Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02 Ran by alber (18-10-2019 21:35:25) Running from C:\Users\alber\OneDrive\Escritorio Windows 10 Pro Version 1903 18362.418 (X64) (2019-06-15 22:44:32) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-4044603304-3046036407-3438730854-500 - Administrator - Disabled) alber (S-1-5-21-4044603304-3046036407-3438730854-1001 - Administrator - Enabled) => C:\Users\alber DefaultAccount (S-1-5-21-4044603304-3046036407-3438730854-503 - Limited - Disabled) Invitado (S-1-5-21-4044603304-3046036407-3438730854-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-4044603304-3046036407-3438730854-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 4K Video Downloader 4.9 (HKLM\...\{3068BA02-E08D-475B-9F9D-45D1076BC5E8}) (Version: 4.9.0.3032 - Open Media LLC) AIMP (HKLM-x32\...\AIMP) (Version: v4.60.2153, 13.10.2019 - AIMP DevTeam) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.9.2 - Advanced Micro Devices, Inc.) Babylon (HKLM-x32\...\{08A2DA70-37B3-4EA2-852E-6241739F6460}) (Version: 11.01 - Babylon Software Ltd.) Babylon Pro NG (HKLM-x32\...\Babylon Pro NG 11.0.1) (Version: 11.0.1 - Babylon Software) Bandizip (HKLM\...\Bandizip) (Version: 6.25 - Bandisoft.com) Branding64 (HKLM\...\{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden Call of Duty 2 versión 1.3 (HKLM-x32\...\{F5D3C540-5650-46B6-A85D-DC74C53F29FB}_is1) (Version: 1.3 - Activision) Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform) Cooking Simulator MULTi11 - ElAmigos versión 1.2.12534 (HKLM-x32\...\{CCB65BEC-81A6-4746-AA23-64942528ADC8}_is1) (Version: 1.2.12534 - PlayWay S.A.) CyberLink PowerDVD 18 (HKLM-x32\...\{0F4F617F-E8D5-46A3-A0F9-43855182A3B1}) (Version: 18.0.1415.62 - CyberLink Corp.) Farming Simulator 19 MULTi18 - ElAmigos versión 1.4.0.0 (HKLM-x32\...\{330AEDD7-999C-4D14-9FAB-31EAA059FA2E}_is1) (Version: 1.4.0.0 - Focus Home Interactive) Glary Utilities 5.129 (HKLM-x32\...\Glary Utilities 5) (Version: 5.129.0.155 - Glarysoft Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.120 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden House Flipper MULTi19 - ElAmigos versión 01.07.2019 (HKLM-x32\...\{C7ECCCC1-721F-4AD3-B667-7F60646AD0E4}_is1) (Version: 01.07.2019 - PlayWay) IObit Uninstaller (HKLM-x32\...\IObit Uninstaller Pro 9.0.1.24 RC) (Version: - ) Java 8 Update 231 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180231F0}) (Version: 8.0.2310.11 - Oracle Corporation) Malwarebytes versión 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes) Medal of Honor Airborne versión 1.3 (HKLM-x32\...\{9E368079-7F1B-45C7-BA74-6958880724AE}_is1) (Version: 1.3 - EA Games) Media Preview (HKLM\...\{2ACB57C9-E2DD-4378-99E9-0F75E91615B0}) (Version: 1.4.3.429 - BabelSoft) Microsoft Edge Beta (HKLM-x32\...\Microsoft Edge Beta) (Version: 78.0.276.19 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.111.45 - ) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Excel 2007 Help Actualización (KB963678) (HKLM-x32\...\{90120000-0016-0C0A-0000-0000000FF1CE}_ENTERPRISE_{59E09C3D-4878-47D9-87DB-6D0018026889}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Outlook 2007 Help Actualización (KB963677) (HKLM-x32\...\{90120000-001A-0C0A-0000-0000000FF1CE}_ENTERPRISE_{59C244C2-0C37-4E85-8F7E-DBDD3958B694}) (Version: - Microsoft) Microsoft Office Powerpoint 2007 Help Actualización (KB963669) (HKLM-x32\...\{90120000-0018-0C0A-0000-0000000FF1CE}_ENTERPRISE_{F318245D-05AE-4681-A749-A036CE44AF29}) (Version: - Microsoft) Microsoft Office Word 2007 Help Actualización (KB963665) (HKLM-x32\...\{90120000-001B-0C0A-0000-0000000FF1CE}_ENTERPRISE_{377BA42A-1C84-45D6-94B8-6D00887D172D}) (Version: - Microsoft) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27027 (HKLM-x32\...\{39e28474-b67b-4209-af1b-e9ad0a83d8ca}) (Version: 14.16.27027.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MiPony 3.0.5 (HKLM-x32\...\MiPony) (Version: 3.0.5 - ) Movavi Video Editor 15 Plus (HKU\S-1-5-21-4044603304-3046036407-3438730854-1001\...\Movavi Video Editor 15 Plus) (Version: 15.1.0 - Movavi) Mozilla Firefox 69.0.3 (x64 es-ES) (HKLM\...\Mozilla Firefox 69.0.3 (x64 es-ES)) (Version: 69.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 66.0.5 - Mozilla) MSI Afterburner 4.6.2 Beta 2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 Beta 2 - MSI Co., LTD) NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Nexus (HKLM-x32\...\Winstep Xtreme_is1) (Version: - ) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.7.1 - Notepad++ Team) NVIDIA PhysX (Legacy) (HKLM-x32\...\{6F9D5A0B-202C-4161-BC7F-0664EA39E7E7}) (Version: 9.12.1031 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) PixARK MULTi11 - ElAmigos versión 1.54 (HKLM-x32\...\{412EFD57-139E-40ED-825F-8C1007CEAEC7}_is1) (Version: 1.54 - Snail Games USA) RAM Saver 19.0 Professional (HKLM-x32\...\{04FCFB2F-FEC3-4D9A-81FB-A18858CF52DB}_is1) (Version: - WinTools Software Engineering, Ltd.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8581 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder) Silent Hunter 4 Wolves of the Pacific Gold Edition MULTi5 - ElAmigos versión 1.5 (HKLM-x32\...\{1ABC6B23-CA4F-485B-B729-B4CBF32A0AF5}_is1) (Version: 1.5 - Ubisoft) Silent Hunter 5 versión 1.2.0 (HKLM-x32\...\Silent Hunter 5_is1) (Version: 1.2.0 - UBISoft) Silent Hunter III versión 1.4 (HKLM-x32\...\{6BDD4D75-1589-4822-B7F5-905D1639498A}_is1) (Version: 1.4 - Ubisoft, Inc.) TeraCopy 3.0 (HKLM\...\TeraCopy_is1) (Version: - Code Sector) TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation) Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{2E8B8BDD-03DF-4C1C-8C99-E6A4BCBF43CE}) (Version: 2.51.0.0 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN) Vulkan Run Time Libraries 1.0.11.0 (HKLM\...\VulkanRT1.0.11.0) (Version: 1.0.11.0 - LunarG, Inc.) WinX HD Video Converter Deluxe 5.15.3 (HKLM-x32\...\WinX HD Video Converter Deluxe_is1) (Version: - Digiarty Software, Inc.) Packages: ========= AdBlock -> C:\Program Files\WindowsApps\BetaFish.AdBlock_2.9.0.0_neutral__c1wakc4j0nefm [2019-10-08] (BetaFish) Alarm Clock HD + -> C:\Program Files\WindowsApps\60553KurtDowswell.AlarmClockHD_3.6.7.0_x64__4ya3dzs4caxjc [2019-10-08] (Kurt Dowswell) [MS Ad] Call of the Raven -> C:\Program Files\WindowsApps\Microsoft.CalloftheRaven_1.0.0.0_neutral__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) Correo y Calendario -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] Microsoft News: Noticias destacadas en español -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] MSN Deportes -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] MSN El Tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) [MS Ad] Ski Paradise -> C:\Program Files\WindowsApps\Microsoft.SkiParadise_1.0.0.0_neutral__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0 [2019-10-10] (Spotify AB) TranslucentTB -> C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_7.0.0.0_x86__v826wp6bftszj [2019-10-08] (Charles Milette) uBlock Origin -> C:\Program Files\WindowsApps\37833NikRolls.uBlockOrigin_1.15.24.0_neutral__f8jsg5mm64m62 [2019-10-08] (Nik Rolls) World National Parks -> C:\Program Files\WindowsApps\Microsoft.WorldNationalParks_1.0.0.0_neutral__8wekyb3d8bbwe [2019-10-08] (Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4044603304-3046036407-3438730854-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl64.dll (Bandisoft -> Bandisoft.com) ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ContextMenuHandlers1: [$PowerDVD18] -> {EF1ED1FB-2224-4150-B12A-CDDE6D442D5A} => C:\ProgramData\CyberLink\PowerDVD18\OpenWith\PDVD_Shell64.dll [2018-02-21] (CyberLink Corp. -> CyberLink Corp.) ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2019-06-17] (Notepad++ -> ) ContextMenuHandlers1: [BabylonDocTrans] -> {947217BD-E967-400A-B14A-BA851A8EDCBB} => -> No File ContextMenuHandlers1: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => -> No File ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit Uninstaller\IUMenuRight.dll [2019-07-09] (IObit Information Technology -> IObit) ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit Information Technology -> IObit) ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers2: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => -> No File ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers4: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => -> No File ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit Uninstaller\IUMenuRight.dll [2019-07-09] (IObit Information Technology -> IObit) ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-09-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers6: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => -> No File ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit Uninstaller\IUMenuRight.dll [2019-07-09] (IObit Information Technology -> IObit) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit Information Technology -> IObit) ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers1_S-1-5-21-4044603304-3046036407-3438730854-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers2_S-1-5-21-4044603304-3046036407-3438730854-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers4_S-1-5-21-4044603304-3046036407-3438730854-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ContextMenuHandlers5_S-1-5-21-4044603304-3046036407-3438730854-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl64.dll [2019-08-27] (Bandisoft -> Bandisoft.com) ==================== Codecs (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed] HKLM\...\Drivers32: [VIDC.FPS1] => C:\WINDOWS\system32\frapsv64.dll [71680 2013-02-26] (Beepa P/L) [File not signed] HKLM\...\Drivers32: [VIDC.FICV] => C:\WINDOWS\system32\ficvdec_x64.dll [652288 2018-05-16] () [File not signed] HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed] HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2013-02-26] (Beepa P/L) [File not signed] HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\SysWOW64\tsccvid.dll [107864 2009-08-19] (TechSmith Corporation -> TechSmith Corporation) HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2018-05-16] () [File not signed] ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\alber\AppData\Local\Microsoft\Edge Beta\User Data\Default\Microsoft Edge Beta.lnk -> C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default ==================== Loaded Modules (Whitelisted) ============== 2019-07-22 19:22 - 2019-07-22 19:22 - 000232448 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2019-07-22 19:21 - 2019-07-22 19:21 - 000057344 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2019-07-22 19:22 - 2019-07-22 19:22 - 000650240 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2019-07-22 19:22 - 2019-07-22 19:22 - 000074240 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2019-07-22 19:22 - 2019-07-22 19:22 - 000368640 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2019-09-09 16:29 - 2019-09-09 16:29 - 000057344 _____ () [File not signed] C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll 2019-09-09 16:30 - 2019-09-09 16:30 - 000074240 _____ () [File not signed] C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll 2019-09-09 16:30 - 2019-09-09 16:30 - 000368640 _____ () [File not signed] C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 003598336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2019-09-10 17:38 - 2019-09-10 17:38 - 000258048 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\WirelessVR-windesktop64.dll 2019-10-08 15:42 - 2017-02-23 01:11 - 001715200 _____ () [File not signed] C:\Program Files\TeraCopy\TeraCopy64.dll 2010-04-04 23:08 - 2010-04-04 23:08 - 001253376 _____ (Florian Gilles) [File not signed] C:\Program Files\NetSpeedMonitor\nsm.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 001441280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll 2019-09-10 17:47 - 2019-09-10 17:47 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2019-01-08 12:54 - 2019-01-08 12:54 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2019-01-08 12:55 - 2019-01-08 12:55 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2019-09-28 03:35 - 2017-11-24 17:43 - 000026624 _____ (Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\WsxMMTimer.dll ==================== Alternate Data Streams (Whitelisted) ========= ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-4044603304-3046036407-3438730854-1001\...\localhost -> localhost ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-07-10 13:04 - 2019-10-18 05:36 - 000000863 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 activation.acronis.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-4044603304-3046036407-3438730854-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Public\Documents\WinStep\Themes\Windows10Nx\wallpaper.jpg DNS Servers: 192.168.100.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == If an entry is included in the fixlist, it will be removed. HKLM\...\StartupApproved\Run32: => "PowerDVD18Agent" HKU\S-1-5-21-4044603304-3046036407-3438730854-1001\...\StartupApproved\Run: => "OneDrive" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{189E2F31-F13A-4336-88BE-47116AEAC8FF}E:\els jocs\train simulator 2018\railworks.exe] => (Allow) E:\els jocs\train simulator 2018\railworks.exe () [File not signed] FirewallRules: [TCP Query User{6D794860-501C-4FBE-92EE-619DA25D24DF}E:\els jocs\train simulator 2018\railworks.exe] => (Allow) E:\els jocs\train simulator 2018\railworks.exe () [File not signed] FirewallRules: [{25A2F5B4-6626-4F45-9822-3296991C7303}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ylands\Ylands.exe (BOHEMIA INTERACTIVE a.s. -> ) FirewallRules: [{40F92611-13CB-421E-B41B-20A8D7DD1A71}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ylands\Ylands.exe (BOHEMIA INTERACTIVE a.s. -> ) FirewallRules: [{410A8B23-9718-4591-8793-8C4A83614F32}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD18\CastingStation.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{0C7496A0-07DC-46D5-8FBA-BDFDAA25C4C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD18\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{9BFAD980-F66D-42E4-A98B-8A8B58F69E8B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD18\PowerDVD18Agent.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{B68CF4E9-F1F3-4430-9EF5-04140BE63CA6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD18\Kernel\DMS\CLMSServerPDVD18.exe (CyberLink Corp. -> CyberLink) FirewallRules: [{69934B72-BF95-453B-8511-2A9FCB4BA6BC}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD18\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{EAF8DE2E-6420-4AAB-AE9D-F69DE12A918F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe () [File not signed] FirewallRules: [{4CDB2D0D-01E7-4208-AE37-AEDE93CBB121}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe () [File not signed] FirewallRules: [{E6CD461C-97C1-45E0-89F4-22C0C4A0CB72}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{31BFFB3D-9488-41D9-9BD1-A8B2CC57ECAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{6263F08A-5B9D-424B-A649-781D7B120049}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{37DCF2A6-6645-4A70-91F9-855781B8096D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{12B533B2-EE85-4670-AAD1-82762FB3A222}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{6AE003EB-E6E6-40A4-A7AD-F6B80571F7DC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{BB0FAF2E-836E-4A83-8A07-999D12F4FC9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{2412994A-70A9-4A9B-8E3D-D064C4C771CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{E87854EA-053D-4D70-B20D-1CC1EC69BD6C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe (Eleon Game Studios) [File not signed] FirewallRules: [{14791A9B-7DD9-49C5-A823-B7C47DEAFB5C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe (Eleon Game Studios) [File not signed] FirewallRules: [UDP Query User{F812096A-C787-4CBA-98F7-46BCAB44E148}C:\program files (x86)\steam\steamapps\common\empyrion - galactic survival\client\empyrion.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\empyrion - galactic survival\client\empyrion.exe () [File not signed] FirewallRules: [TCP Query User{2739071B-F6FC-4742-90DF-DDC528946B1D}C:\program files (x86)\steam\steamapps\common\empyrion - galactic survival\client\empyrion.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\empyrion - galactic survival\client\empyrion.exe () [File not signed] FirewallRules: [{B6C2B057-2969-400E-955D-A0F66A7F1727}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{48C3784C-1B05-417B-BEBD-A5C16B5B4927}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{BE71295A-170B-4E21-88A6-49A954AD9004}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{E93B65BE-5F45-4D00-A34E-7FEB3F621449}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{47684395-22D9-4F29-9393-A9FF85A61E92}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{72C6E1A3-BC6F-4B3A-B76F-64299CE0D627}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{8433602B-69B2-4DEC-B43B-755678B7E2F7}C:\program files (x86)\steam\steamapps\common\fishing\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\fishing\fishinggame\binaries\win64\fishinggame-win64-shipping.exe (Epic Games, Inc.) [File not signed] FirewallRules: [UDP Query User{35432926-546E-4450-9903-C34F6912CA16}C:\program files (x86)\steam\steamapps\common\fishing\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\fishing\fishinggame\binaries\win64\fishinggame-win64-shipping.exe (Epic Games, Inc.) [File not signed] FirewallRules: [{7DA38C98-AA2D-4613-BA38-4B00D6452DFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UBOAT\UBOAT.exe () [File not signed] FirewallRules: [{6F81DA16-A450-4E79-938D-10B38D88E7D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UBOAT\UBOAT.exe () [File not signed] FirewallRules: [{B742C489-4E57-47D8-8120-98192AFA51F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [File not signed] FirewallRules: [{581C3587-1E49-4C85-98D8-C2AB2AAAC672}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [File not signed] FirewallRules: [TCP Query User{470EB595-4243-4C09-A6FE-2008509C44B2}D:\games\thehunter call of the wild\thehuntercotw_f.exe] => (Allow) D:\games\thehunter call of the wild\thehuntercotw_f.exe () [File not signed] FirewallRules: [UDP Query User{B6E46E5D-7EA9-49DC-8C40-4FC40C455126}D:\games\thehunter call of the wild\thehuntercotw_f.exe] => (Allow) D:\games\thehunter call of the wild\thehuntercotw_f.exe () [File not signed] FirewallRules: [{CE004793-EA33-4E1D-85BE-865B1AA59F66}] => (Allow) D:\IObit\Driver Booster\6.6.0\DriverBooster.exe (IObit Information Technology -> IObit) FirewallRules: [{CA412160-CE11-4F16-99E4-D5C0D75B9861}] => (Allow) D:\IObit\Driver Booster\6.6.0\DriverBooster.exe (IObit Information Technology -> IObit) FirewallRules: [{CB90E2C3-3C2B-4F74-94A8-7DD70DA54A40}] => (Allow) D:\IObit\Driver Booster\6.6.0\DBDownloader.exe (IObit Information Technology -> IObit) FirewallRules: [{611513A2-679F-4F78-8E6D-5CBC9F049B44}] => (Allow) D:\IObit\Driver Booster\6.6.0\DBDownloader.exe (IObit Information Technology -> IObit) FirewallRules: [{0EA13593-9B87-4701-97A4-9E3BC3C480B6}] => (Allow) D:\IObit\Driver Booster\6.6.0\AutoUpdate.exe (IObit Information Technology -> IObit) FirewallRules: [{3CACDEDA-3715-45CA-B46A-882058344CB2}] => (Allow) D:\IObit\Driver Booster\6.6.0\AutoUpdate.exe (IObit Information Technology -> IObit) FirewallRules: [TCP Query User{76EEF70B-9512-4475-8E28-C71E8871EFE6}D:\emule\emule.exe] => (Allow) D:\emule\emule.exe (hxxp://www.emule-project.net) [File not signed] FirewallRules: [UDP Query User{98CBE34D-C731-4057-998A-337EAE079F05}D:\emule\emule.exe] => (Allow) D:\emule\emule.exe (hxxp://www.emule-project.net) [File not signed] FirewallRules: [TCP Query User{2981B067-61FA-4D6F-9D8E-E36A21F49108}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe (www.mipony.net -> ) [File not signed] FirewallRules: [UDP Query User{8D790460-FF91-41EA-B748-12C35C8EB308}C:\program files (x86)\mipony\mipony.exe] => (Allow) C:\program files (x86)\mipony\mipony.exe (www.mipony.net -> ) [File not signed] FirewallRules: [{799DE871-01A3-4CEA-93C2-7CC7D2759778}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe (Frontier Developments Plc -> Frontier Developments) FirewallRules: [{03E77FC3-8DE5-49E5-B19A-426C0627CC63}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe (Frontier Developments Plc -> Frontier Developments) FirewallRules: [TCP Query User{2670B3AF-F196-426E-B9BD-CE008058DF55}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe No File FirewallRules: [UDP Query User{031D78C1-2AEF-4B0A-A8C8-0B5EEF210883}C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_221\bin\javaw.exe No File FirewallRules: [{B3528BAA-A355-44F1-874E-210363BD677E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{70542BC9-0BAF-4455-B04F-0ABBFE8D5BE0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{FC7F4280-87A9-4D00-AD27-66E9CFBE895B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{148126AD-5663-44AA-8F53-C246341A4ECA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{54C95FCB-13B1-4D75-BE55-9A93DC5B23B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{54F27BDC-87D2-4ECD-B7B7-70D120EA4069}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2DB25806-C4D2-43E3-9A29-27FA25C24604}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{30C25A4C-5CEA-4EA8-838B-C5A8ADEC64AE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{EBB7BB79-F415-48E1-B93B-CC5CBA517709}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{460BA5A0-A17F-4089-B0D4-5A9195D46099}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{1740A898-BCC9-458E-8D45-14D41445B134}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{DBFAE9D5-8D95-42B7-8303-7A60D154E340}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.117.543.