Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019 Ran by User (administrator) on DESKTOP-QGCBUE3 (20-03-2019 03:19:08) Running from C:\Users\User\Desktop Loaded Profiles: User (Available Profiles: User) Platform: Windows 10 Enterprise Version 1809 17763.379 (X64) Language: Español (México) Default browser: Chrome Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LsaIso.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.01\atkexComSvc.exe (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe (Intel Corporation) [File not signed] C:\Windows\System32\IPROSetMonitor.exe (ASUSTeK Computer Inc. -> ) [File not signed] C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe (HP) [File not signed] C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Janos Mathe -> H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe () [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20594.0_x64__8wekyb3d8bbwe\YourPhone.exe (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x64__kzf8qxf38zg5c\SkypeApp.exe () [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler.exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (ASUSTeK COMPUTER INC.) [File not signed] C:\Program Files\ASUSTeKcomputer.Inc\Sonic Suite 3\Foundation\SS3Svc32.exe (ASUSTeK COMPUTER INC.) [File not signed] C:\Program Files\ASUSTeKcomputer.Inc\Sonic Suite 3\Foundation\x64\SS3Svc64.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\microsoft.windowsstore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19011.19410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9268680 2018-02-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321096 2017-11-09] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Sonic Studio 3] => C:\Program Files\ASUSTeKcomputer.Inc\Sonic Suite 3\Foundation\SS3svc32.exe [1234432 2018-02-22] (ASUSTeK COMPUTER INC.) [File not signed] HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [5617392 2019-02-18] (Paramount Software UK Ltd -> Paramount Software UK Ltd) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [HPUsageTrackingLEDM] => "C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT LEDM\" HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-2947481483-1064858154-3000073182-1001\...\Run: [Battle.net] => D:\Battle.net\Battle.net.exe [1098728 2019-03-15] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) HKU\S-1-5-21-2947481483-1064858154-3000073182-1001\...\Run: [Steam] => D:\JUEGOS\steam.exe [3146016 2019-03-05] (Valve -> Valve Corporation) HKU\S-1-5-21-2947481483-1064858154-3000073182-1001\...\Run: [GoogleChromeAutoLaunch_BCEA24321E5E4F1401136BBEDFB545FE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1708016 2019-02-28] (Google LLC -> Google Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-14] (Google LLC -> Google Inc.) GroupPolicy: Restriction ? <==== ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 186.12.238.16 186.12.238.15 Tcpip\..\Interfaces\{814ee609-c12d-42b4-aada-84314220a6c0}: [DhcpNameServer] 186.12.238.16 186.12.238.15 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-2947481483-1064858154-3000073182-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 SearchScopes: HKU\S-1-5-21-2947481483-1064858154-3000073182-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-03-15] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== Edge Extension: (LastPass: Free Password Manager) -> hdokiejnpimakedhajhdlcegeplioahd_LastPassLastPassFreePasswordManager_qq0fmhteeht3j => C:\Program Files\WindowsApps\LastPass.LastPassFreePasswordManager_4.25.0.0_neutral__qq0fmhteeht3j [2019-03-01] FireFox: ======== FF DefaultProfile: whrmbb43.default FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default [2019-03-19] FF Homepage: Mozilla\Firefox\Profiles\whrmbb43.default -> about:blank FF Extension: (Facebook Container) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\@contain-facebook.xpi [2019-03-17] FF Extension: (WebRTC Leak Shield) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\@webrtc-leak-shield.xpi [2019-03-17] FF Extension: (CanvasBlocker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\CanvasBlocker@kkapsner.de.xpi [2019-03-17] FF Extension: (Norton Safe Web) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\nortonsafeweb@symantec.com.xpi [2019-03-17] FF Extension: (LastPass: Free Password Manager) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\support@lastpass.com.xpi [2019-03-17] FF Extension: (TrafficLight) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\trafficlight@bitdefender.com.xpi [2019-03-17] FF Extension: (uBlock Origin) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\uBlock0@raymondhill.net.xpi [2019-03-17] FF Extension: (Privacy Possum) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\woop-NoopscooPsnSXQ@jetpack.xpi [2019-03-17] FF Extension: (Netcraft Extension) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\{0e10f3d7-07f6-4f12-97b9-9b27e07139a5}.xpi [2019-03-17] FF Extension: (Malwarebytes Browser Extension) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2019-03-17] FF Extension: (uBlock) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\{2b10c1c8-a11f-4bad-fe9c-1c11e82cac42}.xpi [2019-03-17] FF Extension: (No Coin - Block miners on the web!) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\{5657c026-efc3-4860-b43b-16e4eaa8a9aa}.xpi [2019-03-17] FF Extension: (Emsisoft Browser Security) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\whrmbb43.default\Extensions\{b21882eb-3211-44dc-964b-e6f35b33061f}.xpi [2019-03-17] FF HKLM-x32\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension FF Extension: (SmartPrintButton) - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [Legacy] [not signed] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-03-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-03-01] (NVIDIA Corporation -> NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-03-01] (NVIDIA Corporation -> NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-02-14] (Google Inc -> Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-02-14] (Google Inc -> Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-01-31] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR DefaultSearchKeyword: Default -> lp CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2019-03-20] CHR Extension: (Presentaciones) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-14] CHR Extension: (Popup Blocker (strict)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aefkmifgmaafnojlojpnekbpbmjiiogg [2019-02-14] CHR Extension: (Documentos) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-14] CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-14] CHR Extension: (uBO-Scope) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbdpgcaljkaaigfcomhidmneffjjjfgp [2019-02-14] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-14] CHR Extension: (Netcraft Extension) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmejphbfclcpmpohkggcjeibfilpamia [2019-02-14] CHR Extension: (TrafficLight) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfnpidifppmenkapgihekkeednfoenal [2019-02-14] CHR Extension: (uBlock Origin) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-03-14] CHR Extension: (Proxy SwitchySharp) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2019-02-14] CHR Extension: (Adobe Acrobat) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-02-15] CHR Extension: (Hojas de cálculo) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-14] CHR Extension: (HTTPS Everywhere) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2019-02-14] CHR Extension: (KProxy Extension) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdocgbfmddcfnlnpmnghmjicjognhonm [2019-03-16] CHR Extension: (Documentos de Google sin conexión) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-14] CHR Extension: (No Coin - Block miners on the web!) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gojamcfopckidlocpkbelmpjcgmbgjcl [2019-02-14] CHR Extension: (LastPass: Free Password Manager) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2019-03-14] CHR Extension: (Malwarebytes Browser Extension) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2019-03-14] CHR Extension: (Emsisoft Browser Security) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfofijpkapingknllefalncmbiienkab [2019-03-14] CHR Extension: (Violentmonkey) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jinjaccalgkegednnccohejagnlnfdag [2019-03-14] CHR Extension: (Norton Safe Web) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcbdjefcinmmemglijkfgkoiokiiokim [2019-02-14] CHR Extension: (Flashcontrol) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidmkgnfgnkihnjeklbekckimkipmoe [2019-02-14] CHR Extension: (Extensión Protección de aplicaciones) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfjnknhkkiafjajicegabkbimfhplplj [2019-03-16] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-14] CHR Extension: (Canvas Blocker (Fingerprint protect)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nomnklagbgmgghhjidfhnoelnjfndfpd [2019-02-14] CHR Extension: (Privacy Possum) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ommfjecdpepadiafbnidoiggfpbnkfbj [2019-03-14] CHR Extension: (uBlock Origin Extra) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgdnlhfefecpicbbihgmbmffkjpaplco [2019-02-14] CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-02-14] CHR Extension: (Chrome Media Router) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-14] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.01\atkexComSvc.exe [382424 2018-02-06] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] (ASUSTeK Computer Inc. -> ) [File not signed] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11129928 2019-03-06] (Microsoft Corporation -> Microsoft Corporation) R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed] R2 HPSIService; C:\WINDOWS\system32\HPSIsvc.exe [126880 2012-09-26] (Hewlett-Packard Company -> HP) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2017-11-09] (Intel(R) Rapid Storage Technology -> Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation) R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [506368 2017-10-26] (Intel Corporation) [File not signed] S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [5455760 2019-02-18] (Paramount Software UK Ltd -> Paramount Software UK Ltd) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [790568 2019-01-30] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [790568 2019-01-30] (NVIDIA Corporation -> NVIDIA Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5381128 2019-03-02] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\NisSrv.exe [4098064 2019-02-22] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MsMpEng.exe [113992 2019-02-22] (Microsoft Corporation -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976 2015-06-03] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2019-03-02] (Zemana D.O.O. Sarajevo -> Copyright 2018.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-05-08] (ASUSTeK Computer Inc. -> ) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2019-03-04] (SurfRight B.V. -> ) S0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1092112 2018-07-13] (Intel(R) Rapid Storage Technology -> Intel Corporation) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2012-09-26] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_9c0cfd0baad9a756\nvlddmkm.sys [20736440 2019-03-11] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-01-16] (NVIDIA Corporation -> NVIDIA Corporation) S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [45152 2018-11-01] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation) S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [44976 2018-06-01] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [453192 2019-02-08] (NVIDIA Corporation -> NVIDIA Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46472 2019-02-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [333792 2019-02-22] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [62432 2019-02-22] (Microsoft Windows -> Microsoft Corporation) S3 CSDeviceControl; \SystemRoot\System32\drivers\CSDeviceControl.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-03-20 03:19 - 2019-03-20 03:19 - 000028613 _____ C:\Users\User\Desktop\FRST.txt 2019-03-20 03:19 - 2019-03-20 03:19 - 000000000 ____D C:\FRST 2019-03-20 03:18 - 2019-03-20 03:18 - 002434048 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2019-03-20 02:46 - 2019-03-20 02:46 - 000001552 _____ C:\Users\User\Desktop\MBAMReport.txt 2019-03-19 18:31 - 2019-03-19 18:32 - 000000000 ____D C:\AdwCleaner 2019-03-19 18:31 - 2019-03-19 18:31 - 007316688 _____ (Malwarebytes) C:\Users\User\Desktop\adwcleaner_7.2.7.0.exe 2019-03-19 18:21 - 2019-03-19 18:21 - 000000585 _____ C:\DelFix.txt 2019-03-19 18:03 - 2019-03-19 18:03 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-03-19 18:03 - 2019-03-19 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-03-19 18:03 - 2019-02-01 11:20 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2019-03-19 18:03 - 2019-01-08 15:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2019-03-19 17:09 - 2019-03-19 17:09 - 000000000 ____D C:\WINDOWS\LastGood 2019-03-19 16:15 - 2019-02-14 21:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.bak 2019-03-19 16:14 - 2019-03-19 16:14 - 000002202 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Complete Internet Repair.lnk 2019-03-19 16:14 - 2019-03-19 16:14 - 000002178 _____ C:\Users\User\Desktop\Complete Internet Repair.lnk 2019-03-19 16:14 - 2019-03-19 16:14 - 000000000 ____D C:\Users\User\AppData\Roaming\Rizonesoft 2019-03-19 16:14 - 2019-03-19 16:14 - 000000000 ____D C:\Program Files\Rizonesoft 2019-03-19 15:19 - 2019-03-19 15:19 - 000001492 _____ C:\ipconfig.txt 2019-03-19 15:09 - 2019-03-19 15:09 - 000000000 ____D C:\Users\User\AppData\Local\ElevatedDiagnostics 2019-03-19 15:06 - 2019-03-19 15:06 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2019-03-19 15:04 - 2019-03-19 15:04 - 000000000 ____D C:\Users\User\AppData\Roaming\Macromedia 2019-03-19 05:56 - 2019-03-19 05:56 - 000000059 _____ C:\tracert.txt 2019-03-18 15:14 - 2019-03-18 15:14 - 000000000 ____D C:\Users\User\AppData\Local\OneDrive 2019-03-17 21:45 - 2019-03-17 21:45 - 000000601 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk 2019-03-17 21:45 - 2019-03-17 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2019-03-17 20:33 - 2019-03-17 20:33 - 000000000 ____D C:\Users\User\OneDrive - 广厚设计学校\Documentos\Heroes of the Storm 2019-03-17 15:38 - 2019-03-17 15:38 - 000000533 _____ C:\Users\Public\Desktop\StarCraft II.lnk 2019-03-17 15:38 - 2019-03-17 15:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II 2019-03-17 14:48 - 2019-03-17 14:48 - 000000000 ____D C:\Users\User\OneDrive - 广厚设计学校\Documentos\StarCraft II 2019-03-17 14:33 - 2019-03-17 14:33 - 000000501 _____ C:\Users\User\Desktop\StarCraft.lnk 2019-03-17 11:11 - 2019-03-17 11:11 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-03-17 11:11 - 2019-03-17 11:11 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2019-03-17 11:11 - 2019-03-17 11:11 - 000000000 ____D C:\Users\User\AppData\Local\Mozilla 2019-03-17 11:11 - 2019-03-17 11:11 - 000000000 ____D C:\ProgramData\Mozilla 2019-03-17 11:11 - 2019-03-17 11:11 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-03-17 09:14 - 2019-03-17 09:14 - 000000000 ____D C:\Users\User\AppData\Local\IsolatedStorage 2019-03-17 08:44 - 2019-03-17 08:44 - 000000434 __RSH C:\ProgramData\ntuser.pol 2019-03-17 03:13 - 2019-03-17 12:18 - 000000000 ____D C:\Program Files\Malwarebytes 2019-03-16 18:28 - 2019-03-17 04:34 - 000000000 ____D C:\ProgramData\Sentinel 2019-03-16 17:02 - 2019-03-16 17:02 - 000000000 ____D C:\Users\User\.idlerc 2019-03-15 06:49 - 2019-03-15 06:49 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-03-14 15:47 - 2019-03-01 04:14 - 000133432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2019-03-14 15:44 - 2019-03-11 03:19 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 000456904 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2019-03-14 15:44 - 2019-03-11 03:19 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2019-03-14 15:44 - 2019-03-11 03:19 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe 2019-03-14 15:44 - 2019-03-11 03:19 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2019-03-14 15:44 - 2019-03-11 03:19 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2019-03-14 15:44 - 2019-03-11 03:17 - 001464736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2019-03-14 15:44 - 2019-03-11 03:17 - 001130400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2019-03-14 15:44 - 2019-03-11 03:17 - 000668664 _____ C:\WINDOWS\system32\nvofapi64.dll 2019-03-14 15:44 - 2019-03-11 03:17 - 000631440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2019-03-14 15:44 - 2019-03-11 03:17 - 000534936 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2019-03-14 15:44 - 2019-03-11 03:17 - 000522144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 040234912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 035140488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 010319896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 008785128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 005274584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 004625552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 002033240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001734560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6441935.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001535960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001471624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001468048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6441935.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001462024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001169144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001152032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 001145536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000915304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000822784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000794656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000752728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000638384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2019-03-14 15:44 - 2019-03-11 03:16 - 000611920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2019-03-14 15:44 - 2019-03-11 03:15 - 020106384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2019-03-14 15:44 - 2019-03-11 03:15 - 017434264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 026810368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 023440896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 020814848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 019023872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 017520640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 015224320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 012857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 012151296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 009683256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 007882240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 006548168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 006069760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 005436184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 004883968 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 004689408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 004588744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 003983360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 003923456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 003744256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 003551408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 003382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 003378488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 002926904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 002776712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 002689536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 002626360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 002488320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 002437344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 002275680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 002187776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 002021584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001860608 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001701376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001604096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001496064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001199104 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 001054200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 001043256 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000895048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000726416 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000655160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000649272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2019-03-14 14:24 - 2019-03-14 14:24 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000508216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000474936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2019-03-14 14:24 - 2019-03-14 14:24 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000444728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-03-14 14:24 - 2019-03-14 14:24 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000419128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2019-03-14 14:24 - 2019-03-14 14:24 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000386872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000090424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll 2019-03-14 14:24 - 2019-03-14 14:24 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2019-03-14 14:24 - 2019-03-14 14:24 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2019-03-04 09:23 - 2019-03-04 09:23 - 000000000 ____D C:\ProgramData\Emsisoft 2019-03-04 08:48 - 2019-03-04 08:48 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6 2019-03-04 08:48 - 2019-03-04 08:48 - 000000000 ____D C:\Users\User\AppData\Local\Package Cache 2019-03-04 08:46 - 2019-03-18 10:50 - 000000000 ____D C:\Users\User\AppData\Roaming\qBittorrent 2019-03-04 08:46 - 2019-03-04 08:48 - 000000000 ____D C:\Users\User\AppData\Local\qBittorrent 2019-03-04 08:46 - 2019-03-04 08:46 - 000000889 _____ C:\Users\Public\Desktop\qBittorrent.lnk 2019-03-04 08:46 - 2019-03-04 08:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2019-03-04 08:46 - 2019-03-04 08:46 - 000000000 ____D C:\Program Files\qBittorrent 2019-03-04 08:07 - 2019-03-04 08:07 - 000000272 _____ C:\WINDOWS\system32\.crusader 2019-03-04 08:02 - 2019-03-16 14:50 - 000000000 ____D C:\ProgramData\HitmanPro 2019-03-04 08:02 - 2019-03-04 08:09 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys 2019-03-03 20:52 - 2019-03-03 20:52 - 000000000 ____D C:\ProgramData\CSIS 2019-03-03 17:50 - 2019-03-03 20:53 - 000000000 ____D C:\Program Files (x86)\Heimdal 2019-03-03 17:50 - 2019-03-03 18:18 - 000000000 ____D C:\WINDOWS\SysWOW64\Heimdal Security 2019-03-03 17:49 - 2019-03-03 17:50 - 000000000 ____D C:\ProgramData\Heimdal Security 2019-03-03 10:39 - 2019-03-20 03:18 - 000000000 ____D C:\Users\User\Desktop\Nueva carpeta 2019-03-02 12:34 - 2019-03-02 12:34 - 004920832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 003566080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 002752360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 002469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 002323688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 002278240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001969152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001294856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001289192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001258808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2019-03-02 12:34 - 2019-03-02 12:34 - 001077912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 001072720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000866152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCacheProvider.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000421688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSh.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeerDistSh.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeerDist.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistWSDDiscoProv.dll 2019-03-02 12:34 - 2019-03-02 12:34 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 024616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 022114960 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 019284480 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 009670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 008875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007897088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007688088 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007647256 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007556392 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 007251456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 005915936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 005588184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 005566464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 005296640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 004245280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 003761664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003729808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 003660288 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003652656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003504128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003427840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003399168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 003108864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002871312 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 002842112 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002766648 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002720768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 002700792 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002637312 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 002630656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002447360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002199864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002141184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002073240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002044416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002013696 _____ C:\WINDOWS\system32\rdpnano.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 002001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001994760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001931264 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001893888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001782272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001751352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001742104 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001711616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001697744 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-03-02 12:33 - 2019-03-02 12:33 - 001672704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001644048 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001612600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001590072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001572176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001563336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001522488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001506816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001481488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001479480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001468440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 001457544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001403920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001360696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 001341880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2019-03-02 12:33 - 2019-03-02 12:33 - 001332224 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001296576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001272552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001267712 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 001208320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001191512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001179168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 001177088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001176064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 001098128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001087800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001078072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001056272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001047040 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001022616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2019-03-02 12:33 - 2019-03-02 12:33 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000918032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2019-03-02 12:33 - 2019-03-02 12:33 - 000902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000888120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000871792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000865568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000860160 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2019-03-02 12:33 - 2019-03-02 12:33 - 000850760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000836096 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000833064 _____ C:\WINDOWS\system32\InputHost.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000831288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000817464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000808464 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000790328 _____ (Microsoft Corporation) C:\WINDOWS\system32\upshared.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000772408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000764216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000757664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000745984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000741888 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000735760 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000652824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000651576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000649528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000646632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000619832 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000605496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000604336 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000591832 _____ C:\WINDOWS\SysWOW64\InputHost.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000511800 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000505656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000484976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000460304 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000449368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000404792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000395064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000355360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000336744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000330464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000322576 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000279376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000271360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000262456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000246584 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpprov.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngctasks.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVemgr.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000169784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000147256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000138960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000115152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2019-03-02 12:33 - 2019-03-02 12:33 - 000035640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2019-03-02 12:33 - 2019-03-02 12:33 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBioSysprep.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rfxvmt.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2019-03-02 12:33 - 2019-03-02 12:33 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2019-02-26 11:49 - 2019-03-02 08:37 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys 2019-02-26 11:49 - 2019-03-02 08:37 - 000000000 ____D C:\Users\User\AppData\Local\AMSDK 2019-02-26 10:00 - 2019-02-26 10:00 - 000000000 ____D C:\Users\User\AppData\Local\ESET 2019-02-25 21:08 - 2019-02-25 21:08 - 000000000 ____D C:\Users\User\AppData\Local\DBG 2019-02-25 07:01 - 2019-02-25 07:01 - 000001273 _____ C:\Users\User\Desktop\CrystalDiskInfo.lnk 2019-02-25 07:01 - 2019-02-25 07:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2019-02-25 07:01 - 2019-02-25 07:01 - 000000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2019-02-25 06:44 - 2019-02-25 06:44 - 000001036 _____ C:\Users\User\Desktop\TechPowerUp GPU-Z.lnk 2019-02-25 06:44 - 2019-02-25 06:44 - 000000000 ____D C:\Users\User\AppData\Roaming\NVIDIA 2019-02-25 06:44 - 2019-02-25 06:44 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2019-02-25 06:43 - 2019-02-25 06:44 - 000000000 ____D C:\Program Files (x86)\GPU-Z 2019-02-24 16:29 - 2019-02-24 16:29 - 000000000 ____D C:\ProgramData\Agnitum 2019-02-23 07:15 - 2019-02-21 07:16 - 001468184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6441917.dll 2019-02-23 07:14 - 2019-02-21 07:16 - 001734240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6441917.dll 2019-02-21 17:56 - 2019-02-21 17:56 - 000000000 ____D C:\Users\User\OneDrive - 广厚设计学校\Documentos\Plantillas personalizadas de Office 2019-02-19 17:53 - 2019-02-19 17:53 - 000007606 _____ C:\Users\User\AppData\Local\Resmon.ResmonCfg 2019-02-19 15:38 - 2019-03-19 05:51 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache 2019-02-19 10:08 - 2019-02-19 10:09 - 000012379 _____ C:\WINDOWS\Macrium Reflect Patch Log.txt 2019-02-18 11:06 - 2019-02-15 09:01 - 000179416 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\PSMounterEx.sys 2019-02-18 11:06 - 2018-12-27 07:27 - 000083192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\MRCBT.sys 2019-02-18 11:06 - 2018-12-13 16:26 - 000062832 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\mrigflt.sys 2019-02-18 11:06 - 2018-09-18 06:39 - 000064856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\MRVDP.sys ==================== One month (modified) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-03-20 03:06 - 2019-02-14 21:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-03-20 02:30 - 2019-02-15 09:43 - 000000000 ____D C:\Program Files (x86)\Hard Disk Sentinel 2019-03-20 02:24 - 2019-02-14 18:34 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-03-19 18:41 - 2019-02-14 21:29 - 000784288 _____ C:\WINDOWS\system32\perfh00A.dat 2019-03-19 18:41 - 2019-02-14 21:29 - 000153256 _____ C:\WINDOWS\system32\perfc00A.dat 2019-03-19 18:41 - 2019-02-14 21:25 - 000000000 ____D C:\WINDOWS\INF 2019-03-19 18:41 - 2019-02-14 18:43 - 001771048 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-03-19 18:37 - 2019-02-14 18:34 - 000000000 ____D C:\ProgramData\NVIDIA 2019-03-19 18:36 - 2019-02-14 18:45 - 000000000 ____D C:\Users\User\AppData\Local\Battle.net 2019-03-19 18:35 - 2019-02-14 21:22 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-03-19 18:35 - 2019-02-14 18:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-03-19 18:35 - 2019-02-14 18:34 - 000001575 _____ C:\WINDOWS\system32\config\VSMIDK 2019-03-19 18:03 - 2019-02-14 21:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-03-19 18:02 - 2019-02-15 13:01 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-03-19 17:20 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-03-19 17:18 - 2019-02-15 07:41 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2019-03-19 16:04 - 2019-02-14 18:50 - 000000000 ____D C:\ProgramData\Package Cache 2019-03-19 15:49 - 2019-02-14 21:26 - 000000000 ___HD C:\Program Files\WindowsApps 2019-03-19 15:49 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-03-19 07:47 - 2019-02-02 07:33 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla 2019-03-17 12:19 - 2019-02-14 19:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-03-17 11:11 - 2019-02-14 19:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Mozilla 2019-03-17 08:43 - 2019-02-14 21:26 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2019-03-16 15:27 - 2019-02-14 19:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2019-03-16 07:10 - 2019-02-14 19:31 - 000001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2019-03-16 07:06 - 2019-02-14 19:18 - 000000000 ____D C:\Users\User\AppData\Local\PlaceholderTileLogoFolder 2019-03-16 07:06 - 2019-02-14 18:42 - 000000000 ____D C:\Users\User\AppData\Local\Packages 2019-03-16 07:06 - 2019-02-14 18:42 - 000000000 ____D C:\ProgramData\Packages 2019-03-15 17:40 - 2019-02-14 19:44 - 000000000 ____D C:\Program Files\Microsoft Office 2019-03-15 14:06 - 2019-02-14 18:44 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2947481483-1064858154-3000073182-1001 2019-03-15 14:06 - 2019-02-14 18:36 - 000002364 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-03-15 14:06 - 2018-11-26 11:15 - 000000000 ___RD C:\Users\User\OneDrive 2019-03-15 06:58 - 2019-02-14 19:42 - 000000000 ____D C:\Program Files\WinRAR 2019-03-15 06:49 - 2018-12-10 10:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2019-03-14 16:16 - 2018-11-26 12:27 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-03-14 16:16 - 2018-11-26 12:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-03-14 15:48 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-03-14 15:47 - 2019-02-14 18:34 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-03-14 15:47 - 2019-02-14 18:34 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2019-03-14 15:47 - 2019-01-18 14:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2019-03-14 14:31 - 2019-02-14 21:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2019-03-14 14:25 - 2019-02-14 21:22 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-03-14 14:21 - 2019-02-14 22:15 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-03-14 14:19 - 2019-02-14 22:15 - 127411920 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-03-14 14:07 - 2019-02-14 19:24 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-03-14 14:07 - 2019-02-14 19:24 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-03-11 03:15 - 2019-02-14 07:27 - 005042904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2019-03-11 03:15 - 2019-02-14 07:27 - 004301480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2019-03-02 21:45 - 2019-02-14 21:27 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-03-02 21:45 - 2019-02-14 21:27 - 000179608 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2019-03-02 12:36 - 2019-02-14 18:34 - 000438880 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-03-02 12:36 - 2018-11-26 11:14 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-03-02 12:36 - 2018-11-26 11:14 - 000000000 ___RD C:\Users\User\3D Objects 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ___RD C:\Program Files\Windows Defender 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\TextInput 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-03-02 12:35 - 2019-02-14 21:26 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2019-03-02 12:34 - 2019-02-14 21:22 - 000000000 ____D C:\WINDOWS\servicing 2019-03-02 12:33 - 2019-02-14 18:38 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2019-03-01 07:36 - 2019-02-14 18:50 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat 2019-03-01 07:36 - 2019-02-14 07:27 - 000049834 _____ C:\WINDOWS\system32\nvinfo.pb 2019-03-01 04:15 - 2019-02-14 18:34 - 005364592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 002625008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 000651248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 000450872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 000125424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2019-03-01 04:15 - 2019-02-14 18:34 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2019-02-27 13:50 - 2019-02-14 18:34 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2019-02-26 07:36 - 2019-02-14 18:34 - 008514902 _____ C:\WINDOWS\system32\nvcoproc.bin 2019-02-24 09:10 - 2019-02-14 18:59 - 000000000 ____D C:\ProgramData\SS3 2019-02-22 18:53 - 2019-02-14 18:51 - 000000000 ____D C:\Users\User\AppData\Local\NVIDIA Corporation 2019-02-22 18:39 - 2019-02-14 18:37 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2019-02-21 13:07 - 2018-11-26 17:15 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-02-20 06:33 - 2019-02-15 11:38 - 000000000 ____D C:\Users\User\AppData\Local\Deployment 2019-02-19 16:23 - 2019-02-14 18:45 - 000000000 ____D C:\ProgramData\Battle.net ==================== Files in the root of some directories ======= 2019-02-19 17:53 - 2019-02-19 17:53 - 000007606 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg Some files in TEMP: ==================== 2019-03-14 15:44 - 2019-02-20 08:27 - 000399344 _____ (NVIDIA Corporation) C:\Users\User\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\dllhost.exe => File is digitally signed C:\WINDOWS\SysWOW64\dllhost.exe => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End of FRST.txt ============================