Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-12-2019 Ran by Guillermo (administrator) on GUILLERMO-PC (SAMSUNG ELECTRONICS CO.,LTD Samsung DeskTop System) (06-12-2019 21:25:52) Running from C:\Users\Guillermo\Desktop Loaded Profiles: Guillermo (Available Profiles: Guillermo) Platform: Windows 10 Pro Version 1903 18362.476 (X64) Language: Español (México) Default browser: Chrome Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) () [File not signed] C:\Program Files (x86)\USBAntivirus\USBAntivirus.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\87.3.125\QtWebEngineProcess.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\87.3.125\QtWebEngineProcess.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\87.3.125\QtWebEngineProcess.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\79.0.3945.10\remoting_host.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\79.0.3945.10\remoting_host.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Mega Limited -> Mega Limited) C:\Users\Guillermo\AppData\Local\MEGAsync\MEGAsync.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.35.14003.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.35.14003.0_x64__8wekyb3d8bbwe\GameBarFT.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotification.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotificationUx.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Nero 2019\Nero BackItUp\NBService.exe (Nitro Software, Inc. -> ) C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe (Nitro Software, Inc. -> Nitro Software, Inc.) C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe (Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (WhatsApp, Inc -> WhatsApp) C:\Users\Guillermo\AppData\Local\WhatsApp\app-0.3.9308\WhatsApp.exe (WhatsApp, Inc -> WhatsApp) C:\Users\Guillermo\AppData\Local\WhatsApp\app-0.3.9308\WhatsApp.exe (WhatsApp, Inc -> WhatsApp) C:\Users\Guillermo\AppData\Local\WhatsApp\app-0.3.9308\WhatsApp.exe (WhatsApp, Inc -> WhatsApp) C:\Users\Guillermo\AppData\Local\WhatsApp\app-0.3.9308\WhatsApp.exe (ZTE CORPORATION -> ) C:\Program Files (x86)\Android_USB_Driver_Z\Bin\MonServiceUDisk.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381792 2017-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [180736 2019-10-03] (ESET, spol. s r.o. -> ESET) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6268224 2019-12-04] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [USBAntivirus.exe] => C:\Program Files (x86)\USBAntivirus\USBAntivirus.exe [3788800 2012-05-19] () [File not signed] HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [6788032 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-1651002052-1764723500-360319929-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [47774856 2019-10-24] (Google LLC -> ) HKU\S-1-5-21-1651002052-1764723500-360319929-1001\...\Run: [FreeAC] => C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe [3015072 2016-01-19] (Comfort Software Group -> Comfort Software Group) HKU\S-1-5-21-1651002052-1764723500-360319929-1001\...\Run: [WhatsApp] => C:\Users\Guillermo\AppData\Local\WhatsApp\Update.exe [2253232 2019-11-26] (WhatsApp, Inc -> ) HKU\S-1-5-21-1651002052-1764723500-360319929-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-18] (Google LLC -> Google LLC) Startup: C:\Users\Guillermo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2018-05-21] ShortcutTarget: MEGAsync.lnk -> C:\Users\Guillermo\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) BootExecute: autocheck autochk * sdnclean64.exe FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {01318218-7D08-4361-8171-F5E4659AB748} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-21] (Google Inc -> Google Inc.) Task: {26D99536-2074-4167-8E81-DDD919F25CDB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [7651984 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {320A9A05-90A4-4012-AE85-C4DB8C131FFE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {464E6213-7B58-43B8-90A8-946D5457F284} - System32\Tasks\RealDownloader Update Check => C:\Program Files (x86)\Real\RealDownloader\downloader2.exe Task: {54080E35-A275-4F60-8A2F-4B9FFF26F28E} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe Task: {59B7DE41-B041-48F7-9E3F-832D6449D89D} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1651002052-1764723500-360319929-1001 => C:\Users\Guillermo\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2019-09-16] (Mega Limited -> Mega Limited) Task: {5DCCDFAA-A8D3-4FB4-BBFB-4896D7417102} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GUILLERMO-PC-Guillermo Guillermo-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [469640 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {6635A74D-A392-4702-B62C-EF1B166D9772} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [6944304 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {66FEA199-EA85-4EDA-808C-793C1928BAB8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {7A07FD4C-4F58-41B5-9EAA-97DC63B9B66A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {7BD02AE3-4194-415B-931C-3E8F86F0EB52} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1642672 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {7C72E093-CC06-4B4C-A5E5-AF6109DCEE3D} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Guillermo\Downloads\esetonlinescanner_esn.exe [8162616 2019-12-05] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {817710FF-C7BD-4D96-8ACE-409A17E5A91A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {83DDB7B0-57CE-4454-A951-32247D649E83} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-21] (Google Inc -> Google Inc.) Task: {9AD2D5FE-AA23-48C1-AD8F-C03DB770F28B} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) Task: {A538358E-3BE8-4824-A191-0AE0684839F4} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [7192192 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {A97DE738-AA14-4569-AC9F-207C3FE6C9BE} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [5733888 2019-09-08] () [File not signed] Task: {D32870D9-EA9B-4262-8792-31BAB5DD3F48} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software) Task: {D5BC5883-3F2A-4F4F-A642-BF2AEE95342E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {EEE6A3CA-259F-443E-A23F-826CA56472DD} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {FC2225E9-CD27-4D47-A673-2405782AA2D3} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {FDA33CF5-0F23-4D10-B701-622925007DBC} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Guillermo\Downloads\esetonlinescanner_esn.exe [8162616 2019-12-05] (ESET, spol. s r.o. -> ESET spol. s r.o.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 200.42.4.198 200.49.130.41 200.49.130.41 Tcpip\..\Interfaces\{0d3ce1e5-7863-410a-a577-bbf978dd933e}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{5869d513-b64f-4495-adb7-e4f591bc50ff}: [DhcpNameServer] 200.42.4.198 200.49.130.41 200.49.130.41 Internet Explorer: ================== BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-16] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR HomePage: Profile 1 -> hxxp://www.google.com/ CHR StartupUrls: Profile 1 -> "hxxps://www.google.com.ar/?gfe_rd=cr&ei=jUAOWJmjJpSDxgT8mYFg&gws_rd=ssl","hxxps://mail.ru/cnt/10445?gp=811570","hxxps://www.google.com/" CHR Notifications: Profile 1 -> hxxps://www.facebook.com; hxxps://www.youtube.com CHR Profile: C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default [2019-12-06] CHR Extension: (Presentaciones) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-21] CHR Extension: (Documentos) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-21] CHR Extension: (Google Drive) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-05-21] CHR Extension: (MEGA) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2019-11-29] CHR Extension: (YouTube) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-21] CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-11-02] CHR Extension: (Dropbox para Gmail) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2019-11-02] CHR Extension: (Hojas de cálculo) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-21] CHR Extension: (Escritorio Remoto de Chrome) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-08-11] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-27] CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-11-29] CHR Extension: (Chrome Remote Desktop) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2019-07-02] CHR Extension: (Tomatoes) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jijbhneeenepenoolcdalnekggeialeo [2018-05-21] CHR Extension: (Botón de Google Académico) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldipcbpaocekfooobnbcddclnhejkcpn [2018-05-21] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2018-05-21] CHR Extension: (Google Dictionary (by Google)) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2018-05-21] CHR Extension: (Google Mail Checker) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2018-05-21] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Outlook.com) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfpeapihoiogbcmdmnibeplnikfnhoge [2018-05-21] CHR Extension: (Gmail) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-15] CHR Extension: (Chrome Media Router) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-14] CHR Extension: (Sci-Hub) - C:\Users\Guillermo\Downloads\Sci-Hub\Sci-Hub [2019-03-01] [UpdateUrl:hxxps://sci-hub.se/update] <==== ATTENTION CHR Profile: C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-12-06] CHR Extension: (Presentaciones) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-25] CHR Extension: (Documentos) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-25] CHR Extension: (Google Drive) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-25] CHR Extension: (MEGA) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2019-12-04] CHR Extension: (YouTube) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-25] CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-12-04] CHR Extension: (Dropbox para Gmail) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2019-12-04] CHR Extension: (Hojas de cálculo) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-25] CHR Extension: (Escritorio Remoto de Chrome) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-12-04] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-10-15] CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-06] CHR Extension: (Chrome Remote Desktop) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2019-12-04] CHR Extension: (Botón de Google Académico) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ldipcbpaocekfooobnbcddclnhejkcpn [2019-12-04] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2019-04-25] CHR Extension: (Google Dictionary (by Google)) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2019-12-04] CHR Extension: (Google Mail Checker) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2019-12-04] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-15] CHR Extension: (Simple EPUB Reader) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ojhbgcchcbdjdenibfmjofobklkkhofc [2019-12-04] CHR Extension: (Outlook.com) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pfpeapihoiogbcmdmnibeplnikfnhoge [2019-12-04] CHR Extension: (Gmail) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-25] CHR Extension: (Chrome Media Router) - C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-04] CHR Profile: C:\Users\Guillermo\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-06] CHR HKU\S-1-5-21-1651002052-1764723500-360319929-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6085360 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\79.0.3945.10\remoting_host.exe [74392 2019-10-24] (Google LLC -> Google Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-21] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-21] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2019-12-04] (Dropbox, Inc -> Dropbox, Inc.) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2243136 2019-10-03] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2243136 2019-10-03] (ESET, spol. s r.o. -> ESET) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-11-29] (Malwarebytes Inc -> Malwarebytes) R2 NeroBackItUpBackgroundService2019; C:\Program Files (x86)\Nero\Nero 2019\Nero BackItUp\NBService.exe [287000 2018-08-07] (Nero AG -> Nero AG) R2 NitroDriverReadSpool10; C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe [327320 2016-07-22] (Nitro Software, Inc. -> Nitro Software, Inc.) R2 NitroUpdateService; C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe [417944 2016-07-22] (Nitro Software, Inc. -> ) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3892256 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [3943664 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233712 2018-02-06] (Safer-Networking Ltd. -> Safer-Networking Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 UDisk Monitor Z5 Phone; C:\Program Files (x86)\Android_USB_Driver_Z\Bin\MonServiceUDisk.exe [585416 2013-11-18] (ZTE CORPORATION -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-08-12] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37616 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [204824 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [209552 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [65120 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2019-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42736 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [161544 2019-11-01] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110320 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83792 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848432 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460448 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [236024 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316528 2019-10-03] (AVAST Software s.r.o. -> AVAST Software) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149944 2019-10-03] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [103264 2019-10-03] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189512 2019-10-03] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50712 2019-10-03] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [77184 2019-10-03] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [114136 2019-10-03] (ESET, spol. s r.o. -> ESET) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2019-12-03] (Malwarebytes Corporation -> Malwarebytes) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [216544 2019-12-03] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-11-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [224408 2019-12-06] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73584 2019-12-06] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [278344 2019-12-06] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [116832 2019-12-06] (Malwarebytes Corporation -> Malwarebytes) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1118648 2018-09-19] (Realtek Semiconductor Corp. -> Realtek ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-08-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344288 2019-08-12] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) =================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-06 16:10 - 2019-12-06 16:10 - 000003765 _____ C:\Users\Guillermo\Desktop\AdwCleaner[S29].txt 2019-12-06 16:10 - 2019-12-06 16:10 - 000002984 _____ C:\Users\Guillermo\Desktop\AdwCleaner[C00].txt 2019-12-06 16:07 - 2019-12-06 16:07 - 000001554 _____ C:\Users\Guillermo\Desktop\Malware bytes personalizado.txt 2019-12-06 15:58 - 2019-12-06 15:58 - 000003115 _____ C:\Users\Guillermo\Desktop\Malware2.txt 2019-12-06 12:02 - 2019-12-06 12:02 - 000002979 _____ C:\Users\Guillermo\Desktop\Malware 2.txt 2019-12-06 11:29 - 2019-12-06 11:29 - 000003523 _____ C:\Users\Guillermo\Desktop\Malware.txt 2019-12-06 01:14 - 2019-12-06 01:14 - 000002016 _____ C:\Users\Public\Desktop\ESET Protección de pagos y banca online.lnk 2019-12-06 01:06 - 2019-12-06 01:06 - 000003822 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2019-12-06 01:06 - 2019-12-06 01:06 - 000003380 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2019-12-06 00:20 - 2019-12-06 00:20 - 000278344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2019-12-06 00:20 - 2019-12-06 00:20 - 000224408 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2019-12-06 00:20 - 2019-12-06 00:20 - 000116832 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2019-12-06 00:20 - 2019-12-06 00:20 - 000073584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2019-12-05 23:46 - 2019-12-05 23:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2019-12-05 23:46 - 2019-12-05 23:46 - 000000000 ____D C:\ProgramData\ESET 2019-12-05 23:46 - 2019-12-05 23:46 - 000000000 ____D C:\Program Files\ESET 2019-12-05 23:40 - 2019-12-06 00:29 - 000000716 _____ C:\Users\Guillermo\Desktop\ESET Online Scanner.lnk 2019-12-05 23:40 - 2019-12-05 23:48 - 000000000 ____D C:\Users\Guillermo\AppData\Local\ESET 2019-12-05 23:40 - 2019-12-05 23:40 - 000000815 _____ C:\Users\Guillermo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2019-12-05 23:39 - 2019-12-05 23:39 - 008162616 _____ (ESET spol. s r.o.) C:\Users\Guillermo\Downloads\esetonlinescanner_esn.exe 2019-12-05 23:29 - 2019-12-05 23:29 - 000002475 _____ C:\Users\Guillermo\Desktop\resultados.txt 2019-12-05 17:55 - 2019-12-05 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2019-12-04 09:52 - 2019-12-04 09:52 - 000051024 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2019-12-04 09:52 - 2019-12-04 09:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2019-12-04 09:52 - 2019-12-04 09:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2019-12-04 09:52 - 2019-12-04 09:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2019-12-04 02:41 - 2019-12-06 00:20 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2019-12-04 02:41 - 2019-12-05 02:06 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2019-12-04 02:41 - 2019-12-04 02:41 - 000001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2019-12-04 02:41 - 2019-12-04 02:41 - 000001448 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2019-12-04 02:41 - 2019-12-04 02:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2019-12-04 02:41 - 2019-12-04 02:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2019-12-04 02:41 - 2018-02-06 19:04 - 000032168 _____ (Safer-Networking Ltd.) C:\WINDOWS\system32\sdnclean64.exe 2019-12-04 02:39 - 2019-12-04 02:40 - 069910960 _____ (Safer-Networking Ltd. ) C:\Users\Guillermo\Downloads\spybotsd-2.7.64.0.exe 2019-12-04 02:32 - 2019-12-04 02:32 - 000001079 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2019-12-04 02:32 - 2019-12-04 02:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2019-12-04 02:32 - 2019-12-04 02:32 - 000000000 ____D C:\Program Files\VS Revo Group 2019-12-04 02:31 - 2019-12-04 02:31 - 007411912 _____ (VS Revo Group ) C:\Users\Guillermo\Downloads\revosetup.exe 2019-12-04 01:45 - 2019-12-04 01:52 - 000853328 _____ C:\TDSSKiller.3.1.0.28_04.12.2019_01.45.53_log.txt 2019-12-04 01:43 - 2019-12-04 01:44 - 000005880 _____ C:\TDSSKiller.3.1.0.28_04.12.2019_01.43.51_log.txt 2019-12-04 01:35 - 2019-12-04 01:38 - 000156968 _____ C:\TDSSKiller.3.1.0.28_04.12.2019_01.35.31_log.txt 2019-12-03 19:39 - 2019-12-03 19:47 - 000042024 _____ C:\Users\Guillermo\Desktop\Addition.txt 2019-12-03 19:33 - 2019-12-06 21:30 - 000034158 _____ C:\Users\Guillermo\Desktop\FRST.txt 2019-12-03 19:33 - 2019-12-06 21:25 - 000000000 ____D C:\Users\Guillermo\Desktop\FRST-OlderVersion 2019-12-03 19:32 - 2019-12-06 21:28 - 000000000 ____D C:\FRST 2019-12-03 19:12 - 2019-12-03 19:12 - 000216544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2019-12-03 19:09 - 2019-12-03 19:09 - 000174935 _____ C:\Users\Guillermo\Desktop\PUP.Optional.MailRu _ PROBLEMA PERSISTENTE - Eliminar Malwares - ForoSpyware.pdf 2019-12-03 19:07 - 2019-12-03 19:07 - 008218800 _____ (Malwarebytes) C:\Users\Guillermo\Downloads\adwcleaner_8.0.0.exe 2019-12-03 19:03 - 2019-12-03 19:04 - 001883976 _____ (Malwarebytes) C:\Users\Guillermo\Downloads\MBSetup.exe 2019-12-03 17:09 - 2019-12-03 17:09 - 005470871 _____ C:\Users\Guillermo\Downloads\Finales Bioquímica.zip 2019-12-03 17:09 - 2019-12-03 17:09 - 005386638 _____ C:\Users\Guillermo\Downloads\Dra. Paz, Cristina Orales.pdf 2019-12-03 17:02 - 2019-12-03 17:02 - 000014129 _____ C:\Users\Guillermo\Downloads\Pago Monotributo 12-19.pdf 2019-12-03 16:50 - 2019-12-03 16:50 - 000035731 _____ C:\Users\Guillermo\Downloads\Ferron Factura 12-19.pdf 2019-12-03 16:45 - 2019-12-03 16:45 - 000035794 _____ C:\Users\Guillermo\Downloads\Ferron Factura 11-19.pdf 2019-12-03 11:55 - 2019-12-03 11:55 - 000138929 _____ C:\Users\Guillermo\Downloads\Finales-20191203T145500Z-001.zip 2019-12-03 11:25 - 2019-12-03 11:25 - 000108672 _____ C:\Users\Guillermo\Desktop\efinales.pdf 2019-12-02 02:07 - 2019-12-02 02:07 - 000003698 _____ C:\Users\Guillermo\Desktop\virus.txt 2019-11-29 13:55 - 2019-12-03 19:04 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2019-11-29 13:55 - 2019-11-29 13:55 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-11-29 13:55 - 2019-11-29 13:55 - 000000000 ____D C:\Users\Guillermo\AppData\Local\mbamtray 2019-11-29 13:55 - 2019-11-29 13:55 - 000000000 ____D C:\Users\Guillermo\AppData\Local\mbam 2019-11-29 13:55 - 2019-11-29 13:55 - 000000000 ____D C:\Users\Guillermo\AppData\Local\cache 2019-11-29 13:55 - 2019-11-29 13:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-11-29 13:55 - 2019-11-29 13:54 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2019-11-29 13:54 - 2019-11-29 13:54 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-11-29 13:53 - 2019-11-29 13:53 - 000000000 ____D C:\Program Files\Malwarebytes 2019-11-29 13:43 - 2019-11-29 13:43 - 001883976 _____ (Malwarebytes) C:\Users\Guillermo\Desktop\MBSetup.exe 2019-11-29 13:42 - 2019-12-06 21:25 - 002263552 _____ (Farbar) C:\Users\Guillermo\Desktop\FRST64.exe 2019-11-29 13:42 - 2019-11-29 13:42 - 001790024 _____ (Malwarebytes) C:\Users\Guillermo\Desktop\JRT.exe 2019-11-29 13:23 - 2019-11-29 13:26 - 000153008 _____ C:\TDSSKiller.3.1.0.28_29.11.2019_13.23.36_log.txt 2019-11-29 13:10 - 2019-11-29 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2019 2019-11-29 13:10 - 2019-11-29 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2019-11-29 13:08 - 2019-11-29 13:11 - 000000000 ____D C:\AdwCleaner 2019-11-29 12:27 - 2019-11-29 12:27 - 000001139 _____ C:\Users\Public\Desktop\VLC media player.lnk 2019-11-29 12:25 - 2019-11-29 12:25 - 005054744 _____ (AO Kaspersky Lab) C:\Users\Guillermo\Desktop\tdsskiller.exe 2019-11-29 12:16 - 2019-11-29 12:17 - 008218800 _____ (Malwarebytes) C:\Users\Guillermo\Desktop\adwcleaner_8.0.0.exe 2019-11-26 10:28 - 2019-11-26 10:28 - 000112935 _____ C:\Users\Guillermo\Desktop\Asistentes Reunión CFI 6-11-19.pdf 2019-11-24 14:19 - 2019-11-24 14:19 - 000149911 _____ C:\Users\Guillermo\Desktop\WhatsApp Image 2019-11-24 at 14.18.42.jpeg 2019-11-23 11:55 - 2019-11-23 11:55 - 006243348 _____ C:\Users\Guillermo\Downloads\BIOQUIMICA 1er parcial-20191123T145519Z-001.zip 2019-11-19 23:22 - 2019-11-29 15:27 - 000000000 ____D C:\Users\Guillermo\Downloads\Nora 2019-11-19 10:17 - 2019-11-19 10:17 - 000014279 _____ C:\Users\Guillermo\Downloads\SOLICITUD PROYECTOR (2).xlsx 2019-11-14 01:42 - 2019-11-14 01:42 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 002369552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 002188808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 002158080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001718584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001659192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001495864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001387024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001185792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 001047352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000960040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ManagedEventLogging.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000259384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000230200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CmUtil.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncController.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppCore.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CabUtil.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.EventLogMessages.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAgentPolicyGenerator.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.WmiAccess.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppData.WinRT.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncCommon.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.WinRT.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.LocalSyncProvider.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernSync.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateBaselineGenerator.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateConfigItemGenerator.exe 2019-11-14 01:42 - 2019-11-14 01:42 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SmbSyncProvider.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.MonitorSyncProvider.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncConditions.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2019-11-14 01:42 - 2019-11-14 01:42 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll 2019-11-14 01:42 - 2019-11-14 01:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL 2019-11-14 01:41 - 2019-11-14 01:41 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 006521768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 005763848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-11-14 01:41 - 2019-11-14 01:41 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001664688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001616696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001413864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000816952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000666640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2019-11-14 01:41 - 2019-11-14 01:41 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-11-14 01:41 - 2019-11-14 01:41 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-11-14 01:41 - 2019-11-14 01:41 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2019-11-14 01:41 - 2019-11-14 01:41 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-11-14 01:41 - 2019-11-14 01:41 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2019-11-14 01:41 - 2019-11-14 01:41 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2019-11-14 01:41 - 2019-11-14 01:41 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2019-11-14 01:41 - 2019-11-14 01:41 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2019-11-14 01:41 - 2019-11-14 01:41 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2019-11-14 01:41 - 2019-11-14 01:41 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2019-11-14 01:40 - 2019-11-14 01:40 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2019-11-14 01:40 - 2019-11-14 01:40 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe 2019-11-14 01:40 - 2019-11-14 01:40 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2019-11-14 01:40 - 2019-11-14 01:40 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2019-11-14 01:40 - 2019-11-14 01:40 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2019-11-14 01:40 - 2019-11-14 01:40 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2019-11-14 01:40 - 2019-11-14 01:40 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 007262456 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 002763016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-11-14 01:39 - 2019-11-14 01:39 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001647064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000822200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2019-11-14 01:39 - 2019-11-14 01:39 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys 2019-11-14 01:39 - 2019-11-14 01:39 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2019-11-14 01:39 - 2019-11-14 01:39 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2019-11-14 01:39 - 2019-11-14 01:39 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 007904152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2019-11-14 01:38 - 2019-11-14 01:38 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2019-11-14 01:38 - 2019-11-14 01:38 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2019-11-14 01:38 - 2019-11-14 01:38 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 003968512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2019-11-14 01:37 - 2019-11-14 01:37 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2019-11-14 01:37 - 2019-11-14 01:37 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000065272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS 2019-11-14 01:37 - 2019-11-14 01:37 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll 2019-11-14 01:37 - 2019-11-14 01:37 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2019-11-14 01:37 - 2019-11-14 01:37 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe 2019-11-14 00:57 - 2019-11-14 00:57 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2019-11-14 00:57 - 2019-11-14 00:57 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2019-11-12 17:03 - 2019-11-24 12:02 - 000002725 _____ C:\Users\Guillermo\Desktop\varios.txt 2019-11-09 16:07 - 2019-11-09 16:08 - 000000000 ____D C:\Users\Guillermo\Downloads\Finales Bq ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-06 21:30 - 2018-05-21 18:31 - 000000000 ___HD C:\Users\Guillermo\Desktop\.tmp.drivedownload 2019-12-06 21:24 - 2019-08-11 18:03 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2019-12-06 21:23 - 2019-08-11 17:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-12-06 21:23 - 2018-05-22 00:23 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\WhatsApp 2019-12-06 17:06 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps 2019-12-06 17:06 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-12-06 17:06 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-12-06 15:25 - 2019-02-23 04:29 - 000013233 _____ C:\Users\Guillermo\Documents\.Rhistory 2019-12-06 15:25 - 2019-02-23 04:29 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\RStudio 2019-12-06 15:25 - 2019-02-23 03:30 - 000000000 ____D C:\Users\Guillermo\AppData\Local\RStudio-Desktop 2019-12-06 14:29 - 2019-02-23 03:30 - 000737280 _____ C:\Users\Guillermo\AppData\Local\WebpageIcons.db 2019-12-06 14:13 - 2018-05-21 18:20 - 000000000 ___RD C:\Users\Guillermo\Google Drive 2019-12-06 13:12 - 2019-08-11 18:04 - 000005316 _____ C:\WINDOWS\system32\Tasks\Microsoft Office 15 Sync Maintenance for GUILLERMO-PC-Guillermo Guillermo-PC 2019-12-06 00:34 - 2019-09-08 21:42 - 000003656 _____ C:\WINDOWS\system32\Tasks\AutoKMS 2019-12-06 00:34 - 2019-06-25 04:21 - 000000000 ____D C:\Users\Guillermo\AppData\Local\CrashDumps 2019-12-06 00:34 - 2019-03-19 01:50 - 000000000 ____D C:\WINDOWS\INF 2019-12-06 00:26 - 2019-08-11 18:04 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1651002052-1764723500-360319929-1001 2019-12-06 00:21 - 2019-03-19 01:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2019-12-06 00:21 - 2018-05-21 17:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-12-06 00:19 - 2019-08-11 18:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-12-06 00:19 - 2018-05-21 18:01 - 000000988 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2019-12-06 00:19 - 2018-05-21 18:01 - 000000984 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2019-12-06 00:18 - 2019-03-19 01:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-12-05 23:47 - 2019-03-19 01:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-12-05 23:28 - 2019-08-11 18:04 - 000003362 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D1A4A751-9280-48FB-86CD-D40824C12E03} 2019-12-05 23:28 - 2019-08-11 18:04 - 000002478 _____ C:\WINDOWS\system32\Tasks\RealDownloader Update Check 2019-12-05 23:28 - 2019-08-11 18:03 - 000003502 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2019-12-05 23:28 - 2019-08-11 18:03 - 000003486 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2019-12-05 23:28 - 2019-08-11 18:03 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2019-12-05 23:28 - 2019-08-11 18:03 - 000003262 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2019-12-05 23:28 - 2019-08-11 18:03 - 000003176 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2019-12-05 23:28 - 2019-08-11 18:03 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2019-12-05 23:28 - 2019-08-11 18:03 - 000002544 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper 2019-12-05 23:28 - 2019-08-11 18:03 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2019-12-05 23:28 - 2019-08-11 18:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2019-12-05 18:00 - 2018-05-21 18:01 - 000000000 ____D C:\Program Files (x86)\Dropbox 2019-12-05 15:48 - 2018-05-21 18:15 - 000000000 ___RD C:\Users\Guillermo\Dropbox 2019-12-04 02:14 - 2018-05-21 17:52 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome 2019-12-04 02:11 - 2019-04-25 17:21 - 000002482 _____ C:\Users\Guillermo\Desktop\Guillermo - Chrome.lnk 2019-12-04 01:32 - 2019-04-25 17:21 - 000002470 _____ C:\Users\Guillermo\Desktop\Primer usuario - Chrome.lnk 2019-12-01 20:01 - 2018-05-21 17:30 - 000000000 ____D C:\Users\Guillermo\AppData\Local\Packages 2019-11-29 15:29 - 2018-07-10 17:12 - 000000000 ____D C:\Users\Guillermo\Downloads\Libros 2019-11-29 15:19 - 2018-05-21 18:52 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\Nitro 2019-11-29 13:13 - 2019-08-11 17:45 - 000447512 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-11-29 13:10 - 2019-10-03 13:20 - 000000000 ____D C:\ProgramData\Nero 2019-11-29 13:10 - 2019-10-03 13:20 - 000000000 ____D C:\Program Files (x86)\Nero 2019-11-29 12:57 - 2018-05-21 18:03 - 000000000 ____D C:\Program Files\WinRAR 2019-11-29 12:38 - 2019-08-10 01:55 - 000000000 ___DC C:\WINDOWS\Panther 2019-11-29 12:38 - 2018-05-22 23:51 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\uTorrent 2019-11-29 12:29 - 2019-10-03 13:35 - 000000000 ____D C:\Users\Guillermo\AppData\Local\NeroLauncher 2019-11-29 12:07 - 2018-05-21 19:16 - 000000000 ____D C:\Program Files (x86)\Driver Magician 2019-11-29 12:00 - 2018-05-21 18:03 - 000000000 ____D C:\Users\Guillermo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-11-29 12:00 - 2018-05-21 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-11-27 19:44 - 2018-06-06 15:01 - 000000000 ____D C:\Users\Guillermo\Documents\MEGAsync Downloads 2019-11-27 15:13 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2019-11-26 00:23 - 2019-02-08 14:14 - 000000000 ____D C:\Users\Guillermo\AppData\Local\WhatsApp 2019-11-26 00:14 - 2019-08-10 17:38 - 000002417 _____ C:\Users\Guillermo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-11-26 00:14 - 2018-05-21 17:33 - 000000000 ___RD C:\Users\Guillermo\OneDrive 2019-11-24 12:26 - 2018-09-25 14:55 - 000000000 ____D C:\Temp 2019-11-22 11:08 - 2019-09-20 11:18 - 000000099 _____ C:\Users\Guillermo\Desktop\Esquema pagos.txt 2019-11-18 20:07 - 2018-05-21 17:39 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-11-18 20:07 - 2018-05-21 17:39 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-11-15 10:50 - 2018-05-21 18:17 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-11-14 23:51 - 2019-08-11 17:56 - 001678444 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-11-14 23:51 - 2019-03-19 08:49 - 000747206 _____ C:\WINDOWS\system32\perfh00A.dat 2019-11-14 23:51 - 2019-03-19 08:49 - 000144966 _____ C:\WINDOWS\system32\perfc00A.dat 2019-11-14 23:48 - 2018-05-21 17:30 - 000000000 ___RD C:\Users\Guillermo\3D Objects 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\SystemResources 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\es-MX 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\system32\appraiser 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\ShellComponents 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\DiagTrack 2019-11-14 23:41 - 2019-03-19 01:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-11-14 02:05 - 2018-05-21 21:07 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-11-14 02:00 - 2018-05-21 21:07 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-11-14 01:59 - 2019-03-19 01:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-11-13 23:20 - 2018-05-21 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2019-11-08 10:26 - 2019-06-18 14:47 - 000000000 ____D C:\Program Files\CCleaner ==================== Files in the root of some directories ======== 2019-02-23 03:30 - 2019-12-06 14:29 - 000737280 _____ () C:\Users\Guillermo\AppData\Local\WebpageIcons.db ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================