Advertisement
Guest User

Untitled

a guest
Jun 17th, 2019
384
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 57.41 KB | None | 0 0
  1. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-06-2019
  2. Ran by Anton (administrator) on DESKTOP-6LEJGCR (Gigabyte Technology Co., Ltd. Z390 UD) (17-06-2019 19:29:50)
  3. Running from C:\Users\Anton\Desktop
  4. Loaded Profiles: Anton (Available Profiles: Anton)
  5. Platform: Windows 10 Pro Version 1809 17763.557 (X64) Language: Español (España, internacional)
  6. Default browser: Chrome
  7. Boot Mode: Normal
  8. Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Processes (Whitelisted) =================
  11.  
  12. (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
  13.  
  14. () [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
  15. () [File not signed] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19051.545.0_x64__8wekyb3d8bbwe\YourPhone.exe
  16. (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
  17. (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
  18. (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
  19. (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  20. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  21. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  22. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  23. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  24. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  25. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  26. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  27. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  28. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  29. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  30. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  31. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  32. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  33. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  34. (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  35. (Kingston Technology Company, Inc. -> HyperX NGenuity Software) C:\Program Files (x86)\HyperX\NGenuity\NGenuity.exe
  36. (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLClientApp.exe
  37. (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe
  38. (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office16\WINWORD.EXE
  39. (Microsoft Corporation -> Microsoft Corporation) C:\Users\Anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe
  40. (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
  41. (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
  42. (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
  43. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
  44. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
  45. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
  46. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
  47. (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
  48. (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\MsMpEng.exe
  49. (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1905.4-0\NisSrv.exe
  50. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  51. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  52. (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
  53. (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
  54.  
  55. ==================== Registry (Whitelisted) ===========================
  56.  
  57. (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
  58.  
  59. HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
  60. HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
  61. HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
  62. HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
  63. HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
  64. HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [4810288 2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
  65. HKLM-x32\...\Run: [] => [X]
  66. HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [NetLimiter] => C:\Program Files\Locktime Software\NetLimiter 4\nlclientapp.exe [56368 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
  67. HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [AdobeBridge] => [X]
  68. HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [FACEIT] => C:\Users\Anton\AppData\Local\FACEITApp\update.exe [2203584 2019-02-27] (FACE IT LIMITED -> )
  69. HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Run: [NGenuity] => C:\Program Files (x86)\HyperX\NGenuity\NGenuity.exe [1834040 2019-03-29] (Kingston Technology Company, Inc. -> HyperX NGenuity Software)
  70. HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-21] (Google LLC -> Google Inc.)
  71.  
  72. ==================== Scheduled Tasks (Whitelisted) =============
  73.  
  74. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  75.  
  76. Task: {0D487240-FFD8-4EC1-A4D3-CDA46B6E57F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  77. Task: {196AC704-77C7-468A-8DFA-EB77E6E4776F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-17] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  78. Task: {1EB8D3C0-AAC6-4991-A35D-4E963D870858} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-02-17] (Google Inc -> Google Inc.)
  79. Task: {4755F6CD-C839-434E-BCA8-6D86B3A19B7E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  80. Task: {5D0DD262-2B79-4F7F-B407-0755B789AECD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-02-17] (Google Inc -> Google Inc.)
  81. Task: {80F3B49F-F477-4B66-A897-8152348BF66F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  82. Task: {A6FE5FCB-C95F-4D1E-BA6A-F2F4476230BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MpCmdRun.exe [469960 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  83. Task: {B5E190DF-F6DF-4982-99F5-0DFEB0359A5C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
  84. Task: {F8306F40-E44A-4AF4-AC33-0A171BC221C2} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-aclordenador@outlook.es => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
  85.  
  86. (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
  87.  
  88.  
  89. ==================== Internet (Whitelisted) ====================
  90.  
  91. (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
  92.  
  93. Tcpip\Parameters: [DhcpNameServer] 213.60.205.175 213.60.205.173
  94. Tcpip\..\Interfaces\{675e60cd-31f1-488e-b49d-35c3534b8eb0}: [DhcpNameServer] 213.60.205.175 213.60.205.173
  95. Tcpip\..\Interfaces\{a2f1ebbe-5562-4f07-84c5-25b497dfafcd}: [DhcpNameServer] 213.60.205.175 213.60.205.173
  96.  
  97. Internet Explorer:
  98. ==================
  99. BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  100. BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  101. BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  102. BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
  103. BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  104. Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  105. Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
  106. Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
  107. Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
  108. Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
  109. Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2018-06-12] (Microsoft Corporation -> Microsoft Corporation)
  110.  
  111. FireFox:
  112. ========
  113. FF DefaultProfile: gpxvhprb.default
  114. FF ProfilePath: C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\gpxvhprb.default [2019-06-17]
  115. FF NetworkProxy: Mozilla\Firefox\Profiles\gpxvhprb.default -> backup.ftp", "163.172.220.221"
  116. FF Extension: (uBlock) - C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\gpxvhprb.default\Extensions\{2b10c1c8-a11f-4bad-fe9c-1c11e82cac42}.xpi [2019-05-24]
  117. FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
  118. FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-03-25]
  119. FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
  120. FF HKU\S-1-5-21-1345875174-610030667-2080599426-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Anton\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
  121. FF Extension: (Ace Script) - C:\Users\Anton\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
  122. FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
  123. FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -> Adobe Systems)
  124. FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
  125. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
  126. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
  127. FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
  128. FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -> Adobe Systems)
  129. FF Plugin HKU\S-1-5-21-1345875174-610030667-2080599426-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\Anton\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)
  130.  
  131. Chrome:
  132. =======
  133. CHR HomePage: Default -> hxxp://www.google.es/
  134. CHR StartupUrls: Default -> "hxxp://www.google.es/"
  135. CHR Profile: C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default [2019-06-17]
  136. CHR Extension: (Presentaciones) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-17]
  137. CHR Extension: (Documentos) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-17]
  138. CHR Extension: (Google Drive) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-17]
  139. CHR Extension: (YouTube) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-17]
  140. CHR Extension: (uBlock Origin) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-05-24]
  141. CHR Extension: (Adobe Acrobat) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-06-04]
  142. CHR Extension: (Hojas de cálculo) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-17]
  143. CHR Extension: (Documentos de Google sin conexión) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-17]
  144. CHR Extension: (FACEIT Enhancer) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2019-06-16]
  145. CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-17]
  146. CHR Extension: (Gmail) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
  147. CHR Extension: (Chrome Media Router) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23]
  148. CHR HKU\S-1-5-21-1345875174-610030667-2080599426-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
  149. CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
  150.  
  151. ==================== Services (Whitelisted) ====================
  152.  
  153. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  154.  
  155. R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
  156. R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated)
  157. R2 nlsvc; C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe [323632 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
  158. S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
  159. S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
  160. S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
  161. R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  162. R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-04] (Microsoft Windows Publisher -> Microsoft Corporation)
  163. R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
  164. R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
  165.  
  166. ===================== Drivers (Whitelisted) ======================
  167.  
  168. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  169.  
  170. R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [16198008 2019-06-06] (FACE IT LIMITED -> )
  171. R0 nldrv; C:\Windows\System32\drivers\nldrv.sys [142888 2016-12-06] (Locktime Software s.r.o. -> Locktime Software)
  172. R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
  173. R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_21a764822be8dff8\nvlddmkm.sys [20707744 2019-02-08] (NVIDIA Corporation -> NVIDIA Corporation)
  174. R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
  175. R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [605696 2018-09-15] (Microsoft Windows -> Realtek )
  176. S3 RtlWlanu_OldIC; C:\Windows\System32\drivers\rtwlanu_oldIC.sys [3814400 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation )
  177. S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [47496 2019-06-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
  178. R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [337632 2019-06-04] (Microsoft Windows -> Microsoft Corporation)
  179. R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-04] (Microsoft Windows -> Microsoft Corporation)
  180.  
  181. ==================== NetSvcs (Whitelisted) ===================
  182.  
  183. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  184.  
  185.  
  186. ==================== One month (created) ========
  187.  
  188. (If an entry is included in the fixlist, the file/folder will be moved.)
  189.  
  190. 2019-06-17 19:29 - 2019-06-17 19:30 - 000021536 _____ C:\Users\Anton\Desktop\FRST.txt
  191. 2019-06-17 19:29 - 2019-06-17 19:29 - 000000000 ____D C:\FRST
  192. 2019-06-17 19:26 - 2019-06-17 19:26 - 000000000 ____D C:\Users\Anton\Desktop\backups
  193. 2019-06-17 19:07 - 2019-06-17 19:07 - 002418688 _____ (Farbar) C:\Users\Anton\Desktop\FRST64.exe
  194. 2019-06-17 19:05 - 2019-06-17 19:20 - 000000000 ____D C:\Users\Anton\Desktop\malware
  195. 2019-06-17 19:04 - 2019-06-17 19:04 - 000388608 _____ (Trend Micro Inc.) C:\Users\Anton\Desktop\HijackThis.exe
  196. 2019-06-17 19:03 - 2019-06-17 19:03 - 000000000 ___HD C:\OneDriveTemp
  197. 2019-06-17 17:15 - 2019-06-17 17:15 - 002318462 _____ C:\Users\Anton\Downloads\gobernanza.pdf
  198. 2019-06-16 17:35 - 2019-06-16 17:35 - 019368579 _____ C:\Users\Anton\Desktop\TFM.zip
  199. 2019-06-14 14:30 - 2019-06-14 14:30 - 026808320 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
  200. 2019-06-14 14:30 - 2019-06-14 14:30 - 023438336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
  201. 2019-06-14 14:30 - 2019-06-14 14:30 - 022114960 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
  202. 2019-06-14 14:30 - 2019-06-14 14:30 - 020816384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
  203. 2019-06-14 14:30 - 2019-06-14 14:30 - 018999296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
  204. 2019-06-14 14:30 - 2019-06-14 14:30 - 017484800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
  205. 2019-06-14 14:30 - 2019-06-14 14:30 - 015221248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
  206. 2019-06-14 14:30 - 2019-06-14 14:30 - 012869120 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
  207. 2019-06-14 14:30 - 2019-06-14 14:30 - 012162048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
  208. 2019-06-14 14:30 - 2019-06-14 14:30 - 009682744 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
  209. 2019-06-14 14:30 - 2019-06-14 14:30 - 007884288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
  210. 2019-06-14 14:30 - 2019-06-14 14:30 - 007875072 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
  211. 2019-06-14 14:30 - 2019-06-14 14:30 - 007724992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
  212. 2019-06-14 14:30 - 2019-06-14 14:30 - 007687576 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
  213. 2019-06-14 14:30 - 2019-06-14 14:30 - 007645392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
  214. 2019-06-14 14:30 - 2019-06-14 14:30 - 006926336 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
  215. 2019-06-14 14:30 - 2019-06-14 14:30 - 006547144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
  216. 2019-06-14 14:30 - 2019-06-14 14:30 - 006441472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
  217. 2019-06-14 14:30 - 2019-06-14 14:30 - 006309256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
  218. 2019-06-14 14:30 - 2019-06-14 14:30 - 006068224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
  219. 2019-06-14 14:30 - 2019-06-14 14:30 - 005764608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
  220. 2019-06-14 14:30 - 2019-06-14 14:30 - 005588184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
  221. 2019-06-14 14:30 - 2019-06-14 14:30 - 005297152 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
  222. 2019-06-14 14:30 - 2019-06-14 14:30 - 005210904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
  223. 2019-06-14 14:30 - 2019-06-14 14:30 - 005112792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
  224. 2019-06-14 14:30 - 2019-06-14 14:30 - 005086208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
  225. 2019-06-14 14:30 - 2019-06-14 14:30 - 004997096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
  226. 2019-06-14 14:30 - 2019-06-14 14:30 - 004883968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
  227. 2019-06-14 14:30 - 2019-06-14 14:30 - 004661760 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
  228. 2019-06-14 14:30 - 2019-06-14 14:30 - 004627456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
  229. 2019-06-14 14:30 - 2019-06-14 14:30 - 004588544 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
  230. 2019-06-14 14:30 - 2019-06-14 14:30 - 003983872 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
  231. 2019-06-14 14:30 - 2019-06-14 14:30 - 003906560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
  232. 2019-06-14 14:30 - 2019-06-14 14:30 - 003743744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
  233. 2019-06-14 14:30 - 2019-06-14 14:30 - 003637248 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
  234. 2019-06-14 14:30 - 2019-06-14 14:30 - 003426816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
  235. 2019-06-14 14:30 - 2019-06-14 14:30 - 003385344 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
  236. 2019-06-14 14:30 - 2019-06-14 14:30 - 003363640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
  237. 2019-06-14 14:30 - 2019-06-14 14:30 - 003344896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
  238. 2019-06-14 14:30 - 2019-06-14 14:30 - 003270144 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
  239. 2019-06-14 14:30 - 2019-06-14 14:30 - 003091968 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
  240. 2019-06-14 14:30 - 2019-06-14 14:30 - 002999808 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
  241. 2019-06-14 14:30 - 2019-06-14 14:30 - 002928640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
  242. 2019-06-14 14:30 - 2019-06-14 14:30 - 002926096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
  243. 2019-06-14 14:30 - 2019-06-14 14:30 - 002777736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
  244. 2019-06-14 14:30 - 2019-06-14 14:30 - 002707968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
  245. 2019-06-14 14:30 - 2019-06-14 14:30 - 002690048 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
  246. 2019-06-14 14:30 - 2019-06-14 14:30 - 002653696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
  247. 2019-06-14 14:30 - 2019-06-14 14:30 - 002638336 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
  248. 2019-06-14 14:30 - 2019-06-14 14:30 - 002627600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
  249. 2019-06-14 14:30 - 2019-06-14 14:30 - 002469440 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
  250. 2019-06-14 14:30 - 2019-06-14 14:30 - 002422272 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
  251. 2019-06-14 14:30 - 2019-06-14 14:30 - 002323696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
  252. 2019-06-14 14:30 - 2019-06-14 14:30 - 002276192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
  253. 2019-06-14 14:30 - 2019-06-14 14:30 - 002189312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
  254. 2019-06-14 14:30 - 2019-06-14 14:30 - 002096128 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
  255. 2019-06-14 14:30 - 2019-06-14 14:30 - 002085168 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
  256. 2019-06-14 14:30 - 2019-06-14 14:30 - 002017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
  257. 2019-06-14 14:30 - 2019-06-14 14:30 - 001929216 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
  258. 2019-06-14 14:30 - 2019-06-14 14:30 - 001903616 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
  259. 2019-06-14 14:30 - 2019-06-14 14:30 - 001899160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
  260. 2019-06-14 14:30 - 2019-06-14 14:30 - 001860608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
  261. 2019-06-14 14:30 - 2019-06-14 14:30 - 001860096 ____R (The ICU Project) C:\Windows\system32\icuin.dll
  262. 2019-06-14 14:30 - 2019-06-14 14:30 - 001761280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
  263. 2019-06-14 14:30 - 2019-06-14 14:30 - 001750016 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
  264. 2019-06-14 14:30 - 2019-06-14 14:30 - 001701888 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
  265. 2019-06-14 14:30 - 2019-06-14 14:30 - 001700312 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
  266. 2019-06-14 14:30 - 2019-06-14 14:30 - 001670840 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
  267. 2019-06-14 14:30 - 2019-06-14 14:30 - 001644544 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
  268. 2019-06-14 14:30 - 2019-06-14 14:30 - 001618944 ____R (The ICU Project) C:\Windows\SysWOW64\icuin.dll
  269. 2019-06-14 14:30 - 2019-06-14 14:30 - 001616384 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
  270. 2019-06-14 14:30 - 2019-06-14 14:30 - 001605120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
  271. 2019-06-14 14:30 - 2019-06-14 14:30 - 001485312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
  272. 2019-06-14 14:30 - 2019-06-14 14:30 - 001483872 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
  273. 2019-06-14 14:30 - 2019-06-14 14:30 - 001471040 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
  274. 2019-06-14 14:30 - 2019-06-14 14:30 - 001466496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
  275. 2019-06-14 14:30 - 2019-06-14 14:30 - 001462272 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
  276. 2019-06-14 14:30 - 2019-06-14 14:30 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
  277. 2019-06-14 14:30 - 2019-06-14 14:30 - 001342904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
  278. 2019-06-14 14:30 - 2019-06-14 14:30 - 001331536 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
  279. 2019-06-14 14:30 - 2019-06-14 14:30 - 001315328 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
  280. 2019-06-14 14:30 - 2019-06-14 14:30 - 001313792 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
  281. 2019-06-14 14:30 - 2019-06-14 14:30 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
  282. 2019-06-14 14:30 - 2019-06-14 14:30 - 001309696 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
  283. 2019-06-14 14:30 - 2019-06-14 14:30 - 001298952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
  284. 2019-06-14 14:30 - 2019-06-14 14:30 - 001260048 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
  285. 2019-06-14 14:30 - 2019-06-14 14:30 - 001256448 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
  286. 2019-06-14 14:30 - 2019-06-14 14:30 - 001255936 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
  287. 2019-06-14 14:30 - 2019-06-14 14:30 - 001254912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
  288. 2019-06-14 14:30 - 2019-06-14 14:30 - 001253688 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
  289. 2019-06-14 14:30 - 2019-06-14 14:30 - 001229824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
  290. 2019-06-14 14:30 - 2019-06-14 14:30 - 001223168 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll
  291. 2019-06-14 14:30 - 2019-06-14 14:30 - 001219424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryPS.dll
  292. 2019-06-14 14:30 - 2019-06-14 14:30 - 001180184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
  293. 2019-06-14 14:30 - 2019-06-14 14:30 - 001098136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
  294. 2019-06-14 14:30 - 2019-06-14 14:30 - 001072640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
  295. 2019-06-14 14:30 - 2019-06-14 14:30 - 001054712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
  296. 2019-06-14 14:30 - 2019-06-14 14:30 - 001048592 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
  297. 2019-06-14 14:30 - 2019-06-14 14:30 - 001032704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
  298. 2019-06-14 14:30 - 2019-06-14 14:30 - 001005056 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
  299. 2019-06-14 14:30 - 2019-06-14 14:30 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
  300. 2019-06-14 14:30 - 2019-06-14 14:30 - 000998912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
  301. 2019-06-14 14:30 - 2019-06-14 14:30 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
  302. 2019-06-14 14:30 - 2019-06-14 14:30 - 000971776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
  303. 2019-06-14 14:30 - 2019-06-14 14:30 - 000927744 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll
  304. 2019-06-14 14:30 - 2019-06-14 14:30 - 000924160 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
  305. 2019-06-14 14:30 - 2019-06-14 14:30 - 000912384 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
  306. 2019-06-14 14:30 - 2019-06-14 14:30 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
  307. 2019-06-14 14:30 - 2019-06-14 14:30 - 000887808 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
  308. 2019-06-14 14:30 - 2019-06-14 14:30 - 000872448 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
  309. 2019-06-14 14:30 - 2019-06-14 14:30 - 000863544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
  310. 2019-06-14 14:30 - 2019-06-14 14:30 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
  311. 2019-06-14 14:30 - 2019-06-14 14:30 - 000850760 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
  312. 2019-06-14 14:30 - 2019-06-14 14:30 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
  313. 2019-06-14 14:30 - 2019-06-14 14:30 - 000804352 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
  314. 2019-06-14 14:30 - 2019-06-14 14:30 - 000791040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
  315. 2019-06-14 14:30 - 2019-06-14 14:30 - 000787456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
  316. 2019-06-14 14:30 - 2019-06-14 14:30 - 000773632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
  317. 2019-06-14 14:30 - 2019-06-14 14:30 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
  318. 2019-06-14 14:30 - 2019-06-14 14:30 - 000758688 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
  319. 2019-06-14 14:30 - 2019-06-14 14:30 - 000756736 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
  320. 2019-06-14 14:30 - 2019-06-14 14:30 - 000752144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
  321. 2019-06-14 14:30 - 2019-06-14 14:30 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
  322. 2019-06-14 14:30 - 2019-06-14 14:30 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
  323. 2019-06-14 14:30 - 2019-06-14 14:30 - 000730592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
  324. 2019-06-14 14:30 - 2019-06-14 14:30 - 000699392 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
  325. 2019-06-14 14:30 - 2019-06-14 14:30 - 000692736 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
  326. 2019-06-14 14:30 - 2019-06-14 14:30 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
  327. 2019-06-14 14:30 - 2019-06-14 14:30 - 000676048 _____ (Microsoft Corporation) C:\Windows\system32\StateRepository.Core.dll
  328. 2019-06-14 14:30 - 2019-06-14 14:30 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
  329. 2019-06-14 14:30 - 2019-06-14 14:30 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
  330. 2019-06-14 14:30 - 2019-06-14 14:30 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
  331. 2019-06-14 14:30 - 2019-06-14 14:30 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
  332. 2019-06-14 14:30 - 2019-06-14 14:30 - 000651576 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
  333. 2019-06-14 14:30 - 2019-06-14 14:30 - 000651064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
  334. 2019-06-14 14:30 - 2019-06-14 14:30 - 000618496 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll
  335. 2019-06-14 14:30 - 2019-06-14 14:30 - 000615440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
  336. 2019-06-14 14:30 - 2019-06-14 14:30 - 000604344 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
  337. 2019-06-14 14:30 - 2019-06-14 14:30 - 000594944 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
  338. 2019-06-14 14:30 - 2019-06-14 14:30 - 000586040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
  339. 2019-06-14 14:30 - 2019-06-14 14:30 - 000570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
  340. 2019-06-14 14:30 - 2019-06-14 14:30 - 000555232 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
  341. 2019-06-14 14:30 - 2019-06-14 14:30 - 000553664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryPS.dll
  342. 2019-06-14 14:30 - 2019-06-14 14:30 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
  343. 2019-06-14 14:30 - 2019-06-14 14:30 - 000540720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StateRepository.Core.dll
  344. 2019-06-14 14:30 - 2019-06-14 14:30 - 000532992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
  345. 2019-06-14 14:30 - 2019-06-14 14:30 - 000531968 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
  346. 2019-06-14 14:30 - 2019-06-14 14:30 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
  347. 2019-06-14 14:30 - 2019-06-14 14:30 - 000515152 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
  348. 2019-06-14 14:30 - 2019-06-14 14:30 - 000513904 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
  349. 2019-06-14 14:30 - 2019-06-14 14:30 - 000506192 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
  350. 2019-06-14 14:30 - 2019-06-14 14:30 - 000496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
  351. 2019-06-14 14:30 - 2019-06-14 14:30 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll
  352. 2019-06-14 14:30 - 2019-06-14 14:30 - 000478720 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
  353. 2019-06-14 14:30 - 2019-06-14 14:30 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
  354. 2019-06-14 14:30 - 2019-06-14 14:30 - 000474936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
  355. 2019-06-14 14:30 - 2019-06-14 14:30 - 000462136 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
  356. 2019-06-14 14:30 - 2019-06-14 14:30 - 000451104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
  357. 2019-06-14 14:30 - 2019-06-14 14:30 - 000430904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
  358. 2019-06-14 14:30 - 2019-06-14 14:30 - 000427688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
  359. 2019-06-14 14:30 - 2019-06-14 14:30 - 000424960 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll
  360. 2019-06-14 14:30 - 2019-06-14 14:30 - 000419368 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
  361. 2019-06-14 14:30 - 2019-06-14 14:30 - 000404792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
  362. 2019-06-14 14:30 - 2019-06-14 14:30 - 000398848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
  363. 2019-06-14 14:30 - 2019-06-14 14:30 - 000398208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
  364. 2019-06-14 14:30 - 2019-06-14 14:30 - 000389120 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll
  365. 2019-06-14 14:30 - 2019-06-14 14:30 - 000386576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
  366. 2019-06-14 14:30 - 2019-06-14 14:30 - 000375544 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
  367. 2019-06-14 14:30 - 2019-06-14 14:30 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
  368. 2019-06-14 14:30 - 2019-06-14 14:30 - 000370688 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
  369. 2019-06-14 14:30 - 2019-06-14 14:30 - 000365056 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
  370. 2019-06-14 14:30 - 2019-06-14 14:30 - 000362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
  371. 2019-06-14 14:30 - 2019-06-14 14:30 - 000359936 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
  372. 2019-06-14 14:30 - 2019-06-14 14:30 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
  373. 2019-06-14 14:30 - 2019-06-14 14:30 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
  374. 2019-06-14 14:30 - 2019-06-14 14:30 - 000351232 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
  375. 2019-06-14 14:30 - 2019-06-14 14:30 - 000345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
  376. 2019-06-14 14:30 - 2019-06-14 14:30 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
  377. 2019-06-14 14:30 - 2019-06-14 14:30 - 000340480 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
  378. 2019-06-14 14:30 - 2019-06-14 14:30 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
  379. 2019-06-14 14:30 - 2019-06-14 14:30 - 000311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
  380. 2019-06-14 14:30 - 2019-06-14 14:30 - 000292664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
  381. 2019-06-14 14:30 - 2019-06-14 14:30 - 000287912 _____ (Microsoft Corporation) C:\Windows\system32\SIHClient.exe
  382. 2019-06-14 14:30 - 2019-06-14 14:30 - 000282424 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
  383. 2019-06-14 14:30 - 2019-06-14 14:30 - 000280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
  384. 2019-06-14 14:30 - 2019-06-14 14:30 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
  385. 2019-06-14 14:30 - 2019-06-14 14:30 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
  386. 2019-06-14 14:30 - 2019-06-14 14:30 - 000262160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
  387. 2019-06-14 14:30 - 2019-06-14 14:30 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
  388. 2019-06-14 14:30 - 2019-06-14 14:30 - 000247608 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
  389. 2019-06-14 14:30 - 2019-06-14 14:30 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
  390. 2019-06-14 14:30 - 2019-06-14 14:30 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
  391. 2019-06-14 14:30 - 2019-06-14 14:30 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
  392. 2019-06-14 14:30 - 2019-06-14 14:30 - 000240128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
  393. 2019-06-14 14:30 - 2019-06-14 14:30 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
  394. 2019-06-14 14:30 - 2019-06-14 14:30 - 000228352 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
  395. 2019-06-14 14:30 - 2019-06-14 14:30 - 000218624 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
  396. 2019-06-14 14:30 - 2019-06-14 14:30 - 000201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
  397. 2019-06-14 14:30 - 2019-06-14 14:30 - 000196920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
  398. 2019-06-14 14:30 - 2019-06-14 14:30 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryUpgrade.dll
  399. 2019-06-14 14:30 - 2019-06-14 14:30 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll
  400. 2019-06-14 14:30 - 2019-06-14 14:30 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
  401. 2019-06-14 14:30 - 2019-06-14 14:30 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
  402. 2019-06-14 14:30 - 2019-06-14 14:30 - 000165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll
  403. 2019-06-14 14:30 - 2019-06-14 14:30 - 000165376 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSrv.exe
  404. 2019-06-14 14:30 - 2019-06-14 14:30 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
  405. 2019-06-14 14:30 - 2019-06-14 14:30 - 000156984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
  406. 2019-06-14 14:30 - 2019-06-14 14:30 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
  407. 2019-06-14 14:30 - 2019-06-14 14:30 - 000152896 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
  408. 2019-06-14 14:30 - 2019-06-14 14:30 - 000152400 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
  409. 2019-06-14 14:30 - 2019-06-14 14:30 - 000137056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
  410. 2019-06-14 14:30 - 2019-06-14 14:30 - 000125528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
  411. 2019-06-14 14:30 - 2019-06-14 14:30 - 000122680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
  412. 2019-06-14 14:30 - 2019-06-14 14:30 - 000114648 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
  413. 2019-06-14 14:30 - 2019-06-14 14:30 - 000111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
  414. 2019-06-14 14:30 - 2019-06-14 14:30 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
  415. 2019-06-14 14:30 - 2019-06-14 14:30 - 000101176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
  416. 2019-06-14 14:30 - 2019-06-14 14:30 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\BingFilterDS.dll
  417. 2019-06-14 14:30 - 2019-06-14 14:30 - 000091424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
  418. 2019-06-14 14:30 - 2019-06-14 14:30 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
  419. 2019-06-14 14:30 - 2019-06-14 14:30 - 000090424 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
  420. 2019-06-14 14:30 - 2019-06-14 14:30 - 000087864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll
  421. 2019-06-14 14:30 - 2019-06-14 14:30 - 000080400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
  422. 2019-06-14 14:30 - 2019-06-14 14:30 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe
  423. 2019-06-14 14:30 - 2019-06-14 14:30 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
  424. 2019-06-14 14:30 - 2019-06-14 14:30 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
  425. 2019-06-14 14:30 - 2019-06-14 14:30 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerUI.dll
  426. 2019-06-14 14:30 - 2019-06-14 14:30 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
  427. 2019-06-14 14:30 - 2019-06-14 14:30 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessRuntime.dll
  428. 2019-06-14 14:30 - 2019-06-14 14:30 - 000051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerUI.dll
  429. 2019-06-14 14:30 - 2019-06-14 14:30 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
  430. 2019-06-14 14:30 - 2019-06-14 14:30 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AssignedAccessRuntime.dll
  431. 2019-06-14 14:30 - 2019-06-14 14:30 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
  432. 2019-06-14 14:30 - 2019-06-14 14:30 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryCore.dll
  433. 2019-06-14 14:30 - 2019-06-14 14:30 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
  434. 2019-06-14 14:30 - 2019-06-14 14:30 - 000031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryCore.dll
  435. 2019-06-14 14:30 - 2019-06-14 14:30 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
  436. 2019-06-14 14:30 - 2019-06-14 14:30 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
  437. 2019-06-14 14:30 - 2019-06-14 14:30 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
  438. 2019-06-14 14:30 - 2019-06-14 14:30 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
  439. 2019-06-14 14:30 - 2019-06-14 14:30 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
  440. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
  441. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
  442. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
  443. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
  444. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
  445. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
  446. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
  447. 2019-06-14 14:30 - 2019-06-14 14:30 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
  448. 2019-06-12 18:01 - 2019-06-12 18:01 - 001993528 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
  449. 2019-06-10 18:57 - 2019-06-10 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HyperX
  450. 2019-06-10 18:56 - 2019-06-10 18:58 - 000000000 ____D C:\Users\Anton\AppData\Roaming\HyperX
  451. 2019-06-10 18:56 - 2019-06-10 18:57 - 002259831 _____ C:\Windows\unins000.dat
  452. 2019-06-10 18:56 - 2019-06-10 18:56 - 000000000 ____D C:\Program Files (x86)\HyperX
  453. 2019-06-10 18:56 - 2019-06-10 18:55 - 001209047 _____ C:\Windows\unins000.exe
  454. 2019-06-07 13:42 - 2019-06-07 13:42 - 000000000 ____D C:\Users\Anton\Desktop\2019.06.07.RPT IET.MX
  455. 2019-06-07 12:51 - 2019-06-07 12:51 - 000689673 _____ C:\Users\Anton\Downloads\20190521_Resolución_Resolución Aprobación Bases contratación Encargada Oficina Turismo. Subvención Axencia Turismo de Galicia 2019.pdf
  456. 2019-06-06 20:00 - 2019-06-10 18:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
  457. 2019-06-05 13:36 - 2019-06-05 13:36 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
  458. 2019-06-05 13:36 - 2019-06-05 13:36 - 000003718 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-aclordenador@outlook.es
  459. 2019-06-05 13:35 - 2019-06-05 13:35 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
  460. 2019-06-05 13:35 - 2019-06-05 13:35 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
  461. 2019-06-04 18:03 - 2019-06-04 18:03 - 000000040 ____H C:\EFC109E9F1AC
  462. 2019-05-24 15:34 - 2019-06-16 17:29 - 000000000 ____D C:\Users\Anton\AppData\Roaming\78476be7698c40dff8d0b4242220ff66
  463. 2019-05-24 15:34 - 2019-05-24 15:34 - 000000000 ____D C:\ProgramData\b3a97a8a
  464. 2019-05-24 15:34 - 2019-05-24 15:29 - 001805671 _____ C:\Users\Anton\Downloads\Adobe_Acrobat_Pro_DC_v_2015.vbe
  465. 2019-05-24 15:33 - 2019-05-24 15:33 - 001133568 _____ C:\Users\Anton\Downloads\Adobe_Acrobat_Pro_DC_v_2015.zip
  466. 2019-05-24 15:33 - 2019-05-24 15:33 - 000014963 _____ C:\Users\Anton\Downloads\Adobe.Acrobat.Pro.X.v10.torrent
  467.  
  468. ==================== One month (modified) ========
  469.  
  470. (If an entry is included in the fixlist, the file/folder will be moved.)
  471.  
  472. 2019-06-17 19:13 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
  473. 2019-06-17 19:08 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Local\VirtualStore
  474. 2019-06-17 19:03 - 2019-02-20 22:26 - 000000000 ____D C:\Users\Anton\Desktop\CS
  475. 2019-06-17 19:03 - 2019-02-17 00:19 - 000000000 ___RD C:\Users\Anton\OneDrive
  476. 2019-06-17 19:02 - 2019-02-17 00:26 - 000000000 ____D C:\ProgramData\NVIDIA
  477. 2019-06-17 19:01 - 2019-02-17 04:22 - 000000000 ____D C:\Users\Anton\AppData\Local\Spotify
  478. 2019-06-17 18:59 - 2019-02-17 07:11 - 000000000 ____D C:\Windows\system32\SleepStudy
  479. 2019-06-17 18:40 - 2019-02-18 15:35 - 000000000 ____D C:\Users\Anton\AppData\Roaming\WhatsApp
  480. 2019-06-17 17:17 - 2019-02-17 04:20 - 000000000 ____D C:\Users\Anton\AppData\Roaming\Spotify
  481. 2019-06-17 12:18 - 2019-02-17 00:44 - 000000000 ____D C:\Users\Anton\AppData\LocalLow\Mozilla
  482. 2019-06-17 11:52 - 2019-02-17 00:14 - 001684176 _____ C:\Windows\system32\PerfStringBackup.INI
  483. 2019-06-17 11:52 - 2018-09-15 18:37 - 000752322 _____ C:\Windows\system32\perfh00A.dat
  484. 2019-06-17 11:52 - 2018-09-15 18:37 - 000147902 _____ C:\Windows\system32\perfc00A.dat
  485. 2019-06-17 11:52 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF
  486. 2019-06-17 11:47 - 2019-02-17 07:11 - 000000006 ____H C:\Windows\Tasks\SA.DAT
  487. 2019-06-17 11:47 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
  488. 2019-06-17 01:13 - 2019-02-17 04:32 - 000000000 ____D C:\Users\Anton\AppData\Roaming\TS3Client
  489. 2019-06-17 01:13 - 2019-02-17 00:38 - 000000000 ____D C:\Program Files (x86)\Steam
  490. 2019-06-16 17:37 - 2019-02-18 14:32 - 000000000 ____D C:\Users\Anton\OneDrive\Documentos\DOUTORADO
  491. 2019-06-16 17:31 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
  492. 2019-06-16 17:31 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
  493. 2019-06-15 04:44 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\NDF
  494. 2019-06-14 21:47 - 2019-02-17 07:11 - 004963272 _____ C:\Windows\system32\FNTCACHE.DAT
  495. 2019-06-14 21:47 - 2019-02-17 00:17 - 000000000 __RHD C:\Users\Public\AccountPictures
  496. 2019-06-14 21:47 - 2019-02-17 00:17 - 000000000 ___RD C:\Users\Anton\3D Objects
  497. 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ___RD C:\Program Files\Windows Defender
  498. 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\migwiz
  499. 2019-06-14 17:33 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\bcastdvr
  500. 2019-06-14 14:30 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
  501. 2019-06-12 22:36 - 2019-02-17 00:35 - 000000000 ____D C:\Users\Anton\AppData\Roaming\.ACEStream
  502. 2019-06-12 22:33 - 2019-02-17 00:36 - 000000000 ___HD C:\_acestream_cache_
  503. 2019-06-12 18:02 - 2019-02-17 00:40 - 000000000 ____D C:\Windows\system32\MRT
  504. 2019-06-12 18:01 - 2019-02-17 00:40 - 135349160 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
  505. 2019-06-11 23:03 - 2019-02-17 00:19 - 000003378 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1345875174-610030667-2080599426-1001
  506. 2019-06-11 23:03 - 2019-02-17 00:17 - 000002397 _____ C:\Users\Anton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
  507. 2019-06-10 18:57 - 2019-02-17 12:54 - 000000000 ____D C:\Users\Anton\Programas
  508. 2019-06-10 18:57 - 2019-02-17 00:28 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
  509. 2019-06-10 15:55 - 2019-02-17 00:28 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
  510. 2019-06-07 13:48 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Local\Packages
  511. 2019-06-06 19:12 - 2019-04-09 01:03 - 016198008 _____ C:\Windows\system32\Drivers\FACEIT.sys
  512. 2019-06-04 23:34 - 2019-02-18 15:35 - 000000000 ____D C:\Users\Anton\AppData\Local\WhatsApp
  513. 2019-06-04 19:11 - 2019-02-17 07:11 - 000000000 ____D C:\Windows\system32\Drivers\wd
  514. 2019-06-04 18:24 - 2019-02-17 00:37 - 000000000 ____D C:\Users\Anton\AppData\Roaming\qBittorrent
  515. 2019-06-04 18:23 - 2019-02-17 00:17 - 000000000 ____D C:\Users\Anton\AppData\Roaming\Adobe
  516. 2019-06-04 18:22 - 2019-02-17 15:42 - 000000000 ____D C:\Users\Anton\AppData\LocalLow\Adobe
  517. 2019-06-04 18:03 - 2019-02-17 15:59 - 000000000 ____D C:\Program Files (x86)\Adobe
  518. 2019-06-04 18:03 - 2019-02-17 15:40 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
  519. 2019-06-04 18:02 - 2019-02-17 00:26 - 000000000 ____D C:\ProgramData\Package Cache
  520. 2019-06-04 17:54 - 2019-02-17 15:39 - 000000000 ____D C:\ProgramData\Adobe
  521. 2019-06-04 12:22 - 2019-02-17 00:37 - 000000000 ____D C:\Users\Anton\Downloads\torrents
  522. 2019-06-04 00:26 - 2019-04-09 01:02 - 000000000 ____D C:\Program Files\FACEIT AC
  523. 2019-05-31 20:03 - 2018-09-15 09:36 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
  524. 2019-05-31 20:03 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
  525. 2019-05-30 01:05 - 2019-02-17 00:34 - 000000000 ____D C:\ProgramData\Packages
  526. 2019-05-21 21:26 - 2019-02-17 00:37 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  527.  
  528. ==================== Files in the root of some directories ================
  529.  
  530. 2019-06-05 13:37 - 2019-06-05 13:37 - 000000000 _____ () C:\Users\Anton\AppData\Local\oobelibMkey.log
  531.  
  532. ==================== FLock ================
  533.  
  534. 2019-02-17 00:13 C:\Windows\CSC
  535.  
  536. ==================== SigCheck ===============================
  537.  
  538. (There is no automatic fix for files that do not pass verification.)
  539.  
  540. ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement