Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 06-06-2021 Ejecutado por Christian (administrador) sobre DESKTOP-ASKI13 (Micro-Star International Co., Ltd. MS-7C37) (06-06-2021 16:27:34) Ejecutado desde C:\Users\Christian\Descargas Perfiles cargados: Christian Platform: Windows 10 Pro Versión 21H1 19043.1023 (X64) Idioma: Español (España, internacional) Navegador predeterminado: C:\Program Files\LibreWolf\librewolf.exe %1 Modo de Inicio: Normal ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) () [Archivo no firmado] C:\Program Files\MegaDownloader\MegaDownloader.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Ultra\DTShellHlp.exe (BitTorrent Inc -> BitTorrent Inc.) C:\Users\Christian\AppData\Roaming\uTorrent Web\helper\helper.exe (BitTorrent Inc -> BitTorrent Inc.) C:\Users\Christian\AppData\Roaming\uTorrent Web\utweb.exe (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe (Cooler Master) [Archivo no firmado] C:\Program Files (x86)\AMD Wraith\Wraith Prism\Wraith Prism HID.exe (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.53.17003.0_x64__8wekyb3d8bbwe\GamingServices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.53.17003.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe (Mozilla Corporation) [Archivo no firmado] C:\Program Files\LibreWolf\librewolf.exe <8> (Nota Inc. -> Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d71d3f5ea7618cbb\Display.NvContainer\NVDisplay.Container.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb0c442560f99618\RtkAudUService64.exe <2> (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <5> (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TechPowerUp LLC -> TechPowerUp (www.techpowerup.com)) C:\Program Files (x86)\GPU-Z\GPU-Z.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) E:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb0c442560f99618\RtkAudUService64.exe [1253232 2021-03-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [7580488 2021-05-24] (Paramount Software UK Ltd -> Paramount Software UK Ltd) HKLM\...\Run: [MsmqIntCert] => "C:\Windows\System32\regsvr32.exe" /s "C:\Windows\System32\mqrt.dll" HKLM\...\Run: [MTPW] => "C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe" HKLM-x32\...\Run: [OnScreen Control] => C:\Program Files (x86)\LG Electronics\OnScreen Control\bin\OnScreenStartUpApp.exe [2201016 2019-11-26] (LG Electronics Inc. -> TODO: ) HKLM-x32\...\Run: [Wraith Prism] => C:\Program Files (x86)\AMD Wraith\Wraith Prism\Wraith Prism HID.exe [1899520 2019-05-03] (Cooler Master) [Archivo no firmado] HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restricción <==== ATENCIÓN HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\48.0.13.0\GoogleDriveFS.exe [58172896 2021-05-24] (Acceso Denegado) [Archivo no firmado] HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\48.0.13.0\GoogleDriveFS.exe [58172896 2021-05-24] (Acceso Denegado) [Archivo no firmado] HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Discord] => C:\Users\Christian\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33223648 2021-06-02] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4087528 2021-05-19] (Valve -> Valve Corporation) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [utweb] => C:\Users\Christian\AppData\Roaming\uTorrent Web\utweb.exe [5836832 2021-04-19] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [915848 2020-07-09] (Nota Inc. -> Nota Inc.) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Salad] => C:\Users\Christian\AppData\Local\Programs\Salad\Salad.exe [131239408 2021-05-11] (SALAD TECHNOLOGIES, INC. -> Salad Technologies) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [109961080 2021-05-25] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\root\Office16\lync.exe [26377504 2021-05-28] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [DAEMON Tools Ultra Agent] => C:\Program Files\DAEMON Tools Ultra\DTAgent.exe [451952 2018-11-16] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\48.0.13.0\GoogleDriveFS.exe [58172896 2021-05-24] (Acceso Denegado) [Archivo no firmado] HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Christian\AppData\Local\Microsoft\Teams\Update.exe [2454184 2021-05-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\...\Run: [MegaDownloader] => C:\Program Files\MegaDownloader\MegaDownloader.exe [2147635 2020-04-18] () [Archivo no firmado] HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\48.0.13.0\GoogleDriveFS.exe [58172896 2021-05-24] (Acceso Denegado) [Archivo no firmado] HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\91.1.25.70\Installer\chrmstp.exe [2021-06-04] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2021-04-21] (Adobe Inc. -> Adobe Systems, Inc.) Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HoneygainUpdater.lnk [2021-05-25] ShortcutTarget: HoneygainUpdater.lnk -> C:\Users\Christian\AppData\Roaming\Honeygain\HoneygainUpdater.exe (Ningún archivo) GroupPolicy: Restricción ? <==== ATENCIÓN GroupPolicy\User: Restricción ? <==== ATENCIÓN Policies: C:\ProgramData\NTUSER.pol: Restricción <==== ATENCIÓN HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN HKLM\SOFTWARE\Policies\Microsoft\Edge: Restricción <==== ATENCIÓN HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\SOFTWARE\Policies\Microsoft\Edge: Restricción <==== ATENCIÓN ==================== Tareas programadas (Lista blanca) ============ (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {0C9F936D-3BD6-421F-8591-99D3520CC19F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0D1AEBEA-A0CA-4754-B38C-2C018EB1C200} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [677624 2019-11-21] (Advanced Micro Devices INC. -> ) Task: {1FB96AEB-7A14-4866-A2F6-FEC3223A5A26} - System32\Tasks\memreductSkipUac => C:\Users\Christian\AppData\Roaming\Rusticaland\QuickLauncher\memreduct.exe [314528 2019-02-10] (TestCert_2019-4-7_18-15-54 -> Henry++) [Archivo no firmado] Task: {246CE471-B4A6-41E6-9FA3-3FBAEE731534} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2BFD902B-925E-427F-9005-910E4BE249F3} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6897896 2020-07-09] (Nota Inc. -> Nota Inc.) Task: {330C9BE7-2CD2-4152-BB1D-95E7952B2D13} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {38A8066C-9E11-4F59-9509-5118EFF9F327} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4AB31236-0860-4E4E-B52D-11459737B739} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation) Task: {6996B2AD-7FDB-48E2-82CA-1AD5759AAEA6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2021-04-05] (Google Inc -> Google Inc.) Task: {6BA8BAC4-2AA7-4F11-B5B9-C2433F9C5A70} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6D57E581-BD83-4F02-9F32-C69B34D7FA67} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5275568 2021-05-28] (Microsoft Corporation -> Microsoft Corporation) Task: {71C3331E-21A2-4F3E-87D6-690E0CF0470A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {780B0FB3-A155-4DC9-9D52-C549313D7BA6} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) Task: {789BD63E-AE1F-4672-96BE-1BD69768E166} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {795F25F8-7C7E-4C52-8B08-4838700E90B0} - System32\Tasks\Mozilla\Firefox Default Browser Agent E240B46E058328DD => C:\Program Files\Mozilla Firefox Beta\default-browser-agent.exe [636400 2021-05-04] (Mozilla Corporation -> Mozilla Foundation) <==== ATENCIÓN Task: {7D304C6A-581C-4408-B802-FA09935A3526} - \CreateExplorerShellUnelevatedTask -> Ningún archivo <==== ATENCIÓN Task: {867576F2-3836-4890-BBFC-D22546C69964} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-28] (Microsoft Corporation -> Microsoft Corporation) Task: {8C255B76-FEA7-4008-8586-620D31FE6FE4} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3336560 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {91DE6CA9-CB18-48BB-ABBB-C37517EE1743} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124336 2021-05-21] (Microsoft Corporation -> Microsoft Corporation) Task: {A3CB080A-FB33-44E8-8AB8-6F67ED17C3DB} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A6E182D7-F0E9-466A-9393-BB7F08D230FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2021-04-05] (Google Inc -> Google Inc.) Task: {AA8CA0F0-BC38-4DF0-95AA-6B7435FA15E3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {AF29D7E7-0DEF-491F-AE0F-488F418BBB51} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5275568 2021-05-28] (Microsoft Corporation -> Microsoft Corporation) Task: {B0BAB187-9BF7-4B71-9C78-D792E44388D3} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [782320 2019-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) Task: {B4322883-1C00-4464-918B-D88479217C03} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147288 2021-05-28] (Microsoft Corporation -> Microsoft Corporation) Task: {C9B503EB-F43B-4C27-B825-EB727CBA993B} - System32\Tasks\MiniToolPartitionWizard => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe Task: {CB8153C6-2FC2-44D5-A070-85154B926189} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CD226B7B-9B87-4DE2-85F5-8EDD3D2B1D65} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {CF377746-8024-498E-8CD2-B3829FC88893} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6897896 2020-07-09] (Nota Inc. -> Nota Inc.) Task: {D03C6A98-6AAB-4A30-A3DD-1B9CC8A4C33C} - System32\Tasks\NVCleanstall => C:\Program Files\NVCleanstall\NVCleanstall.exe [3443600 2021-05-01] (TechPowerUp LLC -> TechPowerUp) Task: {D6A91823-3E1A-4A36-9119-4B6D39D2FF7E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E8AE148C-FE85-45BC-8ABC-ED768F84FAB0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {E8E9F6E9-1EA0-4EFB-A287-BA880AC99987} - System32\Tasks\GPU-Z => C:\Program Files (x86)\GPU-Z\GPU-Z.exe [7435152 2021-05-22] (TechPowerUp LLC -> TechPowerUp (www.techpowerup.com)) Task: {FC22140E-9936-4E86-AB66-E5004400A043} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) ProxyServer: [S-1-5-21-1299731771-3759353342-2654163757-1001] => 136.243.254.196:80 Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{a1f11982-5797-482b-8a45-17313aa0d698}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{a1f11982-5797-482b-8a45-17313aa0d698}: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF DefaultProfile: xy16rj3x.default FF DefaultProfile: l3zoejve.default FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2 [2021-06-02] FF Extension: (Spanish (Mexico) Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\@mxspanishdictionary.xpi [2021-05-09] FF Extension: (Firefox Multi-Account Containers) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\@testpilot-containers.xpi [2021-05-10] FF Extension: (English United States Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\@unitedstatesenglishdictionary.xpi [2021-05-02] FF Extension: (German Dictionary, classical spelling standards) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\alterechtschreibung@googlemail.com.xpi [2021-05-09] FF Extension: (Keepa - Amazon Price Tracker) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\amptra@keepa.com.xpi [2021-05-07] FF Extension: (Corrector ortografico aragonés) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\an-ES@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Arabic spell-checking dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\ar@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: () - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\asturianu@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Australian English Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\AussieDic@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Belarusian Spellcheck Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\be_BY@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (BTRoblox - Making Roblox Better) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\btroblox@antiboomz.com.xpi [2021-05-02] FF Extension: (Valencian Catalan dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\ca-valencia@dictionaries.addons.mozilla.org.xpi [2021-05-02] FF Extension: (General Catalan dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\ca@dictionaries.addons.mozilla.org.xpi [2021-05-02] FF Extension: (German Dictionary, extended for Austria) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de-AT@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (German Dictionary (Switzerland)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de-CH@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (German Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de-DE@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (German dictionary (de_AT)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de_AT@dicts.j3e.de.xpi [2021-05-09] FF Extension: (German dictionary (de_CH)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de_CH@dicts.j3e.de.xpi [2021-05-09] FF Extension: (German dictionary (de_DE)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\de_DE@dicts.j3e.de.xpi [2021-05-09] FF Extension: (English (Australian) Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\en-AU@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Canadian English Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\en-CA@dictionaries.addons.mozilla.org.xpi [2021-05-02] FF Extension: (New Zealand English Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\en-NZ@dictionaries.addons.mozilla.org.xpi [2021-05-02] FF Extension: (Diccionario español Argentina) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\es-AR@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Spanish (Spain) Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\es-es@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Diccionario español México) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\es-MX@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Spanish (Venezuela) spell check dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\es-ve@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Diccionario de Español/Chile) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\es_cl@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Xuxen) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\eu@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (OneTab) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\extension@one-tab.com.xpi [2021-05-02] FF Extension: (ff2mpv) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\ff2mpv@yossarian.net.xpi [2021-05-03] FF Extension: (Russian-English Dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\helvann-ru-dictionaries@thecommunity.ru.xpi [2021-05-09] FF Extension: (HTTPS Everywhere) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\https-everywhere@eff.org.xpi [2021-05-02] FF Extension: (Russian Hunspell dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\hunspell-ru@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Decentraleyes) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\jid1-BoFifL9Vbdl2zQ@jetpack.xpi [2021-05-02] FF Extension: (I don't care about cookies) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [2021-05-02] FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-05-11] FF Extension: (British English Dictionary (Marco Pinto)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\marcoagpinto@mail.telepac.pt.xpi [2021-05-03] FF Extension: (Portuguese-Brazil Checker (Former Spelling)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\pt-BR-1971@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Verificador Ortográfico para Português do Brasil) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\pt-BR@dellalibera.sf.net.xpi [2021-05-09] FF Extension: (Brazilian Portuguese Checker (New Spelling)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\pt-BR@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Corretor para Português de Portugal) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\pt-PT@dictionaries.addons.mozilla.org.xpi [2021-05-09] [Heredado] FF Extension: (Spellchecker Rumantsch Grischun) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\rm@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (Russian spellchecking dictionary) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\ru@dictionaries.addons.mozilla.org.xpi [2021-05-09] FF Extension: (SponsorBlock para YouTube - Omitir Sponsors) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\sponsorBlocker@ajay.app.xpi [2021-05-11] FF Extension: (Loading…) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\switchyomega@feliscatus.addons.mozilla.org.xpi [2021-05-02] FF Extension: (uBlock Origin) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\uBlock0@raymondhill.net.xpi [2021-05-05] FF Extension: (User-Agent Switcher) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\user-agent-switcher@ninetailed.ninja.xpi [2021-05-02] FF Extension: (Malwarebytes Browser Guard) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2021-05-05] FF Extension: (Retro Circles and Rectangles) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{25171e8b-6d10-4004-9f60-0fb6c0ae8784}.xpi [2021-05-09] FF Extension: (fractal blue flowers) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{42b3ec69-8aeb-4b65-80fb-fa80f707cd82}.xpi [2021-05-09] FF Extension: (Bitwarden - Gestor de contraseñas gratuito) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2021-05-02] FF Extension: (Modern Purple) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{50089926-9b7b-4f1f-a507-3ba36179d84b}.xpi [2021-05-09] FF Extension: (Universal Bypass) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{529b261b-df0b-4e3b-bf42-07b462da0ee8}.xpi [2021-05-02] FF Extension: (Cookie Quick Manager) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{60f82f00-9ad5-4de5-b31c-b16a47c51558}.xpi [2021-05-02] FF Extension: (Plexus Crystals (Red)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{6959f630-2466-4f72-934b-2f256a414f86}.xpi [2021-05-02] FF Extension: (Don't touch my tabs! (rel=noopener)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{6b938c0c-fc53-4f27-805f-619778631082}.xpi [2021-05-09] FF Extension: (ClearURLs) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{74145f27-f039-47ce-a470-a662b129930a}.xpi [2021-05-02] FF Extension: (Matte Black (Red)) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{a7589411-c5f6-41cf-8bdc-f66527d9d930}.xpi [2021-05-02] FF Extension: (Create a new script) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{aecec67f-0d10-4fa7-b7c7-609a2db280cf}.xpi [2021-05-04] FF Extension: (LocalCDN) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{b86e4813-687a-43e6-ab65-0bde4ab75758}.xpi [2021-05-04] FF Extension: (DownThemAll!) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2021-05-02] FF Extension: (RoSearcher) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\x2ah28uw.default-release-2\Extensions\{f3337614-6179-4f32-812a-d2682369e470}.xpi [2021-05-02] FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\5rpiq24x.default-release-1 [2021-06-02] FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\xy16rj3x.default [2021-04-14] FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\hh6k12dg.default-release [2021-05-08] FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\s8s8vnie.default-beta [2021-06-02] FF ProfilePath: C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\l3zoejve.default [2021-06-03] FF ProfilePath: C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default [2021-06-06] FF DownloadDir: C:\Users\Christian\Descargas FF Notifications: LibreWolf\Profiles\ljmo7i30.dev-edition-default -> hxxps://forospyware.com FF Extension: (Disconnect) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\2.0@disconnect.me.xpi [2021-05-28] FF Extension: (Firefox Multi-Account Containers) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\@testpilot-containers.xpi [2021-05-20] FF Extension: (Dark Reader) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\addon@darkreader.org.xpi [2021-05-20] FF Extension: (Keepa - Amazon Price Tracker) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\amptra@keepa.com.xpi [2021-05-28] FF Extension: (BTRoblox - Making Roblox Better) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\btroblox@antiboomz.com.xpi [2021-05-28] FF Extension: (CanvasBlocker) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\CanvasBlocker@kkapsner.de.xpi [2021-05-20] FF Extension: (Enhancer for YouTube™) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-05-28] FF Extension: (Spanish (Spain) Dictionary) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\es-es@dictionaries.addons.mozilla.org.xpi [2021-05-22] FF Extension: (Gyazo) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\gyazo-extension@gyazo.com.xpi [2021-05-28] FF Extension: (HTTPS Everywhere) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\https-everywhere@eff.org.xpi [2021-05-22] FF Extension: (I don't care about cookies) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [2021-05-22] FF Extension: (Privacy Badger) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2021-05-22] FF Extension: (Smart Referer) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\smart-referer@meh.paranoid.pk.xpi [2021-05-20] FF Extension: (SponsorBlock para YouTube - Omitir Sponsors) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\sponsorBlocker@ajay.app.xpi [2021-05-20] FF Extension: (uBlock Origin) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\uBlock0@raymondhill.net.xpi [2021-05-22] FF Extension: (Bitwarden - Gestor de contraseñas gratuito) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2021-05-11] FF Extension: (WhatRuns) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{66d854c2-fd1b-4857-bd0a-7d220e4834da}.xpi [2021-05-28] FF Extension: (ClearURLs) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{74145f27-f039-47ce-a470-a662b129930a}.xpi [2021-05-20] FF Extension: (Matte Black (Red)) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{a7589411-c5f6-41cf-8bdc-f66527d9d930}.xpi [2021-05-22] FF Extension: (Roblox+) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{afc99b60-752e-456b-809e-22f4f2dfce02}.xpi [2021-05-28] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx] FF Extension: (LocalCDN) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{b86e4813-687a-43e6-ab65-0bde4ab75758}.xpi [2021-05-20] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2021-05-28] FF Extension: (RoSearcher) - C:\Users\Christian\AppData\Roaming\LibreWolf\Profiles\ljmo7i30.dev-edition-default\Extensions\{f3337614-6179-4f32-812a-d2682369e470}.xpi [2021-05-28] FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-28] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-28] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files (x86)\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-28] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files (x86)\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-28] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.) StartMenuInternet: Firefox-E240B46E058328DD - C:\Program Files\Mozilla Firefox Beta\firefox.exe Chrome: ======= CHR Profile: C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default [2021-06-03] CHR Extension: (Slides) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-05-25] CHR Extension: (Docs) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-05-25] CHR Extension: (Google Drive) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-05-25] CHR Extension: (YouTube) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-05-25] CHR Extension: (Sheets) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-05-25] CHR Extension: (Google Docs Offline) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-25] CHR Extension: (Application Launcher For Drive (by Google)) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-05-25] CHR Extension: (Chrome Web Store Payments) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-25] CHR Extension: (Gmail) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-05-25] CHR Extension: (Chrome Media Router) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-25] CHR HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\CHRIST~1\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx CHR HKU\S-1-5-21-1299731771-3759353342-2654163757-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] Brave: ======= BRA DefaultProfile: Default BRA Profile: C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2021-06-06] BRA Notifications: Default -> hxxps://meet.google.com BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Traductor de Google) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-03-17] BRA Extension: (Google Drive) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aghbiahbpaijignceidepookljebhfak [2021-05-01] BRA Extension: (YouTube) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\agimnkijcaahngcdmfeangaknmldooml [2021-04-21] BRA Extension: (LibreOffice Editor) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bdomjcpneblellajjhgfdlnmjfofflop [2021-03-17] BRA Extension: (Smart PDF - PDF Converter Tool) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\benjmhnicaokfjhdoolkkjiiccceigdm [2021-03-17] BRA Extension: (DuckDuckGo) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2021-06-06] BRA Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2021-03-17] BRA Extension: (uBlock Origin) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-05-10] BRA Extension: (WhatRuns) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cmkdbmfndkfgebldhnkbfhlneefdaaip [2021-03-17] BRA Extension: (Tampermonkey) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2021-06-06] BRA Extension: (Outlook) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\faolnafnngnfdaknnbpnkhgohbobgegn [2021-04-28] BRA Extension: (VPN Gratis ZenMate - Mejor Free VPN para Chrome) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2021-04-17] BRA Extension: (Stay secure with CyberGhost VPN Free Proxy) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ffbkglfijbcbgblgflchnbphjdllaogb [2021-03-17] BRA Extension: (EditThisCookie) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2021-03-17] BRA Extension: (Edición de Office) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2021-04-19] BRA Extension: (Pastebin.com) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ghipmampnddcpdlppkkamoankmkmcbmh [2021-03-17] BRA Extension: (BTRoblox - Making Roblox Better) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2021-04-05] BRA Extension: (2Captcha Solver) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ifibfemgeogfhoebkmokieepdoobkbpo [2021-05-28] BRA Extension: (Roblox+) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jfbnmfgkohlfclfnplnlenbalpppohkm [2021-03-17] BRA Extension: (RoSearcher) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jhamlfgelgpjgbifbpepmclhnellfoaa [2021-06-06] BRA Extension: (Gmail) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kmhopmchchfpfdcdjodmpfaaphdclmlj [2021-05-01] BRA Extension: (Google Chat) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mdpkiolbdkhdjpekfbkbmhigcaggjagi [2021-05-21] BRA Extension: (Roblox Statistics) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mfdbamkphjbmacjbmaipkdicefagjjlp [2021-03-17] BRA Extension: (TubeBuddy) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mhkhmbddkmdggbhaaaodilponhnccicb [2021-06-06] BRA Extension: (SponsorBlock para YouTube - Omitir Sponsors) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2021-05-24] BRA Extension: (Office) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2021-04-19] BRA Extension: (Keepa - Amazon Price Tracker) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\neebplgakaahbhdphmkckjjcegoiijjo [2021-06-06] BRA Extension: (Bitwarden) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2021-05-18] BRA Profile: C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\Guest Profile [2021-04-21] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-03-17] BRA Extension: (Brave Ad Block Updater (ABP X Files)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\agfanagdjcijocanbeednbhclejcjlfo [2021-06-06] BRA Extension: (Brave Ads Resources) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\ahiocclicnhmiobhocikfdamfccbehhn [2021-05-18] BRA Extension: (Brave NTP sponsored images) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\alkblaadjjijngaehljijdimckobegga [2021-06-06] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\baophminpaegfihdcekehejfhpmjimle [2021-06-06] BRA Extension: (Brave Ad Block Updater (uBlock Annoyances List (used with Fanboy Annoyances List))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfoofkaohomljmodljoameijbaichadj [2021-06-06] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2021-06-06] BRA Extension: (Brave Ad Block Updater (ABPVN List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\cklgijeopkpaadeipkhdaodemoenlene [2021-06-06] BRA Extension: (Brave Ad Block Updater (Bulgarian Adblock list)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\coofeapfgmpkchclgdphgpmfhmnplbpn [2021-06-06] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2021-05-18] BRA Extension: (Brave Ad Block Updater (IRN: AdBlock Iran Filter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\dbcccdegkijbppmeaihneimbghfghkdl [2021-06-06] BRA Extension: (Brave Ad Block Updater (YousList)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\djhjpnilfflibdflbkgapjfldapkjcgl [2021-06-06] BRA Extension: (Brave Ad Block Updater (Adblock Plus Lithuania)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\dkbmlhggeoegbkimcafbfhjibdknflnj [2021-06-06] BRA Extension: (Brave Ad Block Updater (Adguard Russian Filter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\dmoefgliihlcfplldbllllbofegmojne [2021-06-06] BRA Extension: (Brave Ad Block Updater (ABPindo)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\egooomckhdgnfbpofhkbhbkiejaihdll [2021-06-06] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2021-06-06] BRA Extension: (Brave Ad Block Updater (RU AdList (Дополнительная региональная подписка))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\enkheaiicpeffbfgjiklngbpkilnbkoi [2021-06-06] BRA Extension: (Brave Ad Block Updater (Schacks Adblock Plus liste)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\facajiciiepdpjnoifonbfgcnlbpbieo [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Germany)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\faknfgalcghekhfggcdikddilkpjbonh [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Dutch)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbmjnabmpmfnfknjmbegjmjigmelggmf [2021-06-06] BRA Extension: (Brave Ad Block Updater (BitBlock List (Дополнительная подписка фильтров))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\fmcofgdkijoanfaodpdfjipdgnjbiolk [2021-06-06] BRA Extension: (Brave Ad Block Updater (Eesti saitidele kohandatud filter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\fnpjliiiicbbpkfihnggnmobcpppjhlj [2021-06-06] BRA Extension: (Brave Ad Block Updater (Hufilter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\gemncmbgjgcjjepjkindgdhdilnaanlc [2021-06-06] BRA Extension: (Brave Ad Block Updater (Adguard Japanese filters (日本用フィルタ))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\ghnjmapememheddlfgmklijahiofgkea [2021-06-06] BRA Extension: (Brave Ad Block Updater (Liste AR)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\gpgegghiabhggiplapgdfnfcmodkccji [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Hebrew)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\hjeidaaocognlgpdkfeenmiefipcffbo [2021-06-06] BRA Extension: (Brave Ad Block Updater (Latvian List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmabmnondepbfogenlfklniehjedmicd [2021-06-06] BRA Extension: (Brave Ad Block Updater (Romanian Ad (ROad) Block List Light)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\hojdjlebfkngledgkgecohjkjjojaekd [2021-06-06] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2021-05-05] BRA Extension: (Brave Ad Block Updater (Fanboy Social List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\jkmfbjpchgojnebkdleeiplnaagomnll [2021-06-06] BRA Extension: (Brave Ad Block Updater (Fanboy's India Filters)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\jnnbjhbkmgggeoplhadmppaeddmeapla [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Thailand)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\jplgiejfnpolnfnigblbfeeidoimingd [2021-06-06] BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\jpolmkeojnkicccihhepfbkhcbicimpa [2021-06-06] BRA Extension: (Brave Ad Block Updater (Dandelion Sprout's Nordic Filters)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\kcffflkhcncgnbmgdhcgjfogpoacfied [2021-06-06] BRA Extension: (Brave Ad Block Updater (Finnish Addition to Easylist)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdcalgmhljnckmnfcboeabeepgnlaemf [2021-06-06] BRA Extension: (Brave Ad Block Updater (Fanboy Annoyances List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\kfhcejhgfapmkapakabicnjhpglajkao [2021-06-06] BRA Extension: (Brave Ad Block Updater (Slovenian List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\lddghfaofadfpaajgncgkbjhalgohfkd [2021-06-06] BRA Extension: (Brave Ad Block Updater (Easylist-Cookie List - Filter Obtrusive Cookie Notices)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\lfgnenkkneohplacnfabidofpgcdpofm [2021-06-06] BRA Extension: (Brave Ad Block Updater (CJX's EasyList Lite (main focus on Chinese sites))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\lgfeompbgommiobcenmodekodmdajcal [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList China (中文))) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\llhecljkijgcaalnbfadljdpkpbehakp [2021-06-06] BRA Extension: (Brave Ad Block Updater (CJX's Annoyance List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\llpoppgpcimnmhgehpipdmamalmpfbjd [2021-06-06] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku - Uzupełnienie)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\ndgeclhidhlfgmjdcapejaldbahmkgbi [2021-06-06] BRA Extension: (Brave Ad Block Updater (Icelandic ABP List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\njhlaafgablgnekjaodhgbaomabjibaf [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Italy)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\nkmllpnhpfieajahfpfmjneipnddhimi [2021-06-06] BRA Extension: (Crypto Wallets) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\odbfpeeihdkbihmopkbjmoonfanlbfcl [2021-04-11] BRA Extension: (Brave Ad Block Updater (Fanboy's Korean)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\oidcknjcjepjgfpammgdalpnjefekhge [2021-06-06] BRA Extension: (Brave Ad Block Updater (Frellwit's Filter List)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\oimfmeehpinnecjghphifehbbnddjkmf [2021-06-06] BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2021-06-06] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2021-06-03] BRA Extension: (Brave Ad Block Updater (Adguard Turkish Filter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\oooemoeokehlgldpjjhcgbndjcekllim [2021-06-06] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka, uBlocka Origin i AdGuarda)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\paoecjnjjbclkgbempaeemcbeldldlbo [2021-06-06] BRA Extension: (Brave Ad Block Updater (EasyList Spanish)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\pdecoifadfkklajdlmndjpkhabpklldh [2021-06-06] BRA Extension: (Brave Ad Block Updater (Greek AdBlock Filter)) - C:\Users\Christian\AppData\Local\BraveSoftware\Brave-Browser\User Data\pmgkiiodjlmmpimpmphjhkodjnjfkeke [2021-06-06] ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S4 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3743464 2021-03-09] (philandro Software GmbH -> philandro Software GmbH) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-03-03] (BattlEye Innovations e.K. -> ) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162400 2021-03-17] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162400 2021-03-17] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11279752 2021-05-21] (Microsoft Corporation -> Microsoft Corporation) R3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe [6950256 2018-11-16] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2020-07-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.) R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [14280 2019-12-06] (Microsoft Corporation -> Microsoft Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [8929608 2021-05-24] (Paramount Software UK Ltd -> Paramount Software UK Ltd) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408 2021-06-05] (Malwarebytes Inc -> Malwarebytes) R2 QMEmulatorService; E:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [198736 2020-08-15] (Tencent Technology(Shenzhen) Company Limited -> Tencent) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1716632 2021-05-21] (Rockstar Games, Inc. -> Rockstar Games) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393304 2021-05-30] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ss_conn_launcher_service; C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe [182328 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [14661928 2021-05-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [746504 2020-10-16] (Oracle Corporation -> Oracle Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe [2644760 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe [136656 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) S2 AVP21.3; "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe" -r [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d71d3f5ea7618cbb\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d71d3f5ea7618cbb\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) S3 aftap0901; C:\Windows\System32\drivers\aftap0901.sys [48624 2018-12-18] (AnchorFree Inc -> The OpenVPN Project) R2 aow_drv; E:\Program Files\TxGameAssistant\UI\3.21.1833.100\aow_drv_x64_ev.sys [913480 2020-12-09] (Tencent Technology(Shenzhen) Company Limited -> Tencent) S3 BazisPortableCDBus; C:\Windows\System32\drivers\BazisPortableCDBus.sys [283480 2020-07-24] (Sysprogs OU -> Sysprogs OU) R1 cbfs6; C:\Windows\system32\drivers\cbfs6.sys [460992 2016-09-21] (EldoS Corporation -> /n software, Inc.) S3 cpuz150; C:\Windows\temp\cpuz150\cpuz150_x64.sys [44832 2021-06-02] (CPUID S.A.R.L.U. -> CPUID) S3 DroidCam; C:\Windows\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps) S3 DroidCamVideo; C:\Windows\System32\drivers\droidcamvideo.sys [33784 2020-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30264 2021-03-31] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtultrausbbus; C:\Windows\System32\drivers\dtultrausbbus.sys [47672 2021-03-31] (Disc Soft Ltd -> Disc Soft Ltd) S3 GeneStor; C:\Windows\system32\DRIVERS\GeneStor.sys [126168 2020-12-01] (Genesys Logic, Inc. -> GenesysLogic) R1 googledrivefs3301; C:\Windows\System32\DRIVERS\googledrivefs3301.sys [132456 2021-02-22] (Google LLC -> Google, Inc.) S1 googledrivefs3460; C:\Windows\System32\DRIVERS\googledrivefs3460.sys [389600 2021-05-24] (Acceso Denegado) [Archivo no firmado] R3 GPU-Z-v2; C:\Users\Christian\AppData\Local\Temp\GPU-Z-v2.sys [50216 2021-06-06] (TechPowerUp LLC -> ) <==== ATENCIÓN S3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) S3 I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [38544 2018-12-13] (Feature Integration Technology Inc -> FINTEK Corp.) R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [110392 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) S1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [127288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [523576 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [1439456 2021-05-08] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1025336 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [85288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [250168 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [300856 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MpKsl6b109614; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{99A527F9-8B81-4B19-8C93-ADD40EA2EDF0}\MpKslDrv.sys [107744 2021-06-06] (Microsoft Windows -> Microsoft Corporation) R0 Mrvdp; C:\Windows\System32\drivers\mrvdp.sys [65936 2019-08-15] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [18448 2019-10-17] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) S3 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [179416 2019-02-15] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) S3 psvolacc; C:\Windows\system32\drivers\psvolacc.sys [34520 2018-12-06] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) S3 Revoflt; C:\Windows\System32\DRIVERS\revoflt.sys [38400 2020-10-14] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [24000 2019-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [43368 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 steamxbox; C:\Windows\System32\drivers\steamxbox.sys [232792 2021-03-08] (Valve Corp. -> Valve Corporation) S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project) S3 tapprotonvpn; C:\Windows\System32\drivers\tapprotonvpn.sys [49024 2020-12-30] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R1 TBoxDrv; E:\Temp\TxGameDownload\Component\TBOX_64\Setup\TBoxDrv.sys [271600 2017-09-11] (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation) S3 tesrsdt; C:\Windows\system32\drivers\tesrsdt.sys [812208 2020-08-13] (Tencent Technology(Shenzhen) Company Limited -> TENCENT) S3 UniSafe; C:\Windows\system32\drivers\UniSafe.sys [581912 2021-01-17] (Tencent Technology(Shenzhen) Company Limited -> TENCENT) R3 VBAudioVACMME; C:\Windows\System32\drivers\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) R3 VBoxNetAdp; C:\Windows\System32\drivers\VBoxNetAdp6.sys [239432 2020-10-16] (Oracle Corporation -> Oracle Corporation) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [174536 2020-10-16] (Oracle Corporation -> Oracle Corporation) S3 vmulti; C:\Windows\System32\drivers\vmulti.sys [9728 2016-12-19] (SunnysideSoft -> ) R3 VOICEMOD_Driver; C:\Windows\system32\drivers\vmdrv.sys [49976 2020-09-08] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S3 vpnpbus; C:\Windows\System32\drivers\vpnpbus.sys [18624 2016-09-21] (EldoS Corporation -> /n software, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49560 2021-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [425208 2021-06-05] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [76008 2021-06-05] (Microsoft Windows -> Microsoft Corporation) S3 WIMMount; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys [39736 2019-12-06] (Microsoft Windows -> Microsoft Corporation) R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2021-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation) S1 EneTechIo; \??\C:\Windows\system32\drivers\ene.sys [X] S2 MBAMChameleon; \SystemRoot\System32\Drivers\MbamChameleon.sys [X] S3 MBAMSwissArmy; \SystemRoot\System32\Drivers\mbamswissarmy.sys [X] S3 NDivert; \SystemRoot\System32\drivers\NDivert.sys [X] S3 NTIOLib_CC_Clock; \??\C:\Program Files (x86)\MSI\One Dragon Center\Lib\NTIOLib_X64.sys [X] ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) (Lista blanca) ========= (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2021-06-06 21:37 - 2021-06-06 21:37 - 000000000 ____D C:\KVRT2020_Data 2021-06-06 16:26 - 2021-06-06 16:28 - 000000000 ____D C:\FRST 2021-06-06 10:48 - 2021-06-06 10:48 - 000000000 ____D C:\Windows\Downloaded Installations 2021-06-06 09:05 - 2021-06-06 09:05 - 000000000 ____D C:\UWT 2021-06-06 01:20 - 2021-06-06 01:20 - 000002040 _____ C:\Users\Christian\Desktop\Malwarebytes.lnk 2021-06-06 01:11 - 2021-06-06 01:11 - 000002458 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NiceHash Miner.lnk 2021-06-06 01:11 - 2021-06-06 01:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico 2021-06-06 01:11 - 2021-06-06 01:11 - 000000000 ____D C:\Program Files\KMSpico 2021-06-05 23:52 - 2021-06-05 23:52 - 000004797 _____ C:\Users\Christian\Desktop\malwarebit.txt 2021-06-05 23:45 - 2021-06-05 23:45 - 000000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Reciente 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Plantillas 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Mis documentos 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Menú Inicio 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Impresoras 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Entorno de red 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Datos de programa 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\Configuración local 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historial 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Datos de programa 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Archivos temporales de Internet 2021-06-05 23:45 - 2021-06-05 23:45 - 000000000 ____D C:\Users\DefaultAppPool 2021-06-05 23:45 - 2020-12-13 21:38 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Macromedia 2021-06-05 23:45 - 2020-10-26 16:39 - 000000000 ____D C:\Users\DefaultAppPool\UrbanVPN 2021-06-05 23:45 - 2019-12-07 11:10 - 000001105 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-06-05 23:43 - 2021-06-05 23:43 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-06-05 23:43 - 2021-06-05 23:43 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-06-05 23:42 - 2021-06-05 23:42 - 000000000 ____D C:\Program Files\Malwarebytes 2021-06-05 23:39 - 2021-06-05 23:39 - 000001870 _____ C:\Users\Christian\Desktop\Rkill.txt 2021-06-05 20:50 - 2021-06-05 20:50 - 001395036 _____ C:\Windows\Minidump\060521-17000-01.dmp 2021-06-05 20:45 - 2021-06-05 20:45 - 001407524 _____ C:\Windows\Minidump\060521-15000-01.dmp 2021-06-05 16:58 - 2021-06-05 16:58 - 001041188 _____ C:\Windows\Minidump\060521-12875-01.dmp 2021-06-04 23:17 - 2021-06-05 20:50 - 1806589155 _____ C:\Windows\MEMORY.DMP 2021-06-04 20:00 - 2021-06-04 20:00 - 000000000 ____D C:\Users\Christian\AppData\Roaming\QtProject 2021-06-04 20:00 - 2019-11-08 10:15 - 003600896 _____ C:\Windows\system32\pwNative.exe 2021-06-04 20:00 - 2019-11-08 10:15 - 000019152 _____ C:\Windows\system32\pwdrvio.sys 2021-06-04 20:00 - 2019-11-08 10:15 - 000012504 _____ C:\Windows\system32\pwdspio.sys 2021-06-04 19:59 - 2021-06-04 19:59 - 000003282 _____ C:\Windows\system32\Tasks\MiniToolPartitionWizard 2021-06-04 18:12 - 2021-06-04 18:12 - 000002986 _____ C:\Users\Christian\Desktop\FSS.txt 2021-06-04 18:11 - 2021-06-04 18:11 - 000909824 _____ (Farbar) C:\Users\Christian\Desktop\FSS.exe 2021-06-03 18:24 - 2021-06-04 23:28 - 000000000 ____D C:\Program Files\Common Files\AV 2021-06-03 18:19 - 2021-06-05 23:43 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-06-03 18:19 - 2021-06-03 18:19 - 000255928 _____ (Malwarebytes) C:\Windows\system32\Drivers\76116351.sys 2021-06-03 18:16 - 2021-06-03 18:16 - 000000000 ____D C:\AdwCleaner 2021-06-03 18:11 - 2021-06-03 18:11 - 000000024 _____ C:\Windows\reflectbin.INI 2021-06-02 20:17 - 2021-06-03 20:09 - 000000000 ____D C:\Sypase 2021-06-02 20:05 - 2021-06-02 20:05 - 000003652 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-06-02 20:05 - 2021-06-02 20:05 - 000003528 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-06-02 19:16 - 2021-06-02 19:16 - 000000000 ____D C:\Windows\Panther 2021-06-02 18:28 - 2021-05-13 12:38 - 000037656 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2021-06-02 18:24 - 2021-05-13 20:19 - 000626968 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2021-06-02 18:24 - 2021-05-13 20:17 - 005678360 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 001855184 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2021-06-02 18:23 - 2021-05-13 20:22 - 001855184 _____ C:\Windows\system32\vulkaninfo.exe 2021-06-02 18:23 - 2021-05-13 20:22 - 001453360 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 001435880 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-06-02 18:23 - 2021-05-13 20:22 - 001435880 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2021-06-02 18:23 - 2021-05-13 20:22 - 001192752 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 001094864 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 001094864 _____ C:\Windows\system32\vulkan-1.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 000948968 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2021-06-02 18:23 - 2021-05-13 20:22 - 000948968 _____ C:\Windows\SysWOW64\vulkan-1.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 001514800 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 001166112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 000715544 _____ C:\Windows\system32\nvofapi64.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 000675104 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 000575768 _____ C:\Windows\SysWOW64\nvofapi.dll 2021-06-02 18:23 - 2021-05-13 20:19 - 000564000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2021-06-02 18:23 - 2021-05-13 20:18 - 002106144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2021-06-02 18:23 - 2021-05-13 20:18 - 001590576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2021-06-02 18:23 - 2021-05-13 20:18 - 000811824 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2021-06-02 18:23 - 2021-05-13 20:18 - 000689952 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2021-06-02 18:23 - 2021-05-13 20:18 - 000656176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2021-06-02 18:23 - 2021-05-13 20:18 - 000445744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2021-06-02 18:23 - 2021-05-13 20:17 - 008317232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2021-06-02 18:23 - 2021-05-13 20:17 - 007434032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2021-06-02 18:23 - 2021-05-13 20:17 - 004795184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2021-06-02 18:23 - 2021-05-13 20:17 - 002823472 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2021-06-02 18:23 - 2021-05-13 20:16 - 000848688 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2021-06-02 18:23 - 2021-05-13 12:38 - 000087164 _____ C:\Windows\system32\nvinfo.pb 2021-06-02 18:21 - 2021-06-02 18:21 - 000003766 _____ C:\Windows\system32\Tasks\NVCleanstall 2021-06-02 17:53 - 2021-06-02 17:53 - 000000000 ___SD C:\Windows\system32\containers 2021-06-02 16:34 - 2021-06-06 16:27 - 000000000 ___RD C:\Users\Christian\Descargas 2021-05-31 18:24 - 2021-05-31 18:24 - 000000682 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nano-Hencore.lnk 2021-05-31 18:24 - 2021-05-31 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qcma 2021-05-30 19:47 - 2021-05-30 19:47 - 000000020 ___SH C:\Users\Classic .NET AppPool\ntuser.ini 2021-05-30 19:47 - 2021-05-30 19:47 - 000000020 ___SH C:\Users\.NET v4.5\ntuser.ini 2021-05-30 19:47 - 2021-05-30 19:47 - 000000020 ___SH C:\Users\.NET v4.5 Classic\ntuser.ini 2021-05-30 19:47 - 2021-05-30 19:47 - 000000020 ___SH C:\Users\.NET v2.0\ntuser.ini 2021-05-30 19:47 - 2021-05-30 19:47 - 000000020 ___SH C:\Users\.NET v2.0 Classic\ntuser.ini 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Reciente 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Plantillas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Mis documentos 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Menú Inicio 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Impresoras 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Entorno de red 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Configuración local 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Historial 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Archivos temporales de Internet 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Reciente 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Plantillas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Mis documentos 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Menú Inicio 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Impresoras 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Entorno de red 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\Configuración local 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Historial 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Archivos temporales de Internet 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Reciente 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Plantillas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Mis documentos 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Menú Inicio 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Impresoras 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Entorno de red 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Configuración local 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Historial 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Archivos temporales de Internet 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Reciente 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Plantillas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Mis documentos 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Menú Inicio 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Impresoras 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Entorno de red 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\Configuración local 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Historial 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Archivos temporales de Internet 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Reciente 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Plantillas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Mis documentos 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Menú Inicio 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Impresoras 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Entorno de red 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Configuración local 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Historial 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Datos de programa 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Archivos temporales de Internet 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 ____D C:\Users\Classic .NET AppPool 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 ____D C:\Users\.NET v4.5 Classic 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 ____D C:\Users\.NET v4.5 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 ____D C:\Users\.NET v2.0 Classic 2021-05-30 19:47 - 2021-05-30 19:47 - 000000000 ____D C:\Users\.NET v2.0 2021-05-30 19:47 - 2020-12-13 21:38 - 000000000 ____D C:\Users\Classic .NET AppPool\AppData\Roaming\Macromedia 2021-05-30 19:47 - 2020-12-13 21:38 - 000000000 ____D C:\Users\.NET v4.5\AppData\Roaming\Macromedia 2021-05-30 19:47 - 2020-12-13 21:38 - 000000000 ____D C:\Users\.NET v4.5 Classic\AppData\Roaming\Macromedia 2021-05-30 19:47 - 2020-12-13 21:38 - 000000000 ____D C:\Users\.NET v2.0\AppData\Roaming\Macromedia 2021-05-30 19:47 - 2020-12-13 21:38 - 000000000 ____D C:\Users\.NET v2.0 Classic\AppData\Roaming\Macromedia 2021-05-30 19:47 - 2020-10-26 16:39 - 000000000 ____D C:\Users\Classic .NET AppPool\UrbanVPN 2021-05-30 19:47 - 2020-10-26 16:39 - 000000000 ____D C:\Users\.NET v4.5\UrbanVPN 2021-05-30 19:47 - 2020-10-26 16:39 - 000000000 ____D C:\Users\.NET v4.5 Classic\UrbanVPN 2021-05-30 19:47 - 2020-10-26 16:39 - 000000000 ____D C:\Users\.NET v2.0\UrbanVPN 2021-05-30 19:47 - 2020-10-26 16:39 - 000000000 ____D C:\Users\.NET v2.0 Classic\UrbanVPN 2021-05-30 19:47 - 2019-12-07 11:10 - 000001105 _____ C:\Users\Classic .NET AppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-30 19:47 - 2019-12-07 11:10 - 000001105 _____ C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-30 19:47 - 2019-12-07 11:10 - 000001105 _____ C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-30 19:47 - 2019-12-07 11:10 - 000001105 _____ C:\Users\.NET v2.0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-30 19:47 - 2019-12-07 11:10 - 000001105 _____ C:\Users\.NET v2.0 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-30 19:45 - 2021-05-30 19:45 - 000000000 ____D C:\Program Files\Hyper-V 2021-05-30 17:52 - 2021-05-30 17:52 - 000000672 _____ C:\Windows\ddclog.txt 2021-05-30 17:39 - 2021-06-02 18:06 - 000000208 _____ C:\Windows\SysWOW64\AbBakConfig.dat 2021-05-30 17:39 - 2021-05-30 17:39 - 000000000 ____D C:\ProgramData\Aomei 2021-05-30 17:38 - 2021-05-30 17:52 - 000000690 _____ C:\Windows\GA_OF.dat 2021-05-30 17:38 - 2017-02-28 14:20 - 000038320 _____ C:\Windows\SysWOW64\ampa.sys 2021-05-30 15:43 - 2021-05-30 15:43 - 000001775 _____ C:\Users\Public\Desktop\Macrium Reflect.lnk 2021-05-30 12:31 - 2021-05-30 12:31 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2021-05-30 12:31 - 2021-05-30 12:31 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2021-05-30 12:31 - 2021-05-30 12:31 - 002260480 _____ (The ICU Project) C:\Windows\system32\icu.dll 2021-05-30 12:31 - 2021-05-30 12:31 - 001864192 _____ (The ICU Project) C:\Windows\SysWOW64\icu.dll 2021-05-30 12:31 - 2021-05-30 12:31 - 001823792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-05-30 12:31 - 2021-05-30 12:31 - 001393496 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-05-30 12:31 - 2021-05-30 12:31 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2021-05-30 12:31 - 2021-05-30 12:31 - 000657464 _____ C:\Windows\system32\WindowManagementAPI.dll 2021-05-30 12:31 - 2021-05-30 12:31 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2021-05-30 12:31 - 2021-05-30 12:31 - 000563712 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-05-30 12:31 - 2021-05-30 12:31 - 000468440 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll 2021-05-30 12:31 - 2021-05-30 12:31 - 000451072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2021-05-30 12:31 - 2021-05-30 12:31 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-05-30 12:31 - 2021-05-30 12:31 - 000287232 _____ C:\Windows\system32\CoreMas.dll 2021-05-30 12:31 - 2021-05-30 12:31 - 000272384 _____ C:\Windows\system32\TpmTool.exe 2021-05-30 12:31 - 2021-05-30 12:31 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2021-05-30 12:31 - 2021-05-30 12:31 - 000097280 _____ C:\Windows\system32\Drivers\cimfs.sys 2021-05-30 12:31 - 2021-05-30 12:31 - 000011327 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-05-28 21:02 - 2021-05-30 15:50 - 000000000 ____D C:\ProgramData\Macrium 2021-05-28 20:40 - 2021-06-06 09:42 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2021-05-28 16:03 - 2021-05-28 16:03 - 000000000 ____D C:\Users\Christian\AppData\Local\Apple Computer 2021-05-27 16:22 - 2021-05-27 16:22 - 000000000 ____D C:\Users\Christian\AppData\Local\signal-desktop-updater 2021-05-26 19:48 - 2021-05-26 19:48 - 000002323 _____ C:\Users\Christian\Desktop\Salad.lnk 2021-05-25 16:01 - 2021-05-24 12:39 - 000389600 ____X C:\Windows\system32\Drivers\googledrivefs3460.sys 2021-05-25 15:47 - 2021-05-25 15:47 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Honeygain 0.10.0.0 2021-05-25 15:47 - 2021-05-25 15:47 - 000000000 ____D C:\Users\Christian\AppData\Local\AdvinstAnalytics 2021-05-24 18:18 - 2021-05-24 18:18 - 000000000 ____D C:\Users\Christian\AppData\Roaming\JAM Software 2021-05-24 18:17 - 2021-05-24 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free 2021-05-23 14:25 - 2021-05-23 14:25 - 003038248 _____ (crosire) C:\Users\Christian\Desktop\ReShade_Setup_4.9.1.exe 2021-05-23 12:59 - 2021-05-23 12:59 - 000000657 _____ C:\Users\Christian\Desktop\MegaDownloader.lnk 2021-05-23 00:29 - 2021-05-23 00:29 - 000000925 _____ C:\Users\Public\Desktop\MegaDownloader.lnk 2021-05-23 00:29 - 2021-05-23 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MegaDownloader 2021-05-23 00:29 - 2021-05-23 00:29 - 000000000 ____D C:\Program Files\MegaDownloader 2021-05-23 00:25 - 2021-05-23 00:27 - 000000000 ____D C:\Windows\system32\Tasks\MEGA 2021-05-23 00:17 - 2021-06-02 20:20 - 000001429 _____ C:\Users\Christian\Desktop\Roblox Player.lnk 2021-05-22 23:40 - 2021-05-23 14:27 - 000000000 ____D C:\Program Files (x86)\RoShade 2021-05-22 22:51 - 2021-05-22 22:51 - 000000000 ____D C:\Users\Christian\AppData\Local\Rocket League 2021-05-22 22:44 - 2021-05-22 22:44 - 000000222 _____ C:\Users\Christian\Desktop\PAYDAY 2.url 2021-05-22 21:12 - 2021-05-22 21:12 - 000000000 ____D C:\Users\Christian\AppData\LocalLow\Team 17 Digital ltd_ 2021-05-22 17:33 - 2021-05-22 17:33 - 000000000 ____D