Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

My Computer virus rsa-4096 [Closed]


  • This topic is locked This topic is locked

#1
drakang

drakang

    New Member

  • Member
  • Pip
  • 8 posts

Hello, I have the computer infected with the virus RSA-4096 and I would like to eliminate and to manage it to see the encrypted files.

 

This text of the virus

 

 

 __!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#! 

NOT YOUR LANGUAGE? USE https://translate.google.com

What happened to your files ?
All of your files were protected by a strong encryption with RSA-4096.
More information about the encryption keys using RSA-4096 can be found here: http://en.wikipedia....A_(cryptosystem)

How did this happen ?
!!! Specially for your PC was generated personal RSA-4096 KEY, both public and private.
!!! ALL YOUR FILES were encrypted with the public key, which has been transferred to your computer via the Internet.
Decrypting of your files is only possible with the help of the private key and decrypt program, which is on our secret server.

What do I do ?
So, there are two ways you can choose: wait for a miracle and get your price doubled, or start obtaining BTC NOW, and restore your data easy way.
If You have really valuable data, you better not waste your time, because there is no other way to get your files, except make a payment.

For more specific instructions, please visit your personal home page, there are a few different addresses pointing to your page below:
1. http://idjsnfnkwjefn...8BB4EBBA6B8A3C9
2. http://krfdnhfnsai3d...8BB4EBBA6B8A3C9
3. http://idjsnfnkwjefn...8BB4EBBA6B8A3C9
4. https://4nauizsaaopu...8BB4EBBA6B8A3C9
5. https://4nauizsaaopu...8BB4EBBA6B8A3C9
6. https://4nauizsaaopu...8BB4EBBA6B8A3C9

If for some reasons the addresses are not available, follow these steps:
1. Download and install tor-browser: http://www.torprojec...browser.html.en
2. After a successful installation, run the browser and wait for initialization.
3. Type in the address bar: 4nauizsaaopuj3qj.onion/28BB4EBBA6B8A3C9
4. Follow the instructions on the site.

!!! IMPORTANT INFORMATION:
!!! Your personal pages:
http://idjsnfnkwjefn...8BB4EBBA6B8A3C9
http://krfdnhfnsai3d...8BB4EBBA6B8A3C9
http://idjsnfnkwjefn...8BB4EBBA6B8A3C9
https://4nauizsaaopu...8BB4EBBA6B8A3C9 
!!! Your personal page in TOR Browser: 4nauizsaaopuj3qj.onion/28BB4EBBA6B8A3C9
!!! Your personal identification ID: 28BB4EBBA6B8A3C9
00000000000000000000000000000


Edited by drakang, 07 February 2016 - 05:12 AM.

  • 0

Advertisements


#2
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 3,330 posts
Hi drakang, :)

:welcome:

My name is Valinorum and I will be the acolyte today. Before we proceed, please, acknowledge yourself the following(s):
  • Please do not create any new threads on this while we are working on your system as it wastes another volunteer's time. If you are being helped/have solved the issue/no longer wish to continue, notify me in your reply and I will quickly close this thread. Failing to comply will result in denial of future assistance.
  • Please do not install any new software while we are working on this system as it may hinder our process.
  • Malware removal is a complicated process and so don't stop following the steps even if the symptoms are not found. Keep up with me until I declare you clean.
  • Please do not try to fix anything without being ask.
  • Please do not attach your logs or put them inside code/quote tags. Do a Copy/Paste of the entire contents of the log file and submit it inside your post unless directed otherwise.
  • Please print or save the instructions I give you for quick reference. We may be using Safe mode which will cut you off from internet and you will not always be able to access this thread.
  • Back up your data. I will not knowingly suggest you any course that might damage your system but sometimes Malware infections are so severe that only option we have is to re-format and re-install the operating system.
  • If you are confused about any instruction, stop and ask. Do not keep on going.
  • Do not repeat the steps if you face any problems.
  • I am not an omniscient. There are things even I cannot foresee. But what I know took years to learn and perfect the skill. This site is run by volunteers who help people in need in their own free time. I would ask you to respect their time and be patient as sometimes real life demands our time and replies to you can be delayed.
  • Private Message(PM) if and only if I have not responded to your thread within three days or your query is offtopic and personal. Do not PM me under any other circumstances. Your thread is the only medium of communication.
  • The fixes are for your system only. Please refrain from using these fixes on other system as it may do serious damage.
 
  • Step #1 Scan with Farbar Recovery Scan Tool
    • Please download Farbar Recovery Scan Tool by Farbar to your Desktop from the link below.
      Download link for 32 bit system
      Download link for 64 bit system
    • Right-click on the program and choose Run as administrator;
    • Put tick-mark on all boxes under Whitelist and Optional Scan;
    • Click on Scan;
    • After the scan two notepad files will be opened --
      • FRST.txt;
      • Addition.txt
    • Copy and Paste the contents of the logs in your next reply.
 
  • Required Log(s):
    • FRST.txt
    • Addition.txt
Regards,
Valinorum
  • 0

#3
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

FRST:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-01-2016

 

Ran by dasina (administrator) on DASINA-PC (07-02-2016 06:41:20)

 

Running from C:\Users\dasina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2WKJ5YIR

 

Loaded Profiles: dasina (Available Profiles: dasina)

 

Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)

 

Internet Explorer Version 11 (Default browser: IE)

 

Boot Mode: Normal

 

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

 

 

==================== Processes (Whitelisted) =================

 

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

 

(AMD) C:\Windows\System32\atiesrxx.exe

 

(AMD) C:\Windows\System32\atieclxx.exe

 

(Microsoft Corporation) C:\Windows\System32\wisptis.exe

 

(Microsoft Corporation) C:\Windows\System32\wisptis.exe

 

(Apple Inc.) C:\Program Files\Boot Camp\Bootcamp.exe

 

(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe

 

(TomTom) C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe

 

(i-Funbox.com) C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe

 

() C:\Program Files (x86)\Belkin\F1U201.401\usbshare.exe

 

(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe

 

(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe

 

(Dropbox, Inc.) C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe

 

(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe

 

(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe

 

(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin

 

() C:\Windows\System32\AppleOSSMgr.exe

 

(Apple Inc.) C:\Windows\System32\AppleTimeSrv.exe

 

(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe

 

(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe

 

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe

 

(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe

 

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

 

() C:\Program Files (x86)\PP助手2.0\adevicehelpersvr.exe

 

(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

 

(广州铁人网络科技有限公司) C:\Program Files (x86)\PP助手2.0\adevicehelpermon.exe

 

(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe

 

(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe

 

(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe

 

(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe

 

(WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe

 

(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe

 

(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe

 

(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe

 

(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe

 

(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

 

(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

 

(AO Kaspersky Lab) C:\ProgramData\Kaspersky Lab\AVP16.0.0\Temp\temporaryFolder\updates\bin\kav16\16.0.0.614_kis_a\avp.exe.6580_2553_4126.removeOnNextReboot

 

(AO Kaspersky Lab) C:\ProgramData\Kaspersky Lab\AVP16.0.0\Temp\temporaryFolder\updates\bin\kav16\16.0.0.614_kis_a\avpui.exe.6580_2553_4126.removeOnNextReboot

 

(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe

 

(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_19_0_0_185_ActiveX.exe

 

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

 

 

 

==================== Registry (Whitelisted) ===========================

 

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

 

HKLM\...\Run: [Apple_KbdMgr] => C:\Program Files\Boot Camp\Bootcamp.exe [741760 2011-08-15] (Apple Inc.)

 

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)

 

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-23] (Apple Inc.)

 

HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)

 

HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)

 

HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)

 

HKLM-x32\...\Run: [PowerDVD12DMREngine] => C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [505872 2012-08-16] (CyberLink)

 

HKLM-x32\...\Run: [PowerDVD12Agent] => C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe [374560 2012-08-16] (CyberLink Corp.)

 

HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-09-23] (Apple Inc.)

 

HKLM-x32\...\Run: [BrowserPlugInHelper] => C:\Program Files (x86)\Wondershare\Video Converter Ultimate\BrowserPlugInHelper.exe [1969440 2013-05-14] ()

 

HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)

 

HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2015-12-13] (Adobe Systems Incorporated)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [AdobeBridge] => [X]

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe [473496 2013-11-29] (TomTom)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [EEDSpeedLauncher] => rundll32.exe C:\Windows\system32\eed_ec.dll,SpeedLauncher

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [iFunBox Fast App Install Handler] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2692608 2015-04-12] (i-Funbox.com)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [Dropbox Update] => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-23] (Dropbox, Inc.)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8619224 2016-01-15] (Piriform Ltd)

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\MountPoints2: {9d45561d-95e8-11e3-a21e-442a60d55ff7} - G:\LGAutoRun.exe

 

ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File

 

ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)

 

ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)

 

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\F1U201.401.lnk [2016-02-06]

 

ShortcutTarget: F1U201.401.lnk -> C:\Program Files (x86)\Belkin\F1U201.401\usbshare.exe ()

 

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.html [2016-01-15] ()

 

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt [2016-01-15] ()

 

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SELPHY Photo Print Launcher.lnk [2016-02-06]

 

ShortcutTarget: SELPHY Photo Print Launcher.lnk -> C:\Program Files (x86)\Canon\SELPHY Photo Print\CIC_SPPhelper.exe (Canon Inc.)

 

Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-02-06]

 

ShortcutTarget: Dropbox.lnk -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

 

Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.html [2016-01-15] ()

 

Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt [2016-01-15] ()

 

Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk [2016-02-06]

 

ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

 

CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

 

 

==================== Internet (Whitelisted) ====================

 

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

 

Tcpip\Parameters: [DhcpNameServer] 87.216.1.65 87.216.1.66

 

Tcpip\..\Interfaces\{70316FEB-D17C-4B53-A9D7-6DEEEF35BF69}: [DhcpNameServer] 87.216.1.65 87.216.1.66

 

Tcpip\..\Interfaces\{7321AF1B-9C3C-4101-BB98-1B539E58D27C}: [DhcpNameServer] 172.20.10.1

 

 

Internet Explorer:

 

==================

 

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=about:blank

 

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=about:blank

 

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com

 

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com

 

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank

 

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank

 

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com

 

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.es/

 

SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =

 

SearchScopes: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000 -> DefaultScope {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxps://www.google.com/search?q={searchTerms}

 

SearchScopes: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxps://www.google.com/search?q={searchTerms}

 

BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)

 

BHO: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File

 

BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)

 

BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)

 

BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)

 

BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)

 

Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File

 

Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File

 

Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)

 

Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)

 

Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)

 

Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)

 

DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

 

StartMenuInternet: IEXPLORE.EXE - iexplore.exe

 

 

FireFox:

 

========

 

FF ProfilePath: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default

 

FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-11-04] ()

 

FF Plugin: @microsoft.com/GENUINE -> disabled [No File]

 

FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)

 

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-11-04] ()

 

FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()

 

FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)

 

FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]

 

FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [No File]

 

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)

 

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.2\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)

 

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.2\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)

 

FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]

 

FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]

 

FF Plugin-x32: @wacom.com/wacom-plugin,version=1.1.0.5 -> C:\Program Files (x86)\TabletPlugins\npwacom.dll [No File]

 

FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-12-17] (Adobe Systems Inc.)

 

FF SearchPlugin: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\searchplugins\how_recover+sob.html [2016-01-15]

 

FF SearchPlugin: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\searchplugins\how_recover+sob.txt [2016-01-15]

 

FF Extension: fun coupons - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\extensions\[email protected] [2016-01-14] [not signed]

 

FF Extension: No Name - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\extensions\[email protected] [not found]

 

FF Extension: CutThePricee - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\Extensions\[email protected] [2016-01-14] [not signed]

 

FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox

 

FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-02-07]

 

 

Chrome:

 

=======

 

CHR Profile: C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default

 

CHR Extension: (YouTube) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-14]

 

CHR Extension: (Búsqueda de Google) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-14]

 

CHR Extension: (Kaspersky Protection) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2016-02-07]

 

CHR Extension: (Documentos de Google sin conexión) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-14]

 

CHR Extension: (Gmail) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-01-14]

 

CHR Extension: (CutThePricee) - C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn\ []

 

CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

 

CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

 

 

==================== Services (Whitelisted) ========================

 

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)

 

R2 AppleOSSMgr; C:\Windows\system32\AppleOSSMgr.exe [224640 2011-08-15] ()

 

R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2016-02-07] (Kaspersky Lab ZAO)

 

R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [90640 2012-08-16] (CyberLink Corp.)

 

S2 cphs; C:\Windows\SysWow64\IntelCpHeciSvc.exe [279000 2014-01-29] () [File not signed]

 

R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [78352 2012-08-16] (CyberLink)

 

R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [295440 2012-08-16] (CyberLink)

 

R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)

 

R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)

 

R2 PP Assistant Service; C:\Program Files (x86)\PP助手2.0\adevicehelpersvr.exe [118496 2014-08-14] () [File not signed]

 

S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]

 

S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)

 

R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

 

 

===================== Drivers (Whitelisted) ==========================

 

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)

 

S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2013-04-18] (LG Electronics Inc.)

 

S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2013-06-28] (LG Electronics Inc.)

 

S3 applebmt; C:\Windows\System32\DRIVERS\applebmt.sys [52736 2011-06-02] (Apple Inc.)

 

R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)

 

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-20] (Disc Soft Ltd)

 

S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

 

S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-02-06] ()

 

S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [5363200 2014-01-29] (Intel Corporation) [File not signed]

 

R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)

 

S0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)

 

S1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab ZAO)

 

R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)

 

R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [181640 2016-02-07] (AO Kaspersky Lab)

 

R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)

 

R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [940928 2016-02-07] (AO Kaspersky Lab)

 

R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39096 2015-06-11] (Kaspersky Lab ZAO)

 

S3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [41144 2015-06-06] (Kaspersky Lab ZAO)

 

S3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab ZAO)

 

R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2016-02-07] (AO Kaspersky Lab)

 

R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-06-11] (Kaspersky Lab ZAO)

 

R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab ZAO)

 

R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)

 

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)

 

R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-02-07] (Malwarebytes)

 

R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)

 

S3 MHIKEY10; C:\Windows\System32\Drivers\MHIKEY10x64.sys [60288 2010-09-15] (Generic USB smartcard reader)

 

R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [83704 2012-06-20] (Cyberlink Corp.)

 

R2 {73526619-C24F-470B-9BED-53D455FBB5C6}; C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [147704 2012-08-14] (CyberLink Corp.)

 

R4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X]

 

S3 VGPU; System32\drivers\rdvgkmd.sys [X]

 

 

==================== NetSvcs (Whitelisted) ===================

 

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

 

==================== One Month Created files and folders ========

 

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

 

2016-02-07 06:40 - 2016-02-07 06:40 - 00000000 ____D C:\ProgramData\Kaspersky Lab Setup Files

 

2016-02-07 05:11 - 2016-02-07 05:11 - 00002440 _____ C:\Users\dasina\Desktop\Pago Seguro.lnk

 

2016-02-07 05:10 - 2016-02-07 05:10 - 00002150 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk

 

2016-02-07 05:10 - 2016-02-07 05:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security

 

2016-02-07 05:09 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll

 

2016-02-07 05:08 - 2016-02-07 05:13 - 00000000 ____D C:\ProgramData\Kaspersky Lab

 

2016-02-07 05:08 - 2016-02-07 05:08 - 00000000 ____D C:\Windows\ELAMBKUP

 

2016-02-07 05:08 - 2016-02-07 05:08 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab

 

2016-02-07 05:07 - 2016-02-07 05:37 - 00940928 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys

 

2016-02-07 05:07 - 2016-02-07 05:37 - 00181640 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys

 

2016-02-07 05:07 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys

 

2016-02-07 05:03 - 2016-02-07 05:03 - 00000000 ____H C:\ProgramData\cm-lock

 

2016-02-07 04:39 - 2016-02-07 06:39 - 171245272 _____ (Kaspersky Lab) C:\Users\dasina\Downloads\kis16.0.0.614es-es.exe

 

2016-02-07 04:19 - 2016-02-07 04:21 - 00002456 _____ C:\RakhniDecryptor.1.15.1.0_07.02.2016_04.19.31_log.txt

 

2016-02-07 01:39 - 2016-02-07 06:41 - 00000000 ____D C:\FRST

 

2016-02-06 17:26 - 2016-02-06 17:30 - 00002032 _____ C:\Users\dasina\Desktop\Rkill.txt

 

2016-02-06 17:25 - 2016-02-06 18:22 - 00000828 _____ C:\Users\Public\Desktop\CCleaner.lnk

 

2016-02-06 17:25 - 2016-02-06 17:25 - 00002794 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC

 

2016-02-06 17:25 - 2016-02-06 17:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner

 

2016-02-06 17:25 - 2016-02-06 17:25 - 00000000 ____D C:\Program Files\CCleaner

 

2016-02-06 17:17 - 2016-02-07 05:04 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys

 

2016-02-06 17:16 - 2016-02-06 18:22 - 00001108 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

 

2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

 

2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\ProgramData\Malwarebytes

 

2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware

 

2016-02-06 17:16 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys

 

2016-02-06 17:16 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys

 

2016-02-06 17:16 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys

 

2016-02-06 15:51 - 2016-02-06 17:15 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Enigma Software Group

 

2016-02-06 15:51 - 2016-02-06 15:51 - 00000000 _____ C:\autoexec.bat

 

2016-02-06 15:50 - 2016-02-06 15:50 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys

 

2016-01-15 07:39 - 2016-01-15 07:39 - 03452054 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.BMP

 

2016-01-15 07:39 - 2016-01-15 07:39 - 00006764 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.HTM

 

2016-01-15 07:39 - 2016-01-15 07:39 - 00002339 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.TXT

 

2016-01-15 07:38 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Desktop\how_recover+sob.html

 

2016-01-15 07:38 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Desktop\how_recover+sob.txt

 

2016-01-14 21:19 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\how_recover+sob.html

 

2016-01-14 21:19 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Downloads\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Downloads\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Documents\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Desktop\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Local\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Downloads\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Documents\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Desktop\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Local\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\dasina\how_recover+sob.html

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Downloads\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Downloads\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Documents\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Desktop\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Local\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Downloads\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Documents\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Desktop\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Local\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\how_recover+sob.txt

 

2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\dasina\how_recover+sob.txt

 

2016-01-14 21:09 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Downloads\how_recover+sob.html

 

2016-01-14 21:09 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Downloads\how_recover+sob.txt

 

2016-01-14 21:08 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Documents\how_recover+sob.html

 

2016-01-14 21:08 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Documents\how_recover+sob.txt

 

2016-01-14 21:00 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Roaming\how_recover+sob.html

 

2016-01-14 21:00 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\how_recover+sob.html

 

2016-01-14 21:00 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Roaming\how_recover+sob.txt

 

2016-01-14 21:00 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\how_recover+sob.txt

 

2016-01-14 20:58 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html

 

2016-01-14 20:58 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt

 

2016-01-14 20:58 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html

 

2016-01-14 20:58 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt

 

2016-01-14 20:37 - 2016-01-15 07:36 - 00006764 _____ C:\Users\dasina\AppData\LocalLow\how_recover+sob.html

 

2016-01-14 20:37 - 2016-01-15 07:36 - 00002339 _____ C:\Users\dasina\AppData\LocalLow\how_recover+sob.txt

 

2016-01-14 20:10 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Local\how_recover+sob.html

 

2016-01-14 20:10 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Local\how_recover+sob.txt

 

2016-01-14 20:09 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Documents\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Desktop\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Documents\how_recover+sob.txt

 

2016-01-14 20:09 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Desktop\how_recover+sob.txt

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\Microsoft\Windows\Start Menu\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\how_recover+sob.txt

 

2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\how_recover+sob.txt

 

2016-01-14 20:06 - 2016-01-14 20:07 - 00006764 _____ C:\Program Files\Common Files\how_recover+sob.html

 

2016-01-14 20:06 - 2016-01-14 20:07 - 00002339 _____ C:\Program Files\Common Files\how_recover+sob.txt

 

2016-01-14 19:30 - 2016-01-14 21:19 - 00006764 _____ C:\Users\how_recover+sob.html

 

2016-01-14 19:30 - 2016-01-14 21:19 - 00002339 _____ C:\Users\how_recover+sob.txt

 

2016-01-14 19:30 - 2016-01-14 20:09 - 00006764 _____ C:\Program Files\how_recover+sob.html

 

2016-01-14 19:30 - 2016-01-14 20:09 - 00002339 _____ C:\Program Files\how_recover+sob.txt

 

2016-01-14 19:29 - 2016-01-14 19:29 - 00000254 _____ C:\Users\dasina\Documents\recover_file_bsdsomynd.txt

 

 

==================== One Month Modified files and folders ========

 

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

 

2016-02-07 06:41 - 2015-07-10 17:07 - 00001100 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

 

2016-02-07 06:08 - 2015-06-23 00:57 - 00001006 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000UA.job

 

2016-02-07 05:37 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klpd.sys

 

2016-02-07 05:12 - 2009-07-14 05:45 - 00027168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

 

2016-02-07 05:12 - 2009-07-14 05:45 - 00027168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

 

2016-02-07 05:10 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf

 

2016-02-07 05:05 - 2013-01-30 00:20 - 00000000 ___RD C:\Users\dasina\Dropbox

 

2016-02-07 05:05 - 2013-01-30 00:16 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Dropbox

 

2016-02-07 05:02 - 2015-07-10 17:07 - 00001096 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

 

2016-02-07 05:02 - 2015-04-02 15:22 - 00000992 _____ C:\Windows\Tasks\jjOjJlnt.job

 

2016-02-07 05:02 - 2012-10-20 17:37 - 00000202 _____ C:\Windows\Tasks\AutoKMS.job

 

2016-02-07 05:02 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT

 

2016-02-07 05:01 - 2014-02-01 13:08 - 00000000 ____D C:\Users\dasina\AppData\Roaming\AVAST Software

 

2016-02-07 05:01 - 2012-10-26 09:28 - 00000000 ____D C:\ProgramData\AVAST Software

 

2016-02-07 05:01 - 2012-10-26 09:28 - 00000000 ____D C:\Program Files\AVAST Software

 

2016-02-07 02:08 - 2015-06-23 00:57 - 00000954 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000Core.job

 

2016-02-06 18:23 - 2015-07-10 17:08 - 00002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk

 

2016-02-06 18:23 - 2014-05-12 20:19 - 00002206 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

 

2016-02-06 18:23 - 2013-03-03 11:20 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Network Stumbler.lnk

 

2016-02-06 18:23 - 2013-01-26 15:50 - 00001138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Inspector smart recovery.lnk

 

2016-02-06 18:23 - 2012-10-29 18:55 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk

 

2016-02-06 18:23 - 2012-10-25 15:30 - 00001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk

 

2016-02-06 18:23 - 2012-10-25 15:29 - 00001207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk

 

2016-02-06 18:23 - 2012-10-25 15:29 - 00001169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk

 

2016-02-06 18:23 - 2012-10-25 15:29 - 00001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk

 

2016-02-06 18:23 - 2012-10-25 15:28 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk

 

2016-02-06 18:23 - 2012-10-25 15:28 - 00001353 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk

 

2016-02-06 18:23 - 2012-10-25 14:59 - 00001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk

 

2016-02-06 18:23 - 2012-10-22 13:21 - 00001061 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

 

2016-02-06 18:23 - 2012-10-20 15:54 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk

 

2016-02-06 18:23 - 2012-10-20 15:44 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk

 

2016-02-06 18:22 - 2015-10-14 22:21 - 00001715 _____ C:\Users\Public\Desktop\iTunes.lnk

 

2016-02-06 18:22 - 2015-10-14 22:13 - 00001847 _____ C:\Users\Public\Desktop\QuickTime Player.lnk

 

2016-02-06 18:22 - 2015-07-10 17:07 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk

 

2016-02-06 18:22 - 2015-04-18 02:25 - 00001062 _____ C:\Users\Public\Desktop\iFunbox.lnk

 

2016-02-06 18:22 - 2014-12-04 16:40 - 00002248 _____ C:\Users\Public\Desktop\Pinnacle Studio 17.lnk

 

2016-02-06 18:22 - 2014-11-20 16:13 - 00001956 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk

 

2016-02-06 18:22 - 2014-11-03 02:54 - 00002190 _____ C:\Users\Public\Desktop\Style Builder 2014.lnk

 

2016-02-06 18:22 - 2014-11-03 02:54 - 00002104 _____ C:\Users\Public\Desktop\LayOut 2014.lnk

 

2016-02-06 18:22 - 2014-11-03 02:54 - 00002019 _____ C:\Users\Public\Desktop\SketchUp 2014.lnk

 

2016-02-06 18:22 - 2014-04-04 09:08 - 00002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visor de Microsoft PowerPoint .lnk

 

2016-02-06 18:22 - 2014-03-07 12:32 - 00001177 _____ C:\Users\Public\Desktop\Wondershare PDF Editor.lnk

 

2016-02-06 18:22 - 2014-03-05 16:40 - 00001102 _____ C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk

 

2016-02-06 18:22 - 2014-03-03 18:29 - 00001212 _____ C:\Users\Public\Desktop\LG PC Suite.lnk

 

2016-02-06 18:22 - 2014-03-03 15:59 - 00001232 _____ C:\Users\Public\Desktop\Wondershare Photo Recovery.lnk

 

2016-02-06 18:22 - 2014-01-16 16:42 - 00001072 _____ C:\Users\Public\Desktop\VLC media player.lnk

 

2016-02-06 18:22 - 2014-01-12 02:11 - 00001229 _____ C:\Users\Public\Desktop\SELPHY Photo Print.lnk

 

2016-02-06 18:22 - 2014-01-08 01:28 - 00001226 _____ C:\Users\Public\Desktop\PolyBoard 5.10a.lnk

 

2016-02-06 18:22 - 2014-01-03 01:56 - 00000810 _____ C:\Users\Public\Desktop\InteriCAD Lite Trial.lnk

 

2016-02-06 18:22 - 2014-01-02 17:54 - 00001625 _____ C:\Users\Public\Desktop\Imodel.lnk

 

2016-02-06 18:22 - 2014-01-02 17:53 - 00000736 _____ C:\Users\Public\Desktop\InteriCAD T5.lnk

 

2016-02-06 18:22 - 2013-05-26 12:12 - 00001466 _____ C:\Users\Public\Desktop\Wondershare Video Converter Ultimate.lnk

 

2016-02-06 18:22 - 2013-01-29 17:54 - 00000992 _____ C:\Users\Public\Desktop\PPÖúÊÖ.lnk

 

2016-02-06 18:22 - 2013-01-26 15:50 - 00001132 _____ C:\Users\Public\Desktop\PC Inspector smart recovery.lnk

 

2016-02-06 18:22 - 2013-01-17 12:03 - 00002925 _____ C:\Users\Public\Desktop\Nero Burning ROM 10.lnk

 

2016-02-06 18:22 - 2012-10-29 18:55 - 00000080 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk

 

2016-02-06 18:22 - 2012-10-27 13:40 - 00000403 _____ C:\Users\Public\Desktop\HP USB Disk Storage Format Tool.lnk

 

2016-02-06 18:22 - 2012-10-25 23:25 - 00002194 _____ C:\Users\Public\Desktop\CyberLink PowerDVD 12.lnk

 

2016-02-06 18:22 - 2012-10-25 14:59 - 00001033 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk

 

2016-02-06 18:22 - 2012-10-22 13:21 - 00001055 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk

 

2016-02-06 18:22 - 2012-10-22 13:20 - 00001740 _____ C:\Users\Public\Desktop\Selección del Explorador.lnk

 

2016-02-06 18:22 - 2012-10-20 17:24 - 00001716 _____ C:\Users\Public\Desktop\F1U201.401.lnk

 

2016-02-06 18:22 - 2012-10-20 17:20 - 00000936 _____ C:\Users\Public\Desktop\EPSON Scan.lnk

 

2016-02-06 18:22 - 2012-10-20 15:44 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk

 

2016-02-06 18:22 - 2009-07-14 05:57 - 00001523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

 

2016-02-06 18:22 - 2009-07-14 05:57 - 00001304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk

 

2016-02-06 18:22 - 2009-07-14 05:57 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk

 

2016-02-06 18:22 - 2009-07-14 05:54 - 00001210 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk

 

2016-02-06 18:21 - 2015-07-09 01:14 - 00001937 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\BBS Tools.lnk

 

2016-02-06 18:21 - 2015-07-09 01:14 - 00001913 _____ C:\Users\dasina\Desktop\BBS Tools.lnk

 

2016-02-06 18:21 - 2015-03-26 00:13 - 00002271 _____ C:\Users\dasina\Desktop\cut.lnk

 

2016-02-06 18:21 - 2015-02-13 16:24 - 00000962 _____ C:\Users\dasina\Desktop\VirtualDJ 8.lnk

 

2016-02-06 18:21 - 2014-12-28 15:19 - 00000907 _____ C:\Users\dasina\Desktop\ARAR.lnk

 

2016-02-06 18:21 - 2014-12-28 14:59 - 00001168 _____ C:\Users\dasina\Desktop\Continuar con la instalación de 7Zip.lnk

 

2016-02-06 18:21 - 2014-11-20 21:36 - 00002204 _____ C:\Users\dasina\Desktop\chrome.lnk

 

2016-02-06 18:21 - 2014-05-08 11:55 - 00000923 _____ C:\Users\dasina\Desktop\Continue FLV Player.lnk

 

2016-02-06 18:21 - 2014-04-16 18:04 - 00002945 _____ C:\Users\dasina\Desktop\inSSIDer Office.lnk

 

2016-02-06 18:21 - 2014-01-15 22:59 - 00001188 _____ C:\Users\dasina\Desktop\MioMore Desktop 7.50.lnk

 

2016-02-06 18:21 - 2013-11-06 00:48 - 00000995 _____ C:\Users\dasina\Desktop\DVD Shrink 3.2.lnk

 

2016-02-06 18:21 - 2013-10-30 12:06 - 00000861 _____ C:\Users\dasina\Desktop\µTorrent.lnk

 

2016-02-06 18:21 - 2013-10-30 12:06 - 00000841 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk

 

2016-02-06 18:21 - 2013-03-03 11:34 - 00000975 _____ C:\Users\dasina\Desktop\Vistumbler.lnk

 

2016-02-06 18:21 - 2013-01-30 00:20 - 00001017 _____ C:\Users\dasina\Desktop\Dropbox.lnk

 

2016-02-06 18:21 - 2013-01-27 12:24 - 00001396 _____ C:\Users\dasina\Desktop\CopyTrans Control Center.lnk

 

2016-02-06 18:21 - 2012-12-24 02:06 - 00001006 _____ C:\Users\dasina\Desktop\WBFS Manager 3.0.lnk

 

2016-02-06 18:21 - 2012-10-31 19:06 - 00001240 _____ C:\Users\dasina\Desktop\ConvertXtoDVD 4.lnk

 

2016-02-06 18:21 - 2012-10-27 13:53 - 00000978 _____ C:\Users\dasina\Desktop\CopyToDVD.lnk

 

2016-02-06 18:21 - 2012-10-20 15:51 - 00001293 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

 

2016-02-06 18:21 - 2011-04-12 10:10 - 00747736 _____ C:\Windows\system32\perfh00A.dat

 

2016-02-06 18:21 - 2011-04-12 10:10 - 00159208 _____ C:\Windows\system32\perfc00A.dat

 

2016-02-06 18:21 - 2009-07-14 06:13 - 01678290 _____ C:\Windows\system32\PerfStringBackup.INI

 

2016-02-06 18:21 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk

 

2016-02-06 18:21 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk

 

2016-02-06 18:13 - 2014-05-09 11:22 - 00000000 ____D C:\Windows\system32\log

 

2016-02-06 18:12 - 2014-07-02 10:34 - 00000000 ____D C:\AdwCleaner

 

2016-02-06 15:51 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina

 

2016-02-01 14:36 - 2015-07-10 17:07 - 00004096 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

 

2016-02-01 14:36 - 2015-07-10 17:07 - 00003844 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

 

2016-01-29 16:15 - 2012-12-23 13:45 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Temp

 

2016-01-21 04:37 - 2014-05-12 20:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome

 

2016-01-14 21:19 - 2011-04-12 10:20 - 00000000 ___RD C:\Users\Public\Recorded TV

 

2016-01-14 21:18 - 2015-01-28 19:00 - 00000000 ____D C:\Users\Public\Documents\My Projects

 

2016-01-14 21:18 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\temp

 

2016-01-14 21:18 - 2014-12-04 16:36 - 00000000 ____D C:\Users\Public\Documents\Pinnacle

 

2016-01-14 21:18 - 2014-02-16 10:24 - 00000000 ____D C:\Users\Public\Documents\Elcomsoft

 

2016-01-14 21:18 - 2014-01-15 22:59 - 00000000 ____D C:\Users\Public\Downloads\Maps

 

2016-01-14 21:18 - 2014-01-08 01:28 - 00000000 ____D C:\Users\Public\Desktop\Ejemplos PolyBoard

 

2016-01-14 21:18 - 2012-10-25 23:25 - 00000000 ____D C:\Users\Public\Documents\CyberLink

 

2016-01-14 21:18 - 2012-10-25 23:25 - 00000000 ____D C:\Users\Public\CyberLink

 

2016-01-14 21:18 - 2012-10-25 14:59 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia

 

2016-01-14 21:18 - 2012-10-25 14:59 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia

 

2016-01-14 21:18 - 2011-04-12 10:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs

 

2016-01-14 21:18 - 2011-04-12 10:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs

 

2016-01-14 21:18 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries

 

2016-01-14 21:09 - 2015-12-24 10:26 - 00000464 _____ C:\Users\dasina\Downloads\Instrucciones_Composio_Usuario_IO.pdf.ttt

 

2016-01-14 21:09 - 2015-09-15 16:00 - 01743984 _____ C:\Users\dasina\Downloads\PROMO ONKYO JULIO.zip.ttt

 

2016-01-14 21:09 - 2015-09-15 15:57 - 00033552 _____ C:\Users\dasina\Downloads\FACTURA 33515.pdf.ttt

 

2016-01-14 21:09 - 2015-05-27 09:01 - 00206480 _____ C:\Users\dasina\Downloads\GONZALEZ AGUNDEZ JUAN A..pdf.ttt

 

2016-01-14 21:09 - 2015-05-11 10:36 - 00252288 _____ C:\Users\dasina\Downloads\Recargo_Equivalencia_2015_Exencion.doc.ttt

 

2016-01-14 21:09 - 2015-05-11 10:36 - 00000544 ____H C:\Users\dasina\Downloads\~$cargo_Equivalencia_2015_Exencion.doc.ttt

 

2016-01-14 21:09 - 2015-04-18 01:48 - 59018032 _____ C:\Users\dasina\Downloads\Sfrd422660xi.rar.ttt

 

2016-01-14 21:09 - 2015-03-26 00:12 - 00000000 ____D C:\Users\dasina\Downloads\Cut Optimizador de Cortes Melamina

 

2016-01-14 21:09 - 2015-03-26 00:11 - 03152688 _____ C:\Users\dasina\Downloads\Cut Optimizador de Cortes Melamina.rar.ttt

 

2016-01-14 21:09 - 2015-03-12 06:12 - 00056704 _____ C:\Users\dasina\Downloads\GUION PARA EL CIERRE DE LA CONSULTA DEL CLIENTE-GEMAJUNIO2014 (1).doc.ttt

 

2016-01-14 21:09 - 2015-03-12 06:11 - 00056704 _____ C:\Users\dasina\Downloads\GUION PARA EL CIERRE DE LA CONSULTA DEL CLIENTE-GEMAJUNIO2014.doc.ttt

 

2016-01-14 21:09 - 2015-02-22 20:15 - 01659776 _____ C:\Users\dasina\Downloads\PlanillanutricionExterna.ppt.ttt

 

2016-01-14 21:09 - 2014-06-26 17:42 - 00000000 ____D C:\Users\dasina\Downloads\_Fundas_ligeras_para_iPhone_44s

 

2016-01-14 21:09 - 2014-06-26 17:41 - 00484544 _____ C:\Users\dasina\Downloads\_Fundas_ligeras_para_iPhone_44s.zip.ttt

 

2016-01-14 21:09 - 2014-06-17 11:04 - 00000544 ____H C:\Users\dasina\Downloads\~$RTEL EAC.doc.ttt

 

2016-01-14 21:09 - 2014-06-13 09:16 - 00027520 _____ C:\Users\dasina\Downloads\GUION CLIENTE VIP1.doc.ttt

 

2016-01-14 21:09 - 2014-06-13 09:16 - 00000544 ____H C:\Users\dasina\Downloads\~$ION CLIENTE VIP1.doc.ttt

 

2016-01-14 21:09 - 2014-06-10 17:49 - 01298720 _____ C:\Users\dasina\Downloads\PROMOCIONNNNNN!!!!!!!!.zip.ttt

 

2016-01-14 21:09 - 2014-06-06 09:01 - 00392544 _____ C:\Users\dasina\Downloads\NORMAS ORGANIZACION ACTUALIZADAS 1.pdf.ttt

 

2016-01-14 21:09 - 2014-06-06 08:54 - 00021888 _____ C:\Users\dasina\Downloads\FIESTA_DE_INAGURACION invitacion.doc.ttt

 

2016-01-14 21:09 - 2014-06-06 08:49 - 00132992 _____ C:\Users\dasina\Downloads\DOSSIER informativo Maria.doc.ttt

 

2016-01-14 21:09 - 2014-06-06 08:47 - 05994880 _____ C:\Users\dasina\Downloads\Temario_EAC.ppt.ttt

 

2016-01-14 21:09 - 2014-06-06 08:40 - 00157568 _____ C:\Users\dasina\Downloads\MDO 2014- PON AQUI TU NOMBRE.xls.ttt

 

2016-01-14 21:09 - 2014-06-06 08:33 - 00032128 _____ C:\Users\dasina\Downloads\PLAN 90 DIAS.doc.ttt

 

2016-01-14 21:09 - 2014-06-06 08:33 - 00000544 ____H C:\Users\dasina\Downloads\~$AN 90 DIAS.doc.ttt

 

2016-01-14 21:09 - 2014-05-23 10:16 - 00033152 _____ C:\Users\dasina\Downloads\GUION  LLAMAR A REFERIDOS actualizado febrero 14.doc.ttt

 

2016-01-14 21:09 - 2014-05-23 10:16 - 00000544 ____H C:\Users\dasina\Downloads\~$ION  LLAMAR A REFERIDOS actualizado febrero 14.doc.ttt

 

2016-01-14 21:09 - 2014-05-23 10:06 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1) (2).pdf.ttt

 

2016-01-14 21:09 - 2014-05-23 10:04 - 00456064 _____ C:\Users\dasina\Downloads\GUIÓN PARA LAS LLAMADAS DE  CONFIRMARCIÓN DE CITAS.doc.ttt

 

2016-01-14 21:09 - 2014-05-23 10:02 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1) (1).pdf.ttt

 

2016-01-14 21:09 - 2014-05-23 10:01 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1).pdf.ttt

 

2016-01-14 21:09 - 2014-05-21 17:34 - 00025472 _____ C:\Users\dasina\Downloads\INDICE CONTROLADORES.doc.ttt

 

2016-01-14 21:09 - 2014-05-21 17:34 - 00012368 _____ C:\Users\dasina\Downloads\LIBRO DE REFERENCIAS.xlsx.ttt

 

2016-01-14 21:09 - 2014-05-21 17:33 - 00061824 _____ C:\Users\dasina\Downloads\CONTROLADOR REGISTRO DE GASTOS.doc.ttt

 

2016-01-14 21:09 - 2014-05-21 17:32 - 00028032 _____ C:\Users\dasina\Downloads\CONTROLADOR STOCK con productos.xls.ttt

 

2016-01-14 21:09 - 2014-05-21 17:29 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 % (2).xlsx.ttt

 

2016-01-14 21:09 - 2014-05-21 17:29 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 % (1).xlsx.ttt

 

2016-01-14 21:09 - 2014-05-21 17:26 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 %.xlsx.ttt

 

2016-01-14 21:09 - 2014-05-19 11:25 - 00048000 _____ C:\Users\dasina\Downloads\INVITACIONES EAC NOELIA.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 11:25 - 00000544 ____H C:\Users\dasina\Downloads\~$VITACIONES EAC NOELIA.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 11:24 - 00023936 _____ C:\Users\dasina\Downloads\REGISTRO Nº INVITADOS EAC POR ID.xls.ttt

 

2016-01-14 21:09 - 2014-05-19 09:37 - 00038784 _____ C:\Users\dasina\Downloads\LISTADO INVITADOS.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 09:37 - 00000544 ____H C:\Users\dasina\Downloads\~$STADO INVITADOS.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 09:36 - 00382160 _____ C:\Users\dasina\Downloads\glyctabl.pdf.ttt

 

2016-01-14 21:09 - 2014-05-19 09:28 - 00025984 _____ C:\Users\dasina\Downloads\MODELO 1.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 09:28 - 00000544 ____H C:\Users\dasina\Downloads\~$RTEL IMC PELUQUERÍAS.doc.ttt

 

2016-01-14 21:09 - 2014-05-19 09:27 - 00028544 _____ C:\Users\dasina\Downloads\GUION ACUERDOS DE COLABORACION (1).doc.ttt

 

2016-01-14 21:09 - 2014-05-19 09:27 - 00000544 ____H C:\Users\dasina\Downloads\~$ION ACUERDOS DE COLABORACION (1).doc.ttt

 

2016-01-14 21:09 - 2014-05-13 20:01 - 01266304 _____ C:\Users\dasina\Downloads\FSL Junio 2014 modificado (1).pdf.ttt

 

2016-01-14 21:09 - 2014-05-13 12:09 - 00153936 _____ C:\Users\dasina\Downloads\GONZALEZ AGUNDEZ Juan Antonio.pdf.ttt

 

2016-01-14 21:09 - 2014-05-13 09:55 - 00014160 _____ C:\Users\dasina\Downloads\Historial de pedidos.xls.ttt

 

2016-01-14 21:09 - 2014-04-20 18:58 - 00153008 _____ C:\Users\dasina\Downloads\GONZALEZ AGUANDEZ Juan Antonio.pdf.ttt

 

2016-01-14 21:09 - 2014-04-16 15:12 - 00051872 _____ C:\Users\dasina\Downloads\Statement (2).pdf.ttt

 

2016-01-14 21:09 - 2014-04-16 15:11 - 00151328 _____ C:\Users\dasina\Downloads\Statement (1).pdf.ttt

 

2016-01-14 21:09 - 2014-04-16 15:09 - 00054560 _____ C:\Users\dasina\Downloads\Statement.pdf.ttt

 

2016-01-14 21:09 - 2014-04-08 02:51 - 00113760 _____ C:\Users\dasina\Downloads\guion+invitar+fiesta+inauguración+(1).pdf.ttt

 

2016-01-14 21:09 - 2014-03-12 21:44 - 00456064 _____ C:\Users\dasina\Downloads\GUIÓN+PAR...doc.ttt

 

2016-01-14 21:09 - 2014-02-01 14:14 - 00333280 _____ C:\Users\dasina\Downloads\radares_robser_tomtom.zip.ttt

 

2016-01-14 21:09 - 2014-02-01 14:14 - 00000000 ____D C:\Users\dasina\Downloads\radares_robser_tomtom

 

2016-01-14 21:09 - 2014-01-23 08:55 - 00322432 _____ C:\Users\dasina\Downloads\LaBuenaSu...doc.ttt

 

2016-01-14 21:09 - 2014-01-03 00:06 - 213717040 _____ C:\Users\dasina\Downloads\InteriCAD Lite Trial Package.zip.ttt

 

2016-01-14 21:09 - 2013-05-26 12:22 - 00000000 ____D C:\Users\dasina\Downloads\Xilisoft.Video.Converter.Ultimate.7_Keygen.Inc.Patch-REPT

 

2016-01-14 21:09 - 2013-05-26 12:21 - 00328880 _____ C:\Users\dasina\Downloads\Xilisoft.Video.Converter.Ultimate.7_Keygen.Inc.Patch-REPT.rar.ttt

 

2016-01-14 21:09 - 2013-01-07 23:49 - 01043840 _____ C:\Users\dasina\Downloads\image.png.ttt

 

2016-01-14 21:09 - 2013-01-07 23:49 - 00818448 _____ C:\Users\dasina\Downloads\image (1).png.ttt

 

2016-01-14 21:09 - 2013-01-07 23:49 - 00742448 _____ C:\Users\dasina\Downloads\image (3).png.ttt

 

2016-01-14 21:09 - 2013-01-07 23:49 - 00624608 _____ C:\Users\dasina\Downloads\image (2).png.ttt

 

2016-01-14 21:09 - 2013-01-07 23:44 - 00878832 _____ C:\Users\dasina\Downloads\la foto (3).PNG.ttt

 

2016-01-14 21:09 - 2013-01-07 23:28 - 01088416 _____ C:\Users\dasina\Downloads\la foto (2).PNG.ttt

 

2016-01-14 21:09 - 2013-01-07 23:28 - 01047392 _____ C:\Users\dasina\Downloads\la foto (1).PNG.ttt

 

2016-01-14 21:09 - 2013-01-07 23:18 - 01075200 _____ C:\Users\dasina\Downloads\la foto.PNG.ttt

 

2016-01-14 21:09 - 2013-01-07 23:07 - 00965376 _____ C:\Users\dasina\Downloads\la foto.JPG.ttt

 

2016-01-14 21:09 - 2012-12-13 01:55 - 00051120 _____ C:\Users\dasina\Downloads\TECHLINK WiresCR 680209_blister_b.jpg.ttt

 

2016-01-14 21:09 - 2012-12-13 00:46 - 24528496 _____ C:\Users\dasina\Downloads\R4i V3.5 Spanish.zip.ttt

 

2016-01-14 21:09 - 2012-12-13 00:26 - 00000000 ____D C:\Users\dasina\Downloads\R4I RTSPRO V3.0.0.5

 

2016-01-14 21:09 - 2012-12-13 00:16 - 40295600 _____ C:\Users\dasina\Downloads\R4I RTSPRO V3.0.0.5.zip.ttt

 

2016-01-14 21:09 - 2012-12-03 12:07 - 00005088 _____ C:\Users\dasina\Downloads\lista.csv.ttt

 

2016-01-14 21:09 - 2012-12-03 11:05 - 00091968 _____ C:\Users\dasina\Downloads\DABOTEWBPD2W.pdf.ttt

 

2016-01-14 21:09 - 2012-12-03 10:55 - 00195552 _____ C:\Users\dasina\Downloads\Expediente minimo.pdf.ttt

 

2016-01-14 21:09 - 2012-11-19 11:29 - 00455024 _____ C:\Users\dasina\Downloads\DAVID DE LAS FUENTES RODRIGUEZ.pdf.ttt

 

2016-01-14 21:09 - 2012-11-03 15:41 - 24516864 _____ C:\Users\dasina\Downloads\R4i V3.4 Spanish.zip.ttt

 

2016-01-14 21:09 - 2012-10-29 23:49 - 00000000 ____D C:\Users\dasina\Downloads\photo-lane

 

2016-01-14 21:09 - 2012-10-29 23:48 - 42494464 _____ C:\Users\dasina\Downloads\photo-lane.rar.ttt

 

2016-01-14 21:09 - 2012-10-29 23:47 - 26287584 _____ C:\Users\dasina\Downloads\flying-photo.rar.ttt

 

2016-01-14 21:09 - 2012-10-25 23:48 - 00020352 _____ C:\Users\dasina\Downloads\TRABAJA DESDE CASA,INGRESOS EXTRAS.doc.ttt

 

2016-01-14 21:09 - 2012-10-25 23:48 - 00020352 _____ C:\Users\dasina\Downloads\QUIERES CONTROLAR TU PESO Y.doc.ttt

 

2016-01-14 21:09 - 2012-10-25 23:47 - 00020352 _____ C:\Users\dasina\Downloads\QUIERES CONTROLAR TU PESO Y SENTIRTE MEJOR DE VERDAD.doc.ttt

 

2016-01-14 21:09 - 2012-10-25 16:30 - 00000000 ____D C:\Users\dasina\Downloads\Kaspersky.Internet.Security.v13.0.1.4190.ES.Final.Incl.Serial

 

2016-01-14 21:09 - 2012-10-25 15:47 - 00000496 _____ C:\Users\dasina\Downloads\Kaspersky L 90 dias.txt.ttt

 

2016-01-14 21:09 - 2012-10-25 15:44 - 00000000 ____D C:\Users\dasina\Downloads\Kaspersky.World.v1.3.6.22

 

2016-01-14 21:09 - 2012-10-25 11:13 - 00000000 ____D C:\Users\dasina\Downloads\DVDArchitectStudio5.0.157

 

2016-01-14 21:09 - 2012-10-25 10:22 - 00000000 ____D C:\Users\dasina\Downloads\Xbox.Backup.Creator.v2.9.0.350

 

2016-01-14 21:09 - 2012-10-25 10:21 - 00620768 _____ C:\Users\dasina\Downloads\Xbox.Backup.Creator.v2.9.0.350.zip.ttt

 

2016-01-14 21:09 - 2012-10-23 23:26 - 00000000 ____D C:\Users\dasina\Downloads\R4i-3DS V1.63b Spanish

 

2016-01-14 21:09 - 2012-10-23 23:20 - 31180768 _____ C:\Users\dasina\Downloads\R4i-3DS V1.63b Spanish.zip.ttt

 

2016-01-14 21:08 - 2015-12-03 02:48 - 00000544 ____H C:\Users\dasina\Documents\~$00944470) 230 dasina200@hotmail (instalado).docx.ttt

 

2016-01-14 21:08 - 2015-08-24 18:12 - 00000464 _____ C:\Users\dasina\Documents\Telis_6_Chronis_Programacion.pdf.ttt

 

2016-01-14 21:08 - 2015-02-13 16:24 - 00000000 ____D C:\Users\dasina\Documents\VirtualDJ

 

2016-01-14 21:08 - 2015-02-09 12:33 - 00000544 ____H C:\Users\dasina\Documents\~$lendario 2015.doc.ttt

 

2016-01-14 21:08 - 2014-12-02 20:22 - 69764864 _____ C:\Users\dasina\Documents\silvia 2.mp4.ttt

 

2016-01-14 21:08 - 2014-12-02 20:10 - 65961264 _____ C:\Users\dasina\Documents\Silvia.mp4.mp4.ttt

 

2016-01-14 21:08 - 2014-09-17 12:47 - 00000000 ____D C:\Users\dasina\Documents\Vida Laboral

 

2016-01-14 21:08 - 2014-08-12 01:22 - 00000544 ____H C:\Users\dasina\Documents\~$alet independiente en la urbanización aldeamayor golf.docx.ttt

 

2016-01-14 21:08 - 2014-05-21 17:32 - 00020352 _____ C:\Users\dasina\Downloads\CONTROLADOR PRODUCTO VENDIDO completo y nuevo.xls.ttt

 

2016-01-14 21:08 - 2014-05-21 17:31 - 00042880 _____ C:\Users\dasina\Downloads\CONTROLADOR CIRCULACIÓN DEL DINERO con ejemplos.xls.ttt

 

2016-01-14 21:08 - 2014-05-21 17:31 - 00021376 _____ C:\Users\dasina\Downloads\CONTROLADOR GRUPO DE ENFOQUE AGOSTO 2013.xls.ttt

 

2016-01-14 21:08 - 2014-05-19 11:24 - 00178560 _____ C:\Users\dasina\Downloads\BONO REGALO FIESTA CLIENTES.pdf.ttt

 

2016-01-14 21:08 - 2014-05-19 11:24 - 00033664 _____ C:\Users\dasina\Downloads\CARTEL EAC.doc.ttt

 

2016-01-14 21:08 - 2014-05-19 09:35 - 01292160 _____ C:\Users\dasina\Downloads\CARTEL TIRAS HBL.doc.ttt

 

2016-01-14 21:08 - 2014-05-19 09:31 - 02584960 _____ C:\Users\dasina\Downloads\CARTEL NOURIFUSION 1[1].doc.ttt

 

2016-01-14 21:08 - 2014-05-19 09:28 - 00173952 _____ C:\Users\dasina\Downloads\CARTEL IMC PELUQUERÍAS.doc.ttt

 

2016-01-14 21:08 - 2014-04-07 15:59 - 00155168 _____ C:\Users\dasina\Downloads\ABC EN COLUMNAS DIC 13.pdf.ttt

 

2016-01-14 21:08 - 2014-03-16 17:56 - 00000544 ____H C:\Users\dasina\Documents\~$SSIER informativo gema.doc.ttt

 

2016-01-14 21:08 - 2014-03-07 12:34 - 00000000 ____D C:\Users\dasina\Documents\Wondershare PDF Editor

 

2016-01-14 21:08 - 2014-02-01 13:26 - 00000000 ____D C:\Users\dasina\Documents\TomTom

 

2016-01-14 21:08 - 2014-01-04 03:05 - 00000000 ____D C:\Users\dasina\Documents\Virutex Albañil

 

2016-01-14 21:08 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\Documents\Wondershare Video Converter Ultimate

 

2016-01-14 21:08 - 2013-03-13 17:32 - 00000000 ____D C:\Users\dasina\Downloads\Chana

 

2016-01-14 21:08 - 2013-03-03 11:34 - 00000000 ____D C:\Users\dasina\Documents\Vistumbler

 

2016-01-14 21:08 - 2013-01-29 16:57 - 05387776 _____ C:\Users\dasina\Downloads\absinthe-win-2.0.4.zip.ttt

 

2016-01-14 21:08 - 2012-12-24 02:06 - 00000000 ____D C:\Users\dasina\Documents\WBFS Manager Covers

 

2016-01-14 21:08 - 2012-12-13 02:32 - 00000000 ____D C:\Users\dasina\Downloads\cima_images

 

2016-01-14 21:08 - 2012-12-13 02:31 - 12647680 _____ C:\Users\dasina\Downloads\cima_images.zip.ttt

 

2016-01-14 21:08 - 2012-11-19 11:29 - 00028048 _____ C:\Users\dasina\Downloads\0658HHJ.pdf.ttt

 

2016-01-14 21:08 - 2012-11-15 01:10 - 00013504 _____ C:\Users\dasina\Documents\Silvia Diez Jañez solicita los días de descanso.docx.ttt

 

2016-01-14 21:08 - 2012-10-25 23:48 - 00026496 _____ C:\Users\dasina\Downloads\CARTEL GABRIEL.doc.ttt

 

2016-01-14 21:08 - 2012-10-25 23:47 - 03357056 _____ C:\Users\dasina\Downloads\cartel de tiras clientes.doc.ttt

 

2016-01-14 21:08 - 2012-10-25 23:47 - 03357056 _____ C:\Users\dasina\Downloads\cartel de tiras clientes (1).doc.ttt

 

2016-01-14 21:08 - 2012-10-25 23:47 - 01673600 _____ C:\Users\dasina\Downloads\cartel tiras de negocio.doc.ttt

 

2016-01-14 21:07 - 2015-12-15 16:39 - 00027632 _____ C:\Users\dasina\Documents\RolloTron.txt.ttt

 

2016-01-14 21:07 - 2015-12-15 16:38 - 02102720 _____ C:\Users\dasina\Documents\RolloTron.pdf.ttt

 

2016-01-14 21:07 - 2015-04-24 14:51 - 00000000 ____D C:\Users\dasina\Documents\Renta 2014

 

2016-01-14 21:07 - 2015-03-26 00:13 - 00000000 ____D C:\Users\dasina\Documents\Optimal Programs

 

2016-01-14 21:07 - 2015-02-11 14:33 - 00000000 ____D C:\Users\dasina\Documents\Native Instruments

 

2016-01-14 21:07 - 2015-01-28 19:04 - 00000000 ____D C:\Users\dasina\Documents\Pinnacle Studio

 

2016-01-14 21:07 - 2015-01-20 22:03 - 00000000 ____D C:\Users\dasina\Documents\My Data Files

 

2016-01-14 21:07 - 2015-01-06 13:25 - 39849728 _____ C:\Users\dasina\Documents\pequeñopimpinela.mp4.ttt

 

2016-01-14 21:07 - 2015-01-06 13:18 - 59056240 _____ C:\Users\dasina\Documents\Pimpinela-Juan y David.mp4.ttt

 

2016-01-14 21:07 - 2014-04-16 12:18 - 00000000 ____D C:\Users\dasina\Documents\Renta 2013

 

2016-01-14 21:07 - 2014-03-05 16:43 - 00002096 _____ C:\Users\dasina\Documents\Nueva base de datos.odb.ttt

 

2016-01-14 21:07 - 2012-12-29 12:25 - 00000000 ____D C:\Users\dasina\Documents\Mis equipos hiffi

 

2016-01-14 21:07 - 2012-12-13 02:34 - 00017632 _____ C:\Users\dasina\Documents\presupuesto.docx.ttt

 

2016-01-14 21:07 - 2012-12-13 01:22 - 00000000 ____D C:\Users\dasina\Documents\Nero

 

2016-01-14 21:07 - 2012-11-14 12:25 - 00702064 _____ C:\Users\dasina\Documents\Plantilla Buzon Industrias.psd.ttt

 

2016-01-14 21:07 - 2012-10-27 13:53 - 00000000 ____D C:\Users\dasina\Documents\PcSetup

 

2016-01-14 21:06 - 2015-12-31 12:58 - 00000000 ____D C:\Users\dasina\Documents\ConvertXToDVD

 

2016-01-14 21:06 - 2015-12-24 10:25 - 00000464 _____ C:\Users\dasina\Documents\Instrucciones_Composio_Usuario_IO.pdf.ttt

 

2016-01-14 21:06 - 2015-06-17 00:04 - 00000000 ____D C:\Users\dasina\Documents\David

 

2016-01-14 21:06 - 2015-04-02 18:06 - 00000000 ____D C:\Users\dasina\Documents\Ikea

