Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-06-2019
- Ran by Anton (administrator) on DESKTOP-6LEJGCR (Gigabyte Technology Co., Ltd. Z390 UD) (17-06-2019 19:29:50)
- Running from C:\Users\Anton\Desktop
- Loaded Profiles: Anton (Available Profiles: Anton)
- Platform: Windows 10 Pro Version 1809 17763.557 (X64) Language: Español (España, internacional)
- Default browser: Chrome
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- () [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
- () [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19051.545.0_x64__8wekyb3d8bbwe\YourPhone.exe
- (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
- (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
- (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
- (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Kingston Technology Company, Inc. -> HyperX NGenuity Software) C:\Program Files (x86)\HyperX\NGenuity\NGenuity.exe
- (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLClientApp.exe
- (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office16\WINWORD.EXE
- (Microsoft Corporation -> Microsoft Corporation) C:\Users\Anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
- (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\MsMpEng.exe
- (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\NisSrv.exe
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
- (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
- HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
- HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
- HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
- HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [4810288 2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
- HKLM-x32\...\Run: [] => [X]
- HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [NetLimiter] => C:\Program Files\Locktime Software\NetLimiter 4\nlclientapp.exe [56368 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
- HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [AdobeBridge] => [X]
- HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [FACEIT] => C:\Users\Anton\AppData\Local\FACEITApp\update.exe [2203584 2019-02-27] (FACE IT LIMITED -> )
- HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [NGenuity] => C:\Program Files (x86)\HyperX\NGenuity\NGenuity.exe [1834040 2019-03-29] (Kingston Technology Company, Inc. -> HyperX NGenuity Software)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-21] (Google LLC -> Google Inc.)
- ==================== Scheduled Tasks (Whitelisted) =============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {0D487240-FFD8-4EC1-A4D3-CDA46B6E57F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {196AC704-77C7-468A-8DFA-EB77E6E4776F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- Task: {1EB8D3C0-AAC6-4991-A35D-4E963D870858} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-02-17] (Google Inc -> Google Inc.)
- Task: {4755F6CD-C839-434E-BCA8-6D86B3A19B7E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {5D0DD262-2B79-4F7F-B407-0755B789AECD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-02-17] (Google Inc -> Google Inc.)
- Task: {80F3B49F-F477-4B66-A897-8152348BF66F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {A6FE5FCB-C95F-4D1E-BA6A-F2F4476230BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {B5E190DF-F6DF-4982-99F5-0DFEB0359A5C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- Task: {F8306F40-E44A-4AF4-AC33-0A171BC221C2} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-aclordenador@outlook.es => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Tcpip\Parameters: [DhcpNameServer] 213.60.205.175 213.60.205.173
- Tcpip\..\Interfaces\{675e60cd-31f1-488e-b49d-35c3534b8eb0}: [DhcpNameServer] 213.60.205.175 213.60.205.173
- Tcpip\..\Interfaces\{a2f1ebbe-5562-4f07-84c5-25b497dfafcd}: [DhcpNameServer] 213.60.205.175 213.60.205.173
- Internet Explorer:
- ==================
- BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
- BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
- Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
- Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
- Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
- Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
- FireFox:
- ========
- FF DefaultProfile: gpxvhprb.default
- FF ProfilePath: C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\gpxvhprb.default [2019-06-17]
- FF NetworkProxy: Mozilla\Firefox\Profiles\gpxvhprb.default -> backup.ftp", "163.172.220.221"
- FF Extension: (uBlock) - C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\gpxvhprb.default\Extensions\{2b10c1c8-a11f-4bad-fe9c-1c11e82cac42}.xpi [2019-05-24]
- FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-03-25]
- FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Anton\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
- FF Extension: (Ace Script) - C:\Users\Anton\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
- FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -> Adobe Systems)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
- FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -> Adobe Systems)
- FF Plugin HKU\S-1-5-21-1345875174-610030667-2080599426-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Anton\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
- Chrome:
- =======
- CHR HomePage: Default -> hxxp://www.google.es/
- CHR StartupUrls: Default -> "hxxp://www.google.es/"
- CHR Profile: C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default [2019-06-17]
- CHR Extension: (Presentaciones) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-17]
- CHR Extension: (Documentos) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-17]
- CHR Extension: (Google Drive) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-17]
- CHR Extension: (YouTube) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-17]
- CHR Extension: (uBlock Origin) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-05-24]
- CHR Extension: (Adobe Acrobat) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-06-04]
- CHR Extension: (Hojas de cálculo) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-17]
- CHR Extension: (Documentos de Google sin conexión) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-17]
- CHR Extension: (FACEIT Enhancer) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2019-06-16]
- CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-17]
- CHR Extension: (Gmail) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
- CHR Extension: (Chrome Media Router) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23]
- CHR HKU\S-1-5-21-1345875174-610030667-2080599426-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
- R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
- R2 nlsvc; C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe [323632 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
- S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
- S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
- R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [16198008 2019-06-06] (FACE IT LIMITED -> )
- R0 nldrv; C:\Windows\System32\drivers\nldrv.sys [142888 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
- R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
- R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_21a764822be8dff8\nvlddmkm.sys [20707744 2019-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
- R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [605696 2018-09-15] (Microsoft Windows -> Realtek )
- S3 RtlWlanu_OldIC; C:\Windows\System32\drivers\rtwlanu_oldIC.sys [3814400 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation )
- S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [47496 2019-06-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [337632 2019-06-04] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-04] (Microsoft Windows -> Microsoft Corporation)
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One month (created) ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2019-06-17 19:29 - 2019-06-17 19:30 - 000021536 _____ C:\Users\Anton\Desktop\FRST.txt
- 2019-06-17 19:29 - 2019-06-17 19:29 - 000000000 ____D C:\FRST
- 2019-06-17 19:26 - 2019-06-17 19:26 - 000000000 ____D C:\Users\Anton\Desktop\backups
- 2019-06-17 19:07 - 2019-06-17 19:07 - 002418688 _____ (Farbar) C:\Users\Anton\Desktop\FRST64.exe
- 2019-06-17 19:05 - 2019-06-17 19:20 - 000000000 ____D C:\Users\Anton\Desktop\malware
- 2019-06-17 19:04 - 2019-06-17 19:04 - 000388608 _____ (Trend Micro Inc.) C:\Users\Anton\Desktop\HijackThis.exe
- 2019-06-17 19:03 - 2019-06-17 19:03 - 000000000 ___HD C:\OneDriveTemp
- 2019-06-17 17:15 - 2019-06-17 17:15 - 002318462 _____ C:\Users\Anton\Downloads\gobernanza.pdf
- 2019-06-16 17:35 - 2019-06-16 17:35 - 019368579 _____ C:\Users\Anton\Desktop\TFM.zip
- 2019-06-14 14:30 - 2019-06-14 14:30 - 026808320 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 023438336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 020816384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 018999296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 017484800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 015221248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 012869120 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 012162048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 007884288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 007875072 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 007724992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 006926336 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 006547144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 006441472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 006309256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 006068224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005764608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005588184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005297152 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005210904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005112792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 004997096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 004661760 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 004627456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003983872 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003906560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003743744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003637248 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003426816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003385344 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003363640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003344896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003270144 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 003091968 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002999808 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002928640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002926096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002777736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002707968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002690048 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002653696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002638336 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002627600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002323696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002276192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002085168 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 002017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001929216 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001903616 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001899160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001860608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001860096 ____R (The ICU Project) C:\Windows\system32\icuin.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001761280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001750016 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001700312 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001670840 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001644544 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001618944 ____R (The ICU Project) C:\Windows\SysWOW64\icuin.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001616384 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001483872 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001471040 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001466496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001462272 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001342904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001331536 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001315328 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001313792 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001298952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001260048 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001256448 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001255936 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001254912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001229824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001223168 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001219424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryPS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001180184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001098136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001072640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001048592 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001032704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000998912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000927744 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000924160 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000887808 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000863544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000850760 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000804352 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000791040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000787456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000773632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000758688 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000756736 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000752144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000730592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000699392 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000692736 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000676048 _____ (Microsoft Corporation) C:\Windows\system32\StateRepository.Core.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000651576 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000651064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000618496 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000615440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000604344 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000586040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000555232 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000553664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryPS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000540720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StateRepository.Core.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000531968 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000515152 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000513904 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000506192 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000478720 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000474936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000462136 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000451104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000430904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000427688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000424960 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000419368 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000404792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000398848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000398208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000386576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000375544 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000370688 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000365056 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000359936 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000340480 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000292664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000287912 _____ (Microsoft Corporation) C:\Windows\system32\SIHClient.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000282424 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000262160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000247608 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000218624 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000196920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSrv.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000156984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000152896 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000152400 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000137056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000125528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000122680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000114648 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000101176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\BingFilterDS.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000091424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000090424 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000087864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000080400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerUI.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessRuntime.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerUI.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AssignedAccessRuntime.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryCore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryCore.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
- 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
- 2019-06-12 18:01 - 2019-06-12 18:01 - 001993528 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
- 2019-06-10 18:57 - 2019-06-10 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HyperX
- 2019-06-10 18:56 - 2019-06-10 18:58 - 000000000 ____D C:\Users\Anton\AppData\Roaming\HyperX
- 2019-06-10 18:56 - 2019-06-10 18:57 - 002259831 _____ C:\Windows\unins000.dat
- 2019-06-10 18:56 - 2019-06-10 18:56 - 000000000 ____D C:\Program Files (x86)\HyperX
- 2019-06-10 18:56 - 2019-06-10 18:55 - 001209047 _____ C:\Windows\unins000.exe
- 2019-06-07 13:42 - 2019-06-07 13:42 - 000000000 ____D C:\Users\Anton\Desktop\2019.06.07.RPT IET.MX
- 2019-06-07 12:51 - 2019-06-07 12:51 - 000689673 _____ C:\Users\Anton\Downloads\20190521_Resolución_Resolución Aprobación Bases contratación Encargada Oficina Turismo. Subvención Axencia Turismo de Galicia 2019.pdf
- 2019-06-06 20:00 - 2019-06-10 18:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
- 2019-06-05 13:36 - 2019-06-05 13:36 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
- 2019-06-05 13:36 - 2019-06-05 13:36 - 000003718 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-aclordenador@outlook.es
- 2019-06-05 13:35 - 2019-06-05 13:35 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
- 2019-06-05 13:35 - 2019-06-05 13:35 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
- 2019-06-04 18:03 - 2019-06-04 18:03 - 000000040 ____H C:\EFC109E9F1AC
- 2019-05-24 15:34 - 2019-06-16 17:29 - 000000000 ____D C:\Users\Anton\AppData\Roaming\78476be7698c40dff8d0b4242220ff66
- 2019-05-24 15:34 - 2019-05-24 15:34 - 000000000 ____D C:\ProgramData\b3a97a8a
- 2019-05-24 15:34 - 2019-05-24 15:29 - 001805671 _____ C:\Users\Anton\Downloads\Adobe_Acrobat_Pro_DC_v_2015.vbe
- 2019-05-24 15:33 - 2019-05-24 15:33 - 001133568 _____ C:\Users\Anton\Downloads\Adobe_Acrobat_Pro_DC_v_2015.zip
- 2019-05-24 15:33 - 2019-05-24 15:33 - 000014963 _____ C:\Users\Anton\Downloads\Adobe.Acrobat.Pro.X.v10.torrent
- ==================== One month (modified) ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2019-06-17 19:13 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2019-06-17 19:08 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Local\VirtualStore
- 2019-06-17 19:03 - 2019-02-20 22:26 - 000000000 ____D C:\Users\Anton\Desktop\CS
- 2019-06-17 19:03 - 2019-02-17 00:19 - 000000000 ___RD C:\Users\Anton\OneDrive
- 2019-06-17 19:02 - 2019-02-17 00:26 - 000000000 ____D C:\ProgramData\NVIDIA
- 2019-06-17 19:01 - 2019-02-17 04:22 - 000000000 ____D C:\Users\Anton\AppData\Local\Spotify
- 2019-06-17 18:59 - 2019-02-17 07:11 - 000000000 ____D C:\Windows\system32\SleepStudy
- 2019-06-17 18:40 - 2019-02-18 15:35 - 000000000 ____D C:\Users\Anton\AppData\Roaming\WhatsApp
- 2019-06-17 17:17 - 2019-02-17 04:20 - 000000000 ____D C:\Users\Anton\AppData\Roaming\Spotify
- 2019-06-17 12:18 - 2019-02-17 00:44 - 000000000 ____D C:\Users\Anton\AppData\LocalLow\Mozilla
- 2019-06-17 11:52 - 2019-02-17 00:14 - 001684176 _____ C:\Windows\system32\PerfStringBackup.INI
- 2019-06-17 11:52 - 2018-09-15 18:37 - 000752322 _____ C:\Windows\system32\perfh00A.dat
- 2019-06-17 11:52 - 2018-09-15 18:37 - 000147902 _____ C:\Windows\system32\perfc00A.dat
- 2019-06-17 11:52 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
- 2019-06-17 11:47 - 2019-02-17 07:11 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2019-06-17 11:47 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
- 2019-06-17 01:13 - 2019-02-17 04:32 - 000000000 ____D C:\Users\Anton\AppData\Roaming\TS3Client
- 2019-06-17 01:13 - 2019-02-17 00:38 - 000000000 ____D C:\Program Files (x86)\Steam
- 2019-06-16 17:37 - 2019-02-18 14:32 - 000000000 ____D C:\Users\Anton\OneDrive\Documentos\DOUTORADO
- 2019-06-16 17:31 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
- 2019-06-16 17:31 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
- 2019-06-15 04:44 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\NDF
- 2019-06-14 21:47 - 2019-02-17 07:11 - 004963272 _____ C:\Windows\system32\FNTCACHE.DAT
- 2019-06-14 21:47 - 2019-02-17 00:17 - 000000000 __RHD C:\Users\Public\AccountPictures
- 2019-06-14 21:47 - 2019-02-17 00:17 - 000000000 ___RD C:\Users\Anton\3D Objects
- 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ___RD C:\Program Files\Windows Defender
- 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\migwiz
- 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
- 2019-06-14 14:30 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
- 2019-06-12 22:36 - 2019-02-17 00:35 - 000000000 ____D C:\Users\Anton\AppData\Roaming\.ACEStream
- 2019-06-12 22:33 - 2019-02-17 00:36 - 000000000 ___HD C:\_acestream_cache_
- 2019-06-12 18:02 - 2019-02-17 00:40 - 000000000 ____D C:\Windows\system32\MRT
- 2019-06-12 18:01 - 2019-02-17 00:40 - 135349160 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2019-06-11 23:03 - 2019-02-17 00:19 - 000003378 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1345875174-610030667-2080599426-1001
- 2019-06-11 23:03 - 2019-02-17 00:17 - 000002397 _____ C:\Users\Anton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2019-06-10 18:57 - 2019-02-17 12:54 - 000000000 ____D C:\Users\Anton\Programas
- 2019-06-10 18:57 - 2019-02-17 00:28 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2019-06-10 15:55 - 2019-02-17 00:28 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
- 2019-06-07 13:48 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Local\Packages
- 2019-06-06 19:12 - 2019-04-09 01:03 - 016198008 _____ C:\Windows\system32\Drivers\FACEIT.sys
- 2019-06-04 23:34 - 2019-02-18 15:35 - 000000000 ____D C:\Users\Anton\AppData\Local\WhatsApp
- 2019-06-04 19:11 - 2019-02-17 07:11 - 000000000 ____D C:\Windows\system32\Drivers\wd
- 2019-06-04 18:24 - 2019-02-17 00:37 - 000000000 ____D C:\Users\Anton\AppData\Roaming\qBittorrent
- 2019-06-04 18:23 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Roaming\Adobe
- 2019-06-04 18:22 - 2019-02-17 15:42 - 000000000 ____D C:\Users\Anton\AppData\LocalLow\Adobe
- 2019-06-04 18:03 - 2019-02-17 15:59 - 000000000 ____D C:\Program Files (x86)\Adobe
- 2019-06-04 18:03 - 2019-02-17 15:40 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
- 2019-06-04 18:02 - 2019-02-17 00:26 - 000000000 ____D C:\ProgramData\Package Cache
- 2019-06-04 17:54 - 2019-02-17 15:39 - 000000000 ____D C:\ProgramData\Adobe
- 2019-06-04 12:22 - 2019-02-17 00:37 - 000000000 ____D C:\Users\Anton\Downloads\torrents
- 2019-06-04 00:26 - 2019-04-09 01:02 - 000000000 ____D C:\Program Files\FACEIT AC
- 2019-05-31 20:03 - 2018-09-15 09:36 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2019-05-31 20:03 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2019-05-30 01:05 - 2019-02-17 00:34 - 000000000 ____D C:\ProgramData\Packages
- 2019-05-21 21:26 - 2019-02-17 00:37 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- ==================== Files in the root of some directories ================
- 2019-06-05 13:37 - 2019-06-05 13:37 - 000000000 _____ () C:\Users\Anton\AppData\Local\oobelibMkey.log
- ==================== FLock ================
- 2019-02-17 00:13 C:\Windows\CSC
- ==================== SigCheck ===============================
- (There is no automatic fix for files that do not pass verification.)
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement