• Registrarse
  • Iniciar sesión


  • Página 2 de 8 PrimeroPrimero 123456 ... ÚltimoÚltimo
    Resultados 11 al 20 de 78

    Virus $Reclycer.Bin y System Volume Information

    ...

    1. #11
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      -- General Information --

      Application Information
      -------------------------
      Installed Version . . . . . . . . . . . . . . . : Hard Disk Sentinel 4.71 PRO
      Registered To . . . . . . . . . . . . . . . . . : Unregistered version, please register.
      Current Date And Time . . . . . . . . . . . . . : 29-02-2016 14:23:04
      Health Calculation Method . . . . . . . . . . . : Analyse data field (default)

      Computer Information
      ----------------------
      Computer Name . . . . . . . . . . . . . . . . . : Re
      User Name . . . . . . . . . . . . . . . . . . . : RenH
      Computer Type . . . . . . . . . . . . . . . . . : Mobile
      IP Address . . . . . . . . . . . . . . . . . . . : 192.168.1.36
      MAC Address . . . . . . . . . . . . . . . . . . : 50-B7-C3-0F-E0-A8
      System Uptime . . . . . . . . . . . . . . . . . : 0 days, 2 hours, 23 minutes, 23 seconds
      System Idle Time . . . . . . . . . . . . . . . . : 0 days, 0 hours, 0 minutes, 0 seconds
      System Up Since . . . . . . . . . . . . . . . . : 29-02-2016 11:59:41
      CPU Usage . . . . . . . . . . . . . . . . . . . : CPU #1: 6 %, CPU #2: 3 %, CPU #3: 9 %, CPU #4: 6 %
      Virtual Memory . . . . . . . . . . . . . . . . . : 12685 MB, Used: 2181 MB (17 %)

      System Information
      --------------------
      Windows Version . . . . . . . . . . . . . . . . : Windows 8 Enterprise Evaluation
      CPU Type & Speed #1 . . . . . . . . . . . . . . : Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz, 2594 MHz
      CPU Type & Speed #2 . . . . . . . . . . . . . . : Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz, 2594 MHz
      CPU Type & Speed #3 . . . . . . . . . . . . . . : Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz, 2594 MHz
      CPU Type & Speed #4 . . . . . . . . . . . . . . : Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz, 2594 MHz
      BIOS Manufacturer . . . . . . . . . . . . . . . : SECCSD - 1072009 AMIBIOS Version P15RAN.208.140429.ZW BIOS Date: 04/29/14 15:16:03 Ver: 04.06.05 BIOS Date: 04/29/14 15:16:03 Ver: 04.06.05
      Physical Memory Size . . . . . . . . . . . . . . : 8078 MB, Used: 1872 MB (23 %)
      Display Adapter . . . . . . . . . . . . . . . . : Intel(R) HD Graphics 4000
      Display Resolution . . . . . . . . . . . . . . . : 1366 x 768 (32 bit)
      Printer #1 . . . . . . . . . . . . . . . . . . . : Fax
      Printer #2 . . . . . . . . . . . . . . . . . . . : Microsoft XPS Document Writer
      Network Controller . . . . . . . . . . . . . . . : Controladora Realtek PCIe GBE Family
      Optical Drive

      PCI Device Information
      ------------------------
      PCI Bus 0; Device 1; Function 0 . . . . . . . . : Xeon(R) processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151
      Bus PCI 0; Dispositivo 2; Función 0 . . . . . . : Intel(R) HD Graphics 4000
      PCI Bus 0; Device 20; Function 0 . . . . . . . . : %1 USB 3.0 eXtensible Host Controller - %2 (Microsoft)
      ;(Intel(R),0100)
      Bus PCI 0; Dispositivo 22; Función 0 . . . . . . : Intel(R) Management Engine Interface
      PCI Bus 0; Device 26; Function 0 . . . . . . . . : Standard Enhanced PCI to USB Host Controller
      PCI Bus 0; Device 27; Function 0 . . . . . . . . : High Definition Audio Controller
      PCI Bus 0; Device 28; Function 0 . . . . . . . . : Intel(R) 7 Series/C216 Chipset Family PCI Express Root Port 1 - 1E10
      PCI Bus 0; Device 28; Function 3 . . . . . . . . : Intel(R) 7 Series/C216 Chipset Family PCI Express Root Port 4 - 1E16
      PCI Bus 0; Device 29; Function 0 . . . . . . . . : Standard Enhanced PCI to USB Host Controller
      PCI Bus 0; Device 31; Function 2 . . . . . . . . : Standard SATA AHCI Controller
      PCI Bus 3; Device 0; Function 0 . . . . . . . . : Controladora Realtek PCIe GBE Family



      -- Physical Disk Information - Disk: #0: ST1000LM024 HN-M101MBB --

      Hard Disk Summary
      -------------------
      Hard Disk Number . . . . . . . . . . . . . . . . : 0
      Interface . . . . . . . . . . . . . . . . . . . : S-ATA II
      Disk Controller . . . . . . . . . . . . . . . . : Controladora SATA AHCI estándar (AHCI) [VEN: 8086, DEV: 1E03] Version: 6.2.9200.16384, 6-21-2006
      Disk Location . . . . . . . . . . . . . . . . . : Bus Number 0, Target Id 0, LUN 0
      Hard Disk Model ID . . . . . . . . . . . . . . . : ST1000LM024 HN-M101MBB
      Firmware Revision . . . . . . . . . . . . . . . : 2AR10002
      Hard Disk Serial Number . . . . . . . . . . . . : S2RQJ9FD506085
      Total Size . . . . . . . . . . . . . . . . . . . : 953867 MB
      Power State . . . . . . . . . . . . . . . . . . : Active
      Logical Drive(s) . . . . . . . . . . . . . . . . : C: []
      Current Temperature . . . . . . . . . . . . . . : 42 °C
      Power On Time . . . . . . . . . . . . . . . . . : 596 days, 11 hours
      Estimated Remaining Lifetime . . . . . . . . . . : more than 1000 days
      Health . . . . . . . . . . . . . . . . . . . . . : #################### 100 % (Excellent)
      Performance . . . . . . . . . . . . . . . . . . : #################### 100 % (Excellent)

      The hard disk status is PERFECT. Problematic or weak sectors were not found and there are no spin up or data transfer errors.
      No actions needed.

      ATA Information
      -----------------
      Hard Disk Cylinders . . . . . . . . . . . . . . : 1938021
      Hard Disk Heads . . . . . . . . . . . . . . . . : 16
      Hard Disk Sectors . . . . . . . . . . . . . . . : 63
      ATA Revision . . . . . . . . . . . . . . . . . . : ATA8-ACS version 6
      Transport Version . . . . . . . . . . . . . . . : SATA Rev 2.6
      Total Sectors . . . . . . . . . . . . . . . . . : 244190646
      Bytes Per Sector . . . . . . . . . . . . . . . . : 4096 [Advanced Format]
      Buffer Size . . . . . . . . . . . . . . . . . . : 8192 KB
      Multiple Sectors . . . . . . . . . . . . . . . . : 16
      Error Correction Bytes . . . . . . . . . . . . . : 4
      Unformatted Capacity . . . . . . . . . . . . . . : 953870 MB
      Maximum PIO Mode . . . . . . . . . . . . . . . . : 4
      Maximum Multiword DMA Mode . . . . . . . . . . . : 2
      Highest Possible Transfer Rate . . . . . . . . . : S-ATA II Signaling Speed (3 Gps)
      Negotiated Transfer Rate . . . . . . . . . . . . : S-ATA II Signaling Speed (3 Gps)
      Minimum Multiword DMA Transfer Time . . . . . . : 120 ns
      Recommended Multiword DMA Transfer Time . . . . : 120 ns
      Minimum PIO Transfer Time Without IORDY . . . . : 120 ns
      Minimum PIO Transfer Time With IORDY . . . . . . : 120 ns
      ATA Control Byte . . . . . . . . . . . . . . . . : Valid
      ATA Checksum Value . . . . . . . . . . . . . . . : Valid

      Acoustic Management Configuration
      -----------------------------------
      Acoustic Management . . . . . . . . . . . . . . : Supported
      Acoustic Management . . . . . . . . . . . . . . : Enabled
      Current Acoustic Level . . . . . . . . . . . . . : Min performance and volume (80h)
      Recommended Acoustic Level . . . . . . . . . . . : Max performance and volume (FEh)

      ATA Features
      --------------
      Read Ahead Buffer . . . . . . . . . . . . . . . : Supported, Enabled
      DMA . . . . . . . . . . . . . . . . . . . . . . : Supported
      Ultra DMA . . . . . . . . . . . . . . . . . . . : Supported
      S.M.A.R.T. . . . . . . . . . . . . . . . . . . . : Supported
      Power Management . . . . . . . . . . . . . . . . : Supported
      Write Cache . . . . . . . . . . . . . . . . . . : Supported
      Host Protected Area . . . . . . . . . . . . . . : Supported
      Advanced Power Management . . . . . . . . . . . : Supported, Disabled
      Extended Power Management . . . . . . . . . . . : Not supported
      Power Up In Standby . . . . . . . . . . . . . . : Supported
      48-Bit LBA Addressing . . . . . . . . . . . . . : Supported
      Device Configuration Overlay . . . . . . . . . . : Supported
      IORDY Support . . . . . . . . . . . . . . . . . : Supported
      Read/Write DMA Queue . . . . . . . . . . . . . . : Not supported
      NOP Command . . . . . . . . . . . . . . . . . . : Supported
      Trusted Computing . . . . . . . . . . . . . . . : Not supported
      64-Bit World Wide ID . . . . . . . . . . . . . . : 0050F24C440A0348
      Streaming . . . . . . . . . . . . . . . . . . . : Not supported
      Media Card Pass Through . . . . . . . . . . . . : Not supported
      General Purpose Logging . . . . . . . . . . . . : Supported
      Error Logging . . . . . . . . . . . . . . . . . : Supported
      CFA Feature Set . . . . . . . . . . . . . . . . : Not supported
      CFast Device . . . . . . . . . . . . . . . . . . : Not supported
      Long Physical Sectors (8) . . . . . . . . . . . : Supported
      Long Logical Sectors . . . . . . . . . . . . . . : Not supported
      Write-Read-Verify . . . . . . . . . . . . . . . : Not supported
      NV Cache Feature . . . . . . . . . . . . . . . . : Not supported
      NV Cache Power Mode . . . . . . . . . . . . . . : Not supported
      NV Cache Size . . . . . . . . . . . . . . . . . : Not supported
      Free-fall Control . . . . . . . . . . . . . . . : Not supported
      Free-fall Control Sensitivity . . . . . . . . . : Not supported
      Nominal Media Rotation Rate . . . . . . . . . . : 5400 RPM

      SSD Features
      --------------
      Data Set Management . . . . . . . . . . . . . . : Not supported
      TRIM Command . . . . . . . . . . . . . . . . . . : Not supported
      Deterministic Read After TRIM . . . . . . . . . : Not supported

      S.M.A.R.T. Details
      --------------------
      Off-line Data Collection Status . . . . . . . . : Never Started
      Self Test Execution Status . . . . . . . . . . . : Successfully Completed
      Total Time To Complete Off-line Data Collection : 13320 seconds
      Execute Off-line Immediate . . . . . . . . . . . : Supported
      Abort/restart Off-line By Host . . . . . . . . . : Not supported
      Off-line Read Scanning . . . . . . . . . . . . . : Supported
      Short Self-test . . . . . . . . . . . . . . . . : Supported
      Extended Self-test . . . . . . . . . . . . . . . : Supported
      Conveyance Self-test . . . . . . . . . . . . . . : Not supported
      Selective Self-Test . . . . . . . . . . . . . . : Supported
      Save Data Before/After Power Saving Mode . . . . : Supported
      Enable/Disable Attribute Autosave . . . . . . . : Supported
      Error Logging Capability . . . . . . . . . . . . : Supported
      Short Self-test Estimated Time . . . . . . . . . : 2 minutes
      Extended Self-test Estimated Time . . . . . . . : 222 minutes
      Last Short Self-test Result . . . . . . . . . . : Never Started
      Last Short Self-test Date . . . . . . . . . . . : Never Started
      Last Extended Self-test Result . . . . . . . . . : Never Started
      Last Extended Self-test Date . . . . . . . . . . : Never Started

      Security Mode
      ---------------
      Security Mode . . . . . . . . . . . . . . . . . : Supported
      Security Erase . . . . . . . . . . . . . . . . . : Supported
      Security Erase Time . . . . . . . . . . . . . . : 212 minutes
      Security Enhanced Erase Feature . . . . . . . . : Supported
      Security Enhanced Erase Time . . . . . . . . . . : 212 minutes
      Security Enabled . . . . . . . . . . . . . . . . : No
      Security Locked . . . . . . . . . . . . . . . . : No
      Security Frozen . . . . . . . . . . . . . . . . : Yes
      Security Counter Expired . . . . . . . . . . . . : No
      Security Level . . . . . . . . . . . . . . . . . : High

      Serial ATA Features
      ---------------------
      S-ATA Compliance . . . . . . . . . . . . . . . . : Yes
      S-ATA I Signaling Speed (1.5 Gps) . . . . . . . : Supported
      S-ATA II Signaling Speed (3 Gps) . . . . . . . . : Supported
      S-ATA Gen3 Signaling Speed (6 Gps) . . . . . . . : Not supported
      Receipt Of Power Management Requests From Host . : Supported
      PHY Event Counters . . . . . . . . . . . . . . . : Supported
      Non-Zero Buffer Offsets In DMA Setup FIS . . . . : Not supported
      DMA Setup Auto-Activate Optimization . . . . . . : Supported, Disabled
      Device Initiating Interface Power Management . . : Supported, Disabled
      In-Order Data Delivery . . . . . . . . . . . . . : Not supported
      Asynchronous Notification . . . . . . . . . . . : Not supported
      Software Settings Preservation . . . . . . . . . : Supported, Enabled
      Native Command Queuing (NCQ) . . . . . . . . . . : Supported
      Queue Length . . . . . . . . . . . . . . . . . . : 32

      Disk Information
      ------------------
      Disk Family . . . . . . . . . . . . . . . . . . : Momentus 5400
      Form Factor . . . . . . . . . . . . . . . . . . : 2.5"
      Capacity . . . . . . . . . . . . . . . . . . . . : 1 TB (1 x 1.000.000.000.000 bytes)
      Number Of Disks . . . . . . . . . . . . . . . . : 2
      Number Of Heads . . . . . . . . . . . . . . . . : 4
      Rotational Speed . . . . . . . . . . . . . . . . : 5400 RPM
      Rotation Time . . . . . . . . . . . . . . . . . : 11,11 ms
      Average Rotational Latency . . . . . . . . . . . : 5,56 ms
      Disk Interface . . . . . . . . . . . . . . . . . : Serial-ATA/300
      Buffer-Host Max. Rate . . . . . . . . . . . . . : 300 MB/seconds
      Buffer Size . . . . . . . . . . . . . . . . . . : 8192 KB
      Drive Ready Time (Typical) . . . . . . . . . . . : 4 seconds
      Average Seek Time . . . . . . . . . . . . . . . : 12,0 ms
      Track To Track Seek Time . . . . . . . . . . . . : ? ms
      Full Stroke Seek Time . . . . . . . . . . . . . : ? ms
      Width . . . . . . . . . . . . . . . . . . . . . : 69,8 mm (2,7 inch)
      Depth . . . . . . . . . . . . . . . . . . . . . : 100,3 mm (3,9 inch)
      Height . . . . . . . . . . . . . . . . . . . . . : 9,5 mm (0,4 inch)
      Weight . . . . . . . . . . . . . . . . . . . . . : 107 grams (0,2 pounds)
      Acoustic (Idle) . . . . . . . . . . . . . . . . : 2,3 Bel
      Acoustic (Min Performance And Volume) . . . . . : 2,5 Bel
      Acoustic (Max Performance And Volume) . . . . . : 3,0 Bel
      Required Power For Spinup . . . . . . . . . . . : 1.200 mA
      Power Required (Seek) . . . . . . . . . . . . . : 2,4 W
      Power Required (Idle) . . . . . . . . . . . . . : 1,2 W
      Power Required (Standby) . . . . . . . . . . . . : 0,4 W
      Manufacturer . . . . . . . . . . . . . . . . . . : Seagate Technology
      Manufacturer Website . . . . . . . . . . . . . . : Seagate - Storing the world

      S.M.A.R.T.
      ------------
      No. Attribute Thre.. Value Worst Data Status Flags
      1 Raw Read Error Rate 51 100 100 0000000002BC OK Self Preserving, Error-Rate, Performance, Statistica..
      2 Throughput Performance 0 252 252 000000000000 OK (Always passing) Self Preserving, Performance, Statistical
      3 Spin Up Time 25 89 89 000000000D80 OK Self Preserving, Statistical, Critical
      4 Start/Stop Count 0 98 98 000000000866 OK (Always passing) Self Preserving, Event Count, Statistical
      5 Reallocated Sectors Co.. 10 252 252 000000000000 OK Self Preserving, Event Count, Statistical, Critical
      7 Seek Error Rate 51 252 252 000000000000 OK Self Preserving, Error-Rate, Performance, Statistical
      8 Seek Time Performance 15 252 252 000000000000 OK Self Preserving, Performance
      9 Power On Time Count 0 100 100 0000000037EB OK (Always passing) Self Preserving, Event Count, Statistical
      10 Spin Retry Count 51 252 252 000000000000 OK Self Preserving, Event Count, Statistical
      11 Drive Calibration Retr.. 0 100 100 000000000145 OK (Always passing) Self Preserving, Event Count, Statistical
      12 Drive Power Cycle Count 0 98 98 000000000831 OK (Always passing) Self Preserving, Event Count, Statistical
      191 G-Sense Error Rate 0 100 100 000000000730 OK (Always passing) Self Preserving, Statistical
      192 Power off Retract Cycl.. 0 252 252 000000000000 OK (Always passing) Self Preserving, Statistical
      194 Disk Temperature 0 58 47 0035000E002A OK (Always passing) Statistical
      195 Hardware ECC Recovered 0 100 100 000000000000 OK (Always passing) Self Preserving, Event Count, Error-Rate, Statistical
      196 Reallocation Event Count 0 252 252 000000000000 OK (Always passing) Self Preserving, Event Count, Statistical
      197 Current Pending Sector.. 0 252 100 000000000000 OK (Always passing) Self Preserving, Event Count, Statistical
      198 Off-Line Uncorrectable.. 0 252 252 000000000000 OK (Always passing) Self Preserving, Event Count
      199 Ultra ATA CRC Error Co.. 0 100 100 000000000006 OK (Always passing) Self Preserving, Event Count, Performance, Statistical
      200 Write Error Rate 0 100 100 00000000074E OK (Always passing) Self Preserving, Error-Rate, Statistical
      223 Load/Unload Retry Count 0 100 100 000000000145 OK (Always passing) Self Preserving, Event Count, Statistical
      225 Load/Unload Cycle Count 0 70 70 00000004BA00 OK (Always passing) Self Preserving, Event Count, Statistical

      Transfer Rate Information
      ---------------------------
      Total Data Read . . . . . . . . . . . . . . . . : 27 MB, 27 MB since installation (29-02-2016)
      Total Data Write . . . . . . . . . . . . . . . . : 60 MB, 65 MB since installation
      Average Reads Per Day . . . . . . . . . . . . . : 27,00 MB
      Average Writes Per Day . . . . . . . . . . . . . : 65,00 MB
      Current Transfer Rate . . . . . . . . . . . . . : 24 KB/s
      Maximum Transfer Rate . . . . . . . . . . . . . : 7181 KB/s
      Current Read Rate . . . . . . . . . . . . . . . : 16 KB/s
      Current Write Rate . . . . . . . . . . . . . . . : 8 KB/s
      Current Disk Activity . . . . . . . . . . . . . : 8 %



      -- Partition Information --

      Logical Drive Total Space Free Space Free Space Used Space
      C: (Disk: #0) 931,2 GB 910,4 GB 98 % --------------------

    2. #12
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      19.415

      Re: Virus $Reclycer.Bin y System Volume Information

      Los sistemas que usabas..el anterior y ahora este, pues veo que es una version diferente de la que tenias "enterprise"...son originales?

      Es que si ahora has formateado y con un nuevo Windows, no puede haber virus...es imposible



      Realizas esto para comprobar mas a fondo.


      Descarga RogueKiller, según tu sistema sea de 32 0 de 64 bits >> Download RogueKiller

      • Cierra todos los programas que haya iniciados.
      • Por favor, desconecta todos los dispositivos USB o DD externos, en caso de tenerlos conectados.
      • Despues de ejecutar, se inicia un Pre-Analisis, esperar a que finalice.
      • Abrimos en Archivo – Configuración –Escanear y dejamos configurado de la manera de la imagen siguiente:

      • Luego haz clic en el botón "Scan"
      • Espera hasta que el cuadro de estado muestra "Scan Finished"
      • Haz clic en "Delete"
      • Espere a que el cuadro de estado muestra "Deleting Finished"
      • Haz clic en "Report", copiar y pegar el contenido del Bloc de notas en tu próxima respuesta.
      • El registro se puede encontrar en RKreport[1].txt en el escritorio
      • Cerrar RogueKiller.








      1-Descarga Farbar Recovery Scan Tool By Farbar (Descarga el archivo dependiendo de la arquitectura de tu sistema).>> Como saber si mi sistema es de 32 o de 64 Bits

      • La guardas en el escritorio >> Esto es muy importante..
      • Con todos los programas /ventanas cerrados, doble clic para ejecutar Frst.exe.
      • En la ventana del Disclaimer, presiona Yes.
      • En la nueva ventana que se abre, presiona el botón Scan y espera paciente a que concluya el análisis.

      • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, estos estarán grabados en tu escritorio.

      • Para terminar abres los archivos Frst.txt y Addition.Txt copia y pega todo su contenido en tu próxima respuesta. Utiliza dos mensajes si te dice que es muy largo.





      Me pegas los logs
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #13
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      RogueKiller V11.0.14.0 (x64) [Feb 29 2016] (Premium) by Adlice Software
      correo : Contact - Adlice Software
      Feedback : Adlice forum
      Sitio web : RogueKiller Anti-Malware free download
      Blog : Adlice Software - malware analysis

      Sistema Operativo : Windows 8 (6.2.9200) 64 bits version
      Iniciado en : Modo Normal
      Usuario : RenH [Administrador]
      Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
      Modo : Borrar -- Fecha : 02/29/2016 17:02:15

      ¤¤¤ Procesos : 0 ¤¤¤

      ¤¤¤ Registro : 4 ¤¤¤
      [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 200.28.4.129 200.28.4.130 ([X][X]) -> Reemplazado ()
      [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 200.28.4.129 200.28.4.130 ([X][X]) -> Reemplazado ()
      [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D2F6C482-CFA2-4600-A608-03FA4ECC965E} | DhcpNameServer : 200.28.4.129 200.28.4.130 ([X][X]) -> Reemplazado ()
      [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{D2F6C482-CFA2-4600-A608-03FA4ECC965E} | DhcpNameServer : 200.28.4.129 200.28.4.130 ([X][X]) -> Reemplazado ()

      ¤¤¤ Tareas : 1 ¤¤¤
      [Suspicious.Path] \SUPatchForW10Up -- "%programdata%\Samsung\SamsungUpdatePatch\SUPatchForW10Up.exe" -> Borrado

      ¤¤¤ Archivos : 0 ¤¤¤

      ¤¤¤ Archivo de hosts : 0 ¤¤¤

      ¤¤¤ Antirootkit : 0 (Driver: No cargado [0x0]) ¤¤¤

      ¤¤¤ Navegadores Web : 0 ¤¤¤

      ¤¤¤ Chequeo MBR : ¤¤¤
      +++++ PhysicalDrive0: ST1000LM024 HN-M101MBB +++++
      --- User ---
      [MBR] ecea492e4b430aa9371580e60fa6c5d8
      [BSP] 3c5776fd2119d63d518e2f750e220b51 : Windows Vista/7/8 MBR Code
      Partition table:
      0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 350 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
      1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 718848 | Size: 953517 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
      User = LL1 ... OK
      User = LL2 ... OK

    4. #14
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      Tenia el windows 8 Single, no encontre otro sistema parecido pero ahora cree un booteable de windows 10 (bajandolo de la pagina oficial), Yo personalmente creo que se esta pasando por Red , ya son 3 equipos que se conectan a la misma red y pudo aver infectado el mio luego los otros 2 y asi no importase cuantas veces formateara porque seguiria con el ya que se pasa por esa red :/

    5. #15
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      19.415

      Re: Virus $Reclycer.Bin y System Volume Information

      Los otros pcs tambien teinen los mismos problemas??


      Windows 10 solo se puede instalar gratis, si se hace encima de un sistema anterior con licencia valida
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    6. #16
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      Tengo clave OEM en mi bios , me obliga a instalar windows 8 single , enterprise o 10 , Instale recien el windows 10 , no habia nada raro 0 proceso pero apenas conecte el internet (Solo habian 2 telefonos conectados) aparecio el proceso conhost.exe(el virus ) pero al parecer el propio firewall de windows 10 lo bloqueaba , ahora puse avast y me bloquea el system ,coloco ver "informe del cortafuegos" me salen muchísimos intentos de ingresar al pc dentro de eso sale que intentan ingresar diferentes IPS por distintos puertos cada 1

    7. #17
      Warrior Avatar de @Miguelgrado
      Registrado
      dic 2005
      Ubicación
      Asturias-España
      Mensajes
      19.415

      Re: Virus $Reclycer.Bin y System Volume Information

      1-Descarga Farbar Recovery Scan Tool By Farbar (Descarga el archivo dependiendo de la arquitectura de tu sistema).>> Como saber si mi sistema es de 32 o de 64 Bits

      • La guardas en el escritorio >> Esto es muy importante..
      • Con todos los programas /ventanas cerrados, doble clic para ejecutar Frst.exe.
      • En la ventana del Disclaimer, presiona Yes.
      • En la nueva ventana que se abre, presiona el botón Scan y espera paciente a que concluya el análisis.

      • Se abrirán dos (2) archivos (Logs), Frst.txt y Addition.txt, estos estarán grabados en tu escritorio.

      • Para terminar abres los archivos Frst.txt y Addition.Txt copia y pega todo su contenido en tu próxima respuesta. Utiliza dos mensajes si te dice que es muy largo.
      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    8. #18
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-02-2016
      Ran by Re (administrator) on DESKTOP-M41TNTN (01-03-2016 1720)
      Running from C:\Users\Re\Desktop
      Loaded Profiles: Re (Available Profiles: Re)
      Platform: Windows 10 Home Single Language Version 1511 (X64) Language: Español (México)
      Internet Explorer Version 11 (Default browser: Chrome)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: ***********************************************************************************************************

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (AMD) C:\Windows\System32\atiesrxx.exe
      (AMD) C:\Windows\System32\atieclxx.exe
      (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
      (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
      (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
      (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
      (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
      (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
      (Samsung Electronics Co., Ltd.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
      (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe
      (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe
      () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
      (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
      (Intel Corporation) C:\Windows\System32\igfxext.exe
      (Intel Corporation) C:\Windows\System32\igfxEM.exe
      (Intel Corporation) C:\Windows\System32\igfxHK.exe
      (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
      (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
      (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
      (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
      (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
      (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
      (Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
      (Microsoft Corporation) C:\Windows\System32\dllhost.exe
      (Microsoft Corporation) C:\Windows\System32\dllhost.exe
      (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.0_none_95e4f9a171a1ad95\TiWorker.exe


      ==================== Registry (Whitelisted) ===========================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296 2015-08-28] (Realtek Semiconductor)
      HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7139768 2016-02-29] (AVAST Software)
      HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc.)
      HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
      HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [522784 2015-11-16] (Autodesk Inc.)
      HKU\S-1-5-21-1765254246-2546967723-1529768733-1001\...\Run: [GoogleChromeAutoLaunch_1543A64BE17547E9AC185CB4A0EE4478] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648 2016-02-18] (Google Inc.)
      HKU\S-1-5-21-1765254246-2546967723-1529768733-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-10] (Skype Technologies S.A.)
      HKU\S-1-5-21-1765254246-2546967723-1529768733-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation)
      HKU\S-1-5-21-1765254246-2546967723-1529768733-1001\...\Run: [AdobeBridge] => [X]
      ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-02-29] (AVAST Software)

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      Tcpip\Parameters: [DhcpNameServer] 200.28.4.129 200.28.4.130
      Tcpip\..\Interfaces\{90a9ae52-e95e-4e67-b9fc-a0e79195a6a9}: [DhcpNameServer] 200.28.4.129 200.28.4.130

      Internet Explorer:
      ==================
      BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-29] (AVAST Software)
      BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-29] (AVAST Software)

      FireFox:
      ========
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-03-01] ()
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-03-01] ()
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-29] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-29] (Google Inc.)
      FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
      FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-02-29]
      FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF

      Chrome:
      =======
      CHR HomePage: Profile 1 -> hxxp://cl.msn.com/?pc=UP97&ocid=UP97DHP
      CHR Profile: C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default
      CHR Extension: (Diapositivas de Google) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-29]
      CHR Extension: (Google Docs) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-29]
      CHR Extension: (Google Drive) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-29]
      CHR Extension: (YouTube) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-29]
      CHR Extension: (Búsqueda de Google) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-29]
      CHR Extension: (Hojas de cálculo de Google) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-29]
      CHR Extension: (Documentos de Google sin conexión) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-29]
      CHR Extension: (Avast Online Security) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-02-29]
      CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-29]
      CHR Extension: (Gmail) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-29]
      CHR Profile: C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1
      CHR Extension: (I'm a Gentleman) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afjaicccalbbickikgdegaihmajaidpd [2016-02-29]
      CHR Extension: (Google Docs) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-29]
      CHR Extension: (Google Drive) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-29]
      CHR Extension: (YouTube) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-29]
      CHR Extension: (Búsqueda de Google) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-29]
      CHR Extension: (Hojas de cálculo de Google) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-29]
      CHR Extension: (Documentos de Google sin conexión) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-29]
      CHR Extension: (AdBlock) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-02-29]
      CHR Extension: (Bookmark Manager) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2016-02-29]
      CHR Extension: (Avast Online Security) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-02-29]
      CHR Extension: (Bitly
      Unleash the power of the link) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iabeihobmhlgpkcgjiloemdbofjbdcic [2016-02-29]
      CHR Extension: (Captura de pantalla página web - FireShot) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg [2016-02-29]
      CHR Extension: (Twitch Now) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk [2016-02-29]
      CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-29]
      CHR Extension: (Gmail) - C:\Users\Re\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-29]
      CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-02-29]

      Opera:
      =======
      OPR Extension: (Adblock Plus) - C:\Users\Re\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2016-03-01]

      ==================== Services (Whitelisted) ========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1139744 2015-11-16] (Autodesk Inc.)
      R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-06-29] (Windows (R) Win 7 DDK provider)
      R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [237096 2016-02-29] (AVAST Software)
      R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [119128 2016-02-29] (AVAST Software)
      R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329280 2016-02-19] (Intel Corporation)
      R2 Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [1594176 2015-06-24] (Samsung Electronics CO., LTD.)
      S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
      R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3287848 2016-02-25] (Samsung Electronics Co., Ltd.)
      S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
      S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

      ===================== Drivers (Whitelisted) ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [82664 2015-12-16] (Advanced Micro Devices, Inc.)
      R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-02-29] (AVAST Software)
      R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-02-29] (AVAST Software)
      R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-02-29] (AVAST Software)
      R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [552880 2016-02-29] (AVAST Software)
      R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-02-29] (AVAST Software)
      R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-02-29] (AVAST Software)
      R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1065720 2016-02-29] (AVAST Software)
      R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [463744 2016-02-29] (AVAST Software)
      S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [165344 2016-02-29] (AVAST Software)
      R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287016 2016-02-29] (AVAST Software)
      R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [202032 2016-01-19] (Intel Corporation)
      R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
      S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
      S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
      S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2016-03-01 17:10 - 2016-03-01 17:10 - 00014376 _____ C:\Users\Re\Desktop\FRST.txt
      2016-03-01 16:52 - 2016-03-01 17:07 - 00000000 ____D C:\Users\Re\Desktop\De todo
      2016-03-01 16:44 - 2016-03-01 17:10 - 00000000 ____D C:\FRST
      2016-03-01 16:42 - 2016-03-01 16:42 - 02371072 _____ (Farbar) C:\Users\Re\Desktop\FRST64.exe
      2016-03-01 16:19 - 2016-03-01 16:19 - 00000000 ____D C:\Users\Re\Documents\League of Legends
      2016-03-01 16:17 - 2016-03-01 16:17 - 00000000 ____D C:\Users\Re\AppData\Roaming\LolClient
      2016-03-01 15:58 - 2016-03-01 16:03 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\Re\Downloads\TeamSpeak3-Client-win64-3.0.18.2.exe
      2016-03-01 13:49 - 2016-03-01 13:49 - 00000000 ____D C:\Users\Re\AppData\Roaming\Blender Foundation
      2016-03-01 13:49 - 2016-03-01 13:49 - 00000000 ____D C:\Users\Re\.thumbnails
      2016-03-01 13:39 - 2016-03-01 13:39 - 00000000 ____D C:\Users\Re\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender
      2016-03-01 13:39 - 2016-03-01 13:39 - 00000000 ____D C:\Program Files\Blender Foundation
      2016-03-01 13:19 - 2016-02-26 22:48 - 00017016 _____ C:\Users\Re\Desktop\Proyecto.veg
      2016-03-01 12:54 - 2016-03-01 12:54 - 04952336 _____ (Advanced Micro Devices, Inc.) C:\Users\Re\Downloads\autodetectutility.exe
      2016-03-01 12:48 - 2016-03-01 12:48 - 00000000 ____D C:\Users\Re\AppData\Roaming\Sony Creative Software Inc
      2016-03-01 12:48 - 2016-03-01 12:48 - 00000000 ____D C:\Users\Re\AppData\Roaming\Publish Providers
      2016-03-01 12:40 - 2016-03-01 12:40 - 00000000 ____D C:\Users\Re\AppData\LocalLow\Adobe
      2016-03-01 12:37 - 2016-03-01 12:37 - 00001111 _____ C:\Users\Public\Desktop\Vegas Pro 13.0 (64-bit).lnk
      2016-03-01 12:37 - 2016-03-01 12:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
      2016-03-01 12:36 - 2016-03-01 12:48 - 00000000 ____D C:\Users\Re\AppData\Local\Sony
      2016-03-01 12:36 - 2016-03-01 12:36 - 00000000 ____D C:\ProgramData\Sony
      2016-03-01 12:36 - 2016-03-01 12:36 - 00000000 ____D C:\Program Files\Sony
      2016-03-01 12:36 - 2016-03-01 12:36 - 00000000 ____D C:\Program Files (x86)\Sony
      2016-03-01 12:33 - 2016-03-01 17:07 - 00000000 ____D C:\Users\Re\Desktop\Mas plantillas
      2016-03-01 10:42 - 2016-03-01 10:42 - 00000000 ____D C:\Users\Re\Documents\Direct Connect
      2016-03-01 10:39 - 2016-03-01 10:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk Maya 2015
      2016-03-01 10:39 - 2016-03-01 10:39 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared
      2016-03-01 10:14 - 2016-03-01 10:39 - 00000000 ____D C:\Program Files\Autodesk
      2016-03-01 10:05 - 2016-03-01 10:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
      2016-03-01 10:05 - 2016-03-01 10:41 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
      2016-03-01 10:05 - 2016-03-01 10:05 - 00000000 ____D C:\Users\Re\Documents\Autodesk Application Manager
      2016-03-01 10:05 - 2016-03-01 10:05 - 00000000 ____D C:\Users\Re\AppData\Local\Autodesk
      2016-03-01 10:01 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
      2016-03-01 10:01 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
      2016-03-01 10:01 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
      2016-03-01 10:01 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
      2016-03-01 10:01 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
      2016-03-01 10:01 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
      2016-03-01 10:01 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
      2016-03-01 09:55 - 2016-03-01 10:27 - 00000000 ____D C:\ProgramData\Autodesk
      2016-03-01 09:55 - 2016-03-01 10:05 - 00000000 ____D C:\Users\Re\AppData\Roaming\Autodesk
      2016-03-01 09:51 - 2016-03-01 09:51 - 00001800 _____ C:\Users\Re\Desktop\Photoshop CS6.lnk
      2016-03-01 09:51 - 2016-03-01 09:51 - 00000000 ____D C:\Users\Re\AppData\Local\AMD
      2016-03-01 09:48 - 2016-03-01 09:48 - 00001120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
      2016-03-01 09:48 - 2016-03-01 09:48 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
      2016-03-01 09:48 - 2016-03-01 09:48 - 00000000 ____D C:\Program Files\Adobe
      2016-03-01 09:47 - 2016-03-01 09:47 - 00001284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk
      2016-03-01 09:46 - 2016-03-01 09:46 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk
      2016-03-01 09:43 - 2016-03-01 09:43 - 00001600 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
      2016-03-01 09:43 - 2016-03-01 09:43 - 00001430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
      2016-03-01 09:39 - 2016-03-01 09:48 - 00000000 ____D C:\Program Files\Common Files\Adobe
      2016-03-01 09:32 - 2016-03-01 16:05 - 00000918 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
      2016-03-01 09:32 - 2016-03-01 09:32 - 00003992 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
      2016-03-01 09:24 - 2016-03-01 09:24 - 01190608 _____ (Adobe Systems Incorporated) C:\Users\Re\Downloads\flashplayer20pp_fa_install (1).exe
      2016-03-01 09:21 - 2016-03-01 16:58 - 00000838 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
      2016-03-01 09:21 - 2016-03-01 16:08 - 00000000 ____D C:\Users\Re\AppData\Local\Adobe
      2016-03-01 09:21 - 2016-03-01 09:48 - 00000000 ____D C:\ProgramData\Adobe
      2016-03-01 09:21 - 2016-03-01 09:46 - 00000000 ____D C:\Program Files (x86)\Adobe
      2016-03-01 09:21 - 2016-03-01 09:32 - 00003824 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
      2016-03-01 09:21 - 2016-03-01 09:21 - 18346464 _____ (Adobe Systems Inc.) C:\Users\Re\Downloads\AdobeAIRInstaller.exe
      2016-03-01 09:21 - 2016-03-01 09:21 - 00000000 ____D C:\Users\Re\AppData\Roaming\Macromedia
      2016-03-01 09:21 - 2016-03-01 09:21 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
      2016-03-01 09:21 - 2016-03-01 09:21 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
      2016-03-01 09:01 - 2016-03-01 09:01 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
      2016-03-01 09:01 - 2016-03-01 09:01 - 00000000 ____D C:\Program Files\Reference Assemblies
      2016-03-01 09:01 - 2016-03-01 09:01 - 00000000 ____D C:\Program Files\MSBuild
      2016-03-01 09:01 - 2016-03-01 09:01 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
      2016-03-01 09:01 - 2016-03-01 09:01 - 00000000 ____D C:\Program Files (x86)\MSBuild
      2016-03-01 01:28 - 2016-03-01 01:44 - 00000000 ____D C:\Windows\system32\MRT
      2016-03-01 01:28 - 2016-03-01 01:28 - 146614896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2016-03-01 01:27 - 2016-01-27 02:45 - 22564328 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
      2016-03-01 01:27 - 2016-01-27 02:10 - 22394368 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
      2016-03-01 01:27 - 2016-01-27 01:54 - 24603136 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2016-03-01 01:27 - 2016-01-16 03:23 - 08728920 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
      2016-03-01 01:27 - 2016-01-16 03:20 - 06971752 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
      2016-03-01 01:27 - 2016-01-16 02:45 - 16986112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
      2016-03-01 01:27 - 2016-01-16 02:35 - 13018624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
      2016-03-01 01:26 - 2016-01-27 03:01 - 07476064 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2016-03-01 01:26 - 2016-01-27 02:56 - 21124344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
      2016-03-01 01:26 - 2016-01-27 02:55 - 05242496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
      2016-03-01 01:26 - 2016-01-27 02:45 - 06605544 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
      2016-03-01 01:26 - 2016-01-27 02:05 - 19339776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2016-03-01 01:26 - 2016-01-27 02:05 - 18678272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
      2016-03-01 01:26 - 2016-01-27 02:04 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
      2016-03-01 01:26 - 2016-01-27 01:58 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
      2016-03-01 01:26 - 2016-01-27 01:55 - 12125696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2016-03-01 01:26 - 2016-01-27 01:49 - 05662208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
      2016-03-01 01:26 - 2016-01-27 01:48 - 13382656 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2016-03-01 01:26 - 2016-01-27 01:41 - 03592704 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
      2016-03-01 01:26 - 2016-01-27 01:38 - 07835648 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
      2016-03-01 01:26 - 2016-01-27 01:37 - 04894720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2016-03-01 01:26 - 2016-01-16 03:21 - 01750440 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
      2016-03-01 01:26 - 2016-01-16 02:38 - 07979008 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
      2016-03-01 01:26 - 2016-01-16 02:31 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
      2016-03-01 01:26 - 2016-01-16 02:30 - 01053696 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
      2016-03-01 01:26 - 2016-01-16 02:29 - 01500672 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
      2016-03-01 01:26 - 2016-01-16 02:28 - 02624512 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
      2016-03-01 01:26 - 2016-01-16 02:28 - 01318912 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
      2016-03-01 01:26 - 2016-01-16 02:24 - 02057216 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
      2016-03-01 01:26 - 2016-01-16 02:21 - 06297088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
      2016-03-01 01:26 - 2016-01-16 02:20 - 07199232 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
      2016-03-01 01:26 - 2016-01-16 02:20 - 02597888 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
      2016-03-01 01:26 - 2016-01-16 02:20 - 01944576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
      2016-03-01 01:26 - 2016-01-16 02:18 - 01674240 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
      2016-03-01 01:26 - 2016-01-16 02:17 - 05503488 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
      2016-03-01 01:26 - 2016-01-16 02:16 - 05202944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
      2016-03-01 01:26 - 2016-01-16 02:16 - 01542656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
      2016-03-01 01:26 - 2016-01-16 02:15 - 04759040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
      2016-03-01 01:26 - 2016-01-16 02:14 - 01946624 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
      2016-03-01 01:26 - 2016-01-16 02:14 - 01626624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
      2016-03-01 01:26 - 2016-01-04 23:45 - 02587696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2016-03-01 01:26 - 2016-01-04 23:42 - 02026736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2016-03-01 01:26 - 2016-01-04 23:37 - 02544256 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
      2016-03-01 01:26 - 2016-01-04 23:37 - 01299504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
      2016-03-01 01:26 - 2016-01-04 23:36 - 00808800 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
      2016-03-01 01:26 - 2016-01-04 23:33 - 02180128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
      2016-03-01 01:26 - 2016-01-04 23:33 - 01118208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
      2016-03-01 01:26 - 2016-01-04 22:43 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
      2016-03-01 01:26 - 2016-01-04 22:39 - 03428864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
      2016-03-01 01:26 - 2016-01-04 22:30 - 02796032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
      2016-03-01 01:26 - 2015-12-07 01:57 - 00973664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
      2016-03-01 01:26 - 2015-12-07 01:55 - 01281376 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
      2016-03-01 01:26 - 2015-12-07 01:48 - 01155944 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
      2016-03-01 01:26 - 2015-12-07 01:48 - 00823264 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
      2016-03-01 01:26 - 2015-12-07 01:48 - 00696160 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
      2016-03-01 01:26 - 2015-12-07 01:47 - 00898184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
      2016-03-01 01:26 - 2015-12-07 01:46 - 03671888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2016-03-01 01:26 - 2015-12-07 01:10 - 00824320 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
      2016-03-01 01:26 - 2015-12-07 00:50 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
      2016-03-01 01:26 - 2015-12-07 00:45 - 02582016 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
      2016-03-01 01:26 - 2015-12-07 00:41 - 02061824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
      2016-03-01 01:26 - 2015-12-07 00:40 - 01995776 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
      2016-03-01 01:26 - 2015-12-07 00:40 - 01706496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
      2016-03-01 01:26 - 2015-12-01 04:12 - 02152800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2016-03-01 01:26 - 2015-11-24 05:52 - 01717248 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
      2016-03-01 01:26 - 2015-11-24 05:49 - 01648640 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
      2016-03-01 01:26 - 2015-11-24 04:57 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
      2016-03-01 01:26 - 2015-11-24 04:29 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2016-03-01 01:26 - 2015-11-22 07:47 - 02653816 _____ C:\Windows\system32\CoreUIComponents.dll
      2016-03-01 01:26 - 2015-11-22 07:41 - 01859448 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
      2016-03-01 01:26 - 2015-11-22 07:24 - 02772584 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
      2016-03-01 01:26 - 2015-11-22 07:14 - 02185840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
      2016-03-01 01:26 - 2015-11-22 06:54 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\ETWCoreUIComponentsResources.dll
      2016-03-01 01:26 - 2015-11-22 06:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll
      2016-03-01 01:26 - 2015-11-22 06:41 - 00948224 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
      2016-03-01 01:26 - 2015-11-22 06:39 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
      2016-03-01 01:26 - 2015-11-22 06:38 - 01223168 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
      2016-03-01 01:26 - 2015-11-22 06:38 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
      2016-03-01 01:26 - 2015-11-22 06:34 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
      2016-03-01 01:26 - 2015-11-22 06:28 - 00948224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
      2016-03-01 01:26 - 2015-11-22 06:27 - 03993600 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
      2016-03-01 01:26 - 2015-11-22 06:26 - 03355136 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
      2016-03-01 01:26 - 2015-11-22 06:20 - 01860096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
      2016-03-01 01:26 - 2015-11-22 06:18 - 00697856 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
      2016-03-01 01:26 - 2015-11-22 06:17 - 02680320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
      2016-03-01 01:26 - 2015-11-13 03:43 - 00586208 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
      2016-03-01 01:26 - 2015-11-13 03:21 - 00511320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
      2016-03-01 01:26 - 2015-11-13 02:39 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
      2016-03-01 01:26 - 2015-11-13 02:19 - 02001408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
      2016-03-01 01:25 - 2016-01-29 03:57 - 04502352 _____ (Microsoft Corporation) C:\Windows\explorer.exe
      2016-03-01 01:25 - 2016-01-29 03:33 - 04064320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
      2016-03-01 01:25 - 2016-01-27 03:15 - 01557776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2016-03-01 01:25 - 2016-01-27 03:15 - 01542816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2016-03-01 01:25 - 2016-01-27 03:01 - 01997328 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2016-03-01 01:25 - 2016-01-27 03:01 - 01819720 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2016-03-01 01:25 - 2016-01-27 02:59 - 00304752 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
      2016-03-01 01:25 - 2016-01-27 02:57 - 02919320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2016-03-01 01:25 - 2016-01-27 02:57 - 01824264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
      2016-03-01 01:25 - 2016-01-27 02:57 - 00820704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
      2016-03-01 01:25 - 2016-01-27 02:55 - 00081112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
      2016-03-01 01:25 - 2016-01-27 02:54 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2016-03-01 01:25 - 2016-01-27 02:46 - 02606824 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
      2016-03-01 01:25 - 2016-01-27 02:46 - 01270072 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
      2016-03-01 01:25 - 2016-01-27 02:44 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
      2016-03-01 01:25 - 2016-01-27 02:44 - 00085320 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
      2016-03-01 01:25 - 2016-01-27 02:43 - 00359776 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2016-03-01 01:25 - 2016-01-27 02:37 - 01998176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
      2016-03-01 01:25 - 2016-01-27 02:37 - 00576352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
      2016-03-01 01:25 - 2016-01-27 02:21 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
      2016-03-01 01:25 - 2016-01-27 02:15 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ztrace_maps.dll
      2016-03-01 01:25 - 2016-01-27 02:13 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
      2016-03-01 01:25 - 2016-01-27 02:12 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2016-03-01 01:25 - 2016-01-27 02:11 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
      2016-03-01 01:25 - 2016-01-27 02:10 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
      2016-03-01 01:25 - 2016-01-27 02:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
      2016-03-01 01:25 - 2016-01-27 02:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\ztrace_maps.dll
      2016-03-01 01:25 - 2016-01-27 02:07 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassam.dll
      2016-03-01 01:25 - 2016-01-27 02:05 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
      2016-03-01 01:25 - 2016-01-27 02:05 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2016-03-01 01:25 - 2016-01-27 02:04 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
      2016-03-01 01:25 - 2016-01-27 02:03 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\ngckeyenum.dll
      2016-03-01 01:25 - 2016-01-27 02:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
      2016-03-01 01:25 - 2016-01-27 02:01 - 00792064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2016-03-01 01:25 - 2016-01-27 01:59 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll
      2016-03-01 01:25 - 2016-01-27 01:57 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
      2016-03-01 01:25 - 2016-01-27 01:55 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2016-03-01 01:25 - 2016-01-27 01:52 - 00970752 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2016-03-01 01:25 - 2016-01-27 01:50 - 02230784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2016-03-01 01:25 - 2016-01-27 01:50 - 01504768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2016-03-01 01:25 - 2016-01-27 01:50 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
      2016-03-01 01:25 - 2016-01-27 01:44 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgbkend.dll
      2016-03-01 01:25 - 2016-01-27 01:42 - 01387520 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2016-03-01 01:25 - 2016-01-27 01:39 - 02275328 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
      2016-03-01 01:25 - 2016-01-27 01:38 - 01734656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2016-03-01 01:25 - 2016-01-27 01:36 - 02757120 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2016-03-01 01:25 - 2016-01-27 01:32 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
      2016-03-01 01:25 - 2016-01-27 01:31 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll
      2016-03-01 01:25 - 2016-01-16 03:37 - 00202472 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
      2016-03-01 01:25 - 2016-01-16 03:36 - 01173344 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2016-03-01 01:25 - 2016-01-16 03:36 - 00713568 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2016-03-01 01:25 - 2016-01-16 03:34 - 00513888 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2016-03-01 01:25 - 2016-01-16 03:24 - 00538632 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
      2016-03-01 01:25 - 2016-01-16 03:23 - 00848160 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
      2016-03-01 01:25 - 2016-01-16 03:23 - 00785088 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
      2016-03-01 01:25 - 2016-01-16 03:23 - 00536256 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
      2016-03-01 01:25 - 2016-01-16 03:23 - 00408120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
      2016-03-01 01:25 - 2016-01-16 03:23 - 00369912 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
      2016-03-01 01:25 - 2016-01-16 03:20 - 00652312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
      2016-03-01 01:25 - 2016-01-16 03:20 - 00431240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
      2016-03-01 01:25 - 2016-01-16 03:20 - 00366224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
      2016-03-01 01:25 - 2016-01-16 03:19 - 00709688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
      2016-03-01 01:25 - 2016-01-16 03:19 - 00405568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
      2016-03-01 01:25 - 2016-01-16 03:12 - 01415200 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
      2016-03-01 01:25 - 2016-01-16 03:09 - 01089880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
      2016-03-01 01:25 - 2016-01-16 03:08 - 01174008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
      2016-03-01 01:25 - 2016-01-16 03:08 - 00440152 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
      2016-03-01 01:25 - 2016-01-16 02:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
      2016-03-01 01:25 - 2016-01-16 02:44 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
      2016-03-01 01:25 - 2016-01-16 02:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
      2016-03-01 01:25 - 2016-01-16 02:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
      2016-03-01 01:25 - 2016-01-16 02:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\winhttpcom.dll
      2016-03-01 01:25 - 2016-01-16 02:42 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
      2016-03-01 01:25 - 2016-01-16 02:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll
      2016-03-01 01:25 - 2016-01-16 02:41 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
      2016-03-01 01:25 - 2016-01-16 02:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll
      2016-03-01 01:25 - 2016-01-16 02:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
      2016-03-01 01:25 - 2016-01-16 02:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
      2016-03-01 01:25 - 2016-01-16 02:39 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
      2016-03-01 01:25 - 2016-01-16 02:38 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
      2016-03-01 01:25 - 2016-01-16 02:38 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll
      2016-03-01 01:25 - 2016-01-16 02:38 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
      2016-03-01 01:25 - 2016-01-16 02:37 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
      2016-03-01 01:25 - 2016-01-16 02:37 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll

    9. #19
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      2016-03-01 01:25 - 2016-01-16 02:37 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
      2016-03-01 01:25 - 2016-01-16 02:37 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll
      2016-03-01 01:25 - 2016-01-16 02:36 - 00638464 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
      2016-03-01 01:25 - 2016-01-16 02:36 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll
      2016-03-01 01:25 - 2016-01-16 02:36 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2016-03-01 01:25 - 2016-01-16 02:36 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll
      2016-03-01 01:25 - 2016-01-16 02:35 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2016-03-01 01:25 - 2016-01-16 02:34 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
      2016-03-01 01:25 - 2016-01-16 02:34 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SmsRouterSvc.dll
      2016-03-01 01:25 - 2016-01-16 02:34 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2016-03-01 01:25 - 2016-01-16 02:34 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
      2016-03-01 01:25 - 2016-01-16 02:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttpcom.dll
      2016-03-01 01:25 - 2016-01-16 02:33 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
      2016-03-01 01:25 - 2016-01-16 02:33 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll
      2016-03-01 01:25 - 2016-01-16 02:33 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
      2016-03-01 01:25 - 2016-01-16 02:32 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
      2016-03-01 01:25 - 2016-01-16 02:32 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
      2016-03-01 01:25 - 2016-01-16 02:31 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
      2016-03-01 01:25 - 2016-01-16 02:31 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
      2016-03-01 01:25 - 2016-01-16 02:31 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
      2016-03-01 01:25 - 2016-01-16 02:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe
      2016-03-01 01:25 - 2016-01-16 02:30 - 02127360 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2016-03-01 01:25 - 2016-01-16 02:30 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2016-03-01 01:25 - 2016-01-16 02:30 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll
      2016-03-01 01:25 - 2016-01-16 02:30 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
      2016-03-01 01:25 - 2016-01-16 02:29 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
      2016-03-01 01:25 - 2016-01-16 02:28 - 00884736 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
      2016-03-01 01:25 - 2016-01-16 02:28 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll
      2016-03-01 01:25 - 2016-01-16 02:27 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2016-03-01 01:25 - 2016-01-16 02:26 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
      2016-03-01 01:25 - 2016-01-16 02:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
      2016-03-01 01:25 - 2016-01-16 02:26 - 00260608 _____ C:\Windows\system32\MTFServer.dll
      2016-03-01 01:25 - 2016-01-16 02:26 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
      2016-03-01 01:25 - 2016-01-16 02:25 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
      2016-03-01 01:25 - 2016-01-16 02:25 - 00457728 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
      2016-03-01 01:25 - 2016-01-16 02:25 - 00235008 _____ C:\Windows\system32\MTF.dll
      2016-03-01 01:25 - 2016-01-16 02:24 - 00613888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
      2016-03-01 01:25 - 2016-01-16 02:24 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
      2016-03-01 01:25 - 2016-01-16 02:24 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
      2016-03-01 01:25 - 2016-01-16 02:23 - 02050048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2016-03-01 01:25 - 2016-01-16 02:23 - 00687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2016-03-01 01:25 - 2016-01-16 02:20 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
      2016-03-01 01:25 - 2016-01-16 02:19 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
      2016-03-01 01:25 - 2016-01-16 02:19 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
      2016-03-01 01:25 - 2016-01-16 02:19 - 00162816 _____ C:\Windows\SysWOW64\MTF.dll
      2016-03-01 01:25 - 2016-01-16 02:19 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
      2016-03-01 01:25 - 2016-01-16 02:11 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
      2016-03-01 01:25 - 2016-01-04 23:51 - 01317640 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2016-03-01 01:25 - 2016-01-04 23:51 - 01141496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
      2016-03-01 01:25 - 2016-01-04 23:50 - 00671472 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2016-03-01 01:25 - 2016-01-04 23:48 - 00499432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2016-03-01 01:25 - 2016-01-04 23:37 - 00858952 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
      2016-03-01 01:25 - 2016-01-04 23:37 - 00245840 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
      2016-03-01 01:25 - 2016-01-04 23:37 - 00234504 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
      2016-03-01 01:25 - 2016-01-04 23:33 - 00701384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
      2016-03-01 01:25 - 2016-01-04 23:33 - 00208176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
      2016-03-01 01:25 - 2016-01-04 23:33 - 00116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
      2016-03-01 01:25 - 2016-01-04 23:31 - 00703840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
      2016-03-01 01:25 - 2016-01-04 23:27 - 01594408 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
      2016-03-01 01:25 - 2016-01-04 23:24 - 00796352 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2016-03-01 01:25 - 2016-01-04 23:23 - 01804664 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
      2016-03-01 01:25 - 2016-01-04 23:23 - 01309376 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2016-03-01 01:25 - 2016-01-04 23:23 - 00786696 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
      2016-03-01 01:25 - 2016-01-04 23:23 - 00119320 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
      2016-03-01 01:25 - 2016-01-04 23:21 - 01371792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
      2016-03-01 01:25 - 2016-01-04 23:17 - 00695752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
      2016-03-01 01:25 - 2016-01-04 23:16 - 00100160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
      2016-03-01 01:25 - 2016-01-04 22:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\RMSRoamingSecurity.dll
      2016-03-01 01:25 - 2016-01-04 22:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\usermgrcli.dll
      2016-03-01 01:25 - 2016-01-04 22:56 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
      2016-03-01 01:25 - 2016-01-04 22:54 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
      2016-03-01 01:25 - 2016-01-04 22:53 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
      2016-03-01 01:25 - 2016-01-04 22:52 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2016-03-01 01:25 - 2016-01-04 22:51 - 00472576 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
      2016-03-01 01:25 - 2016-01-04 22:51 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
      2016-03-01 01:25 - 2016-01-04 22:50 - 00644096 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
      2016-03-01 01:25 - 2016-01-04 22:50 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
      2016-03-01 01:25 - 2016-01-04 22:49 - 01582080 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
      2016-03-01 01:25 - 2016-01-04 22:49 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
      2016-03-01 01:25 - 2016-01-04 22:49 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
      2016-03-01 01:25 - 2016-01-04 22:49 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll
      2016-03-01 01:25 - 2016-01-04 22:48 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
      2016-03-01 01:25 - 2016-01-04 22:48 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
      2016-03-01 01:25 - 2016-01-04 22:48 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usermgrcli.dll
      2016-03-01 01:25 - 2016-01-04 22:47 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
      2016-03-01 01:25 - 2016-01-04 22:47 - 00479232 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2016-03-01 01:25 - 2016-01-04 22:47 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
      2016-03-01 01:25 - 2016-01-04 22:45 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
      2016-03-01 01:25 - 2016-01-04 22:45 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
      2016-03-01 01:25 - 2016-01-04 22:44 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
      2016-03-01 01:25 - 2016-01-04 22:43 - 00953856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
      2016-03-01 01:25 - 2016-01-04 22:43 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2016-03-01 01:25 - 2016-01-04 22:43 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
      2016-03-01 01:25 - 2016-01-04 22:42 - 00166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
      2016-03-01 01:25 - 2016-01-04 22:41 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
      2016-03-01 01:25 - 2016-01-04 22:41 - 00558592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
      2016-03-01 01:25 - 2016-01-04 22:40 - 00890880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
      2016-03-01 01:25 - 2016-01-04 22:40 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll
      2016-03-01 01:25 - 2016-01-04 22:39 - 00569856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
      2016-03-01 01:25 - 2016-01-04 22:39 - 00498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
      2016-03-01 01:25 - 2016-01-04 22:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
      2016-03-01 01:25 - 2016-01-04 22:38 - 00389120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2016-03-01 01:25 - 2016-01-04 22:36 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
      2016-03-01 01:25 - 2016-01-04 22:36 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2016-03-01 01:25 - 2015-12-07 01:49 - 00412512 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
      2016-03-01 01:25 - 2015-12-07 01:48 - 01092456 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 01065080 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 01020096 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00983464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00884256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00794888 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00670928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00526856 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00502112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00498448 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00462760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00450904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00337840 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00289248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00115040 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
      2016-03-01 01:25 - 2015-12-07 01:48 - 00084832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
      2016-03-01 01:25 - 2015-12-07 01:47 - 00925064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
      2016-03-01 01:25 - 2015-12-07 01:47 - 00716928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
      2016-03-01 01:25 - 2015-12-07 01:45 - 00264544 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
      2016-03-01 01:25 - 2015-12-07 01:15 - 01035776 _____ (Microsoft Corporation) C:\Windows\system32\XboxNetApiSvc.dll
      2016-03-01 01:25 - 2015-12-07 01:09 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\flvprophandler.dll
      2016-03-01 01:25 - 2015-12-07 01:09 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
      2016-03-01 01:25 - 2015-12-07 01:07 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
      2016-03-01 01:25 - 2015-12-07 01:06 - 00572928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
      2016-03-01 01:25 - 2015-12-07 01:06 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
      2016-03-01 01:25 - 2015-12-07 01:06 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
      2016-03-01 01:25 - 2015-12-07 01:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
      2016-03-01 01:25 - 2015-12-07 01:04 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
      2016-03-01 01:25 - 2015-12-07 01:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
      2016-03-01 01:25 - 2015-12-07 01:02 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
      2016-03-01 01:25 - 2015-12-07 01:02 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
      2016-03-01 01:25 - 2015-12-07 01:01 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
      2016-03-01 01:25 - 2015-12-07 01:00 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
      2016-03-01 01:25 - 2015-12-07 01:00 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
      2016-03-01 01:25 - 2015-12-07 01:00 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
      2016-03-01 01:25 - 2015-12-07 00:59 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
      2016-03-01 01:25 - 2015-12-07 00:59 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
      2016-03-01 01:25 - 2015-12-07 00:59 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
      2016-03-01 01:25 - 2015-12-07 00:59 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
      2016-03-01 01:25 - 2015-12-07 00:58 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
      2016-03-01 01:25 - 2015-12-07 00:57 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
      2016-03-01 01:25 - 2015-12-07 00:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
      2016-03-01 01:25 - 2015-12-07 00:56 - 00607232 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
      2016-03-01 01:25 - 2015-12-07 00:56 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
      2016-03-01 01:25 - 2015-12-07 00:55 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
      2016-03-01 01:25 - 2015-12-07 00:53 - 00381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
      2016-03-01 01:25 - 2015-12-07 00:51 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
      2016-03-01 01:25 - 2015-12-07 00:49 - 01105920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
      2016-03-01 01:25 - 2015-12-07 00:45 - 00900608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
      2016-03-01 01:25 - 2015-12-07 00:45 - 00683008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
      2016-03-01 01:25 - 2015-12-07 00:43 - 00931328 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
      2016-03-01 01:25 - 2015-12-07 00:39 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
      2016-03-01 01:25 - 2015-12-07 00:38 - 00871936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
      2016-03-01 01:25 - 2015-12-07 00:33 - 00375296 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
      2016-03-01 01:25 - 2015-12-07 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
      2016-03-01 01:25 - 2015-11-24 07:26 - 01399224 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
      2016-03-01 01:25 - 2015-11-24 06:53 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2016-03-01 01:25 - 2015-11-24 06:45 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
      2016-03-01 01:25 - 2015-11-24 06:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
      2016-03-01 01:25 - 2015-11-24 06:26 - 01337240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
      2016-03-01 01:25 - 2015-11-24 06:19 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
      2016-03-01 01:25 - 2015-11-24 06:12 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
      2016-03-01 01:25 - 2015-11-24 05:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
      2016-03-01 01:25 - 2015-11-24 05:14 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
      2016-03-01 01:25 - 2015-11-24 04:59 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
      2016-03-01 01:25 - 2015-11-24 04:04 - 02155008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
      2016-03-01 01:25 - 2015-11-22 07:41 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
      2016-03-01 01:25 - 2015-11-22 07:34 - 00080600 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
      2016-03-01 01:25 - 2015-11-22 07:33 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
      2016-03-01 01:25 - 2015-11-22 07:33 - 00058408 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll
      2016-03-01 01:25 - 2015-11-22 07:33 - 00051680 _____ (Microsoft Corporation) C:\Windows\system32\SensorsUtilsV2.dll
      2016-03-01 01:25 - 2015-11-22 07:30 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2016-03-01 01:25 - 2015-11-22 07:25 - 00063528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
      2016-03-01 01:25 - 2015-11-22 06:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManagerProxy.dll
      2016-03-01 01:25 - 2015-11-22 06:54 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
      2016-03-01 01:25 - 2015-11-22 06:51 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
      2016-03-01 01:25 - 2015-11-22 06:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2016-03-01 01:25 - 2015-11-22 06:50 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
      2016-03-01 01:25 - 2015-11-22 06:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2016-03-01 01:25 - 2015-11-22 06:45 - 06572032 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
      2016-03-01 01:25 - 2015-11-22 06:43 - 00704000 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll
      2016-03-01 01:25 - 2015-11-22 06:43 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
      2016-03-01 01:25 - 2015-11-22 06:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthManagerProxy.dll
      2016-03-01 01:25 - 2015-11-22 06:42 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
      2016-03-01 01:25 - 2015-11-22 06:42 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
      2016-03-01 01:25 - 2015-11-22 06:41 - 01814528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
      2016-03-01 01:25 - 2015-11-22 06:40 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
      2016-03-01 01:25 - 2015-11-22 06:39 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
      2016-03-01 01:25 - 2015-11-22 06:39 - 00938496 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
      2016-03-01 01:25 - 2015-11-22 06:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
      2016-03-01 01:25 - 2015-11-22 06:38 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
      2016-03-01 01:25 - 2015-11-22 06:37 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
      2016-03-01 01:25 - 2015-11-22 06:37 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
      2016-03-01 01:25 - 2015-11-22 06:36 - 01042432 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
      2016-03-01 01:25 - 2015-11-22 06:32 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
      2016-03-01 01:25 - 2015-11-22 06:31 - 00470528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
      2016-03-01 01:25 - 2015-11-22 06:31 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
      2016-03-01 01:25 - 2015-11-22 06:28 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
      2016-03-01 01:25 - 2015-11-22 06:28 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
      2016-03-01 01:25 - 2015-11-22 06:27 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
      2016-03-01 01:25 - 2015-11-22 06:26 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
      2016-03-01 01:25 - 2015-11-22 06:26 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
      2016-03-01 01:25 - 2015-11-22 06:26 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
      2016-03-01 01:25 - 2015-11-22 06:18 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
      2016-03-01 01:25 - 2015-11-22 06:11 - 00517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
      2016-03-01 01:25 - 2015-11-21 02:44 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-AppModelExecEvents.dll
      2016-03-01 01:25 - 2015-11-21 02:29 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
      2016-03-01 01:25 - 2015-11-21 02:07 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
      2016-03-01 01:25 - 2015-11-13 03:55 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
      2016-03-01 01:25 - 2015-11-13 03:51 - 00698208 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
      2016-03-01 01:25 - 2015-11-13 03:51 - 00523616 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
      2016-03-01 01:25 - 2015-11-13 03:51 - 00334736 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
      2016-03-01 01:25 - 2015-11-13 03:43 - 00110032 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
      2016-03-01 01:25 - 2015-11-13 03:43 - 00035656 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
      2016-03-01 01:25 - 2015-11-13 03:42 - 00516544 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
      2016-03-01 01:25 - 2015-11-13 03:42 - 00088392 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
      2016-03-01 01:25 - 2015-11-13 03:33 - 00911648 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
      2016-03-01 01:25 - 2015-11-13 03:33 - 00586080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
      2016-03-01 01:25 - 2015-11-13 03:33 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2016-03-01 01:25 - 2015-11-13 03:32 - 00296488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
      2016-03-01 01:25 - 2015-11-13 03:21 - 00454056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
      2016-03-01 01:25 - 2015-11-13 03:21 - 00073360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
      2016-03-01 01:25 - 2015-11-13 03:21 - 00032040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
      2016-03-01 01:25 - 2015-11-13 03:09 - 00675064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
      2016-03-01 01:25 - 2015-11-13 02:58 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
      2016-03-01 01:25 - 2015-11-13 02:57 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
      2016-03-01 01:25 - 2015-11-13 02:55 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
      2016-03-01 01:25 - 2015-11-13 02:53 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
      2016-03-01 01:25 - 2015-11-13 02:49 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
      2016-03-01 01:25 - 2015-11-13 02:33 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
      2016-03-01 01:25 - 2015-11-13 02:30 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
      2016-03-01 01:25 - 2015-11-13 02:30 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
      2016-03-01 01:25 - 2015-11-13 02:27 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
      2016-03-01 01:25 - 2015-11-13 02:23 - 00490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
      2016-03-01 01:25 - 2015-11-05 09:05 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
      2016-03-01 01:25 - 2015-11-05 07:40 - 00630632 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
      2016-03-01 01:25 - 2015-11-05 07:25 - 00578912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
      2016-03-01 01:25 - 2015-11-05 06:41 - 00540752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
      2016-03-01 01:25 - 2015-11-05 06:10 - 00803840 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2016-03-01 01:25 - 2015-11-05 05:15 - 00647168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2016-03-01 01:24 - 2016-01-16 02:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
      2016-03-01 01:24 - 2016-01-16 02:35 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll
      2016-03-01 01:24 - 2015-12-07 01:15 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.XboxLive.ProxyStub.dll
      2016-03-01 01:24 - 2015-12-07 01:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
      2016-03-01 01:24 - 2015-12-07 01:07 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll
      2016-03-01 01:24 - 2015-12-07 01:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
      2016-03-01 01:24 - 2015-12-07 01:01 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe
      2016-03-01 01:24 - 2015-11-24 07:01 - 02756096 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2016-03-01 01:24 - 2015-11-24 06:54 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\readingviewresources.dll
      2016-03-01 01:24 - 2015-11-24 05:54 - 02756096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2016-03-01 01:24 - 2015-11-22 07:00 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
      2016-03-01 01:24 - 2015-11-22 07:00 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
      2016-03-01 01:24 - 2015-11-22 06:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
      2016-03-01 01:24 - 2015-11-22 06:57 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCoreRes.dll
      2016-03-01 01:24 - 2015-11-22 06:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
      2016-03-01 01:24 - 2015-11-22 06:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
      2016-03-01 01:24 - 2015-11-22 06:56 - 01268736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
      2016-03-01 01:24 - 2015-11-22 06:56 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
      2016-03-01 01:24 - 2015-11-22 06:56 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll
      2016-03-01 01:24 - 2015-11-22 06:56 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll
      2016-03-01 01:24 - 2015-11-22 06:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
      2016-03-01 01:24 - 2015-11-22 06:54 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
      2016-03-01 01:24 - 2015-11-22 06:52 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll
      2016-03-01 01:24 - 2015-11-22 06:52 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
      2016-03-01 01:24 - 2015-11-22 06:51 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
      2016-03-01 01:24 - 2015-11-22 06:51 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
      2016-03-01 01:24 - 2015-11-22 06:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
      2016-03-01 01:24 - 2015-11-22 06:48 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00264192 _____ (Nokia) C:\Windows\system32\NmaDirect.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCoreRes.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
      2016-03-01 01:24 - 2015-11-22 06:45 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
      2016-03-01 01:24 - 2015-11-22 06:44 - 01268736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
      2016-03-01 01:24 - 2015-11-22 06:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
      2016-03-01 01:24 - 2015-11-22 06:42 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
      2016-03-01 01:24 - 2015-11-22 06:42 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
      2016-03-01 01:24 - 2015-11-22 06:40 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
      2016-03-01 01:24 - 2015-11-22 06:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll
      2016-03-01 01:24 - 2015-11-22 06:39 - 01713664 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
      2016-03-01 01:24 - 2015-11-22 06:39 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
      2016-03-01 01:24 - 2015-11-22 06:39 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
      2016-03-01 01:24 - 2015-11-22 06:39 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
      2016-03-01 01:24 - 2015-11-22 06:34 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
      2016-03-01 01:24 - 2015-11-22 06:34 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
      2016-03-01 01:24 - 2015-11-22 06:33 - 00205824 _____ (Nokia) C:\Windows\SysWOW64\NmaDirect.dll
      2016-03-01 01:24 - 2015-11-22 06:29 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
      2016-03-01 01:24 - 2015-11-22 06:28 - 01443328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll
      2016-03-01 01:24 - 2015-11-22 06:28 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
      2016-03-01 01:24 - 2015-11-22 06:28 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
      2016-03-01 01:24 - 2015-11-22 06:27 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
      2016-03-01 01:24 - 2015-11-22 06:27 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
      2016-03-01 01:24 - 2015-11-22 06:24 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
      2016-03-01 01:24 - 2015-11-22 06:24 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
      2016-03-01 01:24 - 2015-11-13 03:07 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
      2016-03-01 01:24 - 2015-11-13 03:06 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
      2016-03-01 01:24 - 2015-11-13 03:05 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
      2016-03-01 01:24 - 2015-11-13 03:05 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
      2016-03-01 01:24 - 2015-11-13 03:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.proxy.dll
      2016-03-01 01:24 - 2015-11-13 03:05 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll
      2016-03-01 01:24 - 2015-11-13 03:04 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
      2016-03-01 01:24 - 2015-11-13 03:04 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
      2016-03-01 01:24 - 2015-11-13 03:04 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe
      2016-03-01 01:24 - 2015-11-13 03:03 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
      2016-03-01 01:24 - 2015-11-13 03:00 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
      2016-03-01 01:24 - 2015-11-13 02:59 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
      2016-03-01 01:24 - 2015-11-13 02:56 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
      2016-03-01 01:24 - 2015-11-13 02:40 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
      2016-03-01 01:24 - 2015-11-13 02:40 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.proxy.dll
      2016-03-01 01:24 - 2015-11-13 02:34 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
      2016-03-01 01:24 - 2015-11-05 07:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
      2016-03-01 01:24 - 2015-11-05 07:08 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
      2016-03-01 01:24 - 2015-11-05 07:04 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
      2016-03-01 01:24 - 2015-11-05 07:00 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
      2016-03-01 01:24 - 2015-11-05 06:44 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
      2016-03-01 01:24 - 2015-11-05 06:03 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
      2016-03-01 01:24 - 2015-11-05 06:02 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
      2016-03-01 01:24 - 2015-11-05 05:59 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
      2016-03-01 01:24 - 2015-11-05 05:55 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
      2016-03-01 01:24 - 2015-11-05 05:42 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
      2016-03-01 00:40 - 2016-03-01 17:07 - 00000000 ____D C:\Users\Re\Desktop\Extras
      2016-03-01 00:03 - 2016-02-29 21:06 - 00000000 ____D C:\Windows\Panther
      2016-02-29 23:42 - 2016-03-01 17:07 - 00000000 ____D C:\Users\Re\Desktop\Tool
      2016-02-29 23:42 - 2016-02-29 23:42 - 00001229 _____ C:\Users\Public\Desktop\Battle.net.lnk
      2016-02-29 23:42 - 2016-02-29 23:42 - 00000000 ____D C:\Users\Re\AppData\Local\Blizzard Entertainment
      2016-02-29 23:42 - 2016-02-29 23:42 - 00000000 ____D C:\Users\Re\AppData\Local\Battle.net
      2016-02-29 23:42 - 2016-02-29 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
      2016-02-29 23:42 - 2016-02-29 23:42 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
      2016-02-29 23:37 - 2016-02-29 23:42 - 00000000 ____D C:\Users\Re\AppData\Roaming\Battle.net
      2016-02-29 23:37 - 2016-02-29 23:42 - 00000000 ____D C:\Program Files (x86)\Battle.net
      2016-02-29 23:37 - 2016-02-29 23:37 - 00003962 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1456799829
      2016-02-29 23:37 - 2016-02-29 23:37 - 00001208 _____ C:\Users\Public\Desktop\Opera.lnk
      2016-02-29 23:37 - 2016-02-29 23:37 - 00001208 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk

    10. #20
      Usuario Avatar de Hans López
      Registrado
      feb 2016
      Mensajes
      50

      Re: Virus $Reclycer.Bin y System Volume Information

      2016-02-29 23:37 - 2016-02-29 23:37 - 00000000 ____D C:\Users\Re\AppData\Roaming\Opera Software
      2016-02-29 23:37 - 2016-02-29 23:37 - 00000000 ____D C:\Users\Re\AppData\Local\Opera Software
      2016-02-29 23:36 - 2016-03-01 12:48 - 00000000 ____D C:\Users\Re\AppData\Roaming\Sony
      2016-02-29 23:36 - 2016-02-29 23:37 - 00000000 ____D C:\ProgramData\Battle.net
      2016-02-29 23:35 - 2016-02-29 23:46 - 00000000 ____D C:\Program Files (x86)\Opera
      2016-02-29 23:13 - 2016-02-29 23:13 - 00000000 ____D C:\Users\Re\AppData\Local\Steam
      2016-02-29 23:13 - 2016-02-29 23:13 - 00000000 ____D C:\Users\Re\AppData\Local\CEF
      2016-02-29 23:11 - 2016-02-29 23:11 - 00000000 ____D C:\ProgramData\Riot Games
      2016-02-29 23:07 - 2016-03-01 16:43 - 00000000 ____D C:\Program Files (x86)\Steam
      2016-02-29 23:07 - 2016-02-29 23:07 - 00001036 _____ C:\Users\Public\Desktop\Steam.lnk
      2016-02-29 23:07 - 2016-02-29 23:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
      2016-02-29 23:07 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
      2016-02-29 23:07 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
      2016-02-29 23:07 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
      2016-02-29 23:07 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
      2016-02-29 23:07 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
      2016-02-29 23:07 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
      2016-02-29 23:06 - 2016-02-29 23:07 - 01380712 _____ C:\Users\Re\Downloads\SteamSetup.exe
      2016-02-29 23:04 - 2016-03-01 15:47 - 00000000 ____D C:\Riot Games
      2016-02-29 23:04 - 2016-02-29 23:04 - 00001585 _____ C:\Users\Public\Desktop\League of Legends.lnk
      2016-02-29 23:04 - 2016-02-29 23:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
      2016-02-29 23:04 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
      2016-02-29 23:04 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
      2016-02-29 23:04 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
      2016-02-29 23:04 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
      2016-02-29 23:04 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
      2016-02-29 23:03 - 2016-02-29 23:03 - 00000000 ____D C:\Users\Re\AppData\Roaming\Riot Games
      2016-02-29 23:01 - 2016-02-29 23:03 - 27874912 _____ (Riot Games) C:\Users\Re\Downloads\LeagueofLegends_LA2_Installer_9_15_2014.exe
      2016-02-29 22:55 - 2016-03-01 17:08 - 00000000 ____D C:\Users\Re\Downloads\PBE_Client_Shell
      2016-02-29 22:55 - 2016-02-29 22:55 - 00614520 _____ C:\Users\Re\Downloads\PBE_Client_Shell.zip
      2016-02-29 22:49 - 2016-02-29 22:49 - 00000000 ____D C:\Users\Re\Tracing
      2016-02-29 22:46 - 2016-03-01 16:43 - 00000000 ____D C:\Users\Re\AppData\Roaming\Skype
      2016-02-29 22:46 - 2016-02-29 22:46 - 00002640 _____ C:\Users\Public\Desktop\Skype.lnk
      2016-02-29 22:46 - 2016-02-29 22:46 - 00000000 ___RD C:\Program Files (x86)\Skype
      2016-02-29 22:46 - 2016-02-29 22:46 - 00000000 ____D C:\ProgramData\Skype
      2016-02-29 22:46 - 2016-02-29 22:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
      2016-02-29 22:42 - 2016-02-29 22:44 - 47347840 _____ (Skype Technologies S.A.) C:\Users\Re\Downloads\SkypeSetupFull.exe
      2016-02-29 22:41 - 2016-02-29 22:42 - 05956080 _____ (AVAST Software) C:\Users\Re\Downloads\avastclear.exe
      2016-02-29 22:38 - 2016-02-29 22:39 - 00000000 ____D C:\Users\Re\AppData\Local\AvgSetupLog
      2016-02-29 22:38 - 2016-02-29 22:38 - 00000000 ____D C:\Users\Re\AppData\Local\Avg
      2016-02-29 22:35 - 2016-02-29 22:35 - 02945520 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Re\Downloads\AVG_Internet_Security_695.exe
      2016-02-29 22:17 - 2016-02-29 22:18 - 00000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
      2016-02-29 22:17 - 2016-02-29 22:17 - 00003820 _____ C:\Windows\System32\Tasks\SettingsHibernateMonitor
      2016-02-29 22:17 - 2016-02-29 22:17 - 00003746 _____ C:\Windows\System32\Tasks\SettingsEventHandlerMonitor
      2016-02-29 22:17 - 2016-02-29 22:17 - 00003612 _____ C:\Windows\System32\Tasks\LaunchSettings
      2016-02-29 22:17 - 2016-02-29 22:17 - 00002096 _____ C:\Users\Public\Desktop\Samsung Settings.lnk
      2016-02-29 22:17 - 2016-02-29 22:17 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
      2016-02-29 22:17 - 2015-06-24 16:05 - 00024968 _____ (Samsung Electronics Co. Ltd.) C:\Windows\SysWOW64\wsabi.dll
      2016-02-29 22:17 - 2015-06-24 16:05 - 00008072 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\wmof64.dll
      2016-02-29 22:14 - 2016-02-29 22:14 - 00000000 ____D C:\ProgramData\ColorMode
      2016-02-29 22:07 - 2016-02-29 22:07 - 00000144 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
      2016-02-29 22:05 - 2016-02-29 22:05 - 00000000 ____D C:\Users\Re\Intel
      2016-02-29 22:05 - 2016-02-29 22:05 - 00000000 ____D C:\Users\Re\AppData\Local\Samsung
      2016-02-29 22:00 - 2016-02-29 22:00 - 00000000 ____D C:\Users\Re\AppData\Roaming\ATI
      2016-02-29 22:00 - 2016-02-29 22:00 - 00000000 ____D C:\Users\Re\AppData\Local\ATI
      2016-02-29 22:00 - 2016-02-29 22:00 - 00000000 ____D C:\ProgramData\ATI
      2016-02-29 21:56 - 2016-03-01 09:00 - 00001967 _____ C:\Users\Public\Desktop\Samsung Update.lnk
      2016-02-29 21:56 - 2016-02-29 22:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
      2016-02-29 21:56 - 2016-02-29 22:17 - 00000000 ____D C:\Program Files (x86)\Samsung
      2016-02-29 21:56 - 2016-02-29 22:00 - 00000000 ____D C:\ProgramData\Samsung
      2016-02-29 21:56 - 2016-02-29 21:56 - 00000000 ____D C:\Users\Re\AppData\Roaming\WinRAR
      2016-02-29 21:56 - 2016-02-29 21:56 - 00000000 ____D C:\Users\Re\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
      2016-02-29 21:56 - 2016-02-29 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
      2016-02-29 21:56 - 2016-02-29 21:56 - 00000000 ____D C:\Program Files\WinRAR
      2016-02-29 21:55 - 2016-02-29 21:55 - 02090888 _____ C:\Users\Re\Downloads\winrar-x64-531es.exe
      2016-02-29 21:54 - 2016-02-29 21:54 - 25230671 _____ C:\Users\Re\Downloads\SWUpdate_2.2.7.20.ZIP
      2016-02-29 21:53 - 2016-02-29 21:53 - 00003186 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1456793586
      2016-02-29 21:53 - 2016-02-29 21:53 - 00001082 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
      2016-02-29 21:53 - 2016-02-29 21:53 - 00001082 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
      2016-02-29 21:53 - 2016-02-29 21:53 - 00000000 ____D C:\Program Files\Common Files\Atheros
      2016-02-29 21:52 - 2016-02-29 21:52 - 00003194 _____ C:\Windows\System32\Tasks\RTKCPL
      2016-02-29 21:52 - 2016-02-29 21:52 - 00000000 ____H C:\ProgramData\DP45977C.lfl
      2016-02-29 21:52 - 2016-02-29 21:52 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
      2016-02-29 21:52 - 2016-02-29 21:52 - 00000000 ____D C:\Windows\system32\SRSLabs
      2016-02-29 21:52 - 2016-02-29 21:52 - 00000000 ____D C:\Program Files\Realtek
      2016-02-29 21:51 - 2016-02-29 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
      2016-02-29 21:51 - 2016-02-29 21:51 - 00000000 ____D C:\Program Files\ATI Technologies
      2016-02-29 21:51 - 2016-02-29 21:37 - 00398152 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
      2016-02-29 21:47 - 2016-03-01 16:07 - 00000000 __SHD C:\Users\Re\IntelGraphicsProfiles
      2016-02-29 21:46 - 2016-03-01 09:07 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
      2016-02-29 21:44 - 2016-02-29 21:52 - 00002346 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2016-02-29 21:44 - 2016-02-29 21:52 - 00002334 _____ C:\Users\Public\Desktop\Google Chrome.lnk
      2016-02-29 21:43 - 2016-02-29 21:43 - 00000000 ____D C:\Program Files\Intel
      2016-02-29 21:43 - 2016-02-29 21:43 - 00000000 ____D C:\Program Files (x86)\Intel
      2016-02-29 21:43 - 2016-02-29 21:43 - 00000000 ____D C:\Intel
      2016-02-29 21:43 - 2015-12-16 20:07 - 00082664 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
      2016-02-29 21:42 - 2016-03-01 00:19 - 00000000 ____D C:\Users\Re\AppData\Local\Google
      2016-02-29 21:42 - 2016-02-29 21:52 - 00004134 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
      2016-02-29 21:42 - 2016-02-29 21:52 - 00003902 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
      2016-02-29 21:42 - 2016-02-29 21:52 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
      2016-02-29 21:42 - 2016-02-29 21:52 - 00001072 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
      2016-02-29 21:42 - 2016-02-29 21:44 - 00000000 ____D C:\Program Files (x86)\Google
      2016-02-29 21:42 - 2016-02-29 21:42 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
      2016-02-29 21:39 - 2016-02-29 21:39 - 00000000 ____D C:\Users\Re\AppData\Roaming\AVAST Software
      2016-02-29 21:38 - 2016-02-29 21:52 - 00004006 _____ C:\Windows\System32\Tasks\avast! Emergency Update
      2016-02-29 21:38 - 2016-02-29 21:38 - 00552880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
      2016-02-29 21:38 - 2016-02-29 21:38 - 00463744 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
      2016-02-29 21:38 - 2016-02-29 21:38 - 00287016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
      2016-02-29 21:38 - 2016-02-29 21:38 - 00001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk
      2016-02-29 21:38 - 2016-02-29 21:38 - 00001967 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
      2016-02-29 21:38 - 2016-02-29 21:37 - 01065720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
      2016-02-29 21:38 - 2016-02-29 21:37 - 00165344 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
      2016-02-29 21:38 - 2016-02-29 21:37 - 00107792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
      2016-02-29 21:38 - 2016-02-29 21:37 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
      2016-02-29 21:38 - 2016-02-29 21:37 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
      2016-02-29 21:38 - 2016-02-29 21:37 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
      2016-02-29 21:37 - 2016-03-01 10:05 - 00000000 ____D C:\ProgramData\Package Cache
      2016-02-29 21:37 - 2016-02-29 22:19 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
      2016-02-29 21:37 - 2016-02-29 21:37 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr
      2016-02-29 21:36 - 2016-02-29 21:36 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
      2016-02-29 21:36 - 2016-02-29 21:36 - 00000000 ____D C:\Program Files\AMD
      2016-02-29 21:36 - 2016-02-29 21:36 - 00000000 ____D C:\AMD
      2016-02-29 21:36 - 2016-02-29 21:36 - 00000000 _____ C:\Windows\ativpsrm.bin
      2016-02-29 21:35 - 2016-02-29 21:42 - 00000000 ____D C:\Program Files\AVAST Software
      2016-02-29 21:33 - 2016-02-29 21:35 - 05178000 _____ (AVAST Software) C:\Users\Re\Downloads\avast_internet_security_setup_online (1).exe
      2016-02-29 21:30 - 2016-02-29 21:30 - 00000000 ____D C:\Users\Re\AppData\Local\Comms
      2016-02-29 21:21 - 2016-02-29 21:42 - 00000000 ____D C:\ProgramData\AVAST Software
      2016-02-29 21:21 - 2016-02-29 21:21 - 05178000 _____ (AVAST Software) C:\Users\Re\Downloads\avast_internet_security_setup_online.exe
      2016-02-29 21:21 - 2016-02-29 21:21 - 05178000 _____ (AVAST Software) C:\Users\Public\Desktop\avast_internet_security_setup_online.exe
      2016-02-29 21:20 - 2016-02-29 21:20 - 00000000 ____D C:\Users\Re\AppData\Local\MicrosoftEdge
      2016-02-29 21:19 - 2016-02-29 21:19 - 00002329 _____ C:\Users\Re\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
      2016-02-29 21:19 - 2016-02-29 21:19 - 00000000 ___RD C:\Users\Re\OneDrive
      2016-02-29 21:18 - 2016-02-29 21:18 - 00000000 ____D C:\Users\Re\AppData\Local\ActiveSync
      2016-02-29 21:18 - 2016-02-29 21:18 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
      2016-02-29 21:17 - 2016-02-29 21:17 - 00000000 ____D C:\Users\Re\AppData\Local\Publishers
      2016-02-29 21:16 - 2016-03-01 16:06 - 00000000 ____D C:\Users\Re
      2016-02-29 21:16 - 2016-03-01 09:51 - 00000000 ____D C:\Users\Re\AppData\Roaming\Adobe
      2016-02-29 21:16 - 2016-03-01 09:07 - 00000000 __RHD C:\Users\Public\AccountPictures
      2016-02-29 21:16 - 2016-02-29 22:46 - 00000000 ____D C:\Users\Re\AppData\Local\Packages
      2016-02-29 21:16 - 2016-02-29 21:50 - 00000000 ____D C:\Users\Re\AppData\Local\VirtualStore
      2016-02-29 21:16 - 2016-02-29 21:16 - 00000020 ___SH C:\Users\Re\ntuser.ini
      2016-02-29 21:16 - 2016-02-29 21:16 - 00000000 ____D C:\Users\Re\AppData\Local\TileDataLayer
      2016-02-29 21:13 - 2016-03-01 12:34 - 01844040 _____ C:\Windows\system32\PerfStringBackup.INI
      2016-02-29 21:10 - 2016-02-29 21:10 - 00000000 ____D C:\ProgramData\USOShared
      2016-02-29 21:10 - 2015-10-30 04:17 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
      2016-02-29 21:07 - 2016-03-01 16:05 - 00000006 ____H C:\Windows\Tasks\SA.DAT
      2016-02-29 21:04 - 2016-02-29 21:04 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
      2016-02-29 21:03 - 2016-03-01 16:05 - 04882808 _____ C:\Windows\system32\FNTCACHE.DAT
      2016-02-19 03:05 - 2016-02-19 03:05 - 01156656 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
      2016-02-19 03:05 - 2016-02-19 03:05 - 01152504 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
      2016-02-19 03:05 - 2016-02-19 03:05 - 00230320 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
      2016-02-19 03:05 - 2016-02-19 03:05 - 00195024 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
      2016-02-19 03:05 - 2016-02-19 03:05 - 00170032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
      2016-02-19 03:04 - 2016-02-19 03:04 - 00468360 _____ (Intel Corporation) C:\Windows\system32\igdmd64.dll
      2016-02-19 03:04 - 2016-02-19 03:04 - 00379488 _____ (Intel Corporation) C:\Windows\SysWOW64\igdmd32.dll
      2016-02-19 02:59 - 2016-02-19 02:59 - 00618128 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 04025000 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 02507616 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiVAD64.exe
      2016-02-19 02:58 - 2016-02-19 02:58 - 01469616 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00865968 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00660144 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00617136 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00443968 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUMS64.exe
      2016-02-19 02:58 - 2016-02-19 02:58 - 00386192 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00358576 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00296080 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00224432 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00215696 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v4276.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00191664 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00142512 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00108208 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00073360 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
      2016-02-19 02:58 - 2016-02-19 02:58 - 00069776 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 22914704 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 02036368 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 01994896 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 01793680 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 01767568 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00394304 _____ (Intel Corporation) C:\Windows\system32\igfxTray.exe
      2016-02-19 02:57 - 2016-02-19 02:57 - 00393360 _____ (Intel Corporation) C:\Windows\system32\igfxOSP.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00264848 _____ C:\Windows\system32\igfxCPL.cpl
      2016-02-19 02:57 - 2016-02-19 02:57 - 00194192 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00164496 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00095888 _____ C:\Windows\system32\igfxCUIServicePS.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00078992 _____ ( ) C:\Windows\system32\igfxDHLibv2_0.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00068752 _____ ( ) C:\Windows\system32\igfxDHLib.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00020112 _____ ( ) C:\Windows\system32\igfxDILib.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00019600 _____ ( ) C:\Windows\system32\igfxEMLibv2_0.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00019600 _____ ( ) C:\Windows\system32\igfxEMLib.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00019600 _____ ( ) C:\Windows\system32\igfxDILibv2_0.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00014480 _____ ( ) C:\Windows\system32\igfxLHMLibv2_0.dll
      2016-02-19 02:57 - 2016-02-19 02:57 - 00014480 _____ ( ) C:\Windows\system32\igfxLHMLib.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 17846928 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 08529552 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00374928 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00329872 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00233616 _____ C:\Windows\system32\igdde64.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00195216 _____ C:\Windows\SysWOW64\igdde32.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00171664 _____ C:\Windows\system32\igdail64.dll
      2016-02-19 02:56 - 2016-02-19 02:56 - 00153232 _____ C:\Windows\SysWOW64\igdail32.dll
      2016-02-19 02:55 - 2016-02-19 02:55 - 06512784 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll
      2016-02-19 02:55 - 2016-02-19 02:55 - 00103568 _____ C:\Windows\system32\IccLibDll_x64.dll
      2016-02-19 02:54 - 2016-02-19 02:54 - 04368960 _____ (Intel Corporation) C:\Windows\system32\Gfxv2_0.exe
      2016-02-19 02:54 - 2016-02-19 02:54 - 00969792 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
      2016-02-19 02:54 - 2016-02-19 02:54 - 00556096 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
      2016-02-19 02:54 - 2016-02-19 02:54 - 00410176 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
      2016-02-19 02:54 - 2016-02-19 02:54 - 00409664 _____ (Intel Corporation) C:\Windows\system32\CustomModeAppv2_0.exe
      2016-02-19 02:54 - 2016-02-19 02:54 - 00166464 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
      2016-02-19 02:46 - 2016-02-19 02:46 - 00199752 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
      2016-02-19 02:45 - 2016-02-19 02:45 - 04372544 _____ (Intel Corporation) C:\Windows\system32\Gfxv4_0.exe
      2016-02-19 02:45 - 2016-02-19 02:45 - 00555584 _____ (Intel Corporation) C:\Windows\system32\DPTopologyAppv2_0.exe

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2016-03-01 16:13 - 2015-10-30 04:21 - 00000000 ____D C:\Windows\INF
      2016-03-01 16:04 - 2015-10-30 03:28 - 00262144 ___SH C:\Windows\system32\config\BBI
      2016-03-01 12:34 - 2015-10-30 15:49 - 00816498 _____ C:\Windows\system32\perfh00A.dat
      2016-03-01 12:34 - 2015-10-30 15:49 - 00158270 _____ C:\Windows\system32\perfc00A.dat
      2016-03-01 09:41 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ___SD C:\Windows\system32\F12
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\SysWOW64\es-MX
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\oobe
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\es-MX
      2016-03-01 09:02 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\appraiser
      2016-03-01 09:02 - 2015-10-30 03:28 - 00000000 ____D C:\Windows\SysWOW64\Dism
      2016-03-01 09:02 - 2015-10-30 03:28 - 00000000 ____D C:\Windows\system32\Dism
      2016-03-01 09:01 - 2015-10-30 15:56 - 00000000 ____D C:\Program Files\Windows Journal
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ___RD C:\Windows\PurchaseDialog
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\SysWOW64\MUI
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\MUI
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\Provisioning
      2016-03-01 09:01 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\bcastdvr
      2016-03-01 08:59 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\appcompat
      2016-03-01 01:53 - 2015-10-30 04:24 - 00000000 ___HD C:\Program Files\WindowsApps
      2016-03-01 01:53 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\AppReadiness
      2016-03-01 01:50 - 2015-10-30 04:11 - 00000000 ____D C:\Windows\CbsTemp
      2016-03-01 00:02 - 2015-10-30 04:24 - 00028672 _____ C:\Windows\system32\config\BCD-Template
      2016-02-29 21:29 - 2015-10-30 04:24 - 00000000 ___RD C:\Windows\DevicesFlow
      2016-02-29 21:17 - 2015-10-30 04:24 - 00000000 ___RD C:\Windows\PrintDialog
      2016-02-29 21:17 - 2015-10-30 04:24 - 00000000 ___RD C:\Windows\MiracastView
      2016-02-29 21:16 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase
      2016-02-29 21:11 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\rescache
      2016-02-29 21:10 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\spool
      2016-02-29 21:10 - 2015-10-30 04:24 - 00000000 ____D C:\Windows\system32\FxsTmp
      2016-02-29 21:10 - 2015-10-30 04:24 - 00000000 ____D C:\ProgramData\USOPrivate
      2016-02-29 21:10 - 2015-10-30 03:28 - 00032768 ___SH C:\Windows\system32\config\ELAM
      2016-02-29 21:06 - 2015-10-30 03:28 - 00000000 ____D C:\Windows\system32\Sysprep
      2016-02-29 21:03 - 2015-10-30 16:02 - 00000000 ____D C:\Windows\ServiceProfiles
      2016-02-19 03:05 - 2015-07-30 22:46 - 04638304 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
      2016-02-19 03:05 - 2015-07-30 22:46 - 00041376 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
      2016-02-19 03:04 - 2015-07-30 22:46 - 12334736 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
      2016-02-19 03:04 - 2015-07-30 22:46 - 11053712 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
      2016-02-19 03:04 - 2015-07-30 22:46 - 10575656 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
      2016-02-19 03:04 - 2015-07-30 22:46 - 03671488 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
      2016-02-19 03:03 - 2015-07-30 22:46 - 11906096 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll
      2016-02-19 02:58 - 2015-07-30 22:45 - 00290880 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
      2016-02-19 02:57 - 2015-07-30 22:45 - 03798080 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
      2016-02-19 02:57 - 2015-07-30 22:45 - 00679568 _____ (Intel Corporation) C:\Windows\system32\igfxDH.dll
      2016-02-19 02:57 - 2015-07-30 22:45 - 00540736 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe
      2016-02-19 02:57 - 2015-07-30 22:45 - 00329280 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe
      2016-02-19 02:57 - 2015-07-30 22:45 - 00285840 _____ (Intel Corporation) C:\Windows\system32\igfxDI.dll
      2016-02-19 02:57 - 2015-07-30 22:45 - 00261776 _____ (Intel Corporation) C:\Windows\system32\igfxLHM.dll
      2016-02-19 02:57 - 2015-07-30 22:45 - 00257600 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe
      2016-02-19 02:57 - 2015-07-30 22:45 - 00229520 _____ (Intel Corporation) C:\Windows\system32\igfxDTCM.dll
      2016-02-19 02:57 - 2015-07-30 22:45 - 00204864 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
      2016-02-19 02:57 - 2015-07-30 22:45 - 00040080 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
      2016-02-03 16:01 - 2015-10-30 04:26 - 00828920 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2016-02-03 16:01 - 2015-10-30 04:26 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

      ==================== Files in the root of some directories =======

      2016-02-29 21:52 - 2016-02-29 21:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

      Some files in TEMP:
      ====================
      C:\Users\Re\AppData\Local\Temp\AcDeltree.exe


      ==================== Bamital & volsnap =================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


      LastRegBack: 2016-02-29 21:03

      ==================== End of FRST.txt ============================

    Página 2 de 8 PrimeroPrimero 123456 ... ÚltimoÚltimo