 

2016-01-14 21:06 - 2015-03-05 09:19 - 00105504 _____ C:\Users\dasina\Documents\Invitaciones.docx.ttt

 

2016-01-14 21:06 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\Documents\InstantCDDVD

 

2016-01-14 21:06 - 2014-12-01 16:45 - 00024400 _____ C:\Users\dasina\Documents\HOLA.docx.ttt

 

2016-01-14 21:06 - 2014-11-21 14:45 - 01552928 _____ C:\Users\dasina\Documents\Diplomas Universidad3.jpg.ttt

 

2016-01-14 21:06 - 2014-11-21 11:40 - 21969456 _____ C:\Users\dasina\Documents\Diplomas Universidad2.jpg.ttt

 

2016-01-14 21:06 - 2014-11-10 11:27 - 00383632 _____ C:\Users\dasina\Documents\Litera3.jpg.ttt

 

2016-01-14 21:06 - 2014-11-10 11:22 - 00482960 _____ C:\Users\dasina\Documents\Litera2.jpg.ttt

 

2016-01-14 21:06 - 2014-11-10 11:05 - 00427168 _____ C:\Users\dasina\Documents\Litera.jpg.ttt

 

2016-01-14 21:06 - 2014-10-25 07:50 - 00702112 _____ C:\Users\dasina\Documents\Corriculum rosa.docx.ttt

 

2016-01-14 21:06 - 2014-05-25 10:21 - 04232416 _____ C:\Users\dasina\Documents\elcomediante_2014.pdf.ttt

 

2016-01-14 21:06 - 2014-05-06 09:35 - 00089968 _____ C:\Users\dasina\Documents\Herbalife comprende que los deportistas deben sentir confianza en lo que consumen para sus cuerpos.docx.ttt

 

2016-01-14 21:06 - 2014-05-06 09:29 - 00071776 _____ C:\Users\dasina\Documents\Las investigaciones llevadas a cabo durante el desarrollo de Herbalife24 están basadas en los últimos avances científicos y formuladas de manos de nuestros científicos en Herbalife.docx.ttt

 

2016-01-14 21:06 - 2014-04-23 19:12 - 00000000 ____D C:\Users\dasina\Documents\Ibook

 

2016-01-14 21:06 - 2014-03-16 17:56 - 00066432 _____ C:\Users\dasina\Documents\DOSSIER informativo gema.doc.ttt

 

2016-01-14 21:06 - 2014-01-02 18:02 - 00000000 ____D C:\Users\dasina\Documents\HunSpell

 

2016-01-14 21:06 - 2013-01-29 17:54 - 00000000 ____D C:\Users\dasina\Documents\ihelper

 

2016-01-14 21:06 - 2013-01-26 16:28 - 15729024 _____ C:\Users\dasina\Documents\CONVAR74.jpg.ttt

 

2016-01-14 21:06 - 2013-01-26 16:28 - 15729024 _____ C:\Users\dasina\Documents\CONVAR73.jpg.ttt

 

2016-01-14 21:06 - 2013-01-26 16:27 - 15729024 _____ C:\Users\dasina\Documents\CONVAR72.jpg.ttt

 

2016-01-14 21:06 - 2013-01-07 22:54 - 00000000 ____D C:\Users\dasina\Documents\Colegio Valeria

 

2016-01-14 21:06 - 2012-11-18 12:49 - 00000000 ____D C:\Users\dasina\Documents\Cubre

 

2016-01-14 21:06 - 2012-11-16 17:54 - 02750576 _____ C:\Users\dasina\Documents\Cubre.psd.ttt

 

2016-01-14 21:06 - 2012-10-30 22:33 - 32694144 _____ C:\Users\dasina\Documents\Cinta 3 - Clip 002.avi.ttt

 

2016-01-14 21:06 - 2012-10-30 22:05 - 62813568 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 023.avi.ttt

 

2016-01-14 21:06 - 2012-10-30 22:05 - 62364544 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 022.avi.ttt

 

2016-01-14 21:06 - 2012-10-26 10:35 - 00000000 ____D C:\Users\dasina\Documents\DVD Architect Studio 5.0 proyectos

 

2016-01-14 21:06 - 2012-10-26 00:02 - 00000000 ____D C:\Users\dasina\Documents\CyberLink

 

2016-01-14 21:06 - 2012-10-25 23:48 - 00000000 ____D C:\Users\dasina\Documents\Herbalife

 

2016-01-14 21:05 - 2012-10-30 22:05 - 35138432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 021.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:04 - 193410432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 020.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:03 - 53987200 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 019.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:03 - 24067968 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 018.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:03 - 156759424 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 017.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:02 - 98866048 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 015.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:02 - 103054720 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 016.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:01 - 277183872 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 014.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:00 - 46806912 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 013.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:00 - 40822656 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 012.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:00 - 34689408 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 010.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 22:00 - 26312064 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 011.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 21:59 - 266562432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 009.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 21:56 - 52341632 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 007.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 21:56 - 14793088 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 006.avi.ttt

 

2016-01-14 21:05 - 2012-10-30 21:54 - 224526208 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 004.avi.ttt

 

2016-01-14 21:04 - 2015-12-01 10:51 - 02665024 _____ C:\Users\dasina\Documents\catalogo caja españa.pdf.ttt

 

2016-01-14 21:04 - 2015-03-05 09:24 - 00220544 _____ C:\Users\dasina\Documents\CARTEL CHARLA.doc.ttt

 

2016-01-14 21:04 - 2015-03-05 09:16 - 00000000 ____D C:\Users\dasina\Documents\Charlas invitaciones

 

2016-01-14 21:04 - 2015-02-09 12:33 - 00105856 _____ C:\Users\dasina\Documents\Calendario 2015.doc.ttt

 

2016-01-14 21:04 - 2014-11-10 17:05 - 00292464 _____ C:\Users\dasina\Documents\Armario.jpg.ttt

 

2016-01-14 21:04 - 2014-08-12 01:22 - 19349744 _____ C:\Users\dasina\Documents\Chalet independiente en la urbanización aldeamayor golf.docx.ttt

 

2016-01-14 21:04 - 2013-01-28 17:43 - 00093056 _____ C:\Users\dasina\Documents\bases_revolving_2013.pdf.ttt

 

2016-01-14 21:04 - 2012-10-30 21:53 - 161696128 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 003.avi.ttt

 

2016-01-14 21:04 - 2012-10-30 21:52 - 46208384 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 001.avi.ttt

 

2016-01-14 21:04 - 2012-10-30 21:52 - 189969792 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 002.avi.ttt

 

2016-01-14 21:04 - 2012-10-25 15:10 - 00000000 ____D C:\Users\dasina\Documents\Adobe Photoshop CS6

 

2016-01-14 21:02 - 2015-12-03 02:48 - 00178016 _____ C:\Users\dasina\Documents\(700944470) 230 dasina200@hotmail (instalado).docx.ttt

 

2016-01-14 21:02 - 2015-07-10 12:05 - 00000000 ____D C:\Users\dasina\Desktop\Picho rojo

 

2016-01-14 21:02 - 2015-04-15 00:18 - 00000000 ____D C:\Users\dasina\Desktop\Vienna Acoustics Berg Aluminio

 

2016-01-14 21:02 - 2014-12-04 16:20 - 00000000 ____D C:\Users\dasina\Desktop\PinnacleStudioSetup

 

2016-01-14 21:02 - 2014-08-24 13:48 - 00000000 ____D C:\Users\dasina\Desktop\Picho Musica

 

2016-01-14 21:02 - 2014-08-15 11:00 - 00000000 ____D C:\Users\dasina\Documents\Adobe

 

2016-01-14 21:02 - 2014-02-16 10:22 - 00000000 ____D C:\Users\dasina\Documents\40025-672645-advanced-office-password-recovery.msi

 

2016-01-14 21:02 - 2014-01-15 23:11 - 00000000 ____D C:\Users\dasina\Documents\00022AC1FC9201581000000000356AA5

 

2016-01-14 21:02 - 2013-12-07 10:39 - 00054144 _____ C:\Users\dasina\Desktop\Reunion 1 - Tabla de proteinas.xls.ttt

 

2016-01-14 21:02 - 2013-10-10 20:31 - 00000000 ____D C:\Users\dasina\Desktop\PPF-O-Matic v3

 

2016-01-14 21:02 - 2013-03-13 20:04 - 00000000 ____D C:\Users\dasina\Desktop\Promo Only Tropical Latin March (2010).www.lokotorrents.com

 

2016-01-14 21:02 - 2013-01-07 22:46 - 00148384 _____ C:\Users\dasina\Documents\1748217.pdf.ttt

 

2016-01-14 21:01 - 2014-04-16 15:54 - 00000576 _____ C:\Users\dasina\Desktop\Nuevo documento de texto (3).txt.ttt

 

2016-01-14 21:01 - 2014-04-05 00:45 - 00000000 ____D C:\Users\dasina\Desktop\Nueva carpeta (3)

 

2016-01-14 21:01 - 2014-03-05 16:41 - 00000000 ____D C:\Users\dasina\Desktop\PDF

 

2016-01-14 21:01 - 2013-11-08 16:03 - 00000432 _____ C:\Users\dasina\Desktop\Nuevo documento de texto (2).txt.ttt

 

2016-01-14 21:00 - 2015-06-30 17:30 - 00000000 ____D C:\Users\dasina\Desktop\Fotos

 

2016-01-14 21:00 - 2015-06-23 08:24 - 19093888 _____ C:\Users\dasina\Desktop\Charla Silvia modificada.ppt.ttt

 

2016-01-14 21:00 - 2014-05-03 01:20 - 00000000 ____D C:\Users\dasina\Desktop\Musica

 

2016-01-14 21:00 - 2014-03-07 12:32 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Wondershare

 

2016-01-14 21:00 - 2014-01-16 16:43 - 00000000 ____D C:\Users\dasina\AppData\Roaming\vlc

 

2016-01-14 21:00 - 2014-01-03 01:55 - 00000000 ____D C:\Users\dasina\Desktop\InteriCAD Lite Trial Package

 

2016-01-14 21:00 - 2014-01-02 18:02 - 00000000 ____D C:\Users\dasina\AppData\Roaming\YFSoftware

 

2016-01-14 21:00 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}

 

2016-01-14 21:00 - 2013-01-29 16:58 - 00000000 ____D C:\Users\dasina\Desktop\absinthe-win-2.0.4

 

2016-01-14 21:00 - 2013-01-27 12:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WindSolutions

 

2016-01-14 21:00 - 2012-12-24 03:35 - 00000000 ____D C:\Users\dasina\Desktop\Nueva carpeta (2)

 

2016-01-14 21:00 - 2012-12-03 10:53 - 00000000 ____D C:\Users\dasina\Desktop\Maquina Bordar

 

2016-01-14 21:00 - 2012-10-31 18:56 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WTablet

 

2016-01-14 21:00 - 2012-10-27 13:53 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Vso

 

2016-01-14 21:00 - 2012-10-24 00:27 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WinRAR

 

2016-01-14 20:59 - 2015-06-28 13:58 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Teiron

 

2016-01-14 20:59 - 2014-02-01 13:26 - 00000000 ____D C:\Users\dasina\AppData\Roaming\TomTom

 

2016-01-14 20:59 - 2012-12-23 13:44 - 00000000 ____D C:\Users\dasina\AppData\Roaming\uTorrent

 

2016-01-14 20:59 - 2012-10-25 11:26 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Sony Creative Software Inc

 

2016-01-14 20:59 - 2012-10-20 17:39 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Sony

 

2016-01-14 20:58 - 2015-12-11 04:11 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox

 

2016-01-14 20:58 - 2015-07-09 01:14 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BBS Tools

 

2016-01-14 20:58 - 2015-03-26 00:12 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cutting Optimization pro

 

2016-01-14 20:58 - 2015-02-13 16:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ

 

2016-01-14 20:58 - 2015-01-20 16:15 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v5

 

2016-01-14 20:58 - 2014-12-28 15:19 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair

 

2016-01-14 20:58 - 2014-11-03 02:57 - 00000000 ____D C:\Users\dasina\AppData\Roaming\SketchUp

 

2016-01-14 20:58 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek

 

2016-01-14 20:58 - 2014-03-05 16:42 - 00000000 ____D C:\Users\dasina\AppData\Roaming\OpenOffice.org

 

2016-01-14 20:58 - 2014-01-15 22:59 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio

 

2016-01-14 20:58 - 2013-03-03 11:34 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vistumbler

 

2016-01-14 20:58 - 2013-01-27 12:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Suite

 

2016-01-14 20:58 - 2013-01-17 12:04 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Nero

 

2016-01-14 20:58 - 2012-12-24 02:06 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WBFS Manager

 

2016-01-14 20:58 - 2012-11-26 01:36 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Mozilla

 

2016-01-14 20:58 - 2012-10-24 00:27 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

 

2016-01-14 20:58 - 2012-10-20 17:46 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Publish Providers

 

2016-01-14 20:52 - 2015-04-18 02:25 - 00000000 ____D C:\Users\dasina\AppData\Roaming\iFunbox_UserCache

 

2016-01-14 20:52 - 2014-12-04 20:59 - 00000992 _____ C:\Users\dasina\AppData\Roaming\DASINA-PC.MTBF.txt.ttt

 

2016-01-14 20:52 - 2014-11-20 16:09 - 00000000 ____D C:\Users\dasina\AppData\Roaming\DAEMON Tools Lite

 

2016-01-14 20:52 - 2014-03-03 18:30 - 00000000 ____D C:\Users\dasina\AppData\Roaming\LG Electronics

 

2016-01-14 20:52 - 2014-01-12 04:07 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Canon

 

2016-01-14 20:52 - 2014-01-08 01:28 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Boole & Partners

 

2016-01-14 20:52 - 2013-01-29 17:54 - 00000000 ____D C:\Users\dasina\AppData\Roaming\ihelper

 

2016-01-14 20:52 - 2012-11-18 12:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\EPSON

 

2016-01-14 20:52 - 2012-11-03 16:13 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Apple Computer

 

2016-01-14 20:52 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Roaming\CyberLink

 

2016-01-14 20:52 - 2012-10-25 14:59 - 00000000 ____D C:\Users\dasina\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant

 

2016-01-14 20:52 - 2012-10-23 23:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Macromedia

 

2016-01-14 20:52 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Media Center Programs

 

2016-01-14 20:51 - 2015-06-28 13:57 - 00000000 ____D C:\Users\dasina\AppData\Roaming\ahelper

 

2016-01-14 20:51 - 2012-10-23 23:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Adobe

 

2016-01-14 20:37 - 2015-07-10 17:08 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Google

 

2016-01-14 20:37 - 2014-11-13 03:31 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieBrowserModeList

 

2016-01-14 20:37 - 2014-05-01 02:21 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieUserList

 

2016-01-14 20:37 - 2014-05-01 02:21 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieSiteList

 

2016-01-14 20:37 - 2014-02-01 13:13 - 00000000 ____D C:\Users\dasina\AppData\Local\TomTom

 

2016-01-14 20:37 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Wondershare

 

2016-01-14 20:37 - 2012-12-24 02:07 - 00000000 ____D C:\Users\dasina\AppData\Local\WBFSManager

 

2016-01-14 20:37 - 2012-11-03 16:10 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Apple Computer

 

2016-01-14 20:37 - 2012-11-03 15:09 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Adobe

 

2016-01-14 20:37 - 2012-10-25 10:35 - 00000000 ____D C:\Users\dasina\AppData\Roaming\abgx360

 

2016-01-14 20:37 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina\AppData\Local\VirtualStore

 

2016-01-14 20:36 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\AppData\Local\Pinnacle_Studio_17

 

2016-01-14 20:36 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\AppData\Local\Pinnacle

 

2016-01-14 20:36 - 2014-04-16 18:04 - 00000000 __SHD C:\Users\dasina\AppData\Local\ms-drivers

 

2016-01-14 20:36 - 2012-11-26 01:36 - 00000000 ____D C:\Users\dasina\AppData\Local\Mozilla

 

2016-01-14 20:36 - 2012-10-20 17:39 - 00000000 ____D C:\Users\dasina\AppData\Local\Sony

 

2016-01-14 20:35 - 2014-01-15 23:37 - 00000000 ____D C:\Users\dasina\AppData\Local\MiTAC_International_Corpo

 

2016-01-14 20:35 - 2012-10-20 17:26 - 00000000 ____D C:\Users\dasina\AppData\Local\Microsoft Help

 

2016-01-14 20:11 - 2015-06-05 02:19 - 00000000 ____D C:\Users\dasina\AppData\Local\GWX

 

2016-01-14 20:11 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Local\MetaGeek,_LLC

 

2016-01-14 20:11 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Local\IsolatedStorage

 

2016-01-14 20:11 - 2014-03-03 18:29 - 00000000 ____D C:\Users\dasina\AppData\Local\LG Electronics

 

2016-01-14 20:11 - 2014-02-02 23:57 - 00000000 ____D C:\Users\dasina\AppData\Local\Macromedia

 

2016-01-14 20:11 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Google

 

2016-01-14 20:11 - 2013-01-29 16:58 - 00000000 ____D C:\Users\dasina\AppData\Local\libimobiledevice

 

2016-01-14 20:11 - 2012-10-26 00:02 - 00000000 ____D C:\Users\dasina\AppData\Local\MediaShow

 

2016-01-14 20:11 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Local\MediaServer

 

2016-01-14 20:10 - 2015-07-08 13:22 - 00000000 ____D C:\ProgramData\{3b336e47-4deb-20b6-3b33-36e474deb91d}

 

2016-01-14 20:10 - 2015-07-08 13:19 - 00000000 ____D C:\ProgramData\TomTom

 

2016-01-14 20:10 - 2015-06-23 00:57 - 00000000 ____D C:\Users\dasina\AppData\Local\Dropbox

 

2016-01-14 20:10 - 2015-04-18 01:35 - 00000000 ____D C:\ProgramData\{c76c66d7-9c24-717c-c76c-c66d79c29b5e}

 

2016-01-14 20:10 - 2015-01-28 18:59 - 00000000 ____D C:\ProgramData\Studio 14

 

2016-01-14 20:10 - 2014-12-28 14:59 - 00000000 ____D C:\Users\dasina\AppData\Local\GGEmpire

 

2016-01-14 20:10 - 2014-11-13 03:32 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieBrowserModeList

 

2016-01-14 20:10 - 2014-11-03 02:53 - 00000000 ____D C:\ProgramData\SketchUp

 

2016-01-14 20:10 - 2014-07-04 09:07 - 00000000 ____D C:\Users\dasina\AppData\Local\Adobe

 

2016-01-14 20:10 - 2014-05-01 02:22 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieUserList

 

2016-01-14 20:10 - 2014-05-01 02:22 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieSiteList

 

2016-01-14 20:10 - 2014-01-04 18:02 - 00000000 ____D C:\Users\dasina\AppData\Local\bcfd

 

2016-01-14 20:10 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\AppData\Local\cache

 

2016-01-14 20:10 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\.android

 

2016-01-14 20:10 - 2013-10-30 12:27 - 00000000 ____D C:\Users\dasina\AppData\Local\ElevatedDiagnostics

 

2016-01-14 20:10 - 2013-05-26 12:14 - 00000000 ____D C:\ProgramData\xml_param

 

2016-01-14 20:10 - 2013-05-26 12:12 - 00000000 ____D C:\ProgramData\Wondershare Video Converter Ultimate

 

2016-01-14 20:10 - 2013-05-25 16:14 - 00000000 ____D C:\Users\dasina\AppData\Local\Downloaded Installations

 

2016-01-14 20:10 - 2013-01-27 12:24 - 00000000 ____D C:\ProgramData\WindSolutions

 

2016-01-14 20:10 - 2012-11-03 16:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Apple Computer

 

2016-01-14 20:10 - 2012-10-27 13:55 - 00000000 ____D C:\ProgramData\Vso

 

2016-01-14 20:10 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Local\CyberLink

 

2016-01-14 20:10 - 2012-10-25 23:23 - 00000000 ____D C:\ProgramData\Temp

 

2016-01-14 20:10 - 2012-10-20 17:39 - 00000000 ____D C:\ProgramData\Sony

 

2016-01-14 20:10 - 2012-10-20 15:54 - 00000000 ____D C:\Users\dasina\AppData\Local\Apple

 

2016-01-14 20:09 - 2015-10-14 22:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes

 

2016-01-14 20:09 - 2015-10-14 22:20 - 00000000 ____D C:\Program Files\iTunes

 

2016-01-14 20:09 - 2015-10-14 22:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime

 

2016-01-14 20:09 - 2015-07-08 13:23 - 00000000 ____D C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn

 

2016-01-14 20:09 - 2015-06-28 13:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PP助手2.0

 

2016-01-14 20:09 - 2015-06-28 13:45 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7

 

2016-01-14 20:09 - 2015-06-23 00:57 - 00000000 ____D C:\ProgramData\Dropbox

 

2016-01-14 20:09 - 2015-04-18 02:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam

 

2016-01-14 20:09 - 2015-03-26 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cutting Optimization pro

 

2016-01-14 20:09 - 2015-02-11 23:44 - 00000000 ____D C:\Program Files\Native Instruments

 

2016-01-14 20:09 - 2015-02-11 23:12 - 00000000 ____D C:\ProgramData\Package Cache

 

2016-01-14 20:09 - 2015-02-11 14:33 - 00000000 ____D C:\ProgramData\Native Instruments

 

2016-01-14 20:09 - 2015-01-28 19:01 - 00000000 ____D C:\ProgramData\Pinnacle Studio Ultimate Collection

 

2016-01-14 20:09 - 2015-01-28 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 14

 

2016-01-14 20:09 - 2015-01-28 18:59 - 00000000 ____D C:\ProgramData\Pinnacle Studio Plus

 

2016-01-14 20:09 - 2014-12-28 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair

 

2016-01-14 20:09 - 2014-12-28 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip

 

2016-01-14 20:09 - 2014-12-04 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 17

 

2016-01-14 20:09 - 2014-12-04 16:29 - 00000000 ____D C:\ProgramData\Pinnacle

 

2016-01-14 20:09 - 2014-11-20 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite

 

2016-01-14 20:09 - 2014-11-20 16:04 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite

 

2016-01-14 20:09 - 2014-11-06 16:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers

 

2016-01-14 20:09 - 2014-11-03 02:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2014

 

2016-01-14 20:09 - 2014-05-12 20:19 - 00000000 ____D C:\ProgramData\Google

 

2016-01-14 20:09 - 2014-05-08 11:37 - 00000000 ____D C:\ProgramData\Samsung

 

2016-01-14 20:09 - 2014-04-16 12:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69

 

2016-01-14 20:09 - 2014-03-07 12:32 - 00000000 ____D C:\ProgramData\PDFEditor

 

2016-01-14 20:09 - 2014-03-05 16:40 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1

 

2016-01-14 20:09 - 2014-03-03 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG PC Suite

 

2016-01-14 20:09 - 2014-02-16 10:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery

 

2016-01-14 20:09 - 2014-02-16 10:23 - 00000000 ____D C:\ProgramData\Elcomsoft Password Recovery

 

2016-01-14 20:09 - 2014-02-01 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom

 

2016-01-14 20:09 - 2014-01-16 16:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN

 

2016-01-14 20:09 - 2014-01-12 02:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities

 

2016-01-14 20:09 - 2014-01-12 02:10 - 00000000 ___HD C:\ProgramData\CanonCP

 

2016-01-14 20:09 - 2014-01-12 02:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon SELPHY CP900

 

2016-01-14 20:09 - 2014-01-08 01:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boole & Partners

 

2016-01-14 20:09 - 2014-01-08 01:28 - 00000000 ____D C:\ProgramData\Boole & Partners

 

2016-01-14 20:09 - 2014-01-02 17:57 - 00000000 ____D C:\Program Files\Senselock

 

2016-01-14 20:09 - 2014-01-02 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YFCAD Software

 

2016-01-14 20:09 - 2013-11-06 00:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink

 

2016-01-14 20:09 - 2013-11-06 00:48 - 00000000 ____D C:\ProgramData\DVD Shrink

 

2016-01-14 20:09 - 2013-05-26 12:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare

 

2016-01-14 20:09 - 2013-01-29 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ

 

2016-01-14 20:09 - 2013-01-17 12:03 - 00000000 ____D C:\ProgramData\Nero

 

2016-01-14 20:09 - 2013-01-17 12:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero

 

2016-01-14 20:09 - 2012-12-24 02:06 - 00000000 ____D C:\Program Files\WBFS

 

2016-01-14 20:09 - 2012-11-03 16:10 - 00000000 ____D C:\ProgramData\Apple Computer

 

2016-01-14 20:09 - 2012-10-31 18:56 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tableta Wacom

 

2016-01-14 20:09 - 2012-10-31 18:56 - 00000000 ____D C:\Program Files\Tablet

 

2016-01-14 20:09 - 2012-10-27 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vso

 

2016-01-14 20:09 - 2012-10-27 13:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company

 

2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12

 

2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ____D C:\ProgramData\PDVD

 

2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ____D C:\ProgramData\CyberLink

 

2016-01-14 20:09 - 2012-10-25 23:23 - 00000000 ____D C:\ProgramData\install_clap

 

2016-01-14 20:09 - 2012-10-25 15:30 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe

 

2016-01-14 20:09 - 2012-10-25 14:59 - 00000000 ____D C:\ProgramData\Adobe

 

2016-01-14 20:09 - 2012-10-25 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\abgx360

 

2016-01-14 20:09 - 2012-10-24 00:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

 

2016-01-14 20:09 - 2012-10-22 13:21 - 00000000 ____D C:\ProgramData\Mozilla

 

2016-01-14 20:09 - 2012-10-20 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony

 

2016-01-14 20:09 - 2012-10-20 17:39 - 00000000 ____D C:\Program Files\Sony

 

2016-01-14 20:09 - 2012-10-20 17:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office

 

2016-01-14 20:09 - 2012-10-20 17:27 - 00000000 ____D C:\Program Files\Microsoft Office

 

2016-01-14 20:09 - 2012-10-20 17:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan

 

2016-01-14 20:09 - 2012-10-20 15:53 - 00000000 ____D C:\ProgramData\Apple

 

2016-01-14 20:09 - 2011-04-12 10:21 - 00000000 ____D C:\Program Files\Windows Journal

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Sidebar

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Portable Devices

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Reference Assemblies

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\MSBuild

 

2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games

 

2016-01-14 20:09 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Windows NT

 

2016-01-14 20:07 - 2015-12-03 21:04 - 00000000 ____D C:\Program Files\Common Files\AV

 

2016-01-14 20:07 - 2015-10-14 22:21 - 00000000 ____D C:\Program Files\iPod

 

2016-01-14 20:07 - 2015-02-11 14:33 - 00000000 ____D C:\Program Files\Common Files\Native Instruments

 

2016-01-14 20:07 - 2014-05-12 20:19 - 00000000 ____D C:\Program Files\Google

 

2016-01-14 20:07 - 2013-05-26 12:13 - 00000000 ____D C:\Program Files\Common Files\Wondershare

 

2016-01-14 20:07 - 2012-11-03 16:11 - 00000000 ____D C:\Program Files\Common Files\Apple

 

2016-01-14 20:07 - 2012-10-25 15:26 - 00000000 ____D C:\Program Files\Common Files\Adobe

 

2016-01-14 20:07 - 2012-10-20 15:54 - 00000000 ____D C:\Program Files\DIFX

 

2016-01-14 20:07 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker

 

2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System

 

2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines

 

2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Services

 

2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared

 

2016-01-14 20:06 - 2015-10-14 22:19 - 00000000 ____D C:\Program Files\Bonjour

 

2016-01-14 20:06 - 2015-01-20 16:15 - 00000000 ____D C:\Program Files\CodeMeter

 

2016-01-14 20:06 - 2014-01-02 17:53 - 00000000 ____D C:\InteriCADT5

 

2016-01-14 20:06 - 2012-10-25 23:25 - 00000000 ____D C:\MediaServer

 

2016-01-14 20:06 - 2012-10-25 15:29 - 00000000 ____D C:\Program Files\Adobe

 

2016-01-14 20:06 - 2012-10-20 17:26 - 00000000 __RHD C:\MSOCache

 

2016-01-14 20:06 - 2012-10-20 15:58 - 00000000 ____D C:\Program Files\Boot Camp

 

2016-01-14 20:06 - 2012-10-20 15:56 - 00000000 ____D C:\Program Files\ATI

 

2016-01-14 20:06 - 2009-07-14 04:20 - 00000000 ____D C:\PerfLogs

 

2016-01-14 19:31 - 2014-01-03 01:56 - 00000000 ____D C:\InteriCAD Lite Trial

 

2016-01-14 19:30 - 2012-10-27 13:40 - 00000000 ____D C:\DriveKey

 

2016-01-14 19:30 - 2012-10-20 15:57 - 00000000 ____D C:\Intel

 

2016-01-14 19:29 - 2013-05-21 20:42 - 00000000 ___HD C:\.fseventsd

 

2016-01-14 19:29 - 2013-05-12 00:28 - 00000000 ___HD C:\.Trashes

 

2016-01-13 19:10 - 2014-12-23 18:23 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task

 

 

==================== Files in the root of some directories =======

 

 

2016-01-14 19:30 - 2016-01-14 20:09 - 0006764 _____ () C:\Program Files\how_recover+sob.html

 

2016-01-14 19:30 - 2016-01-14 20:09 - 0002339 _____ () C:\Program Files\how_recover+sob.txt

 

2016-01-14 20:06 - 2016-01-14 20:07 - 0006764 _____ () C:\Program Files\Common Files\how_recover+sob.html

 

2016-01-14 20:06 - 2016-01-14 20:07 - 0002339 _____ () C:\Program Files\Common Files\how_recover+sob.txt

 

2015-03-31 09:14 - 2015-03-31 09:14 - 0005655 _____ () C:\Users\dasina\AppData\Roaming\5Sux0mu

 

2014-12-04 20:59 - 2016-01-14 20:52 - 0000992 _____ () C:\Users\dasina\AppData\Roaming\DASINA-PC.MTBF.txt.ttt

 

2016-01-14 21:00 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Roaming\how_recover+sob.html

 

2016-01-14 21:00 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Roaming\how_recover+sob.txt

 

2012-10-27 13:53 - 2012-10-27 13:53 - 0099384 _____ () C:\Users\dasina\AppData\Roaming\inst.exe

 

2015-03-31 09:14 - 2015-03-31 09:14 - 0004387 _____ () C:\Users\dasina\AppData\Roaming\jjOjJlnt

 

2012-10-27 13:53 - 2012-10-27 13:53 - 0007859 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.cat

 

2012-10-27 13:53 - 2012-10-27 13:53 - 0001167 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.inf

 

2012-10-27 13:54 - 2012-10-27 13:54 - 0000074 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.log

 

2012-10-27 13:53 - 2012-10-27 13:53 - 0082816 _____ (VSO Software) C:\Users\dasina\AppData\Roaming\pcouffin.sys

 

2015-03-31 09:14 - 2015-03-31 09:14 - 0004387 _____ () C:\Users\dasina\AppData\Roaming\PMVczaNcoptbUlRnM9oJp

 

2015-03-31 09:14 - 2015-03-31 09:14 - 0005655 _____ () C:\Users\dasina\AppData\Roaming\pv9RWQgSvZ8mEE

 

2015-12-31 12:57 - 2015-12-31 13:03 - 0001057 _____ () C:\Users\dasina\AppData\Roaming\vso_ts_preview.xml

 

2014-01-02 19:13 - 2015-01-20 23:02 - 0000160 _____ () C:\Users\dasina\AppData\Roaming\WB.CFG

 

2014-12-04 20:59 - 2015-12-31 16:46 - 0000960 _____ () C:\Users\dasina\AppData\Roaming\__AvidCloudManager.log

 

2014-12-04 20:59 - 2015-01-23 16:48 - 0000910 _____ () C:\Users\dasina\AppData\Roaming\__AvidCloudManagerPrevious.log

 

2016-01-14 20:58 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Roaming\Microsoft\how_recover+sob.html

 

2016-01-14 20:58 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Roaming\Microsoft\how_recover+sob.txt

 

2014-04-16 18:04 - 2014-04-16 18:04 - 0000037 ___SH () C:\Users\dasina\AppData\Local\70149b02515b3bb20dd492.47983420

 

2014-12-04 21:00 - 2015-06-02 00:00 - 0010240 _____ () C:\Users\dasina\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

 

2014-09-17 23:35 - 2014-09-17 23:35 - 0464384 _____ (Dirección General de la Policía) C:\Users\dasina\AppData\Local\DNIeService.exe

 

2015-01-20 23:02 - 2015-01-20 23:02 - 0234679 _____ () C:\Users\dasina\AppData\Local\dsi1.dat

 

2015-01-20 23:02 - 2015-01-20 23:02 - 0161916 _____ () C:\Users\dasina\AppData\Local\dsi2.dat

 

2016-01-14 20:10 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Local\how_recover+sob.html

 

2016-01-14 20:10 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Local\how_recover+sob.txt

 

2016-02-07 05:03 - 2016-02-07 05:03 - 0000000 ____H () C:\ProgramData\cm-lock

 

2016-01-14 20:09 - 2016-01-15 07:30 - 0006764 _____ () C:\ProgramData\how_recover+sob.html

 

2016-01-14 20:09 - 2016-01-15 07:30 - 0002339 _____ () C:\ProgramData\how_recover+sob.txt

 

 

Some files in TEMP:

 

====================

 

C:\Users\dasina\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp9gavv2.dll

 

C:\Users\dasina\AppData\Local\Temp\g0cnus8j.dll

 

C:\Users\dasina\AppData\Local\Temp\sqlite3.dll

 

C:\Users\dasina\AppData\Local\Temp\VirtualDJ New Version.exe

 

 

 

==================== Bamital & volsnap =================

 

 

(There is no automatic fix for files that do not pass verification.)

 

 

C:\Windows\system32\winlogon.exe => File is digitally signed

 

C:\Windows\system32\wininit.exe => File is digitally signed

 

C:\Windows\SysWOW64\wininit.exe => File is digitally signed

 

C:\Windows\explorer.exe => File is digitally signed

 

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

 

C:\Windows\system32\svchost.exe => File is digitally signed

 

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

 

C:\Windows\system32\services.exe => File is digitally signed

 

C:\Windows\system32\User32.dll => File is digitally signed

 

C:\Windows\SysWOW64\User32.dll => File is digitally signed

 

C:\Windows\system32\userinit.exe => File is digitally signed

 

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

 

C:\Windows\system32\rpcss.dll => File is digitally signed

 

C:\Windows\system32\dnsapi.dll => File is digitally signed

 

C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed

 

C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

 

 

 

LastRegBack: 2016-02-06 19:28

 

 

==================== End of FRST.txt ============================


  • 0

#4
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 3,330 posts

Running from C:\Users\dasina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2WKJ5YIR

Please copy FRST64.exe to your Desktop.


 
  • Step #2 Fix with FRST
    Make sure that you still have FRST.exe on your Desktop. If you do not have it, download the suitable version from here to your Desktop.
    • Open Notepad.exe. Do not use any other text editor software;
    • Copy and Paste the contents inside the code-box to your Notepad --
      Start
      CreateRestorePoint:
      CloseProcesses:
      EmptyTemp:
      HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\MountPoints2: {9d45561d-95e8-11e3-a21e-442a60d55ff7} - G:\LGAutoRun.exe
      CMD: type "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt"
      CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
      CHR Extension: (CutThePricee) - C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn\ []
      2016-02-07 05:02 - 2015-04-02 15:22 - 00000992 _____ C:\Windows\Tasks\jjOjJlnt.job
      2016-02-07 05:02 - 2012-10-20 17:37 - 00000202 _____ C:\Windows\Tasks\AutoKMS.job
      End
    • Click on File > Save as...
      • Inside the File Name box type fixlist.txt;
      • From the Save as type drop down list, choose All Files
    • Save the file to your Desktop;
    • Re-run FRST.exe and click Fix;
      • Note: If FRST advises there is a new updated version to be downloaded, do so/allow this.
    • After the completion, a log will be produced;
    • Copy and Paste the contents of the log in your next reply.
 
  • Step #3 Fix with AdwCleaner
    • Download AdwCleaner by Xplode to your Desktop from the following link.
    • Right-click on AdwCleaner.exe and choose Run as administrator;
    • Click on Option and put a tick mark on everything;
    • Click on Scan and let the program run unhindered;
    • When done, click on Clean and allow the system to reboot after it is done;
    • A log will be opened automatically after the restart. If not, it is located in C:\AdwCleaner\AdwCleaner[CX].txt, where X is replaced with a number;
    • Copy and Paste the contents of this log in your reply.
 
  • Required Log(s):
    • Fixlog.txt
    • AdwCleaner Log
Regards,
Valinorum
  • 0

#5
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-01-2016
Ran by dasina (administrator) on DASINA-PC (07-02-2016 12:09:30)
Running from C:\Users\dasina\Desktop
Loaded Profiles: dasina (Available Profiles: dasina)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Apple Inc.) C:\Program Files\Boot Camp\Bootcamp.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(TomTom) C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe
(i-Funbox.com) C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe
() C:\Program Files (x86)\Belkin\F1U201.401\usbshare.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
(Dropbox, Inc.) C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
() C:\Windows\System32\AppleOSSMgr.exe
(Apple Inc.) C:\Windows\System32\AppleTimeSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
() C:\Program Files (x86)\PP助手2.0\adevicehelpersvr.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(广州铁人网络科技有限公司) C:\Program Files (x86)\PP助手2.0\adevicehelpermon.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(AO Kaspersky Lab) C:\ProgramData\Kaspersky Lab\AVP16.0.0\Temp\temporaryFolder\updates\bin\kav16\16.0.0.614_kis_a\avp.exe.6580_2553_4126.removeOnNextReboot
(AO Kaspersky Lab) C:\ProgramData\Kaspersky Lab\AVP16.0.0\Temp\temporaryFolder\updates\bin\kav16\16.0.0.614_kis_a\avpui.exe.6580_2553_4126.removeOnNextReboot
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_19_0_0_185_ActiveX.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apple_KbdMgr] => C:\Program Files\Boot Camp\Bootcamp.exe [741760 2011-08-15] (Apple Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PowerDVD12DMREngine] => C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [505872 2012-08-16] (CyberLink)
HKLM-x32\...\Run: [PowerDVD12Agent] => C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe [374560 2012-08-16] (CyberLink Corp.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [BrowserPlugInHelper] => C:\Program Files (x86)\Wondershare\Video Converter Ultimate\BrowserPlugInHelper.exe [1969440 2013-05-14] ()
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2015-12-13] (Adobe Systems Incorporated)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe [473496 2013-11-29] (TomTom)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [EEDSpeedLauncher] => rundll32.exe C:\Windows\system32\eed_ec.dll,SpeedLauncher
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [iFunBox Fast App Install Handler] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [2692608 2015-04-12] (i-Funbox.com)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [Dropbox Update] => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-23] (Dropbox, Inc.)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8619224 2016-01-15] (Piriform Ltd)
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\MountPoints2: {9d45561d-95e8-11e3-a21e-442a60d55ff7} - G:\LGAutoRun.exe
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\F1U201.401.lnk [2016-02-06]
ShortcutTarget: F1U201.401.lnk -> C:\Program Files (x86)\Belkin\F1U201.401\usbshare.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.html [2016-01-15] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt [2016-01-15] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SELPHY Photo Print Launcher.lnk [2016-02-06]
ShortcutTarget: SELPHY Photo Print Launcher.lnk -> C:\Program Files (x86)\Canon\SELPHY Photo Print\CIC_SPPhelper.exe (Canon Inc.)
Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-02-06]
ShortcutTarget: Dropbox.lnk -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.html [2016-01-15] ()
Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt [2016-01-15] ()
Startup: C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk [2016-02-06]
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 87.216.1.65 87.216.1.66
Tcpip\..\Interfaces\{70316FEB-D17C-4B53-A9D7-6DEEEF35BF69}: [DhcpNameServer] 87.216.1.65 87.216.1.66
Tcpip\..\Interfaces\{7321AF1B-9C3C-4101-BB98-1B539E58D27C}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.es/
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000 -> DefaultScope {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxps://www.google.com/search?q={searchTerms}
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
BHO: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-02-07] (AO Kaspersky Lab)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-11-04] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-11-04] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.2\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.2\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @wacom.com/wacom-plugin,version=1.1.0.5 -> C:\Program Files (x86)\TabletPlugins\npwacom.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-12-17] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\searchplugins\how_recover+sob.html [2016-01-15]
FF SearchPlugin: C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\searchplugins\how_recover+sob.txt [2016-01-15]
FF Extension: fun coupons - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\extensions\[email protected] [2016-01-14] [not signed]
FF Extension: No Name - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\extensions\[email protected] [not found]
FF Extension: CutThePricee - C:\Users\dasina\AppData\Roaming\Mozilla\Firefox\Profiles\nueq2ik7.default\Extensions\[email protected] [2016-01-14] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-02-07]

Chrome:
=======
CHR Profile: C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-14]
CHR Extension: (Búsqueda de Google) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-14]
CHR Extension: (Kaspersky Protection) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2016-02-07]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-14]
CHR Extension: (Gmail) - C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-01-14]
CHR Extension: (CutThePricee) - C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn\ []
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
R2 AppleOSSMgr; C:\Windows\system32\AppleOSSMgr.exe [224640 2011-08-15] ()
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2016-02-07] (Kaspersky Lab ZAO)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [90640 2012-08-16] (CyberLink Corp.)
S2 cphs; C:\Windows\SysWow64\IntelCpHeciSvc.exe [279000 2014-01-29] () [File not signed]
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [78352 2012-08-16] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [295440 2012-08-16] (CyberLink)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 PP Assistant Service; C:\Program Files (x86)\PP助手2.0\adevicehelpersvr.exe [118496 2014-08-14] () [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2013-04-18] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2013-06-28] (LG Electronics Inc.)
S3 applebmt; C:\Windows\System32\DRIVERS\applebmt.sys [52736 2011-06-02] (Apple Inc.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-20] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-02-06] ()
S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [5363200 2014-01-29] (Intel Corporation) [File not signed]
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
S0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
S1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [181640 2016-02-07] (AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [940928 2016-02-07] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39096 2015-06-11] (Kaspersky Lab ZAO)
S3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [41144 2015-06-06] (Kaspersky Lab ZAO)
S3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2016-02-07] (AO Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-06-11] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-02-07] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 MHIKEY10; C:\Windows\System32\Drivers\MHIKEY10x64.sys [60288 2010-09-15] (Generic USB smartcard reader)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [83704 2012-06-20] (Cyberlink Corp.)
R2 {73526619-C24F-470B-9BED-53D455FBB5C6}; C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [147704 2012-08-14] (CyberLink Corp.)
R4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-07 12:09 - 2016-02-07 12:09 - 00023115 _____ C:\Users\dasina\Desktop\FRST.txt
2016-02-07 12:04 - 2016-02-07 12:04 - 02370560 _____ (Farbar) C:\Users\dasina\Desktop\FRST64.exe
2016-02-07 06:40 - 2016-02-07 06:40 - 00000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2016-02-07 05:11 - 2016-02-07 05:11 - 00002440 _____ C:\Users\dasina\Desktop\Pago Seguro.lnk
2016-02-07 05:10 - 2016-02-07 05:10 - 00002150 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2016-02-07 05:10 - 2016-02-07 05:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2016-02-07 05:09 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2016-02-07 05:08 - 2016-02-07 11:46 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-02-07 05:08 - 2016-02-07 05:08 - 00000000 ____D C:\Windows\ELAMBKUP
2016-02-07 05:08 - 2016-02-07 05:08 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2016-02-07 05:07 - 2016-02-07 05:37 - 00940928 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2016-02-07 05:07 - 2016-02-07 05:37 - 00181640 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2016-02-07 05:07 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2016-02-07 05:03 - 2016-02-07 05:03 - 00000000 ____H C:\ProgramData\cm-lock
2016-02-07 04:39 - 2016-02-07 06:39 - 171245272 _____ (Kaspersky Lab) C:\Users\dasina\Downloads\kis16.0.0.614es-es.exe
2016-02-07 04:19 - 2016-02-07 04:21 - 00002456 _____ C:\RakhniDecryptor.1.15.1.0_07.02.2016_04.19.31_log.txt
2016-02-07 01:39 - 2016-02-07 12:09 - 00000000 ____D C:\FRST
2016-02-06 17:26 - 2016-02-06 17:30 - 00002032 _____ C:\Users\dasina\Desktop\Rkill.txt
2016-02-06 17:25 - 2016-02-06 18:22 - 00000828 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-02-06 17:25 - 2016-02-06 17:25 - 00002794 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-02-06 17:25 - 2016-02-06 17:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-02-06 17:25 - 2016-02-06 17:25 - 00000000 ____D C:\Program Files\CCleaner
2016-02-06 17:17 - 2016-02-07 11:28 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-02-06 17:16 - 2016-02-06 18:22 - 00001108 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-02-06 17:16 - 2016-02-06 17:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-02-06 17:16 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-02-06 17:16 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-02-06 17:16 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-02-06 15:51 - 2016-02-06 17:15 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Enigma Software Group
2016-02-06 15:51 - 2016-02-06 15:51 - 00000000 _____ C:\autoexec.bat
2016-02-06 15:50 - 2016-02-06 15:50 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys
2016-01-15 07:39 - 2016-01-15 07:39 - 03452054 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.BMP
2016-01-15 07:39 - 2016-01-15 07:39 - 00006764 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.HTM
2016-01-15 07:39 - 2016-01-15 07:39 - 00002339 _____ C:\Users\dasina\Desktop\Howto_Restore_FILES.TXT
2016-01-15 07:38 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Desktop\how_recover+sob.html
2016-01-15 07:38 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Desktop\how_recover+sob.txt
2016-01-14 21:19 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\how_recover+sob.html
2016-01-14 21:19 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Downloads\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Downloads\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Documents\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\Desktop\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Roaming\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\Local\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default\AppData\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Downloads\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Documents\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\Desktop\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Roaming\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\Local\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Default User\AppData\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00006764 _____ C:\Users\dasina\how_recover+sob.html
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Downloads\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Downloads\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Documents\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\Desktop\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Roaming\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\Local\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default\AppData\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Downloads\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Documents\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\Desktop\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Roaming\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\Local\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Default User\AppData\how_recover+sob.txt
2016-01-14 21:18 - 2016-01-15 07:39 - 00002339 _____ C:\Users\dasina\how_recover+sob.txt
2016-01-14 21:09 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Downloads\how_recover+sob.html
2016-01-14 21:09 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Downloads\how_recover+sob.txt
2016-01-14 21:08 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\Documents\how_recover+sob.html
2016-01-14 21:08 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\Documents\how_recover+sob.txt
2016-01-14 21:00 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Roaming\how_recover+sob.html
2016-01-14 21:00 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\how_recover+sob.html
2016-01-14 21:00 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Roaming\how_recover+sob.txt
2016-01-14 21:00 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\how_recover+sob.txt
2016-01-14 20:58 - 2016-01-15 07:38 - 00006764 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.html
2016-01-14 20:58 - 2016-01-15 07:38 - 00002339 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+sob.txt
2016-01-14 20:58 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html
2016-01-14 20:58 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt
2016-01-14 20:37 - 2016-01-15 07:36 - 00006764 _____ C:\Users\dasina\AppData\LocalLow\how_recover+sob.html
2016-01-14 20:37 - 2016-01-15 07:36 - 00002339 _____ C:\Users\dasina\AppData\LocalLow\how_recover+sob.txt
2016-01-14 20:10 - 2016-01-15 07:37 - 00006764 _____ C:\Users\dasina\AppData\Local\how_recover+sob.html
2016-01-14 20:10 - 2016-01-15 07:37 - 00002339 _____ C:\Users\dasina\AppData\Local\how_recover+sob.txt
2016-01-14 20:09 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Documents\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:39 - 00006764 _____ C:\Users\Public\Desktop\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Documents\how_recover+sob.txt
2016-01-14 20:09 - 2016-01-15 07:39 - 00002339 _____ C:\Users\Public\Desktop\how_recover+sob.txt
2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\Microsoft\Windows\Start Menu\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:30 - 00006764 _____ C:\ProgramData\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\how_recover+sob.txt
2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\Microsoft\Windows\Start Menu\how_recover+sob.txt
2016-01-14 20:09 - 2016-01-15 07:30 - 00002339 _____ C:\ProgramData\how_recover+sob.txt
2016-01-14 20:06 - 2016-01-14 20:07 - 00006764 _____ C:\Program Files\Common Files\how_recover+sob.html
2016-01-14 20:06 - 2016-01-14 20:07 - 00002339 _____ C:\Program Files\Common Files\how_recover+sob.txt
2016-01-14 19:30 - 2016-01-14 21:19 - 00006764 _____ C:\Users\how_recover+sob.html
2016-01-14 19:30 - 2016-01-14 21:19 - 00002339 _____ C:\Users\how_recover+sob.txt
2016-01-14 19:30 - 2016-01-14 20:09 - 00006764 _____ C:\Program Files\how_recover+sob.html
2016-01-14 19:30 - 2016-01-14 20:09 - 00002339 _____ C:\Program Files\how_recover+sob.txt
2016-01-14 19:29 - 2016-01-14 19:29 - 00000254 _____ C:\Users\dasina\Documents\recover_file_bsdsomynd.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-07 12:08 - 2015-06-23 00:57 - 00001006 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000UA.job
2016-02-07 11:54 - 2009-07-14 05:45 - 00027168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-02-07 11:54 - 2009-07-14 05:45 - 00027168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-02-07 11:52 - 2015-03-31 09:14 - 00000935 _____ C:\Users\dasina\AppData\Roaming\PMVczaNcoptbUlRnM9oJp
2016-02-07 11:52 - 2015-03-31 09:14 - 00000935 _____ C:\Users\dasina\AppData\Roaming\jjOjJlnt
2016-02-07 11:52 - 2015-03-31 09:14 - 00000349 _____ C:\Users\dasina\AppData\Roaming\pv9RWQgSvZ8mEE
2016-02-07 11:52 - 2015-03-31 09:14 - 00000349 _____ C:\Users\dasina\AppData\Roaming\5Sux0mu
2016-02-07 11:41 - 2015-07-10 17:07 - 00001100 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-07 09:56 - 2015-04-02 15:22 - 00000992 _____ C:\Windows\Tasks\jjOjJlnt.job
2016-02-07 05:37 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klpd.sys
2016-02-07 05:10 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-02-07 05:05 - 2013-01-30 00:20 - 00000000 ___RD C:\Users\dasina\Dropbox
2016-02-07 05:05 - 2013-01-30 00:16 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Dropbox
2016-02-07 05:02 - 2015-07-10 17:07 - 00001096 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-07 05:02 - 2012-10-20 17:37 - 00000202 _____ C:\Windows\Tasks\AutoKMS.job
2016-02-07 05:02 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-02-07 05:01 - 2014-02-01 13:08 - 00000000 ____D C:\Users\dasina\AppData\Roaming\AVAST Software
2016-02-07 05:01 - 2012-10-26 09:28 - 00000000 ____D C:\ProgramData\AVAST Software
2016-02-07 05:01 - 2012-10-26 09:28 - 00000000 ____D C:\Program Files\AVAST Software
2016-02-07 02:08 - 2015-06-23 00:57 - 00000954 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000Core.job
2016-02-06 18:23 - 2015-07-10 17:08 - 00002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
2016-02-06 18:23 - 2014-05-12 20:19 - 00002206 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-06 18:23 - 2013-03-03 11:20 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Network Stumbler.lnk
2016-02-06 18:23 - 2013-01-26 15:50 - 00001138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Inspector smart recovery.lnk
2016-02-06 18:23 - 2012-10-29 18:55 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-02-06 18:23 - 2012-10-25 15:30 - 00001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
2016-02-06 18:23 - 2012-10-25 15:29 - 00001207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk
2016-02-06 18:23 - 2012-10-25 15:29 - 00001169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk
2016-02-06 18:23 - 2012-10-25 15:29 - 00001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2016-02-06 18:23 - 2012-10-25 15:28 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2016-02-06 18:23 - 2012-10-25 15:28 - 00001353 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2016-02-06 18:23 - 2012-10-25 14:59 - 00001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk
2016-02-06 18:23 - 2012-10-22 13:21 - 00001061 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-02-06 18:23 - 2012-10-20 15:54 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-02-06 18:23 - 2012-10-20 15:44 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-02-06 18:22 - 2015-10-14 22:21 - 00001715 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-02-06 18:22 - 2015-10-14 22:13 - 00001847 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2016-02-06 18:22 - 2015-07-10 17:07 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-06 18:22 - 2015-04-18 02:25 - 00001062 _____ C:\Users\Public\Desktop\iFunbox.lnk
2016-02-06 18:22 - 2014-12-04 16:40 - 00002248 _____ C:\Users\Public\Desktop\Pinnacle Studio 17.lnk
2016-02-06 18:22 - 2014-11-20 16:13 - 00001956 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2016-02-06 18:22 - 2014-11-03 02:54 - 00002190 _____ C:\Users\Public\Desktop\Style Builder 2014.lnk
2016-02-06 18:22 - 2014-11-03 02:54 - 00002104 _____ C:\Users\Public\Desktop\LayOut 2014.lnk
2016-02-06 18:22 - 2014-11-03 02:54 - 00002019 _____ C:\Users\Public\Desktop\SketchUp 2014.lnk
2016-02-06 18:22 - 2014-04-04 09:08 - 00002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visor de Microsoft PowerPoint .lnk
2016-02-06 18:22 - 2014-03-07 12:32 - 00001177 _____ C:\Users\Public\Desktop\Wondershare PDF Editor.lnk
2016-02-06 18:22 - 2014-03-05 16:40 - 00001102 _____ C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk
2016-02-06 18:22 - 2014-03-03 18:29 - 00001212 _____ C:\Users\Public\Desktop\LG PC Suite.lnk
2016-02-06 18:22 - 2014-03-03 15:59 - 00001232 _____ C:\Users\Public\Desktop\Wondershare Photo Recovery.lnk
2016-02-06 18:22 - 2014-01-16 16:42 - 00001072 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-02-06 18:22 - 2014-01-12 02:11 - 00001229 _____ C:\Users\Public\Desktop\SELPHY Photo Print.lnk
2016-02-06 18:22 - 2014-01-08 01:28 - 00001226 _____ C:\Users\Public\Desktop\PolyBoard 5.10a.lnk
2016-02-06 18:22 - 2014-01-03 01:56 - 00000810 _____ C:\Users\Public\Desktop\InteriCAD Lite Trial.lnk
2016-02-06 18:22 - 2014-01-02 17:54 - 00001625 _____ C:\Users\Public\Desktop\Imodel.lnk
2016-02-06 18:22 - 2014-01-02 17:53 - 00000736 _____ C:\Users\Public\Desktop\InteriCAD T5.lnk
2016-02-06 18:22 - 2013-05-26 12:12 - 00001466 _____ C:\Users\Public\Desktop\Wondershare Video Converter Ultimate.lnk
2016-02-06 18:22 - 2013-01-29 17:54 - 00000992 _____ C:\Users\Public\Desktop\PPÖúÊÖ.lnk
2016-02-06 18:22 - 2013-01-26 15:50 - 00001132 _____ C:\Users\Public\Desktop\PC Inspector smart recovery.lnk
2016-02-06 18:22 - 2013-01-17 12:03 - 00002925 _____ C:\Users\Public\Desktop\Nero Burning ROM 10.lnk
2016-02-06 18:22 - 2012-10-29 18:55 - 00000080 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2016-02-06 18:22 - 2012-10-27 13:40 - 00000403 _____ C:\Users\Public\Desktop\HP USB Disk Storage Format Tool.lnk
2016-02-06 18:22 - 2012-10-25 23:25 - 00002194 _____ C:\Users\Public\Desktop\CyberLink PowerDVD 12.lnk
2016-02-06 18:22 - 2012-10-25 14:59 - 00001033 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk
2016-02-06 18:22 - 2012-10-22 13:21 - 00001055 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-02-06 18:22 - 2012-10-22 13:20 - 00001740 _____ C:\Users\Public\Desktop\Selección del Explorador.lnk
2016-02-06 18:22 - 2012-10-20 17:24 - 00001716 _____ C:\Users\Public\Desktop\F1U201.401.lnk
2016-02-06 18:22 - 2012-10-20 17:20 - 00000936 _____ C:\Users\Public\Desktop\EPSON Scan.lnk
2016-02-06 18:22 - 2012-10-20 15:44 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-02-06 18:22 - 2009-07-14 05:57 - 00001523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-02-06 18:22 - 2009-07-14 05:57 - 00001304 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2016-02-06 18:22 - 2009-07-14 05:57 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2016-02-06 18:22 - 2009-07-14 05:54 - 00001210 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2016-02-06 18:21 - 2015-07-09 01:14 - 00001937 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\BBS Tools.lnk
2016-02-06 18:21 - 2015-07-09 01:14 - 00001913 _____ C:\Users\dasina\Desktop\BBS Tools.lnk
2016-02-06 18:21 - 2015-03-26 00:13 - 00002271 _____ C:\Users\dasina\Desktop\cut.lnk
2016-02-06 18:21 - 2015-02-13 16:24 - 00000962 _____ C:\Users\dasina\Desktop\VirtualDJ 8.lnk
2016-02-06 18:21 - 2014-12-28 15:19 - 00000907 _____ C:\Users\dasina\Desktop\ARAR.lnk
2016-02-06 18:21 - 2014-12-28 14:59 - 00001168 _____ C:\Users\dasina\Desktop\Continuar con la instalación de 7Zip.lnk
2016-02-06 18:21 - 2014-11-20 21:36 - 00002204 _____ C:\Users\dasina\Desktop\chrome.lnk
2016-02-06 18:21 - 2014-05-08 11:55 - 00000923 _____ C:\Users\dasina\Desktop\Continue FLV Player.lnk
2016-02-06 18:21 - 2014-04-16 18:04 - 00002945 _____ C:\Users\dasina\Desktop\inSSIDer Office.lnk
2016-02-06 18:21 - 2014-01-15 22:59 - 00001188 _____ C:\Users\dasina\Desktop\MioMore Desktop 7.50.lnk
2016-02-06 18:21 - 2013-11-06 00:48 - 00000995 _____ C:\Users\dasina\Desktop\DVD Shrink 3.2.lnk
2016-02-06 18:21 - 2013-10-30 12:06 - 00000861 _____ C:\Users\dasina\Desktop\µTorrent.lnk
2016-02-06 18:21 - 2013-10-30 12:06 - 00000841 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-02-06 18:21 - 2013-03-03 11:34 - 00000975 _____ C:\Users\dasina\Desktop\Vistumbler.lnk
2016-02-06 18:21 - 2013-01-30 00:20 - 00001017 _____ C:\Users\dasina\Desktop\Dropbox.lnk
2016-02-06 18:21 - 2013-01-27 12:24 - 00001396 _____ C:\Users\dasina\Desktop\CopyTrans Control Center.lnk
2016-02-06 18:21 - 2012-12-24 02:06 - 00001006 _____ C:\Users\dasina\Desktop\WBFS Manager 3.0.lnk
2016-02-06 18:21 - 2012-10-31 19:06 - 00001240 _____ C:\Users\dasina\Desktop\ConvertXtoDVD 4.lnk
2016-02-06 18:21 - 2012-10-27 13:53 - 00000978 _____ C:\Users\dasina\Desktop\CopyToDVD.lnk
2016-02-06 18:21 - 2012-10-20 15:51 - 00001293 _____ C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-02-06 18:21 - 2011-04-12 10:10 - 00747736 _____ C:\Windows\system32\perfh00A.dat
2016-02-06 18:21 - 2011-04-12 10:10 - 00159208 _____ C:\Windows\system32\perfc00A.dat
2016-02-06 18:21 - 2009-07-14 06:13 - 01678290 _____ C:\Windows\system32\PerfStringBackup.INI
2016-02-06 18:21 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2016-02-06 18:21 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-02-06 18:13 - 2014-05-09 11:22 - 00000000 ____D C:\Windows\system32\log
2016-02-06 18:12 - 2014-07-02 10:34 - 00000000 ____D C:\AdwCleaner
2016-02-06 15:51 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina
2016-02-01 14:36 - 2015-07-10 17:07 - 00004096 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-02-01 14:36 - 2015-07-10 17:07 - 00003844 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-01-29 16:15 - 2012-12-23 13:45 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Temp
2016-01-21 04:37 - 2014-05-12 20:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-01-14 21:19 - 2011-04-12 10:20 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-01-14 21:18 - 2015-01-28 19:00 - 00000000 ____D C:\Users\Public\Documents\My Projects
2016-01-14 21:18 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\temp
2016-01-14 21:18 - 2014-12-04 16:36 - 00000000 ____D C:\Users\Public\Documents\Pinnacle
2016-01-14 21:18 - 2014-02-16 10:24 - 00000000 ____D C:\Users\Public\Documents\Elcomsoft
2016-01-14 21:18 - 2014-01-15 22:59 - 00000000 ____D C:\Users\Public\Downloads\Maps
2016-01-14 21:18 - 2014-01-08 01:28 - 00000000 ____D C:\Users\Public\Desktop\Ejemplos PolyBoard
2016-01-14 21:18 - 2012-10-25 23:25 - 00000000 ____D C:\Users\Public\Documents\CyberLink
2016-01-14 21:18 - 2012-10-25 23:25 - 00000000 ____D C:\Users\Public\CyberLink
2016-01-14 21:18 - 2012-10-25 14:59 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-01-14 21:18 - 2012-10-25 14:59 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-01-14 21:18 - 2011-04-12 10:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-01-14 21:18 - 2011-04-12 10:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-01-14 21:18 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries
2016-01-14 21:09 - 2015-12-24 10:26 - 00000464 _____ C:\Users\dasina\Downloads\Instrucciones_Composio_Usuario_IO.pdf.ttt
2016-01-14 21:09 - 2015-09-15 16:00 - 01743984 _____ C:\Users\dasina\Downloads\PROMO ONKYO JULIO.zip.ttt
2016-01-14 21:09 - 2015-09-15 15:57 - 00033552 _____ C:\Users\dasina\Downloads\FACTURA 33515.pdf.ttt
2016-01-14 21:09 - 2015-05-27 09:01 - 00206480 _____ C:\Users\dasina\Downloads\GONZALEZ AGUNDEZ JUAN A..pdf.ttt
2016-01-14 21:09 - 2015-05-11 10:36 - 00252288 _____ C:\Users\dasina\Downloads\Recargo_Equivalencia_2015_Exencion.doc.ttt
2016-01-14 21:09 - 2015-05-11 10:36 - 00000544 ____H C:\Users\dasina\Downloads\~$cargo_Equivalencia_2015_Exencion.doc.ttt
2016-01-14 21:09 - 2015-04-18 01:48 - 59018032 _____ C:\Users\dasina\Downloads\Sfrd422660xi.rar.ttt
2016-01-14 21:09 - 2015-03-26 00:12 - 00000000 ____D C:\Users\dasina\Downloads\Cut Optimizador de Cortes Melamina
2016-01-14 21:09 - 2015-03-26 00:11 - 03152688 _____ C:\Users\dasina\Downloads\Cut Optimizador de Cortes Melamina.rar.ttt
2016-01-14 21:09 - 2015-03-12 06:12 - 00056704 _____ C:\Users\dasina\Downloads\GUION PARA EL CIERRE DE LA CONSULTA DEL CLIENTE-GEMAJUNIO2014 (1).doc.ttt
2016-01-14 21:09 - 2015-03-12 06:11 - 00056704 _____ C:\Users\dasina\Downloads\GUION PARA EL CIERRE DE LA CONSULTA DEL CLIENTE-GEMAJUNIO2014.doc.ttt
2016-01-14 21:09 - 2015-02-22 20:15 - 01659776 _____ C:\Users\dasina\Downloads\PlanillanutricionExterna.ppt.ttt
2016-01-14 21:09 - 2014-06-26 17:42 - 00000000 ____D C:\Users\dasina\Downloads\_Fundas_ligeras_para_iPhone_44s
2016-01-14 21:09 - 2014-06-26 17:41 - 00484544 _____ C:\Users\dasina\Downloads\_Fundas_ligeras_para_iPhone_44s.zip.ttt
2016-01-14 21:09 - 2014-06-17 11:04 - 00000544 ____H C:\Users\dasina\Downloads\~$RTEL EAC.doc.ttt
2016-01-14 21:09 - 2014-06-13 09:16 - 00027520 _____ C:\Users\dasina\Downloads\GUION CLIENTE VIP1.doc.ttt
2016-01-14 21:09 - 2014-06-13 09:16 - 00000544 ____H C:\Users\dasina\Downloads\~$ION CLIENTE VIP1.doc.ttt
2016-01-14 21:09 - 2014-06-10 17:49 - 01298720 _____ C:\Users\dasina\Downloads\PROMOCIONNNNNN!!!!!!!!.zip.ttt
2016-01-14 21:09 - 2014-06-06 09:01 - 00392544 _____ C:\Users\dasina\Downloads\NORMAS ORGANIZACION ACTUALIZADAS 1.pdf.ttt
2016-01-14 21:09 - 2014-06-06 08:54 - 00021888 _____ C:\Users\dasina\Downloads\FIESTA_DE_INAGURACION invitacion.doc.ttt
2016-01-14 21:09 - 2014-06-06 08:49 - 00132992 _____ C:\Users\dasina\Downloads\DOSSIER informativo Maria.doc.ttt
2016-01-14 21:09 - 2014-06-06 08:47 - 05994880 _____ C:\Users\dasina\Downloads\Temario_EAC.ppt.ttt
2016-01-14 21:09 - 2014-06-06 08:40 - 00157568 _____ C:\Users\dasina\Downloads\MDO 2014- PON AQUI TU NOMBRE.xls.ttt
2016-01-14 21:09 - 2014-06-06 08:33 - 00032128 _____ C:\Users\dasina\Downloads\PLAN 90 DIAS.doc.ttt
2016-01-14 21:09 - 2014-06-06 08:33 - 00000544 ____H C:\Users\dasina\Downloads\~$AN 90 DIAS.doc.ttt
2016-01-14 21:09 - 2014-05-23 10:16 - 00033152 _____ C:\Users\dasina\Downloads\GUION  LLAMAR A REFERIDOS actualizado febrero 14.doc.ttt
2016-01-14 21:09 - 2014-05-23 10:16 - 00000544 ____H C:\Users\dasina\Downloads\~$ION  LLAMAR A REFERIDOS actualizado febrero 14.doc.ttt
2016-01-14 21:09 - 2014-05-23 10:06 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1) (2).pdf.ttt
2016-01-14 21:09 - 2014-05-23 10:04 - 00456064 _____ C:\Users\dasina\Downloads\GUIÓN PARA LAS LLAMADAS DE  CONFIRMARCIÓN DE CITAS.doc.ttt
2016-01-14 21:09 - 2014-05-23 10:02 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1) (1).pdf.ttt
2016-01-14 21:09 - 2014-05-23 10:01 - 00113760 _____ C:\Users\dasina\Downloads\guion invitar fiesta inauguración (1).pdf.ttt
2016-01-14 21:09 - 2014-05-21 17:34 - 00025472 _____ C:\Users\dasina\Downloads\INDICE CONTROLADORES.doc.ttt
2016-01-14 21:09 - 2014-05-21 17:34 - 00012368 _____ C:\Users\dasina\Downloads\LIBRO DE REFERENCIAS.xlsx.ttt
2016-01-14 21:09 - 2014-05-21 17:33 - 00061824 _____ C:\Users\dasina\Downloads\CONTROLADOR REGISTRO DE GASTOS.doc.ttt
2016-01-14 21:09 - 2014-05-21 17:32 - 00028032 _____ C:\Users\dasina\Downloads\CONTROLADOR STOCK con productos.xls.ttt
2016-01-14 21:09 - 2014-05-21 17:29 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 % (2).xlsx.ttt
2016-01-14 21:09 - 2014-05-21 17:29 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 % (1).xlsx.ttt
2016-01-14 21:09 - 2014-05-21 17:26 - 00013856 _____ C:\Users\dasina\Downloads\EJEMPLO PEDIDO 42 %.xlsx.ttt
2016-01-14 21:09 - 2014-05-19 11:25 - 00048000 _____ C:\Users\dasina\Downloads\INVITACIONES EAC NOELIA.doc.ttt
2016-01-14 21:09 - 2014-05-19 11:25 - 00000544 ____H C:\Users\dasina\Downloads\~$VITACIONES EAC NOELIA.doc.ttt
2016-01-14 21:09 - 2014-05-19 11:24 - 00023936 _____ C:\Users\dasina\Downloads\REGISTRO Nº INVITADOS EAC POR ID.xls.ttt
2016-01-14 21:09 - 2014-05-19 09:37 - 00038784 _____ C:\Users\dasina\Downloads\LISTADO INVITADOS.doc.ttt
2016-01-14 21:09 - 2014-05-19 09:37 - 00000544 ____H C:\Users\dasina\Downloads\~$STADO INVITADOS.doc.ttt
2016-01-14 21:09 - 2014-05-19 09:36 - 00382160 _____ C:\Users\dasina\Downloads\glyctabl.pdf.ttt
2016-01-14 21:09 - 2014-05-19 09:28 - 00025984 _____ C:\Users\dasina\Downloads\MODELO 1.doc.ttt
2016-01-14 21:09 - 2014-05-19 09:28 - 00000544 ____H C:\Users\dasina\Downloads\~$RTEL IMC PELUQUERÍAS.doc.ttt
2016-01-14 21:09 - 2014-05-19 09:27 - 00028544 _____ C:\Users\dasina\Downloads\GUION ACUERDOS DE COLABORACION (1).doc.ttt
2016-01-14 21:09 - 2014-05-19 09:27 - 00000544 ____H C:\Users\dasina\Downloads\~$ION ACUERDOS DE COLABORACION (1).doc.ttt
2016-01-14 21:09 - 2014-05-13 20:01 - 01266304 _____ C:\Users\dasina\Downloads\FSL Junio 2014 modificado (1).pdf.ttt
2016-01-14 21:09 - 2014-05-13 12:09 - 00153936 _____ C:\Users\dasina\Downloads\GONZALEZ AGUNDEZ Juan Antonio.pdf.ttt
2016-01-14 21:09 - 2014-05-13 09:55 - 00014160 _____ C:\Users\dasina\Downloads\Historial de pedidos.xls.ttt
2016-01-14 21:09 - 2014-04-20 18:58 - 00153008 _____ C:\Users\dasina\Downloads\GONZALEZ AGUANDEZ Juan Antonio.pdf.ttt
2016-01-14 21:09 - 2014-04-16 15:12 - 00051872 _____ C:\Users\dasina\Downloads\Statement (2).pdf.ttt
2016-01-14 21:09 - 2014-04-16 15:11 - 00151328 _____ C:\Users\dasina\Downloads\Statement (1).pdf.ttt
2016-01-14 21:09 - 2014-04-16 15:09 - 00054560 _____ C:\Users\dasina\Downloads\Statement.pdf.ttt
2016-01-14 21:09 - 2014-04-08 02:51 - 00113760 _____ C:\Users\dasina\Downloads\guion+invitar+fiesta+inauguración+(1).pdf.ttt
2016-01-14 21:09 - 2014-03-12 21:44 - 00456064 _____ C:\Users\dasina\Downloads\GUIÓN+PAR...doc.ttt
2016-01-14 21:09 - 2014-02-01 14:14 - 00333280 _____ C:\Users\dasina\Downloads\radares_robser_tomtom.zip.ttt
2016-01-14 21:09 - 2014-02-01 14:14 - 00000000 ____D C:\Users\dasina\Downloads\radares_robser_tomtom
2016-01-14 21:09 - 2014-01-23 08:55 - 00322432 _____ C:\Users\dasina\Downloads\LaBuenaSu...doc.ttt
2016-01-14 21:09 - 2014-01-03 00:06 - 213717040 _____ C:\Users\dasina\Downloads\InteriCAD Lite Trial Package.zip.ttt
2016-01-14 21:09 - 2013-05-26 12:22 - 00000000 ____D C:\Users\dasina\Downloads\Xilisoft.Video.Converter.Ultimate.7_Keygen.Inc.Patch-REPT
2016-01-14 21:09 - 2013-05-26 12:21 - 00328880 _____ C:\Users\dasina\Downloads\Xilisoft.Video.Converter.Ultimate.7_Keygen.Inc.Patch-REPT.rar.ttt
2016-01-14 21:09 - 2013-01-07 23:49 - 01043840 _____ C:\Users\dasina\Downloads\image.png.ttt
2016-01-14 21:09 - 2013-01-07 23:49 - 00818448 _____ C:\Users\dasina\Downloads\image (1).png.ttt
2016-01-14 21:09 - 2013-01-07 23:49 - 00742448 _____ C:\Users\dasina\Downloads\image (3).png.ttt
2016-01-14 21:09 - 2013-01-07 23:49 - 00624608 _____ C:\Users\dasina\Downloads\image (2).png.ttt
2016-01-14 21:09 - 2013-01-07 23:44 - 00878832 _____ C:\Users\dasina\Downloads\la foto (3).PNG.ttt
2016-01-14 21:09 - 2013-01-07 23:28 - 01088416 _____ C:\Users\dasina\Downloads\la foto (2).PNG.ttt
2016-01-14 21:09 - 2013-01-07 23:28 - 01047392 _____ C:\Users\dasina\Downloads\la foto (1).PNG.ttt
2016-01-14 21:09 - 2013-01-07 23:18 - 01075200 _____ C:\Users\dasina\Downloads\la foto.PNG.ttt
2016-01-14 21:09 - 2013-01-07 23:07 - 00965376 _____ C:\Users\dasina\Downloads\la foto.JPG.ttt
2016-01-14 21:09 - 2012-12-13 01:55 - 00051120 _____ C:\Users\dasina\Downloads\TECHLINK WiresCR 680209_blister_b.jpg.ttt
2016-01-14 21:09 - 2012-12-13 00:46 - 24528496 _____ C:\Users\dasina\Downloads\R4i V3.5 Spanish.zip.ttt
2016-01-14 21:09 - 2012-12-13 00:26 - 00000000 ____D C:\Users\dasina\Downloads\R4I RTSPRO V3.0.0.5
2016-01-14 21:09 - 2012-12-13 00:16 - 40295600 _____ C:\Users\dasina\Downloads\R4I RTSPRO V3.0.0.5.zip.ttt
2016-01-14 21:09 - 2012-12-03 12:07 - 00005088 _____ C:\Users\dasina\Downloads\lista.csv.ttt
2016-01-14 21:09 - 2012-12-03 11:05 - 00091968 _____ C:\Users\dasina\Downloads\DABOTEWBPD2W.pdf.ttt
2016-01-14 21:09 - 2012-12-03 10:55 - 00195552 _____ C:\Users\dasina\Downloads\Expediente minimo.pdf.ttt
2016-01-14 21:09 - 2012-11-19 11:29 - 00455024 _____ C:\Users\dasina\Downloads\DAVID DE LAS FUENTES RODRIGUEZ.pdf.ttt
2016-01-14 21:09 - 2012-11-03 15:41 - 24516864 _____ C:\Users\dasina\Downloads\R4i V3.4 Spanish.zip.ttt
2016-01-14 21:09 - 2012-10-29 23:49 - 00000000 ____D C:\Users\dasina\Downloads\photo-lane
2016-01-14 21:09 - 2012-10-29 23:48 - 42494464 _____ C:\Users\dasina\Downloads\photo-lane.rar.ttt
2016-01-14 21:09 - 2012-10-29 23:47 - 26287584 _____ C:\Users\dasina\Downloads\flying-photo.rar.ttt
2016-01-14 21:09 - 2012-10-25 23:48 - 00020352 _____ C:\Users\dasina\Downloads\TRABAJA DESDE CASA,INGRESOS EXTRAS.doc.ttt
2016-01-14 21:09 - 2012-10-25 23:48 - 00020352 _____ C:\Users\dasina\Downloads\QUIERES CONTROLAR TU PESO Y.doc.ttt
2016-01-14 21:09 - 2012-10-25 23:47 - 00020352 _____ C:\Users\dasina\Downloads\QUIERES CONTROLAR TU PESO Y SENTIRTE MEJOR DE VERDAD.doc.ttt
2016-01-14 21:09 - 2012-10-25 16:30 - 00000000 ____D C:\Users\dasina\Downloads\Kaspersky.Internet.Security.v13.0.1.4190.ES.Final.Incl.Serial
2016-01-14 21:09 - 2012-10-25 15:47 - 00000496 _____ C:\Users\dasina\Downloads\Kaspersky L 90 dias.txt.ttt
2016-01-14 21:09 - 2012-10-25 15:44 - 00000000 ____D C:\Users\dasina\Downloads\Kaspersky.World.v1.3.6.22
2016-01-14 21:09 - 2012-10-25 11:13 - 00000000 ____D C:\Users\dasina\Downloads\DVDArchitectStudio5.0.157
2016-01-14 21:09 - 2012-10-25 10:22 - 00000000 ____D C:\Users\dasina\Downloads\Xbox.Backup.Creator.v2.9.0.350
2016-01-14 21:09 - 2012-10-25 10:21 - 00620768 _____ C:\Users\dasina\Downloads\Xbox.Backup.Creator.v2.9.0.350.zip.ttt
2016-01-14 21:09 - 2012-10-23 23:26 - 00000000 ____D C:\Users\dasina\Downloads\R4i-3DS V1.63b Spanish
2016-01-14 21:09 - 2012-10-23 23:20 - 31180768 _____ C:\Users\dasina\Downloads\R4i-3DS V1.63b Spanish.zip.ttt
2016-01-14 21:08 - 2015-12-03 02:48 - 00000544 ____H C:\Users\dasina\Documents\~$00944470) 230 dasina200@hotmail (instalado).docx.ttt
2016-01-14 21:08 - 2015-08-24 18:12 - 00000464 _____ C:\Users\dasina\Documents\Telis_6_Chronis_Programacion.pdf.ttt
2016-01-14 21:08 - 2015-02-13 16:24 - 00000000 ____D C:\Users\dasina\Documents\VirtualDJ
2016-01-14 21:08 - 2015-02-09 12:33 - 00000544 ____H C:\Users\dasina\Documents\~$lendario 2015.doc.ttt
2016-01-14 21:08 - 2014-12-02 20:22 - 69764864 _____ C:\Users\dasina\Documents\silvia 2.mp4.ttt
2016-01-14 21:08 - 2014-12-02 20:10 - 65961264 _____ C:\Users\dasina\Documents\Silvia.mp4.mp4.ttt
2016-01-14 21:08 - 2014-09-17 12:47 - 00000000 ____D C:\Users\dasina\Documents\Vida Laboral
2016-01-14 21:08 - 2014-08-12 01:22 - 00000544 ____H C:\Users\dasina\Documents\~$alet independiente en la urbanización aldeamayor golf.docx.ttt
2016-01-14 21:08 - 2014-05-21 17:32 - 00020352 _____ C:\Users\dasina\Downloads\CONTROLADOR PRODUCTO VENDIDO completo y nuevo.xls.ttt
2016-01-14 21:08 - 2014-05-21 17:31 - 00042880 _____ C:\Users\dasina\Downloads\CONTROLADOR CIRCULACIÓN DEL DINERO con ejemplos.xls.ttt
2016-01-14 21:08 - 2014-05-21 17:31 - 00021376 _____ C:\Users\dasina\Downloads\CONTROLADOR GRUPO DE ENFOQUE AGOSTO 2013.xls.ttt
2016-01-14 21:08 - 2014-05-19 11:24 - 00178560 _____ C:\Users\dasina\Downloads\BONO REGALO FIESTA CLIENTES.pdf.ttt
2016-01-14 21:08 - 2014-05-19 11:24 - 00033664 _____ C:\Users\dasina\Downloads\CARTEL EAC.doc.ttt
2016-01-14 21:08 - 2014-05-19 09:35 - 01292160 _____ C:\Users\dasina\Downloads\CARTEL TIRAS HBL.doc.ttt
2016-01-14 21:08 - 2014-05-19 09:31 - 02584960 _____ C:\Users\dasina\Downloads\CARTEL NOURIFUSION 1[1].doc.ttt
2016-01-14 21:08 - 2014-05-19 09:28 - 00173952 _____ C:\Users\dasina\Downloads\CARTEL IMC PELUQUERÍAS.doc.ttt
2016-01-14 21:08 - 2014-04-07 15:59 - 00155168 _____ C:\Users\dasina\Downloads\ABC EN COLUMNAS DIC 13.pdf.ttt
2016-01-14 21:08 - 2014-03-16 17:56 - 00000544 ____H C:\Users\dasina\Documents\~$SSIER informativo gema.doc.ttt
2016-01-14 21:08 - 2014-03-07 12:34 - 00000000 ____D C:\Users\dasina\Documents\Wondershare PDF Editor
2016-01-14 21:08 - 2014-02-01 13:26 - 00000000 ____D C:\Users\dasina\Documents\TomTom
2016-01-14 21:08 - 2014-01-04 03:05 - 00000000 ____D C:\Users\dasina\Documents\Virutex Albañil
2016-01-14 21:08 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\Documents\Wondershare Video Converter Ultimate
2016-01-14 21:08 - 2013-03-13 17:32 - 00000000 ____D C:\Users\dasina\Downloads\Chana
2016-01-14 21:08 - 2013-03-03 11:34 - 00000000 ____D C:\Users\dasina\Documents\Vistumbler
2016-01-14 21:08 - 2013-01-29 16:57 - 05387776 _____ C:\Users\dasina\Downloads\absinthe-win-2.0.4.zip.ttt
2016-01-14 21:08 - 2012-12-24 02:06 - 00000000 ____D C:\Users\dasina\Documents\WBFS Manager Covers
2016-01-14 21:08 - 2012-12-13 02:32 - 00000000 ____D C:\Users\dasina\Downloads\cima_images
2016-01-14 21:08 - 2012-12-13 02:31 - 12647680 _____ C:\Users\dasina\Downloads\cima_images.zip.ttt
2016-01-14 21:08 - 2012-11-19 11:29 - 00028048 _____ C:\Users\dasina\Downloads\0658HHJ.pdf.ttt
2016-01-14 21:08 - 2012-11-15 01:10 - 00013504 _____ C:\Users\dasina\Documents\Silvia Diez Jañez solicita los días de descanso.docx.ttt
2016-01-14 21:08 - 2012-10-25 23:48 - 00026496 _____ C:\Users\dasina\Downloads\CARTEL GABRIEL.doc.ttt
2016-01-14 21:08 - 2012-10-25 23:47 - 03357056 _____ C:\Users\dasina\Downloads\cartel de tiras clientes.doc.ttt
2016-01-14 21:08 - 2012-10-25 23:47 - 03357056 _____ C:\Users\dasina\Downloads\cartel de tiras clientes (1).doc.ttt
2016-01-14 21:08 - 2012-10-25 23:47 - 01673600 _____ C:\Users\dasina\Downloads\cartel tiras de negocio.doc.ttt
2016-01-14 21:07 - 2015-12-15 16:39 - 00027632 _____ C:\Users\dasina\Documents\RolloTron.txt.ttt
2016-01-14 21:07 - 2015-12-15 16:38 - 02102720 _____ C:\Users\dasina\Documents\RolloTron.pdf.ttt
2016-01-14 21:07 - 2015-04-24 14:51 - 00000000 ____D C:\Users\dasina\Documents\Renta 2014
2016-01-14 21:07 - 2015-03-26 00:13 - 00000000 ____D C:\Users\dasina\Documents\Optimal Programs
2016-01-14 21:07 - 2015-02-11 14:33 - 00000000 ____D C:\Users\dasina\Documents\Native Instruments
2016-01-14 21:07 - 2015-01-28 19:04 - 00000000 ____D C:\Users\dasina\Documents\Pinnacle Studio
2016-01-14 21:07 - 2015-01-20 22:03 - 00000000 ____D C:\Users\dasina\Documents\My Data Files
2016-01-14 21:07 - 2015-01-06 13:25 - 39849728 _____ C:\Users\dasina\Documents\pequeñopimpinela.mp4.ttt
2016-01-14 21:07 - 2015-01-06 13:18 - 59056240 _____ C:\Users\dasina\Documents\Pimpinela-Juan y David.mp4.ttt
2016-01-14 21:07 - 2014-04-16 12:18 - 00000000 ____D C:\Users\dasina\Documents\Renta 2013
2016-01-14 21:07 - 2014-03-05 16:43 - 00002096 _____ C:\Users\dasina\Documents\Nueva base de datos.odb.ttt
2016-01-14 21:07 - 2012-12-29 12:25 - 00000000 ____D C:\Users\dasina\Documents\Mis equipos hiffi
2016-01-14 21:07 - 2012-12-13 02:34 - 00017632 _____ C:\Users\dasina\Documents\presupuesto.docx.ttt
2016-01-14 21:07 - 2012-12-13 01:22 - 00000000 ____D C:\Users\dasina\Documents\Nero
2016-01-14 21:07 - 2012-11-14 12:25 - 00702064 _____ C:\Users\dasina\Documents\Plantilla Buzon Industrias.psd.ttt
2016-01-14 21:07 - 2012-10-27 13:53 - 00000000 ____D C:\Users\dasina\Documents\PcSetup
2016-01-14 21:06 - 2015-12-31 12:58 - 00000000 ____D C:\Users\dasina\Documents\ConvertXToDVD
2016-01-14 21:06 - 2015-12-24 10:25 - 00000464 _____ C:\Users\dasina\Documents\Instrucciones_Composio_Usuario_IO.pdf.ttt
2016-01-14 21:06 - 2015-06-17 00:04 - 00000000 ____D C:\Users\dasina\Documents\David
2016-01-14 21:06 - 2015-04-02 18:06 - 00000000 ____D C:\Users\dasina\Documents\Ikea
2016-01-14 21:06 - 2015-03-05 09:19 - 00105504 _____ C:\Users\dasina\Documents\Invitaciones.docx.ttt
2016-01-14 21:06 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\Documents\InstantCDDVD
2016-01-14 21:06 - 2014-12-01 16:45 - 00024400 _____ C:\Users\dasina\Documents\HOLA.docx.ttt
2016-01-14 21:06 - 2014-11-21 14:45 - 01552928 _____ C:\Users\dasina\Documents\Diplomas Universidad3.jpg.ttt
2016-01-14 21:06 - 2014-11-21 11:40 - 21969456 _____ C:\Users\dasina\Documents\Diplomas Universidad2.jpg.ttt
2016-01-14 21:06 - 2014-11-10 11:27 - 00383632 _____ C:\Users\dasina\Documents\Litera3.jpg.ttt
2016-01-14 21:06 - 2014-11-10 11:22 - 00482960 _____ C:\Users\dasina\Documents\Litera2.jpg.ttt
2016-01-14 21:06 - 2014-11-10 11:05 - 00427168 _____ C:\Users\dasina\Documents\Litera.jpg.ttt
2016-01-14 21:06 - 2014-10-25 07:50 - 00702112 _____ C:\Users\dasina\Documents\Corriculum rosa.docx.ttt
2016-01-14 21:06 - 2014-05-25 10:21 - 04232416 _____ C:\Users\dasina\Documents\elcomediante_2014.pdf.ttt
2016-01-14 21:06 - 2014-05-06 09:35 - 00089968 _____ C:\Users\dasina\Documents\Herbalife comprende que los deportistas deben sentir confianza en lo que consumen para sus cuerpos.docx.ttt
2016-01-14 21:06 - 2014-05-06 09:29 - 00071776 _____ C:\Users\dasina\Documents\Las investigaciones llevadas a cabo durante el desarrollo de Herbalife24 están basadas en los últimos avances científicos y formuladas de manos de nuestros científicos en Herbalife.docx.ttt
2016-01-14 21:06 - 2014-04-23 19:12 - 00000000 ____D C:\Users\dasina\Documents\Ibook
2016-01-14 21:06 - 2014-03-16 17:56 - 00066432 _____ C:\Users\dasina\Documents\DOSSIER informativo gema.doc.ttt
2016-01-14 21:06 - 2014-01-02 18:02 - 00000000 ____D C:\Users\dasina\Documents\HunSpell
2016-01-14 21:06 - 2013-01-29 17:54 - 00000000 ____D C:\Users\dasina\Documents\ihelper
2016-01-14 21:06 - 2013-01-26 16:28 - 15729024 _____ C:\Users\dasina\Documents\CONVAR74.jpg.ttt
2016-01-14 21:06 - 2013-01-26 16:28 - 15729024 _____ C:\Users\dasina\Documents\CONVAR73.jpg.ttt
2016-01-14 21:06 - 2013-01-26 16:27 - 15729024 _____ C:\Users\dasina\Documents\CONVAR72.jpg.ttt
2016-01-14 21:06 - 2013-01-07 22:54 - 00000000 ____D C:\Users\dasina\Documents\Colegio Valeria
2016-01-14 21:06 - 2012-11-18 12:49 - 00000000 ____D C:\Users\dasina\Documents\Cubre
2016-01-14 21:06 - 2012-11-16 17:54 - 02750576 _____ C:\Users\dasina\Documents\Cubre.psd.ttt
2016-01-14 21:06 - 2012-10-30 22:33 - 32694144 _____ C:\Users\dasina\Documents\Cinta 3 - Clip 002.avi.ttt
2016-01-14 21:06 - 2012-10-30 22:05 - 62813568 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 023.avi.ttt
2016-01-14 21:06 - 2012-10-30 22:05 - 62364544 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 022.avi.ttt
2016-01-14 21:06 - 2012-10-26 10:35 - 00000000 ____D C:\Users\dasina\Documents\DVD Architect Studio 5.0 proyectos
2016-01-14 21:06 - 2012-10-26 00:02 - 00000000 ____D C:\Users\dasina\Documents\CyberLink
2016-01-14 21:06 - 2012-10-25 23:48 - 00000000 ____D C:\Users\dasina\Documents\Herbalife
2016-01-14 21:05 - 2012-10-30 22:05 - 35138432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 021.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:04 - 193410432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 020.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:03 - 53987200 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 019.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:03 - 24067968 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 018.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:03 - 156759424 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 017.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:02 - 98866048 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 015.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:02 - 103054720 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 016.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:01 - 277183872 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 014.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:00 - 46806912 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 013.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:00 - 40822656 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 012.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:00 - 34689408 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 010.avi.ttt
2016-01-14 21:05 - 2012-10-30 22:00 - 26312064 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 011.avi.ttt
2016-01-14 21:05 - 2012-10-30 21:59 - 266562432 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 009.avi.ttt
2016-01-14 21:05 - 2012-10-30 21:56 - 52341632 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 007.avi.ttt
2016-01-14 21:05 - 2012-10-30 21:56 - 14793088 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 006.avi.ttt
2016-01-14 21:05 - 2012-10-30 21:54 - 224526208 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 004.avi.ttt
2016-01-14 21:04 - 2015-12-01 10:51 - 02665024 _____ C:\Users\dasina\Documents\catalogo caja españa.pdf.ttt
2016-01-14 21:04 - 2015-03-05 09:24 - 00220544 _____ C:\Users\dasina\Documents\CARTEL CHARLA.doc.ttt
2016-01-14 21:04 - 2015-03-05 09:16 - 00000000 ____D C:\Users\dasina\Documents\Charlas invitaciones
2016-01-14 21:04 - 2015-02-09 12:33 - 00105856 _____ C:\Users\dasina\Documents\Calendario 2015.doc.ttt
2016-01-14 21:04 - 2014-11-10 17:05 - 00292464 _____ C:\Users\dasina\Documents\Armario.jpg.ttt
2016-01-14 21:04 - 2014-08-12 01:22 - 19349744 _____ C:\Users\dasina\Documents\Chalet independiente en la urbanización aldeamayor golf.docx.ttt
2016-01-14 21:04 - 2013-01-28 17:43 - 00093056 _____ C:\Users\dasina\Documents\bases_revolving_2013.pdf.ttt
2016-01-14 21:04 - 2012-10-30 21:53 - 161696128 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 003.avi.ttt
2016-01-14 21:04 - 2012-10-30 21:52 - 46208384 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 001.avi.ttt
2016-01-14 21:04 - 2012-10-30 21:52 - 189969792 _____ C:\Users\dasina\Documents\Cinta 2 - Clip 002.avi.ttt
2016-01-14 21:04 - 2012-10-25 15:10 - 00000000 ____D C:\Users\dasina\Documents\Adobe Photoshop CS6
2016-01-14 21:02 - 2015-12-03 02:48 - 00178016 _____ C:\Users\dasina\Documents\(700944470) 230 dasina200@hotmail (instalado).docx.ttt
2016-01-14 21:02 - 2015-07-10 12:05 - 00000000 ____D C:\Users\dasina\Desktop\Picho rojo
2016-01-14 21:02 - 2015-04-15 00:18 - 00000000 ____D C:\Users\dasina\Desktop\Vienna Acoustics Berg Aluminio
2016-01-14 21:02 - 2014-12-04 16:20 - 00000000 ____D C:\Users\dasina\Desktop\PinnacleStudioSetup
2016-01-14 21:02 - 2014-08-24 13:48 - 00000000 ____D C:\Users\dasina\Desktop\Picho Musica
2016-01-14 21:02 - 2014-08-15 11:00 - 00000000 ____D C:\Users\dasina\Documents\Adobe
2016-01-14 21:02 - 2014-02-16 10:22 - 00000000 ____D C:\Users\dasina\Documents\40025-672645-advanced-office-password-recovery.msi
2016-01-14 21:02 - 2014-01-15 23:11 - 00000000 ____D C:\Users\dasina\Documents\00022AC1FC9201581000000000356AA5
2016-01-14 21:02 - 2013-12-07 10:39 - 00054144 _____ C:\Users\dasina\Desktop\Reunion 1 - Tabla de proteinas.xls.ttt
2016-01-14 21:02 - 2013-10-10 20:31 - 00000000 ____D C:\Users\dasina\Desktop\PPF-O-Matic v3
2016-01-14 21:02 - 2013-03-13 20:04 - 00000000 ____D C:\Users\dasina\Desktop\Promo Only Tropical Latin March (2010).www.lokotorrents.com
2016-01-14 21:02 - 2013-01-07 22:46 - 00148384 _____ C:\Users\dasina\Documents\1748217.pdf.ttt
2016-01-14 21:01 - 2014-04-16 15:54 - 00000576 _____ C:\Users\dasina\Desktop\Nuevo documento de texto (3).txt.ttt
2016-01-14 21:01 - 2014-04-05 00:45 - 00000000 ____D C:\Users\dasina\Desktop\Nueva carpeta (3)
2016-01-14 21:01 - 2014-03-05 16:41 - 00000000 ____D C:\Users\dasina\Desktop\PDF
2016-01-14 21:01 - 2013-11-08 16:03 - 00000432 _____ C:\Users\dasina\Desktop\Nuevo documento de texto (2).txt.ttt
2016-01-14 21:00 - 2015-06-30 17:30 - 00000000 ____D C:\Users\dasina\Desktop\Fotos
2016-01-14 21:00 - 2015-06-23 08:24 - 19093888 _____ C:\Users\dasina\Desktop\Charla Silvia modificada.ppt.ttt
2016-01-14 21:00 - 2014-05-03 01:20 - 00000000 ____D C:\Users\dasina\Desktop\Musica
2016-01-14 21:00 - 2014-03-07 12:32 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Wondershare
2016-01-14 21:00 - 2014-01-16 16:43 - 00000000 ____D C:\Users\dasina\AppData\Roaming\vlc
2016-01-14 21:00 - 2014-01-03 01:55 - 00000000 ____D C:\Users\dasina\Desktop\InteriCAD Lite Trial Package
2016-01-14 21:00 - 2014-01-02 18:02 - 00000000 ____D C:\Users\dasina\AppData\Roaming\YFSoftware
2016-01-14 21:00 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2016-01-14 21:00 - 2013-01-29 16:58 - 00000000 ____D C:\Users\dasina\Desktop\absinthe-win-2.0.4
2016-01-14 21:00 - 2013-01-27 12:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WindSolutions
2016-01-14 21:00 - 2012-12-24 03:35 - 00000000 ____D C:\Users\dasina\Desktop\Nueva carpeta (2)
2016-01-14 21:00 - 2012-12-03 10:53 - 00000000 ____D C:\Users\dasina\Desktop\Maquina Bordar
2016-01-14 21:00 - 2012-10-31 18:56 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WTablet
2016-01-14 21:00 - 2012-10-27 13:53 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Vso
2016-01-14 21:00 - 2012-10-24 00:27 - 00000000 ____D C:\Users\dasina\AppData\Roaming\WinRAR
2016-01-14 20:59 - 2015-06-28 13:58 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Teiron
2016-01-14 20:59 - 2014-02-01 13:26 - 00000000 ____D C:\Users\dasina\AppData\Roaming\TomTom
2016-01-14 20:59 - 2012-12-23 13:44 - 00000000 ____D C:\Users\dasina\AppData\Roaming\uTorrent
2016-01-14 20:59 - 2012-10-25 11:26 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Sony Creative Software Inc
2016-01-14 20:59 - 2012-10-20 17:39 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Sony
2016-01-14 20:58 - 2015-12-11 04:11 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-01-14 20:58 - 2015-07-09 01:14 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BBS Tools
2016-01-14 20:58 - 2015-03-26 00:12 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cutting Optimization pro
2016-01-14 20:58 - 2015-02-13 16:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2016-01-14 20:58 - 2015-01-20 16:15 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v5
2016-01-14 20:58 - 2014-12-28 15:19 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair
2016-01-14 20:58 - 2014-11-03 02:57 - 00000000 ____D C:\Users\dasina\AppData\Roaming\SketchUp
2016-01-14 20:58 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek
2016-01-14 20:58 - 2014-03-05 16:42 - 00000000 ____D C:\Users\dasina\AppData\Roaming\OpenOffice.org
2016-01-14 20:58 - 2014-01-15 22:59 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio
2016-01-14 20:58 - 2013-03-03 11:34 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vistumbler
2016-01-14 20:58 - 2013-01-27 12:24 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Suite
2016-01-14 20:58 - 2013-01-17 12:04 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Nero
2016-01-14 20:58 - 2012-12-24 02:06 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WBFS Manager
2016-01-14 20:58 - 2012-11-26 01:36 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Mozilla
2016-01-14 20:58 - 2012-10-24 00:27 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-14 20:58 - 2012-10-20 17:46 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Publish Providers
2016-01-14 20:52 - 2015-04-18 02:25 - 00000000 ____D C:\Users\dasina\AppData\Roaming\iFunbox_UserCache
2016-01-14 20:52 - 2014-12-04 20:59 - 00000992 _____ C:\Users\dasina\AppData\Roaming\DASINA-PC.MTBF.txt.ttt
2016-01-14 20:52 - 2014-11-20 16:09 - 00000000 ____D C:\Users\dasina\AppData\Roaming\DAEMON Tools Lite
2016-01-14 20:52 - 2014-03-03 18:30 - 00000000 ____D C:\Users\dasina\AppData\Roaming\LG Electronics
2016-01-14 20:52 - 2014-01-12 04:07 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Canon
2016-01-14 20:52 - 2014-01-08 01:28 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Boole & Partners
2016-01-14 20:52 - 2013-01-29 17:54 - 00000000 ____D C:\Users\dasina\AppData\Roaming\ihelper
2016-01-14 20:52 - 2012-11-18 12:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\EPSON
2016-01-14 20:52 - 2012-11-03 16:13 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Apple Computer
2016-01-14 20:52 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Roaming\CyberLink
2016-01-14 20:52 - 2012-10-25 14:59 - 00000000 ____D C:\Users\dasina\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2016-01-14 20:52 - 2012-10-23 23:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Macromedia
2016-01-14 20:52 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Media Center Programs
2016-01-14 20:51 - 2015-06-28 13:57 - 00000000 ____D C:\Users\dasina\AppData\Roaming\ahelper
2016-01-14 20:51 - 2012-10-23 23:20 - 00000000 ____D C:\Users\dasina\AppData\Roaming\Adobe
2016-01-14 20:37 - 2015-07-10 17:08 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Google
2016-01-14 20:37 - 2014-11-13 03:31 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieBrowserModeList
2016-01-14 20:37 - 2014-05-01 02:21 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieUserList
2016-01-14 20:37 - 2014-05-01 02:21 - 00000000 __SHD C:\Users\dasina\AppData\LocalLow\EmieSiteList
2016-01-14 20:37 - 2014-02-01 13:13 - 00000000 ____D C:\Users\dasina\AppData\Local\TomTom
2016-01-14 20:37 - 2013-05-26 12:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Wondershare
2016-01-14 20:37 - 2012-12-24 02:07 - 00000000 ____D C:\Users\dasina\AppData\Local\WBFSManager
2016-01-14 20:37 - 2012-11-03 16:10 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Apple Computer
2016-01-14 20:37 - 2012-11-03 15:09 - 00000000 ____D C:\Users\dasina\AppData\LocalLow\Adobe
2016-01-14 20:37 - 2012-10-25 10:35 - 00000000 ____D C:\Users\dasina\AppData\Roaming\abgx360
2016-01-14 20:37 - 2012-10-20 15:50 - 00000000 ____D C:\Users\dasina\AppData\Local\VirtualStore
2016-01-14 20:36 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\AppData\Local\Pinnacle_Studio_17
2016-01-14 20:36 - 2014-12-04 20:59 - 00000000 ____D C:\Users\dasina\AppData\Local\Pinnacle
2016-01-14 20:36 - 2014-04-16 18:04 - 00000000 __SHD C:\Users\dasina\AppData\Local\ms-drivers
2016-01-14 20:36 - 2012-11-26 01:36 - 00000000 ____D C:\Users\dasina\AppData\Local\Mozilla
2016-01-14 20:36 - 2012-10-20 17:39 - 00000000 ____D C:\Users\dasina\AppData\Local\Sony
2016-01-14 20:35 - 2014-01-15 23:37 - 00000000 ____D C:\Users\dasina\AppData\Local\MiTAC_International_Corpo
2016-01-14 20:35 - 2012-10-20 17:26 - 00000000 ____D C:\Users\dasina\AppData\Local\Microsoft Help
2016-01-14 20:11 - 2015-06-05 02:19 - 00000000 ____D C:\Users\dasina\AppData\Local\GWX
2016-01-14 20:11 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Local\MetaGeek,_LLC
2016-01-14 20:11 - 2014-04-16 18:04 - 00000000 ____D C:\Users\dasina\AppData\Local\IsolatedStorage
2016-01-14 20:11 - 2014-03-03 18:29 - 00000000 ____D C:\Users\dasina\AppData\Local\LG Electronics
2016-01-14 20:11 - 2014-02-02 23:57 - 00000000 ____D C:\Users\dasina\AppData\Local\Macromedia
2016-01-14 20:11 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Google
2016-01-14 20:11 - 2013-01-29 16:58 - 00000000 ____D C:\Users\dasina\AppData\Local\libimobiledevice
2016-01-14 20:11 - 2012-10-26 00:02 - 00000000 ____D C:\Users\dasina\AppData\Local\MediaShow
2016-01-14 20:11 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Local\MediaServer
2016-01-14 20:10 - 2015-07-08 13:22 - 00000000 ____D C:\ProgramData\{3b336e47-4deb-20b6-3b33-36e474deb91d}
2016-01-14 20:10 - 2015-07-08 13:19 - 00000000 ____D C:\ProgramData\TomTom
2016-01-14 20:10 - 2015-06-23 00:57 - 00000000 ____D C:\Users\dasina\AppData\Local\Dropbox
2016-01-14 20:10 - 2015-04-18 01:35 - 00000000 ____D C:\ProgramData\{c76c66d7-9c24-717c-c76c-c66d79c29b5e}
2016-01-14 20:10 - 2015-01-28 18:59 - 00000000 ____D C:\ProgramData\Studio 14
2016-01-14 20:10 - 2014-12-28 14:59 - 00000000 ____D C:\Users\dasina\AppData\Local\GGEmpire
2016-01-14 20:10 - 2014-11-13 03:32 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieBrowserModeList
2016-01-14 20:10 - 2014-11-03 02:53 - 00000000 ____D C:\ProgramData\SketchUp
2016-01-14 20:10 - 2014-07-04 09:07 - 00000000 ____D C:\Users\dasina\AppData\Local\Adobe
2016-01-14 20:10 - 2014-05-01 02:22 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieUserList
2016-01-14 20:10 - 2014-05-01 02:22 - 00000000 __SHD C:\Users\dasina\AppData\Local\EmieSiteList
2016-01-14 20:10 - 2014-01-04 18:02 - 00000000 ____D C:\Users\dasina\AppData\Local\bcfd
2016-01-14 20:10 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\AppData\Local\cache
2016-01-14 20:10 - 2014-01-02 18:13 - 00000000 ____D C:\Users\dasina\.android
2016-01-14 20:10 - 2013-10-30 12:27 - 00000000 ____D C:\Users\dasina\AppData\Local\ElevatedDiagnostics
2016-01-14 20:10 - 2013-05-26 12:14 - 00000000 ____D C:\ProgramData\xml_param
2016-01-14 20:10 - 2013-05-26 12:12 - 00000000 ____D C:\ProgramData\Wondershare Video Converter Ultimate
2016-01-14 20:10 - 2013-05-25 16:14 - 00000000 ____D C:\Users\dasina\AppData\Local\Downloaded Installations
2016-01-14 20:10 - 2013-01-27 12:24 - 00000000 ____D C:\ProgramData\WindSolutions
2016-01-14 20:10 - 2012-11-03 16:13 - 00000000 ____D C:\Users\dasina\AppData\Local\Apple Computer
2016-01-14 20:10 - 2012-10-27 13:55 - 00000000 ____D C:\ProgramData\Vso
2016-01-14 20:10 - 2012-10-25 23:25 - 00000000 ____D C:\Users\dasina\AppData\Local\CyberLink
2016-01-14 20:10 - 2012-10-25 23:23 - 00000000 ____D C:\ProgramData\Temp
2016-01-14 20:10 - 2012-10-20 17:39 - 00000000 ____D C:\ProgramData\Sony
2016-01-14 20:10 - 2012-10-20 15:54 - 00000000 ____D C:\Users\dasina\AppData\Local\Apple
2016-01-14 20:09 - 2015-10-14 22:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-01-14 20:09 - 2015-10-14 22:20 - 00000000 ____D C:\Program Files\iTunes
2016-01-14 20:09 - 2015-10-14 22:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2016-01-14 20:09 - 2015-07-08 13:23 - 00000000 ____D C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn
2016-01-14 20:09 - 2015-06-28 13:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PP助手2.0
2016-01-14 20:09 - 2015-06-28 13:45 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2016-01-14 20:09 - 2015-06-23 00:57 - 00000000 ____D C:\ProgramData\Dropbox
2016-01-14 20:09 - 2015-04-18 02:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam
2016-01-14 20:09 - 2015-03-26 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cutting Optimization pro
2016-01-14 20:09 - 2015-02-11 23:44 - 00000000 ____D C:\Program Files\Native Instruments
2016-01-14 20:09 - 2015-02-11 23:12 - 00000000 ____D C:\ProgramData\Package Cache
2016-01-14 20:09 - 2015-02-11 14:33 - 00000000 ____D C:\ProgramData\Native Instruments
2016-01-14 20:09 - 2015-01-28 19:01 - 00000000 ____D C:\ProgramData\Pinnacle Studio Ultimate Collection
2016-01-14 20:09 - 2015-01-28 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 14
2016-01-14 20:09 - 2015-01-28 18:59 - 00000000 ____D C:\ProgramData\Pinnacle Studio Plus
2016-01-14 20:09 - 2014-12-28 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair
2016-01-14 20:09 - 2014-12-28 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-01-14 20:09 - 2014-12-04 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 17
2016-01-14 20:09 - 2014-12-04 16:29 - 00000000 ____D C:\ProgramData\Pinnacle
2016-01-14 20:09 - 2014-11-20 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2016-01-14 20:09 - 2014-11-20 16:04 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2016-01-14 20:09 - 2014-11-06 16:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-01-14 20:09 - 2014-11-03 02:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2014
2016-01-14 20:09 - 2014-05-12 20:19 - 00000000 ____D C:\ProgramData\Google
2016-01-14 20:09 - 2014-05-08 11:37 - 00000000 ____D C:\ProgramData\Samsung
2016-01-14 20:09 - 2014-04-16 12:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2016-01-14 20:09 - 2014-03-07 12:32 - 00000000 ____D C:\ProgramData\PDFEditor
2016-01-14 20:09 - 2014-03-05 16:40 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
2016-01-14 20:09 - 2014-03-03 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG PC Suite
2016-01-14 20:09 - 2014-02-16 10:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery
2016-01-14 20:09 - 2014-02-16 10:23 - 00000000 ____D C:\ProgramData\Elcomsoft Password Recovery
2016-01-14 20:09 - 2014-02-01 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
2016-01-14 20:09 - 2014-01-16 16:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-01-14 20:09 - 2014-01-12 02:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-01-14 20:09 - 2014-01-12 02:10 - 00000000 ___HD C:\ProgramData\CanonCP
2016-01-14 20:09 - 2014-01-12 02:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon SELPHY CP900
2016-01-14 20:09 - 2014-01-08 01:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boole & Partners
2016-01-14 20:09 - 2014-01-08 01:28 - 00000000 ____D C:\ProgramData\Boole & Partners
2016-01-14 20:09 - 2014-01-02 17:57 - 00000000 ____D C:\Program Files\Senselock
2016-01-14 20:09 - 2014-01-02 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YFCAD Software
2016-01-14 20:09 - 2013-11-06 00:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink
2016-01-14 20:09 - 2013-11-06 00:48 - 00000000 ____D C:\ProgramData\DVD Shrink
2016-01-14 20:09 - 2013-05-26 12:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2016-01-14 20:09 - 2013-01-29 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ
2016-01-14 20:09 - 2013-01-17 12:03 - 00000000 ____D C:\ProgramData\Nero
2016-01-14 20:09 - 2013-01-17 12:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-01-14 20:09 - 2012-12-24 02:06 - 00000000 ____D C:\Program Files\WBFS
2016-01-14 20:09 - 2012-11-03 16:10 - 00000000 ____D C:\ProgramData\Apple Computer
2016-01-14 20:09 - 2012-10-31 18:56 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tableta Wacom
2016-01-14 20:09 - 2012-10-31 18:56 - 00000000 ____D C:\Program Files\Tablet
2016-01-14 20:09 - 2012-10-27 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vso
2016-01-14 20:09 - 2012-10-27 13:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company
2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12
2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ____D C:\ProgramData\PDVD
2016-01-14 20:09 - 2012-10-25 23:25 - 00000000 ____D C:\ProgramData\CyberLink
2016-01-14 20:09 - 2012-10-25 23:23 - 00000000 ____D C:\ProgramData\install_clap
2016-01-14 20:09 - 2012-10-25 15:30 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-01-14 20:09 - 2012-10-25 14:59 - 00000000 ____D C:\ProgramData\Adobe
2016-01-14 20:09 - 2012-10-25 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\abgx360
2016-01-14 20:09 - 2012-10-24 00:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-14 20:09 - 2012-10-22 13:21 - 00000000 ____D C:\ProgramData\Mozilla
2016-01-14 20:09 - 2012-10-20 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2016-01-14 20:09 - 2012-10-20 17:39 - 00000000 ____D C:\Program Files\Sony
2016-01-14 20:09 - 2012-10-20 17:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-01-14 20:09 - 2012-10-20 17:27 - 00000000 ____D C:\Program Files\Microsoft Office
2016-01-14 20:09 - 2012-10-20 17:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan
2016-01-14 20:09 - 2012-10-20 15:53 - 00000000 ____D C:\ProgramData\Apple
2016-01-14 20:09 - 2011-04-12 10:21 - 00000000 ____D C:\Program Files\Windows Journal
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\MSBuild
2016-01-14 20:09 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-01-14 20:09 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Windows NT
2016-01-14 20:07 - 2015-12-03 21:04 - 00000000 ____D C:\Program Files\Common Files\AV
2016-01-14 20:07 - 2015-10-14 22:21 - 00000000 ____D C:\Program Files\iPod
2016-01-14 20:07 - 2015-02-11 14:33 - 00000000 ____D C:\Program Files\Common Files\Native Instruments
2016-01-14 20:07 - 2014-05-12 20:19 - 00000000 ____D C:\Program Files\Google
2016-01-14 20:07 - 2013-05-26 12:13 - 00000000 ____D C:\Program Files\Common Files\Wondershare
2016-01-14 20:07 - 2012-11-03 16:11 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-01-14 20:07 - 2012-10-25 15:26 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-01-14 20:07 - 2012-10-20 15:54 - 00000000 ____D C:\Program Files\DIFX
2016-01-14 20:07 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System
2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Services
2016-01-14 20:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-01-14 20:06 - 2015-10-14 22:19 - 00000000 ____D C:\Program Files\Bonjour
2016-01-14 20:06 - 2015-01-20 16:15 - 00000000 ____D C:\Program Files\CodeMeter
2016-01-14 20:06 - 2014-01-02 17:53 - 00000000 ____D C:\InteriCADT5
2016-01-14 20:06 - 2012-10-25 23:25 - 00000000 ____D C:\MediaServer
2016-01-14 20:06 - 2012-10-25 15:29 - 00000000 ____D C:\Program Files\Adobe
2016-01-14 20:06 - 2012-10-20 17:26 - 00000000 __RHD C:\MSOCache
2016-01-14 20:06 - 2012-10-20 15:58 - 00000000 ____D C:\Program Files\Boot Camp
2016-01-14 20:06 - 2012-10-20 15:56 - 00000000 ____D C:\Program Files\ATI
2016-01-14 20:06 - 2009-07-14 04:20 - 00000000 ____D C:\PerfLogs
2016-01-14 19:31 - 2014-01-03 01:56 - 00000000 ____D C:\InteriCAD Lite Trial
2016-01-14 19:30 - 2012-10-27 13:40 - 00000000 ____D C:\DriveKey
2016-01-14 19:30 - 2012-10-20 15:57 - 00000000 ____D C:\Intel
2016-01-14 19:29 - 2013-05-21 20:42 - 00000000 ___HD C:\.fseventsd
2016-01-14 19:29 - 2013-05-12 00:28 - 00000000 ___HD C:\.Trashes
2016-01-13 19:10 - 2014-12-23 18:23 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task

