Hello, I am currently running Windows 8.1 (upgraded from Windows Store) on an x64 system. I think my computer is infected because I recently noticed that neither my antivirus nor my antimalware run when I boot my computer. McAfee and MBAM is what I own. I immediatly tried to run both as Administrator but they just wouldn't open, so I rebooted. Again, they didn't open automatically and I wasn't able to run them manually. After that, I decided to reboot on Safe Mode and found out that both applications were able to run from there. I scanned with MBAM and it supposedly deleted 12 files, mostly PUPs and one Trojan. I rebooted again in normal mode and ran Chameleon (that occurred to me when I was scanning before) to see if there was something that maybe wasn't detected the first time. Chameleon opened succesfully and I was able to scan, but nothing was detected. Then, I tried to open McAfee and scan with it too, but it wouldn't run... so I rebooted in Safe Mode again, ran the application and attempted to scan, but it gave me an error message that an "unexpected error" occurred. I thought maybe MBAM and McAfee are incompatible and that's why they don't run, so I uninstalled MBAM (since I use the free version anyway) to see if there was any difference, and nothing changed. This time I reinstalled MBAM and tried to run Chameleon again, only to find that it wasn't of any help this time since it wasn't able to run MBAM and do any scans...
I'm very desperate because this malware thing is really annoying! I don't really know what else to do, so if someone could please help me I'd really appreciate it! I should mention that no other applications (that I know of) are being affected by this infection (or whatever it is), it's only my protection softwares... I am also able to browse the internet normally (I use Firefox) and when I downloaded FRST the McAfee Web Advisor actually worked... so I have no idea what's going on!
Please help! Here are my FRST logs:
FRST.txt
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:24-06-2015
Ran by Carlos (administrator) on CARLOS on 26-06-2015 19:45:49
Running from C:\Users\Mind\Desktop
Loaded Profiles: Carlos (Available Profiles: Carlos & sheyl_000 & luigi_000 & Administrador)
Platform: Windows 8.1 Single Language (X64) OS Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(Microsoft Corporation) C:\Users\Mind\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerEvent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.3.374.0\McCSPServiceHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\UPDMGR\3.0.350.3\mcupdatemgr.exe
(Microsoft Corporation) C:\Windows\System32\cleanmgr.exe
(Microsoft Corporation) C:\Users\Mind\AppData\Local\Temp\07E522B6-C12A-43BC-9C23-92865EBEF1CC\DismHost.exe
(Microsoft Corporation) C:\Users\Mind\AppData\Local\Temp\8967FD87-E437-43AF-B1F3-DB62F36AE961\DismHost.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(EJIE Technology) C:\Program Files (x86)\Clover\clover.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2890640 2013-04-22] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13550152 2013-05-29] (Realtek Semiconductor)
HKLM\...\Run: [BoxSync] => C:\Program Files\Box\Box Sync\BoxSync.exe [5728624 2015-03-11] (Box, Inc.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [643064 2015-02-09] (McAfee, Inc.)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\WB: C:\Program Files (x86)\Stardock\WindowBlinds\fast64.dll [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] (Atheros Communications)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 1
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\Run: [LightShot] => C:\Users\Mind\AppData\Local\Skillbrains\lightshot\Lightshot.exe [226560 2014-07-01] ()
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31280256 2015-04-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\Run: [Akamai NetSession Interface] => "C:\Users\Mind\AppData\Local\Akamai\netsession_win.exe"
IFEO\3dsmax.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\addlmgr.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\composite.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\databasecompare.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\excel.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\groove.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\infopath.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\ltu.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\lync.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\m3gplayer.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\maxfind.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\misc.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\msaccess.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\msoev.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\msotd.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\msoxmled.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\mspub.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\ocpubmgr.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\onenote.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\onenotem.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\outlook.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\powerpnt.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\spreadsheetcompare.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\uninstalltool.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\winword.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
Startup: C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2014-03-11]
ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar a OneNote.lnk [2014-03-11]
ShortcutTarget: Enviar a OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BoxSyncFileLocked] -> {2a607da5-abe8-358e-a881-c0f5faf2d3a5} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BoxSyncFileLockedByOther] -> {f7d2951f-0b6b-346c-99ec-69cffc30a364} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BoxSyncNotSynced] -> {5ea95e3d-3e46-3812-b03c-49785fa67d41} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BoxSyncProblem] -> {a88b7184-bfa1-3d14-8efb-2225df9699bc} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ BoxSyncSynced] -> {c89f9943-8f58-3eca-bd55-a658f53b2f48} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3719379302-292051052-530911563-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com.mx/
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3719379302-292051052-530911563-1001 -> DefaultScope {1B2EC69F-1543-4F89-9BB5-FB2CB2AE5867} URL = https://mx.search.ya...p={searchTerms}
SearchScopes: HKU\S-1-5-21-3719379302-292051052-530911563-1001 -> {1B2EC69F-1543-4F89-9BB5-FB2CB2AE5867} URL = https://mx.search.ya...p={searchTerms}
SearchScopes: HKU\S-1-5-21-3719379302-292051052-530911563-1001 -> {B2DE52DB-3680-49EA-A2A9-AEDE1D08A9C2} URL =
BHO: No Name -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\OldNewExplorer\OldNewExplorer64.dll [2015-03-21] (www.startisback.com)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-13] (Microsoft Corporation)
BHO: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper64.dll [2014-01-23] (EJIE Technology)
BHO-x32: No Name -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\OldNewExplorer\OldNewExplorer32.dll [2015-03-21] (www.startisback.com)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-13] (Microsoft Corporation)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll [2015-06-04] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll [2015-06-04] (McAfee, Inc.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-03-12] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll [2015-06-04] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll [2015-06-04] (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2015-02-27] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2015-02-27] (McAfee, Inc.)
Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [50176 2015-03-08] (Microsoft Corporation)
Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [50176 2015-03-08] (Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [74240 2015-03-08] (Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [74240 2015-03-08] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{2A255058-79B7-4D54-8702-77A674AC6263}: [NameServer] 8.8.8.8,8.8.4.4
FireFox:
========
FF ProfilePath: C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default
FF SearchEngineOrder.1: Búsqueda segura
FF SelectedSearchEngine: Búsqueda segura
FF Homepage: www.google.com.mx
FF Keyword.URL: https://mx.search.ya...911D20140703&p=
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-02-27] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-02-27] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin HKU\S-1-5-21-3719379302-292051052-530911563-1001: pokki.com/PokkiDownloadHelper -> C:\Users\Mind\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll No File
FF user.js: detected! => C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\user.js [2015-06-19]
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF SearchPlugin: C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\searchplugins\diccionario-drae.xml [2015-06-15]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-06-15]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolibre-mx.xml [2015-05-25]
FF Extension: New metroTab - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\[email protected] [2015-06-14]
FF Extension: Wiktionary and Google Translate - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\[email protected] [2015-06-15]
FF Extension: Magic Actions for YouTube™ - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\[email protected] [2015-06-14]
FF Extension: WikiWand: Wikipedia Modernized - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\[email protected] [2015-06-14]
FF Extension: Video WithOut Flash - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\[email protected] [2015-06-19]
FF Extension: Adblock Plus - C:\Users\Mind\AppData\Roaming\Mozilla\Firefox\Profiles\vmqfrxlw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-06-14]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-03-16]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-03-16]
FF HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Mind\AppData\Roaming\IDM\idmmzcc3
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-06-09]
CHR HKLM-x32\...\Chrome\Extension: [bpeeepmahhfjiediknjejcmcfmjcjdck] - C:\Program Files (x86)\Google\Chrome\User Data\Default\Extensions\serach.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [dkdkpmmkgdbglmfmmmmehbkmnkopingb] - C:\Program Files (x86)\Google\Chrome\User Data\Default\Extensions\v9-toolbar.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-06-09]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows ® Win 7 DDK provider) [File not signed]
S4 BoxSyncUpdateService; C:\Program Files\Box\Box Sync\SyncUpdaterService.exe [28696 2015-02-10] (Box, Inc.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
S2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [317640 2015-03-30] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [165336 2013-01-14] (Intel Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [155368 2015-06-04] (McAfee, Inc.)
S2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2015-02-27] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.3.374.0\McCSPServiceHost.exe [422632 2015-01-22] (McAfee, Inc.)
S2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
S2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
S2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1050952 2014-11-06] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.)
S2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2138936 2014-03-20] (TuneUp Software)
R2 VSSS; C:\Users\Mind\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe [106694464 2015-06-25] (Microsoft Corporation) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.)
S3 DCamUSBEMPIA; C:\Windows\system32\DRIVERS\emDevice64.sys [215808 2007-06-21] (eMPIA Technology, Inc.) [File not signed]
S3 emAudio; C:\Windows\system32\drivers\emAudio64.sys [79872 2007-08-31] (eMPIA Technology, Inc.) [File not signed]
S3 FiltUSBEMPIA; C:\Windows\system32\DRIVERS\emFilter64.sys [6400 2007-06-21] (eMPIA Technology, Inc.) [File not signed]
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
S3 MarvinBus; C:\Windows\System32\drivers\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [447440 2014-09-19] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96600 2014-09-19] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
S3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd)
S3 ScanUSBEMPIA; C:\Windows\system32\DRIVERS\emScan64.sys [6144 2007-06-21] (eMPIA Technology, Inc.) [File not signed]
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2014-02-10] (TuneUp Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
R4 KProcessHacker2; \??\C:\Program Files\kprocesshacker.sys [X]
S3 RimUsb; \SystemRoot\System32\Drivers\RimUsb_AMD64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-26 19:45 - 2015-06-26 19:46 - 00023707 _____ C:\Users\Mind\Desktop\FRST.txt
2015-06-26 19:45 - 2015-06-26 19:45 - 00000000 ____D C:\FRST
2015-06-26 19:43 - 2015-06-26 19:44 - 02112512 _____ (Farbar) C:\Users\Mind\Desktop\FRST64.exe
2015-06-26 19:39 - 2015-06-26 19:39 - 01415680 _____ (wj32) C:\Program Files\PHDDTXXH.exe
2015-06-26 19:33 - 2015-06-26 19:33 - 675916926 _____ C:\WINDOWS\MEMORY.DMP
2015-06-26 19:33 - 2015-06-26 19:33 - 00284736 _____ C:\WINDOWS\Minidump\062615-20187-01.dmp
2015-06-26 19:31 - 2015-06-26 19:31 - 00000000 ____D C:\AdwCleaner
2015-06-26 19:26 - 2015-06-26 19:27 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-06-26 19:26 - 2015-06-26 19:26 - 00001081 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-06-26 19:26 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-06-26 19:26 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-06-26 17:44 - 2015-06-26 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2015-06-26 17:03 - 2015-06-26 17:03 - 01415680 _____ (wj32) C:\Program Files\62UY2YKK.exe
2015-06-26 16:01 - 2015-06-26 16:01 - 01415680 _____ (wj32) C:\Program Files\2IUIUEKY.exe
2015-06-26 14:46 - 2015-06-26 14:46 - 01415680 _____ (wj32) C:\Program Files\7N7RZJ3J.exe
2015-06-26 14:45 - 2015-06-26 14:45 - 01415680 _____ (wj32) C:\Program Files\RVJBNNFB.exe
2015-06-26 13:22 - 2015-06-26 13:22 - 01415680 _____ (wj32) C:\Program Files\99XHLHPT.exe
2015-06-26 01:26 - 2015-06-26 01:26 - 00000000 ____D C:\Intel
2015-06-26 01:23 - 2015-06-26 01:23 - 00000000 ____D C:\Users\Mind\AppData\Local\backburner
2015-06-20 00:49 - 2015-06-20 00:49 - 00000000 ____D C:\Users\Mind\Tracing
2015-06-19 16:17 - 2015-06-19 16:17 - 00000000 ____D C:\Users\Mind\AppData\Local\Autodesk
2015-06-19 16:01 - 2015-06-19 18:32 - 00000000 ____D C:\Program Files\Autodesk
2015-06-19 15:30 - 2015-06-19 16:19 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Autodesk
2015-06-19 13:37 - 2014-04-15 18:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2015-06-19 13:37 - 2014-04-15 18:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2015-06-19 13:21 - 2015-01-05 22:01 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2015-06-19 13:21 - 2015-01-05 21:59 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-06-19 13:21 - 2015-01-05 20:12 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
2015-06-19 13:21 - 2015-01-05 20:02 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
2015-06-19 13:19 - 2014-11-15 14:05 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-06-19 13:19 - 2014-11-15 01:29 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-06-19 13:19 - 2014-11-14 01:57 - 01027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-06-19 13:19 - 2014-11-14 00:03 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-06-19 13:19 - 2014-11-10 13:06 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-06-19 13:19 - 2014-11-10 13:06 - 00473408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-06-19 13:19 - 2014-11-10 13:06 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-06-19 13:19 - 2014-11-10 13:06 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-06-19 13:19 - 2014-11-09 21:57 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2015-06-19 13:19 - 2014-11-09 20:37 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-06-19 13:19 - 2014-11-09 20:34 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-06-19 13:19 - 2014-11-09 20:26 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-06-19 13:19 - 2014-11-09 20:20 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2015-06-19 13:19 - 2014-11-09 20:09 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2015-06-19 13:19 - 2014-11-09 20:08 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2015-06-19 13:19 - 2014-11-09 20:06 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-06-19 13:19 - 2014-11-09 19:57 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2015-06-19 13:19 - 2014-11-09 19:57 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-06-19 13:19 - 2014-11-07 23:00 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2015-06-19 13:19 - 2014-11-07 22:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2015-06-19 13:19 - 2014-11-07 22:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
2015-06-19 13:19 - 2014-11-07 22:56 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmxs.dll
2015-06-19 13:19 - 2014-11-07 22:56 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
2015-06-19 13:19 - 2014-11-07 22:24 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdiag.dll
2015-06-19 13:19 - 2014-11-07 22:13 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
2015-06-19 13:19 - 2014-11-07 22:13 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmxs.dll
2015-06-19 13:19 - 2014-11-07 22:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasser.dll
2015-06-19 13:19 - 2014-11-07 21:48 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdiag.dll
2015-06-19 13:19 - 2014-11-07 21:38 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-06-19 13:19 - 2014-11-07 21:17 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-06-19 13:19 - 2014-11-07 21:03 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-06-19 13:19 - 2014-11-07 20:58 - 04837376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-06-19 13:19 - 2014-11-07 20:49 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-06-19 13:19 - 2014-11-06 22:58 - 00952896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-06-19 13:19 - 2014-11-06 22:20 - 00786120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-06-19 13:19 - 2014-11-04 21:12 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSHVHOST.DLL
2015-06-19 13:19 - 2014-11-04 21:12 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSVRMGMT.DLL
2015-06-19 13:19 - 2014-11-04 21:06 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2015-06-19 13:19 - 2014-11-04 20:44 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-06-19 13:19 - 2014-11-04 20:43 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-06-19 13:19 - 2014-11-04 20:41 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-06-19 13:19 - 2014-11-04 20:39 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSHVHOST.DLL
2015-06-19 13:19 - 2014-11-04 20:39 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSVRMGMT.DLL
2015-06-19 13:19 - 2014-11-04 20:33 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2015-06-19 13:19 - 2014-11-04 20:21 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-06-19 13:19 - 2014-11-04 20:20 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-06-19 13:19 - 2014-11-04 20:18 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2015-06-19 13:19 - 2014-11-04 20:14 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2015-06-19 13:19 - 2014-11-04 20:06 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-06-19 13:19 - 2014-11-04 14:33 - 00058176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-06-19 13:19 - 2014-11-04 14:25 - 00059712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
2015-06-19 13:19 - 2014-11-04 14:25 - 00051008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys
2015-06-19 13:19 - 2014-11-04 01:55 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
2015-06-19 13:19 - 2014-11-04 01:54 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
2015-06-19 13:19 - 2014-11-04 01:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2015-06-19 13:19 - 2014-11-04 01:54 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2015-06-19 13:19 - 2014-11-04 01:27 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2015-06-19 13:19 - 2014-11-04 00:01 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2015-06-19 13:19 - 2014-10-30 19:51 - 18823168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-06-19 13:19 - 2014-10-30 19:10 - 15158784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-06-19 13:19 - 2014-10-28 22:05 - 00551232 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-06-19 13:19 - 2014-10-28 20:55 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-06-19 13:19 - 2014-10-28 20:13 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2015-06-19 13:19 - 2014-10-20 20:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcls.dll
2015-06-19 13:19 - 2014-10-20 20:19 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eventcls.dll
2015-06-19 13:19 - 2014-10-20 19:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2015-06-19 13:19 - 2014-10-20 19:31 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-06-19 13:19 - 2014-10-20 19:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2015-06-19 13:19 - 2014-10-20 19:30 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-06-19 13:19 - 2014-10-20 19:20 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-06-19 13:19 - 2014-10-16 23:56 - 00039744 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2015-06-19 13:19 - 2014-10-16 22:35 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2015-06-19 13:15 - 2015-05-15 17:01 - 00133288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-06-19 13:15 - 2015-05-15 16:05 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-06-19 13:15 - 2015-05-15 15:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-06-19 13:15 - 2015-05-15 15:23 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-06-19 13:15 - 2015-05-15 14:42 - 03682304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-06-19 13:15 - 2015-05-15 14:32 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-06-19 13:15 - 2015-05-15 14:31 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-06-19 13:15 - 2015-05-15 14:28 - 02223104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-06-19 13:15 - 2015-05-15 14:28 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-06-19 13:15 - 2015-05-15 14:28 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-06-19 13:15 - 2015-05-15 14:27 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-06-19 13:15 - 2015-05-15 14:21 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-06-19 13:15 - 2015-05-15 14:21 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-06-19 13:15 - 2015-05-15 14:19 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-06-19 13:15 - 2015-05-15 14:19 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-06-19 13:15 - 2015-05-11 13:17 - 01201664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2015-06-19 13:15 - 2015-05-07 12:50 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-06-19 13:15 - 2015-05-07 12:00 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-06-19 13:15 - 2015-05-07 11:53 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-06-19 13:15 - 2015-05-07 11:12 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-06-19 13:15 - 2015-05-07 10:21 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-06-19 13:15 - 2015-05-07 10:05 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2015-06-19 13:15 - 2015-05-03 10:09 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-19 13:15 - 2015-05-03 09:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-19 13:15 - 2015-05-03 09:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-06-19 13:15 - 2015-05-03 09:49 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-06-19 13:15 - 2015-05-02 19:39 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-06-19 13:15 - 2015-04-30 20:13 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2015-06-19 13:15 - 2015-04-30 20:13 - 01488000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-06-19 13:15 - 2015-04-30 20:13 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2015-06-19 13:15 - 2015-04-29 18:22 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2015-06-19 13:15 - 2015-04-24 21:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2015-06-19 13:15 - 2014-11-17 15:17 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-06-19 13:15 - 2014-11-17 15:17 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-06-19 13:15 - 2014-11-14 01:54 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-06-19 13:15 - 2014-11-14 01:46 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-06-19 13:13 - 2015-05-11 19:24 - 00536920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-06-19 13:13 - 2015-05-11 11:34 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2015-06-19 13:13 - 2015-04-28 08:13 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-06-19 13:13 - 2015-04-28 08:13 - 00513480 _____ C:\WINDOWS\system32\locale.nls
2015-06-19 13:12 - 2015-05-12 08:19 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-06-19 13:12 - 2015-05-07 11:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-06-19 13:12 - 2015-05-01 18:33 - 00410739 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-06-19 13:12 - 2015-04-23 10:47 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-06-19 13:12 - 2015-04-23 10:16 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-06-19 13:11 - 2015-05-03 10:07 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-06-19 13:11 - 2015-05-03 09:57 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-06-19 12:30 - 2015-06-19 12:30 - 00000724 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® HD Graphics Control Panel.lnk
2015-06-19 12:27 - 2015-03-30 16:32 - 00187844 _____ C:\WINDOWS\system32\resTHA.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00180644 _____ C:\WINDOWS\system32\resELL.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00176500 _____ C:\WINDOWS\system32\resRUS.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00162356 _____ C:\WINDOWS\system32\resARA.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00161812 _____ C:\WINDOWS\system32\resHEB.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00161764 _____ C:\WINDOWS\system32\resJPN.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00157172 _____ C:\WINDOWS\system32\resFRA.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00157156 _____ C:\WINDOWS\system32\resHUN.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00155460 _____ C:\WINDOWS\system32\resKOR.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00155364 _____ C:\WINDOWS\system32\resITA.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00155364 _____ C:\WINDOWS\system32\resDEU.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00155204 _____ C:\WINDOWS\system32\resROM.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00155092 _____ C:\WINDOWS\system32\resESN.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00154660 _____ C:\WINDOWS\system32\resPLK.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00154516 _____ C:\WINDOWS\system32\resSKY.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00154324 _____ C:\WINDOWS\system32\resNLD.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00153764 _____ C:\WINDOWS\system32\resPTB.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00153620 _____ C:\WINDOWS\system32\resTRK.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00153604 _____ C:\WINDOWS\system32\resCSY.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00153460 _____ C:\WINDOWS\system32\resPTG.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00153060 _____ C:\WINDOWS\system32\resFIN.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00152612 _____ C:\WINDOWS\system32\resHRV.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00152164 _____ C:\WINDOWS\system32\resSVE.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00152004 _____ C:\WINDOWS\system32\resSLV.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00151060 _____ C:\WINDOWS\system32\resNOR.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00150548 _____ C:\WINDOWS\system32\resDAN.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00149236 _____ C:\WINDOWS\system32\resENU.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00147460 _____ C:\WINDOWS\system32\resCHT.cui
2015-06-19 12:27 - 2015-03-30 16:32 - 00146628 _____ C:\WINDOWS\system32\resCHS.cui
2015-06-19 12:27 - 2015-03-30 16:31 - 22905344 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 17837568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 10912320 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 08520192 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 06503424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 04360392 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 04356808 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 04011168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 03787704 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2015-06-19 12:27 - 2015-03-30 16:31 - 02479472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 02027008 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01984000 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01783808 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01758208 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01455776 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01137120 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 01133000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00958152 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00812192 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00734720 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00670208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00646304 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00603296 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00545216 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00543944 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00529096 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00454760 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00454416 _____ (Intel® Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2015-06-19 12:27 - 2015-03-30 16:31 - 00433088 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00399296 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00398784 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00384000 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00376832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00366680 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00365568 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00344736 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00320512 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00317640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00286720 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00279240 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00276480 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00255488 _____ C:\WINDOWS\system32\igfxCPL.cpl
2015-06-19 12:27 - 2015-03-30 16:31 - 00252416 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00245960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00223232 _____ C:\WINDOWS\system32\igdde64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00220160 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00218848 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00210592 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00188496 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00184832 _____ C:\WINDOWS\SysWOW64\igdde32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00184832 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00183840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00183296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4176.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00177824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00162304 _____ C:\WINDOWS\system32\igdail64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00159096 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00155136 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00154048 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2015-06-19 12:27 - 2015-03-30 16:31 - 00143872 _____ C:\WINDOWS\SysWOW64\igdail32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00128672 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00094368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00086528 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00069632 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00059392 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00030720 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2015-06-19 12:27 - 2015-03-30 16:31 - 00002564 _____ C:\WINDOWS\system32\iglhxs64.vp
2015-06-19 12:24 - 2015-06-19 12:24 - 00000000 ____D C:\ProgramData\IntelDLM
2015-06-19 12:17 - 2015-06-19 12:17 - 00000000 ____D C:\Users\Mind\AppData\Local\Intel
2015-06-19 10:28 - 2015-06-26 19:33 - 00004395 _____ C:\WINDOWS\setupact.log
2015-06-19 10:28 - 2015-06-19 10:28 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-06-18 18:41 - 2015-06-19 14:15 - 00000000 ____D C:\ProgramData\Autodesk
2015-06-18 17:06 - 2015-06-18 17:06 - 00000000 ____D C:\Program Files (x86)\Wiimm
2015-06-16 18:12 - 2015-06-16 18:12 - 06036434 _____ C:\Users\luigi_000\Documents\Copia de seguridad de los invizimals carajo.wbk
2015-06-15 12:03 - 2015-06-15 12:03 - 00000000 ____D C:\Users\Mind\AppData\Local\Macromedia
2015-06-14 18:47 - 2015-06-14 18:47 - 00931408 _____ (Google Inc.) C:\Users\luigi_000\Downloads\ChromeSetup.exe
2015-06-14 18:46 - 2015-06-14 18:46 - 00000000 ____D C:\Users\luigi_000\AppData\Roaming\Mozilla
2015-06-14 18:46 - 2015-06-14 18:46 - 00000000 ____D C:\Users\luigi_000\AppData\Local\Mozilla
2015-06-14 16:16 - 2015-06-14 16:16 - 00001138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-06-14 16:16 - 2015-06-14 16:16 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Mozilla
2015-06-14 16:16 - 2015-06-14 16:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-06-13 11:07 - 2015-05-22 08:08 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 01119232 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 00756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2015-06-13 11:07 - 2015-05-21 08:08 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-06-13 11:07 - 2015-04-16 17:07 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-06-11 00:06 - 2015-06-11 00:06 - 00000000 ____D C:\Users\Mind\Documents\Plantillas personalizadas de Office
2015-06-10 09:58 - 2015-05-25 08:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-06-10 09:58 - 2015-05-25 08:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-06-10 09:58 - 2015-04-13 17:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2015-06-10 09:58 - 2015-04-13 17:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2015-06-10 09:58 - 2015-04-09 19:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-10 09:58 - 2015-04-08 17:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll
2015-06-10 09:58 - 2015-03-31 23:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-10 09:58 - 2015-03-31 23:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-06-10 09:58 - 2015-03-31 23:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-06-10 09:58 - 2015-03-31 23:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-06-10 09:58 - 2015-03-31 22:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-06-10 09:58 - 2015-03-31 22:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-06-10 09:58 - 2015-03-31 22:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-06-10 09:58 - 2015-03-31 21:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-06-10 09:58 - 2015-03-31 21:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-06-10 09:58 - 2015-03-31 21:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-06-10 09:58 - 2015-03-31 21:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-06-10 09:58 - 2015-03-31 21:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-06-10 09:58 - 2015-03-31 21:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-06-10 09:58 - 2015-03-19 22:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-06-10 09:58 - 2015-03-19 22:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-06-10 09:58 - 2015-03-19 21:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-06-10 09:58 - 2015-03-19 21:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-06-10 09:58 - 2015-03-01 20:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2015-06-10 09:58 - 2015-03-01 20:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2015-06-10 09:57 - 2015-04-16 01:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-06-10 09:57 - 2015-04-09 19:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-06-10 00:39 - 2015-06-26 14:42 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Skype
2015-06-09 14:08 - 2015-05-27 09:35 - 24917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-06-09 14:08 - 2015-05-27 09:08 - 19607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-06-09 14:08 - 2015-05-22 22:10 - 02278912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-06-09 14:08 - 2015-05-22 21:47 - 04305920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-06-09 14:08 - 2015-05-22 21:28 - 12829696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-06-09 14:08 - 2015-05-22 21:20 - 01950720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-06-09 14:08 - 2015-05-22 21:16 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-06-09 14:08 - 2015-05-22 14:00 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-06-09 14:08 - 2015-05-22 13:52 - 06026240 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-06-09 14:08 - 2015-05-22 12:57 - 14404096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-06-09 14:08 - 2015-05-22 12:50 - 02426880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-06-09 14:08 - 2015-05-22 12:38 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-06-09 14:08 - 2015-04-24 21:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-06-09 14:08 - 2015-04-24 21:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-06-09 14:07 - 2015-05-22 22:15 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-06-09 14:07 - 2015-05-22 22:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-06-09 14:07 - 2015-05-22 22:05 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-06-09 14:07 - 2015-05-22 22:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2015-06-09 14:07 - 2015-05-22 21:48 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-06-09 14:07 - 2015-05-22 21:47 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-06-09 14:07 - 2015-05-22 21:47 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-06-09 14:07 - 2015-05-22 21:43 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-06-09 14:07 - 2015-05-22 21:38 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-06-09 14:07 - 2015-05-22 21:38 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-06-09 14:07 - 2015-05-22 21:37 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-06-09 14:07 - 2015-05-22 21:28 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-06-09 14:07 - 2015-05-22 21:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-06-09 14:07 - 2015-05-22 14:00 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-06-09 14:07 - 2015-05-22 14:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-06-09 14:07 - 2015-05-22 13:48 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-06-09 14:07 - 2015-05-22 13:47 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-06-09 14:07 - 2015-05-22 13:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-06-09 14:07 - 2015-05-22 13:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-06-09 14:07 - 2015-05-22 13:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-06-09 14:07 - 2015-05-22 13:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-06-09 14:07 - 2015-05-22 13:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-06-09 14:07 - 2015-05-22 13:09 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-06-09 14:07 - 2015-05-22 13:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-06-09 14:07 - 2015-05-22 13:06 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-06-09 14:07 - 2015-05-22 13:05 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-06-09 14:07 - 2015-05-22 12:49 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-06-09 14:07 - 2015-05-22 12:26 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-06-09 14:07 - 2015-05-21 11:47 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-06-08 13:56 - 2015-06-08 13:56 - 00009125 _____ C:\Users\Mind\Downloads\Moonlight_Sonata.mid
2015-06-03 21:07 - 2015-06-15 23:16 - 00000068 _____ C:\Users\luigi_000\Documents\canciones.txt
2015-06-03 20:22 - 2015-06-03 20:22 - 00000000 ____D C:\Users\sheyl_000\AppData\Local\GWX
2015-06-02 19:49 - 2015-06-02 19:49 - 00000025 _____ C:\Users\sheyl_000\Documents\direccion de sebastian.txt
2015-06-02 15:07 - 2015-06-02 15:07 - 00000000 ____D C:\Users\luigi_000\AppData\Local\GWX
2015-06-01 23:18 - 2015-06-04 14:19 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-06-01 22:25 - 2015-06-01 23:17 - 00000000 ____D C:\ProgramData\Adobe
2015-06-01 22:24 - 2015-06-20 12:54 - 00000000 ____D C:\Users\Mind\AppData\Local\Adobe
2015-06-01 21:42 - 2015-06-02 23:59 - 00000000 ____D C:\Users\Mind\Downloads\Asmov
2015-06-01 13:33 - 2015-06-01 13:33 - 00000000 ____D C:\Users\Mind\AppData\Local\GWX
2015-05-31 18:14 - 2015-06-19 17:03 - 00000000 ____D C:\Users\Mind\Downloads\Películas
2015-05-29 19:43 - 2015-06-19 15:33 - 00052787 _____ C:\WINDOWS\DirectX.log
2015-05-29 19:41 - 2015-05-29 19:41 - 00000986 _____ C:\Users\Mind\Desktop\ .lnk
2015-05-29 19:41 - 2015-05-29 19:41 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Symphony
2015-05-29 19:41 - 2015-05-29 19:41 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Empty Clip Studios
2015-05-29 19:41 - 2015-05-29 19:41 - 00000000 ____D C:\Program Files (x86)\Symphony
2015-05-28 21:42 - 2015-06-20 12:39 - 00000000 ____D C:\Users\Mind\AppData\Roaming\uTorrent
2015-05-27 14:43 - 2015-05-27 14:43 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2015-05-27 14:43 - 2015-05-27 14:43 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2015-05-27 11:34 - 2015-05-27 11:34 - 00001256 _____ C:\Users\sheyl_000\Desktop\Mozilla Firefox.lnk
2015-05-27 11:32 - 2015-05-27 11:32 - 00243456 _____ C:\Users\sheyl_000\Downloads\Firefox Setup Stub 38.0.1.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-26 19:41 - 2015-05-18 21:08 - 00005026 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for CARLOS-Carlos Carlos
2015-06-26 19:39 - 2014-01-15 16:16 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3719379302-292051052-530911563-1001
2015-06-26 19:34 - 2014-04-06 18:08 - 00000000 ____D C:\Users\Mind
2015-06-26 19:33 - 2015-04-04 13:26 - 00015342 _____ C:\WINDOWS\PFRO.log
2015-06-26 19:33 - 2014-04-09 15:20 - 00000000 ____D C:\WINDOWS\Minidump
2015-06-26 19:33 - 2013-08-22 09:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-06-26 19:28 - 2015-03-31 12:29 - 01160900 _____ C:\WINDOWS\WindowsUpdate.log
2015-06-26 19:26 - 2014-07-07 15:27 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-06-26 19:24 - 2014-01-19 19:37 - 11809280 ___SH C:\Users\Mind\Downloads\Thumbs.db
2015-06-26 19:18 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-06-26 19:16 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-06-26 18:23 - 2014-01-16 01:15 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3719379302-292051052-530911563-1004
2015-06-26 18:23 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-06-26 18:15 - 2014-06-18 11:27 - 00003986 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{C8F91846-B053-43E3-88FC-03E1AB014D85}
2015-06-26 18:11 - 2013-08-22 08:25 - 01048576 ___SH C:\WINDOWS\system32\config\BBI
2015-06-26 15:57 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\addins
2015-06-26 14:07 - 2015-03-30 18:49 - 00000000 ____D C:\Users\Mind\AppData\Roaming\vlc
2015-06-26 13:30 - 2014-04-10 21:30 - 00003974 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{08D514BD-CBD5-4FFB-A7A1-744648AE93D3}
2015-06-26 01:33 - 2014-01-15 22:41 - 00000000 ____D C:\Users\Mind\Documents\Hacks
2015-06-26 01:28 - 2014-05-19 19:44 - 00000000 ____D C:\ProgramData\Package Cache
2015-06-26 01:23 - 2014-05-16 08:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2015-06-25 23:16 - 2014-01-19 16:36 - 05715456 ___SH C:\Users\Mind\Desktop\Thumbs.db
2015-06-25 23:01 - 2014-06-10 10:48 - 00000404 _____ C:\WINDOWS\Tasks\update-sys.job
2015-06-25 21:28 - 2013-11-14 02:25 - 01829802 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-25 21:28 - 2013-11-14 02:08 - 00811154 _____ C:\WINDOWS\system32\perfh00A.dat
2015-06-25 21:28 - 2013-11-14 02:08 - 00166914 _____ C:\WINDOWS\system32\perfc00A.dat
2015-06-25 20:51 - 2014-05-19 19:52 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
2015-06-25 17:46 - 2014-05-04 15:02 - 00000000 ____D C:\Users\Mind\AppData\Local\BrawlBox
2015-06-25 17:41 - 2014-08-16 13:06 - 00000000 ____D C:\Users\Mind\AppData\Local\CrashDumps
2015-06-25 17:30 - 2014-01-15 22:43 - 02351104 ___SH C:\Users\Mind\Documents\Thumbs.db
2015-06-24 20:08 - 2014-01-15 15:33 - 00000000 ____D C:\Users\Mind\AppData\Local\VirtualStore
2015-06-24 12:26 - 2012-07-26 02:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-06-23 21:15 - 2014-01-26 17:04 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3719379302-292051052-530911563-1005
2015-06-23 18:14 - 2014-06-17 12:02 - 00000000 ____D C:\Users\sheyl_000\AppData\Local\CrashDumps
2015-06-23 18:13 - 2014-04-06 18:08 - 00000000 ____D C:\Users\sheyl_000
2015-06-23 15:46 - 2012-07-26 03:12 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-06-22 21:35 - 2013-08-22 08:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-06-21 20:19 - 2015-04-23 23:01 - 00000000 ____D C:\Users\luigi_000\Documents\imagenes raras
2015-06-21 19:14 - 2014-04-11 17:19 - 00003986 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E5B52E09-DA77-4129-96DE-655633508D48}
2015-06-21 19:12 - 2014-04-06 18:08 - 00000000 ____D C:\Users\luigi_000
2015-06-20 20:37 - 2014-07-22 23:00 - 00000000 ____D C:\Users\Mind\FormatFactory
2015-06-20 14:21 - 2015-03-12 16:16 - 00000000 ____D C:\WINDOWS\rescache
2015-06-19 22:02 - 2014-11-17 19:02 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-06-19 22:02 - 2014-11-17 19:02 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-06-19 16:17 - 2014-05-16 08:58 - 00000000 ____D C:\ProgramData\FLEXnet
2015-06-19 16:01 - 2013-08-22 08:25 - 00017938 _____ C:\WINDOWS\system32\Drivers\etc\services
2015-06-19 14:21 - 2014-06-09 23:47 - 00000000 ____D C:\Users\Mind\AppData\Local\JDownloader v2.0
2015-06-19 13:26 - 2013-08-22 10:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-06-19 13:26 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-06-19 13:26 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2015-06-19 13:26 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\system32\setup
2015-06-19 12:33 - 2013-09-16 05:18 - 00016378 _____ C:\WINDOWS\system32\results.xml
2015-06-19 02:32 - 2013-09-04 14:27 - 00004410 _____ C:\WINDOWS\System32\Tasks\ALUAgent
2015-06-19 02:32 - 2013-09-04 14:27 - 00003634 _____ C:\WINDOWS\System32\Tasks\ALU
2015-06-18 17:16 - 2015-05-11 13:30 - 00000000 ____D C:\Users\Mind\Downloads\Shpongle
2015-06-17 22:10 - 2015-05-06 13:14 - 00000000 __SHD C:\Users\sheyl_000\AppData\Local\EmieBrowserModeList
2015-06-17 22:10 - 2014-06-18 11:27 - 00000000 __SHD C:\Users\sheyl_000\AppData\Local\EmieUserList
2015-06-17 22:10 - 2014-06-18 11:27 - 00000000 __SHD C:\Users\sheyl_000\AppData\Local\EmieSiteList
2015-06-17 16:16 - 2015-03-08 14:53 - 00000000 ___RD C:\Users\Mind\Box Sync
2015-06-16 21:15 - 2014-07-20 00:05 - 00070656 ___SH C:\Users\luigi_000\Desktop\Thumbs.db
2015-06-16 21:15 - 2014-01-28 17:21 - 00000000 ____D C:\Users\luigi_000\AppData\Local\CrashDumps
2015-06-16 20:34 - 2014-12-03 19:48 - 00000000 ____D C:\Users\Mind\Downloads\always-on-top
2015-06-16 20:33 - 2015-03-01 17:34 - 00000000 ____D C:\icon
2015-06-15 22:53 - 2014-01-15 15:33 - 00000000 ____D C:\Users\Mind\AppData\Local\Packages
2015-06-14 16:33 - 2014-01-15 16:15 - 00000000 ____D C:\Users\Mind\AppData\Local\Google
2015-06-14 16:29 - 2014-08-29 23:36 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-06-14 16:16 - 2015-04-16 15:42 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-14 16:14 - 2014-11-16 15:13 - 00000000 __SHD C:\Users\Mind\AppData\Local\EmieBrowserModeList
2015-06-14 16:14 - 2014-04-14 16:40 - 00000000 __SHD C:\Users\Mind\AppData\Local\EmieUserList
2015-06-14 16:14 - 2014-04-14 16:40 - 00000000 __SHD C:\Users\Mind\AppData\Local\EmieSiteList
2015-06-13 11:42 - 2014-12-10 19:03 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-06-13 11:42 - 2014-07-09 14:21 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-06-11 16:39 - 2015-05-06 13:23 - 00000000 ____D C:\Users\sheyl_000\AppData\Local\Mozilla Firefox
2015-06-11 14:26 - 2014-02-03 19:45 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-11 14:25 - 2014-02-03 20:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-06-11 10:38 - 2014-03-16 16:51 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-06-10 13:44 - 2014-09-03 20:58 - 00562456 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-06-10 13:18 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-06-10 10:52 - 2012-07-26 00:26 - 00000167 _____ C:\WINDOWS\win.ini
2015-06-10 10:47 - 2014-01-17 19:13 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-06-10 10:40 - 2014-01-17 19:13 - 140135120 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-06-03 21:07 - 2015-04-15 19:56 - 00000372 _____ C:\Users\luigi_000\Documents\canciones de dubstep.txt
2015-06-01 22:30 - 2014-01-15 15:34 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Adobe
2015-05-27 14:39 - 2014-05-29 13:50 - 00000000 ____D C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-05-27 14:34 - 2013-09-04 14:27 - 00000000 ____D C:\Program Files\Gateway
2015-05-27 11:34 - 2015-05-06 13:23 - 00001264 _____ C:\Users\sheyl_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
==================== Files in the root of some directories =======
2015-06-26 16:01 - 2015-06-26 16:01 - 1415680 _____ (wj32) C:\Program Files\2IUIUEKY.exe
2015-06-26 17:03 - 2015-06-26 17:03 - 1415680 _____ (wj32) C:\Program Files\62UY2YKK.exe
2015-06-26 14:46 - 2015-06-26 14:46 - 1415680 _____ (wj32) C:\Program Files\7N7RZJ3J.exe
2015-06-26 13:22 - 2015-06-26 13:22 - 1415680 _____ (wj32) C:\Program Files\99XHLHPT.exe
2015-06-26 19:39 - 2015-06-26 19:39 - 1415680 _____ (wj32) C:\Program Files\PHDDTXXH.exe
2015-06-26 14:45 - 2015-06-26 14:45 - 1415680 _____ (wj32) C:\Program Files\RVJBNNFB.exe
2015-03-19 18:32 - 2015-03-19 19:37 - 0002391 _____ () C:\Users\Mind\AppData\Roaming\Rim.Desktop.Exception.log
2015-03-19 18:28 - 2015-03-19 19:49 - 0003874 _____ () C:\Users\Mind\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2015-03-19 18:32 - 2015-03-19 19:37 - 0000308 _____ () C:\Users\Mind\AppData\Roaming\Rim.DesktopHelper.Exception.log
2014-01-27 19:35 - 2015-05-18 20:19 - 0014336 _____ () C:\Users\Mind\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-31 18:33 - 2014-05-31 18:33 - 0006845 _____ () C:\Users\Mind\AppData\Local\HWVendorDetection.log
2014-01-22 17:57 - 2014-01-22 17:57 - 0000003 _____ () C:\Users\Mind\AppData\Local\updater.log
2014-01-22 17:57 - 2014-07-25 19:04 - 0000434 _____ () C:\Users\Mind\AppData\Local\UserProducts.xml
2015-03-08 12:36 - 2014-10-28 20:52 - 68395008 ___SH (Redtail Technology) C:\ProgramData\mstwrzb.exe
Files to move or delete:
====================
C:\ProgramData\mstwrzb.exe
Some files in TEMP:
====================
C:\Users\luigi_000\AppData\Local\Temp\ICReinstall_Pivot_setup_IC2.exe
C:\Users\luigi_000\AppData\Local\Temp\Softonic_ES_1-5-11_ES-Production_10_CleanRelease.exe
C:\Users\Mind\AppData\Local\Temp\AcDeltree.exe
C:\Users\Mind\AppData\Local\Temp\cdo3609303781.dll
C:\Users\Mind\AppData\Local\Temp\cdo399354393.dll
C:\Users\Mind\AppData\Local\Temp\FNP_ACT_InstallerCA.dll
C:\Users\Mind\AppData\Local\Temp\Quarantine.exe
C:\Users\Mind\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-26 18:23
==================== End of log ============================
Addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version:24-06-2015
Ran by Carlos at 2015-06-26 19:47:02
Running from C:\Users\Mind\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrador (S-1-5-21-3719379302-292051052-530911563-500 - Administrator - Disabled) => C:\Users\Administrador
Carlos (S-1-5-21-3719379302-292051052-530911563-1001 - Administrator - Enabled) => C:\Users\Mind
HomeGroupUser$ (S-1-5-21-3719379302-292051052-530911563-1007 - Limited - Enabled)
Invitado (S-1-5-21-3719379302-292051052-530911563-501 - Limited - Disabled)
luigi_000 (S-1-5-21-3719379302-292051052-530911563-1005 - Limited - Enabled) => C:\Users\luigi_000
sheyl_000 (S-1-5-21-3719379302-292051052-530911563-1004 - Limited - Enabled) => C:\Users\sheyl_000
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee Anti-Virus y Anti-Spyware (Disabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus y Anti-Spyware (Disabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: McAfee Firewall (Disabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
Box Sync (HKLM\...\{1E4F1322-E5A0-40DE-A0D4-781AA1A108AB}) (Version: 4.0.6169.0 - Box, Inc.)
Box Sync (x32 Version: 4.0.6073.0 - Box Inc.) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{67AA948F-8D83-4566-B84A-7CAABCF64E3F}) (Version: 16.0.2.6 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{D1D7ED66-5C08-40A0-AEC0-B6DF977697BB}) (Version: 16.0.2.4 - Broadcom Corporation)
Clover 3.0 (HKLM-x32\...\Clover) (Version: 3.0 - EJIE Technology)
Eines de correcció del Microsoft Office 2013: català (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
ETDWare PS/2-X64 11.6.23.203_WHQL (HKLM\...\Elantech) (Version: 11.6.23.203 - ELAN Microelectronic Corp.)
Ferramentas de verificación de Microsoft Office 2013 - Galego (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line)
FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - )
FormatFactory 3.3.5.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.5.0 - Format Factory)
Gateway Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3013 - Gateway Incorporated)
Gateway Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Gateway Incorporated)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3005 - Gateway Incorporated)
IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.30.1349 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4176 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
K-Lite Codec Pack 9.4.0 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.4.0 - )
Lightshot-5.1.4.6 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.1.4.6 - Skillbrains)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3008 - Gateway Incorporated)
Malwarebytes Anti-Malware versión 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
McAfee SecurityCenter (HKLM-x32\...\MSC) (Version: 13.6.1599 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.316 - McAfee, Inc.)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 es-MX) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 es-MX)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
paint.net (HKLM\...\{3F5F509B-E226-417C-8CD1-CAAE756C328A}) (Version: 4.0.0 - dotPDN LLC)
Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.305 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.57 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6927 - Realtek Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
SketchUp 2014 (HKLM-x32\...\{A608A8D3-E77C-4BEE-8F2A-F8124F5F0FE2}) (Version: 14.0.4900 - Trimble Navigation Limited)
Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
TuneUp Utilities 2014 (es-MX) (x32 Version: 14.0.1000.275 - TuneUp Software) Hidden
TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.275 - TuneUp Software)
TuneUp Utilities 2014 (x32 Version: 14.0.1000.275 - TuneUp Software) Hidden
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{DAFCD7DE-1531-4483-9F53-170766074E85}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-012B-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3719379302-292051052-530911563-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Restore Points =========================
ATTENTION: System Restore is disabled
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 08:25 - 2013-08-22 08:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {1ACB7880-9660-48F2-8C3F-B69E3C7E3BFC} - System32\Tasks\apagar => C:\Windows\System32\shutdown.exe [2014-10-28] (Microsoft Corporation)
Task: {1C858B29-9AEA-409A-9F8F-57786213B71F} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Gateway\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {1F2A06A8-B0F7-463D-AF84-FC0D3E66971A} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {2B6FE81D-4D98-4117-A112-7BED8B1465D5} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {354B1703-FE7C-49F9-9FDB-3C339E33B64D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {387CCFC7-C17D-40C1-A256-D7BE5EF0A277} - System32\Tasks\{42EC57DD-779A-4928-BA5A-43C5B8DAC370} => pcalua.exe -a C:\Users\Mind\AppData\Local\Akamai\uninstall.exe
Task: {3B15A162-FCE2-476E-974A-8C9B1179748B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2014-03-20] (TuneUp Software)
Task: {5E4A757D-7ED8-4D58-BE7A-FE03F271CEEB} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-3719379302-292051052-530911563-1005
Task: {65B3AF9F-0B79-467B-AFD7-1A0CF2C410ED} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {66DE1948-E030-4C9E-943C-A8509937DF90} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Time-5d => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {6D3C342F-63DC-4529-B38E-840130D0B8C8} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {70D99994-4AB9-4A55-B462-F4DF97C86FCC} - System32\Tasks\Power Management => C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe [2013-03-15] (Acer Incorporated)
Task: {801F27FA-70E9-44AC-8F8C-0F16BD433622} - System32\Tasks\Microsoft Office 15 Sync Maintenance for CARLOS-Carlos Carlos => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation)
Task: {85ADBD1F-3AF9-4A5B-96A6-C9F91FBE384F} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-3719379302-292051052-530911563-1001
Task: {8DE90462-FCDE-4FF6-BC77-53F6247EEB85} - System32\Tasks\ALU => C:\Program Files (x86)\Gateway\Live Updater\updater.exe [2013-02-21] ()
Task: {AB73BD7B-1D4D-4EF8-B2F9-8B648CDE258D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {B390F6A3-6C9C-4A22-9649-E684A20F0395} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-06-10] (Microsoft Corporation)
Task: {CD1EB125-29A7-4D8E-8D94-00FF54D1DDDA} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3719379302-292051052-530911563-1005 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {DCF282A1-5589-4CD4-B431-8B5FD92E40B1} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {E02AF0C2-9CF8-42B0-AE55-463F1550F361} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-03-25] ()
Task: {E9689F37-7868-4394-B20F-4AEEEDFBEEA3} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {FD8FE820-BC15-49CE-83A5-D6BEB1DD5E54} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\update-S-1-5-21-3719379302-292051052-530911563-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Loaded Modules (Whitelisted) ==============
2014-03-20 15:44 - 2014-03-20 15:44 - 00675640 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll
2013-09-07 01:48 - 2013-09-07 01:48 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-09-07 01:45 - 2013-09-07 01:45 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2013-09-07 01:52 - 2013-09-07 01:52 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
2014-01-23 16:06 - 2014-01-23 16:06 - 00586920 _____ () C:\Program Files\Microsoft Office\Office15\MSODCW.DLL
2013-09-16 05:28 - 2013-01-14 13:25 - 01200088 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\luigi_000\OneDrive:ms-properties
AlternateDataStreams: C:\Users\sheyl_000\SkyDrive:ms-properties
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UnsignedThemes => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UnsignedThemes => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3719379302-292051052-530911563-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Mind\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 8.8.8.8 - 8.8.4.4
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: LMSvc => 2
HKLM\...\StartupApproved\Run: => "BoxSync"
HKLM\...\StartupApproved\Run32: => "TrayServer"
HKLM\...\StartupApproved\Run32: => "ADSKAppManager"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "ADSK DLMSession"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\StartupFolder: => "Enviar a OneNote.lnk"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\StartupFolder: => "BlackGlassEnhanced.exe.lnk"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "Pokki"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "LightShot"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "SUPERAntiSpyware"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "Akamai NetSession Interface"
HKU\S-1-5-21-3719379302-292051052-530911563-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{FB60AD8F-F15C-4A55-9B83-161AC6798760}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{4D0C0E43-062F-43F7-BC77-FABB50AF3321}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{626662DF-8ACF-4804-99C2-6235394B3441}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{D521BD7D-2CAC-498C-89AC-84410399E28E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{5424905B-57FD-4891-9367-5CE7F3B61088}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{F6BBFE24-A127-46FC-9C9B-0110A1409E9D}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{02CCDA09-6984-46D0-9EF3-38EADB45595A}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{20F37C31-A07C-4673-B81E-32A5F6DFB983}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [TCP Query User{48626662-959F-4DA3-AEA9-84A5462BEE11}C:\users\luigi_000\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Block) C:\users\luigi_000\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [UDP Query User{6636EE0A-1488-48C1-919E-4363944197C0}C:\users\luigi_000\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Block) C:\users\luigi_000\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [{99787CDF-2EC6-4675-848E-F645109FA7B0}] => (Allow) C:\Users\Mind\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{51C89C93-A7D7-4EDA-9A6A-662DF11D7EFC}] => (Allow) C:\Users\Mind\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{CF94DB5B-9B31-4395-8091-28E552ECE611}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{16F3C122-11DB-46E0-8E7A-714C33F5F1C5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A81D9D4B-8E74-4F48-AD4C-527CE9CCCB7E}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
FirewallRules: [{F26E3C1E-3C4D-4438-8680-19F35D676842}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
FirewallRules: [{CF82549B-42AA-4314-86F2-4C9A840E1113}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe
FirewallRules: [{3D80C7DE-AB9E-464F-B995-2B2EA64F818C}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe
FirewallRules: [{D07C36AC-9618-41CF-86ED-3622EBD3DBB3}] => (Allow) LPort=1739
FirewallRules: [{CAC43945-FB01-4C53-804B-3A677B9F67EA}] => (Allow) LPort=5000
FirewallRules: [{75B9C43E-522B-4230-9671-B48CD96EB303}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{118352B3-1C1D-47BA-8838-6ADFB8BD2368}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{8FFF3AB3-9738-449C-8C6D-5DEB7988610E}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [{E752291F-348D-4405-A88B-127FC1A00F74}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [TCP Query User{C8A1A372-0D61-41ED-AFAE-B48E0C8E3934}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{64AF2F67-79F8-4021-AD82-9AD41401BC48}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{62890375-5260-44A1-8587-81CCAB1FAE21}C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe] => (Allow) C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe
FirewallRules: [UDP Query User{4CB09E14-2B25-462C-BC6F-A96E402432CF}C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe] => (Allow) C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (06/26/2015 06:07:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:07:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:06:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:06:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:05:15 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:05:13 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:05:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 06:05:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: No se pudo activar la aplicación YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail debido al error: -2144927141. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información.
Error: (06/26/2015 02:43:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa Skype.exe, versión 7.4.0.102, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.
Identificador de proceso: 15b8
Hora de inicio: 01d0b03e36405677
Hora de finalización: 4294967295
Ruta de acceso de la aplicación: C:\Program Files (x86)\Skype\Phone\Skype.exe
Identificador de informe: 8b417db6-1c3b-11e5-82fc-201a0645c1c2
Nombre completo de paquete con errores:
Identificador de aplicación relativa del paquete con errores:
Error: (06/26/2015 01:34:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: vlc.exe, versión: 2.2.0.0, marca de tiempo: 0x00000004
Nombre del módulo con errores: libqt4_plugin.dll, versión: 2.2.0.0, marca de tiempo: 0x00020002
Código de excepción: 0x40000015
Desplazamiento de errores: 0x007c915a
Identificador del proceso con errores: 0x1300
Hora de inicio de la aplicación con errores: 0xvlc.exe0
Ruta de acceso de la aplicación con errores: vlc.exe1
Ruta de acceso del módulo con errores: vlc.exe2
Identificador del informe: vlc.exe3
Nombre completo del paquete con errores: vlc.exe4
Identificador de aplicación relativa del paquete con errores: vlc.exe5
System errors:
=============
Error: (06/26/2015 07:47:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee AP Service se terminó de manera inesperada. Esto ha sucedido 9 veces.
Error: (06/26/2015 07:47:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Validation Trust Protection Service se terminó de manera inesperada. Esto ha sucedido 12 veces.
Error: (06/26/2015 07:47:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Platform Services se terminó de manera inesperada. Esto ha sucedido 7 veces.
Error: (06/26/2015 07:47:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee AP Service se terminó de manera inesperada. Esto ha sucedido 8 veces.
Error: (06/26/2015 07:47:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Anti-Malware Core se terminó de manera inesperada. Esto ha sucedido 4 veces.
Error: (06/26/2015 07:47:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Validation Trust Protection Service se terminó de manera inesperada. Esto ha sucedido 11 veces.
Error: (06/26/2015 07:47:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Platform Services se terminó de manera inesperada. Esto ha sucedido 6 veces.
Error: (06/26/2015 07:41:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee AP Service se terminó de manera inesperada. Esto ha sucedido 7 veces.
Error: (06/26/2015 07:41:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Validation Trust Protection Service se terminó de manera inesperada. Esto ha sucedido 10 veces.
Error: (06/26/2015 07:41:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: El servicio McAfee Platform Services se terminó de manera inesperada. Esto ha sucedido 5 veces.
Microsoft Office:
=========================
Error: (06/26/2015 06:07:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:07:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:06:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:06:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:05:15 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:05:13 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:05:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 06:05:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Carlos)
Description: YahooInc.YahooMail_xvnatx83ncrvj!YahooInc.YahooMail-2144927141
Error: (06/26/2015 02:43:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Skype.exe7.4.0.10215b801d0b03e364056774294967295C:\Program Files (x86)\Skype\Phone\Skype.exe8b417db6-1c3b-11e5-82fc-201a0645c1c2
Error: (06/26/2015 01:34:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: vlc.exe2.2.0.000000004libqt4_plugin.dll2.2.0.00002000240000015007c915a130001d0afda30c3903bC:\Program Files (x86)\VideoLAN\VLC\vlc.exeC:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll71c8f9ba-1bcd-11e5-82fb-201a0645c1c2
CodeIntegrity Errors:
===================================
Date: 2015-06-26 19:17:31.934
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 17:05:21.157
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 16:47:52.925
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 16:37:37.774
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:50:56.210
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:49:46.141
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:49:25.579
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:49:04.603
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:48:18.160
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
Date: 2015-06-26 01:47:56.040
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\OldNewExplorer\OldNewExplorer64.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
Processor: Intel® Core i3-3217U CPU @ 1.80GHz
Percentage of memory in use: 31%
Total physical RAM: 5959.27 MB
Available physical RAM: 4053.01 MB
Total Pagefile: 12103.27 MB
Available Pagefile: 10217.84 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB
==================== Drives ================================
Drive c: (Gateway) (Fixed) (Total:913.75 GB) (Free:825.57 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: FA15758B)
Partition: GPT Partition Type.
==================== End of log ============================