos pasos, :arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe(en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla :white_check_mark: Create registry backup, las demás casillas NO. :face_with_monocle:

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [225]
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Run: [AceStream] => C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [27775672 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [AceStream] => C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [5431fa94] => C:\ProgramData\Intel\Wireless\788d1f8\idcjdac.exe C:\ProgramData\Intel\Wireless\788d1f8\40f2e73.au3
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-17] (Google LLC -> Google LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
Task: {1DC50C8A-EDE9-49BB-AE69-008BC9672CAB} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {66D62973-750A-4B6C-B919-D4EA5C295FAB} - System32\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {BCAA3981-DD2B-42C1-B615-E78580B4584F} - System32\Tasks\App Explorer => C:\Users\migue\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7499944 2020-05-13] (SweetLabs Inc. -> SweetLabs, Inc) <==== ATENCIÓN
Task: C:\WINDOWS\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
BHO: Sin Nombre -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Ningún archivo
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: EGet Class -> {1E871FF8-029C-4732-8AA7-39E3D3872057} -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\eagleSniffer.dll => Ningún archivo
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Arc\Plugins\ArcPluginIE.dll => Ningún archivo
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] => no encontrado
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] => no encontrado
FF HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Extension: (Ace Script) - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
FF HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Arc\Plugins\npArcPluginFF.dll [Ningún archivo]
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001: eagleget.com/EagleGet32 -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll [Ningún archivo]
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: eagleget.com/EagleGet32 -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll [Ningún archivo]
CHR Profile: C:\Users\migue\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-05-20]
CHR Profile: C:\Users\migue\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-20]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
S2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [X]
U3 aswbdisk; no ImagePath
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [225]
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream"
C:\ProgramData\Intel\Wireless
C:\Users\migue\AppData\Roaming\acestream
C:\Users\migue\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo
C:\Program Files\Common Files\McAfee
C:\Program Files (x86)\Steam\bin\cef\cef.win7
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe(Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.

Y ahora usa el 2º MÉTODO: de esta Faq de Windows 8(aplicable a Windows 10) :arrow_forward: ¿Cómo iniciar Windows 8/8.1 en Modo Seguro?, para trabajar desde ese modo de windows.

  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).

  • Presionar el botón FIX/Corregir y aguardar a que termine.

  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pegar el contenido de este fichero en tu próxima respuesta. :+1:

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Saludos.

1 me gusta
Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 13-05-2020 01
Ejecutado por migue (20-05-2020 15:06:59) Run:1
Ejecutado desde C:\Users\migue\OneDrive\Escritorio
Perfiles cargados: migue
Modo de Inicio: Safe Mode (with Networking)
==============================================

fixlist contenido:
*****************
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [225]
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Run: [AceStream] => C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [27775672 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [AceStream] => C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [5431fa94] => C:\ProgramData\Intel\Wireless\788d1f8\idcjdac.exe C:\ProgramData\Intel\Wireless\788d1f8\40f2e73.au3
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-17] (Google LLC -> Google LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
Task: {1DC50C8A-EDE9-49BB-AE69-008BC9672CAB} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {66D62973-750A-4B6C-B919-D4EA5C295FAB} - System32\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {BCAA3981-DD2B-42C1-B615-E78580B4584F} - System32\Tasks\App Explorer => C:\Users\migue\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7499944 2020-05-13] (SweetLabs Inc. -> SweetLabs, Inc) <==== ATENCIÓN
Task: C:\WINDOWS\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
BHO: Sin Nombre -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Ningún archivo
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: EGet Class -> {1E871FF8-029C-4732-8AA7-39E3D3872057} -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\eagleSniffer.dll => Ningún archivo
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Arc\Plugins\ArcPluginIE.dll => Ningún archivo
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] => no encontrado
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] => no encontrado
FF HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Extension: (Ace Script) - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
FF HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Arc\Plugins\npArcPluginFF.dll [Ningún archivo]
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001: eagleget.com/EagleGet32 -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll [Ningún archivo]
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: eagleget.com/EagleGet32 -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll [Ningún archivo]
CHR Profile: C:\Users\migue\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-05-20]
CHR Profile: C:\Users\migue\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-20]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado>
S2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [X]
U3 aswbdisk; no ImagePath
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Ningún archivo
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [225]
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\StartupApproved\Run: => "AceStream"
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream"
C:\ProgramData\Intel\Wireless
C:\Users\migue\AppData\Roaming\acestream
C:\Users\migue\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo
C:\Program Files\Common Files\McAfee
C:\Program Files (x86)\Steam\bin\cef\cef.win7
HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END
*****************

Error: El punto de restauración solamente puede ser creado en modo normal.
Procesos cerrados correctamente.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => eliminado correctamente
C:\Users\Public\Shared Files => ":VersionCache" ADS eliminado correctamente
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\AceStream" => eliminado correctamente
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AceStream" => eliminado correctamente
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream" => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AceStream" => no encontrado
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Smart Cleaning" => eliminado correctamente
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [AceStream] => C:\Users\migue\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies) => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Run: [5431fa94] => C:\ProgramData\Intel\Wireless\788d1f8\idcjdac.exe C:\ProgramData\Intel\Wireless\788d1f8\40f2e73.au3 => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => eliminado correctamente
HKLM\SOFTWARE\Policies\Mozilla => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1DC50C8A-EDE9-49BB-AE69-008BC9672CAB}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DC50C8A-EDE9-49BB-AE69-008BC9672CAB}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\update-sys => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\update-sys" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{66D62973-750A-4B6C-B919-D4EA5C295FAB}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{66D62973-750A-4B6C-B919-D4EA5C295FAB}" => eliminado correctamente
C:\WINDOWS\System32\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001 => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\update-S-1-5-21-1055259697-3518968227-3811586982-1001" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BCAA3981-DD2B-42C1-B615-E78580B4584F}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCAA3981-DD2B-42C1-B615-E78580B4584F}" => no encontrado
"C:\WINDOWS\System32\Tasks\App Explorer" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer" => no encontrado
C:\WINDOWS\Tasks\update-S-1-5-21-1055259697-3518968227-3811586982-1001.job => movido correctamente
C:\WINDOWS\Tasks\update-sys.job => movido correctamente
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => eliminado correctamente
HKLM\Software\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} => eliminado correctamente
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9} => eliminado correctamente
HKLM\Software\Classes\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9} => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E871FF8-029C-4732-8AA7-39E3D3872057} => eliminado correctamente
HKLM\Software\Wow6432Node\Classes\CLSID\{1E871FF8-029C-4732-8AA7-39E3D3872057} => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} => eliminado correctamente
HKLM\Software\Wow6432Node\Classes\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84BFE29A-8139-402a-B2A4-C23AE9E1A75F} => eliminado correctamente
HKLM\Software\Wow6432Node\Classes\CLSID\{84BFE29A-8139-402a-B2A4-C23AE9E1A75F} => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9} => eliminado correctamente
HKLM\Software\Wow6432Node\Classes\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9} => eliminado correctamente
"HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\[email protected]" => eliminado correctamente
"HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\[email protected]" => eliminado correctamente
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Software\Mozilla\Firefox\Extensions\\[email protected]" => eliminado correctamente
"C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi" => no encontrado
FF HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\Firefox\Extensions: [[email protected]] - C:\Users\migue\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
"HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc." => no encontrado
C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll => movido correctamente
"HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc." => no encontrado
C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll => movido correctamente
"HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2019-01-09] (Oracle America, Inc." => no encontrado
C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll => movido correctamente
"HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2019-01-09] (Oracle America, Inc." => no encontrado
C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll => movido correctamente
HKLM\Software\Wow6432Node\MozillaPlugins\@perfectworld.com/npArcPlayNowPlugin => eliminado correctamente
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Software\MozillaPlugins\@acestream.net/acestreamplugin,version=3.1.32 => eliminado correctamente
"C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll" => no encontrado
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\Software\MozillaPlugins\eagleget.com/EagleGet32 => eliminado correctamente
"C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll" => no encontrado
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\migue\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies) => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
FF Plugin HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269: eagleget.com/EagleGet32 -> C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\npEagleget.dll [Ningún archivo] => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
C:\Users\migue\AppData\Local\Google\Chrome\User Data\Guest Profile => movido correctamente
C:\Users\migue\AppData\Local\Google\Chrome\User Data\System Profile => movido correctamente
HKLM\SOFTWARE\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk => eliminado correctamente
HKLM\SOFTWARE\Google\Chrome\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo => eliminado correctamente
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo => eliminado correctamente
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Google\Chrome\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo => eliminado correctamente
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Users\migue\AppData\Local\Temp\Rar$EXa15816.39237\addon\[email protected] <no encontrado> => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
CHR HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => eliminado correctamente
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo => eliminado correctamente
HKLM\System\CurrentControlSet\Services\McAfee WebAdvisor => eliminado correctamente
McAfee WebAdvisor => servicio eliminado correctamente
HKLM\System\CurrentControlSet\Services\aswbdisk => eliminado correctamente
aswbdisk => servicio eliminado correctamente
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN => Error: Ninguna corrección automática encontrada para esta entrada.
Ace Stream Media 3.1.32 (HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\AceStream) (Version: 3.1.32 - Ace Stream Media) <==== ATENCIÓN => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => no encontrado
"C:\Users\Public\Shared Files" => ":VersionCache" ADS no encontrado.
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\AceStream" => no encontrado
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AceStream" => no encontrado
HKU\S-1-5-21-1055259697-3518968227-3811586982-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05192020104841269\...\StartupApproved\Run: => "AceStream" => Error ({ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}): Ninguna corrección automática encontrada para esta entrada.
C:\ProgramData\Intel\Wireless => movido correctamente
"C:\Users\migue\AppData\Roaming\acestream" => no encontrado
C:\Users\migue\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo => movido correctamente
"C:\Program Files\Common Files\McAfee" => no encontrado
C:\Program Files (x86)\Steam\bin\cef\cef.win7 => movido correctamente
C:\Windows\System32\Drivers\etc\hosts => movido correctamente
Hosts restaurado correctamente.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => eliminado correctamente
"HKU\S-1-5-21-1055259697-3518968227-3811586982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => eliminado correctamente


========= Final de RemoveProxy: =========


========= netsh winsock reset =========


El cat logo Winsock se restableci¢ correctamente.
Debe reiniciar el equipo para completar el restablecimiento.


========= Final de CMD: =========


========= ipconfig /renew =========


Configuraci¢n IP de Windows

No se puede realizar ninguna operaci¢n en Ethernet mientras los medios
est‚n desconectados.

========= Final de CMD: =========


========= ipconfig /flushdns =========


Configuraci¢n IP de Windows

Se vaci¢ correctamente la cach‚ de resoluci¢n de DNS.

========= Final de CMD: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
(C) Copyright Microsoft Corp.

Unable to connect to BITS - 0x8007043c
El servicio no puede iniciarse en modo a prueba de errores



========= Final de CMD: =========


========= netsh advfirewall reset =========

Aceptar


========= Final de CMD: =========


========= netsh advfirewall set allprofiles state ON =========

Aceptar


========= Final de CMD: =========


========= netsh int ipv4 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


========= netsh int ipv6 reset =========

Reenv¡o de compartimiento se restableci¢ correctamente.
Compartimiento se restableci¢ correctamente.
Protocolo de control se restableci¢ correctamente.
Solicitud de secuencia eco se restableci¢ correctamente.
Global se restableci¢ correctamente.
Interfaz se restableci¢ correctamente.
Direcci¢n de difusi¢n por proximidad (a se restableci¢ correctamente.
Direcciones de multidifusi¢n se restableci¢ correctamente.
Direcci¢n de unidifusi¢n se restableci¢ correctamente.
Vecino se restableci¢ correctamente.
Ruta de acceso se restableci¢ correctamente.
Posible se restableci¢ correctamente.
Directiva de prefijo se restableci¢ correctamente.
Vecino de proxy se restableci¢ correctamente.
Ruta se restableci¢ correctamente.
Prefijo de sitio se restableci¢ correctamente.
Subinterfaz se restableci¢ correctamente.
Patr¢n de reactivaci¢n se restableci¢ correctamente.
Resolver vecino se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Error al restablecer .
Acceso denegado.

 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
 se restableci¢ correctamente.
Reinicie el equipo para completar esta acci¢n.


========= Final de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 10772480 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10617965 B
Java, Flash, Steam htmlcache => 350499040 B
Windows/system/drivers => 503078 B
Edge => 120308 B
Chrome => 195625587 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 42417 B
LocalService => 81917 B
NetworkService => 81917 B
migue => 5808061 B

RecycleBin => 0 B
EmptyTemp: => 547.6 MB datos temporales eliminados.

================================


El sistema necesita reiniciarse.

==== Final de Fixlog 15:09:45 ====

en principio según el fixlog parece que se ha eliminado y parece que va todo mejor. Aunque creo que sigo teniendo uno de los síntomas de este virus.

Hola.

A que te refieres poniendo esa imagen…??

Eso que yo veo ahí nada tiene que ver con una infección de este tipo… :thinking:

En teoría ese troyano es el responsable de la multiplicación de procesos en varios programas.

Hola. :+1:

Esa infección es responsable de multiples cuestiones, pero habitualmente NO suele ser la responsable de que en Chrome existan 11 procesos iniciados o NO es tu problema.

Normalmente en Chrome segun lo inicias y sin tener prácticamente ninguna pestaña abierta o extensión añadida por SI solo ya puedes tener esos 11 procesos arrancados. :face_with_monocle:

Y en tu caso TU tienes unas cuantas extensiones añadidas, por ej :

CHR Extension: (Tampermonkey) 
CHR Extension: (ARC Welder)
CHR Extension: (Avira Navegación segura)
CHR Extension: (AdBlock: el mejor bloqueador de anuncios)
CHR Extension: (Avast Online Security)
CHR Extension: (App Runtime for Chrome (Beta))
CHR Extension: (Ace Script)
CHR Extension: (Gmail)

La infección que TU tenias provocada por AutoIt te generaba un exceso de consumo por tener el “notepad.exe” arrancado en segundo plano/escondido y se puede verificar perfectamente por tener esta carpeta creada en tu equipo “C:\ProgramData\Intel\Wireless” que YA fue eliminada totalmente con los procesos que TU iniciaste y los que YO te indique posteriormente.

Si quieres te puedo mandar alguna verificación más que seguro que algo encontraremos(es muy normal), pero en principio y olvidándote de esos 11 procesos de Chrome lo que debes analizar es el comportamiento de TU equipo en relación a como o estaba justo antes de hacer TODOS estos procesos que hiciste.

Nos comentas.

Saludos.

Lo primero de todo muchas gracias nuevamente por tu ayuda. Todo va mucho mejor en general. Sin embargo la multiplicación de procesos creo que no estaba relacionada con Chrome. Pasaba en programas al azar, era fácil de comprobar porque los juegos o un programa de edición consumen bastante por lo que cuando se triplicaba el proceso (se abren 3 iguales) pues el consumo era exageradamente grande.

Además que el Chrome sin ninguna pestaña abierta no debería consumir esas cantidades tan altas. Ahora va todo mejor pero me sigue pareciendo extraño tantos procesos de Chrome. Si te fijas en algún hilo del soporte de Google como este (https://support.google.com/chrome/thread/9576198?hl=es) hay miles de personas reclamando lo mismo sin que desde Google tengan una respuesta. Y yo creo que está relacionado con este troyano.

Igualmente agradezco cualquier verificación que crea conveniente que haga :slight_smile: Sigo de cerca mi equipo para ver si vuelve a ocurrir!

Perfecto. :+1:

Que Chrome tenga un consumo alto o excesivo… evidentemente habrá que pedirle explicaciones a ellos, como igualmente ocurre con el resto de navegadores, te dejo imagen de mis navegadores en mi equipo :

En el Chrome solo tengo abiertas dos pestañas y las extensiones standard + cuatro extensiones personales.

Tener nueve o diez u once, o mas o menos procesos en un navegador comparandolo con otro equipo que NO sea el tuyo depende de muchos aspectos y entre otros en las características del hardware de cada maquina/equipo.

En FireFox una única pestaña y tres extensiones personales.

En Internet Explorer una única pestaña y un extensión o complemento personal.

Y finalmente en el nuevo Edge(version Chrome) una única pestaña y ninguna extensión personal.

Como puedes ver el único navegador que NO tiene procesos “dependientes” es el viejo/obsoleto Internet Explorer, el resto de navegadores(modernos) tienen procesos dependientes o añadidos y eso es absolutamente normal desde hace años en estas versiones actuales, ademas SI te fijas en la ocupación de la memoria en cada caso Chrome NO es el que mas consume.

Dicho esto, ahora sigues las indicaciones que se dan en este :arrow_right: Manual de HitmanPro y cuando termines nos pones el informe y REINICIAS.

Saludos.