Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-12-2019 01 Ran by Edwin (administrator) on DESKTOP-6PTSECI (LENOVO 80TV) (24-12-2019 09:14:01) Running from C:\Users\Edwin\AppData\Local\Temp\scoped_dir9032_382537280 Loaded Profiles: Edwin (Available Profiles: Edwin) Platform: Windows 10 Home Version 1703 15063.1387 (X64) Language: Español (México) Default browser: Chrome Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\DailyNews.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe (GameRanger Technologies -> GameRanger Pty Ltd) C:\Users\Edwin\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies -> GameRanger Pty Ltd) C:\Users\Edwin\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies -> GameRanger Pty Ltd) C:\Users\Edwin\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\IntelCpHeciSvc.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\bcastdvr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) C:\Users\Edwin\AppData\Local\Programs\Opera\65.0.3467.78\opera_crashreporter.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.1000_x64__kzf8qxf38zg5c\SkypeHost.exe (SUPERAntiSpyware.com -> SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKLM-x32\...\Run: [YouCam Service6] => C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe [504792 2014-03-27] (CyberLink Corp. -> CyberLink Corp.) HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [413000 2019-07-10] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-1084882763-4263514591-1534289575-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3288016 2019-12-16] (Valve -> Valve Corporation) HKU\S-1-5-21-1084882763-4263514591-1534289575-1001\...\Run: [Opera Browser Assistant] => C:\Users\Edwin\AppData\Local\Programs\Opera\assistant\browser_assistant.exe HKU\S-1-5-21-1084882763-4263514591-1534289575-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) HKU\S-1-5-21-1084882763-4263514591-1534289575-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7943072 2016-05-31] (SUPERAntiSpyware.com -> SUPERAntiSpyware) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.88\Installer\chrmstp.exe [2019-12-19] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2014-03-27] (CyberLink Corp. -> CyberLink) HKLM\Software\...\Authentication\Credential Provider Filters: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2014-03-27] (CyberLink Corp. -> CyberLink) Startup: C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk [2019-12-20] ShortcutTarget: GameRanger.lnk -> C:\Users\Edwin\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies -> GameRanger Pty Ltd) BootExecute: autocheck autochk * sdnclean64.exe ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {09BE8DC8-E132-4E74-9746-413EDCBF413C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-10] (Adobe Inc. -> Adobe) Task: {130266B0-8622-4D76-A330-B08E780C4D38} - System32\Tasks\Opera scheduled Autoupdate 1577144023 => C:\Users\Edwin\AppData\Local\Programs\Opera\launcher.exe [1528344 2019-12-19] (Opera Software AS -> Opera Software) Task: {296DBB87-8D78-4B4E-BF7F-54B5815F4FFB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-10] (Adobe Inc. -> Adobe) Task: {298C5FC5-1F73-4956-852A-916E49D0E6D5} - System32\Tasks\Opera scheduled assistant Autoupdate 1574684260 => C:\Users\Edwin\AppData\Local\Programs\Opera\launcher.exe [1528344 2019-12-19] (Opera Software AS -> Opera Software) Task: {4A1F0FE0-763C-491C-8DB7-5D48BF0C143C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {5EC45FEF-D90E-47CE-905C-2FC48133BD78} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: {9DA795D1-A442-4342-A834-8D60A0667BC9} - System32\Tasks\Opera scheduled Autoupdate 1574511323 => C:\Users\Edwin\AppData\Local\Programs\Opera\launcher.exe [1528344 2019-12-19] (Opera Software AS -> Opera Software) Task: {B4291469-F4F5-4172-9833-9664B761CCEA} - System32\Tasks\SUPERAntiSpyware Scheduled Task 9521715c-5280-49cd-a3ab-f768741769a2 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) Task: {B4988E29-137D-40E7-8DA3-5B7BE146B92C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {C3859944-14AE-4B5C-83F7-2DCE93ECB201} - System32\Tasks\update-S-1-5-21-1084882763-4263514591-1534289575-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: {CADC3D88-9AA4-425A-859C-BFF06981C9DC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-07-07] (Google Inc -> Google Inc.) Task: {D4FAC2BB-9AEE-40ED-B030-94B3FA09771E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {DBCDD50E-8D4E-4B2A-BD9D-928733AD73FD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-07-07] (Google Inc -> Google Inc.) Task: {E6A4C4AE-C701-4810-A037-82185CA91CBE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) Task: {E6D8045F-C949-41D1-A3C7-38D560C7C600} - System32\Tasks\SUPERAntiSpyware Scheduled Task 4ac01434-01b5-4f84-bc7c-89bf08837f0d => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) Task: {F47FF502-1DBF-449B-877B-B73E8EDE0888} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4ac01434-01b5-4f84-bc7c-89bf08837f0d.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 9521715c-5280-49cd-a3ab-f768741769a2.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\update-S-1-5-21-1084882763-4263514591-1534289575-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 200.48.225.146 200.48.225.130 Tcpip\..\Interfaces\{583881a1-b6c6-4f76-8dcf-8f4efdab99c7}: [DhcpNameServer] 200.48.225.146 200.48.225.130 HKLM\System\...\Parameters\PersistentRoutes: [104.96.147.3,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [111.221.29.177,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [111.221.29.253,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [131.253.40.37,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [134.170.115.60,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [134.170.165.248,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [134.170.165.253,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [134.170.185.70,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [134.170.30.202,255.255.255.255,0.0.0.0,1] HKLM\System\...\Parameters\PersistentRoutes: [137.116.81.24,255.255.255.255,0.0.0.0,1] PersistentRoutes: There are 65 PersistentRoutes. Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_102\bin\ssv.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_102\bin\jp2ssv.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_102\bin\ssv.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_102\bin\jp2ssv.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_303.dll [2019-12-10] (Adobe Inc. -> ) FF Plugin: @java.com/DTPlugin,version=11.102.2 -> C:\Program Files\Java\jre1.8.0_102\bin\dtplugin\npDeployJava1.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.102.2 -> C:\Program Files\Java\jre1.8.0_102\bin\plugin2\npjp2.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_303.dll [2019-12-10] (Adobe Inc. -> ) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2016-09-20] (Adobe Systems, Inc.) [File not signed] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2012-06-06] (Foxit Corporation -> Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.102.2 -> C:\Program Files (x86)\Java\jre1.8.0_102\bin\dtplugin\npDeployJava1.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.102.2 -> C:\Program Files (x86)\Java\jre1.8.0_102\bin\plugin2\npjp2.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC) Chrome: ======= CHR DefaultProfile: Default CHR Notifications: Default -> hxxps://xat.com CHR Profile: C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default [2019-12-24] CHR Extension: (Documentos) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-08] CHR Extension: (Google Drive) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-07-07] CHR Extension: (YouTube) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-08] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-07-08] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (PDF Viewer) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oemmndcbldboiebfnladdacbdfmadadm [2019-10-19] CHR Extension: (Gmail) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-08] CHR Extension: (Chrome Media Router) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-14] CHR Profile: C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-12-23] CHR Profile: C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-12-23] CHR Extension: (Presentaciones) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-07-27] CHR Extension: (Documentos) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-27] CHR Extension: (Google Drive) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-07-27] CHR Extension: (YouTube) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-27] CHR Extension: (Hojas de cálculo) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-07-27] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-11-22] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-22] CHR Extension: (Gmail) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-27] CHR Extension: (Chrome Media Router) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-14] CHR Profile: C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2 [2019-12-23] CHR Extension: (Chrome Better History) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aadbaagbanfijdnflkhepgjmhlpppbad [2019-12-15] CHR Extension: (Presentaciones) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-14] CHR Extension: (Documentos) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-14] CHR Extension: (Google Drive) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-12-14] CHR Extension: (YouTube) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-14] CHR Extension: (Hojas de cálculo) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-14] CHR Extension: (Documentos de Google sin conexión) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-12-14] CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-14] CHR Extension: (Gmail) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-12-14] CHR Extension: (Chrome Media Router) - C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-14] CHR Profile: C:\Users\Edwin\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-23] Opera: ======= OPR Notifications: hxxps://forospyware.com OPR Extension: (360 Internet Protection) - C:\Users\Edwin\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnpeghmjdfdmneiljeibjnemfdkojdhl [2019-11-30] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) R2 AtherosSvc; C:\Windows\system32\DRIVERS\AdminService.exe [356392 2017-06-20] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8473200 2019-07-12] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-12-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6960640 2019-12-23] (Malwarebytes Inc -> Malwarebytes) R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [962560 2019-06-20] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [744968 2019-12-10] (Oracle Corporation -> Oracle Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342240 2018-06-08] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102792 2018-06-08] (Microsoft Corporation -> Microsoft Corporation) S2 KMSEmulator; temp.exe [X] ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [199008 2019-06-20] (Beijing Qihu Technology Co., Ltd. -> 360.cn) R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [95232 2019-06-20] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn) R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [95232 2019-06-20] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [340976 2019-06-20] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn) R1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [57848 2019-06-20] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn) R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [462824 2019-06-20] (Beijing Qihu Technology Co., Ltd. -> 360.cn) R1 360netmon; C:\Windows\System32\DRIVERS\360netmon.sys [96424 2019-06-20] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn) R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [226144 2019-06-20] (Beijing Qihu Technology Co., Ltd. -> 360.cn) R3 clwvd6; C:\Windows\system32\DRIVERS\clwvd6.sys [41704 2013-10-29] (CyberLink Corp. -> CyberLink Corporation) S3 EnigmaFileMonDriver; C:\Windows\System32\drivers\EnigmaFileMonDriver.sys [68424 2019-12-14] (EnigmaSoft Limited -> EnigmaSoft Limited) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2019-12-23] (Malwarebytes Corporation -> Malwarebytes) S3 fiddrv64; no ImagePath R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [216544 2019-12-23] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [127136 2019-12-13] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [72864 2019-12-13] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [278344 2019-12-23] (Malwarebytes Inc -> Malwarebytes) S3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [114040 2019-12-13] (Malwarebytes Corporation -> Malwarebytes) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [604160 2017-03-18] (Microsoft Windows -> Realtek ) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [31128 2017-03-18] (Microsoft Windows -> ) R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [237320 2019-12-10] (Oracle Corporation -> Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [247224 2019-12-10] (Oracle Corporation -> Oracle Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) =================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-24 09:13 - 2019-12-24 09:16 - 000000000 ____D C:\FRST 2019-12-24 09:12 - 2019-12-24 09:12 - 002271744 _____ (Farbar) C:\Users\Edwin\Desktop\FRST64.exe 2019-12-24 07:33 - 2019-12-24 07:33 - 000021673 _____ C:\Users\Edwin\Downloads\5556-22004-1-PB (2).pdf 2019-12-24 07:32 - 2019-12-24 07:32 - 000165704 _____ C:\Users\Edwin\Downloads\Patologias_de_la_realidad_virtual_Cibercultura_y_c.pdf 2019-12-24 07:29 - 2019-12-24 07:43 - 000000000 ____D C:\Users\Edwin\Desktop\bibliografia fantasitca 2019-12-24 07:27 - 2019-12-24 07:27 - 000021673 _____ C:\Users\Edwin\Downloads\5556-22004-1-PB.pdf 2019-12-24 07:27 - 2019-12-24 07:27 - 000021673 _____ C:\Users\Edwin\Downloads\5556-22004-1-PB (1).pdf 2019-12-24 07:24 - 2019-12-24 07:24 - 000345691 _____ C:\Users\Edwin\Downloads\LIT2526506-2017-1 (1).PDF 2019-12-24 07:09 - 2019-12-24 07:10 - 002448979 _____ C:\Users\Edwin\Desktop\hybris.pdf 2019-12-23 23:12 - 2019-12-23 23:13 - 000000000 ____D C:\Users\Edwin\Desktop\teoria narrativa 2019-12-23 23:12 - 2019-12-23 23:12 - 000000000 ____D C:\Users\Edwin\Desktop\textos 2019-12-23 22:59 - 2019-12-23 22:59 - 000246558 _____ C:\Users\Edwin\Downloads\Julio Cortázar fotos.pptx 2019-12-23 22:52 - 2019-12-23 22:53 - 000608682 _____ C:\Users\Edwin\Downloads\Poe y Cortázar.pptx 2019-12-23 22:51 - 2019-12-23 22:51 - 001281157 _____ C:\Users\Edwin\Downloads\Gallegos, Rivera, Guiraldes.pptx 2019-12-23 22:17 - 2019-12-23 22:17 - 000783757 _____ C:\Users\Edwin\Downloads\Racismo en el arte peruano contemporáneo.pptx 2019-12-23 22:17 - 2019-12-23 22:17 - 000053348 _____ C:\Users\Edwin\Downloads\cita Racismo para Ribeyro.pptx 2019-12-23 22:05 - 2019-12-23 22:06 - 000991642 _____ C:\Users\Edwin\Downloads\Ensayistas.pptx 2019-12-23 22:05 - 2019-12-23 22:05 - 004014202 _____ C:\Users\Edwin\Downloads\Imágenes tópicas del indio.pptx 2019-12-23 22:05 - 2019-12-23 22:05 - 000884855 _____ C:\Users\Edwin\Downloads\Contexto histórico.pptx 2019-12-23 19:44 - 2019-12-23 19:49 - 000000000 ___HD C:\$WINDOWS.~BT 2019-12-23 19:32 - 2019-12-23 19:32 - 000216544 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2019-12-23 19:31 - 2019-12-23 19:31 - 000278344 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2019-12-23 19:26 - 2019-12-23 19:26 - 000000000 ____D C:\Users\Edwin\AppData\Local\cache 2019-12-23 19:02 - 2019-12-23 19:23 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\ZHP 2019-12-23 19:02 - 2019-12-23 19:02 - 000000875 _____ C:\Users\Edwin\Desktop\ZHPCleaner.lnk 2019-12-23 19:02 - 2019-12-23 19:02 - 000000000 ____D C:\Users\Edwin\AppData\Local\ZHP 2019-12-23 19:01 - 2019-12-23 19:01 - 003326336 _____ (Nicolas Coolman) C:\Users\Edwin\Desktop\ZHPCleaner.exe 2019-12-23 18:50 - 2019-12-23 19:36 - 000000000 ____D C:\Users\Edwin\opera autoupdate 2019-12-23 18:41 - 2019-12-23 18:43 - 000000000 ____D C:\AdwCleaner 2019-12-23 18:41 - 2019-12-23 18:41 - 001883976 _____ (Malwarebytes) C:\Users\Edwin\Desktop\MBSetup-009996.009996-consumer.exe 2019-12-23 18:36 - 2019-12-23 18:36 - 008237744 _____ (Malwarebytes) C:\Users\Edwin\Desktop\adwcleaner_8.0.1.exe 2019-12-23 18:33 - 2019-12-23 18:33 - 000004214 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1577144023 2019-12-23 18:33 - 2019-12-23 18:33 - 000001397 _____ C:\Users\Edwin\Desktop\Navegador Opera.lnk 2019-12-23 18:29 - 2019-12-23 18:29 - 002469032 _____ (Opera Software) C:\Users\Edwin\Downloads\OperaSetup.exe 2019-12-23 18:21 - 2019-12-23 18:21 - 000000000 ____D C:\Users\Edwin\Desktop\historial vacio actual 2019-12-23 18:20 - 2019-12-23 18:20 - 000000000 ____D C:\Users\Edwin\Desktop\historial antiguo 2019-12-23 18:11 - 2019-12-23 18:11 - 041091072 _____ C:\Users\Edwin\Downloads\History (2) 2019-12-23 18:06 - 2019-12-23 18:06 - 041091072 _____ C:\Users\Edwin\Downloads\History (1) 2019-12-23 15:45 - 2019-12-23 15:47 - 000000000 ____D C:\Program Files\WinZip 2019-12-23 15:44 - 2019-12-23 15:45 - 000000000 ____D C:\Windows\CD95F661A5C444F5A6AAECDD91C2410F.TMP 2019-12-23 15:43 - 2019-12-23 15:43 - 000001155 _____ C:\Users\Edwin\Desktop\Continue WinZip Installation.lnk 2019-12-23 15:42 - 2019-12-23 15:42 - 000000000 ____D C:\ProgramData\UniqueId 2019-12-23 15:41 - 2019-12-23 15:42 - 095164088 _____ (Adobe Systems Incorporated) C:\Users\Public\Downloads\AcroRdrDC15.20.20039.7108_ES.exe 2019-12-23 15:41 - 2019-12-23 15:41 - 000763128 _____ (WinZip Computing, S.L.) C:\Users\Public\Downloads\WinZIP_is.exe 2019-12-23 10:52 - 2019-12-23 11:14 - 000000000 ____D C:\Users\Edwin\Desktop\yt 2019-12-23 10:51 - 2019-12-23 10:51 - 000000000 ____D C:\Users\Edwin\Desktop\mkt 2019-12-23 10:38 - 2019-12-23 10:49 - 000000000 ____D C:\Users\Edwin\Desktop\cuerp 2019-12-23 07:59 - 2019-12-23 07:59 - 000629405 _____ C:\Users\Edwin\Downloads\Dialnet-ElPapelDeLosThinkTanksEnLaDefinicionYAplicacionDeL-4537281_1.pdf 2019-12-23 07:54 - 2019-12-23 07:54 - 000324475 _____ C:\Users\Edwin\Desktop\argumentos pragmaticos.pdf 2019-12-22 18:37 - 2019-12-23 10:48 - 000000000 ____D C:\Users\Edwin\Desktop\línea gráfica 2019-12-21 21:20 - 2019-12-23 18:45 - 000000542 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 9521715c-5280-49cd-a3ab-f768741769a2.job 2019-12-21 21:20 - 2019-12-23 18:45 - 000000542 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4ac01434-01b5-4f84-bc7c-89bf08837f0d.job 2019-12-21 21:20 - 2019-12-21 21:20 - 000003782 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task 4ac01434-01b5-4f84-bc7c-89bf08837f0d 2019-12-21 21:20 - 2019-12-21 21:20 - 000003700 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task 9521715c-5280-49cd-a3ab-f768741769a2 2019-12-21 21:20 - 2019-12-21 21:20 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\SUPERAntiSpyware.com 2019-12-21 21:19 - 2019-12-21 21:20 - 000000000 ____D C:\Program Files\SUPERAntiSpyware 2019-12-21 21:19 - 2019-12-21 21:19 - 000001849 _____ C:\Users\Edwin\Desktop\SUPERAntiSpyware Free Edition.lnk 2019-12-21 21:19 - 2019-12-21 21:19 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2019-12-21 21:19 - 2019-12-21 21:19 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2019-12-21 21:12 - 2019-12-21 21:12 - 004806664 _____ (SOSVirus) C:\Users\Edwin\Downloads\UsbFix_2019 (1).exe 2019-12-21 20:58 - 2019-12-21 20:58 - 000000000 ____D C:\Program Files (x86)\UsbFix 2019-12-21 20:57 - 2019-12-21 20:57 - 004806664 _____ (SOSVirus) C:\Users\Edwin\Downloads\UsbFix_2019.exe 2019-12-21 20:43 - 2019-12-21 21:02 - 000000000 ____D C:\UsbFix 2019-12-21 20:43 - 2019-12-21 20:43 - 000001485 _____ C:\Users\Edwin\Desktop\UsbFix.lnk 2019-12-21 20:19 - 2019-12-21 20:19 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2019-12-21 20:19 - 2019-12-21 20:19 - 000002888 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2019-12-21 20:18 - 2019-12-21 20:18 - 024578944 _____ (Piriform Software Ltd) C:\Users\Edwin\Downloads\ccsetup563.exe 2019-12-21 20:14 - 2019-12-21 20:19 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-12-21 20:14 - 2019-12-21 20:19 - 000000000 ____D C:\Program Files\CCleaner 2019-12-21 20:14 - 2019-12-21 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2019-12-21 20:12 - 2019-12-21 20:12 - 000000000 ____D C:\Users\Edwin\Downloads\Programas 2019-12-21 20:11 - 2019-12-21 20:11 - 058628485 _____ C:\Users\Edwin\Downloads\Programas.rar 2019-12-21 16:44 - 2019-12-21 16:45 - 475564165 _____ C:\Users\Edwin\Downloads\F34.Wlk1ng.4x03.m1080. Lat.mp4 2019-12-21 09:14 - 2019-12-21 09:14 - 000000000 ____D C:\Users\Edwin\VirtualBox VMs 2019-12-21 09:02 - 2019-12-21 19:33 - 000000000 ____D C:\Users\Edwin\.VirtualBox 2019-12-21 09:02 - 2019-12-21 09:02 - 000000000 ____D C:\ProgramData\VirtualBox 2019-12-21 09:01 - 2019-12-21 09:01 - 000001149 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2019-12-21 09:01 - 2019-12-21 09:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2019-12-21 09:00 - 2019-12-21 09:00 - 000000000 ____D C:\Program Files\Oracle 2019-12-21 09:00 - 2019-12-10 10:28 - 000186424 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2019-12-21 09:00 - 2019-12-10 10:27 - 001028496 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2019-12-21 08:55 - 2019-12-21 08:56 - 111891976 _____ (Oracle Corporation) C:\Users\Edwin\Downloads\VirtualBox-6.1.0-135406-Win.exe 2019-12-20 23:35 - 2019-12-20 23:35 - 000000862 _____ C:\Users\Edwin\Desktop\Start Tor Browser.lnk 2019-12-20 23:31 - 2019-12-20 23:32 - 000000000 ____D C:\Users\Edwin\Desktop\Tor Browser 2019-12-20 23:29 - 2019-12-20 23:29 - 067470424 _____ C:\Users\Edwin\Downloads\torbrowser-install-win64-9.0.2_es-ES (1).exe 2019-12-20 15:31 - 2019-12-20 15:31 - 012690504 _____ C:\Users\Edwin\Downloads\Walton, Douglas N y Eric C W Krabbe -- Argumentacion y normatividad dialogica_ Dialogos_ tipos, metas y cambios (1).pdf 2019-12-20 15:31 - 2019-12-20 15:31 - 001498089 _____ C:\Users\Edwin\Downloads\Perelman, Chaim - El imperio retorico_ Retorica y argumentacion caps 1 y 14.pdf 2019-12-20 15:31 - 2019-12-20 15:31 - 000633761 _____ C:\Users\Edwin\Downloads\Toulmin USOS ARGUMENTACION intro (texto 1).pdf 2019-12-20 15:31 - 2019-12-20 15:31 - 000272032 _____ C:\Users\Edwin\Downloads\Toulmin, Stephen et Al Introduccion al razonamiento (texto 2).pdf 2019-12-20 15:25 - 2019-12-20 15:26 - 000000000 ____D C:\Users\Edwin\Desktop\BFP 2019-12-20 15:19 - 2019-12-20 15:19 - 000000000 ____D C:\Users\Edwin\Desktop\literat 2019-12-20 15:18 - 2019-12-20 15:22 - 000000000 ____D C:\Users\Edwin\Desktop\lgtb 2019-12-20 14:54 - 2019-12-20 23:35 - 000000910 _____ C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2019-12-20 14:52 - 2019-12-20 14:52 - 067470424 _____ C:\Users\Edwin\Downloads\torbrowser-install-win64-9.0.2_es-ES.exe 2019-12-20 13:45 - 2019-12-20 13:54 - 000000000 ____D C:\Users\Edwin\Documents\GTA SA 2019-12-20 13:45 - 2019-12-20 13:45 - 000611840 _____ (FenixZone) C:\Users\Edwin\Downloads\FZs2_Downloader-George_Sand.exe 2019-12-20 13:45 - 2019-12-20 13:45 - 000200704 _____ (ICSharpCode.net) C:\Users\Edwin\Downloads\ICSharpCode.SharpZipLib.dll 2019-12-20 13:45 - 2019-12-20 13:45 - 000001739 _____ C:\Users\Edwin\Desktop\GTA San Andreas FenixZone.lnk 2019-12-20 13:45 - 2019-12-20 13:45 - 000000000 ____D C:\Users\Edwin\Documents\FenixZone SAMP 2019-12-20 10:06 - 2019-12-20 10:06 - 000001119 _____ C:\Users\Edwin\Desktop\GameRanger.lnk 2019-12-20 10:06 - 2019-12-20 10:06 - 000001105 _____ C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk 2019-12-20 10:05 - 2019-12-20 10:06 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\GameRanger 2019-12-20 10:05 - 2019-12-20 10:05 - 000114352 _____ (GameRanger Technologies) C:\Users\Edwin\Downloads\GameRangerSetup.exe 2019-12-20 10:02 - 2019-12-20 10:02 - 002165541 _____ C:\Users\Edwin\Downloads\MegaDownloader.exe 2019-12-20 09:40 - 2019-12-20 09:41 - 010840743 _____ (WILLIAMS117™ ) C:\Users\Edwin\Downloads\L4D2MP 2.1.5.3 - 2.1.5.4.exe 2019-12-20 09:34 - 2019-12-20 09:34 - 023379822 _____ (WILLIAMS117™ ) C:\Users\Edwin\Downloads\L4D2 SSE (LAN) Beta 2.0.exe 2019-12-20 09:18 - 2019-12-20 09:54 - 000000825 _____ C:\Users\Edwin\Desktop\left4dead - Acceso directo.lnk 2019-12-20 09:17 - 2019-12-20 09:17 - 000000945 _____ C:\Users\Edwin\Desktop\game - Acceso directo.lnk 2019-12-20 08:58 - 2019-12-20 08:58 - 000000085 _____ C:\Windows\wininit.ini 2019-12-20 08:53 - 2019-12-20 08:53 - 000000000 ____D C:\Users\Edwin\AppData\Local\EpicGamesLauncher 2019-12-20 08:05 - 2019-12-20 09:06 - 000000198 _____ C:\Users\Edwin\Desktop\Left 4 Dead Dedicated Server.url 2019-12-19 18:56 - 2019-12-19 18:56 - 010600249 _____ C:\Users\Edwin\Downloads\kupdf.net_eco-umberto-y-sebeok-thomas-a-comp-el-signo-de-los-tres-dupin-holmes-y-peircepdf (1).pdf 2019-12-19 18:45 - 2019-12-19 18:46 - 010600249 _____ C:\Users\Edwin\Downloads\kupdf.net_eco-umberto-y-sebeok-thomas-a-comp-el-signo-de-los-tres-dupin-holmes-y-peircepdf.pdf 2019-12-19 18:01 - 2019-12-19 18:01 - 000268634 _____ C:\Users\Edwin\Downloads\LIT2546502-2019-2.PDF 2019-12-19 08:57 - 2019-12-19 08:58 - 000751142 _____ C:\Users\Edwin\Downloads\11530-65440-1-PB.pdf 2019-12-19 08:22 - 2019-12-19 08:22 - 000345691 _____ C:\Users\Edwin\Downloads\LIT2526506-2017-1.PDF 2019-12-18 16:19 - 2019-12-18 16:21 - 006925186 _____ C:\Users\Edwin\Downloads\NOVELAS Y CUENTOS.pdf 2019-12-18 16:19 - 2019-12-18 16:20 - 004140248 _____ C:\Users\Edwin\Downloads\RELATO,CUENTOS,POEMAS Y MISCELANEAS.pdf 2019-12-18 11:25 - 2019-12-18 11:25 - 002067254 _____ C:\Users\Edwin\Downloads\Priest, Graham (2000) - Una brevísima introducción a la lógica.pdf 2019-12-18 11:21 - 2019-12-18 11:21 - 000111136 _____ C:\Users\Edwin\Downloads\document (2).pdf 2019-12-18 11:19 - 2019-12-18 11:19 - 002743641 _____ C:\Users\Edwin\Downloads\Los Detectives Salvajes - Roberto Bolano.pdf 2019-12-18 11:13 - 2019-12-18 11:13 - 003011519 _____ C:\Users\Edwin\Downloads\Fisher, Mark (2017) - Lo raro y lo espeluznante.pdf 2019-12-18 10:56 - 2019-12-18 10:56 - 003015030 _____ C:\Users\Edwin\Downloads\[Jos__Alberto_Portugal]__El_modelo_de_Genette_._Au(z-lib.org).pdf 2019-12-18 09:51 - 2019-12-18 09:52 - 010968058 _____ C:\Users\Edwin\Downloads\tcsh.pdf 2019-12-18 09:43 - 2019-12-18 09:43 - 012324268 _____ C:\Users\Edwin\Downloads\kupdf.net_genette-figuras-iiipdf.pdf 2019-12-18 09:39 - 2019-12-18 09:39 - 012637181 _____ C:\Users\Edwin\Downloads\Barthes_Roland_Todorov_Tzvetan_El_analisis_estructural_del_relato_1970.pdf 2019-12-18 09:30 - 2019-12-18 09:30 - 001512493 _____ C:\Users\Edwin\Downloads\document (1).pdf 2019-12-18 09:29 - 2019-12-18 09:29 - 011502005 _____ C:\Users\Edwin\Downloads\111357149-Teoria-y-Estetica-de-La-Novela-Mijail-Bajtin-Libro-Completo (1) (3).pdf 2019-12-16 13:01 - 2019-12-16 13:01 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\EasyAntiCheat 2019-12-16 12:37 - 2019-12-16 12:37 - 000003061 _____ C:\Users\Edwin\Downloads\documento (2).pdf 2019-12-16 12:20 - 2019-12-16 12:20 - 000025762 _____ C:\Users\Edwin\Downloads\documento (1).pdf 2019-12-16 12:19 - 2019-12-16 12:19 - 000011388 _____ C:\Users\Edwin\Downloads\ENCUESTA DE OPINION SOBRE JEFES DE PRACTICA - 2019-2 - DEPARTAMENTO ACADEMICO DE HUMANIDADES - DEPARTAMENTO DE HUMANIDADES - 20132733.xls 2019-12-16 12:18 - 2019-12-16 12:18 - 000003061 _____ C:\Users\Edwin\Downloads\documento.pdf 2019-12-16 11:40 - 2019-12-20 08:05 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2019-12-16 11:40 - 2019-12-16 11:40 - 000000222 _____ C:\Users\Edwin\Desktop\SMITE.url 2019-12-16 10:37 - 2019-12-16 10:38 - 000744560 _____ C:\Users\Edwin\Downloads\LIT2446204-2019-2 (1).PDF 2019-12-16 09:59 - 2019-12-16 09:59 - 000162804 _____ C:\Users\Edwin\Downloads\ROBLES (1).pdf 2019-12-15 07:01 - 2019-12-15 07:01 - 002673090 _____ C:\Users\Edwin\Downloads\Sesion 01_02_dia 1.pdf 2019-12-15 07:01 - 2019-12-15 07:01 - 000221358 _____ C:\Users\Edwin\Downloads\191213 - DE Gestión Empresarial- Gestión Estratégica.pdf 2019-12-14 23:25 - 2019-12-20 15:28 - 000002478 _____ C:\Users\Edwin\Desktop\mikanet - Chrome.lnk 2019-12-14 22:12 - 2019-12-14 22:12 - 000000000 ____D C:\ProgramData\Wondershare 2019-12-14 15:52 - 2019-12-14 15:52 - 014917391 _____ C:\Users\Edwin\Downloads\El lazarillo de ciegos caminantes, Alons carrio de la Vandera (1).pdf 2019-12-14 15:51 - 2019-12-14 15:51 - 000162804 _____ C:\Users\Edwin\Downloads\ROBLES.pdf 2019-12-14 14:58 - 2019-12-14 14:58 - 014917391 _____ C:\Users\Edwin\Downloads\El lazarillo de ciegos caminantes, Alons carrio de la Vandera.pdf 2019-12-13 18:42 - 2019-12-13 18:43 - 011502005 _____ C:\Users\Edwin\Downloads\111357149-Teoria-y-Estetica-de-La-Novela-Mijail-Bajtin-Libro-Completo (1) (2).pdf 2019-12-13 18:32 - 2019-12-13 18:32 - 056432640 _____ C:\Users\Edwin\Downloads\DSC_1052.mpg 2019-12-13 16:26 - 2019-12-13 16:27 - 004529718 _____ C:\Users\Edwin\Downloads\DSC_1052.aiff 2019-12-13 16:18 - 2019-12-13 16:18 - 000000000 ____D C:\Users\Edwin\Downloads\media.io_db9d4dab9d696a63fe675cc844f0bbd2 2019-12-13 16:14 - 2019-12-13 16:18 - 030401399 _____ C:\Users\Edwin\Downloads\media.io_db9d4dab9d696a63fe675cc844f0bbd2.zip 2019-12-13 16:01 - 2019-12-13 16:01 - 000000000 ____D C:\Users\Edwin\AppData\Local\Wondershare 2019-12-13 15:54 - 2019-12-23 17:12 - 000000000 ____D C:\Users\Edwin\Documents\Wondershare Filmora 9 2019-12-13 15:50 - 2019-12-13 16:01 - 000000000 ____D C:\Users\Public\Documents\Wondershare 2019-12-13 15:50 - 2019-12-13 15:50 - 001045608 _____ C:\Users\Edwin\Downloads\filmora_setup_full1081.exe 2019-12-13 15:26 - 2019-12-13 15:27 - 011144352 _____ (Jacek Pazera ) C:\Users\Edwin\Downloads\Free_MOV_to_AVI_Converter_32bit.exe 2019-12-13 15:21 - 2019-12-13 15:22 - 004898710 _____ C:\Users\Edwin\Downloads\sdutk-bgbvk.avi 2019-12-13 15:04 - 2019-12-13 15:04 - 000000000 ____D C:\Users\Edwin\Downloads\Photodex_ProShow_Producer_v9.0.3797 2019-12-13 15:02 - 2019-12-13 15:02 - 078608586 _____ C:\Users\Edwin\Downloads\Photodex_ProShow_Producer_v9.0.3797.zip 2019-12-13 14:33 - 2019-12-13 14:33 - 000000000 ____D C:\Users\Edwin\Downloads\Audacity Portable 2019-12-13 14:31 - 2019-12-13 14:31 - 005565012 _____ C:\Users\Edwin\Downloads\Audacity Portable.rar 2019-12-13 07:22 - 2019-12-20 07:22 - 000004464 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1574684260 2019-12-13 07:18 - 2019-12-13 07:18 - 000072864 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2019-12-13 07:17 - 2019-12-13 07:17 - 000127136 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2019-12-13 07:17 - 2019-12-13 07:17 - 000114040 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2019-12-13 07:15 - 2019-12-23 19:29 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2019-12-13 07:15 - 2019-12-13 07:15 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-12-13 07:15 - 2019-12-13 07:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-12-13 07:15 - 2019-02-01 11:20 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2019-12-10 10:28 - 2019-12-10 10:28 - 000247224 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetLwf.sys 2019-12-10 10:28 - 2019-12-10 10:28 - 000237320 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp6.sys 2019-12-09 06:01 - 2019-12-09 06:01 - 002796970 _____ C:\Users\Edwin\Downloads\Góngora - Mientras por competir con tu cabello.pdf 2019-12-08 17:56 - 2019-12-08 17:56 - 000707769 _____ C:\Users\Edwin\Downloads\diccionario-practico-de-figuras-retoricas-y-terminos-afines-924724.pdf 2019-12-08 15:12 - 2019-12-08 15:12 - 000122733 _____ C:\Users\Edwin\Downloads\costumbrismo-satirico-peruano-la-comedia-na-catita-de-manuel-ascensio-segura-1856 (3).pdf 2019-12-08 07:55 - 2019-12-08 07:55 - 000744560 _____ C:\Users\Edwin\Downloads\LIT2446204-2019-2.PDF 2019-12-07 23:33 - 2019-12-07 23:33 - 005562976 _____ (Piriform Ltd) C:\Users\Edwin\Downloads\rcsetup153 (1).exe 2019-12-07 21:12 - 2019-12-15 05:57 - 000000000 ____D C:\Program Files\Recuva 2019-12-07 21:12 - 2019-12-07 23:33 - 000001699 _____ C:\Users\Public\Desktop\Recuva.lnk 2019-12-07 21:12 - 2019-12-07 21:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2019-12-07 21:09 - 2019-12-07 21:09 - 005562976 _____ (Piriform Ltd) C:\Users\Edwin\Downloads\rcsetup153.exe 2019-12-07 20:57 - 2019-12-07 21:02 - 024367106 _____ C:\Users\Edwin\Downloads\testdisk-7.2-WIP.win.zip 2019-12-07 20:19 - 2019-12-07 20:19 - 000000000 ____D C:\ProgramData\SystemAcCrux 2019-12-07 20:18 - 2019-12-07 20:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 2019-12-07 20:17 - 2019-12-07 20:17 - 000000000 ____D C:\Program Files\EaseUS 2019-12-07 20:16 - 2019-12-07 20:16 - 046811040 _____ (EaseUS ) C:\Users\Edwin\Downloads\DRW_Trial_RSS_easeus.exe 2019-12-07 20:16 - 2019-12-07 20:16 - 001544712 _____ C:\Users\Edwin\Downloads\DRW_Trial_RSS_Installer_20191207.100000.exe 2019-12-07 12:16 - 2019-12-07 12:16 - 011216690 _____ C:\Users\Edwin\Downloads\0051352541abb3f014771.zip 2019-12-07 12:10 - 2019-12-07 12:10 - 000122733 _____ C:\Users\Edwin\Downloads\costumbrismo-satirico-peruano-la-comedia-na-catita-de-manuel-ascensio-segura-1856 (2).pdf 2019-12-07 12:09 - 2019-12-07 12:09 - 000122733 _____ C:\Users\Edwin\Downloads\costumbrismo-satirico-peruano-la-comedia-na-catita-de-manuel-ascensio-segura-1856 (1).pdf 2019-12-07 12:06 - 2019-12-07 12:07 - 000122733 _____ C:\Users\Edwin\Downloads\costumbrismo-satirico-peruano-la-comedia-na-catita-de-manuel-ascensio-segura-1856.pdf 2019-12-07 08:04 - 2019-12-07 08:04 - 002231012 _____ C:\Users\Edwin\Downloads\Sin leda y sin esperanza -análisis del poema.pptx 2019-12-07 08:04 - 2019-12-07 08:04 - 000616550 _____ C:\Users\Edwin\Downloads\A Apolo, siguiendo a Dafne.pptx 2019-12-05 10:55 - 2019-12-05 10:55 - 000000000 ____D C:\Users\Edwin\Documents\Audacity 2019-12-05 10:53 - 2019-12-13 17:13 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\audacity 2019-12-05 10:53 - 2019-12-05 10:53 - 000000000 ____D C:\Users\Edwin\AppData\Local\Audacity 2019-12-05 10:52 - 2019-12-05 10:52 - 000000000 ____D C:\Users\Edwin\Downloads\Audacity-2.3.3 2019-12-05 10:50 - 2019-12-05 10:50 - 014017168 _____ C:\Users\Edwin\Downloads\Audacity-2.3.3.zip 2019-12-05 09:07 - 2019-12-05 09:07 - 002950382 _____ C:\Users\Edwin\Downloads\2019 Adm y Org 1.pptx 2019-12-04 07:03 - 2019-12-04 07:03 - 001732568 _____ C:\Users\Edwin\Downloads\Setup_7650.zip 2019-12-04 07:03 - 2019-12-04 07:03 - 000000000 ____D C:\Users\Edwin\Downloads\Setup_7650 2019-12-02 08:58 - 2019-12-02 08:58 - 011502005 _____ C:\Users\Edwin\Downloads\111357149-Teoria-y-Estetica-de-La-Novela-Mijail-Bajtin-Libro-Completo (1) (1).pdf 2019-12-02 08:38 - 2019-12-02 08:38 - 008508316 _____ C:\Users\Edwin\Downloads\MANUEL ASCENSIO SEGURA (GONZALO PIZARRO) (2).pdf 2019-12-02 08:38 - 2019-12-02 08:38 - 008508316 _____ C:\Users\Edwin\Downloads\MANUEL ASCENSIO SEGURA (GONZALO PIZARRO) (1).pdf 2019-12-02 06:28 - 2019-12-02 06:28 - 002064645 _____ C:\Users\Edwin\Downloads\las-ediciones-de-gongora-en-el-siglo-xvii.pdf 2019-11-30 19:19 - 2019-11-30 19:19 - 000048785 _____ C:\Users\Edwin\Downloads\AMD-VwithRVI_Hyper-V_CompatibilityUtility.zip 2019-11-30 19:19 - 2019-11-30 19:19 - 000000000 ____D C:\Users\Edwin\Downloads\AMD-VwithRVI_Hyper-V_CompatibilityUtility 2019-11-30 19:05 - 2019-11-30 19:05 - 000000000 ____D C:\Users\Edwin\AppData\Local\Caphyon 2019-11-30 19:04 - 2019-11-30 19:04 - 007389000 _____ (Intel Corporation) C:\Users\Edwin\Downloads\Intel(R) Processor Identification Utility.exe 2019-11-30 19:04 - 2019-11-30 19:04 - 000000000 ____D C:\Program Files (x86)\Intel Corporation 2019-11-30 09:08 - 2019-11-30 09:08 - 008753369 _____ C:\Users\Edwin\Downloads\Descargar.zip 2019-11-30 09:07 - 2019-11-30 09:07 - 002483864 _____ C:\Users\Edwin\Downloads\Charla+de+Inducción+Soporte+TI+(1)+(1)+(1).pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 001441460 _____ C:\Users\Edwin\Downloads\Guía+de+uso+e-libro_+DOCIS.pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 001435013 _____ C:\Users\Edwin\Downloads\RECUPERAR+CLAVE+DE+BIBLIOTECA+DOCIS.pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 000947972 _____ C:\Users\Edwin\Downloads\Presentación+DARSA.pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 000610602 _____ C:\Users\Edwin\Downloads\Guia+Normativa+Diplomaturas.pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 000610602 _____ C:\Users\Edwin\Downloads\Guia+Normativa+Diplomaturas (1).pdf 2019-11-30 09:07 - 2019-11-30 09:07 - 000254985 _____ C:\Users\Edwin\Downloads\Horario+Gestión+Empresarial++PUCP+-+Mód.+I.pdf 2019-11-30 09:05 - 2019-11-30 09:06 - 000618854 _____ C:\Users\Edwin\Downloads\DRESS+CODE+SMART+CASUAL.+(1)+(1)+(1) (1).pdf 2019-11-30 09:05 - 2019-11-30 09:05 - 001870544 _____ C:\Users\Edwin\Downloads\Presentacion+Administración.pdf 2019-11-30 09:05 - 2019-11-30 09:05 - 000618854 _____ C:\Users\Edwin\Downloads\DRESS+CODE+SMART+CASUAL.+(1)+(1)+(1).pdf 2019-11-30 08:37 - 2019-11-30 08:37 - 000294360 _____ (Adobe Systems Incorporated) C:\Users\Edwin\Downloads\ConnectSetup.exe 2019-11-30 07:44 - 2019-11-30 07:44 - 002619989 _____ C:\Users\Edwin\Downloads\corpus_CLAE.zip 2019-11-29 19:46 - 2019-11-29 19:46 - 000098086 _____ C:\Users\Edwin\Downloads\Introducción y cierre.pptx 2019-11-29 16:25 - 2019-11-29 16:25 - 000054010 _____ C:\Users\Edwin\Downloads\AlumnosyExalumnos (1).xls 2019-11-29 16:21 - 2019-11-29 16:21 - 000197534 _____ C:\Users\Edwin\Downloads\AlumnosyExalumnos.xls 2019-11-25 21:00 - 2019-11-25 21:00 - 000437974 _____ C:\Users\Edwin\Downloads\Anotaciones - estrategias argumentativas (1).pdf 2019-11-25 21:00 - 2019-11-25 21:00 - 000189098 _____ C:\Users\Edwin\Downloads\Temario - Examen parcial (1).pdf 2019-11-25 21:00 - 2019-11-25 21:00 - 000116861 _____ C:\Users\Edwin\Downloads\Columna de reporteros (1).pdf 2019-11-25 20:59 - 2019-11-25 20:59 - 000604616 _____ C:\Users\Edwin\Downloads\Material para el final (1).pdf 2019-11-25 16:32 - 2019-12-23 19:36 - 000000000 ____D C:\Users\Edwin\Downloads\opera autoupdate 2019-11-25 16:26 - 2019-12-21 20:33 - 000000000 ____D C:\Windows\Minidump 2019-11-25 13:19 - 2019-11-25 13:19 - 000000165 ____H C:\Users\Edwin\Desktop\~$Sin leda y sin esperanza -análisis del poema.pptx 2019-11-25 10:08 - 2019-11-25 10:08 - 000437974 _____ C:\Users\Edwin\Downloads\Anotaciones - estrategias argumentativas.pdf 2019-11-25 10:08 - 2019-11-25 10:08 - 000189098 _____ C:\Users\Edwin\Downloads\Temario - Examen parcial.pdf 2019-11-25 10:06 - 2019-11-25 10:06 - 000852398 _____ C:\Users\Edwin\Downloads\sem4-practicas-delimitacion_y_justificacion.pptx 2019-11-25 10:02 - 2019-11-25 10:02 - 000604616 _____ C:\Users\Edwin\Downloads\Material para el final.pdf 2019-11-25 10:02 - 2019-11-25 10:02 - 000116861 _____ C:\Users\Edwin\Downloads\Columna de reporteros.pdf 2019-11-25 10:00 - 2019-11-25 10:00 - 000219514 _____ C:\Users\Edwin\Downloads\Sílabo de Argumentación.pdf 2019-11-25 07:04 - 2019-11-25 07:04 - 009274727 _____ C:\Users\Edwin\Downloads\metodo.pptx 2019-11-24 17:43 - 2019-11-24 17:43 - 000000165 ____H C:\Users\Edwin\Desktop\~$Exposición de siglo xix.pptx 2019-11-24 13:37 - 2019-11-24 13:37 - 000323140 _____ C:\Users\Edwin\Downloads\bajtn-acontecimiento-y-lenguaje-0.pdf 2019-11-24 08:14 - 2019-11-24 23:09 - 002222810 _____ C:\Users\Edwin\Downloads\Exposición 19- 11-2019 (1).pptx ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-12-24 08:50 - 2019-10-08 14:18 - 000000000 ____D C:\Program Files (x86)\Steam 2019-12-24 08:49 - 2019-07-07 11:45 - 000000000 ____D C:\Users\Edwin 2019-12-24 08:28 - 2019-07-16 13:48 - 000000000 ____D C:\Users\Edwin\AppData\LocalLow\Mozilla 2019-12-24 08:01 - 2017-03-18 16:01 - 000000000 ____D C:\Windows\INF 2019-12-24 07:28 - 2019-07-29 10:33 - 000000000 ____D C:\Users\Edwin\Desktop\literatura fantástica america latina 2019-12-24 07:20 - 2019-07-07 11:45 - 000000000 ____D C:\Users\Edwin\AppData\Local\Packages 2019-12-24 07:12 - 2017-03-18 16:03 - 000000000 ____D C:\Windows\AppReadiness 2019-12-24 07:06 - 2019-07-07 11:23 - 000000000 ____D C:\Windows\system32\SleepStudy 2019-12-23 19:49 - 2019-07-07 12:21 - 000000000 ____D C:\Windows\Panther 2019-12-23 19:44 - 2019-07-08 08:22 - 000000000 ____D C:\Users\Edwin\AppData\LocalLow\360WD 