• Registrarse
  • Iniciar sesión


  • Página 3 de 7 PrimeroPrimero 1234567 ÚltimoÚltimo
    Resultados 21 al 30 de 65

    Infeccion svcvmx & vmxclient, WinDefender notifica Malware continuo.(Re-Abierto)

    Lleva mas de una hora con el examen y la barra casi no avanza: Nuevamente reportandome, despues de 8 horas termino el examen: Se realizaron las acciones recomendadas, pero sigo sin poder ejecutar ninguno de ...

    1. #21
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35
      Lleva mas de una hora con el examen y la barra casi no avanza:







      Nuevamente reportandome, despues de 8 horas termino el examen:





      Se realizaron las acciones recomendadas, pero sigo sin poder ejecutar ninguno de los programas que me indicaste

      trate de finalizar el proceso de "svcvmx" con el administrador de tareas, pero inmediatamente se activa de nuevo, como que cualquier archivo ejecutable lo marca como que ya se esta utilizando

      Espero Instrucciones, saludos

      Buenos dias, existe alguna manera de averiguar que impide ejecutar los programas?, o tal vez forzar la ejecucion fuera de windows?, tal vez algo que se autoejecute desde una memoria USB?, solo es una idea, un saludo y gracias por la ayuda

    2. #22
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Hola famo67, entro en el tema a petición de @daniel45450.

      Realiza la siguiente prueba :

      Inicia tu equipo(Windows 10) desde modo seguro con conexión a Red, para trabajar de momento desde ese modo de windows.

      Desconectas tu equipo de Internet(apaga el router) << Muy Importante, y Cierras también cualquier otro programa que pudieras tener abierto.

      Y ahora vuelve a ejecutar el RKiLL que tienes descargado de nombre iRkill.exe, hazlo pulsando clic derecho y seleccionas "Ejecutar como Administrador".

      Si logras que se ejecute de esa manera y sin hacer nada mas, prueba de nuevo a realizar la instalación del Malwarebytes, para hacer la instalación lo haces igualmente con clic derecho y seleccionas "Ejecutar como Administrador".

      Y nos comentas como ha ido.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    3. #23
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Hola , muchas gracias por tu ayuda, inicie en modo seguro con conexion a red como recomendaste y desconecte el router, trate de ejecutar IRkill.exe pero sigue marcando que "ya se esta ejecutando el recurso solicitado", como dato te comento que en modo seguro me salio el mensaje de "esta inactivo el centro de seguridad de windows", y no me dejo activarlo.

      Al momento de reiniciar en modo normal si esta funcionando el centro de seguridad pero sigue sin dejarme ejecutar los programas que me indicaron, un saludo.

    4. #24
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Hola.

      Entonces ahora sigue estos pasos :

      1.- Descarga a tu escritorio la herramienta >> TDSSKiller.

      2.- Desconecta el equipo de Internet – Apaga el Router/Quita el cable, es muy importante.

      3.- Ejecutar TDSSKiller según las indicaciones del Manual. (Si usas Windows Vista/7/8 o 10 haz clic derecho y selecciona "Ejecutar como Administrador").

      4.- Guarda el log/informe para ponerlo en tu siguiente respuesta.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    5. #25
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35
      Buenos dias, segui tus instrucciones y descargue TDSSKiller, en la descarga aparece como .exe y no como .zip, pero de todas formas lo descargue en el escritorio.

      Reinicie mi pc en modo seguro, desconecte el modem y el cable, segui las intrucciones del manual cambiando el primero el nombre y despues poniendole nombres aleatorios con .com y finalmente con .pif, pero sigue sin dejarme ejecutarlo, me sigue marcando "ya se esta ejecutando el recurso solicitado".

      Comento que ya no me dejaba conectarme a internet en este foro y entre al panel de control de la pc, busuqe la tarea "svcvmx.exe", me fui a detalles y aparece varias veces vmxclient.exe, reduje la prioridad de cada una de ellas y fue entonces que me dejo descargar el programa, un saludo desde Chihuahua, México

      Alguna sugerencia?

    6. #26
      Moderador Gral.
      Avatar de @Javier_HF
      Registrado
      jun 2006
      Ubicación
      Spain.
      Mensajes
      21.692

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Hola.

      Parece que se nos complica el uso de herramientas.

      Veamos si puedes usar esta herramienta, úsala primero desde el modo normal, y de no dejarte inténtalo desde modo seguro.

      • Mantén tu ROUTER APAGADO DURANTE los procedimientos.
      • Desactivamos temporalmente el antivirus y/o cualquier programa de seguridad que tengamos.
      • Descarga >> Farbar Recovery Scan Tool seleccionando la versión adecuada para la arquitectura(32 o 64bits) de tu equipo. ¿Cómo saber si mi Windows es de 32 o 64 bits?
      • Guardamos la versión seleccionada de "FRST" en el escritorio >> Esto es muy importante..
      • Hacemos doble click para ejecutar FRST.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona "Ejecutar como Administrador.")
      • En el mensaje de la ventana del Disclaimer, pulsamos Yes.
      • En la ventana principal pulsamos en el botón Scan y esperamos a que concluya el análisis.
      • Se abrirán dos(2) archivos(Logs), Frst.txt y Addition.txt, estos quedaran grabados en el escritorio.

      Para terminar abres los archivos Frst.txt y Addition.Txt para copiarlos y pegarlos con todo su contenido en tu próxima respuesta.

      Utilizaremos varios mensajes si recibimos un mensaje de error indicando que es muy largo.

      Saludos.
      Quien no lo intenta no lo consigue | ;-)

      * Síguenos en nuestro Twitter y hazte nuestro amigo en Facebook.
      * Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
      * No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.

    7. #27
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Este si me dejo ejecutarlo , este el es la primera parte del reporte FRST.TXT

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2017
      Ran by Kólob de México (administrator) on KOLOB (16-05-2017 09:44:35)
      Running from C:\Users\Walmart 2000\Desktop
      Loaded Profiles: Kólob de México (Available Profiles: Kólob de México)
      Platform: Windows 10 Home Single Language Version 1607 (X64) Language: Español (España, internacional)
      Internet Explorer Version 11 (Default browser: FF)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: ***********************************************************************************************************

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (Microsoft Corporation) C:\Windows\System32\wlanext.exe
      () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\dataup\dataup.exe
      (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
      (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
      (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
      () C:\Windows\System32\tprdpw64.exe
      (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (Wistron Corporation) C:\Program Files\Dell\DpmLite\DpmLiteEvent.exe
      (Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
      (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
      (Microsoft® Windows® Operating System) C:\Windows\System32\Taskmgr.exe
      () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\svcvmx.exe
      () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\vmxclient.exe
      () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\vmxclient.exe
      () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe
      (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
      (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
      (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe

      ==================== Registry (Whitelisted) ====================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8852512 2016-09-07] (Realtek Semiconductor)
      HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1471512 2016-09-07] (Realtek Semiconductor)
      HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3946600 2015-10-15] (Synaptics Incorporated)
      HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
      HKLM\...\Run: [DpmLiteEvent] => C:\Program Files\Dell\DpmLite\DpmLiteEvent.exe [2537776 2014-11-19] (Wistron Corporation)
      HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
      HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [724400 2016-07-24] (Waves Audio Ltd.)
      HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-27] (Microsoft Corporation)
      HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
      HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
      HKLM-x32\...\Run: [cpx] => "C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\cpx\cpx.exe" -starup <===== ATTENTION
      HKLM-x32\...\Run: [svcvmx] => C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\svcvmx.exe [884224 2017-04-21] ()
      HKLM-x32\...\Run: [UnlockerAssistant] => "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe"
      HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [141760 2017-02-22] (Panda Security, S.L.)
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [Epson Stylus Photo T50] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFFL.EXE [223232 2008-10-09] (SEIKO EPSON CORPORATION)
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [WhatsApp] => C:\Users\Walmart 2000\AppData\Local\WhatsApp\app-0.2.4240\WhatsApp.exe [88291088 2017-05-02] (WhatsApp)
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [NY0YJZ5CQXV52AW] => "C:\Program Files\X6WUB8I019\X6WUB8I01.exe"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [8HBRRR3BB2XG5OL] => "C:\Program Files\W0FSJ1S7GB\W0FSJ1S7G.exe"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [924664] => C:\Users\Walmart 2000\AppData\Roaming\404715\330569.exe [7680 2017-05-09] (Vespa)
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\Run: [745026] => C:\Users\Walmart 2000\AppData\Roaming\639748\326616.exe [7680 2017-05-09] (Vespa)
      IFEO\AcroRd32.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\capture.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\codectweaktool.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\connect.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\coreldrw.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\corelpp.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\dcctrayapp.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\deliverytray.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\effectextractor.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\epsdnavi.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\e_gupa30.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\e_iinsffl.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\fontnav.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\javacpl.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\javaw.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\javaws.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\onedrive.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\pdr13.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\productregistration.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\shellhelper.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\update.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\videobrowser.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      IFEO\wifiprotlauncher.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
      ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
      ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
      GroupPolicyScripts: Restriction <======= ATTENTION
      GroupPolicyScripts-x32: Restriction <======= ATTENTION

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      ProxyEnable: [S-1-5-21-1577294839-1248520855-4163237406-1001] => Proxy is enabled.
      Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
      Tcpip\Parameters: [DhcpNameServer] 10.128.128.128
      Tcpip\..\Interfaces\{1652b309-43de-4220-b627-e1fba8c17a65}: [NameServer] 208.67.222.222,208.67.220.220
      Tcpip\..\Interfaces\{1652b309-43de-4220-b627-e1fba8c17a65}: [DhcpNameServer] 8.34.34.92 8.35.35.92
      Tcpip\..\Interfaces\{40727290-5191-4BCC-8E09-F5292C005B16}: [DhcpNameServer] 74.120.221.145 74.120.221.147
      Tcpip\..\Interfaces\{729b7cfc-a63e-4bbb-ba5b-93a35e5a9f04}: [DhcpNameServer] 10.128.128.128

      Internet Explorer:
      ==================
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com.mx/?gws_rd=ssl
      BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
      BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-04-26] (McAfee, Inc.)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
      BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
      BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-24] (Oracle Corporation)
      BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-04-26] (McAfee, Inc.)
      BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
      BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-24] (Oracle Corporation)
      Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-04-26] (McAfee, Inc.)
      Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-04-26] (McAfee, Inc.)
      Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2017-02-28] (McAfee, Inc.)
      Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2017-02-28] (McAfee, Inc.)

      FireFox:
      ========
      FF DefaultProfile: kq2xqph3.default
      FF ProfilePath: C:\Users\Walmart 2000\AppData\Roaming\Mozilla\Firefox\Profiles\kq2xqph3.default [2017-05-16]
      FF NewTab: Mozilla\Firefox\Profiles\kq2xqph3.default -> www.google.com.mx
      FF DefaultSearchEngine: Mozilla\Firefox\Profiles\kq2xqph3.default -> Google
      FF SelectedSearchEngine: Mozilla\Firefox\Profiles\kq2xqph3.default -> Google
      FF Homepage: Mozilla\Firefox\Profiles\kq2xqph3.default -> www.google.com.mx
      FF Extension: (Block site) - C:\Users\Walmart 2000\AppData\Roaming\Mozilla\Firefox\Profiles\kq2xqph3.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc} [2017-05-10]
      FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
      FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-04-18]
      FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
      FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSK
      FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2017-05-11] [not signed]
      FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2017-02-28] ()
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
      FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-20] (Intel Corporation)
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-20] (Intel Corporation)
      FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-24] (Oracle Corporation)
      FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-24] (Oracle Corporation)
      FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2017-02-28] ()
      FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
      FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-04] (Adobe Systems Inc.)

      Chrome:
      =======
      CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx

      ==================== Services (Whitelisted) ====================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      "drmkpro64" => service could not be unlocked. <===== ATTENTION

      S4 0046921494549219mcinstcleanup; C:\Users\Walmart 2000\AppData\Local\Temp\0046921494549219mcinst.exe [1030904 2017-02-09] (McAfee, Inc.) <==== ATTENTION
      S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
      S4 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
      S4 ClientAnalyticsService; C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe [1752992 2017-03-29] (Intel Security)
      R2 Dataup; C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\dataup\dataup.exe [77824 2017-01-05] () [File not signed] <==== ATTENTION
      S4 DbxSvc; C:\Windows\system32\DbxSvc.exe [42096 2016-12-21] (Dropbox, Inc.)
      S4 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2016-12-21] (Dell Inc.)
      S4 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell)
      S4 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [87888 2016-05-19] ()
      S4 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2572024 2016-06-23] (Dell Inc.)
      S4 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [229376 2016-05-02] (Dell Inc.)
      S4 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
      S4 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
      S4 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [150256 2015-07-13] (Intel Corporation)
      S4 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373760 2016-06-07] (Intel Corporation)
      S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-21] (Intel(R) Corporation)
      S4 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
      S4 Intel(R) WiDi SAM; C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-16] (Intel Corporation)
      S4 IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [396992 2015-07-06] (Intel)
      S4 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
      S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-23] (Intel Corporation)
      S4 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [188256 2017-04-26] (McAfee, Inc.)
      S2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe [994312 2017-03-13] (McAfee, Inc.)
      S4 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S4 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\2.3.322.0\\McCSPServiceHost.exe [2054080 2017-02-28] (McAfee, Inc.)
      S2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S4 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S4 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [1344472 2017-02-24] (McAfee, Inc.)
      S4 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S4 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [241040 2017-01-18] (McAfee, Inc.)
      S2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [385112 2017-01-18] (McAfee, Inc.)
      S3 mfevtp; C:\Windows\system32\mfevtps.exe [343792 2017-01-18] (McAfee, Inc.)
      S2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1551512 2017-02-26] (McAfee, Inc.)
      S4 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
      S4 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-04-04] ()
      S2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [110384 2017-02-14] (Panda Security, S.L.)
      S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
      S4 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [86104 2016-07-19] (Panda Security, S.L.)
      S4 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1104304 2016-11-15] (Intel Security, Inc.)
      S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
      S4 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [80208 2016-09-22] (Dell)
      S4 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (arvato digital services llc)
      S2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [47096 2017-04-25] (Panda Security, S.L.)
      S4 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-22] (CyberLink)
      S4 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [323344 2016-09-07] (Realtek Semiconductor)
      S4 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [32728 2017-04-25] (Dell Inc.)
      S4 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246376 2015-10-15] (Synaptics Incorporated)
      S4 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [5906704 2017-02-21] (AVG Technologies CZ, s.r.o.)
      S4 WavesSysSvc; c:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [613296 2016-06-14] (Waves Audio Ltd.)
      R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-27] (Microsoft Corporation)
      R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-27] (Microsoft Corporation)
      S2 windowsmanagementservice; C:\Users\Walmart 2000\AppData\Local\lttyk\ct.exe [651776 2017-05-04] () [File not signed] <==== ATTENTION
      S4 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3833248 2016-04-04] (Intel® Corporation)

      ===================== Drivers (Whitelisted) ======================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S3 aswTap; C:\Windows\System32\drivers\aswTap.sys [53904 2017-02-08] (The OpenVPN Project)
      S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [88464 2017-01-20] (McAfee, Inc.)
      S3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2016-06-23] (Dell Computer Corporation)
      S3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2016-06-23] (Dell Computer Corporation)
      R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
      S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
      S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
      R2 DpmLiteDrv; C:\Program Files\Dell\DpmLite\DpmLiteDrv64.sys [15080 2014-10-14] (Wistron Corp.)
      S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.)
      S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [54736 2017-05-09] ()
      S3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [46856 2015-06-15] (Intel Corporation)
      S3 iaLPSS_SPI; C:\Windows\System32\drivers\iaLPSS_SPI.sys [113416 2015-06-15] (Intel Corporation)
      S3 iaLPSS_UART2; C:\Windows\System32\drivers\iaLPSS_UART2.sys [155400 2015-06-15] (Intel Corporation)
      R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [255216 2015-07-13] (Intel Corporation)
      R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [487184 2017-01-20] (McAfee, Inc.)
      R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [366328 2017-01-20] (McAfee, Inc.)
      S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [85048 2017-01-23] (McAfee, Inc.)
      R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [518704 2017-01-20] (McAfee, Inc.)
      R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [923640 2017-01-20] (McAfee, Inc.)
      R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [498648 2017-01-19] (McAfee, Inc.)
      S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [109320 2017-01-19] (McAfee, Inc.)
      R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [110256 2017-01-20] (McAfee, Inc.)
      S3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
      R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [254800 2017-01-20] (McAfee, Inc.)
      S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
      R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3537672 2017-02-18] (Intel Corporation)
      R1 NNSALPC; C:\Windows\system32\DRIVERS\NNSALPC.sys [106928 2016-07-05] (Panda Security, S.L.)
      R1 NNSHTTP; C:\Windows\system32\DRIVERS\NNSHTTP.sys [211376 2016-07-05] (Panda Security, S.L.)
      R1 NNSHTTPS; C:\Windows\system32\DRIVERS\NNSHTTPS.sys [119728 2016-07-05] (Panda Security, S.L.)
      R1 NNSIDS; C:\Windows\system32\DRIVERS\NNSIDS.sys [125872 2016-07-05] (Panda Security, S.L.)
      R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [80152 2016-07-06] (Panda Security, S.L.)
      R1 NNSPICC; C:\Windows\system32\DRIVERS\NNSPICC.sys [116656 2016-07-05] (Panda Security, S.L.)
      R1 NNSPIHSW; C:\Windows\system32\DRIVERS\NNSPIHSW.sys [90032 2016-07-05] (Panda Security, S.L.)
      R1 NNSPOP3; C:\Windows\system32\DRIVERS\NNSPOP3.sys [135088 2016-07-05] (Panda Security, S.L.)
      R1 NNSPROT; C:\Windows\system32\DRIVERS\NNSPROT.sys [335792 2016-07-05] (Panda Security, S.L.)
      R1 NNSPRV; C:\Windows\system32\DRIVERS\NNSPRV.sys [197040 2016-07-05] (Panda Security, S.L.)
      R1 NNSSMTP; C:\Windows\system32\DRIVERS\NNSSMTP.sys [123312 2016-07-05] (Panda Security, S.L.)
      R1 NNSSTRM; C:\Windows\system32\DRIVERS\NNSSTRM.sys [278960 2016-07-05] (Panda Security, S.L.)
      R1 NNSTLSC; C:\Windows\system32\DRIVERS\NNSTLSC.sys [125360 2016-07-05] (Panda Security, S.L.)
      R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-01-02] (Riverbed Technology, Inc.)
      R2 PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [177424 2017-02-12] (Panda Security, S.L.)
      R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [129296 2017-02-12] (Panda Security, S.L.)
      R1 PSINKNC; C:\Windows\system32\DRIVERS\PSINKNC.sys [205584 2017-02-20] (Panda Security, S.L.)
      R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [131344 2017-02-12] (Panda Security, S.L.)
      R2 PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [144656 2017-02-12] (Panda Security, S.L.)
      R2 PSINReg; C:\Windows\system32\DRIVERS\PSINReg.sys [114960 2017-02-12] (Panda Security, S.L.)
      S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [72112 2016-08-09] (Panda Security, S.L.)
      R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek )
      R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [416472 2016-05-17] (Realsil Semiconductor Corporation)
      R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [56936 2015-10-15] (Synaptics Incorporated)
      R3 taphss6; C:\Windows\System32\drivers\taphss6.sys [42064 2017-03-01] (Anchorfree Inc.)
      S3 tapwp01; C:\Windows\System32\drivers\tapwp01.sys [40664 2014-12-11] (The OpenVPN Project)
      S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2017-02-21] (AVG Netherlands B.V.)
      R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [212056 2015-07-06] (Windows (R) Win 7 DDK provider)
      S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
      R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
      R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
      R3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation)
      R5 drmkpro64; <===== ATTENTION: Locked Service
      U4 UnlockerDriver5; \??\C:\Users\Walmart 2000\AppData\Local\Temp\Rar$EXa0.311\x86\UnlockerDriver5.sys [X] <==== ATTENTION

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    8. #28
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Esta es la segunda parte

      ==================== One Month Created files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-05-16 09:44 - 2017-05-16 09:45 - 00027647 _____ C:\Users\Walmart 2000\Desktop\FRST.txt
      2017-05-16 09:44 - 2017-05-16 09:44 - 00000000 ____D C:\FRST
      2017-05-16 09:37 - 2017-05-16 09:43 - 02429952 _____ (Farbar) C:\Users\Walmart 2000\Desktop\FRST64.exe
      2017-05-15 15:02 - 2017-05-15 15:04 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\rkill.com
      2017-05-15 15:02 - 2017-05-15 15:03 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\WiNlOgOn.exe
      2017-05-15 15:02 - 2017-05-15 15:03 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\uSeRiNiT.exe
      2017-05-15 15:02 - 2017-05-15 15:03 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\rkill.scr
      2017-05-15 15:02 - 2017-05-15 15:03 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\eXplorer.exe
      2017-05-15 14:33 - 2017-05-15 14:36 - 04830473 _____ C:\Users\Walmart 2000\Desktop\tdsskiller.zip
      2017-05-15 13:44 - 2017-05-15 14:32 - 199164150 _____ C:\Users\Walmart 2000\Downloads\2733_4.mp4
      2017-05-15 13:44 - 2017-05-15 14:30 - 199161722 _____ C:\Users\Walmart 2000\Downloads\2733_5.mp4
      2017-05-15 13:44 - 2017-05-15 14:26 - 199201743 _____ C:\Users\Walmart 2000\Downloads\2733_3.mp4
      2017-05-15 13:39 - 2017-05-15 13:39 - 00000150 _____ C:\Users\Walmart 2000\Downloads\enlaces.txt
      2017-05-15 08:39 - 2017-05-15 14:36 - 04922400 _____ (AO Kaspersky Lab) C:\Users\Walmart 2000\Desktop\TDSSKiller.exe
      2017-05-14 12:33 - 2017-05-14 12:36 - 00000201 _____ C:\Users\Walmart 2000\Desktop\Magaña.txt
      2017-05-14 07:53 - 2017-05-14 08:10 - 199138999 _____ C:\Users\Walmart 2000\Downloads\07 Granblue fantasy the animation.mp4
      2017-05-14 07:53 - 2017-05-14 08:07 - 199345099 _____ C:\Users\Walmart 2000\Downloads\06 ReCreators.mp4
      2017-05-12 15:21 - 2017-05-12 15:21 - 00000083 _____ C:\Users\Walmart 2000\Desktop\instruccion cmd.txt
      2017-05-12 14:44 - 2017-05-12 15:05 - 199226112 _____ C:\Users\Walmart 2000\Downloads\06 Seikaisuru Kado.mp4
      2017-05-12 14:44 - 2017-05-12 15:04 - 199216721 _____ C:\Users\Walmart 2000\Downloads\07 Berserk III.mp4
      2017-05-12 12:17 - 2017-04-27 18:46 - 05722320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
      2017-05-12 12:17 - 2017-04-27 18:46 - 01504056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
      2017-05-12 12:17 - 2017-04-27 18:43 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
      2017-05-12 12:17 - 2017-04-27 18:40 - 06665952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
      2017-05-12 12:17 - 2017-04-27 18:39 - 20967840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
      2017-05-12 12:17 - 2017-04-27 18:29 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
      2017-05-12 12:17 - 2017-04-27 18:22 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
      2017-05-12 12:17 - 2017-04-27 18:21 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
      2017-05-12 12:17 - 2017-04-27 18:18 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
      2017-05-12 12:17 - 2017-04-27 18:05 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
      2017-05-12 12:17 - 2017-04-27 17:58 - 07468544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
      2017-05-12 12:17 - 2017-04-27 17:57 - 01221120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
      2017-05-12 12:17 - 2017-04-27 17:56 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
      2017-05-12 12:17 - 2017-04-27 17:54 - 02483200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2017-05-12 12:17 - 2017-04-27 17:54 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
      2017-05-12 12:17 - 2017-04-27 17:52 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
      2017-05-12 12:17 - 2017-04-27 17:52 - 01600000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2017-05-12 12:17 - 2017-04-27 17:50 - 00783360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
      2017-05-12 12:17 - 2017-03-04 01:57 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
      2017-05-12 12:17 - 2017-03-04 00:17 - 00529920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
      2017-05-12 12:16 - 2017-04-27 19:28 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
      2017-05-12 12:16 - 2017-04-27 18:59 - 00601712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
      2017-05-12 12:16 - 2017-04-27 18:56 - 02048488 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
      2017-05-12 12:16 - 2017-04-27 18:55 - 00088416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
      2017-05-12 12:16 - 2017-04-27 18:53 - 00616048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2017-05-12 12:16 - 2017-04-27 18:48 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
      2017-05-12 12:16 - 2017-04-27 18:46 - 01431232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
      2017-05-12 12:16 - 2017-04-27 18:45 - 02263832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2017-05-12 12:16 - 2017-04-27 18:45 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
      2017-05-12 12:16 - 2017-04-27 18:45 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
      2017-05-12 12:16 - 2017-04-27 18:45 - 00781144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
      2017-05-12 12:16 - 2017-04-27 18:45 - 00493920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
      2017-05-12 12:16 - 2017-04-27 18:45 - 00116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
      2017-05-12 12:16 - 2017-04-27 18:43 - 02168288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
      2017-05-12 12:16 - 2017-04-27 18:43 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2017-05-12 12:16 - 2017-04-27 18:43 - 01557224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
      2017-05-12 12:16 - 2017-04-27 18:42 - 00601952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
      2017-05-12 12:16 - 2017-04-27 18:41 - 00361104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 04023008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 01851696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 01360456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 01277856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 01202936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 00981888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
      2017-05-12 12:16 - 2017-04-27 18:40 - 00857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
      2017-05-12 12:16 - 2017-04-27 18:40 - 00352760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
      2017-05-12 12:16 - 2017-04-27 18:39 - 04312248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
      2017-05-12 12:16 - 2017-04-27 18:39 - 00962760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
      2017-05-12 12:16 - 2017-04-27 18:39 - 00715104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
      2017-05-12 12:16 - 2017-04-27 18:38 - 00557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
      2017-05-12 12:16 - 2017-04-27 18:35 - 01414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
      2017-05-12 12:16 - 2017-04-27 18:35 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
      2017-05-12 12:16 - 2017-04-27 18:23 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
      2017-05-12 12:16 - 2017-04-27 18:23 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
      2017-05-12 12:16 - 2017-04-27 18:22 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
      2017-05-12 12:16 - 2017-04-27 18:21 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BthTelemetry.dll
      2017-05-12 12:16 - 2017-04-27 18:20 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
      2017-05-12 12:16 - 2017-04-27 18:20 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\virtdisk.dll
      2017-05-12 12:16 - 2017-04-27 18:19 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
      2017-05-12 12:16 - 2017-04-27 18:19 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
      2017-05-12 12:16 - 2017-04-27 18:18 - 00450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
      2017-05-12 12:16 - 2017-04-27 18:18 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
      2017-05-12 12:16 - 2017-04-27 18:17 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
      2017-05-12 12:16 - 2017-04-27 18:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
      2017-05-12 12:16 - 2017-04-27 18:17 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
      2017-05-12 12:16 - 2017-04-27 18:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
      2017-05-12 12:16 - 2017-04-27 18:17 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
      2017-05-12 12:16 - 2017-04-27 18:16 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
      2017-05-12 12:16 - 2017-04-27 18:16 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00237568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
      2017-05-12 12:16 - 2017-04-27 18:15 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
      2017-05-12 12:16 - 2017-04-27 18:15 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
      2017-05-12 12:16 - 2017-04-27 18:14 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
      2017-05-12 12:16 - 2017-04-27 18:14 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
      2017-05-12 12:16 - 2017-04-27 18:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
      2017-05-12 12:16 - 2017-04-27 18:13 - 13873664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 01755136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
      2017-05-12 12:16 - 2017-04-27 18:13 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
      2017-05-12 12:16 - 2017-04-27 18:12 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
      2017-05-12 12:16 - 2017-04-27 18:12 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
      2017-05-12 12:16 - 2017-04-27 18:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
      2017-05-12 12:16 - 2017-04-27 18:12 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
      2017-05-12 12:16 - 2017-04-27 18:11 - 00846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
      2017-05-12 12:16 - 2017-04-27 18:11 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
      2017-05-12 12:16 - 2017-04-27 18:11 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00857600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00764928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
      2017-05-12 12:16 - 2017-04-27 18:10 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
      2017-05-12 12:16 - 2017-04-27 18:09 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
      2017-05-12 12:16 - 2017-04-27 18:09 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
      2017-05-12 12:16 - 2017-04-27 18:09 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2017-05-12 12:16 - 2017-04-27 18:09 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
      2017-05-12 12:16 - 2017-04-27 18:09 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
      2017-05-12 12:16 - 2017-04-27 18:08 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
      2017-05-12 12:16 - 2017-04-27 18:08 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
      2017-05-12 12:16 - 2017-04-27 18:08 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
      2017-05-12 12:16 - 2017-04-27 18:08 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
      2017-05-12 12:16 - 2017-04-27 18:08 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
      2017-05-12 12:16 - 2017-04-27 18:07 - 03689984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
      2017-05-12 12:16 - 2017-04-27 18:07 - 00525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
      2017-05-12 12:16 - 2017-04-27 18:07 - 00256512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
      2017-05-12 12:16 - 2017-04-27 18:06 - 04614656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
      2017-05-12 12:16 - 2017-04-27 18:06 - 02333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
      2017-05-12 12:16 - 2017-04-27 18:06 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
      2017-05-12 12:16 - 2017-04-27 18:06 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
      2017-05-12 12:16 - 2017-04-27 18:05 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
      2017-05-12 12:16 - 2017-04-27 18:05 - 00886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
      2017-05-12 12:16 - 2017-04-27 18:05 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
      2017-05-12 12:16 - 2017-04-27 18:04 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 01137152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 00291328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsnt.dll
      2017-05-12 12:16 - 2017-04-27 18:03 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
      2017-05-12 12:16 - 2017-04-27 18:02 - 03307008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
      2017-05-12 12:16 - 2017-04-27 18:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
      2017-05-12 12:16 - 2017-04-27 18:01 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
      2017-05-12 12:16 - 2017-04-27 18:01 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
      2017-05-12 12:16 - 2017-04-27 18:01 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
      2017-05-12 12:16 - 2017-04-27 18:01 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
      2017-05-12 12:16 - 2017-04-27 18:01 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
      2017-05-12 12:16 - 2017-04-27 18:01 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
      2017-05-12 12:16 - 2017-04-27 18:01 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
      2017-05-12 12:16 - 2017-04-27 18:00 - 02749440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
      2017-05-12 12:16 - 2017-04-27 18:00 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
      2017-05-12 12:16 - 2017-04-27 18:00 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthLEEnum.sys
      2017-05-12 12:16 - 2017-04-27 18:00 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll
      2017-05-12 12:16 - 2017-04-27 18:00 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Core.dll
      2017-05-12 12:16 - 2017-04-27 17:59 - 02154496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
      2017-05-12 12:16 - 2017-04-27 17:59 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
      2017-05-12 12:16 - 2017-04-27 17:59 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
      2017-05-12 12:16 - 2017-04-27 17:59 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
      2017-05-12 12:16 - 2017-04-27 17:58 - 00546304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
      2017-05-12 12:16 - 2017-04-27 17:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
      2017-05-12 12:16 - 2017-04-27 17:58 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
      2017-05-12 12:16 - 2017-04-27 17:58 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
      2017-05-12 12:16 - 2017-04-27 17:57 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
      2017-05-12 12:16 - 2017-04-27 17:57 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
      2017-05-12 12:16 - 2017-04-27 17:57 - 00641024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
      2017-05-12 12:16 - 2017-04-27 17:57 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraCaptureUI.dll
      2017-05-12 12:16 - 2017-04-27 17:56 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
      2017-05-12 12:16 - 2017-04-27 17:56 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
      2017-05-12 12:16 - 2017-04-27 17:56 - 00333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
      2017-05-12 12:16 - 2017-04-27 17:56 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
      2017-05-12 12:16 - 2017-04-27 17:56 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01993216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
      2017-05-12 12:16 - 2017-04-27 17:55 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 02747904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 00967680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
      2017-05-12 12:16 - 2017-04-27 17:54 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
      2017-05-12 12:16 - 2017-04-27 17:54 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
      2017-05-12 12:16 - 2017-04-27 17:53 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
      2017-05-12 12:16 - 2017-04-27 17:53 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
      2017-05-12 12:16 - 2017-04-27 17:53 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
      2017-05-12 12:16 - 2017-04-27 17:53 - 00621056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
      2017-05-12 12:16 - 2017-04-27 17:53 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
      2017-05-12 12:16 - 2017-04-27 17:52 - 02994176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
      2017-05-12 12:16 - 2017-04-27 17:52 - 02008576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
      2017-05-12 12:16 - 2017-04-27 17:44 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
      2017-05-12 12:16 - 2017-04-27 17:43 - 00963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
      2017-05-12 12:16 - 2017-04-27 17:41 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
      2017-05-12 12:16 - 2017-04-27 17:40 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
      2017-05-12 12:16 - 2017-04-27 17:39 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
      2017-05-12 12:16 - 2017-04-27 17:38 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
      2017-05-12 12:16 - 2017-04-27 17:37 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
      2017-05-12 12:16 - 2017-04-27 17:37 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
      2017-05-12 12:16 - 2017-04-27 17:37 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
      2017-05-12 12:16 - 2017-04-27 17:37 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
      2017-05-12 12:16 - 2017-04-27 17:30 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
      2017-05-12 12:16 - 2017-03-04 00:25 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
      2017-05-12 12:16 - 2017-03-04 00:23 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
      2017-05-12 12:16 - 2017-03-04 00:22 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
      2017-05-12 12:16 - 2017-03-04 00:16 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
      2017-05-12 12:16 - 2017-03-04 00:06 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
      2017-05-12 12:16 - 2017-03-04 00:05 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
      2017-05-12 12:16 - 2017-03-04 00:01 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
      2017-05-12 12:16 - 2017-03-04 00:00 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
      2017-05-12 12:15 - 2017-04-27 18:58 - 01706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2017-05-12 12:15 - 2017-04-27 18:57 - 00794928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
      2017-05-12 12:15 - 2017-04-27 18:53 - 02213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2017-05-12 12:15 - 2017-04-27 18:53 - 00774224 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
      2017-05-12 12:15 - 2017-04-27 18:40 - 07220184 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
      2017-05-12 12:15 - 2017-04-27 18:40 - 01860288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
      2017-05-12 12:15 - 2017-04-27 18:38 - 00847200 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
      2017-05-12 12:15 - 2017-04-27 18:36 - 00408600 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
      2017-05-12 12:15 - 2017-04-27 18:36 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 08170600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 04260576 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 01988048 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 01702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 01302136 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
      2017-05-12 12:15 - 2017-04-27 18:35 - 00596040 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
      2017-05-12 12:15 - 2017-04-27 18:34 - 22220856 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
      2017-05-12 12:15 - 2017-04-27 18:34 - 01072248 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
      2017-05-12 12:15 - 2017-04-27 18:34 - 00443232 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
      2017-05-12 12:15 - 2017-04-27 18:34 - 00244824 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
      2017-05-12 12:15 - 2017-04-27 18:28 - 00453536 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
      2017-05-12 12:15 - 2017-04-27 18:28 - 00387864 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
      2017-05-12 12:15 - 2017-04-27 18:07 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
      2017-05-12 12:15 - 2017-04-27 18:04 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
      2017-05-12 12:15 - 2017-04-27 18:02 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
      2017-05-12 12:15 - 2017-04-27 18:02 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
      2017-05-12 12:15 - 2017-04-27 18:00 - 12349440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
      2017-05-12 12:15 - 2017-04-27 17:58 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
      2017-05-12 12:15 - 2017-04-27 17:58 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
      2017-05-12 12:15 - 2017-04-27 17:57 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
      2017-05-12 12:15 - 2017-04-27 17:57 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
      2017-05-12 12:15 - 2017-04-27 17:56 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
      2017-05-12 12:15 - 2017-04-27 17:56 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
      2017-05-12 12:15 - 2017-04-27 17:56 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
      2017-05-12 12:15 - 2017-04-27 17:55 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs3D.dll
      2017-05-12 12:15 - 2017-04-27 17:55 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
      2017-05-12 12:15 - 2017-04-27 17:54 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
      2017-05-12 12:15 - 2017-04-27 17:53 - 06288384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
      2017-05-12 12:15 - 2017-04-27 17:53 - 03059200 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
      2017-05-12 12:15 - 2017-04-27 17:53 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
      2017-05-12 12:15 - 2017-04-27 17:51 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
      2017-05-12 12:15 - 2017-04-27 17:51 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
      2017-05-12 12:15 - 2017-04-27 17:51 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
      2017-05-12 12:15 - 2017-04-27 17:50 - 03778048 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
      2017-05-12 12:15 - 2017-04-27 17:49 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
      2017-05-12 12:15 - 2017-04-27 17:47 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
      2017-05-12 12:15 - 2017-04-27 17:47 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
      2017-05-12 12:15 - 2017-04-27 17:47 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
      2017-05-12 12:15 - 2017-04-27 17:45 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
      2017-05-12 12:15 - 2017-04-27 17:45 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
      2017-05-12 12:15 - 2017-04-27 17:44 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
      2017-05-12 12:15 - 2017-04-27 17:44 - 01145344 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
      2017-05-12 12:15 - 2017-04-27 17:44 - 00583680 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
      2017-05-12 12:15 - 2017-04-27 17:43 - 00646656 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
      2017-05-12 12:15 - 2017-04-27 17:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
      2017-05-12 12:15 - 2017-04-27 17:43 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
      2017-05-12 12:15 - 2017-04-27 17:42 - 13441536 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
      2017-05-12 12:15 - 2017-04-27 17:42 - 08076288 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
      2017-05-12 12:15 - 2017-04-27 17:42 - 02390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
      2017-05-12 12:15 - 2017-04-27 17:41 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
      2017-05-12 12:15 - 2017-04-27 17:41 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
      2017-05-12 12:15 - 2017-04-27 17:41 - 00611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
      2017-05-12 12:15 - 2017-04-27 17:39 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
      2017-05-12 12:15 - 2017-04-27 17:38 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
      2017-05-12 12:15 - 2017-04-27 17:38 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
      2017-05-12 12:15 - 2017-04-27 17:37 - 04149248 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
      2017-05-12 12:15 - 2017-04-27 17:37 - 03134976 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
      2017-05-12 12:15 - 2017-04-27 17:37 - 01984000 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
      2017-05-12 12:15 - 2017-04-27 17:36 - 01131008 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
      2017-05-12 12:15 - 2017-04-27 17:35 - 03299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
      2017-05-12 12:15 - 2017-04-27 17:34 - 00999424 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
      2017-05-12 12:15 - 2017-03-04 01:09 - 01293152 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
      2017-05-12 12:15 - 2017-03-04 00:27 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
      2017-05-12 12:15 - 2017-03-04 00:19 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
      2017-05-12 12:14 - 2017-04-27 18:57 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
      2017-05-12 12:14 - 2017-04-27 18:53 - 07784288 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2017-05-12 12:14 - 2017-04-27 18:49 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
      2017-05-12 12:14 - 2017-04-27 18:42 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
      2017-05-12 12:14 - 2017-04-27 18:40 - 02759704 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2017-05-12 12:14 - 2017-04-27 18:40 - 02187104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
      2017-05-12 12:14 - 2017-04-27 18:40 - 01738560 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
      2017-05-12 12:14 - 2017-04-27 18:40 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
      2017-05-12 12:14 - 2017-04-27 18:40 - 00402784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
      2017-05-12 12:14 - 2017-04-27 18:40 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
      2017-05-12 12:14 - 2017-04-27 18:38 - 00431968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
      2017-05-12 12:14 - 2017-04-27 18:34 - 01277824 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
      2017-05-12 12:14 - 2017-04-27 18:34 - 00241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
      2017-05-12 12:14 - 2017-04-27 18:21 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
      2017-05-12 12:14 - 2017-04-27 18:19 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2017-05-12 12:14 - 2017-04-27 18:15 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
      2017-05-12 12:14 - 2017-04-27 18:14 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
      2017-05-12 12:14 - 2017-04-27 18:14 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2017-05-12 12:14 - 2017-04-27 18:11 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2017-05-12 12:14 - 2017-04-27 18:10 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
      2017-05-12 12:14 - 2017-04-27 18:08 - 18365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
      2017-05-12 12:14 - 2017-04-27 18:06 - 22569472 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
      2017-05-12 12:14 - 2017-04-27 18:06 - 00691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2017-05-12 12:14 - 2017-04-27 18:05 - 19414016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2017-05-12 12:14 - 2017-04-27 18:05 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
      2017-05-12 12:14 - 2017-04-27 18:03 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
      2017-05-12 12:14 - 2017-04-27 18:03 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys
      2017-05-12 12:14 - 2017-04-27 18:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
      2017-05-12 12:14 - 2017-04-27 18:01 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
      2017-05-12 12:14 - 2017-04-27 18:01 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
      2017-05-12 12:14 - 2017-04-27 18:00 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
      2017-05-12 12:14 - 2017-04-27 18:00 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
      2017-05-12 12:14 - 2017-04-27 17:59 - 12187136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2017-05-12 12:14 - 2017-04-27 17:59 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
      2017-05-12 12:14 - 2017-04-27 17:59 - 00375296 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
      2017-05-12 12:14 - 2017-04-27 17:58 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
      2017-05-12 12:14 - 2017-04-27 17:58 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
      2017-05-12 12:14 - 2017-04-27 17:58 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2017-05-12 12:14 - 2017-04-27 17:58 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00502784 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2017-05-12 12:14 - 2017-04-27 17:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
      2017-05-12 12:14 - 2017-04-27 17:57 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
      2017-05-12 12:14 - 2017-04-27 17:56 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
      2017-05-12 12:14 - 2017-04-27 17:56 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
      2017-05-12 12:14 - 2017-04-27 17:56 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2017-05-12 12:14 - 2017-04-27 17:56 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
      2017-05-12 12:14 - 2017-04-27 17:56 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2017-05-12 12:14 - 2017-04-27 17:55 - 06042624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
      2017-05-12 12:14 - 2017-04-27 17:55 - 02084352 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
      2017-05-12 12:14 - 2017-04-27 17:55 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
      2017-05-12 12:14 - 2017-04-27 17:55 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
      2017-05-12 12:14 - 2017-04-27 17:55 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 03664384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 02027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2017-05-12 12:14 - 2017-04-27 17:54 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
      2017-05-12 12:14 - 2017-04-27 17:54 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll
      2017-05-12 12:14 - 2017-04-27 17:53 - 00579584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll
      2017-05-12 12:14 - 2017-04-27 17:53 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
      2017-05-12 12:14 - 2017-04-27 17:53 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
      2017-05-12 12:14 - 2017-04-27 17:51 - 02104320 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
      2017-05-12 12:14 - 2017-04-27 17:51 - 01589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
      2017-05-12 12:14 - 2017-04-27 17:50 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
      2017-05-12 12:14 - 2017-04-27 17:49 - 17198592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
      2017-05-12 12:14 - 2017-04-27 17:49 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
      2017-05-12 12:14 - 2017-04-27 17:49 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
      2017-05-12 12:14 - 2017-04-27 17:47 - 01790464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
      2017-05-12 12:14 - 2017-04-27 17:47 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
      2017-05-12 12:14 - 2017-04-27 17:46 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
      2017-05-12 12:14 - 2017-04-27 17:45 - 23677440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2017-05-12 12:14 - 2017-04-27 17:45 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\CameraCaptureUI.dll
      2017-05-12 12:14 - 2017-04-27 17:44 - 13091328 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2017-05-12 12:14 - 2017-04-27 17:44 - 00937984 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
      2017-05-12 12:14 - 2017-04-27 17:43 - 01184256 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
      2017-05-12 12:14 - 2017-04-27 17:43 - 00634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
      2017-05-12 12:14 - 2017-04-27 17:43 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
      2017-05-12 12:14 - 2017-04-27 17:43 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
      2017-05-12 12:14 - 2017-04-27 17:43 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
      2017-05-12 12:14 - 2017-04-27 17:42 - 08125440 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
      2017-05-12 12:14 - 2017-04-27 17:42 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
      2017-05-12 12:14 - 2017-04-27 17:42 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
      2017-05-12 12:14 - 2017-04-27 17:41 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2017-05-12 12:14 - 2017-04-27 17:41 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
      2017-05-12 12:14 - 2017-04-27 17:41 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2017-05-12 12:14 - 2017-04-27 17:40 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
      2017-05-12 12:14 - 2017-04-27 17:40 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
      2017-05-12 12:14 - 2017-04-27 17:40 - 02096640 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2017-05-12 12:14 - 2017-04-27 17:40 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
      2017-05-12 12:14 - 2017-04-27 17:40 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
      2017-05-12 12:14 - 2017-04-27 17:40 - 00913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
      2017-05-12 12:14 - 2017-04-27 17:38 - 05611008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
      2017-05-12 12:14 - 2017-04-27 17:38 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 04744192 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 02895872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 02286592 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 01783296 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 02478080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
      2017-05-12 12:14 - 2017-04-27 17:36 - 01328640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 00735744 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
      2017-05-12 12:14 - 2017-04-27 17:35 - 01121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
      2017-05-12 12:14 - 2017-04-27 17:35 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
      2017-05-12 12:14 - 2017-04-27 17:34 - 00439296 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
      2017-05-12 12:14 - 2017-04-27 17:34 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
      2017-05-12 12:14 - 2017-03-04 00:26 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
      2017-05-12 12:13 - 2017-04-27 18:52 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2017-05-12 12:13 - 2017-04-27 18:49 - 00764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
      2017-05-12 12:13 - 2017-04-27 18:46 - 00410464 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
      2017-05-12 12:13 - 2017-04-27 18:40 - 00578400 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
      2017-05-12 12:13 - 2017-04-27 18:40 - 00146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
      2017-05-12 12:13 - 2017-04-27 18:39 - 00624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
      2017-05-12 12:13 - 2017-04-27 18:38 - 02915704 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
      2017-05-12 12:13 - 2017-04-27 18:38 - 02446704 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2017-05-12 12:13 - 2017-04-27 18:38 - 01852200 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
      2017-05-12 12:13 - 2017-04-27 18:38 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
      2017-05-12 12:13 - 2017-04-27 18:34 - 04674360 _____ (Microsoft Corporation) C:\Windows\explorer.exe
      2017-05-12 12:13 - 2017-04-27 18:34 - 01600624 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
      2017-05-12 12:13 - 2017-04-27 18:30 - 01569184 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
      2017-05-12 12:13 - 2017-04-27 18:19 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
      2017-05-12 12:13 - 2017-04-27 18:15 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
      2017-05-12 12:13 - 2017-04-27 18:12 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2017-05-12 12:13 - 2017-04-27 18:12 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
      2017-05-12 12:13 - 2017-04-27 18:10 - 07216640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
      2017-05-12 12:13 - 2017-04-27 18:03 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
      2017-05-12 12:13 - 2017-04-27 18:01 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
      2017-05-12 12:13 - 2017-04-27 18:01 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
      2017-05-12 12:13 - 2017-04-27 18:00 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
      2017-05-12 12:13 - 2017-04-27 18:00 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
      2017-05-12 12:13 - 2017-04-27 18:00 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
      2017-05-12 12:13 - 2017-04-27 17:59 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
      2017-05-12 12:13 - 2017-04-27 17:58 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
      2017-05-12 12:13 - 2017-04-27 17:58 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
      2017-05-12 12:13 - 2017-04-27 17:58 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
      2017-05-12 12:13 - 2017-04-27 17:57 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
      2017-05-12 12:13 - 2017-04-27 17:57 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
      2017-05-12 12:13 - 2017-04-27 17:56 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
      2017-05-12 12:13 - 2017-04-27 17:56 - 00692224 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll
      2017-05-12 12:13 - 2017-04-27 17:56 - 00379904 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
      2017-05-12 12:13 - 2017-04-27 17:56 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll

    9. #29
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35

      Re: Como checo mi PC?, Windows Defender me notifica Malware cada minuto

      Esta es la ultima parte

      - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2017-05-12 12:13 - 2017-04-27 17:56 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
      2017-05-12 12:13 - 2017-04-27 17:55 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
      2017-05-12 12:13 - 2017-04-27 17:55 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
      2017-05-12 12:13 - 2017-04-27 17:55 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
      2017-05-12 12:13 - 2017-04-27 17:54 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
      2017-05-12 12:13 - 2017-04-27 17:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
      2017-05-12 12:13 - 2017-04-27 17:51 - 01913856 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
      2017-05-12 12:13 - 2017-04-27 17:51 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
      2017-05-12 12:13 - 2017-04-27 17:51 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
      2017-05-12 12:13 - 2017-04-27 17:48 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
      2017-05-12 12:13 - 2017-04-27 17:48 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
      2017-05-12 12:13 - 2017-04-27 17:47 - 09131008 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
      2017-05-12 12:13 - 2017-04-27 17:47 - 03290112 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
      2017-05-12 12:13 - 2017-04-27 17:47 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
      2017-05-12 12:13 - 2017-04-27 17:46 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
      2017-05-12 12:13 - 2017-04-27 17:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\catsrvps.dll
      2017-05-12 12:13 - 2017-04-27 17:45 - 00946688 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
      2017-05-12 12:13 - 2017-04-27 17:45 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
      2017-05-12 12:13 - 2017-04-27 17:45 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2017-05-12 12:13 - 2017-04-27 17:45 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
      2017-05-12 12:13 - 2017-04-27 17:44 - 04749824 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
      2017-05-12 12:13 - 2017-04-27 17:44 - 01010176 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
      2017-05-12 12:13 - 2017-04-27 17:44 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
      2017-05-12 12:13 - 2017-04-27 17:44 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
      2017-05-12 12:13 - 2017-04-27 17:44 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
      2017-05-12 12:13 - 2017-04-27 17:44 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
      2017-05-12 12:13 - 2017-04-27 17:43 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
      2017-05-12 12:13 - 2017-04-27 17:42 - 01692160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
      2017-05-12 12:13 - 2017-04-27 17:42 - 01021440 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
      2017-05-12 12:13 - 2017-04-27 17:41 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
      2017-05-12 12:13 - 2017-04-27 17:41 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
      2017-05-12 12:13 - 2017-04-27 17:40 - 02914816 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
      2017-05-12 12:13 - 2017-04-27 17:40 - 02510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
      2017-05-12 12:13 - 2017-04-27 17:40 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
      2017-05-12 12:13 - 2017-04-27 17:40 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
      2017-05-12 12:13 - 2017-04-27 17:38 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2017-05-12 12:13 - 2017-04-27 17:37 - 02316288 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
      2017-05-12 12:13 - 2017-04-27 17:37 - 02216960 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
      2017-05-12 12:13 - 2017-04-27 17:36 - 03613184 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
      2017-05-12 12:13 - 2017-04-27 17:36 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
      2017-05-12 12:13 - 2017-03-04 00:25 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
      2017-05-12 12:13 - 2016-12-21 01:09 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
      2017-05-12 12:12 - 2017-04-27 18:56 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
      2017-05-12 12:12 - 2017-04-27 18:49 - 00700936 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2017-05-12 12:12 - 2017-04-27 18:47 - 00699744 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
      2017-05-12 12:12 - 2017-04-27 18:47 - 00501088 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
      2017-05-12 12:12 - 2017-04-27 18:44 - 00062816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys
      2017-05-12 12:12 - 2017-04-27 18:42 - 00526176 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
      2017-05-12 12:12 - 2017-04-27 18:30 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
      2017-05-12 12:12 - 2017-04-27 18:28 - 00455520 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
      2017-05-12 12:12 - 2017-04-27 18:03 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\BthTelemetry.dll
      2017-05-12 12:12 - 2017-04-27 18:02 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
      2017-05-12 12:12 - 2017-04-27 18:01 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ClosedCaptioning.dll
      2017-05-12 12:12 - 2017-04-27 18:01 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\virtdisk.dll
      2017-05-12 12:12 - 2017-04-27 18:00 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.RetailInfo.dll
      2017-05-12 12:12 - 2017-04-27 18:00 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
      2017-05-12 12:12 - 2017-04-27 18:00 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
      2017-05-12 12:12 - 2017-04-27 17:59 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
      2017-05-12 12:12 - 2017-04-27 17:59 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
      2017-05-12 12:12 - 2017-04-27 17:59 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
      2017-05-12 12:12 - 2017-04-27 17:58 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
      2017-05-12 12:12 - 2017-04-27 17:58 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUX.dll
      2017-05-12 12:12 - 2017-04-27 17:57 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
      2017-05-12 12:12 - 2017-04-27 17:57 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
      2017-05-12 12:12 - 2017-04-27 17:56 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
      2017-05-12 12:12 - 2017-04-27 17:55 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
      2017-05-12 12:12 - 2017-04-27 17:50 - 01476608 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
      2017-05-12 12:12 - 2017-04-27 17:50 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
      2017-05-12 12:12 - 2017-04-27 17:50 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll
      2017-05-12 12:12 - 2017-04-27 17:48 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
      2017-05-12 12:12 - 2017-04-27 17:47 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
      2017-05-12 12:12 - 2017-04-27 17:46 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
      2017-05-12 12:12 - 2017-04-27 17:46 - 01443328 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
      2017-05-12 12:12 - 2017-04-27 17:46 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
      2017-05-12 12:12 - 2017-04-27 17:46 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
      2017-05-12 12:12 - 2017-04-27 17:45 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
      2017-05-12 12:12 - 2017-04-27 17:43 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
      2017-05-12 12:12 - 2017-04-27 17:43 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
      2017-05-12 12:12 - 2017-04-27 17:41 - 00890368 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
      2017-05-12 12:12 - 2017-04-27 17:41 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
      2017-05-12 12:12 - 2017-04-27 17:40 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
      2017-05-12 12:12 - 2017-04-27 17:40 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
      2017-05-12 12:12 - 2017-04-27 17:39 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
      2017-05-12 12:12 - 2017-04-27 17:37 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2017-05-12 12:12 - 2017-04-27 17:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\spaceman.exe
      2017-05-12 12:12 - 2017-04-27 17:33 - 01817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
      2017-05-12 06:43 - 2017-05-12 06:43 - 00000026 _____ C:\Users\Walmart 2000\Downloads\taskkill.txt
      2017-05-12 06:00 - 2017-05-12 06:10 - 199219255 _____ C:\Users\Walmart 2000\Downloads\06 Renai Boukun.mp4
      2017-05-12 06:00 - 2017-05-12 06:09 - 199167167 _____ C:\Users\Walmart 2000\Downloads\06 Clockwork Planet.mp4
      2017-05-12 05:50 - 2017-05-12 05:50 - 00000000 ____D C:\ProgramData\install_clap
      2017-05-11 20:39 - 2017-05-11 20:42 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Walmart 2000\Desktop\iExplore.exe
      2017-05-11 20:18 - 2017-05-11 20:18 - 00130311 _____ C:\Users\Walmart 2000\Desktop\Formulario de Aprobación del líder del Sacerdocio.pdf
      2017-05-11 19:20 - 2017-05-11 19:20 - 00002218 _____ C:\Users\Walmart 2000\Desktop\instrucciones virus.txt
      2017-05-11 19:19 - 2017-05-11 19:23 - 04102600 _____ C:\Users\Walmart 2000\Desktop\AdwCleaner.exe
      2017-05-11 19:18 - 2017-05-11 19:36 - 01663672 _____ (Malwarebytes) C:\Users\Walmart 2000\Desktop\JRT(1).exe
      2017-05-11 19:18 - 2017-05-11 19:21 - 09390672 _____ (Piriform Ltd) C:\Users\Walmart 2000\Desktop\ccsetup529.exe
      2017-05-11 19:17 - 2017-05-11 19:23 - 63035592 _____ (Malwarebytes ) C:\Users\Walmart 2000\Desktop\mb3-setup-consumer-3.1.2.1733.exe
      2017-05-11 18:56 - 2017-05-11 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
      2017-05-11 18:52 - 2016-02-24 21:07 - 00207968 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
      2017-05-11 18:39 - 2017-05-11 18:39 - 00000000 ____D C:\ProgramData\Intel Security
      2017-05-11 18:38 - 2017-05-11 18:39 - 00003142 _____ C:\Windows\System32\Tasks\McAfeeLogon
      2017-05-11 18:38 - 2017-05-11 18:38 - 00000000 ____D C:\Windows\System32\Tasks\McAfee
      2017-05-11 18:35 - 2017-05-11 18:56 - 00000000 ____D C:\Program Files\McAfee
      2017-05-11 18:35 - 2017-05-11 18:35 - 00000000 ____D C:\Program Files\McAfee.com
      2017-05-11 18:34 - 2017-05-11 18:34 - 00000000 ____D C:\Program Files\Common Files\Intel Security
      2017-05-11 18:33 - 2017-05-11 18:56 - 00000000 ____D C:\Program Files (x86)\McAfee
      2017-05-11 18:21 - 2017-05-11 18:41 - 00000000 ____D C:\Program Files\Common Files\McAfee
      2017-05-11 18:21 - 2017-01-18 12:56 - 00343792 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe
      2017-05-11 18:18 - 2017-05-11 18:20 - 09399008 _____ (McAfee, Inc.) C:\Users\Walmart 2000\Downloads\Setup_serial_ScHExbkL9OFvrqb2oYgPKQ2_key.exe
      2017-05-11 15:23 - 2017-05-11 18:14 - 113658964 _____ C:\Users\Walmart 2000\Downloads\WinDS.PRO.2017.03.07.v2.zip
      2017-05-11 12:59 - 2016-08-09 14:17 - 00072112 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys
      2017-05-11 12:58 - 2017-05-11 13:00 - 00002300 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Protection.lnk
      2017-05-11 12:58 - 2017-05-11 12:59 - 00000000 ____D C:\Program Files (x86)\Panda Security
      2017-05-11 12:58 - 2017-05-11 12:58 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\Panda Security
      2017-05-11 12:58 - 2017-05-11 12:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Protection
      2017-05-11 12:58 - 2017-02-20 07:16 - 00205584 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINKNC.sys
      2017-05-11 12:58 - 2017-02-12 04:51 - 00144656 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINProt.sys
      2017-05-11 12:58 - 2017-02-12 04:46 - 00131344 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINProc.sys
      2017-05-11 12:58 - 2017-02-12 04:40 - 00114960 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINReg.sys
      2017-05-11 12:58 - 2017-02-12 04:33 - 00129296 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINFile.sys
      2017-05-11 12:58 - 2017-02-12 04:28 - 00177424 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINAflt.sys
      2017-05-11 12:57 - 2017-05-11 12:59 - 00000000 ____D C:\ProgramData\Panda Security
      2017-05-11 12:55 - 2017-05-11 12:55 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\windspro
      2017-05-11 12:32 - 2017-05-11 12:32 - 00000000 ___HD C:\Windows\msdownld.tmp
      2017-05-11 12:32 - 2017-05-11 12:32 - 00000000 ____D C:\Windows\SysWOW64\directx
      2017-05-11 12:20 - 2017-05-11 12:20 - 00000109 _____ C:\Users\Walmart 2000\Downloads\usermessage.vbs
      2017-05-11 09:42 - 2017-05-11 09:42 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\Eraser 6
      2017-05-10 17:24 - 2017-05-10 17:24 - 00000000 ___HD C:\OneDriveTemp
      2017-05-10 14:30 - 2017-05-10 14:30 - 00000050 _____ C:\Users\Walmart 2000\Downloads\archivo svcvmx.txt
      2017-05-10 14:15 - 2017-05-15 07:23 - 00000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
      2017-05-10 14:13 - 2017-05-10 14:13 - 00000000 ____D C:\Windows\pss
      2017-05-10 13:32 - 2017-05-10 13:46 - 00000150 _____ C:\Windows\Reimage.ini
      2017-05-10 12:31 - 2017-05-10 12:31 - 00000214 _____ C:\Users\Walmart 2000\Downloads\archivos.txt
      2017-05-10 12:15 - 2017-05-12 15:33 - 00000000 ____D C:\Users\Walmart 2000\Documents\Mipony
      2017-05-10 12:10 - 2017-05-15 14:32 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\Mipony
      2017-05-10 12:09 - 2017-05-10 12:09 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiPony
      2017-05-10 12:09 - 2017-05-10 12:09 - 00000000 ____D C:\Program Files (x86)\MiPony
      2017-05-10 09:11 - 2017-05-10 13:28 - 00000000 ____D C:\Program Files (x86)\Unlocker
      2017-05-09 17:22 - 2017-05-09 17:26 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\llssoft
      2017-05-09 14:16 - 2017-05-11 11:54 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\Citra
      2017-05-09 14:02 - 2017-05-09 14:02 - 00003656 _____ C:\Windows\System32\Tasks\CreateExplorerShellUnelevatedTask
      2017-05-09 13:57 - 2017-05-09 13:57 - 00000000 ____D C:\Windows\ERUNT
      2017-05-09 11:20 - 2017-05-09 11:20 - 00007086 _____ C:\Windows\system32\.crusader
      2017-05-09 10:59 - 2017-05-09 11:22 - 00054736 _____ C:\Windows\system32\Drivers\hitmanpro37.sys
      2017-05-09 10:58 - 2017-05-09 11:20 - 00000000 ____D C:\ProgramData\HitmanPro
      2017-05-09 10:13 - 2017-05-15 11:58 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\ntuserlitelist
      2017-05-09 10:05 - 2017-05-09 10:05 - 00000000 ____D C:\Windows\Panther
      2017-05-09 09:59 - 2017-05-09 09:59 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\639748
      2017-05-09 09:57 - 2017-05-09 09:57 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\404715
      2017-05-09 09:56 - 2017-05-09 09:56 - 00000000 ____D C:\ProgramData\VideoMemoryDiagnostic
      2017-05-09 09:54 - 2017-05-09 10:44 - 00001442 _____ C:\Windows\SysWOW64\splsrv.exe
      2017-05-09 09:54 - 2017-05-09 09:54 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\c
      2017-05-09 09:54 - 2017-05-09 09:54 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\lttyk
      2017-05-09 09:54 - 2017-05-09 09:54 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\ktccogrb
      2017-05-08 10:51 - 2017-05-08 10:51 - 00000000 ____D C:\ProgramData\TEC-IT
      2017-05-07 08:27 - 2017-05-07 08:27 - 00146266 _____ C:\Users\Walmart 2000\Documents\SAT.pdf
      2017-05-07 08:12 - 2017-05-07 08:12 - 00084367 _____ C:\Users\Walmart 2000\Documents\tarjetaNSS.pdf
      2017-05-07 08:12 - 2017-05-07 08:12 - 00046353 _____ C:\Users\Walmart 2000\Documents\comprobanteNSS.pdf
      2017-05-05 20:13 - 2017-05-05 20:13 - 00000000 ____D C:\ProgramData\SupportAssistAgent
      2017-05-05 12:35 - 2017-05-05 12:35 - 00056552 _____ C:\Users\Walmart 2000\Documents\MAGF930922HCHGTR05.pdf
      2017-05-04 13:16 - 2017-05-04 13:16 - 00000132 _____ C:\Users\Walmart 2000\AppData\Roaming\Adobe BMP Format CS5 Prefs
      2017-05-03 17:11 - 2017-05-03 17:11 - 00619008 ____N C:\Windows\system32\tprdpw64.exe
      2017-04-29 19:52 - 2017-05-15 08:42 - 00000000 ____D C:\Users\Walmart 2000\Desktop\PATHWAY
      2017-04-27 10:35 - 2017-04-27 10:35 - 00004136 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
      2017-04-27 10:34 - 2017-04-27 10:34 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows
      2017-04-27 10:34 - 2017-04-27 10:34 - 00000000 ____D C:\Program Files\Dell Support Center
      2017-04-24 11:32 - 2017-04-24 11:33 - 00887602 _____ C:\Users\Walmart 2000\Documents\Epson-Stylus-Pro-4900-Brochures-1.pdf
      2017-04-21 17:30 - 2017-04-21 17:30 - 00019177 _____ C:\Users\Walmart 2000\Documents\Copia de Carmen(2291).xlsx
      2017-04-19 09:47 - 2017-05-12 05:47 - 00000000 ____D C:\Program Files (x86)\WiFi Protector
      2017-04-19 08:31 - 2017-04-19 08:32 - 00000132 _____ C:\ProgramData\log.binb

      ==================== One Month Modified files and folders ========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2017-05-16 09:34 - 2016-12-26 13:32 - 00000000 ____D C:\Users\Walmart 2000\AppData\LocalLow\Mozilla
      2017-05-16 09:33 - 2016-12-28 21:20 - 00000000 ____D C:\Windows\system32\SleepStudy
      2017-05-16 08:52 - 2016-12-28 21:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
      2017-05-16 08:51 - 2016-07-16 00:04 - 01048576 _____ C:\Windows\system32\config\BBI
      2017-05-15 17:38 - 2016-12-26 14:57 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\vlc
      2017-05-15 08:55 - 2017-03-16 11:25 - 00000000 ___RD C:\Users\Walmart 2000\Desktop\Nueva carpeta (4)
      2017-05-13 17:35 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\AppReadiness
      2017-05-13 04:07 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\rescache
      2017-05-12 21:29 - 2016-07-16 05:36 - 00000000 ____D C:\Windows\CbsTemp
      2017-05-12 18:40 - 2016-07-16 16:40 - 00981884 _____ C:\Windows\system32\perfh00A.dat
      2017-05-12 18:40 - 2016-07-16 16:40 - 00223126 _____ C:\Windows\system32\perfc00A.dat
      2017-05-12 18:40 - 2016-05-27 21:18 - 02334988 _____ C:\Windows\system32\PerfStringBackup.INI
      2017-05-12 16:07 - 2017-03-20 09:59 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
      2017-05-12 14:27 - 2016-07-16 05:45 - 00000000 ____D C:\Windows\INF
      2017-05-12 14:23 - 2016-05-27 22:08 - 00000000 __RHD C:\Users\Public\AccountPictures
      2017-05-12 13:22 - 2017-03-31 17:10 - 01300872 _____ C:\Windows\system32\FNTCACHE.DAT
      2017-05-12 13:19 - 2016-07-16 05:47 - 00000000 ___SD C:\Windows\SysWOW64\F12
      2017-05-12 13:19 - 2016-07-16 05:47 - 00000000 ___SD C:\Windows\system32\F12
      2017-05-12 13:19 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
      2017-05-12 13:19 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\system32\oobe
      2017-05-12 13:19 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\system32\appraiser
      2017-05-12 13:19 - 2016-07-16 00:04 - 00000000 ____D C:\Windows\SysWOW64\Dism
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ___RD C:\Program Files\Windows Defender
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\ShellExperiences
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\Provisioning
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\PolicyDefinitions
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
      2017-05-12 13:18 - 2016-07-16 05:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
      2017-05-12 13:14 - 2016-12-28 21:29 - 00000000 ____D C:\Users\Walmart 2000
      2017-05-12 12:32 - 2016-12-25 18:49 - 00000000 ____D C:\Windows\system32\MRT
      2017-05-12 12:24 - 2016-12-25 18:48 - 156335152 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2017-05-12 11:18 - 2016-12-26 13:56 - 00000000 ___RD C:\Users\Walmart 2000\Desktop\Programas
      2017-05-12 11:10 - 2017-01-21 17:44 - 00000000 _____ C:\Recovery.txt
      2017-05-12 06:22 - 2016-07-16 05:47 - 00000000 ___HD C:\Program Files\WindowsApps
      2017-05-12 05:52 - 2017-01-06 13:07 - 00000000 ____D C:\CoView
      2017-05-12 05:52 - 2017-01-06 10:09 - 00000000 ____D C:\Program Files (x86)\Winamp
      2017-05-12 05:51 - 2016-05-27 21:47 - 00000000 ____D C:\ProgramData\SUPPORTDIR
      2017-05-12 05:50 - 2016-05-27 21:46 - 00000000 ____D C:\Program Files (x86)\CyberLink
      2017-05-12 05:50 - 2016-05-27 21:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
      2017-05-12 05:49 - 2017-03-22 15:58 - 00000000 ____D C:\Program Files (x86)\Aegisub
      2017-05-12 05:47 - 2017-03-10 10:03 - 00000000 ____D C:\ProgramData\boost_interprocess
      2017-05-11 21:02 - 2016-07-16 05:42 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
      2017-05-11 19:02 - 2017-02-08 14:59 - 00000000 ____D C:\Program Files\Common Files\AV
      2017-05-11 19:02 - 2016-12-26 13:08 - 00000000 ____D C:\ProgramData\AVAST Software
      2017-05-11 19:02 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\system32\NDF
      2017-05-11 18:59 - 2016-07-16 00:04 - 00032768 _____ C:\Windows\system32\config\ELAM
      2017-05-11 18:59 - 2016-05-27 21:53 - 00000000 ____D C:\ProgramData\McAfee
      2017-05-11 18:37 - 2016-07-16 05:47 - 00000000 ___HD C:\Windows\ELAMBKUP
      2017-05-11 15:49 - 2017-01-26 18:58 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\WhatsApp
      2017-05-11 12:59 - 2016-07-16 05:47 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
      2017-05-11 12:59 - 2015-10-30 01:24 - 00000000 ____D C:\Windows\system32\GroupPolicy
      2017-05-11 12:32 - 2016-05-27 21:15 - 00000000 ____D C:\ProgramData\Package Cache
      2017-05-11 11:42 - 2017-01-04 13:59 - 00000000 ____D C:\Users\Walmart 2000\Documents\Importantes
      2017-05-11 10:13 - 2017-03-07 12:17 - 00003154 _____ C:\Windows\System32\Tasks\Java Platform SE Auto Updater
      2017-05-11 10:01 - 2016-11-16 10:38 - 00000000 ___RD C:\Users\Walmart 2000\OneDrive
      2017-05-11 09:47 - 2017-03-07 11:58 - 00003668 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
      2017-05-10 17:24 - 2017-02-01 08:22 - 00002422 _____ C:\Users\Walmart 2000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
      2017-05-10 11:59 - 2017-01-04 13:30 - 00000000 ____D C:\Users\Walmart 2000\Desktop\Kólob de México
      2017-05-10 11:41 - 2017-02-13 09:56 - 00000132 _____ C:\Users\Walmart 2000\AppData\Roaming\Adobe PNG Format CS5 Prefs
      2017-05-10 10:45 - 2017-01-04 12:41 - 00003542 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2017-05-10 08:31 - 2015-10-30 01:24 - 00000202 _____ C:\Windows\win.ini
      2017-05-09 17:38 - 2016-12-28 21:53 - 00002304 _____ C:\Windows\System32\Tasks\RtHDVBg_PushButton
      2017-05-09 14:02 - 2017-03-22 14:54 - 00000719 _____ C:\DelFix.txt
      2017-05-09 11:45 - 2017-03-30 09:32 - 00000000 ____D C:\Windows\Minidump
      2017-05-09 10:04 - 2016-12-26 13:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
      2017-05-06 09:36 - 2016-12-26 13:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
      2017-05-03 15:22 - 2016-11-16 10:35 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\Packages
      2017-05-02 15:29 - 2017-02-20 09:56 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\WhatsApp
      2017-05-02 15:29 - 2017-01-26 18:58 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
      2017-05-02 15:28 - 2017-01-26 18:57 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\SquirrelTemp
      2017-05-01 20:48 - 2016-12-26 13:58 - 00000000 ____D C:\KMPlayer
      2017-04-28 18:59 - 2016-07-16 05:49 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2017-04-28 18:59 - 2016-07-16 05:49 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
      2017-04-27 19:01 - 2016-12-28 21:23 - 02717184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
      2017-04-27 10:34 - 2016-05-27 21:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
      2017-04-26 10:13 - 2017-01-04 12:52 - 00000000 ____D C:\Users\Walmart 2000\AppData\Local\ElevatedDiagnostics
      2017-04-26 09:52 - 2017-04-12 15:48 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\MPC-HC
      2017-04-24 10:28 - 2016-11-17 20:14 - 00000000 ____D C:\Users\Walmart 2000\AppData\Roaming\PCDr
      2017-04-19 08:31 - 2017-03-31 16:06 - 00003222 _____ C:\ProgramData\log.ewbt
      2017-04-19 08:31 - 2017-03-31 16:06 - 00000128 _____ C:\ProgramData\log.ewbb
      2017-04-18 08:18 - 2017-01-06 13:08 - 00000000 ____D C:\Users\Walmart 2000\Desktop\Fotos

      ==================== Files in the root of some directories =======

      2017-05-04 13:16 - 2017-05-04 13:16 - 0000132 _____ () C:\Users\Walmart 2000\AppData\Roaming\Adobe BMP Format CS5 Prefs
      2017-02-13 09:56 - 2017-05-10 11:41 - 0000132 _____ () C:\Users\Walmart 2000\AppData\Roaming\Adobe PNG Format CS5 Prefs
      2017-03-22 16:15 - 2017-03-22 16:15 - 0002298 _____ () C:\Users\Walmart 2000\AppData\Roaming\ASSDraw3.cfg
      2016-12-28 21:23 - 2016-12-28 21:23 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
      2017-04-19 08:31 - 2017-04-19 08:32 - 0000132 _____ () C:\ProgramData\log.binb
      2017-03-31 16:06 - 2017-04-19 08:31 - 0000128 _____ () C:\ProgramData\log.ewbb
      2017-03-31 16:06 - 2017-04-19 08:31 - 0003222 _____ () C:\ProgramData\log.ewbt
      2016-05-27 21:46 - 2016-05-27 21:47 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
      2016-05-27 21:52 - 2016-05-27 21:52 - 0000105 _____ () C:\ProgramData\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}.log
      2016-05-27 21:50 - 2016-05-27 21:50 - 0000100 _____ () C:\ProgramData\{6BADCD73-E925-46F7-A295-FF2448632728}.log
      2016-05-27 21:52 - 2016-05-27 21:52 - 0000098 _____ () C:\ProgramData\{CEF5334F-B91A-4327-ACAE-AA50DCE3F995}.log

      Some files in TEMP:
      ====================
      2017-05-11 18:33 - 2017-02-09 20:16 - 1030904 _____ (McAfee, Inc.) C:\Users\Walmart 2000\AppData\Local\Temp\0046921494549219mcinst.exe
      2017-05-09 09:56 - 2017-05-09 09:56 - 28900935 _____ (AppTrailers) C:\Users\Walmart 2000\AppData\Local\Temp\AppTrailers.9.1.10amt.exe
      2017-05-09 09:59 - 2017-05-09 09:59 - 0425674 _____ (WeMonetize ) C:\Users\Walmart 2000\AppData\Local\Temp\EPK8QLV.exe
      2017-05-09 09:54 - 2017-05-09 09:54 - 0426050 _____ ( ) C:\Users\Walmart 2000\AppData\Local\Temp\global_installer.exe
      2017-02-28 03:10 - 2017-02-28 03:10 - 0244264 _____ (McAfee, Inc.) C:\Users\Walmart 2000\AppData\Local\Temp\McCSPInstall.dll
      2017-05-10 13:34 - 2017-05-10 13:34 - 13414504 _____ (Reimage) C:\Users\Walmart 2000\AppData\Local\Temp\ReimagePackage.exe
      2016-08-16 01:48 - 2016-08-16 01:48 - 0488960 _____ () C:\Users\Walmart 2000\AppData\Local\Temp\sqlite3.exe
      2017-05-09 09:56 - 2017-05-09 09:56 - 1199825 _____ () C:\Users\Walmart 2000\AppData\Local\Temp\unins000.exe
      2017-05-09 09:56 - 2017-05-09 09:56 - 0597261 _____ (VideoBox ) C:\Users\Walmart 2000\AppData\Local\Temp\vbsetup.exe

      ==================== Bamital & volsnap ======================

      (There is no automatic fix for files that do not pass verification.)

      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

      LastRegBack: 2017-05-06 08:26

      ==================== End of FRST.txt ============================

    10. #30
      Usuario Avatar de famo67
      Registrado
      may 2017
      Ubicación
      Mexico
      Mensajes
      35
      Este es el reporte Addition.TXT

      Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-05-2017
      Ran by Kólob de México (16-05-2017 09:47:07)
      Running from C:\Users\Walmart 2000\Desktop
      Windows 10 Home Single Language Version 1607 (X64) (2016-12-29 03:57:50)
      Boot Mode: Normal
      ==========================================================


      ==================== Accounts: =============================

      Administrador (S-1-5-21-1577294839-1248520855-4163237406-500 - Administrator - Disabled)
      DefaultAccount (S-1-5-21-1577294839-1248520855-4163237406-503 - Limited - Disabled)
      Invitado (S-1-5-21-1577294839-1248520855-4163237406-501 - Limited - Enabled)
      Kólob de México (S-1-5-21-1577294839-1248520855-4163237406-1001 - Administrator - Enabled) => C:\Users\Walmart 2000

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AV: VirusScan de McAfee (Disabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC}
      AV: Panda Protection (Disabled - Up to date) {46AEFD02-ACA3-E038-1FA5-4A15EFD361E0}
      AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AS: Panda Protection (Disabled - Up to date) {FDCF1CE6-8A99-EFB6-2515-716794542B5D}
      AS: VirusScan de McAfee (Disabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
      FW: McAfee Firewall (Disabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7}
      FW: Panda Firewall (Disabled) {7E957C27-E6CC-E160-34FA-E3201100269B}

      ==================== Installed Programs ======================

      (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      5600 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
      5600_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
      5600Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
      64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
      Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
      AIO_CDB_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
      AIO_CDB_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
      AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
      Apple Application Support (64 bits) (HKLM\...\{64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D}) (Version: 5.2 - Apple Inc.)
      Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
      Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
      AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.74.2.60831 - AVG Technologies)
      AVG PC TuneUp (x32 Version: 16.74.1 - AVG Technologies) Hidden
      Ayuda y asistencia técnica de Dell (HKLM-x32\...\InstallShield_{2B27A8F6-B7D5-4FAF-9C8A-71E9EECA3E9C}) (Version: 2.2.21.0 - Dell Inc.)
      Ayuda y asistencia técnica de Dell (Version: 2.2.21.0 - Dell Inc.) Hidden
      Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
      BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
      CGS17_Setup_x64 (Version: 17.1 - Corel Corporation) Hidden
      Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
      Corel Graphics - Windows Shell Extension (HKLM\...\_{B16BB34E-B7BF-47DF-8658-BEABCF40CD6A}) (Version: 16.1.0.843 - Corel Corporation)
      Corel Graphics - Windows Shell Extension (Version: 16.1.843 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Capture (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Common (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Connect (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Custom Data (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Draw (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - ES (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Filters (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - FontNav (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - IPM (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - PHOTO-PAINT (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Redist (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Setup Files (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - VBA (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - VideoBrowser (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - VSTA (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 - Writing Tools (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X6 (64-Bit) (HKLM\...\_{BDBFAC49-8877-472F-876B-75ADB7DBC955}) (Version: 16.1.0.843 - Corel Corporation)
      CorelDRAW Graphics Suite X6 (x64) (Version: 16.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Capture (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Common (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Connect (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Custom Data (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Draw (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - ES (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Filters (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - FontNav (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - IPM Content (x64) (Version: 17.0 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - IPM T (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) (Version: 17.0 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Redist (x64) (Version: 17.0 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Setup Files (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - VBA (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - VideoBrowser (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 - Writing Tools (x64) (Version: 17.1 - Corel Corporation) Hidden
      CorelDRAW Graphics Suite X7 (64-Bit) (HKLM\...\_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}) (Version: 17.1.0.572 - Corel Corporation)
      Dell Customer Connect (HKLM-x32\...\{4FA72FF9-DD64-43A8-8704-6380A11F11D5}) (Version: 1.4.15.0 - Dell Inc.)
      Dell Data Vault (Version: 4.3.9.0 - Dell Inc.) Hidden
      Dell Digital Delivery (HKLM-x32\...\{AB7F2792-2ED1-4C5C-9F28-680E5110BF72}) (Version: 3.1.1018.0 - Dell Products, LP)
      Dell Foundation Services (HKLM\...\{BDB50421-E961-42F3-B803-6DAC6F173834}) (Version: 3.4.16100.0 - Dell Inc.)
      Dell Power Manager Lite (HKLM-x32\...\DpmLite_Iris_2014_is1) (Version: 1.0.4 - Dell Inc.)
      Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.3.6855.212 - Dell)
      Dell SupportAssistAgent (HKLM-x32\...\{A10101BE-714B-42EE-B88B-5D3725B61425}) (Version: 1.4.2.2 - Dell)
      Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 19.0.15.15 - Synaptics Incorporated)
      Dell Update (HKLM-x32\...\{FB198E80-F1AB-4A6F-B3E3-F7442FC91FD2}) (Version: 1.9.4.0 - Dell Inc.)
      Desinstalador de impresoras EPSON T50 Series (HKLM\...\EPSON T50 Series) (Version: - SEIKO EPSON Corporation)
      Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
      DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
      DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden
      EPSON L310 Series Printer Uninstall (HKLM\...\EPSON L310 Series) (Version: - SEIKO EPSON Corporation)
      EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version: - SEIKO EPSON Corporation)
      Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden
      FILE RECOVERY for Windows (HKLM-x32\...\FILE RECOVERY for WindowsNSIS) (Version: 1.0.201 - Seagate)
      FMW 1 (Version: 1.143.3 - AVG Technologies) Hidden
      GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
      HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
      HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
      HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
      HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
      HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
      HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
      HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
      Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation)
      Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1153 - Intel Corporation)
      Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4463 - Intel Corporation)
      Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation)
      Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.253.0 - Intel Corporation)
      Intel(R) WiDi (HKLM\...\{C7CD6D54-26AF-4D93-B06F-D81ACE8624CB}) (Version: 6.0.40.0 - Intel Corporation)
      Intel(R) WiDi Software Asset Manager (x32 Version: 1.1.347 - Intel Corporation) Hidden
      Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{F188BE0A-05DB-4049-90BB-A1D44AF5AE95}) (Version: 17.1.1529.1613 - Intel Corporation)
      Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
      iTunes (HKLM\...\{81C96689-EA5B-4B7D-A04F-16326EC51BC2}) (Version: 12.5.4.42 - Apple Inc.)
      Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
      K-Lite Codec Pack 13.0.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.0.0 - KLCP)
      KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.5.8 - PandoraTV)
      KONICA MINOLTA bizhub C353 Series (HKLM\...\KONICA MINOLTA bizhub C353 Series Installer) (Version: - KONICA MINOLTA)
      MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
      Maxx Audio Installer (x64) (Version: 2.6.8627.1 - Waves Audio Ltd.) Hidden
      McAfee SecurityCenter (HKLM-x32\...\MSC) (Version: 14.0 R13 - McAfee, Inc.)
      McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.137 - McAfee, Inc.)
      MegaDownloader 1.7 (HKLM\...\{C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1) (Version: 1.7 - AppsForMega.info)
      Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
      Microsoft OneDrive (HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation)
      Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation)
      Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
      Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
      Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
      Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
      Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
      Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
      Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 Language Pack - ESN (HKLM-x32\...\{6D972506-DC01-39BC-A5DD-06DA86E00031}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - ESN (HKLM-x32\...\{4A28444E-0532-3264-B07D-5AFE590E30BE}) (Version: 9.0.30729 - Microsoft Corporation)
      Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
      MiPony 2.5.3 (HKLM-x32\...\MiPony) (Version: 2.5.3 - )
      MKVToolNix 9.6.0 (32bit) (HKLM-x32\...\MKVToolNix) (Version: 9.6.0 - Moritz Bunkus)
      Mozilla Firefox 53.0.2 (x86 es-ES) (HKLM-x32\...\Mozilla Firefox 53.0.2 (x86 es-ES)) (Version: 53.0.2 - Mozilla)
      Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 53.0.2.6333 - Mozilla)
      Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
      NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.0 - NewBlue)
      NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue)
      NewBlue Video Essentials V for Windows (HKLM-x32\...\NewBlue Video Essentials V for Windows) (Version: 3.0 - NewBlue)
      NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue)
      NewBlue Video Essentials VII for Windows (HKLM-x32\...\NewBlue Video Essentials VII for Windows) (Version: 3.0 - NewBlue)
      OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
      Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden
      Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden
      Panda Devices Agent (x32 Version: 1.03.08 - Panda Security) Hidden
      Panda Devices Agent (x32 Version: 1.08.00 - Panda Security) Hidden
      Panda Protection (Version: 8.90.00 - Panda Security) Hidden
      Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
      Photoshop CS5 Extended 12.0 (HKLM-x32\...\Photoshop CS5 Extended 12.0) (Version: - )
      proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.108.1 - proDAD GmbH)
      proDAD Adorage 3.0 (HKLM-x32\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH)
      Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconduct Corp.)
      Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7908 - Realtek Semiconductor Corp.)
      Registro de product (Version: 3.0.123.0 - Dell Inc.) Hidden
      Registro de product Dell (HKLM-x32\...\InstallShield_{85B14AE3-1624-45BE-942B-A528DF6F1CCE}) (Version: 3.0.123.0 - Dell Inc.)
      Revisión para Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM-x32\...\{6D972506-DC01-39BC-A5DD-06DA86E00031}.KB947789) (Version: 1 - Microsoft Corporation)
      Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
      Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
      Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
      SmartSound Quicktracks 5 (HKLM-x32\...\InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}) (Version: 5.1.8 - SmartSound Software Inc.)
      SmartSound Quicktracks 5 (x32 Version: 5.1.8 - SmartSound Software Inc.) Hidden
      Software Intel® PROSet/Wireless (HKLM-x32\...\{88540041-fd0c-4588-9b2f-251e29f7c5a1}) (Version: 18.40.4 - Intel Corporation)
      Software para dispositivos de chipset Intel® (x32 Version: 10.1.1.7 - Intel(R) Corporation) Hidden
      Software Updater (HKLM-x32\...\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87}) (Version: 4.3.7 - SEIKO EPSON CORPORATION)
      SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
      Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
      Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
      TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
      Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
      Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
      VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
      WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
      WhatsApp (HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\WhatsApp) (Version: 0.2.4240 - WhatsApp)
      WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
      Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden
      Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden

      ==================== Custom CLSID (Whitelisted): ==========================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


      ==================== Scheduled Tasks (Whitelisted) =============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {04A4E760-D7C9-4975-9EDA-B1ED946DB103} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-27] (Microsoft Corporation)
      Task: {0636EF7D-3DD7-4C80-8C46-0259E58C75A7} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [2017-02-22] (McAfee, Inc.)
      Task: {0A872F26-1705-418F-88B4-1A06CE7EE775} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK
      Task: {11D50C6C-7E74-4508-8430-2E32440CA5AC} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
      Task: {23BC8677-56CE-4847-945A-9195A9804376} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe
      Task: {2B4282D7-20C1-4047-AA9E-0F9BEBFEF33B} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2017-03-13] ()
      Task: {44930E17-6D3D-402D-8D76-9B7C7BC1DA17} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe
      Task: {47A4F537-1654-4EDB-8F1E-E51CED320C31} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-02-21] (AVG Technologies CZ, s.r.o.)
      Task: {49FE5CE0-7136-4606-BBA8-D557B90BA37C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-27] (Microsoft Corporation)
      Task: {4AE83572-AB3C-4F85-A42F-5BBBA190D412} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2017-04-18] (PC-Doctor, Inc.)
      Task: {53C951E6-032E-4878-B231-A1B6BF9956E3} - System32\Tasks\EPSON L310 Series Update {6245E3F3-24C0-44AD-84B1-4984B06EF0FF} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSN4E.EXE [2013-11-21] (SEIKO EPSON CORPORATION)
      Task: {5AC08B71-736A-414D-9FB0-F9BB951865DD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-27] (Microsoft Corporation)
      Task: {62CBC4EF-3984-4184-99CF-9A3B0D13C516} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
      Task: {869026ED-BB6D-4007-B190-940E6CE5FAE0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-27] (Microsoft Corporation)
      Task: {8BB0E095-C38B-4316-9A25-7FEF642A3195} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
      Task: {9720B7FD-6C0A-436E-93CA-A8D803B11F47} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssist.exe [2017-04-25] (Dell Inc.)
      Task: {98187DBF-0A01-44C4-9415-44F5A061F68A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
      Task: {9FA63104-F9B7-422C-BBD7-DCFEF96CEED9} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-16] (Intel Corporation)
      Task: {AE2AC1EE-ACD0-4AC0-8750-C135F35AFC2F} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation)
      Task: {AFAEF5EB-A951-443A-BCAE-49192FAB1D1C} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2017-04-18] (PC-Doctor, Inc.)
      Task: {B2333C75-9BE8-42AB-BAA7-7A1026C217C4} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12] (Oracle Corporation)
      Task: {B268F014-1ABB-4213-BA1B-DD4FDD6129BD} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-16] (Intel Corporation)
      Task: {B2AEE3AC-364B-49DE-BDD7-2AF549A2491F} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\VideoMemoryDiagnostic => C:\\ProgramData\\VideoMemoryDiagnostic\\vmdiag.exe [2017-05-06] ()
      Task: {C369274F-5C67-4A4F-B48F-A25B92D02653} - System32\Tasks\{83E07FC0-23AB-49BC-BF00-A6C4E4768FCE} => pcalua.exe -a C:\Windows\system32\spool\DRIVERS\x64\3\EPUPDATE.EXE -c /R
      Task: {DFCAD99D-298A-4779-86EA-C3972E4B055F} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
      Task: {E865C06C-35E9-4D32-8A6B-4C65DD88FA6E} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
      Task: {F4A24CE4-3ECF-4DDD-B320-ED654D8F66BC} - System32\Tasks\McAfee\McAfee Idle Detection Task
      Task: {F89D183F-FB32-4D0E-8941-2470EA346AA8} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-09-07] (Realtek Semiconductor)

      (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

      Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
      Task: C:\Windows\Tasks\EPSON L310 Series Update {6245E3F3-24C0-44AD-84B1-4984B06EF0FF}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSN4E.EXE :/EXE:{6245E3F3-24C0-44AD-84B1-4984B06EF0FF} /F:Update WORKGROUP\KOLOB$ ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

      ==================== Shortcuts =============================

      (The entries could be listed to be restored or removed.)

      ==================== Loaded Modules (Whitelisted) ==============

      2016-07-16 05:42 - 2016-07-16 05:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
      2017-05-12 12:14 - 2017-04-27 18:49 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
      2017-01-09 10:57 - 2009-10-01 14:08 - 00015360 _____ () C:\Windows\System32\KOAZXJ_L.dll
      2017-01-05 17:36 - 2017-01-05 17:36 - 00077824 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\dataup\dataup.exe
      2017-05-12 12:14 - 2017-04-27 18:49 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
      2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
      2017-05-03 17:11 - 2017-05-03 17:11 - 00619008 ____N () C:\windows\system32\tprdpw64.exe
      2016-12-29 21:14 - 2016-09-06 22:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
      2017-03-18 14:03 - 2017-03-04 00:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
      2017-03-18 14:06 - 2017-03-04 00:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
      2017-03-18 14:08 - 2017-03-04 00:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
      2017-03-18 14:09 - 2017-03-04 00:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
      2017-05-12 12:14 - 2017-04-27 17:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
      2017-05-12 12:14 - 2017-04-27 17:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
      2017-04-21 15:37 - 2017-04-21 15:37 - 00884224 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\svcvmx.exe
      2017-04-21 16:28 - 2017-04-21 16:28 - 01080832 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\vmxclient.exe
      2017-05-09 10:57 - 2017-05-09 10:58 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe
      2017-05-09 10:57 - 2017-05-09 10:58 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
      2017-05-09 10:57 - 2017-05-09 10:58 - 43195904 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkyWrap.dll
      2017-05-09 10:57 - 2017-05-09 10:58 - 02457088 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\skypert.dll
      2017-05-04 11:13 - 2017-05-04 11:13 - 00235520 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\dataup\help_dll.dll
      2017-01-14 19:40 - 2017-01-14 19:40 - 53460992 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\libcef.dll
      2016-05-31 11:43 - 2016-05-31 11:43 - 01976832 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\libglesv2.dll
      2016-05-31 11:44 - 2016-05-31 11:44 - 00075264 _____ () C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\svcvmx\libegl.dll

      ==================== Alternate Data Streams (Whitelisted) =========

      (If an entry is included in the fixlist, only the ADS will be removed.)


      ==================== Safe Mode (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

      ==================== Association (Whitelisted) ===============

      (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


      ==================== Internet Explorer trusted/restricted ===============

      (If an entry is included in the fixlist, it will be removed from the registry.)

      IE trusted site: HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\localhost -> localhost

      ==================== Hosts content: ==========================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2015-10-30 01:24 - 2017-05-09 09:51 - 00002248 _____ C:\Windows\system32\Drivers\etc\hosts

      127.0.0.1 cap.cyberlink.com0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
      0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
      0.0.0.0 media.opencandy.com
      0.0.0.0 cdn.opencandy.com
      0.0.0.0 tracking.opencandy.com
      0.0.0.0 api.opencandy.com
      0.0.0.0 api.recommendedsw.com
      0.0.0.0 installer.betterinstaller.com
      0.0.0.0 installer.filebulldog.com
      0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
      0.0.0.0 inno.bisrv.com
      0.0.0.0 nsis.bisrv.com
      0.0.0.0 cdn.file2desktop.com
      0.0.0.0 cdn.goateastcach.us
      0.0.0.0 cdn.guttastatdk.us
      0.0.0.0 cdn.inskinmedia.com
      0.0.0.0 cdn.insta.oibundles2.com
      0.0.0.0 cdn.insta.playbryte.com
      0.0.0.0 cdn.llogetfastcach.us
      0.0.0.0 cdn.montiera.com
      0.0.0.0 cdn.msdwnld.com
      0.0.0.0 cdn.mypcbackup.com
      0.0.0.0 cdn.ppdownload.com
      0.0.0.0 cdn.riceateastcach.us
      0.0.0.0 cdn.shyapotato.us
      0.0.0.0 cdn.solimba.com
      0.0.0.0 cdn.tuto4pc.com
      0.0.0.0 cdn.appround.biz
      0.0.0.0 cdn.bigspeedpro.com
      0.0.0.0 cdn.bispd.com

      There are 9 more lines.


      ==================== Other Areas ============================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Walmart 2000\Pictures\Angel guerrero.jpg
      DNS Servers: Media is not connected to internet.
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
      Windows Firewall is enabled.

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      MSCONFIG\Services: 0046921494549219mcinstcleanup => 2
      MSCONFIG\Services: avgsvc => 2
      MSCONFIG\Services: ClientAnalyticsService => 3
      MSCONFIG\Services: cphs => 3
      MSCONFIG\Services: Dataup =>
      MSCONFIG\Services: DbxSvc => 2
      MSCONFIG\Services: Dell Help & Support => 2
      MSCONFIG\Services: DellDataVault => 2
      MSCONFIG\Services: DellUpdate => 2
      MSCONFIG\Services: EvtEng => 2
      MSCONFIG\Services: HomeNetSvc => 2
      MSCONFIG\Services: IAStorDataMgrSvc => 2
      MSCONFIG\Services: igfxCUIService2.0.0.0 => 2
      MSCONFIG\Services: Intel(R) Capability Licensing Service TCP IP Interface => 3
      MSCONFIG\Services: Intel(R) Security Assist => 3
      MSCONFIG\Services: Intel(R) WiDi SAM => 3
      MSCONFIG\Services: IntelUSBoverIP => 2
      MSCONFIG\Services: isaHelperSvc => 2
      MSCONFIG\Services: jhi_service => 2
      MSCONFIG\Services: LMS => 2
      MSCONFIG\Services: McAfee SiteAdvisor Service => 2
      MSCONFIG\Services: McBootDelayStartSvc => 2
      MSCONFIG\Services: mccspsvc => 2
      MSCONFIG\Services: McNaiAnn => 2
      MSCONFIG\Services: McODS => 2
      MSCONFIG\Services: mcpltsvc => 2
      MSCONFIG\Services: McProxy => 2
      MSCONFIG\Services: MSK80Service => 2
      MSCONFIG\Services: MyWiFiDHCPDNS => 3
      MSCONFIG\Services: PandaAgent => 2
      MSCONFIG\Services: PEFService => 2
      MSCONFIG\Services: Product Registration => 2
      MSCONFIG\Services: PSI_SVC_2_x64 => 2
      MSCONFIG\Services: RegSrvc => 2
      MSCONFIG\Services: RtkAudioService => 2
      MSCONFIG\Services: SupportAssistAgent => 2
      MSCONFIG\Services: SynTPEnhService => 2
      MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
      MSCONFIG\Services: WavesSysSvc => 2
      MSCONFIG\Services: windowsmanagementservice =>
      MSCONFIG\Services: ZeroConfigService => 2
      HKLM\...\StartupApproved\Run: => "iTunesHelper"
      HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp"
      HKLM\...\StartupApproved\Run: => "Eraser"
      HKLM\...\StartupApproved\Run32: => "Dropbox"
      HKLM\...\StartupApproved\Run32: => "HP Software Update"
      HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
      HKLM\...\StartupApproved\Run32: => "UnlockerAssistant"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "OneDrive"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "Epson Stylus Photo T50"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "WhatsApp"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "WiFiProtLauncher"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "Chromium"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "ApowersoftScreenRecorder"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "NY0YJZ5CQXV52AW"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "8HBRRR3BB2XG5OL"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "924664"
      HKU\S-1-5-21-1577294839-1248520855-4163237406-1001\...\StartupApproved\Run: => "745026"

      ==================== FirewallRules (Whitelisted) ===============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [UDP Query User{A7F8B183-14C0-44C0-BEEA-A56C5FDEB868}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
      FirewallRules: [TCP Query User{3427467B-2C3C-4CF1-BED5-C2570D8CD552}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
      FirewallRules: [{665FD9CD-33E7-40FB-8764-9E182110DBC6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      FirewallRules: [{84AB1A0C-D244-47D1-A669-CDFE73A84032}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      FirewallRules: [{93B3DF43-E7A5-4651-BC3B-8EF03B75C88C}] => (Allow) C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
      FirewallRules: [{96FC4498-9EA3-4E5A-BA05-BC8EF602A017}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\SmartAgentTest.exe
      FirewallRules: [{2795523B-6C48-418C-A296-455CA4F00023}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiAppOld.exe
      FirewallRules: [{70B15078-3E7B-4212-83A0-A283E50CB5E6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{52963022-D22B-46AD-90C7-59FD96DCD599}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
      FirewallRules: [{6E234BCB-D973-4000-AD47-B83DEFA1B201}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{C2C0B7A2-ABEB-4D7E-8416-C06B598337B0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
      FirewallRules: [{7C2A9347-42B6-4FA5-B2C4-0835BC5CA2AE}] => (Allow) C:\Program Files\iTunes\iTunes.exe
      FirewallRules: [{FBE35C22-0842-4FFF-B30C-7F5687C96DB0}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelDrw.exe
      FirewallRules: [{6953B393-3677-4AA0-A6C8-AC95DB554F0B}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelPP.exe
      FirewallRules: [{FA9F14FF-C4F7-4DF7-975A-0D4E87DCCF8C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
      FirewallRules: [{55C64BDA-07D6-4143-BF9C-63F8CC04B3B3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
      FirewallRules: [{77BDC8CD-1C83-4036-B497-E64D2CF1A020}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
      FirewallRules: [{8D8BBCBE-DF27-4806-A338-A785D0AA24CD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
      FirewallRules: [{936CCB5C-514B-4B39-BC13-74CE6CCEEB3F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
      FirewallRules: [{A97736E1-D537-4AE9-86F1-B8C9CD7FB5F2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
      FirewallRules: [{E918173C-1CB6-44D4-B622-EE41E7426193}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe
      FirewallRules: [{CCA19688-9B25-448C-A5C1-D6769FCE828E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
      FirewallRules: [{101F5FEF-8EE1-4B9B-AA64-1251D0750148}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
      FirewallRules: [{3B68E193-3743-4654-A09E-C25699A0F9BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
      FirewallRules: [{F0F3B882-16F4-4FED-AD16-7776151822C0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe
      FirewallRules: [{A0A2F488-7ED4-427A-B8F1-689EE8ED3F9D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
      FirewallRules: [{3B3F5B14-67DB-4A8F-BFBE-9D3F5B329052}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
      FirewallRules: [{CA9BBE06-FA83-470C-B00B-6DFA3EE8F4EC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
      FirewallRules: [{1E9C1C79-F38D-4246-B641-E8104FB10A18}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
      FirewallRules: [{8B31F069-C982-4EEE-9AEE-8EB8372D5DD0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
      FirewallRules: [{6C260BCC-10CA-44D4-AA8C-F335EF3D3AD1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
      FirewallRules: [{AB2178BC-F3C4-4E52-A044-075AAC721DA6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
      FirewallRules: [{D9CD4382-15CA-4D03-9266-3995C1D21276}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
      FirewallRules: [{4DEE8396-94CB-4FCF-A8DB-5013649861C4}] => (Block) %ProgramFiles%\Common Files\Protexis\License Service\PsiService_2.exe
      FirewallRules: [{07C82699-8E99-449E-A2EE-0D6F3C9A4013}] => (Block) %ProgramFiles%\Common Files\Protexis\License Service\PsiService_2.exe
      FirewallRules: [{2D7DAF00-BD23-49F4-AFD5-B7BF9B248C9C}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe

      ==================== Restore Points =========================

      10-05-2017 15:16:16 Installed Eraser 6.2.0.2979
      12-05-2017 05:41:08 Removed Java 8 Update 121

      ==================== Faulty Device Manager Devices =============


      ==================== Event log errors: =========================

      Application errors:
      ==================
      Error: (05/16/2017 08:58:42 AM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Nombre del módulo con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Código de excepción: 0xc0000005
      Desplazamiento de errores: 0x000157d5
      Identificador del proceso con errores: 0xfe4
      Hora de inicio de la aplicación con errores: 0x01d2ce54e79ec449
      Ruta de acceso de la aplicación con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Ruta de acceso del módulo con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Identificador del informe: 7495eee4-cfce-4c29-9fc1-3af85fbed098
      Nombre completo del paquete con errores:
      Identificador de aplicación relativa del paquete con errores:

      Error: (05/16/2017 08:53:26 AM) (Source: SideBySide) (EventID: 59) (User: )
      Description: Error al generar el contexto de activación para "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe". Error en el archivo de manifiesto o directiva "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe.Config" en la línea 0.
      Sintaxis XML no válida.

      Error: (05/16/2017 08:44:03 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: KOLOB)
      Description: No se pudo activar la aplicación Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App debido al error: -2147024865. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (05/16/2017 08:44:03 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: KOLOB)
      Description: No se pudo activar la aplicación Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App debido al error: -2147024726. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (05/15/2017 05:17:31 PM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Nombre del módulo con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Código de excepción: 0xc0000005
      Desplazamiento de errores: 0x000157d5
      Identificador del proceso con errores: 0xca8
      Hora de inicio de la aplicación con errores: 0x01d2cdd16cfdb4c8
      Ruta de acceso de la aplicación con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Ruta de acceso del módulo con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Identificador del informe: 8e60f76e-2119-4c54-b696-e0b2ef68a586
      Nombre completo del paquete con errores:
      Identificador de aplicación relativa del paquete con errores:

      Error: (05/15/2017 03:26:31 PM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Nombre del módulo con errores: winscr.exe, versión: 1.0.0.3, marca de tiempo: 0x58d8cfce
      Código de excepción: 0xc0000005
      Desplazamiento de errores: 0x000157d5
      Identificador del proceso con errores: 0x1c20
      Hora de inicio de la aplicación con errores: 0x01d2cdc1eadd590d
      Ruta de acceso de la aplicación con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Ruta de acceso del módulo con errores: C:\Users\Walmart 2000\AppData\Local\ntuserlitelist\winscr\winscr.exe
      Identificador del informe: 6b1133da-5b56-4c3a-9b20-63bd27432dc9
      Nombre completo del paquete con errores:
      Identificador de aplicación relativa del paquete con errores:

      Error: (05/15/2017 03:21:57 PM) (Source: Application Error) (EventID: 1000) (User: )
      Description: Nombre de la aplicación con errores: backgroundTaskHost.exe, versión: 10.0.14393.0, marca de tiempo: 0x57899bb2
      Nombre del módulo con errores: RPCRT4.dll, versión: 10.0.14393.82, marca de tiempo: 0x57a558cf
      Código de excepción: 0xc0020043
      Desplazamiento de errores: 0x0000000000076be3
      Identificador del proceso con errores: 0x1030
      Hora de inicio de la aplicación con errores: 0x01d2cdc134175288
      Ruta de acceso de la aplicación con errores: C:\WINDOWS\system32\backgroundTaskHost.exe
      Ruta de acceso del módulo con errores: C:\Windows\System32\RPCRT4.dll
      Identificador del informe: c9900833-b427-4581-8798-de02faeb4b37
      Nombre completo del paquete con errores: Microsoft.Windows.Cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy
      Identificador de aplicación relativa del paquete con errores: CortanaUI

      Error: (05/15/2017 03:21:18 PM) (Source: SideBySide) (EventID: 59) (User: )
      Description: Error al generar el contexto de activación para "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe". Error en el archivo de manifiesto o directiva "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe.Config" en la línea 0.
      Sintaxis XML no válida.

      Error: (05/15/2017 02:24:04 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: KOLOB)
      Description: No se pudo activar la aplicación Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen debido al error: -2147024726. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.

      Error: (05/15/2017 12:56:51 PM) (Source: SideBySide) (EventID: 59) (User: )
      Description: Error al generar el contexto de activación para "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe". Error en el archivo de manifiesto o directiva "C:\ProgramData\VideoMemoryDiagnostic\vmdiag.exe.Config" en la línea 0.
      Sintaxis XML no válida.


      System errors:
      =============
      Error: (05/16/2017 09:46:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:46:33 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:43:56 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:42:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:42:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:42:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:42:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:01:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
      Description: La configuración de permisos específico de la aplicación no concede el permiso Activación Local para la aplicación de servidor COM con CLSID
      {D63B10C5-BB46-4990-A94F-E40B9D520160}
      y APPID
      {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
      al usuario NT AUTHORITY\SYSTEM con SID (S-1-5-18) en la dirección LocalHost (con LRPC) que se ejecuta en el contenedor de aplicaciones con SID No disponible (No disponible). Este permiso de seguridad se puede modificar mediante la herramienta administrativa Servicios de componentes.

      Error: (05/16/2017 09:00:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.

      Error: (05/16/2017 09:00:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
      Description: El servicio McAfee Validation Trust Protection Service no pudo iniciarse debido al siguiente error:
      Ya se está usando el recurso solicitado.


      CodeIntegrity:
      ===================================
      Date: 2017-05-14 13:56:29.031
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-14 08:12:23.882
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-13 02:48:02.030
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-11 16:30:45.470
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-11 13:12:37.098
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

      Date: 2017-05-11 11:11:18.928
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-10 13:29:45.421
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Walmart 2000\AppData\Local\Temp\Rar$EXa0.311\x86\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

      Date: 2017-05-10 13:29:45.419
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Walmart 2000\AppData\Local\Temp\Rar$EXa0.311\x86\UnlockerDriver5.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

      Date: 2017-05-10 10:37:42.397
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

      Date: 2017-05-09 11:13:55.018
      Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


      ==================== Memory info ===========================

      Processor: Intel(R) Core(TM) i3-5005U CPU @ 2.00GHz
      Percentage of memory in use: 53%
      Total physical RAM: 4005.99 MB
      Available physical RAM: 1848.67 MB
      Total Virtual: 6821.99 MB
      Available Virtual: 4682.73 MB

      ==================== Drives ================================

      Drive c: (OS) (Fixed) (Total:917.23 GB) (Free:586.7 GB) NTFS

      ==================== MBR & Partition Table ==================

      ========================================================
      Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3100D23E)

      Partition: GPT.

      ==================== End of Addition.txt ============================

      Recibe un saludo y espero mas instrucciones.