C:\Users\Christian\AppData\Roaming\2K Sports 2021-05-22 16:57 - 2021-05-22 16:57 - 000003398 _____ C:\Windows\system32\Tasks\GPU-Z 2021-05-22 09:02 - 2021-05-22 09:02 - 000002538 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Empresarial.lnk 2021-05-22 09:02 - 2021-05-22 09:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2021-05-21 23:03 - 2021-05-21 23:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare 2021-05-18 16:04 - 2021-06-02 20:20 - 000001252 _____ C:\Users\Christian\Desktop\Roblox Studio.lnk 2021-05-15 16:24 - 2021-06-06 13:09 - 000000000 ____D C:\Users\Christian\AppData\Local\CrashDumps 2021-05-14 23:07 - 2020-10-21 23:11 - 001025336 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys 2021-05-14 23:07 - 2020-10-21 23:11 - 000523576 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys 2021-05-14 20:36 - 2021-06-06 16:24 - 000000000 ____D C:\Program Files\TeamViewer 2021-05-14 20:36 - 2021-05-14 20:36 - 000000889 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2021-05-14 20:36 - 2021-05-14 20:36 - 000000877 _____ C:\Users\Public\Desktop\TeamViewer.lnk 2021-05-13 14:39 - 2021-06-02 17:27 - 000164168 _____ C:\Windows\system32\cmdiag.exe 2021-05-13 14:39 - 2021-06-02 17:27 - 000103936 _____ C:\Windows\system32\cmimageworker.exe 2021-05-13 14:39 - 2021-05-13 14:39 - 001687040 _____ C:\Windows\system32\libcrypto.dll 2021-05-13 14:39 - 2021-05-13 14:39 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE 2021-05-13 14:39 - 2021-05-13 14:39 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2021-05-13 14:39 - 2021-05-13 14:39 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-05-13 14:39 - 2021-05-13 14:39 - 000157184 _____ C:\Windows\system32\uwfcsp.dll 2021-05-13 14:39 - 2021-05-13 14:39 - 000153600 _____ C:\Windows\system32\uwfcfgmgmt.dll 2021-05-13 14:39 - 2021-05-13 14:39 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2021-05-13 14:39 - 2021-05-13 14:39 - 000014848 _____ C:\Windows\system32\hnsproxy.dll 2021-05-13 14:39 - 2021-05-13 14:39 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe 2021-05-11 18:03 - 2021-05-14 23:07 - 000000000 ____D C:\Users\Christian\AppData\Roaming\LibreWolf 2021-05-11 18:03 - 2021-05-11 18:03 - 000000000 ____D C:\Users\Christian\AppData\Local\LibreWolf 2021-05-11 18:03 - 2021-05-11 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreWolf 2021-05-11 18:03 - 2021-05-11 18:03 - 000000000 ____D C:\Program Files\LibreWolf 2021-05-10 17:45 - 2021-05-10 17:45 - 000000782 _____ C:\Users\Christian\Desktop\Multi-Drive.lnk 2021-05-10 17:45 - 2021-05-10 17:45 - 000000731 _____ C:\Users\Christian\Desktop\Nox.lnk 2021-05-10 17:45 - 2021-05-10 17:45 - 000000000 ____D C:\Users\Christian\.BigNox 2021-05-10 17:45 - 2021-05-10 17:45 - 000000000 ____D C:\Program Files (x86)\Bignox 2021-05-09 14:44 - 2021-05-23 13:14 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Code 2021-05-09 14:44 - 2021-05-09 14:44 - 000000000 ____D C:\Users\Christian\.vscode 2021-05-09 14:24 - 2021-05-28 20:52 - 000000000 ____D C:\Users\Christian\AppData\Local\FiveM 2021-05-09 14:24 - 2021-05-09 14:24 - 000002148 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FiveM.lnk 2021-05-09 14:24 - 2021-05-09 14:24 - 000002140 _____ C:\Users\Christian\Desktop\FiveM.lnk 2021-05-09 14:24 - 2021-05-09 14:24 - 000001416 _____ C:\Users\Christian\Desktop\Visual Studio Code.lnk 2021-05-08 18:13 - 2021-05-08 18:13 - 000000219 ____X C:\Users\Christian\Desktop\Counter-Strike Global Offensive.url ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2021-06-06 16:28 - 2020-06-24 14:02 - 000000000 ____D C:\Users\Christian\AppData\Local\BitTorrentHelper 2021-06-06 16:26 - 2021-05-01 22:33 - 000000000 ____D C:\ProgramData\NVIDIA 2021-06-06 16:25 - 2021-03-31 15:38 - 000000000 ____D C:\Users\Christian\AppData\LocalLow\Mozilla 2021-06-06 16:25 - 2020-10-25 16:32 - 000000000 ____D C:\Users\Christian\AppData\Roaming\uTorrent Web 2021-06-06 16:25 - 2020-08-29 18:17 - 000000000 ____D C:\Users\Christian\AppData\Local\LogMeIn Hamachi 2021-06-06 16:25 - 2020-06-23 23:34 - 000000000 ____D C:\Program Files (x86)\Steam 2021-06-06 16:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2021-06-06 16:24 - 2021-04-19 21:22 - 000000443 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2021-06-06 16:24 - 2021-02-22 16:20 - 000001134 _____ C:\Windows\system32\config\VSMIDK 2021-06-06 16:24 - 2020-12-07 22:35 - 000000000 ____D C:\Windows\Minidump 2021-06-06 16:24 - 2020-12-06 15:13 - 000000000 ____D C:\Users\Christian 2021-06-06 16:24 - 2020-09-27 09:56 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-06-06 16:24 - 2020-09-27 07:55 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-06-06 16:24 - 2020-06-24 04:13 - 000558640 ____N C:\Windows\Minidump\060621-12515-01.dmp 2021-06-06 16:24 - 2020-06-24 04:13 - 000008192 ___SH C:\DumpStack.log.tmp 2021-06-06 16:24 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-06-06 15:44 - 2020-06-24 04:26 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2021-06-06 15:43 - 2020-06-24 04:27 - 000000000 ____D C:\Users\Christian\AppData\Local\D3DSCache 2021-06-06 15:43 - 2020-06-24 04:25 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner 2021-06-06 13:14 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI 2021-06-06 13:09 - 2020-12-06 15:21 - 000003148 _____ C:\Windows\system32\Tasks\MSIAfterburner 2021-06-06 11:31 - 2020-06-23 23:33 - 000000000 ____D C:\Users\Christian\AppData\Roaming\discord 2021-06-06 11:10 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2021-06-06 10:56 - 2020-12-06 15:03 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-06-06 10:40 - 2021-01-06 19:41 - 000000000 ____D C:\Users\Christian\AppData\Local\Discord 2021-06-06 10:28 - 2020-06-24 04:13 - 000609514 ____N C:\Windows\Minidump\060621-12906-01.dmp 2021-06-06 10:25 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-06-06 09:56 - 2020-06-24 04:22 - 000000000 ____D C:\ProgramData\Package Cache 2021-06-06 09:47 - 2021-04-28 15:42 - 000783572 _____ C:\Windows\ntbtlog.txt 2021-06-06 09:06 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-06-06 09:06 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-06-06 09:05 - 2020-06-24 04:18 - 000000000 ____D C:\Users\Christian\AppData\Local\Packages 2021-06-06 01:23 - 2020-12-06 15:20 - 002079054 _____ C:\Windows\system32\PerfStringBackup.INI 2021-06-06 01:23 - 2019-12-07 16:55 - 000903396 _____ C:\Windows\system32\perfh00A.dat 2021-06-06 01:23 - 2019-12-07 16:55 - 000206084 _____ C:\Windows\system32\perfc00A.dat 2021-06-06 01:23 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2021-06-06 01:16 - 2021-04-17 18:56 - 000000000 ____D C:\Users\Christian\AppData\Local\ElevatedDiagnostics 2021-06-05 23:43 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-06-05 23:14 - 2020-06-24 13:10 - 000000000 ____D C:\Users\Christian\AppData\Roaming\SAuth 2021-06-05 20:53 - 2020-09-27 09:56 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-06-05 20:46 - 2021-05-01 23:49 - 000000000 ____D C:\Users\Christian\AppData\Local\NVIDIA 2021-06-04 23:41 - 2020-08-08 16:10 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files 2021-06-04 23:29 - 2020-07-19 21:13 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2021-06-04 23:29 - 2020-07-19 21:13 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab 2021-06-04 23:29 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-06-04 20:13 - 2020-08-11 18:55 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pylo 2021-06-04 20:13 - 2020-08-11 18:55 - 000000000 ____D C:\Program Files\Pylo 2021-06-04 20:13 - 2020-08-11 18:51 - 000000000 ____D C:\Program Files (x86)\Pylo 2021-06-03 18:20 - 2020-07-22 22:20 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2021-06-03 18:16 - 2020-12-13 18:09 - 000000000 ____D C:\ProgramData\BSD 2021-06-03 18:16 - 2020-12-01 17:16 - 000000000 ____D C:\Users\Christian\AppData\Roaming\IObit 2021-06-03 18:16 - 2020-12-01 17:16 - 000000000 ____D C:\ProgramData\IObit 2021-06-03 18:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\inetsrv 2021-06-03 17:53 - 2021-04-28 18:00 - 000000000 ____D C:\inetpub 2021-06-03 17:53 - 2021-02-18 18:00 - 000000000 ___SD C:\Windows\system32\lxss 2021-06-03 17:53 - 2019-12-07 16:55 - 000000000 ____D C:\Windows\system32\0409 2021-06-03 17:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\inetsrv 2021-06-03 17:47 - 2021-05-01 22:33 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-06-03 16:23 - 2021-03-13 17:27 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\ProjectedFSLib.dll 2021-06-03 16:08 - 2020-11-22 19:11 - 000000000 ____D C:\Users\Christian\AppData\Local\paint.net 2021-06-02 21:14 - 2020-07-01 13:34 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Salad 2021-06-02 20:20 - 2020-06-23 23:38 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2021-06-02 18:31 - 2021-05-01 23:48 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2021-06-02 18:26 - 2021-05-01 22:33 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-06-02 17:29 - 2020-07-02 22:33 - 000006288 __RSH C:\ProgramData\ntuser.pol 2021-06-02 17:27 - 2021-04-17 17:30 - 001281848 _____ (Microsoft Corporation) C:\Windows\system32\VmComputeAgent.exe 2021-06-02 17:27 - 2021-04-17 17:30 - 000237368 _____ (Microsoft Corporation) C:\Windows\system32\CExecSvc.exe 2021-06-02 17:27 - 2021-04-17 17:30 - 000175928 _____ (Microsoft Corporation) C:\Windows\system32\vmickrnl.dll 2021-06-02 17:27 - 2021-03-13 17:27 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\VmComputeProxy.dll 2021-06-02 17:27 - 2019-12-07 11:10 - 000085512 _____ (Microsoft Corporation) C:\Windows\system32\wcsetupagent.exe 2021-06-02 17:27 - 2019-12-07 11:10 - 000012088 _____ (Microsoft Corporation) C:\Windows\system32\c28c7a4e-a619-4463-82b7-0fc9cc7187f5_HyperV-ComputeStorage.dll 2021-05-31 20:47 - 2020-07-25 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2021-05-31 20:47 - 2020-07-25 16:49 - 000000000 ____D C:\Program Files (x86)\ImageWriter 2021-05-30 19:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\schemas 2021-05-30 19:31 - 2021-01-13 16:10 - 000221696 _____ (Microsoft Corporation) C:\Windows\system32\mqtrig.dll 2021-05-30 19:31 - 2021-01-13 16:10 - 000165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mqtrig.dll 2021-05-30 19:31 - 2019-12-07 11:10 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\mqtgsvc.exe 2021-05-30 19:31 - 2019-12-07 11:10 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\aspperf.dll 2021-05-30 19:31 - 2019-12-07 11:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspperf.dll 2021-05-30 17:44 - 2020-09-27 07:55 - 000572816 _____ C:\Windows\system32\FNTCACHE.DAT 2021-05-30 17:42 - 2019-12-07 16:58 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-05-30 17:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2021-05-30 17:21 - 2020-08-27 17:13 - 000000000 ____D C:\Users\Christian\AppData\Roaming\slobs-client 2021-05-30 17:15 - 2020-08-27 17:09 - 000000000 ___DX C:\Program Files\Streamlabs OBS 2021-05-30 15:44 - 2021-05-04 16:21 - 000036995 _____ C:\Windows\Macrium Reflect Patch Log.txt 2021-05-30 15:43 - 2021-04-14 17:55 - 000001757 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium viBoot.lnk 2021-05-30 15:43 - 2021-04-14 17:55 - 000000000 ____D C:\Program Files\Macrium 2021-05-30 12:31 - 2020-10-26 19:45 - 000414024 __RSH C:\bootmgr 2021-05-28 21:28 - 2020-06-24 09:45 - 000000000 ____D C:\Program Files\Microsoft Office 2021-05-28 21:27 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-05-28 21:10 - 2021-03-13 15:21 - 000000000 ____D C:\Program Files (x86)\Genesyslogic 2021-05-28 20:37 - 2021-05-05 18:51 - 000000001 _____ C:\Windows\vgkbootstatus.dat 2021-05-28 20:26 - 2020-06-23 23:43 - 000000000 ____D C:\Users\Christian\AppData\Local\Battle.net 2021-05-28 16:03 - 2020-06-23 23:42 - 000000000 ____D C:\Program Files (x86)\Battle.net 2021-05-27 21:09 - 2020-12-12 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2021-05-27 16:33 - 2020-07-01 12:36 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-05-27 16:06 - 2021-04-12 19:23 - 000001122 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk 2021-05-27 16:06 - 2021-04-12 19:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro 2021-05-26 19:48 - 2020-08-09 18:41 - 000002331 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Salad.lnk 2021-05-26 19:44 - 2020-07-01 13:34 - 000000000 ____D C:\Users\Christian\AppData\Local\salad-updater 2021-05-26 18:04 - 2020-11-06 13:44 - 000000000 ____D C:\Users\Christian\AppData\Roaming\vlc 2021-05-26 17:29 - 2020-12-06 15:21 - 000003386 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1299731771-3759353342-2654163757-1001 2021-05-26 17:29 - 2020-12-06 15:13 - 000002413 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-26 17:29 - 2020-06-24 04:19 - 000000000 ___RD C:\Users\Christian\OneDrive 2021-05-25 19:39 - 2020-06-23 23:33 - 000002251 ____X C:\Users\Christian\Desktop\Discord.lnk 2021-05-25 19:03 - 2021-05-06 16:06 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Authy Desktop 2021-05-25 17:53 - 2021-04-28 18:42 - 000000000 ____D C:\Program Files\MyMonero 2021-05-25 17:53 - 2021-04-10 10:14 - 000001886 _____ C:\Users\Public\Desktop\MyMonero.lnk 2021-05-25 17:53 - 2021-04-10 10:14 - 000000000 ____D C:\Users\Christian\AppData\Roaming\MyMonero 2021-05-25 17:11 - 2021-04-10 10:14 - 000000000 ____D C:\Users\Christian\AppData\Local\mymonero-updater 2021-05-25 16:23 - 2021-04-14 17:37 - 000000000 ____D C:\Program Files\Google 2021-05-25 16:11 - 2020-06-23 23:30 - 000000000 ____D C:\Users\Christian\AppData\Local\Google 2021-05-25 16:01 - 2021-04-05 15:19 - 000002064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2021-05-25 15:49 - 2021-05-06 16:06 - 000002399 ____X C:\Users\Christian\Desktop\Authy Desktop.lnk 2021-05-23 14:10 - 2020-06-24 04:52 - 000000000 ____D C:\Users\Christian\AppData\Local\PlaceholderTileLogoFolder 2021-05-23 14:08 - 2019-12-07 16:58 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-05-23 14:08 - 2019-12-07 16:58 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-05-23 14:08 - 2019-12-07 16:55 - 000000000 ____D C:\Windows\SysWOW64\WCN 2021-05-23 14:08 - 2019-12-07 16:55 - 000000000 ____D C:\Windows\system32\WCN 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-05-23 14:08 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-05-23 14:08 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing 2021-05-23 14:04 - 2019-12-07 16:57 - 000000000 ____D C:\Windows\OCR 2021-05-23 13:13 - 2021-05-02 00:42 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2021-05-23 00:17 - 2020-06-23 23:38 - 000000252 _____ C:\Users\Christian\AppData\LocalLow\rbxcsettings.rbx 2021-05-22 23:22 - 2021-04-24 16:31 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-05-22 23:22 - 2021-02-06 11:41 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-05-22 23:22 - 2020-08-03 13:28 - 000000000 ____D C:\ProgramData\Mozilla 2021-05-22 19:43 - 2021-05-01 23:49 - 000000000 ____D C:\Users\Christian\AppData\Local\NVIDIA Corporation 2021-05-22 16:04 - 2020-06-23 23:33 - 000000000 ____D C:\ProgramData\Epic 2021-05-22 09:02 - 2021-04-12 16:22 - 000002489 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-05-22 09:02 - 2021-04-12 16:22 - 000002470 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-05-22 09:02 - 2021-04-12 16:22 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-05-22 09:02 - 2021-04-12 16:22 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-05-22 09:02 - 2021-04-12 16:22 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-05-22 09:02 - 2021-04-12 16:22 - 000002397 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-05-22 09:02 - 2020-06-24 09:48 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project.lnk 2021-05-22 09:02 - 2020-06-24 09:48 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visio.lnk 2021-05-22 09:02 - 2020-06-24 09:48 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-05-21 21:46 - 2020-06-24 04:26 - 000000000 ____D C:\AMD 2021-05-21 21:45 - 2020-06-24 04:57 - 000000000 ____D C:\Program Files\AMD 2021-05-21 21:14 - 2021-04-21 16:23 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Brave 2021-05-21 20:58 - 2020-07-06 15:10 - 000001104 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2021-05-21 20:58 - 2020-07-06 15:10 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Notepad++ 2021-05-19 20:43 - 2020-06-25 19:17 - 001694672 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2021-05-19 20:43 - 2020-06-25 19:17 - 000250304 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2021-05-19 20:43 - 2020-06-25 19:17 - 000192952 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll 2021-05-19 20:43 - 2020-06-25 19:17 - 000159680 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2021-05-19 20:43 - 2020-06-25 19:17 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2021-05-19 20:43 - 2020-06-25 19:17 - 000038328 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe 2021-05-18 18:03 - 2021-05-03 16:15 - 000002388 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-05-18 18:03 - 2021-05-03 16:15 - 000002380 _____ C:\Users\Christian\Desktop\Microsoft Teams.lnk 2021-05-16 19:35 - 2021-05-05 18:43 - 000000000 ____D C:\ProgramData\Riot Games 2021-05-14 21:26 - 2020-06-24 11:11 - 000000000 ____D C:\Users\Christian\AppData\Roaming\.minecraft 2021-05-14 20:37 - 2021-05-04 20:12 - 000000000 ____D C:\Users\Christian\AppData\Roaming\TeamViewer 2021-05-14 15:46 - 2020-11-22 19:05 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-05-13 20:15 - 2021-05-01 23:47 - 007212224 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2021-05-13 20:15 - 2021-05-01 23:47 - 006159152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2021-05-13 19:55 - 2019-12-07 16:56 - 000000000 ____D C:\Windows\system32\OpenSSH 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2021-05-13 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack 2021-05-13 15:46 - 2020-06-24 00:34 - 000000000 ____D C:\Windows\system32\MRT 2021-05-13 15:44 - 2021-04-03 14:03 - 000000000 ___DX C:\Program Files\Recuva 2021-05-13 15:44 - 2020-06-24 00:34 - 132732536 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-05-13 14:40 - 2019-12-07 16:58 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll 2021-05-13 12:38 - 2021-05-01 23:47 - 000136472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2021-05-12 21:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports 2021-05-12 21:56 - 2021-03-08 16:59 - 000000000 ____D C:\Users\Christian\AppData\Roaming\balena-etcher 2021-05-10 21:48 - 2020-06-23 23:31 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher 2021-05-10 17:45 - 2021-04-28 15:30 - 000000000 ____D C:\Users\Christian\vmlogs 2021-05-10 17:45 - 2020-08-16 18:37 - 000000000 ____D C:\Users\Christian\AppData\Roaming\NoxSrv 2021-05-10 17:45 - 2020-08-16 18:37 - 000000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Nox 2021-05-10 17:45 - 2020-08-16 18:35 - 000000000 ____D C:\Users\Christian\AppData\Local\Nox 2021-05-10 17:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\registration 2021-05-09 14:28 - 2020-07-01 20:37 - 000000000 ____D C:\Users\Christian\AppData\Local\DigitalEntitlements 2021-05-09 14:24 - 2021-03-13 17:02 - 000002140 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FiveM - Cfx.re Development Kit (FxDK).lnk 2021-05-08 18:05 - 2021-02-19 21:09 - 001439456 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys 2021-05-08 16:22 - 2021-05-01 15:12 - 000000000 ____D C:\Users\Christian\AppData\Local\UNDERTALE ==================== Archivos en la raíz de algunos directorios ======== 2020-07-05 19:24 - 2020-09-17 22:47 - 000003584 _____ () C:\Users\Christian\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2020-08-16 20:54 - 2020-08-16 21:32 - 000000120 _____ () C:\Users\Christian\AppData\Local\injk.conf 2020-08-17 17:45 - 2021-02-09 19:08 - 000007605 _____ () C:\Users\Christian\AppData\Local\Resmon.ResmonCfg ==================== FLock ============================== 2021-05-24 12:39 C:\Windows\system32\Drivers\googledrivefs3460.sys ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) ==================== Final de FRST.txt ========================