2019-12-23 19:33 - 2019-07-07 12:28 - 000000000 ____D C:\Users\Edwin\Documents\YouCam 2019-12-23 19:31 - 2019-07-08 08:42 - 000000000 __SHD C:\Users\Edwin\IntelGraphicsProfiles 2019-12-23 19:31 - 2019-07-07 11:24 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-12-23 19:30 - 2017-03-18 06:40 - 001572864 _____ C:\Windows\system32\config\BBI 2019-12-23 19:23 - 2019-07-11 09:57 - 000000000 ____D C:\Program Files (x86)\Skillbrains 2019-12-23 18:45 - 2019-10-16 21:09 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2019-12-23 18:44 - 2019-07-08 08:22 - 000000000 _RSHD C:\360SANDBOX 2019-12-23 18:33 - 2019-11-23 07:15 - 000001397 _____ C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk 2019-12-23 18:04 - 2019-07-27 09:21 - 000002466 _____ C:\Users\Edwin\Desktop\Venus - Chrome.lnk 2019-12-23 16:08 - 2019-09-08 00:40 - 000000000 ____D C:\Users\Edwin\AppData\Local\BlueStacks 2019-12-23 16:08 - 2019-07-08 08:22 - 000000000 ____D C:\ProgramData\360safe 2019-12-23 10:59 - 2019-10-04 10:22 - 000000000 ____D C:\Users\Edwin\Desktop\imágenes 2019-12-23 09:36 - 2017-03-18 16:03 - 000000000 ____D C:\Windows\system32\NDF 2019-12-22 17:37 - 2017-03-18 15:51 - 000000000 ____D C:\Windows\CbsTemp 2019-12-22 06:03 - 2019-10-17 10:19 - 000000000 ____D C:\Program Files (x86)\Age of Empires II HD 2019-12-21 20:58 - 2019-07-08 08:34 - 000000000 __SHD C:\$360Section 2019-12-21 20:58 - 2019-07-08 08:25 - 000000000 ____D C:\ProgramData\360Quarant 2019-12-21 20:34 - 2019-09-29 14:44 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\MPC-HC 2019-12-21 20:33 - 2017-03-18 16:03 - 000000000 ____D C:\Windows\LiveKernelReports 2019-12-20 16:15 - 2019-07-23 10:45 - 000000000 ____D C:\Users\Edwin\Desktop\engaño y persuasión 2019-12-20 15:30 - 2019-11-03 17:47 - 000000000 ____D C:\Users\Edwin\Desktop\McOndo 2019-12-20 15:30 - 2019-10-04 10:23 - 000000000 ____D C:\Users\Edwin\Desktop\organización 2019-12-20 15:28 - 2019-09-22 13:05 - 000002072 _____ C:\Users\Edwin\Desktop\1814-v1.lnk 2019-12-20 15:28 - 2019-07-27 09:21 - 000002478 _____ C:\Users\Edwin\Desktop\panda - Chrome.lnk 2019-12-20 15:28 - 2019-07-08 08:29 - 000002305 _____ C:\Users\Edwin\Desktop\Nero Express.lnk 2019-12-20 15:28 - 2019-07-07 12:56 - 000000933 _____ C:\Users\Edwin\Desktop\WorldOfGoo.lnk 2019-12-20 10:35 - 2019-10-17 07:58 - 000000000 ____D C:\Program Files (x86)\Microsoft Games 2019-12-20 09:41 - 2019-07-27 09:57 - 000000000 ____D C:\left 4 dead 2019-12-20 09:17 - 2019-07-27 09:57 - 000000000 ____D C:\Red Alert 2 2019-12-20 08:58 - 2019-10-17 05:48 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2019-12-20 08:53 - 2019-07-14 19:43 - 000000000 ____D C:\Users\Edwin\AppData\Local\CrashReportClient 2019-12-20 08:53 - 2019-07-12 15:55 - 000000000 ____D C:\Program Files\Epic Games 2019-12-20 08:51 - 2019-07-07 11:46 - 000000000 ____D C:\Users\Edwin\AppData\Roaming\Adobe 2019-12-20 07:24 - 2019-11-23 07:15 - 000004218 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1574511323 2019-12-19 18:06 - 2019-07-07 11:52 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-12-19 18:06 - 2019-07-07 11:52 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-12-17 06:54 - 2017-03-18 16:03 - 000000000 ___HD C:\Program Files\WindowsApps 2019-12-16 13:02 - 2019-10-17 08:21 - 000000000 ____D C:\Users\Edwin\Documents\My Games 2019-12-16 13:01 - 2019-07-14 19:31 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat 2019-12-16 12:57 - 2019-07-07 12:06 - 000000000 ____D C:\ProgramData\Package Cache 2019-12-16 03:18 - 2019-07-10 20:32 - 000000000 ____D C:\Users\Edwin\AppData\Local\ElevatedDiagnostics 2019-12-14 17:00 - 2019-09-29 21:11 - 000068424 _____ (EnigmaSoft Limited) C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys 2019-12-13 15:38 - 2019-07-07 11:52 - 000003558 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2019-12-13 15:38 - 2019-07-07 11:52 - 000003434 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2019-12-13 07:16 - 2017-03-18 16:03 - 000000000 ___HD C:\Windows\ELAMBKUP 2019-12-13 07:14 - 2019-09-29 22:54 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-12-13 07:13 - 2019-10-17 07:11 - 000000000 ____D C:\Program Files (x86)\Malwarebytes 2019-12-10 21:00 - 2019-09-30 09:34 - 000000000 ____D C:\Windows\system32\MRT 2019-12-10 20:08 - 2019-09-30 09:33 - 129221664 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2019-12-10 09:41 - 2019-07-08 12:58 - 000004576 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier 2019-12-10 09:40 - 2017-03-18 16:03 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2019-12-10 09:40 - 2017-03-18 16:03 - 000000000 ____D C:\Windows\system32\Macromed 2019-12-02 08:32 - 2019-11-11 07:44 - 000000000 ____D C:\Users\Edwin\Downloads\descarg 2019-12-01 06:44 - 2019-08-18 23:07 - 000000000 ____D C:\Users\Edwin\Downloads\archivos 2019-11-30 18:44 - 2019-09-08 00:40 - 000000000 ____D C:\Users\Public\BlueStacks 2019-11-25 16:19 - 2019-07-08 08:18 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1084882763-4263514591-1534289575-1001 2019-11-25 16:19 - 2019-07-08 08:17 - 000002367 _____ C:\Users\Edwin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-11-25 16:19 - 2019-07-07 11:49 - 000000000 ___RD C:\Users\Edwin\OneDrive ==================== Files in the root of some directories ======== 2019-08-16 11:39 - 2019-11-20 07:05 - 000000132 _____ () C:\Users\Edwin\AppData\Roaming\Prefs. de formato PNG de Adobe CS6 2019-07-11 09:57 - 2019-07-11 09:57 - 000000003 _____ () C:\Users\Edwin\AppData\Local\updater.log 2019-07-11 09:57 - 2019-07-11 09:57 - 000000425 _____ () C:\Users\Edwin\AppData\Local\UserProducts.xml ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) LastRegBack: 2019-12-16 03:18 ==================== End of FRST.txt ========================