==================== Files in the root of some directories =======

2016-01-14 19:30 - 2016-01-14 20:09 - 0006764 _____ () C:\Program Files\how_recover+sob.html
2016-01-14 19:30 - 2016-01-14 20:09 - 0002339 _____ () C:\Program Files\how_recover+sob.txt
2016-01-14 20:06 - 2016-01-14 20:07 - 0006764 _____ () C:\Program Files\Common Files\how_recover+sob.html
2016-01-14 20:06 - 2016-01-14 20:07 - 0002339 _____ () C:\Program Files\Common Files\how_recover+sob.txt
2015-03-31 09:14 - 2016-02-07 11:52 - 0000349 _____ () C:\Users\dasina\AppData\Roaming\5Sux0mu
2014-12-04 20:59 - 2016-01-14 20:52 - 0000992 _____ () C:\Users\dasina\AppData\Roaming\DASINA-PC.MTBF.txt.ttt
2016-01-14 21:00 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Roaming\how_recover+sob.html
2016-01-14 21:00 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Roaming\how_recover+sob.txt
2012-10-27 13:53 - 2012-10-27 13:53 - 0099384 _____ () C:\Users\dasina\AppData\Roaming\inst.exe
2015-03-31 09:14 - 2016-02-07 11:52 - 0000935 _____ () C:\Users\dasina\AppData\Roaming\jjOjJlnt
2012-10-27 13:53 - 2012-10-27 13:53 - 0007859 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.cat
2012-10-27 13:53 - 2012-10-27 13:53 - 0001167 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.inf
2012-10-27 13:54 - 2012-10-27 13:54 - 0000074 _____ () C:\Users\dasina\AppData\Roaming\pcouffin.log
2012-10-27 13:53 - 2012-10-27 13:53 - 0082816 _____ (VSO Software) C:\Users\dasina\AppData\Roaming\pcouffin.sys
2015-03-31 09:14 - 2016-02-07 11:52 - 0000935 _____ () C:\Users\dasina\AppData\Roaming\PMVczaNcoptbUlRnM9oJp
2015-03-31 09:14 - 2016-02-07 11:52 - 0000349 _____ () C:\Users\dasina\AppData\Roaming\pv9RWQgSvZ8mEE
2015-12-31 12:57 - 2015-12-31 13:03 - 0001057 _____ () C:\Users\dasina\AppData\Roaming\vso_ts_preview.xml
2014-01-02 19:13 - 2015-01-20 23:02 - 0000160 _____ () C:\Users\dasina\AppData\Roaming\WB.CFG
2014-12-04 20:59 - 2015-12-31 16:46 - 0000960 _____ () C:\Users\dasina\AppData\Roaming\__AvidCloudManager.log
2014-12-04 20:59 - 2015-01-23 16:48 - 0000910 _____ () C:\Users\dasina\AppData\Roaming\__AvidCloudManagerPrevious.log
2016-01-14 20:58 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Roaming\Microsoft\how_recover+sob.html
2016-01-14 20:58 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Roaming\Microsoft\how_recover+sob.txt
2014-04-16 18:04 - 2014-04-16 18:04 - 0000037 ___SH () C:\Users\dasina\AppData\Local\70149b02515b3bb20dd492.47983420
2014-12-04 21:00 - 2015-06-02 00:00 - 0010240 _____ () C:\Users\dasina\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-17 23:35 - 2014-09-17 23:35 - 0464384 _____ (Dirección General de la Policía) C:\Users\dasina\AppData\Local\DNIeService.exe
2015-01-20 23:02 - 2015-01-20 23:02 - 0234679 _____ () C:\Users\dasina\AppData\Local\dsi1.dat
2015-01-20 23:02 - 2015-01-20 23:02 - 0161916 _____ () C:\Users\dasina\AppData\Local\dsi2.dat
2016-01-14 20:10 - 2016-01-15 07:37 - 0006764 _____ () C:\Users\dasina\AppData\Local\how_recover+sob.html
2016-01-14 20:10 - 2016-01-15 07:37 - 0002339 _____ () C:\Users\dasina\AppData\Local\how_recover+sob.txt
2016-02-07 05:03 - 2016-02-07 05:03 - 0000000 ____H () C:\ProgramData\cm-lock
2016-01-14 20:09 - 2016-01-15 07:30 - 0006764 _____ () C:\ProgramData\how_recover+sob.html
2016-01-14 20:09 - 2016-01-15 07:30 - 0002339 _____ () C:\ProgramData\how_recover+sob.txt

Some files in TEMP:
====================
C:\Users\dasina\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp9gavv2.dll
C:\Users\dasina\AppData\Local\Temp\g0cnus8j.dll
C:\Users\dasina\AppData\Local\Temp\sqlite3.dll
C:\Users\dasina\AppData\Local\Temp\VirtualDJ New Version.exe

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2016-02-06 19:28

==================== End of FRST.txt ============================


  • 0

#6
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 3,330 posts
Please re-read my instruction. You are to make the fixlist.txt from the script I made and have to click on Fix.
  • 0

#7
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

This addition was failing myself to stick the text:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-01-2016
Ran by dasina (2016-02-07 12:10:05)
Running from C:\Users\dasina\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2012-10-20 14:50:37)
Boot Mode: Normal
==========================================================

==================== Accounts: =============================

Administrador (S-1-5-21-2951719654-1521927482-3716386808-500 - Administrator - Disabled)
dasina (S-1-5-21-2951719654-1521927482-3716386808-1000 - Administrator - Enabled) => C:\Users\dasina
HomeGroupUser$ (S-1-5-21-2951719654-1521927482-3716386808-1002 - Limited - Enabled)
Invitado (S-1-5-21-2951719654-1521927482-3716386808-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Internet Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Internet Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.)
2x1/4x1 USB Peripheral Switch (HKLM-x32\...\{A3752427-9AAA-4B1C-B428-01723E0E9FFA}) (Version:  - )
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
abgx360 v1.0.6 (HKLM-x32\...\abgx360) (Version:  - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2710 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated)
Adobe Flash Player 19 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.226 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.14) - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.14 - Adobe Systems Incorporated)
Advanced Office Password Recovery (HKLM-x32\...\{A04F19AC-9156-4189-AC62-7B9F4B68573A}) (Version: 5.2.490.414 - Elcomsoft Co. Ltd.)
Advanced RAR Repair v1.2 (HKLM-x32\...\Advanced RAR Repair v1.2) (Version:  - )
Apple Application Support (32 bits) (HKLM-x32\...\{A50679D9-6CBD-4FCD-BACB-62EF3894F6F3}) (Version: 4.0.3 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{1F72FDD5-A069-45B4-928F-D0F16492DC69}) (Version: 4.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FD244E19-6EFE-4A2D-948A-0D45D4C168BE}) (Version: 9.0.0.26 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
BBS Tools (HKLM-x32\...\BBS Tools) (Version: 1.0.80 - BBS_Tools)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon SELPHY CP900 (HKLM\...\Canon SELPHY CP900) (Version:  - )
Canon Utilities SELPHY Photo Print (HKLM-x32\...\SELPHY Photo Print) (Version: 1.4.0.4 - Canon Inc.)
Canon Utilities SELPHY Print Contents 1.3.0 (HKLM-x32\...\SELPHY Print Contents 130) (Version: 1.3.0.0 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform)
Controlador de Pinnacle Video (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
ConvertXtoDVD 4.1.19.365 (HKLM-x32\...\{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1) (Version: 4.1.19.365 - )
Cutting Optimization pro (HKLM-x32\...\cutting) (Version:  - )
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.1905c.56 - CyberLink Corp.)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Dazzle Video Capture DVC100 X64 Driver 1.06 (HKLM-x32\...\{BFF23267-1D19-444E-93E2-E5059BE805EA}) (Version: 1.06.0000 - Pinnacle)
Desinstalación de CopyTrans Suite solamente (HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\CopyTrans Suite) (Version: 2.37 - WindSolutions)
Dropbox (HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
DVD Architect Studio 5.0 (HKLM-x32\...\{7AFBA1EE-24FE-11E1-A28A-F04DA23A5C58}) (Version: 5.0.157 - Sony)
DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version:  - DVD Shrink)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.103 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7210.1528 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.23.0 - PriceMeter) Hidden <==== ATTENTION
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
HP USB Disk Storage Format Tool (HKLM-x32\...\{0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51}) (Version:  - )
iFunbox (v2.95.2610.819), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.95.2610.819 - )
inSSIDer Office (HKLM-x32\...\{8C127DE3-EC36-4BA3-A6EE-6DC4A9B6C526}) (Version: 3.1.1.6 - MetaGeek, LLC)
Instalable módulo criptográfico DNIe (HKLM\...\{BE9DD44B-344E-46AA-A717-76D2C478ACC7}) (Version: 11.1.0 - Cuerpo Nacional de Policía)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
InteriCAD Lite Trial (HKLM-x32\...\{101E0FDB-2BB4-4739-9BEE-93ADF5E26118}) (Version:  - )
InteriCAD T5 (HKLM-x32\...\{888B1672-C05F-46AD-A035-B13D0F94AE97}) (Version: 5 - YFSoftware)
InteriCAD T5 (x32 Version: 5 - YFSoftware) Hidden
iTunes (HKLM\...\{96984DE8-1DB8-425C-AC8C-3098BC696F04}) (Version: 12.3.0.44 - Apple Inc.)
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.14.20140117 - LG Electronics)
LG United Mobile Drivers (HKLM-x32\...\{55031CEF-CE75-4A5C-8DEA-60577820529B}) (Version: 3.10.1.0 - LG Electronics)
Lyrics Finder (HKLM-x32\...\[email protected]) (Version:  - Nijad Software)
Malwarebytes Anti-Malware versión 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft .NET Framework 4.5.1 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
MioMore Desktop 7.50 (HKLM-x32\...\{A2804FE8-4101-48a0-AE1A-575B99014BF4}-Mio-7.50) (Version: 7.50.0109.128 - Mio Technology)
Mozilla Firefox 37.0.2 (x86 es-ES) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 es-ES)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyDriveConnect 3.3.0.1342 (HKLM-x32\...\MyDriveConnect) (Version: 3.3.0.1342 - TomTom)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13100 - Nero AG)
OpenOffice.org 3.4.1 (HKLM-x32\...\{7A5B4D34-7FB3-44E6-9DCC-4AF507700A1E}) (Version: 3.41.9593 - Apache Software Foundation)
Paquete de compatibilidad para 2007 Office system (HKLM-x32\...\{90120000-0020-0C0A-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
Paquete de controladores de Windows - Apple Inc. (AppleUSBEthernet) Net  (02/01/2008 3.10.3.10) (HKLM\...\D53CBF2C12DF51DA5E9C1A9DA97FF0DCA0C524C5) (Version: 02/01/2008 3.10.3.10 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Bluetooth (03/01/2010 3.0.0.5) (HKLM\...\EA3C044F6FD39CEC8F4F596836BF4197E97E1D39) (Version: 03/01/2010 3.0.0.5 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Bluetooth Enabler (06/27/2007 2.0.0.1) (HKLM\...\2CD6536AAFFF9B465A871060CF483EC9F3341D29) (Version: 06/27/2007 2.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Broadcom Bluetooth (04/27/2011 4.0.0.1) (HKLM\...\2C56B65D42393CED98BCAFD9A5B1CE6986615B31) (Version: 04/27/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Broadcom Bluetooth (07/31/2015 6.0.6100.0) (HKLM\...\8F0EDB7FDBC8E1501FC134846F23B8B02EDBC2A0) (Version: 07/31/2015 6.0.6100.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Broadcom Bluetooth (10/05/2010 3.2.0.1) (HKLM\...\0B6B49213CF56838AFC233905FA14AC47EAA9B28) (Version: 10/05/2010 3.2.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Built-in iSight (10/25/2007 2.0.1.0) (HKLM\...\70C7CBB0824BF74552A2F28F5FFBF62A15053DA8) (Version: 10/25/2007 2.0.1.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Display (01/23/2009 3.0.0.0) (HKLM\...\E0EAD0CEA9119B77350ED4DE28D9A82E57014D94) (Version: 01/23/2009 3.0.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple IR Receiver (02/21/2008 2.0.4.0) (HKLM\...\D5BB697E7D0C75712F3AD00AB1B85412CB5C0FD3) (Version: 02/21/2008 2.0.4.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Keyboard (05/05/2011 4.0.0.1) (HKLM\...\703003CF14C8E79F68CA5A750AF4E02B9BD4B4D8) (Version: 05/05/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Keyboard (10/12/2010 3.2.0.2) (HKLM\...\ADC3EAD673C46488230AD0AB12506E9682860D42) (Version: 10/12/2010 3.2.0.2 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch (05/05/2011 4.0.0.1) (HKLM\...\455287ECCB4BABCDE9C6713B82B1BDA990D55398) (Version: 05/05/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch (12/22/2010 3.2.0.2) (HKLM\...\9F45AC5B855B827C562AF6CF706CE7F06F057C91) (Version: 12/22/2010 3.2.0.2 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch Mouse (05/05/2011 4.0.0.1) (HKLM\...\F08FFCF5C857951E0CC5F736988F3D01BF425252) (Version: 05/05/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Multitouch Mouse (12/22/2010 3.2.0.2) (HKLM\...\FFA1638E6F01E5491878C12FEBAD499F750BCAFC) (Version: 12/22/2010 3.2.0.2 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple ODD (05/17/2010 3.1.0.0) (HKLM\...\D6B4CB6AD2F81752C2EF8DCF6AD5EBC567ADD45C) (Version: 05/17/2010 3.1.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple System Device (01/28/2011 3.2.0.6) (HKLM\...\3563716AC3DFD9272440E8CA902A071CE53A04B3) (Version: 01/28/2011 3.2.0.6 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple System Device (04/05/2011 3.2.0.8) (HKLM\...\D76172B51B1ECB34E38F97F42F51B7A46FA15F52) (Version: 04/05/2011 3.2.0.8 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Trackpad (07/13/2009 3.0.0.1) (HKLM\...\A0A897639A1D288A8B472FE790EBF9DB71E52ACF) (Version: 07/13/2009 3.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Trackpad Enabler (07/13/2009 3.0.0.1) (HKLM\...\76830D11874044260C923425E7F5A72F25EDA758) (Version: 07/13/2009 3.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Wireless Mouse (04/12/2010 3.1.0.0) (HKLM\...\472107EF594AC9CEB5B41781BDA301442D69A0AB) (Version: 04/12/2010 3.1.0.0 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Wireless Mouse (06/01/2011 4.0.0.1) (HKLM\...\D088EE4BD2819FBA2B349EF9D55176F223419BE6) (Version: 06/01/2011 4.0.0.1 - Apple Inc.)
Paquete de controladores de Windows - Apple Inc. Apple Wireless Trackpad (01/17/2011 3.2.0.0) (HKLM\...\C7DD621795A42EAE550280D4D7601459F35C4EC2) (Version: 01/17/2011 3.2.0.0 - Apple Inc.)
Paquete de controladores de Windows - Atheros Communications Inc. (athr) Net  (11/13/2010 9.2.0.113) (HKLM\...\F0A3F8394866FA91E82C8D5AB92C918FE40FE1DF) (Version: 11/13/2010 9.2.0.113 - Atheros Communications Inc.)
Paquete de controladores de Windows - Broadcom (b57nd60a) Net  (12/02/2010 14.4.2.2) (HKLM\...\7C9678A21221D0575C74AF7CE68E28C2771F9E41) (Version: 12/02/2010 14.4.2.2 - Broadcom)
Paquete de controladores de Windows - Broadcom (BCM43XX) Net  (01/22/2011 5.100.198.11) (HKLM\...\EEAE8ECA5B234CA5C4DD3258E42387C40B604C65) (Version: 01/22/2011 5.100.198.11 - Broadcom)
Paquete de controladores de Windows - Broadcom (BCM43XX) Net  (04/06/2011 5.100.198.22) (HKLM\...\110E24F054DE5F4F72985BC1F3A53F61985BD4CC) (Version: 04/06/2011 5.100.198.22 - Broadcom)
Paquete de controladores de Windows - Broadcom Corporation (bScsiSDa) SDHost  (01/18/2011 1.0.0.220) (HKLM\...\26D089A9557429904D9851293EA25C911B64CCF8) (Version: 01/18/2011 1.0.0.220 - Broadcom Corporation)
Paquete de controladores de Windows - Cirrus Logic, Inc. (CirrusFilter) MEDIA  (12/03/2010 6.6001.1.30) (HKLM\...\43B83D262B11C05DBFE8BEB0E2CBD5A9EA1E7F9C) (Version: 12/03/2010 6.6001.1.30 - Cirrus Logic, Inc.)
Paquete de controladores de Windows - Intel (e1express) Net  (03/26/2010 9.13.41.0) (HKLM\...\159439476E3A00F9FAE49DD6C1A78F2F6288A5B9) (Version: 03/26/2010 9.13.41.0 - Intel)
Paquete de controladores de Windows - Intel (e1kexpress) Net  (04/12/2010 11.6.92.0) (HKLM\...\5BEF08C10896D86DC13394FFA75874564B700368) (Version: 04/12/2010 11.6.92.0 - Intel)
Paquete de controladores de Windows - Intel (e1qexpress) Net  (12/04/2009 11.4.7.0) (HKLM\...\57AFA39B22ADEC4E383572E9331167546EB3C9C7) (Version: 12/04/2009 11.4.7.0 - Intel)
Paquete de controladores de Windows - Intel (e1rexpress) Net  (01/07/2010 11.4.16.0) (HKLM\...\F71DB41300D30088C8D3716343D1429488E605C1) (Version: 01/07/2010 11.4.16.0 - Intel)
Paquete de controladores de Windows - Intel (e1yexpress) Net  (04/07/2010 10.1.9.0) (HKLM\...\CB599752301BCA080D135697FDD05900F5A5CF4C) (Version: 04/07/2010 10.1.9.0 - Intel)
Paquete de controladores de Windows - Intel System  (07/20/2007 1.2.76.0) (HKLM\...\E2708073906571A0B56F17FD825EF19281ECE29B) (Version: 07/20/2007 1.2.76.0 - Intel)
PC Inspector smart recovery (HKLM-x32\...\{C9A87D86-FDFD-418B-BF96-EF09320973B3}) (Version: 4.50 - )
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
pgcchelper (HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\pgcchelper) (Version:  - ) <==== ATTENTION
Pinnacle Studio 14 (HKLM-x32\...\{AADD1C8F-D59F-4D55-A726-768C71A205A8}) (Version: 14.0.0.7255 - Pinnacle Systems)
Pinnacle Studio 17 (HKLM-x32\...\{3DA8F808-72E2-4361-82EC-433081D23005}) (Version: 17.0.2.137 - Corel Corporation)
Pinnale Systems Software Keys (HKLM-x32\...\{616CD10B-1EC7-41D2-8C14-3ECE93E7AEE9}_is1) (Version:  - VPP TEAM)
PoiEdit (HKLM-x32\...\PoiEdit) (Version:  - )
PolyBoard 5.10a (HKLM-x32\...\PolyBoard 5) (Version: 5.10.1.1 - Boole & Partners)
PPÖúÊÖ PC°æ 1.0.5.0 (HKLM-x32\...\PPÖúÊÖ PC°æ) (Version: 1.0.5.0 - ¹ãÖÝÌúÈËÍøÂç¿Æ¼¼ÓÐÏÞ¹«Ë¾)
PP助手2.0 Win版 (HKLM-x32\...\PP助手2.0 Win版) (Version: 2.3.5.4805 - 广州铁人网络科技有限公司)
Price Meter (remove only) (HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\Price Meter) (Version: 1.0.5.8 - Price Meter) <==== ATTENTION
QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.)
Recover My Files (HKLM-x32\...\Recover My Files v5_is1) (Version: 5.2.1.1964 - GetData Pty Ltd)
Samsung Easy Wireless Setup (HKLM-x32\...\Easy Wireless Setup) (Version: 3.70.18.0 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Servicios de Boot Camp (HKLM\...\{B2B7054B-EC2E-4E96-8666-FD6ED77678B2}) (Version: 3.3.2921 - Apple Inc.)
SetIP (HKLM-x32\...\SetIP) (Version: 1.05.08.00 - Samsung Electronics Co., Ltd.)
SketchUp 2014 (HKLM-x32\...\{2BCB2698-02B3-416A-B960-797E95CAA694}) (Version: 14.0.4900 - Trimble Navigation Limited)
sweet-page Browser newtab extension (HKLM-x32\...\sweet-page Browser newtab extension) (Version:  - sweet-page) <==== ATTENTION
Tableta Wacom (HKLM\...\Wacom Tablet Driver) (Version: 6.1.6-7 - Wacom Technology Corp.)
TomTom HOME (HKLM-x32\...\{0E09BE17-EDEA-42CA-8974-42A587F51510}) (Version: 2.9.8 - Nombre de su organización)
TomTom HOME (HKLM-x32\...\{5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}) (Version: 2.9.8 - Nombre de su organización)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
Vegas Pro 12.0 (64-bit) (HKLM\...\{A8582A9E-FE98-11E1-B899-F04DA23A5C58}) (Version: 12.0.367 - Sony)
VirtualDJ 8 (HKLM-x32\...\{F7A68F9D-BBF0-48FF-B138-2EFB5165638C}) (Version: 8.0.2048.0 - Atomix Productions)
Visor de Microsoft PowerPoint (HKLM-x32\...\{95140000-00AF-0C0A-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Vistumbler (HKLM-x32\...\Vistumbler) (Version: v10 - Vistumbler.net)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
VSO CopyToDVD 4 (HKLM-x32\...\{870F1750-BA89-11DA-A94D-0800200C9A66}_is1) (Version: 4.3.1.11 - VSO Software)
WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP)
WebTablet IE Plugin (HKLM-x32\...\Wacom WebTabletPlugin for IE) (Version: 1.1.0.7 - Wacom Technology Corp.)
WebTablet Netscape Plugin (HKLM-x32\...\Wacom WebTabletPlugin for Netscape) (Version: 1.1.0.5 - Wacom Technology Corp.)
Windows Driver Package - Dirección General de la Policía (UMPass) SmartCard  (03/11/2013 1.0.2.1) (HKLM\...\B52C0A3A839B7EB8677E7EE3DAC12245F751A578) (Version: 03/11/2013 1.0.2.1 - Dirección General de la Policía)
WinRAR 4.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
Wondershare PDF Editor(Build 3.6.0) (HKLM-x32\...\{75BAE677-F65A-45A4-9931-363FE0CF5E58}_is1) (Version: 3.6.0.9 - Wondershare Software Co.,Ltd.)
Wondershare Photo Recovery (build 3.1.0) (HKLM-x32\...\Wondershare Photo Recovery_is1) (Version:  - Wondershare Co., Ltd.)
Wondershare Video Converter Ultimate(Build 6.5.0.5) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version: 6.5.0.5 - Wondershare Software)
YFLibrary (HKLM-x32\...\{D722EABE-500C-4117-9105-E0BA0B4A3242}) (Version:  - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2951719654-1521927482-3716386808-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\dasina\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D2EF789-C2C0-43D6-AA6F-9E9FC1729C4C} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000Core => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.)
Task: {0D80840C-2DCA-464F-974B-47397A285844} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.)
Task: {124D9EF0-5D3B-4CC1-AB04-4C1D0B0242AC} - \Vosteran_helper -> No File <==== ATTENTION
Task: {2A666E09-DAAA-43CD-93B2-A8778ACDF3A9} - \PriceMeterLiveUpdateUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {38AF8BC3-0959-4F7A-85FB-8C41E28689F4} - \pricemeterwatcher -> No File <==== ATTENTION
Task: {4923D1FD-2465-4D51-B31E-4E4380F3F445} - \PriceMeterLiveUpdateUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {4FDB18CC-93BB-4D36-A2D0-A98497954B68} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-5 -> No File <==== ATTENTION
Task: {53DA9CE7-073D-42C7-A5E7-6125F7A05AC8} - System32\Tasks\{05508F5E-F517-42D8-AE5A-509C42D3965C} => pcalua.exe -a "C:\Users\dasina\Desktop\YFCAD InteriCAD T5\InteriCADT5\system\lock.exe" -d "C:\Users\dasina\Desktop\YFCAD InteriCAD T5\InteriCADT5\system"
Task: {58E2771F-D4AC-48C2-ADE4-30482E4E2192} - \pricemeterdownloader -> No File <==== ATTENTION
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {690ED305-796A-4176-A540-DAC411C5BD38} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-7 -> No File <==== ATTENTION
Task: {6D3FD402-F424-4FFF-96B3-A033E55A1D28} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {7675A42A-9765-4CB5-BF14-0179A9C97A54} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-01-19] (AVAST Software)
Task: {91DAEE93-A56B-4BC2-8D51-A2A4C7B1D807} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000UA => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.)
Task: {97C19FBE-CC96-4CBC-BA21-D047A5C5F958} - \pricemetertask -> No File <==== ATTENTION
Task: {9F1ADC29-B3E4-40C2-B607-06D94D7B0446} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.)
Task: {A43E457D-430B-4645-8A71-E002F909D137} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-6 -> No File <==== ATTENTION
Task: {AF62F826-6787-4460-B1AD-319D581B0B17} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-5_user -> No File <==== ATTENTION
Task: {B53814C9-765C-42C3-8635-DB66BFBAF36F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {B78CD6CE-1039-4C75-AE96-4A9290E5F636} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-26] (Apple Inc.)
Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc
Task: {E1A0FD7D-EFE7-493E-9A61-2F8FD7E47F2D} - System32\Tasks\jjOjJlnt => C:\Users\dasina\AppData\Roaming\jjOjJlnt.exe <==== ATTENTION
Task: {EB6CD860-CD24-4746-899F-3C2D7E7F3130} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-1 -> No File <==== ATTENTION
Task: {F67C7C0E-E394-4556-9288-CD78984E114C} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-11 -> No File <==== ATTENTION
Task: {F98FA0FD-CF15-40FE-98DE-74ADE34FD387} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000Core.job => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2951719654-1521927482-3716386808-1000UA.job => C:\Users\dasina\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\jjOjJlnt.job => C:\Users\dasina\AppData\Roaming\jjOjJlnt.exe <==== ATTENTION

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2014-04-11 08:52 - 2014-04-11 08:52 - 00034304 _____ () C:\Windows\System32\sst8clm.dll
2013-05-26 12:12 - 2013-03-25 09:57 - 00727952 _____ () C:\Windows\SysWOW64\WSCM64.dll
2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-09-23 15:47 - 2015-09-23 15:47 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-09-23 15:47 - 2015-09-23 15:47 - 00306960 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll
2012-10-20 17:24 - 2003-04-08 13:42 - 00135168 _____ () C:\Program Files (x86)\Belkin\F1U201.401\usbshare.exe
2011-08-15 18:35 - 2011-08-15 18:35 - 00224640 _____ () C:\Windows\system32\AppleOSSMgr.exe
2016-01-15 21:45 - 2016-01-15 21:45 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1034.dll
2014-08-14 06:52 - 2014-08-14 06:52 - 00118496 _____ () C:\Program Files (x86)\PP助手2.0\adevicehelpersvr.exe
2012-10-31 18:56 - 2010-11-15 11:08 - 01182576 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll
2013-11-29 10:29 - 2013-11-29 10:29 - 00026520 _____ () C:\Program Files (x86)\MyDrive Connect\DeviceDetection.dll
2013-11-29 10:28 - 2013-11-29 10:28 - 00082840 _____ () C:\Program Files (x86)\MyDrive Connect\TomTomSupporterBase.dll
2013-11-29 10:28 - 2013-11-29 10:28 - 00344984 _____ () C:\Program Files (x86)\MyDrive Connect\TomTomSupporterProxy.dll
2012-10-25 23:24 - 2011-08-24 03:39 - 00081920 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\koan\_ctypes.pyd
2012-10-25 23:24 - 2011-08-24 03:39 - 00053248 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\Koan\_socket.pyd
2012-10-25 23:24 - 2011-08-24 03:39 - 00655360 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\Koan\_ssl.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-11 04:11 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32api.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-11 04:11 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\fastpath.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32file.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32ts.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32service.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\librsync.dll
2015-12-11 04:11 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\win32profile.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2015-12-11 04:11 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2015-12-11 04:11 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-11 04:11 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\sip.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2015-12-11 04:11 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2015-11-11 21:16 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-11-11 21:16 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-11-11 21:16 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-11-11 21:16 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\dasina\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2012-08-10 16:51 - 2012-08-10 16:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2014-08-14 06:52 - 2014-08-14 06:52 - 00166624 _____ () C:\Program Files (x86)\PP助手2.0\monconfigapi.dll
2014-08-14 06:52 - 2014-08-14 06:52 - 00282336 _____ () C:\Program Files (x86)\PP助手2.0\pppclogger.dll
2014-08-14 06:52 - 2014-08-14 06:52 - 00376032 _____ () C:\Program Files (x86)\PP助手2.0\DevHelper.dll
2014-08-14 06:52 - 2014-08-14 06:52 - 00329440 _____ () C:\Program Files (x86)\PP助手2.0\DriverTools.dll
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\kpcengine.2.3.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\.Trashes:Mac_Metadata
AlternateDataStreams: C:\Users\dasina\Desktop\Charla Silvia modificada.ppt.ttt:com.dropbox.attributes

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 87.216.1.65 - 87.216.1.66
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{28B3C61C-EAC3-4BE7-8F42-275D3AD41C10}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [UDP Query User{5CFF73BF-5D4B-4B8F-A2BF-27935A6369DB}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [{A4915946-26BF-47BF-9515-D8D52FA131D0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{7B083C6B-CDFB-4EE8-B3DE-839D516D0F99}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{DB400FE7-6FCB-4047-A31D-8517F4F4E74B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{D2D6B895-033B-47BD-AC92-64B8F016D5EF}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{F2A6EE5E-E7B3-434D-900A-441C4959BBD9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{15C23EFF-A70F-4225-8825-81F48807410E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe
FirewallRules: [{FC2CD2D1-DB9A-4BB2-8A2C-4AC4A6B09254}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3C6EDD4D-3FDD-42E2-921D-97C44F32F911}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{ED633369-D844-4201-8A4D-A1DE1031B4BF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{79E3AAA9-A9D7-4B4A-832D-7C9434739CC7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{47E92919-FE33-43BA-B504-5033AA4DC448}C:\program files (x86)\ppöúêö\ihelper.exe] => (Allow) C:\program files (x86)\ppöúêö\ihelper.exe
FirewallRules: [UDP Query User{4CBB21C0-F3AE-4A58-8501-B19B4D156D26}C:\program files (x86)\ppöúêö\ihelper.exe] => (Allow) C:\program files (x86)\ppöúêö\ihelper.exe
FirewallRules: [{1A9AFBC7-4FE7-4C2E-B5F5-0C9EB5A30750}] => (Allow) C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{F3F3DD10-C78F-4B3F-94FF-5F82455F6500}] => (Allow) C:\Users\dasina\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{FE7FED61-ACDC-4B9C-A563-0F41793DF819}] => (Allow) C:\Users\dasina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A03B8121-ACF4-46D8-9E0F-3FB704A6C215}] => (Allow) C:\Users\dasina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{DF9B1DA5-4D02-4E60-8E98-3953C2E4FFCB}C:\program files (x86)\torntv.com\torntv downloader.exe] => (Block) C:\program files (x86)\torntv.com\torntv downloader.exe
FirewallRules: [UDP Query User{6EABF7BF-C6C1-40D2-9300-2745AD3407DF}C:\program files (x86)\torntv.com\torntv downloader.exe] => (Block) C:\program files (x86)\torntv.com\torntv downloader.exe
FirewallRules: [TCP Query User{8E1054CF-1864-443A-B3B6-90746076A36C}C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe] => (Block) C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe
FirewallRules: [UDP Query User{979A65BC-7D07-4A9F-B62B-61C230D66401}C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe] => (Block) C:\program files (x86)\sketchup\sketchup 2014\sketchup.exe
FirewallRules: [{757DB8DF-9549-438D-8DBB-8545A9A68A31}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\RM.exe
FirewallRules: [{29DCFE7A-0F82-40D2-B4A5-04E9F0C2E6B6}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\RM.exe
FirewallRules: [{E5C9E229-D320-4749-8AD8-88B247515D10}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\NGStudio.exe
FirewallRules: [{69E1E34A-58EB-4921-81BE-99321E0D5068}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\NGStudio.exe
FirewallRules: [{129715BC-C853-479B-AA95-0F2440EB15A4}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\UMI.exe
FirewallRules: [{1BAB2E1E-BF4A-4F3D-8A61-08577F200622}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 17\programs\UMI.exe
FirewallRules: [{71DF79BD-30A3-4B77-8D02-B42415F2FFD2}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{17895A47-C288-4A78-8413-4A5CC2AC7F15}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{4D23B2CD-CC0C-42CE-B9C5-DA4C6CC29BB3}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\RM.exe
FirewallRules: [{71488A0B-26EB-4C8B-8108-F07AFC5F7D57}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\RM.exe
FirewallRules: [{E8BDA34C-4D0E-4562-A2CD-83C5067D40B8}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\Studio.exe
FirewallRules: [{E0041D7E-73B9-4039-B90F-D4BFC878F39A}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\Studio.exe
FirewallRules: [{E6AABA1A-4AF6-4BC0-B0FF-CA9DDDD74158}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\umi.exe
FirewallRules: [{EF0A83A5-4EC6-4ADB-923C-329F962D0483}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\umi.exe
FirewallRules: [{2757C9B2-80AA-42E4-BD55-96C57BC8E3FB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{933052C7-6524-4E8C-B4F1-9D656B2DA2DF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{70910039-80ED-4C77-A837-F0E9D351470D}C:\program files (x86)\pp助手2.0\adevicehelpermon.exe] => (Allow) C:\program files (x86)\pp助手2.0\adevicehelpermon.exe
FirewallRules: [UDP Query User{E5B41F80-D55E-4E22-9BE5-C35078D02ECB}C:\program files (x86)\pp助手2.0\adevicehelpermon.exe] => (Allow) C:\program files (x86)\pp助手2.0\adevicehelpermon.exe
FirewallRules: [TCP Query User{1F18E654-6C86-4CFF-8DB0-2527F9A35B14}C:\program files (x86)\pp助手2.0\ihelper.exe] => (Block) C:\program files (x86)\pp助手2.0\ihelper.exe
FirewallRules: [UDP Query User{D2FEE72A-27D0-4B8B-9385-FF20F6E19077}C:\program files (x86)\pp助手2.0\ihelper.exe] => (Block) C:\program files (x86)\pp助手2.0\ihelper.exe
FirewallRules: [{8315F47B-B173-4E2A-A54B-0DC53E564C34}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{43F8C494-ED32-4BAC-B80B-83FBA8B0E856}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{BEDB5D50-5927-46FB-8FE8-F8386BC60D3C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{ADAC682E-2B37-46CC-A254-15DD2D47B439}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DE9DC2A8-093E-4E94-A1A5-CFDF2E690C86}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{7010C0FE-0976-477E-B1A9-F9C206373FBD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

06-02-2016 19:34:27 Punto de control programado

==================== Faulty Device Manager Devices =============

Name: pcouffin device ...
Description: pcouffin device ...
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teredo Tunneling Pseudo-Interface
Description: Adaptador de tunelización Teredo de Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

==================== Event log errors: =========================

Application errors:
==================
Error: (02/07/2016 12:05:30 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Error al generar el contexto de activación para "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest1". Error en el archivo de manifiesto o directiva "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest2" en la línea C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest3.
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.

Error: (02/07/2016 12:04:56 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Error al generar el contexto de activación para "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest1". Error en el archivo de manifiesto o directiva "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest2" en la línea C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest3.
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.

Error: (02/07/2016 12:04:56 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Error al generar el contexto de activación para "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest1". Error en el archivo de manifiesto o directiva "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest2" en la línea C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest3.
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.

Error: (02/07/2016 12:04:53 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "1". Error en el archivo de manifiesto o directiva "2" en la línea 3.
Sintaxis XML no válida.

Error: (02/07/2016 05:10:52 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Error al generar el contexto de activación para "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest1". Error en el archivo de manifiesto o directiva "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest2" en la línea C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest3.
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.

Error: (02/07/2016 05:10:52 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "1". Error en el archivo de manifiesto o directiva "2" en la línea 3.
Sintaxis XML no válida.

Error: (02/07/2016 05:10:41 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Error al generar el contexto de activación para "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest1". Error en el archivo de manifiesto o directiva "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest2" en la línea C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest3.
Una versión de componente requerida por la aplicación está en conflicto con la versión de otro componente activo.
Los componentes en conflicto son:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.

Error: (02/07/2016 05:10:41 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "1". Error en el archivo de manifiesto o directiva "2" en la línea 3.
Sintaxis XML no válida.

Error: (02/07/2016 05:10:41 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "1". Error en el archivo de manifiesto o directiva "2" en la línea 3.
Sintaxis XML no válida.

Error: (02/07/2016 05:05:19 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Error al generar el contexto de activación para "1". Error en el archivo de manifiesto o directiva "2" en la línea 3.
Sintaxis XML no válida.

System errors:
=============
Error: (02/07/2016 06:15:02 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 06:15:02 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 06:14:53 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 06:14:53 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 06:14:21 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 06:14:20 AM) (Source: DCOM) (EventID: 10016) (User: dasina-PC)
Description: específico de la aplicaciónLocalActivación{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}dasina-PCdasinaS-1-5-21-2951719654-1521927482-3716386808-1000LocalHost (con LRPC)

Error: (02/07/2016 05:04:25 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: específico de la aplicaciónLocalIniciar{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (con LRPC)

Error: (02/07/2016 05:02:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Intel® Content Protection HECI Service no pudo iniciarse debido al siguiente error:
%%216

Error: (02/07/2016 05:02:45 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: El servicio Apple Mobile Device Service no pudo iniciarse debido al siguiente error:
%%1053

Error: (02/07/2016 05:02:45 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la conexión con el servicio Apple Mobile Device Service.

CodeIntegrity:
===================================
  Date: 2014-03-03 18:28:42.096
  Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume4\Windows\System32\drivers\igdkmd64.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

  Date: 2014-03-03 18:28:42.026
  Description: Windows no puede comprobar la integridad de imagen del archivo \Device\HarddiskVolume4\Windows\System32\drivers\igdkmd64.sys porque el hash del archivo no se encuentra en el sistema. Puede que un cambio reciente de hardware o software haya instalado un archivo dañado o con una firma incorrecta, o que exista un software malintencionado de origen desconocido.

==================== Memory info ===========================

Processor: Intel® Core™ i5-2500S CPU @ 2.70GHz
Percentage of memory in use: 31%
Total physical RAM: 12263.73 MB
Available physical RAM: 8365.62 MB
Total Virtual: 24525.68 MB
Available Virtual: 20521.14 MB

==================== Drives ================================

Drive c: (BOOTCAMP) (Fixed) (Total:201.49 GB) (Free:48.77 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive e: (HDD) (Fixed) (Total:729.23 GB) (Free:320.18 GB) HFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00006F87)

Partition: GPT.
Partition 2: (Not Active) - (Size=729.2 GB) - (Type=AF)
Partition 3: (Not Active) - (Size=620 MB) - (Type=AB)
Partition 4: (Active) - (Size=201.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================


  • 0

#8
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Please re-read my instruction. You are to make the fixlist.txt from the script I made and have to click on Fix.

I have habierto the note-pad of note. But not that to do now, I am very awkward


  • 0

#9
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

# AdwCleaner v5.032 - Registro generado 06/02/2016 en 18:12:53

 

# Actualizado 31/01/2016 por Xplode

 

# Base de datos : 2016-02-05.1 [Servidor]

 

# Sistema operativo : Windows 7 Ultimate Service Pack 1 (x64)

 

# Nombre de usuario : dasina - DASINA-PC

 

# Ejecutado desde : M:\Pelis\Crome\AdwCleaner.exe

 

# Opción : Limpiar

 

# Apoyo : http://toolslib.net/forum

 

 

***** [ Servicios ] *****

 

 

[-]  Eliminar : ClaraUpdater

 

[-]  Eliminar : globalUpdate

 

[-]  Eliminar : globalUpdatem

 

[-]  Eliminar : iSafeKrnl

 

[-]  Eliminar : iSafeKrnlBoot

 

[-]  Eliminar : iSafeKrnlKit

 

[-]  Eliminar : iSafeNetFilter

 

 

***** [ Carpetas ] *****

 

 

[-] Carpeta Eliminar : C:\Program Files (x86)\globalUpdate

 

[-] Carpeta Eliminar : C:\Program Files (x86)\iSafe

 

[-] Carpeta Eliminar : C:\Program Files (x86)\mipony

 

[-] Carpeta Eliminar : C:\Program Files (x86)\CutThePricee

 

[-] Carpeta Eliminar : C:\Program Files (x86)\Common Files\ClaraUpdater

 

[-] Carpeta Eliminar : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mipony

 

[-] Carpeta Eliminar : C:\Users\dasina\AppData\Local\globalUpdate

 

[-] Carpeta Eliminar : C:\Users\dasina\AppData\Local\Temp\iSafeRightKeyScan

 

[-] Carpeta Eliminar : C:\Users\dasina\AppData\Roaming\iSafe

 

[-] Carpeta Eliminar : C:\Users\dasina\AppData\Roaming\mipony

 

[-] Carpeta Eliminar : C:\Users\dasina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mipony

 

[-] Carpeta Eliminar : C:\Users\dasina\Documents\mipony

 

 

***** [ Archivos ] *****

 

 

[-] Archivo Eliminar : C:\Users\dasina\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MiPony.lnk

 

[-] Archivo Eliminar : C:\Users\dasina\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\MiPony.lnk

 

[-] Archivo Eliminar : C:\Users\dasina\Desktop\Facebook.lnk

 

[-] Archivo Eliminar : C:\Users\dasina\Desktop\MiPony.lnk

 

[-] Archivo Eliminar : C:\Windows\SysNative\log\iSafeKrnlCall.log

 

 

***** [ DLLs ] *****

 

 

 

***** [ Accesos directos ] *****

 

 

 

***** [ Tareas programadas ] *****

 

 

 

***** [ Registro ] *****

 

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.updatepm.oneclickctrl.9

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.updatepm.update3webcontrol.3

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MiPony.exe

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [I - Cinema-bg.exe]

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\AppID\{126C78A0-36E7-4697-A3AB-32706144398B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\AppID\{8D73A258-9787-4AE7-9232-41036673FD0E}

 

[-] Llave Eliminar : HKCU\Software\Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{00A154AE-6C33-4F1E-9057-242350540936}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{126C78A0-36E7-4697-A3AB-32706144398B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{30D1E30D-B7F5-4C7A-8EDA-9F02966538A8}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{41C35ADE-DEDA-439F-8140-D53F2C76C963}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{4211E851-747F-4470-923D-6EF683EE79CA}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{45F8961E-1314-421E-9F00-BDDE18CF8EA0}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{4825ACAD-F495-4CDD-9603-9C91BABB2B88}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{5B60D1C0-453A-485D-AE91-61FAC9203719}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{74930D00-2198-46FE-B6BC-FEEC60C666C9}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{89449F37-4AB2-46ED-A566-BB3A7797701B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{8D73A258-9787-4AE7-9232-41036673FD0E}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{9D24562E-40EC-4E46-B57C-700352059B55}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{B1F29F0C-2EC8-487B-97C2-8B8FEA6CEF14}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{C0756D99-64A1-4332-B783-A5A1B571D431}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{CF0A778A-DDA0-4492-9804-EF38C9A9F1A5}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{D1C6444C-CC06-4060-A486-736DEAFD9C16}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{D8746A3A-A372-4C8B-96E5-B58F6474EB19}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{F509ADC2-B40E-470F-A7B7-45191486B5CB}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{94952EC4-DB66-3F32-BE4C-F0BB875EA98E}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{553D53FA-59F3-44D0-ABC4-58F290DB70DC}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{59E8D94C-7A20-41AD-83CF-3E156D3AEB2F}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{5EF4F032-2DB4-48E9-B5A9-ADAC095E096A}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{6FE5D7AF-5812-4E08-BA22-9805FFE9F429}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{781999CA-3F51-4A56-94CA-0C8A8E0100AF}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{A39B7A1C-F58A-4C22-9015-E2C8EF1C31BA}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{AB121BE6-2299-4B9B-8545-9104ABA20717}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{C0833ED4-281E-441C-B004-43752001A629}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{DC330A23-4FBE-414C-AB3D-1C42056E5245}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{DCD71BA3-32C2-455F-8DF0-37EE26E0C395}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{E9C30691-5CE7-46BF-B940-C0125DA9E05B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{F654B5BE-1A20-48A6-BED0-7C9E29CB8099}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{0DA40B75-6FEE-49BF-BDDE-E2598E786C8C}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{12FF3C6A-56FB-4B3E-858D-0877CD39B025}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{15DDC42D-13A8-432B-B31D-36A8FB50758F}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{1CD6E593-ABBF-45AC-9F94-21E8F1BDC10B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{2B584AEB-6C8F-4238-89E4-850CFD7B2065}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{30A2947A-664F-440B-908D-E0FEDFEAE5DE}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{34BCEF11-CE38-48EC-9D08-5CC0557E8887}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{3B06CDDC-2ECB-45DC-B565-D41CC095BE40}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{3FD7EB0A-96B6-43E0-9D94-44929F3FD1B3}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Classes\Interface\{4D2525EE-3B7B-44C6-8960-77843DBC67A3}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{89449F37-4AB2-46ED-A566-BB3A7797701B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F509ADC2-B40E-470F-A7B7-45191486B5CB}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89449F37-4AB2-46ED-A566-BB3A7797701B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F509ADC2-B40E-470F-A7B7-45191486B5CB}

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{398C01F1-E584-46AD-A649-4F78B435DCFE}]

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}]

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}]

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]

 

[-] Valor Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30D1E30D-B7F5-4C7A-8EDA-9F02966538A8}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89449F37-4AB2-46ED-A566-BB3A7797701B}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F509ADC2-B40E-470F-A7B7-45191486B5CB}

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Classes\Interface\{94952EC4-DB66-3F32-BE4C-F0BB875EA98E}

 

[-] Llave Eliminar : HKCU\Software\GlobalUpdate

 

[-] Llave Eliminar : HKCU\Software\InstalledBrowserExtensions

 

[-] Llave Eliminar : HKCU\Software\WEBAPP

 

[-] Llave Eliminar : HKLM\SOFTWARE\Clara

 

[-] Llave Eliminar : HKLM\SOFTWARE\GlobalUpdate

 

[-] Llave Eliminar : HKLM\SOFTWARE\InstalledBrowserExtensions

 

[-] Llave Eliminar : HKLM\SOFTWARE\iSafe

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A2C98B47-B5F4-94AA-281D-4135416774CF}

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MiPony

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect

 

[!] Llave No Eliminar : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A2C98B47-B5F4-94AA-281D-4135416774CF}

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ac225167-00fc-452d-94c5-bb93600e7d9a}

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebSpades

 

[!] Llave No Eliminar : HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\GlobalUpdate

 

[!] Llave No Eliminar : HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\InstalledBrowserExtensions

 

[!] Llave No Eliminar : HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\WEBAPP

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\DataMngr

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\SweetIM

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C9E3869A16248439FE3FF9EB02207A

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739

 

[-] Llave Eliminar : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3038A20B9089EC34D8F74220191FAB30

 

[-] Llave Eliminar : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PriceMeterLiveUpdate.exe

 

[-] Valor Eliminar : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]

 

[!] Valor No Eliminar : HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\app.mam.conduit.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bubbledock.es

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\iminent.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\inst.bubbledock.es

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\portaldosites.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\superfish.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.iminent.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.portaldosites.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\advanced-office-password-recovery.softonic.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\allin1convert.dl.tb.ask.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\app.mam.conduit.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\articulos.softonic.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\bobrowser.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\chatango.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-search.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\es.yhs4.search.yahoo.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\inspsearch.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\isearch.omiga-plus.com

 

[-] Llave Eliminar : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com

 

[-] Valor Eliminar : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [SearchProtection]

 

[!] Valor No Eliminar : HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\Software\Microsoft\Windows\CurrentVersion\Run [SearchProtection]

 

 

***** [ Navegadores Web ] *****

 

 

[-] [C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Eliminar : hxxp://vosteran.com/?f=7&a=vst_ir_15_04_ie&cd=2XzuyEtN2Y1L1Qzu0CzztB0AtCyEtC0FzytDyDtD0EtD0FyEtN0D0Tzu0StCtCtCyDtN1L2XzutAtFyBtFtCtFtBtN1L1CzutCyEtBzytDyD1V1ByEtN1L1G1B1V1N2Y1L1Qzu2StA0D0EyCyB0CyDtBtGtDzzyD0DtG0EtB0F0EtG0FtDyByBtGyEyB0FzytAzy0ByB0FyC0Czy2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0D0A0B0ByD0CzztG0Dzy0C0BtGyE0A0E0BtGzz0FyBtDtGzyzyzy0A0FzzzztB0B0B0Ezy2Q&cr=1073273692&ir=

 

[-] [C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Eliminar : hxxp://www.mystartsearch.com/?type=hp&ts=1416496451&from=smt&uid=ST31000528AS_5VP8BB14XXXX5VP8BB14

 

[-] [C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Eliminar : fdjfnhemcmjbjgbhngpabpfdkifonajj

 

[-] [C:\Users\dasina\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Eliminar : oilkkkefbalmbfppgjmgjoefbclebkce

 

 

*************************

 

 

:: Llaves "Tracing" removidas

 

:: Winsock Configuración borrada

 

 

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [18635 bytes] ##########


  • 0

#10
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Fix result of Farbar Recovery Scan Tool (x64) Version:27-01-2016

 

Ran by dasina (2016-02-07 13:00:01) Run:1

 

Running from C:\Users\dasina\Desktop

 

Loaded Profiles: dasina (Available Profiles: dasina)

 

Boot Mode: Normal

 

==============================================

 

 

fixlist content:

 

*****************

 

Start

 

CreateRestorePoint:

 

CloseProcesses:

 

EmptyTemp:

 

HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\...\MountPoints2: {9d45561d-95e8-11e3-a21e-442a60d55ff7} - G:\LGAutoRun.exe

 

CMD: type "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt"

 

CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

 

CHR Extension: (CutThePricee) - C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn\ []

 

2016-02-07 05:02 - 2015-04-02 15:22 - 00000992 _____ C:\Windows\Tasks\jjOjJlnt.job

 

2016-02-07 05:02 - 2012-10-20 17:37 - 00000202 _____ C:\Windows\Tasks\AutoKMS.job

 

End

 

*****************

 

 

Restore point was successfully created.

 

Processes closed successfully.

 

"HKU\S-1-5-21-2951719654-1521927482-3716386808-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9d45561d-95e8-11e3-a21e-442a60d55ff7}" => key removed successfully

 

HKCR\CLSID\{9d45561d-95e8-11e3-a21e-442a60d55ff7} => key not found.

 

 

=========  type "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\how_recover+sob.txt" =========

 

 

 

__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#!__!@#!@#! 

 

 

NOT YOUR LANGUAGE? USE https://translate.google.com

 

 

What happened to your files ?

 

All of your files were protected by a strong encryption with RSA-4096.

 

More information about the encryption keys using RSA-4096 can be found here: http://en.wikipedia...._(cryptosystem)

 

 

How did this happen ?

 

!!! Specially for your PC was generated personal RSA-4096 KEY, both public and private.

 

!!! ALL YOUR FILES were encrypted with the public key, which has been transferred to your computer via the Internet.

 

Decrypting of your files is only possible with the help of the private key and decrypt program, which is on our secret server.

 

 

What do I do ?

 

So, there are two ways you can choose: wait for a miracle and get your price doubled, or start obtaining BTC NOW, and restore your data easy way.

 

If You have really valuable data, you better not waste your time, because there is no other way to get your files, except make a payment.

 

 

For more specific instructions, please visit your personal home page, there are a few different addresses pointing to your page below:

 

1. http://idjsnfnkwjefn...8BB4EBBA6B8A3C9

 

2. http://krfdnhfnsai3d...8BB4EBBA6B8A3C9

 

3. http://idjsnfnkwjefn...8BB4EBBA6B8A3C9

 

4. https://4nauizsaaopu...8BB4EBBA6B8A3C9

 

5. https://4nauizsaaopu...8BB4EBBA6B8A3C9

 

6. https://4nauizsaaopu...8BB4EBBA6B8A3C9

 

 

If for some reasons the addresses are not available, follow these steps:

 

1. Download and install tor-browser: http://www.torprojec...browser.html.en

 

2. After a successful installation, run the browser and wait for initialization.

 

3. Type in the address bar: 4nauizsaaopuj3qj.onion/28BB4EBBA6B8A3C9

 

4. Follow the instructions on the site.

 

 

!!! IMPORTANT INFORMATION:

 

!!! Your personal pages:

 

http://idjsnfnkwjefn...8BB4EBBA6B8A3C9

 

http://krfdnhfnsai3d...8BB4EBBA6B8A3C9

 

http://idjsnfnkwjefn...8BB4EBBA6B8A3C9

 

https://4nauizsaaopuj3qj.onion.to/28BB4EBBA6B8A3C9 

 

!!! Your personal page in TOR Browser: 4nauizsaaopuj3qj.onion/28BB4EBBA6B8A3C9

 

!!! Your personal identification ID: 28BB4EBBA6B8A3C9

 

00000000000000000000000000000

 

 

========= End of CMD: =========

 

 

"HKLM\SOFTWARE\Policies\Google" => key removed successfully

 

C:\ProgramData\nkdemhehpknejpimeadmlfelnldiclhn\ => moved successfully

 

C:\Windows\Tasks\jjOjJlnt.job => moved successfully

 

C:\Windows\Tasks\AutoKMS.job => moved successfully

 

EmptyTemp: => 10.5 GB temporary data Removed.

 

 

 

The system needed a reboot.

 

 

==== End of Fixlog 13:04:06 ====


  • 0

#11
drakang

drakang

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

# AdwCleaner v5.032 - Logfile created 07/02/2016 at 13:29:37

 

# Updated 31/01/2016 by Xplode

 

# Database : 2016-01-25.3 [Local]

 

# Operating system : Windows 7 Ultimate Service Pack 1 (x64)

 

# Username : dasina - DASINA-PC

 

# Running from : C:\Users\dasina\Desktop\AdwCleaner.exe

 

# Option : Cleaning

 

# Support : http://toolslib.net/forum

 

 

***** [ Services ] *****

 

 

 

***** [ Folders ] *****

 

 

 

***** [ Files ] *****

 

 

 

***** [ DLLs ] *****

 

 

 

***** [ Shortcuts ] *****

 

 

 

***** [ Scheduled tasks ] *****

 

 

 

***** [ Registry ] *****

 

 

 

***** [ Web browsers ] *****

 

 

 

*************************

 

 

:: "Tracing" keys removed

 

:: Proxy settings cleared

 

:: Winsock settings cleared

 

:: TCP/IP settings cleared

 

:: Firewall settings cleared

 

:: IPSec settings cleared

 

:: BITS queue cleared

 

:: Chrome policies deleted

 

 

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [835 bytes] ##########


  • 0

#12
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 3,330 posts
Are you using a pirated version of Windows OS or Office software?


 

Uninstall the following software--
  • pgcchelper
  • Price Meter
  • sweet-page Browser newtab extension
  • Step #3 Fix with FRST
    Make sure that you still have FRST.exe on your Desktop. If you do not have it, download the suitable version from here to your Desktop.
    • Open Notepad.exe. Do not use any other text editor software;
    • Copy and Paste the contents inside the code-box to your Notepad --
      Start
      CreateRestorePoint:
      CloseProcesses:
      EmptyTemp:
      Google Update Helper (x32 Version: 1.3.23.0 - PriceMeter) Hidden <==== ATTENTION
      Task: {124D9EF0-5D3B-4CC1-AB04-4C1D0B0242AC} - \Vosteran_helper -> No File <==== ATTENTION
      Task: {2A666E09-DAAA-43CD-93B2-A8778ACDF3A9} - \PriceMeterLiveUpdateUpdateTaskMachineUA -> No File <==== ATTENTION
      Task: {38AF8BC3-0959-4F7A-85FB-8C41E28689F4} - \pricemeterwatcher -> No File <==== ATTENTION
      Task: {4923D1FD-2465-4D51-B31E-4E4380F3F445} - \PriceMeterLiveUpdateUpdateTaskMachineCore -> No File <==== ATTENTION
      Task: {4FDB18CC-93BB-4D36-A2D0-A98497954B68} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-5 -> No File <==== ATTENTION
      Task: {58E2771F-D4AC-48C2-ADE4-30482E4E2192} - \pricemeterdownloader -> No File <==== ATTENTION
      Task: {690ED305-796A-4176-A540-DAC411C5BD38} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-7 -> No File <==== ATTENTION
      Task: {6D3FD402-F424-4FFF-96B3-A033E55A1D28} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
      Task: {97C19FBE-CC96-4CBC-BA21-D047A5C5F958} - \pricemetertask -> No File <==== ATTENTION
      Task: {A43E457D-430B-4645-8A71-E002F909D137} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-6 -> No File <==== ATTENTION
      Task: {AF62F826-6787-4460-B1AD-319D581B0B17} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-5_user -> No File <==== ATTENTION
      Task: {E1A0FD7D-EFE7-493E-9A61-2F8FD7E47F2D} - System32\Tasks\jjOjJlnt => C:\Users\dasina\AppData\Roaming\jjOjJlnt.exe <==== ATTENTION
      Task: {EB6CD860-CD24-4746-899F-3C2D7E7F3130} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-1 -> No File <==== ATTENTION
      Task: {F67C7C0E-E394-4556-9288-CD78984E114C} - \3c46450d-94d6-443f-9d86-fc43e1edb1e9-11 -> No File <==== ATTENTION
      Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
      Task: C:\Windows\Tasks\jjOjJlnt.job => C:\Users\dasina\AppData\Roaming\jjOjJlnt.exe <==== ATTENTION
      C:\Windows\AutoKMS.exe
      C:\Users\dasina\AppData\Roaming\jjOjJlnt.exe
      FirewallRules: [TCP Query User{28B3C61C-EAC3-4BE7-8F42-275D3AD41C10}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
      FirewallRules: [UDP Query User{5CFF73BF-5D4B-4B8F-A2BF-27935A6369DB}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
      End
    • Click on File > Save as...
      • Inside the File Name box type fixlist.txt;
      • From the Save as type drop down list, choose All Files
    • Save the file to your Desktop;
    • Re-run FRST.exe and click Fix;
      • Note: If FRST advises there is a new updated version to be downloaded, do so/allow this.
    • After the completion, a log will be produced;
    • Copy and Paste the contents of the log in your next reply.
 
  • Required Log(s):
    • FRST Fix Log
Regards,
Valinorum
  • 0

#13
Valinorum

Valinorum

    GeekU Guardian Bot

  • GeekU Moderator
  • 3,330 posts

Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP