Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019 Ran by javier (administrator) on DESKTOP-CPEV8US (Micro-Star International Co., Ltd. MS-7B48) (10-12-2019 17:01:02) Running from C:\Users\javier\Downloads Loaded Profiles: javier (Available Profiles: defaultuser0 & javier) Platform: Windows 10 Enterprise Version 1903 18362.476 (X64) Language: Español (España, internacional) Default browser: Chrome Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) () [File not signed] C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\javier\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Engine_Patch_1.1.16500.1.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MpCmdRun.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MpCmdRun.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAConsole.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (Spotify AB -> Spotify Ltd) C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe (Spotify AB -> Spotify Ltd) C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe (Spotify AB -> Spotify Ltd) C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe (Spotify AB -> Spotify Ltd) C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe (Spotify AB -> Spotify Ltd) C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [808504 2018-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [318920 2019-03-25] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) HKLM-x32\...\Run: [UnlockerAssistant] => C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe [17408 2010-07-04] () [File not signed] HKU\S-1-5-21-174672074-1527293782-3393422463-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [7938648 2019-11-22] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) HKU\S-1-5-21-174672074-1527293782-3393422463-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3289040 2019-12-06] (Valve -> Valve Corporation) HKU\S-1-5-21-174672074-1527293782-3393422463-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36058000 2019-12-08] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-174672074-1527293782-3393422463-1001\...\Run: [Spotify] => C:\Users\javier\AppData\Roaming\Spotify\Spotify.exe [22051232 2019-12-06] (Spotify AB -> Spotify Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-23] (Google LLC -> Google LLC) GroupPolicy: Restriction ? <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {17092410-15BD-4316-81C0-19E1AAC1AED5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-03] (Google Inc -> Google Inc.) Task: {181808D6-AD7F-441B-97AC-86E95D02F0AE} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe Task: {1B44A149-4A2D-4264-9878-6AE60ED8543E} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {1F162A05-B4ED-4C4D-A85A-0DB8A51DA22E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-03] (Google Inc -> Google Inc.) Task: {22F7A698-FA9E-4714-B231-D496ED538127} - no filepath Task: {2375D186-BAD9-437B-8D87-4D1E0F6EF64F} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\javier\Downloads\esetonlinescanner_esn.exe [8162616 2019-11-12] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {6A1DE769-BE58-49B0-8838-7B61B0467A89} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [903520 2019-02-13] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {A44BA3C7-7FD5-439A-9171-141A060603FE} - no filepath Task: {D9F82B9E-2C8D-4390-ADF9-132A371110C4} - no filepath Task: {DE3798DE-16AD-4D6C-8A0C-1E493F55F9D2} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\javier\Downloads\esetonlinescanner_esn.exe [8162616 2019-11-12] (ESET, spol. s r.o. -> ESET spol. s r.o.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Intel PTT EK Recertification.job => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 80.58.61.250 80.58.61.254 Tcpip\..\Interfaces\{adf422d0-a3bd-4bea-aadd-24d1ae5d5712}: [DhcpNameServer] 80.58.61.250 80.58.61.254 Tcpip\..\Interfaces\{b6dfa2d0-1f6d-4e8f-b4c3-693561f32550}: [DhcpNameServer] 80.58.61.250 80.58.61.254 Internet Explorer: ================== HKU\S-1-5-21-174672074-1527293782-3393422463-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10439__181004 SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-174672074-1527293782-3393422463-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: 3cyuacdz.default FF ProfilePath: C:\Users\javier\AppData\Roaming\Mozilla\Firefox\Profiles\3cyuacdz.default [2019-11-22] FF Homepage: Mozilla\Firefox\Profiles\3cyuacdz.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10439__181004 FF NewTab: Mozilla\Firefox\Profiles\3cyuacdz.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10439__181004 FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) Chrome: ======= CHR Notifications: Default -> hxxps://www.guruwalk.com CHR Profile: C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default [2019-12-10] CHR Extension: (Presentaciones) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-03] CHR Extension: (Documentos) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-03] CHR Extension: (Google Drive) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-08-03] CHR Extension: (YouTube) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-03] CHR Extension: (uBlock Origin) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-10-29] CHR Extension: (Baixe vídeos do Vimeo) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\cocpoafjpjoicnackaebgdapfoapikpo [2019-09-08] CHR Extension: (Allavsoft video downloader converter) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhancbnhabhandieicagelcddkdfgoif [2018-09-25] CHR Extension: (Hojas de cálculo) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-03] CHR Extension: (Cookie AutoDelete) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhcgjolkccmbidfldomjliifgaodjagh [2019-07-11] CHR Extension: (Documentos de Google sin conexión) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-27] CHR Extension: (PopUpOFF - Popup and overlay blocker) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifnkdbpmgkdbfklnbfidaackdenlmhgh [2019-11-25] CHR Extension: (Disconnect) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2019-07-24] CHR Extension: (Player para ver Movistar+) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\kenfcfndncbbggmafjjeihkdclggbojn [2019-07-14] CHR Extension: (Ghostery – Bloqueador de anuncios para privacidad) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2019-11-14] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-08-03] CHR Extension: (Gmail) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-01] CHR Extension: (Chrome Media Router) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-28] CHR Extension: (Privacy Badger) - C:\Users\javier\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2019-11-19] CHR Profile: C:\Users\javier\AppData\Local\Google\Chrome\User Data\System Profile [2019-05-05] CHR HKLM-x32\...\Chrome\Extension: [dhancbnhabhandieicagelcddkdfgoif] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.16.1.6790\BVDChromeExt.crx [2018-09-25] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-04-18] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-06-12] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [870760 2019-02-13] (Intel(R) Trust Services -> Intel(R) Corporation) S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [783208 2019-02-13] (Intel(R) Trust Services -> Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [290392 2019-02-27] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2466608 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3344176 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts) S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [808504 2018-09-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28760 2019-11-22] (LAVASOFT SOFTWARE CANADA INC -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1017200 2019-03-25] (Intel(R) Rapid Storage Technology -> Intel Corporation) R3 netr28ux; C:\WINDOWS\System32\drivers\netr28ux.sys [2224128 2019-03-19] (Microsoft Windows -> MediaTek Inc.) R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_db678424d2641c3d\nvlddmkm.sys [22094728 2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation) R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [191448 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security S.L. -> Panda Security, S.L.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-11-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-11-12] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-11-12] (Microsoft Windows -> Microsoft Corporation) S3 WsAudio_Device; C:\WINDOWS\system32\drivers\VirtualAudio.sys [48424 2018-01-19] (Wondershare Technology Co.,Ltd -> Wondershare) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) =================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-10 17:01 - 2019-12-10 17:02 - 000025735 _____ C:\Users\javier\Downloads\FRST.txt 2019-12-10 17:00 - 2019-12-10 17:02 - 000000000 ____D C:\FRST 2019-12-10 17:00 - 2019-12-10 17:00 - 002263552 _____ (Farbar) C:\Users\javier\Downloads\FRST64.exe 2019-12-10 16:55 - 2019-12-10 16:55 - 000000000 ___HD C:\OneDriveTemp 2019-12-10 16:51 - 2019-12-10 16:51 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2019-12-10 16:50 - 2019-12-10 16:53 - 000226720 _____ C:\WINDOWS\ntbtlog.txt 2019-12-08 14:30 - 2019-12-08 14:31 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2019-12-08 14:30 - 2019-10-04 16:55 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2019-12-08 14:30 - 2019-10-04 16:55 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe 2019-12-08 14:30 - 2019-10-04 16:55 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2019-12-08 14:30 - 2019-10-04 16:55 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2019-12-08 14:30 - 2019-10-04 16:54 - 011059640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 009492896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2019-12-08 14:30 - 2019-10-04 16:54 - 000456632 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 002041784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001721816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6443200.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001543424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001472200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001468504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6443200.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001164160 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 001135816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000914336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000822232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000810456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000676824 _____ C:\WINDOWS\system32\nvofapi64.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000656344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000633728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000544160 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000523520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2019-12-08 14:29 - 2019-10-04 16:53 - 000055448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 040412760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 035269832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 020194712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 017471576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 005425808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2019-12-08 14:29 - 2019-10-04 16:52 - 004768160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2019-12-08 14:29 - 2019-10-04 16:51 - 004342528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2019-12-05 18:12 - 2019-12-05 18:12 - 000000000 ____D C:\Users\javier\AppData\Local\Foxit Reader 2019-12-05 18:11 - 2019-12-05 18:11 - 000754568 _____ C:\Users\javier\Downloads\CCF031219.pdf 2019-12-05 18:10 - 2019-12-05 18:10 - 001552492 _____ C:\Users\javier\Downloads\CCE031219.pdf 2019-12-05 18:10 - 2019-12-05 18:10 - 000749758 _____ C:\Users\javier\Downloads\CCF031219_0001.pdf 2019-12-05 17:58 - 2019-12-05 17:59 - 001090168 _____ (ESET) C:\Users\javier\Desktop\esetuninstaller.exe 2019-12-05 17:55 - 2019-12-05 17:55 - 000004266 _____ C:\Users\javier\NetworkSettings.txt 2019-11-27 18:38 - 2019-11-27 18:38 - 000236726 _____ C:\Users\javier\Downloads\CV Javier Gonzalez Guzman.pdf 2019-11-27 16:58 - 2019-11-27 16:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2019-11-27 16:58 - 2019-11-27 16:57 - 000069160 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2019-11-27 16:57 - 2019-11-27 16:57 - 000000000 ____D C:\Users\javier\AppData\LocalLow\Oracle 2019-11-27 16:57 - 2019-11-27 16:57 - 000000000 ____D C:\Program Files\Java 2019-11-27 16:54 - 2019-11-27 16:56 - 167606832 _____ (Oracle Corporation) C:\Users\javier\Downloads\jdk-13.0.1_windows-x64_bin.exe 2019-11-25 19:13 - 2019-12-04 12:51 - 000000000 ____D C:\Users\javier\Downloads\CARPETA CURRICULUM 2019-11-20 11:06 - 2019-11-20 11:06 - 000066241 _____ C:\Users\javier\Downloads\El_Parque_Magico.torrent 2019-11-19 10:30 - 2019-11-19 10:30 - 000259134 _____ C:\Users\javier\Downloads\111119-OFERTAS-VIGENTES.pdf 2019-11-19 10:24 - 2019-11-19 10:24 - 000432191 _____ C:\Users\javier\Downloads\Resolución inscripción registro Garantía Juvenil.pdf 2019-11-17 12:19 - 2019-11-17 12:19 - 000000133 _____ C:\WINDOWS\SysWOW64\rufus.ini 2019-11-17 11:58 - 2019-11-17 12:28 - 000000424 __RSH C:\ProgramData\ntuser.pol 2019-11-17 11:58 - 2019-11-17 12:00 - 000000131 _____ C:\Users\javier\Downloads\rufus.ini 2019-11-17 11:57 - 2019-11-17 11:57 - 001138744 _____ (Akeo Consulting) C:\Users\javier\Downloads\rufus-3.8p.exe 2019-11-17 11:41 - 2019-11-17 11:41 - 000000000 ____D C:\Users\javier\AppData\Local\Downloaded Installations 2019-11-14 16:06 - 2019-11-14 16:06 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 005763848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002369552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002188808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 002158080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001718584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001659192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001616696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001495864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001413864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 001387024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001185792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 001182720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 001047352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000960040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000816952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000666640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ManagedEventLogging.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000259384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000230200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-11-14 16:06 - 2019-11-14 16:06 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CmUtil.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-11-14 16:06 - 2019-11-14 16:06 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2019-11-14 16:06 - 2019-11-14 16:06 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-11-14 16:06 - 2019-11-14 16:06 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2019-11-14 16:06 - 2019-11-14 16:06 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncController.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2019-11-14 16:06 - 2019-11-14 16:06 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppCore.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAppMonitor.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CabUtil.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.EventLogMessages.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevAgentPolicyGenerator.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000030720 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.WmiAccess.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Management.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppData.WinRT.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncCommon.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Common.WinRT.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.LocalSyncProvider.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernSync.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2019-11-14 16:06 - 2019-11-14 16:06 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateBaselineGenerator.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UevTemplateConfigItemGenerator.exe 2019-11-14 16:06 - 2019-11-14 16:06 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SmbSyncProvider.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.MonitorSyncProvider.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.SyncConditions.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2019-11-14 16:06 - 2019-11-14 16:06 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL 2019-11-14 16:06 - 2019-11-14 16:06 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2019-11-14 16:06 - 2019-11-14 16:06 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 006521768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-11-14 16:05 - 2019-11-14 16:05 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 001664688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2019-11-14 16:05 - 2019-11-14 16:05 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2019-11-14 16:05 - 2019-11-14 16:05 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2019-11-14 16:05 - 2019-11-14 16:05 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll 2019-11-14 16:05 - 2019-11-14 16:05 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 007904152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 007262456 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 002763016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-11-14 16:04 - 2019-11-14 16:04 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001647064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000822200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2019-11-14 16:04 - 2019-11-14 16:04 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys 2019-11-14 16:04 - 2019-11-14 16:04 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe 2019-11-14 16:04 - 2019-11-14 16:04 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2019-11-14 16:04 - 2019-11-14 16:04 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll 2019-11-14 16:03 - 2019-11-14 16:04 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 003968512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2019-11-14 16:03 - 2019-11-14 16:03 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2019-11-14 16:03 - 2019-11-14 16:03 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000065272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS 2019-11-14 16:03 - 2019-11-14 16:03 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll 2019-11-14 16:03 - 2019-11-14 16:03 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2019-11-14 16:03 - 2019-11-14 16:03 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe 2019-11-14 15:34 - 2019-11-14 15:34 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2019-11-14 15:34 - 2019-11-14 15:34 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2019-11-14 12:34 - 2019-11-14 12:34 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-174672074-1527293782-3393422463-1001 2019-11-14 10:54 - 2019-11-14 10:54 - 000037675 _____ C:\Users\javier\Documents\b9a3b8c7766950f243aba17a4e640336.htm 2019-11-14 10:54 - 2019-11-14 10:54 - 000000000 ____D C:\Users\javier\Documents\b9a3b8c7766950f243aba17a4e640336_archivos 2019-11-13 11:29 - 2019-11-13 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2019-11-13 11:29 - 2019-11-13 11:29 - 000000000 ____D C:\Program Files (x86)\FOXIT SOFTWARE 2019-11-12 20:32 - 2019-11-12 20:32 - 000003816 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2019-11-12 20:32 - 2019-11-12 20:32 - 000003374 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2019-11-12 20:06 - 2019-12-03 15:55 - 000000000 ____D C:\Users\javier\AppData\Local\ESET 2019-11-12 20:06 - 2019-11-12 20:06 - 000000770 _____ C:\Users\javier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2019-11-12 19:41 - 2019-11-12 19:41 - 008162616 _____ (ESET spol. s r.o.) C:\Users\javier\Downloads\esetonlinescanner_esn.exe 2019-11-12 19:15 - 2019-11-12 19:15 - 000618167 _____ (LDC ) C:\Users\javier\Downloads\Mx_One_Antivirus_PC.exe 2019-11-12 15:49 - 2019-11-12 15:49 - 000223306 _____ C:\Users\javier\Documents\cc_20191112_154931.reg 2019-11-12 15:33 - 2019-11-12 15:33 - 024578944 _____ (Piriform Software Ltd) C:\Users\javier\Downloads\ccsetup563.exe 2019-11-12 15:33 - 2019-11-12 15:33 - 000000000 ____D C:\Users\javier\AppData\Local\cache 2019-11-12 15:31 - 2019-11-12 15:31 - 001883976 _____ (Malwarebytes) C:\Users\javier\Downloads\MBSetup-009996.009996.exe 2019-11-12 15:27 - 2019-11-12 15:27 - 004773088 _____ (SOSVirus) C:\Users\javier\Downloads\usbfix-11-022.exe 2019-11-12 13:59 - 2019-11-13 11:27 - 000000000 ____D C:\Users\javier\.afirma 2019-11-12 13:59 - 2019-11-12 13:59 - 000001007 _____ C:\Users\Public\Desktop\AutoFirma.lnk 2019-11-12 13:59 - 2019-11-12 13:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoFirma 2019-11-12 13:48 - 2019-11-12 13:59 - 000000000 ____D C:\Program Files\AutoFirma 2019-11-12 13:47 - 2019-04-26 10:50 - 001997894 _____ C:\Users\javier\Downloads\AF_manual_instalacion_usuarios_ES.pdf 2019-11-12 13:47 - 2019-04-25 09:04 - 194543832 _____ C:\Users\javier\Downloads\AutoFirma_64_v1_6_5_installer.exe 2019-11-12 13:44 - 2019-11-12 13:44 - 000032361 _____ C:\Users\javier\Downloads\Documento.pdf 2019-11-12 13:44 - 2019-11-12 13:44 - 000032263 _____ C:\Users\javier\Downloads\CITA SEPE.pdf 2019-11-12 13:35 - 2019-11-12 13:38 - 196393977 _____ C:\Users\javier\Downloads\AutoFirma64.zip ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-10 17:01 - 2018-08-15 07:43 - 000000000 ____D C:\WINDOWS\AutoKMS 2019-12-10 17:00 - 2018-08-04 14:18 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2019-12-10 16:56 - 2019-10-19 15:10 - 000000000 ____D C:\Users\javier\AppData\Roaming\Spotify 2019-12-10 16:55 - 2018-08-03 16:41 - 000000000 ___RD C:\Users\javier\OneDrive 2019-12-10 16:54 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-12-10 16:53 - 2019-09-03 15:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-12-10 16:53 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-12-10 16:53 - 2018-08-03 17:06 - 000000000 ____D C:\ProgramData\NVIDIA 2019-12-10 16:43 - 2019-10-08 12:25 - 358520832 _____ C:\Users\javier\AppData\Local\SageThumbs.db3 2019-12-10 16:42 - 2019-09-24 20:41 - 000004220 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FB76DBC4-B289-4F5B-BD69-345BE89FDEB9} 2019-12-10 16:42 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-12-10 16:41 - 2018-12-08 10:51 - 000000000 ____D C:\Program Files (x86)\Steam 2019-12-10 16:40 - 2019-10-19 15:10 - 000000000 ____D C:\Users\javier\AppData\Local\Spotify 2019-12-08 17:23 - 2019-09-03 15:37 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-12-08 17:23 - 2018-08-03 17:11 - 000000000 ____D C:\Users\javier\AppData\Local\UnrealEngine 2019-12-08 17:13 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2019-12-08 17:13 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2019-12-08 16:31 - 2018-08-03 17:06 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-12-08 14:31 - 2018-08-03 17:06 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2019-12-08 14:31 - 2018-08-03 17:06 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2019-12-05 18:46 - 2018-08-03 16:39 - 000000000 ____D C:\Users\javier\AppData\Local\Packages 2019-12-05 18:16 - 2019-09-03 15:52 - 001775182 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-12-05 18:16 - 2019-03-19 12:59 - 000788560 _____ C:\WINDOWS\system32\perfh00A.dat 2019-12-05 18:16 - 2019-03-19 12:59 - 000155850 _____ C:\WINDOWS\system32\perfc00A.dat 2019-12-05 17:55 - 2019-09-03 15:43 - 000000000 ____D C:\Users\javier 2019-12-05 11:48 - 2019-09-10 18:28 - 000000000 ____D C:\DESCARGA SPOTIFY 2019-12-04 11:47 - 2019-09-17 17:35 - 000000000 ____D C:\Users\javier\Downloads\CARPETA CERTIFICADOS DIGITALES Y DNI 2019-11-29 16:43 - 2018-10-22 11:17 - 000000000 ____D C:\Users\javier\AppData\Roaming\vlc 2019-11-28 17:07 - 2019-09-10 12:38 - 000000000 ____D C:\Users\javier\AppData\Roaming\AllToMP3 2019-11-27 17:13 - 2018-10-22 14:00 - 000000000 ____D C:\FOTOS CASA DE DULCE 2019-11-23 10:43 - 2018-08-03 17:04 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-11-23 10:43 - 2018-08-03 17:04 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-11-22 11:14 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-11-21 15:23 - 2019-02-05 19:37 - 000000000 ____D C:\Program Files (x86)\Origin 2019-11-21 15:23 - 2019-02-05 19:35 - 000000000 ____D C:\Users\javier\AppData\Roaming\Origin 2019-11-21 15:23 - 2019-02-05 19:34 - 000000000 ____D C:\Users\javier\AppData\Local\Origin 2019-11-20 16:48 - 2018-10-04 09:58 - 000000000 ____D C:\Users\javier\AppData\Roaming\uTorrent 2019-11-20 10:57 - 2019-10-21 15:10 - 000000000 ____D C:\Users\javier\AppData\Local\BitTorrentHelper 2019-11-17 11:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2019-11-17 11:58 - 2016-07-16 12:47 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2019-11-17 11:41 - 2019-10-20 16:35 - 000000000 ____D C:\Users\javier\Downloads\APLICACIONES 2019-11-15 16:03 - 2019-09-03 15:37 - 000497552 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\appraiser 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellComponents 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\DiagTrack 2019-11-14 19:41 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-11-14 17:39 - 2018-08-04 14:30 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-11-14 16:19 - 2018-08-04 14:30 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-11-14 16:18 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-11-14 12:34 - 2019-09-03 15:43 - 000002400 _____ C:\Users\javier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-11-13 11:40 - 2018-09-19 15:33 - 000000000 ____D C:\Users\javier\Desktop\Acceso directo 2019-11-13 11:30 - 2018-09-20 15:06 - 000000000 ____D C:\ProgramData\Foxit Software 2019-11-13 11:29 - 2018-08-07 18:01 - 000000000 ____D C:\Users\javier\AppData\Roaming\Foxit Software 2019-11-12 15:45 - 2019-08-29 10:07 - 000000000 ___DC C:\WINDOWS\Panther 2019-11-12 15:45 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2019-11-12 15:37 - 2019-09-03 15:43 - 000000000 ____D C:\Users\defaultuser0 2019-11-12 13:41 - 2018-08-05 14:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2019-11-11 20:12 - 2019-10-09 15:58 - 000000000 ____D C:\FOTOS MOVIL DULCE 2019-11-11 19:47 - 2018-08-12 10:30 - 000000000 ____D C:\Users\javier\AppData\Local\D3DSCache ==================== Files in the root of some directories ======== 2019-10-08 12:25 - 2019-12-10 16:43 - 358520832 _____ () C:\Users\javier\AppData\Local\SageThumbs.db3 ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================