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{1473BDA1-E7C3-4BCA-B40A-0F082A546A4A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{09AD971B-06C9-4493-870F-356248FE8940}] => (Allow) C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B6A6C167-03BB-4EFA-B88C-E2E612DAF3C0}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{F9F49D5A-88FB-4406-B1B2-902C4601843E}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{0EE808AB-4023-4783-9FB3-40578BE250DB}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{6F72E59C-8531-4470-95C9-673FBEA93783}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{5962BB07-94F0-4A58-A81C-743605DA2551}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{B555C324-882D-41FF-B405-A6C2F051F89C}] => (Allow) C:\Users\alber\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) ==================== Restore Points ========================= 08-10-2019 15:51:26 tod forsa ve 16-10-2019 12:56:24 Punto de control programado 17-10-2019 00:16:48 CCleaner restore point 18-10-2019 21:13:30 ZHPcleaner ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/18/2019 09:21:50 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (884,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 09:03:55 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (4044,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 08:55:20 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (10484,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 06:45:03 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (752,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 02:58:25 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (9340,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 02:50:40 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa Steam.exe (versión 5.38.94.53) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento. Id. de proceso: 104c Hora de Inicio: 01d5859f6cf722ed Hora de finalización: 25 Ruta de la aplicación: C:\Program Files (x86)\Steam\Steam.exe Id. de informe: dbaaac82-6f19-4aff-9e0d-f5181b0617d7 Nombre completo del paquete con errores: Id. de la aplicación relativa al paquete con errores: Tipo de bloqueo: Cross-process Error: (10/18/2019 01:03:44 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (932,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/18/2019 12:52:49 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1124,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) al abrir un archivo de registro C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. System errors: ============= Error: (10/18/2019 07:29:53 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3GJI9BD) Description: El servidor {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} no se registró con DCOM dentro del tiempo de espera requerido. Error: (10/18/2019 06:09:08 AM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-3GJI9BD) Description: No se puede iniciar un servidor DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Error "2147942767" al iniciar este comando: C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} Error: (10/18/2019 05:44:52 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Steam Client Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (10/18/2019 05:44:52 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio Winstep Xtreme Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (10/18/2019 05:44:52 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio ICEsound Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (10/18/2019 05:44:52 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio AMD External Events Utility se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (10/18/2019 05:44:52 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: El servicio TeraCopy Service se terminó de manera inesperada. Esto ha sucedido 1 veces. Error: (10/18/2019 05:37:49 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3GJI9BD) Description: El servidor {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} no se registró con DCOM dentro del tiempo de espera requerido. Windows Defender: =================================== Date: 2019-10-16 14:24:04.605 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {CA5067E8-7178-453D-84E6-5608EB345FFA} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-16 13:16:32.263 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {3FD7721D-6196-405A-9242-5404F3890720} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-16 13:00:39.284 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {61A3D7C5-E6D4-4A82-BCC8-B89DA1FC7BA4} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-12 04:01:40.924 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {94D9D6E8-AA0A-428C-A699-0A7E3C021CAA} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-12 03:42:04.497 Description: El examen de Antivirus de Windows Defender se detuvo antes de completarse. Id. de examen: {F0480B8D-63BB-491E-9689-E0AE11BAF566} Tipo de examen: Antimalware Parámetros de examen: Examen rápido Usuario: NT AUTHORITY\SYSTEM Date: 2019-10-08 13:52:29.130 Description: Antivirus de Windows Defender encontró un error al intentar cargar la inteligencia de seguridad e intentará revertir a una versión que sepa que es correcta. Inteligencia de seguridad intentada: Actual Código de error: 0x80070003 Descripción del error: El sistema no puede encontrar la ruta especificada. Versión de inteligencia de seguridad: 0.0.0.0;0.0.0.0 Versión del motor: 0.0.0.0 Date: 2019-10-08 13:45:03.985 Description: Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad. Nueva versión de inteligencia de seguridad: Versión anterior de inteligencia de seguridad: 1.303.1066.0 Origen de actualización: Servidor de Microsoft Update Tipo de inteligencia de seguridad: AntiVirus Tipo de actualización: Completa Usuario: NT AUTHORITY\SYSTEM Versión actual del motor: Versión anterior del motor: 1.1.16400.2 Código de error: 0x8024001e Descripción del error: Se produjo un problema inesperado mientras se buscaban actualizaciones. Para obtener más información sobre cómo instalar o solucionar problemas en las actualizaciones, consulte Ayuda y soporte técnico. Date: 2019-10-08 13:29:30.974 Description: Antivirus de Windows Defender encontró un error al intentar cargar la inteligencia de seguridad e intentará revertir a una versión que sepa que es correcta. Inteligencia de seguridad intentada: Actual Código de error: 0x80070003 Descripción del error: El sistema no puede encontrar la ruta especificada. Versión de inteligencia de seguridad: 0.0.0.0;0.0.0.0 Versión del motor: 0.0.0.0 CodeIntegrity: =================================== Date: 2019-10-07 16:59:01.164 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-10-07 13:43:16.414 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-10-06 19:42:48.381 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-10-03 04:18:04.729 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-10-03 02:40:39.037 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-09-29 17:49:53.055 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\MirillisAction_3.1.3_Portable1\MirillisAction_3.1.3_Portable DemonHD\App\Action!\action_x64.dll that did not meet the Microsoft signing level requirements. Date: 2019-09-26 20:38:23.326 Description: Windows blocked file \Device\HarddiskVolume2\Windows\System32\scrobj.dll which has been disallowed for protected processes. Date: 2019-09-26 20:38:22.798 Description: Windows blocked file \Device\HarddiskVolume2\Windows\System32\scrobj.dll which has been disallowed for protected processes. ==================== Memory info =========================== BIOS: American Megatrends Inc. 1201 04/19/2013 Motherboard: ASUSTeK Computer INC. M5A78L-M LX3 Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 21% Total physical RAM: 16366.11 MB Available physical RAM: 12832.43 MB Total Virtual: 18798.11 MB Available Virtual: 13757.71 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:464.45 GB) (Free:237.77 GB) NTFS Drive d: (Nuevo vol) (Fixed) (Total:931.51 GB) (Free:532.21 GB) NTFS Drive e: (Nuevo vol) (Fixed) (Total:931.51 GB) (Free:452.91 GB) NTFS \\?\Volume{5cdb3792-0000-0000-0000-100000000000}\ (Reservado para el sistema) (Fixed) (Total:0.49 GB) (Free:0.46 GB) NTFS \\?\Volume{5cdb3792-0000-0000-0000-703c74000000}\ () (Fixed) (Total:0.82 GB) (Free:0.42 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 5CDB3792) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=464.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=835 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0FD083DE) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: C4ACE94C) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================