Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

for rkinner

virus disk slow laptop

  • Please log in to reply

#31
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

Try disabling the network adapter.

 

Also I see a lot of Pagefaults in your first summary.  Can you give me a screen shot of the Processes page sorted with the pagefaults at the top?


  • 0

Advertisements


#32
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Here's a new summary. I ran Latency Mon with the network adapter disabled. Also, here's the screenshot for the pagefaults. 

 

 _________________________________________________________________________________________________________

CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts. 
LatencyMon has been analyzing your system for  0:00:21  (h:mm:ss) on all processors.
 
 
_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        DESKTOP-PAG6OF6
OS version:                                           Windows 10 , 10.0, build: 18363 (x64)
Hardware:                                             HP 14 Notebook PC, Hewlett-Packard, 22D0
CPU:                                                  AuthenticAMD AMD A4-6210 APU with AMD Radeon R3 Graphics 
Logical processors:                                   4
Processor groups:                                     1
RAM:                                                  2776 MB total
 
 
_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed:                                   1797 MHz
 
Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.
 
WARNING: the CPU speed that was measured is only a fraction of the CPU speed reported. Your CPUs may be throttled back due to variable speed settings and thermal issues. It is suggested that you run a utility which reports your actual CPU frequency and temperature. 
 
 
 
_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.
 
Highest measured interrupt to process latency (µs):   293,90
Average measured interrupt to process latency (µs):   13,571018
 
Highest measured interrupt to DPC latency (µs):       137,30
Average measured interrupt to DPC latency (µs):       4,346519
 
 
_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.
 
Highest ISR routine execution time (µs):              92,283806
Driver with highest ISR routine execution time:       i8042prt.sys - Controlador de puerto de i8042, Microsoft Corporation
 
Highest reported total ISR routine time (%):          0,014067
Driver with highest ISR total time:                   i8042prt.sys - Controlador de puerto de i8042, Microsoft Corporation
 
Total time spent in ISRs (%)                          0,016961
 
ISR count (execution time <250 µs):                   653
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-999 µs):                0
ISR count (execution time 1000-1999 µs):              0
ISR count (execution time 2000-3999 µs):              0
ISR count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.
 
Highest DPC routine execution time (µs):              210,955481
Driver with highest DPC routine execution time:       i8042prt.sys - Controlador de puerto de i8042, Microsoft Corporation
 
Highest reported total DPC routine time (%):          0,045296
Driver with highest DPC total execution time:         rspLLL64.sys - Resplendence Latency Monitoring and Auxiliary Kernel Library, Resplendence Software Projects Sp.
 
Total time spent in DPCs (%)                          0,132242
 
DPC count (execution time <250 µs):                   13477
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-999 µs):                0
DPC count (execution time 1000-1999 µs):              0
DPC count (execution time 2000-3999 µs):              0
DPC count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.
 
NOTE: some processes were hit by hard pagefaults. If these were programs producing audio, they are likely to interrupt the audio stream resulting in dropouts, clicks and pops. Check the Processes tab to see which programs were hit.
 
Process with highest pagefault count:                 svchost.exe
 
Total number of hard pagefaults                       32
Hard pagefault count of hardest hit process:          20
Number of processes hit:                              3
 
 
_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       0,531440
CPU 0 ISR highest execution time (µs):                92,283806
CPU 0 ISR total execution time (s):                   0,014098
CPU 0 ISR count:                                      617
CPU 0 DPC highest execution time (µs):                210,955481
CPU 0 DPC total execution time (s):                   0,103997
CPU 0 DPC count:                                      13212
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0,096179
CPU 1 ISR highest execution time (µs):                8,274903
CPU 1 ISR total execution time (s):                   0,000051
CPU 1 ISR count:                                      9
CPU 1 DPC highest execution time (µs):                122,205899
CPU 1 DPC total execution time (s):                   0,006936
CPU 1 DPC count:                                      236
_________________________________________________________________________________________________________
CPU 2 Interrupt cycle time (s):                       0,068196
CPU 2 ISR highest execution time (µs):                16,638843
CPU 2 ISR total execution time (s):                   0,000183
CPU 2 ISR count:                                      27
CPU 2 DPC highest execution time (µs):                120,803005
CPU 2 DPC total execution time (s):                   0,000812
CPU 2 DPC count:                                      29
_________________________________________________________________________________________________________
CPU 3 Interrupt cycle time (s):                       0,057594
CPU 3 ISR highest execution time (µs):                0,0
CPU 3 ISR total execution time (s):                   0,0
CPU 3 ISR count:                                      0
CPU 3 DPC highest execution time (µs):                0,0
CPU 3 DPC total execution time (s):                   0,0
CPU 3 DPC count:                                      0
_________________________________________________________________________________________________________
 

Attached Thumbnails

  • Captura de pantalla (19).png

  • 0

#33
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

Since fondrvhost.exe appears to causing pagefaults it is possible that the font cache has gotten corrupt.

 

See if you can follow the instructions here:

 

https://winaero.com/...che-windows-10/


  • 0

#34
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

I did what it said. Had to download Exec TI to properly delete the files, but managed to do it. I also made another run with Latency Mon since I guessed you would want to see it. Here's de summary and a screenshot of the processes.

 

  _________________________________________________________________________________________________________

CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts. 
LatencyMon has been analyzing your system for  0:00:20  (h:mm:ss) on all processors.
 
 
_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        DESKTOP-PAG6OF6
OS version:                                           Windows 10 , 10.0, build: 18363 (x64)
Hardware:                                             HP 14 Notebook PC, Hewlett-Packard, 22D0
CPU:                                                  AuthenticAMD AMD A4-6210 APU with AMD Radeon R3 Graphics 
Logical processors:                                   4
Processor groups:                                     1
RAM:                                                  2776 MB total
 
 
_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed:                                   1797 MHz
 
Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.
 
WARNING: the CPU speed that was measured is only a fraction of the CPU speed reported. Your CPUs may be throttled back due to variable speed settings and thermal issues. It is suggested that you run a utility which reports your actual CPU frequency and temperature. 
 
 
 
_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.
 
Highest measured interrupt to process latency (µs):   722,90
Average measured interrupt to process latency (µs):   16,450799
 
Highest measured interrupt to DPC latency (µs):       708,50
Average measured interrupt to DPC latency (µs):       6,643259
 
 
_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.
 
Highest ISR routine execution time (µs):              236,423484
Driver with highest ISR routine execution time:       ndis.sys - Especificación de interfaz de controlador de red (NDIS), Microsoft Corporation
 
Highest reported total ISR routine time (%):          0,038996
Driver with highest ISR total time:                   storport.sys - Microsoft Storage Port Driver, Microsoft Corporation
 
Total time spent in ISRs (%)                          0,075264
 
ISR count (execution time <250 µs):                   2521
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-999 µs):                0
ISR count (execution time 1000-1999 µs):              0
ISR count (execution time 2000-3999 µs):              0
ISR count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.
 
Highest DPC routine execution time (µs):              839,393990
Driver with highest DPC routine execution time:       ndis.sys - Especificación de interfaz de controlador de red (NDIS), Microsoft Corporation
 
Highest reported total DPC routine time (%):          0,125373
Driver with highest DPC total execution time:         storport.sys - Microsoft Storage Port Driver, Microsoft Corporation
 
Total time spent in DPCs (%)                          0,399708
 
DPC count (execution time <250 µs):                   14167
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-999 µs):                124
DPC count (execution time 1000-1999 µs):              0
DPC count (execution time 2000-3999 µs):              0
DPC count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.
 
NOTE: some processes were hit by hard pagefaults. If these were programs producing audio, they are likely to interrupt the audio stream resulting in dropouts, clicks and pops. Check the Processes tab to see which programs were hit.
 
Process with highest pagefault count:                 skypeapp.exe
 
Total number of hard pagefaults                       1252
Hard pagefault count of hardest hit process:          355
Number of processes hit:                              28
 
 
_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       0,721863
CPU 0 ISR highest execution time (µs):                236,423484
CPU 0 ISR total execution time (s):                   0,059693
CPU 0 ISR count:                                      2464
CPU 0 DPC highest execution time (µs):                839,393990
CPU 0 DPC total execution time (s):                   0,293331
CPU 0 DPC count:                                      13249
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0,138640
CPU 1 ISR highest execution time (µs):                50,954925
CPU 1 ISR total execution time (s):                   0,000465
CPU 1 ISR count:                                      20
CPU 1 DPC highest execution time (µs):                467,670006
CPU 1 DPC total execution time (s):                   0,013257
CPU 1 DPC count:                                      479
_________________________________________________________________________________________________________
CPU 2 Interrupt cycle time (s):                       0,124651
CPU 2 ISR highest execution time (µs):                11,169727
CPU 2 ISR total execution time (s):                   0,000177
CPU 2 ISR count:                                      33
CPU 2 DPC highest execution time (µs):                401,594324
CPU 2 DPC total execution time (s):                   0,008739
CPU 2 DPC count:                                      342
_________________________________________________________________________________________________________
CPU 3 Interrupt cycle time (s):                       0,107075
CPU 3 ISR highest execution time (µs):                7,909293
CPU 3 ISR total execution time (s):                   0,000017
CPU 3 ISR count:                                      4
CPU 3 DPC highest execution time (µs):                173,623261
CPU 3 DPC total execution time (s):                   0,005191
CPU 3 DPC count:                                      221
_________________________________________________________________________________________________________
 

 

 


  • 0

#35
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

I didn't attach the screenshot apparently. Here it is. 

Attached Thumbnails

  • Captura de pantalla (20).png

  • 0

#36
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

Did you reboot after the font fix?

 

Also this one is with the network adapter enabled.  Can you do another one with the network adapter disabled?


  • 0

#37
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Yes I rebooted. Here's the new summery with the screenshot of processes.

 

_________________________________________________________________________________________________________

CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts. 
LatencyMon has been analyzing your system for  0:00:20  (h:mm:ss) on all processors.
 
 
_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        DESKTOP-PAG6OF6
OS version:                                           Windows 10 , 10.0, build: 18363 (x64)
Hardware:                                             HP 14 Notebook PC, Hewlett-Packard, 22D0
CPU:                                                  AuthenticAMD AMD A4-6210 APU with AMD Radeon R3 Graphics 
Logical processors:                                   4
Processor groups:                                     1
RAM:                                                  2776 MB total
 
 
_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed:                                   1797 MHz
 
Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.
 
WARNING: the CPU speed that was measured is only a fraction of the CPU speed reported. Your CPUs may be throttled back due to variable speed settings and thermal issues. It is suggested that you run a utility which reports your actual CPU frequency and temperature. 
 
 
 
_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.
 
Highest measured interrupt to process latency (µs):   279,30
Average measured interrupt to process latency (µs):   15,056778
 
Highest measured interrupt to DPC latency (µs):       270,30
Average measured interrupt to DPC latency (µs):       5,324220
 
 
_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.
 
Highest ISR routine execution time (µs):              48,550918
Driver with highest ISR routine execution time:       storport.sys - Microsoft Storage Port Driver, Microsoft Corporation
 
Highest reported total ISR routine time (%):          0,007664
Driver with highest ISR total time:                   storport.sys - Microsoft Storage Port Driver, Microsoft Corporation
 
Total time spent in ISRs (%)                          0,007664
 
ISR count (execution time <250 µs):                   501
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-999 µs):                0
ISR count (execution time 1000-1999 µs):              0
ISR count (execution time 2000-3999 µs):              0
ISR count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.
 
Highest DPC routine execution time (µs):              249,622705
Driver with highest DPC routine execution time:       dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation
 
Highest reported total DPC routine time (%):          0,038232
Driver with highest DPC total execution time:         dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation
 
Total time spent in DPCs (%)                          0,128413
 
DPC count (execution time <250 µs):                   7588
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-999 µs):                0
DPC count (execution time 1000-1999 µs):              0
DPC count (execution time 2000-3999 µs):              0
DPC count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.
 
NOTE: some processes were hit by hard pagefaults. If these were programs producing audio, they are likely to interrupt the audio stream resulting in dropouts, clicks and pops. Check the Processes tab to see which programs were hit.
 
Process with highest pagefault count:                 svchost.exe
 
Total number of hard pagefaults                       259
Hard pagefault count of hardest hit process:          249
Number of processes hit:                              5
 
 
_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       0,322897
CPU 0 ISR highest execution time (µs):                48,550918
CPU 0 ISR total execution time (s):                   0,005375
CPU 0 ISR count:                                      429
CPU 0 DPC highest execution time (µs):                249,622705
CPU 0 DPC total execution time (s):                   0,094361
CPU 0 DPC count:                                      7245
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0,087125
CPU 1 ISR highest execution time (µs):                27,751252
CPU 1 ISR total execution time (s):                   0,000785
CPU 1 ISR count:                                      72
CPU 1 DPC highest execution time (µs):                102,336672
CPU 1 DPC total execution time (s):                   0,007407
CPU 1 DPC count:                                      289
_________________________________________________________________________________________________________
CPU 2 Interrupt cycle time (s):                       0,059754
CPU 2 ISR highest execution time (µs):                0,0
CPU 2 ISR total execution time (s):                   0,0
CPU 2 ISR count:                                      0
CPU 2 DPC highest execution time (µs):                82,998331
CPU 2 DPC total execution time (s):                   0,001145
CPU 2 DPC count:                                      44
_________________________________________________________________________________________________________
CPU 3 Interrupt cycle time (s):                       0,048740
CPU 3 ISR highest execution time (µs):                0,0
CPU 3 ISR total execution time (s):                   0,0
CPU 3 ISR count:                                      0
CPU 3 DPC highest execution time (µs):                88,487479
CPU 3 DPC total execution time (s):                   0,00030
CPU 3 DPC count:                                      10
_________________________________________________________________________________________________________
 

Attached Thumbnails

  • Captura de pantalla (21).png

  • 0

#38
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

With and without the network adapter, latency monitor seems happy.  I'm just surprised that  the font cache made that much difference.  I don't like the number of page faults I see with the network adapter connected but it doesn't seem to bother latency monitor.  I assume the page faults are because you have so little RAM (3GB - we usually recommend 8 GB for 64 bit Win 10.  Any chance of adding RAM?  What is the maximum that your PC can take?)  

 

If you don't use Skype you could go in and uninstall it or set it to not start when you boot.  (Go in to Skype, Settings, General, then turn off the first four options see attachment)

 

Annotation 2020-04-14 170240.jpg

 

Let's run FRST scan (with Addition.txt checked) again and see if there is anything else that needs fixing.  Post both logs.

 

 

 

 


  • 0

#39
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Thanks for the advice on the RAM. I'm in a laptop, so it's more complicated. But I keep it in mind. As for he logs, here they are.

 

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 14-04-2020

Ejecutado por ivanc (14-04-2020 19:30:37)
Ejecutado desde C:\Users\ivanc\Downloads
Windows 10 Home Single Language Versión 1909 18363.752 (X64) (2020-04-04 22:28:19)
Modo de Inicio: Normal
==========================================================
 
 
==================== Cuentas: =============================
 
Administrador (S-1-5-21-1840741467-1113686577-3156136756-500 - Administrator - Disabled)
COOKES (S-1-5-21-1840741467-1113686577-3156136756-1005 - Limited - Enabled) => C:\Users\COOKES
DefaultAccount (S-1-5-21-1840741467-1113686577-3156136756-503 - Limited - Disabled)
Invitado (S-1-5-21-1840741467-1113686577-3156136756-501 - Limited - Disabled)
ivanc (S-1-5-21-1840741467-1113686577-3156136756-1001 - Administrator - Enabled) => C:\Users\ivanc
WDAGUtilityAccount (S-1-5-21-1840741467-1113686577-3156136756-504 - Limited - Disabled)
 
==================== Centro de Seguridad ========================
 
(Si una entrada es incluida en el fixlist, será eliminada.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Programas instalados ======================
 
(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)
 
µTorrent (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\uTorrent) (Version: 3.5.5.45628 - BitTorrent Inc.)
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.1202.1711.103 - Alps Electric)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.163 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HDD Regenerator (HKLM-x32\...\{2445981B-A23B-4A0E-AD15-3D391BDAEC3E}) (Version: 1.71.0012 - Abstradrome)
HDDlife Pro 4.2 (HKLM-x32\...\{856B2098-F5F0-459C-A254-E9BD6A589C0B}) (Version: 4.2.204 - BinarySense Inc.)
HP Support Solutions Framework (HKLM-x32\...\{D62E0D31-0CD3-4F69-B1AE-EB102A717A22}) (Version: 12.15.14.3 - HP Inc.)
LatencyMon 6.71 (HKLM\...\LatencyMon_is1) (Version:  - Resplendence Software Projects Sp.)
Microsoft OneDrive (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0012 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Spotify (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Spotify) (Version: 1.1.30.658.gf13cde74 - Spotify AB)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.4.4445 - TeamViewer)
WhatsApp (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\WhatsApp) (Version: 0.4.2088 - WhatsApp)
WinZip 24.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C24127}) (Version: 24.0.14033 - Corel Corporation)
 
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-04-05] (Microsoft Studios) [MS Ad]
MSN El tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
 
==================== Personalizado CLSID (Lista blanca): ==============
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ContextMenuHandlers1: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
ContextMenuHandlers6: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
 
==================== Codecs (Lista blanca) ====================
 
==================== Accesos directos & WMI ========================
 
==================== Módulos cargados (Lista blanca) =============
 
==================== Alternate Data Streams (Lista blanca) ========
 
(Si una entrada es incluida en el fixlist, solamente los ADS serán eliminados.)
 
AlternateDataStreams: C:\ProgramData\TEMP:1AAB2E68 [119]
AlternateDataStreams: C:\ProgramData\TEMP:55B41E6A [140]
 
==================== Modo Seguro (Lista blanca) ==================
 
==================== Asociación (Lista blanca) =================
 
==================== Internet Explorer sitios de confianza/restringidos ==========
 
==================== Hosts contenido: =========================
 
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
 
2019-03-19 01:49 - 2019-03-19 01:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
 
==================== Otras Áreas ===========================
 
(Actualmente no existe una corrección automática para esta sección.)
 
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 100.72.3.109 - 100.72.3.97
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Firewall de Windows está habilitado.
 
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
 
(Si una entrada es incluida en el fixlist, será eliminada.)
 
MSCONFIG\Services: McAfee WebAdvisor => 2
MSCONFIG\Services: TeamViewer => 2
HKLM\...\StartupApproved\StartupFolder: => "Precargador WinZip.lnk"
HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk"
HKLM\...\StartupApproved\Run: => "Apoint"
HKLM\...\StartupApproved\Run: => "WinZip UN"
HKLM\...\StartupApproved\Run: => "WinZip FAH"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\StartupFolder: => "HDDlife.lnk"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\Run: => "Spotify"
 
==================== Reglas de firewall (Lista blanca) ================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
FirewallRules: [{9FD110A3-F027-44FA-9683-D55C5E74AD0D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{3895FAAF-B581-40A4-A6D0-689EE3C59376}C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{5512520A-E07A-410D-835F-C6724773E627}C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{0A123001-370F-4651-98B0-25F9ADBE9702}C:\users\ivanc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ivanc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{7D86CDD1-2F9B-4E0C-B6C5-51799A7807FA}C:\users\ivanc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ivanc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{010CAE29-27CD-45BB-ABC3-29A331F76E10}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1DC4320A-D14E-454D-B52B-EC4B3E371518}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{5CF5B63A-E197-41BA-911C-C60BB5FD1C7D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C0C01ABA-CDBE-495C-B7E2-4397D80019DF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{46209B81-AFCD-430F-BCD4-6D4196BCDF50}C:\users\ivanc\onedrive\escritorio\anydesk.exe] => (Allow) C:\users\ivanc\onedrive\escritorio\anydesk.exe Ningún archivo
FirewallRules: [UDP Query User{FEFA5D21-3356-443F-AB91-AF2786E85A4E}C:\users\ivanc\onedrive\escritorio\anydesk.exe] => (Allow) C:\users\ivanc\onedrive\escritorio\anydesk.exe Ningún archivo
FirewallRules: [{9732E2E6-1857-4CE0-B182-7FB76A9B67AE}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{271CFB19-7C90-44BF-907E-D5C1F0F673FD}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{2249F6B1-9F77-4867-A258-D887CDEAF737}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{6DAF8AF8-852E-4552-9322-F0EAACC4946D}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{9E39DAD4-EFB6-4AFC-BF56-5BDF271EFA21}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{920FF816-4922-46CB-8991-0BA4C0BC2112}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
 
==================== Puntos de Restauración =========================
 
07-04-2020 20:55:53 Punto de control programado
11-04-2020 18:07:59 Instalador de Módulos de Windows
 
==================== Dispositivos defectuosos en el Administrador de dispositivos ============
 
Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Errores del registro de eventos: ========================
 
Errores de aplicación:
==================
Error: (04/14/2020 01:30:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nombre de la aplicación con errores: svchost.exe_WpnUserService, versión: 10.0.18362.1, marca de tiempo: 0x32d6c210
Nombre del módulo con errores: wpnuserservice.dll, versión: 10.0.18362.1, marca de tiempo: 0xea13e855
Código de excepción: 0xc0000409
Desplazamiento de errores: 0x0000000000008596
Identificador del proceso con errores: 0xffc
Hora de inicio de la aplicación con errores: 0x01d611d19d01662a
Ruta de acceso de la aplicación con errores: C:\Windows\system32\svchost.exe
Ruta de acceso del módulo con errores: c:\windows\system32\wpnuserservice.dll
Identificador del informe: 8744b693-7c14-4767-900a-7898dde8fe90
Nombre completo del paquete con errores: 
Identificador de aplicación relativa del paquete con errores:
 
Error: (04/11/2020 06:08:24 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity().
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Protocolo de detección de nivel de vínculo de Microsoft.
 
System Error:
Acceso denegado.
.
 
Error: (04/11/2020 05:15:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa Microsoft.Photos.exe (versión 2020.19081.28230.0) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 1e3c
 
Hora de Inicio: 01d60f98b734cf06
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
 
Id. de informe: 1eb166e3-6845-417c-8ef6-762eeff3ba12
 
Nombre completo del paquete con errores: Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe
 
Id. de la aplicación relativa al paquete con errores: App
 
Tipo de bloqueo: Quiesce
 
Error: (04/11/2020 04:58:25 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa SkypeApp.exe (versión 8.56.0.102) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 1310
 
Hora de Inicio: 01d60ea1b056f15b
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe
 
Id. de informe: b63ea7f5-3f07-42bf-8879-3f88239a7918
 
Nombre completo del paquete con errores: Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c
 
Id. de la aplicación relativa al paquete con errores: App
 
Tipo de bloqueo: Quiesce
 
Error: (04/09/2020 04:01:53 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: NT AUTHORITY)
Description: Se denegó el acceso a los datos de rendimiento al usuario "SYSTEM" (valor de GetUserName() para el subproceso en ejecución) porque se intentó acceder desde el módulo "C:\Windows\system32\wbem\wmiprvse.exe" (valor de GetModuleFileName() para el elemento binario que emitió la consulta).
 
Error: (04/08/2020 07:03:54 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa SkypeBackgroundHost.exe (versión 8.56.0.102) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 2b9c
 
Hora de Inicio: 01d60decff4c0e2a
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
 
Id. de informe: 5b6ef291-f139-425e-be75-211676d0373b
 
Nombre completo del paquete con errores: Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c
 
Id. de la aplicación relativa al paquete con errores: ppleae38af2e007f4358a809ac99a64a67c1
 
Tipo de bloqueo: Quiesce
 
Error: (04/08/2020 02:41:27 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Error del Servicio de instantáneas de volumen: error inesperado al llamar a la rutina CoCreateInstance. HR = 0x8007045b, Se está cerrando el sistema.
.
 
Error: (04/08/2020 02:41:27 PM) (Source: VSS) (EventID: 13) (User: )
Description: Información del Servicio de instantáneas de volumen: el servidor COM con CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} y el nombre CEventSystem no puede iniciarse. [0x8007045b, Se está cerrando el sistema.
]
 
 
Errores del sistema:
=============
Error: (04/13/2020 04:04:53 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/09/2020 03:54:00 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.MicrosoftOfficeHub_18.2002.1101.0_x64__8wekyb3d8bbwe!Microsoft.MicrosoftOfficeHub.AppXt4mh7c9swwc5cmd5jgmtmwcfmvkddpn1.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/09/2020 03:54:00 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.OneConnect_5.2002.431.0_x64__8wekyb3d8bbwe!App.AppXe8pdgw5syxe8pgccbk3mcn5hanwamr0e.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/08/2020 10:57:19 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/08/2020 10:54:23 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Se agotó el tiempo de espera (30000 ms) para la respuesta de transacción del servicio CDPSvc.
 
Error: (04/08/2020 07:42:46 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe!App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/08/2020 07:03:55 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.Windows.Photos_2020.19081.28230.0_x64__8wekyb3d8bbwe!App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/08/2020 02:50:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: El servicio Administrador de mapas descargados no respondió después de iniciar.
 
 
Windows Defender:
===================================
Date: 2020-04-12 19:13:16.664
Description: 
El examen de Antivirus de Windows Defender se detuvo antes de completarse.
Id. de examen: {DCA42D20-73D4-46FA-813A-812DEC88023F}
Tipo de examen: Antimalware
Parámetros de examen: Examen rápido
Usuario: NT AUTHORITY\SYSTEM
 
Date: 2020-04-11 17:24:00.124
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.313.1137.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16900.4
Código de error: 0x80070422
Descripción del error: No se puede iniciar el servicio, porque está deshabilitado o porque no tiene dispositivos habilitados asociados a él. 
 
Date: 2020-04-11 02:33:47.695
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.313.1137.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16900.4
Código de error: 0x80070422
Descripción del error: No se puede iniciar el servicio, porque está deshabilitado o porque no tiene dispositivos habilitados asociados a él. 
 
Date: 2020-04-10 23:17:55.314
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.313.1137.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16900.4
Código de error: 0x80070422
Descripción del error: No se puede iniciar el servicio, porque está deshabilitado o porque no tiene dispositivos habilitados asociados a él. 
 
Date: 2020-04-10 21:08:09.928
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.313.1137.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16900.4
Código de error: 0x80070422
Descripción del error: No se puede iniciar el servicio, porque está deshabilitado o porque no tiene dispositivos habilitados asociados a él. 
 
Date: 2020-04-10 16:49:45.471
Description: 
Antivirus de Windows Defender detectó un error al intentar actualizar la inteligencia de seguridad.
Nueva versión de inteligencia de seguridad: 
Versión anterior de inteligencia de seguridad: 1.313.1137.0
Origen de actualización: Servidor de Microsoft Update
Tipo de inteligencia de seguridad: AntiVirus
Tipo de actualización: Completa
Usuario: NT AUTHORITY\SYSTEM
Versión actual del motor: 
Versión anterior del motor: 1.1.16900.4
Código de error: 0x80070422
Descripción del error: No se puede iniciar el servicio, porque está deshabilitado o porque no tiene dispositivos habilitados asociados a él. 
 
CodeIntegrity:
===================================
 
Date: 2020-04-09 15:59:43.461
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:58:45.873
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:58:40.628
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:58:39.695
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:57:37.832
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:57:37.391
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:57:26.632
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
Date: 2020-04-09 15:57:09.147
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.
 
==================== Información de la memoria =========================== 
 
BIOS: Insyde F.23 09/04/2014
Placa base: Hewlett-Packard 22D0
Procesador: AMD A4-6210 APU with AMD Radeon R3 Graphics 
Porcentaje de memoria en uso: 77%
RAM física total: 2776.98 MB
RAM física disponible: 624.53 MB
Virtual total: 6872.98 MB
Virtual disponible: 4146.33 MB
 
==================== Unidades ================================
 
Drive c: () (Fixed) (Total:354.42 GB) (Free:313.47 GB) NTFS
Drive d: (Nuevo vol) (Fixed) (Total:87.42 GB) (Free:87.22 GB) NTFS
Drive e: (RECOVERY) (Fixed) (Total:22 GB) (Free:2.11 GB) NTFS ==>[sistema con componentes de arranque (obtenido de unidad)]
 
\\?\Volume{dcbd3020-4d53-437c-b487-2e36b231ec39}\ (WINRE) (Fixed) (Total:0.63 GB) (Free:0.36 GB) NTFS
\\?\Volume{4dc79704-0699-4f3e-8481-9bc0dcda6473}\ () (Fixed) (Total:0.89 GB) (Free:0.41 GB) NTFS
\\?\Volume{6e78db0f-8ba7-4827-bd7c-f62a48b9eff2}\ () (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32
 
==================== MBR & Tabla de particiones ====================
 
==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: A8F41E42)
 
Partition: GPT.
 
==================== Final de Addition.txt =======================
 
 
 
 
 
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 14-04-2020
Ejecutado por ivanc (administrador) sobre DESKTOP-PAG6OF6 (Hewlett-Packard HP 14 Notebook PC) (14-04-2020 19:25:37)
Ejecutado desde C:\Users\ivanc\Downloads
Perfiles cargados: ivanc (Perfiles disponibles: ivanc & COOKES)
Platform: Windows 10 Home Single Language Versión 1909 18363.752 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Procesos (Lista blanca) =================
 
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
 
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe
(BinarySense Inc -> BinarySense, Inc.) C:\Program Files (x86)\Common Files\BinarySense\hldasvc.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <8>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20368.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20368.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.4-0\NisSrv.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCUpdate.exe
(Qualcomm Atheros -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
 
==================== Registro (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [735544 2015-08-07] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436704 2020-02-25] (Corel Corporation -> WinZip Computing, S.L.)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Run: [uTorrent] => C:\Users\ivanc\AppData\Roaming\uTorrent\uTorrent.exe [2072816 2020-04-06] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Run: [Spotify] => C:\Users\ivanc\AppData\Roaming\Spotify\Spotify.exe [22932200 2020-04-08] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-05] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Precargador WinZip.lnk [2020-04-05]
ShortcutTarget: Precargador WinZip.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing)
Startup: C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk [2020-04-08]
ShortcutTarget: HDDlife.lnk -> C:\Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe (BinarySense Inc -> BinarySense, Inc.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
 
==================== Tareas programadas (Lista blanca) ============
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
Task: {04504631-A748-419E-8F91-3928382E728B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\MpCmdRun.exe [485944 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0B7BCE4D-ACCE-4E5C-A176-DA39C1260AE1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\MpCmdRun.exe [485944 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {136C6F2E-8E2F-48CB-85E4-5680E87B43D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-10-14] (HP Inc. -> HP Inc.)
Task: {20CE0CFB-749E-4DB7-AF32-02CA7EE45A55} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\MpCmdRun.exe [485944 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {39F3A2BE-67B4-40C5-99F7-64EAEFFB4F5D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)
Task: {4647A0D3-DE60-4868-9E37-67E197905BF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)
Task: {563711BE-2F18-4608-A6EF-6EAC75E5AC4E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {668C8311-A69F-439E-A692-90026EDBC190} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\MpCmdRun.exe [485944 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C25BF6EB-2BF4-4AC5-8501-A9BC009B02E5} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {E2483116-8B5D-4CF4-B74B-4599ACA193AE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E37E7C0F-3CCC-42F3-A8E9-8463718F1D93} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {EF469890-A36E-4C7D-ACB8-A90658C6FC6C} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {F5CFC54A-EB07-4FAD-B0AB-4C7E9539206D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [134008 2020-03-25] (HP Inc. -> HP Inc.)
 
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
 
 
==================== Internet (Lista blanca) ====================
 
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
 
Tcpip\Parameters: [DhcpNameServer] 100.72.3.109 100.72.3.97
Tcpip\..\Interfaces\{b2f7bd64-1e14-42f2-8837-415e8ab09e87}: [DhcpNameServer] 100.72.3.109 100.72.3.97
 
Internet Explorer:
==================
 
Chrome: 
=======
CHR Profile: C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default [2020-04-14]
CHR DownloadDir: C:\Users\ivanc\OneDrive\Escritorio
CHR Notifications: Default -> hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://google.com.ar/
CHR StartupUrls: Default -> "hxxp://pagina12.com/","hxxps://www.google.com./","hxxp://www.google.com.ar/"
CHR Extension: (Presentaciones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-04-05]
CHR Extension: (Documentos) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-04-05]
CHR Extension: (Google Drive) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-04-05]
CHR Extension: (YouTube) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-04-05]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]
CHR Extension: (Hojas de cálculo) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-04-05]
CHR Extension: (Cablevisión Flow) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfbnbmbkemlokfckhdoaakhjogffkinc [2020-04-05]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-04-05]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-14]
CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2020-04-14]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-04-07]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-04-05]
CHR Extension: (Gmail) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-04-05]
CHR Extension: (Chrome Media Router) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-05]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
 
==================== Servicios (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
R2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [104824 2015-08-07] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
R2 AtherosSvc; C:\Windows\System32\drivers\AdminService.exe [416192 2018-11-15] (Qualcomm Atheros -> Windows ® Win 7 DDK provider)
R2 HDDlife HDD Access service; C:\Program Files (x86)\Common Files\BinarySense\hldasvc.exe [2078984 2015-10-08] (BinarySense Inc -> BinarySense, Inc.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [378744 2020-03-31] (HP Inc. -> HP Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\NisSrv.exe [3304992 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.4-0\MsMpEng.exe [103168 2020-04-12] (Microsoft Windows Publisher -> Microsoft Corporation)
 
===================== Controladores (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
S3 amdkmcsp; C:\Windows\system32\DRIVERS\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [102832 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 amdpsp; C:\Windows\system32\DRIVERS\amdpsp.sys [239976 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 athr; C:\Windows\System32\drivers\athw8x.sys [4233728 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111112 2017-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-29] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45960 2020-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [394464 2020-04-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [64736 2020-04-12] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP)
U1 avgbdisk; no ImagePath
 
==================== NetSvcs (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
 
==================== Un mes (creado) ===================
 
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
 
2020-04-14 19:25 - 2020-04-14 19:28 - 000016416 _____ C:\Users\ivanc\Downloads\FRST.txt
2020-04-14 19:25 - 2020-04-14 19:25 - 000000000 ____D C:\Users\ivanc\Downloads\FRST-OlderVersion
2020-04-14 13:32 - 2020-04-14 13:32 - 000267712 _____ C:\Windows\system32\FNTCACHE.DAT
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\Users\ivanc\AppData\Local\DBG
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\Program Files\LatencyMon
2020-04-12 21:19 - 2015-07-13 11:16 - 000026368 _____ (Resplendence Software Projects Sp.) C:\Windows\system32\Drivers\rspLLL64.sys
2020-04-12 03:00 - 2020-04-12 03:00 - 000000000 ____D C:\Users\ivanc\AppData\Local\ElevatedDiagnostics
2020-04-09 16:11 - 2020-04-12 19:40 - 000007603 _____ C:\Users\ivanc\AppData\Local\Resmon.ResmonCfg
2020-04-08 23:05 - 2020-04-08 23:05 - 000036192 _____ (Sysinternals - www.sysinternals.com) C:\Windows\system32\Drivers\PROCEXP152.SYS
2020-04-08 16:01 - 2020-04-08 16:01 - 000000000 ____D C:\Users\COOKES\Downloads\FRST64
2020-04-08 15:25 - 2020-04-08 15:25 - 000000000 ____D C:\Users\COOKES\AppData\Local\D3DSCache
2020-04-08 15:24 - 2020-04-08 15:24 - 000000000 ____D C:\Users\COOKES\AppData\Roaming\AnyDesk
2020-04-08 14:36 - 2020-04-08 14:36 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\BinarySense
2020-04-08 14:35 - 2020-04-08 14:35 - 000002605 _____ C:\ProgramData\Escritorio\HDDlife Pro.lnk
2020-04-08 14:35 - 2020-04-08 14:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDDlife
2020-04-08 14:35 - 2020-04-08 14:35 - 000000000 ____D C:\Program Files (x86)\BinarySense
2020-04-08 14:34 - 2020-04-08 14:35 - 008691712 _____ C:\Users\ivanc\HDDlifePro 4.2.204.msi
2020-04-08 14:28 - 2020-04-14 19:29 - 000000000 ____D C:\ProgramData\TEMP
2020-04-08 14:28 - 2020-04-08 14:38 - 000000000 ____D C:\Program Files (x86)\HDD Regenerator
2020-04-08 14:28 - 2020-04-08 14:28 - 000002100 _____ C:\ProgramData\Escritorio\HDD Regenerator.lnk
2020-04-08 14:28 - 2020-04-08 14:28 - 000000000 ____D C:\Users\ivanc\AppData\Local\Downloaded Installations
2020-04-08 14:28 - 2020-04-08 14:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Regenerator
2020-04-08 14:01 - 2020-04-13 17:22 - 000000000 ____D C:\ProgramData\AnyDesk
2020-04-08 14:01 - 2020-04-13 17:22 - 000000000 ____D C:\Program Files (x86)\AnyDesk
2020-04-08 13:56 - 2020-04-13 17:22 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\AnyDesk
2020-04-08 13:56 - 2020-04-08 13:56 - 003153872 _____ (philandro Software GmbH) C:\Users\ivanc\Downloads\AnyDesk.exe
2020-04-08 13:56 - 2020-04-08 13:56 - 003153872 _____ (philandro Software GmbH) C:\Users\ivanc\Downloads\AnyDesk (1).exe
2020-04-08 12:29 - 2020-04-08 15:23 - 000000000 ____D C:\Users\COOKES\AppData\Local\PlaceholderTileLogoFolder
2020-04-08 09:41 - 2020-04-08 09:42 - 000003382 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1840741467-1113686577-3156136756-1005
2020-04-08 09:40 - 2020-04-08 09:42 - 000000000 ___RD C:\Users\COOKES\OneDrive
2020-04-08 09:39 - 2020-04-08 09:39 - 000000000 ____D C:\Users\COOKES\AppData\Local\Comms
2020-04-08 09:07 - 2020-04-08 09:08 - 001159668 _____ C:\Windows\Minidump\040820-43296-01.dmp
2020-04-08 09:00 - 2020-04-08 09:00 - 000000000 ____D C:\Users\COOKES\AppData\Local\CEF
2020-04-08 09:00 - 2020-04-08 09:00 - 000000000 ____D C:\Users\COOKES\AppData\Local\Avg
2020-04-08 08:58 - 2020-04-08 08:58 - 000000000 ____D C:\Users\COOKES\AppData\LocalLow\AMD
2020-04-08 08:55 - 2020-04-08 08:57 - 000000000 ____D C:\Users\COOKES\AppData\Local\MicrosoftEdge
2020-04-08 08:55 - 2020-04-08 08:55 - 000000000 ___HD C:\Users\COOKES\MicrosoftEdgeBackups
2020-04-08 08:54 - 2020-04-08 08:54 - 000000000 ____D C:\Users\COOKES\AppData\Local\Publishers
2020-04-08 08:53 - 2020-04-08 12:29 - 000000000 ____D C:\Users\COOKES\AppData\Local\Packages
2020-04-08 08:53 - 2020-04-08 09:41 - 000000000 ____D C:\Users\COOKES\AppData\Local\Google
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ___RD C:\Users\COOKES\3D Objects
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Roaming\Adobe
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Local\VirtualStore
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Local\AMD
2020-04-08 08:52 - 2020-04-08 09:42 - 000002404 _____ C:\Users\COOKES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-04-08 08:52 - 2020-04-08 09:40 - 000000000 ____D C:\Users\COOKES
2020-04-08 08:52 - 2020-04-08 08:54 - 000000000 ____D C:\Users\COOKES\AppData\Local\ConnectedDevicesPlatform
2020-04-08 08:52 - 2020-04-08 08:52 - 000000020 ___SH C:\Users\COOKES\ntuser.ini
2020-04-08 01:11 - 2020-04-08 01:11 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2020-04-08 01:11 - 2020-04-08 01:11 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-04-08 01:11 - 2020-04-08 01:11 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 022636544 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 019813376 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 008013824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 007017472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 001545216 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001397560 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001264640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001077264 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2020-04-08 01:10 - 2020-04-08 01:10 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000456192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2020-04-08 01:10 - 2020-04-08 01:10 - 000452096 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000234496 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2020-04-08 01:10 - 2020-04-08 01:10 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000021520 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 014818816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 006525424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 003753472 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 003742544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 002800128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 002087168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001587712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001477112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001245184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000993280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000912896 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000892416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000785920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000729600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000673704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000647680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000628408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000538160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000487784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-04-08 01:09 - 2020-04-08 01:09 - 000456504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000410112 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 000277864 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000123952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000066624 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000050544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 004563200 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 003728384 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 003547648 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001945600 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001918976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001757096 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-04-08 01:08 - 2020-04-08 01:08 - 001726264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001512832 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 001427456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001378528 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001300280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 001261808 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001257472 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001243648 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001136128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001011200 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000915192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000811320 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000759272 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000747320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000684560 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000638480 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000618296 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000604984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000515600 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000513576 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000465208 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000323584 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000259776 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000178192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000164368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000147696 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000142544 _____ (Microsoft Corporation) C:\Windows\system32\LicensingUI.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000115120 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000102216 _____ (Microsoft Corporation) C:\Windows\system32\changepk.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\UpgradeResultsUI.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000033080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\sbservicetrigger.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 017790464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 007849216 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 003586872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 003109376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002143232 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002126144 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002114560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001960448 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001762816 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001719808 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001497600 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001413704 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001263856 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 001180672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001127424 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001071616 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000874512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000437560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000416016 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000297272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000251392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000231912 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000193848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000151352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000059192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000047208 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\WpcProxyStubs.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2020-04-07 18:58 - 2020-04-08 18:33 - 000000000 ____D C:\Users\ivanc\AppData\LocalLow\uTorrent
2020-04-07 18:15 - 2020-04-07 18:15 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\ivanc\Downloads\avg_antivirus_free_setup (1).exe
2020-04-07 18:10 - 2020-04-07 18:10 - 000000000 ____D C:\Users\ivanc\AppData\Local\Avg
2020-04-07 17:29 - 2020-04-07 17:26 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-04-07 17:28 - 2020-04-07 17:28 - 000011960 _____ C:\Users\ivanc\OneDrive\Documentos\cc_20200407_172835.reg
2020-04-07 17:27 - 2020-04-09 16:02 - 000000000 ____D C:\ProgramData\AVG
2020-04-07 17:27 - 2020-04-07 17:27 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\ivanc\Downloads\avg_antivirus_free_setup.exe
2020-04-07 17:14 - 2020-04-07 17:14 - 000000000 ____D C:\Windows\pss
2020-04-07 17:06 - 2020-04-07 17:06 - 000000000 ____D C:\Users\ivanc\AppData\Local\OneDrive
2020-04-07 16:48 - 2020-04-07 17:05 - 000000000 ____D C:\Users\ivanc\AppData\Local\TeamViewer
2020-04-07 16:46 - 2020-04-07 17:23 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-07 16:46 - 2020-04-07 16:46 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2020-04-07 16:46 - 2020-04-07 16:46 - 000001104 _____ C:\ProgramData\Escritorio\TeamViewer.lnk
2020-04-07 16:46 - 2020-04-07 16:46 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\TeamViewer
2020-04-07 16:37 - 2020-04-07 16:37 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\ivanc\Downloads\TeamViewer_Setup.exe
2020-04-06 19:18 - 2020-04-08 19:04 - 000000000 ____D C:\Users\ivanc\AppData\Local\Spotify
2020-04-06 19:17 - 2020-04-06 19:17 - 000001836 _____ C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2020-04-06 19:15 - 2020-04-08 18:35 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Spotify
2020-04-06 19:14 - 2020-04-06 19:15 - 000892232 _____ (Spotify Ltd) C:\Users\ivanc\Downloads\SpotifySetup.exe
2020-04-06 19:11 - 2020-04-06 19:11 - 006889184 _____ (Piriform Ltd) C:\Users\ivanc\Downloads\spsetup132 (1).exe
2020-04-06 18:59 - 2020-04-14 11:05 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-04-06 18:59 - 2020-04-07 17:26 - 000000000 ____D C:\Program Files\CCleaner
2020-04-06 18:59 - 2020-04-06 18:59 - 000002888 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-04-06 18:59 - 2020-04-06 18:59 - 000000863 _____ C:\ProgramData\Escritorio\CCleaner.lnk
2020-04-06 18:59 - 2020-04-06 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-04-06 18:58 - 2020-04-06 18:58 - 000000837 _____ C:\ProgramData\Escritorio\Speccy.lnk
2020-04-06 18:58 - 2020-04-06 18:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2020-04-06 18:58 - 2020-04-06 18:58 - 000000000 ____D C:\Program Files\Speccy
2020-04-06 18:52 - 2020-04-06 18:53 - 006889184 _____ (Piriform Ltd) C:\Users\ivanc\Downloads\spsetup132.exe
2020-04-06 18:40 - 2020-04-08 23:13 - 000030674 _____ C:\junk.txt
2020-04-06 18:28 - 2020-04-06 18:28 - 002798456 _____ (Sysinternals - www.sysinternals.com) C:\Users\ivanc\Downloads\procexp.exe
2020-04-05 20:18 - 2020-02-03 17:56 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-04-05 20:18 - 2020-02-03 17:56 - 000179608 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-04-05 20:11 - 2020-04-05 20:11 - 000000000 ____D C:\ProgramData\ssh
2020-04-05 18:03 - 2020-04-14 19:27 - 000000000 ____D C:\FRST
2020-04-05 17:58 - 2020-04-14 19:25 - 002281472 _____ (Farbar) C:\Users\ivanc\Downloads\FRST64.exe
2020-04-05 04:57 - 2020-04-05 05:07 - 000000000 ____D C:\Windows\system32\MRT
2020-04-05 04:56 - 2020-04-05 04:56 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-04-05 04:33 - 2020-04-05 04:33 - 000000000 ____D C:\Users\ivanc\Downloads\OpenOffice 4.1.7 (es) Installation Files
2020-04-05 04:20 - 2020-04-05 04:20 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 005502464 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 004308480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 001541632 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2020-04-05 04:19 - 2020-04-05 04:19 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 006285312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003525592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003243296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-04-05 04:19 - 2020-04-05 04:19 - 002315680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002230232 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001272360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001151816 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001012792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000890368 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000537608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2020-04-05 04:19 - 2020-04-05 04:19 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 025900544 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 007259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004348408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-04-05 04:18 - 2020-04-05 04:18 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001540096 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001273856 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001218632 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001000960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000996352 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000852480 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000788992 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000500736 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2020-04-05 04:18 - 2020-04-05 04:18 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000486400 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000422912 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\DispBroker.Desktop.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000399360 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000366416 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\DAFMCP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2020-04-05 04:18 - 2020-04-05 04:18 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2020-04-05 04:18 - 2020-04-05 04:18 - 000186880 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000099712 _____ (Microsoft Corporation) C:\Windows\system32\FsIso.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000059221 _____ C:\Windows\system32\srms.dat
2020-04-05 04:18 - 2020-04-05 04:18 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2020-04-05 04:18 - 2020-04-05 04:18 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 004538880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 002259872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001684992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001283600 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2020-04-05 04:17 - 2020-04-05 04:17 - 001216000 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 001195008 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001190912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001083392 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001031680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000774664 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000568120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000422008 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000403456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000300392 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpviewerax.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000136328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\dusmapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\dusmtask.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Drivers\afunix.sys
2020-04-05 04:17 - 2020-04-05 04:17 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2020-04-05 04:16 - 2020-04-05 04:17 - 130761887 _____ C:\Users\ivanc\Downloads\Apache_OpenOffice_4.1.7_Win_x86_install_es.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 005112832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 003971808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 002875904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002740736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002584008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002307584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002021888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001985104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001916744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001729024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001562424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001264128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001260544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpsharercom.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001213752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001154448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001007672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000935040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000904504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000892696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000857088 _____ C:\Windows\system32\MBR2GPT.EXE
2020-04-05 04:16 - 2020-04-05 04:16 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000776488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000769552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000768488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000748032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000704512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.FileExplorer.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000673080 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000627216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000597816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000542288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000526848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000521728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000512000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000478792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000453432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000441072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-04-05 04:16 - 2020-04-05 04:16 - 000405632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000375504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000274464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000213984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeHelper.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000150536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000133464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47mrm.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000102760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000072816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000068408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceReactivation.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000042336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002861568 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002773568 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002703872 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001854976 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001412096 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000629760 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000486912 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\rdpviewerax.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000181248 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000164776 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUpdateAgent.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000133944 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afunix.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 006436352 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 003371720 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001657856 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001482040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 001396152 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001394168 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001170960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001051448 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000983896 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000929144 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000891736 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000845312 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000824848 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000796904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000758800 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000741392 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000637440 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000598528 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000587064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000518456 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000516648 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000467952 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000416056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000400696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000353960 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000335448 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000320312 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000281088 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000234984 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000203776 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000179720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000165832 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000143160 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000133256 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000132624 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\NetDriverInstall.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000107832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000107832 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000098104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000089616 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetDriverInstall.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000058880 _____ C:\Windows\system32\runexehelper.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000037392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004471296 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004048896 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004005888 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 003260928 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002453504 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002071552 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001972536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001830200 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001823232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001609216 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001602560 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001505592 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001481216 _____ (Microsoft Corporation) C:\Windows\system32\rdpsharercom.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001372160 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-04-05 04:13 - 2020-04-05 04:13 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 001071184 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000945384 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000678928 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000678912 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000642216 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000558592 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000545432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000522384 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000369504 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000350720 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SpeechPrivacy.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000263168 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000222208 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000201744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000186672 _____ (Microsoft Corporation) C:\Windows\system32\BCP47mrm.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Taskbar.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000117264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingExperienceMEM.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSystray.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicPS.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\bindflt.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 006231200 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 004622280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 003143168 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002808832 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-04-05 04:12 - 2020-04-05 04:12 - 002522112 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002474496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002157056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 001084216 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001027000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000914944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000833616 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000737280 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000649728 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000646656 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000429880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2020-04-05 04:12 - 2020-04-05 04:12 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000209920 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000157696 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000155648 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AppExecutionAlias.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_BackgroundApps.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000128312 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000066336 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000804872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000732200 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntime.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000716288 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntimewindows.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-04-05 04:11 - 2020-04-05 04:11 - 000531768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Acx01000.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000306696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000250896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000224056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000222520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000208696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000199992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000184832 _____ (Microsoft Corporation) C:\Windows\system32\AarSvc.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000183608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000180232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationControlCSP.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000056632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000048256 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\FaxPrinterInstaller.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000030008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000029712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000016912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUserRes.dll
2020-04-05 03:59 - 2020-04-05 03:59 - 000000000 ____D C:\Windows\system32\Tasks\Hewlett-Packard
2020-04-05 03:59 - 2020-04-05 03:59 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2020-04-05 03:55 - 2020-04-05 03:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\HP
2020-04-05 03:55 - 2020-04-05 03:55 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2020-04-05 03:33 - 2020-02-11 01:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-04-05 03:33 - 2020-02-11 01:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-04-05 03:23 - 2020-04-07 17:24 - 000000000 ____D C:\Users\ivanc\AppData\Local\CrashDumps
2020-04-05 03:22 - 2020-04-14 19:17 - 000000000 ____D C:\Users\ivanc\AppData\Local\D3DSCache
2020-04-05 03:08 - 2020-04-05 03:28 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2020-04-05 03:02 - 2020-04-08 14:15 - 000000000 ____D C:\TORRENTS
2020-04-05 03:00 - 2020-04-05 03:00 - 000034747 _____ C:\Users\ivanc\Downloads\Office-2013-Professional-Plus-Sp1-64bits.torrent
2020-04-05 02:58 - 2020-04-05 02:58 - 000000000 ____D C:\Users\ivanc\AppData\Local\Microsoft Help
2020-04-05 02:57 - 2020-04-05 03:36 - 000000000 ____D C:\Program Files\Microsoft Office
2020-04-05 02:56 - 2020-04-05 02:56 - 000000000 __RHD C:\MSOCache
2020-04-05 02:44 - 2020-04-05 04:17 - 000000000 ___RD C:\Dios es Digital
2020-04-05 02:39 - 2020-04-05 02:49 - 000000000 ____D C:\Users\ivanc\AppData\Local\WinZip
2020-04-05 02:39 - 2020-04-05 02:39 - 000003662 _____ C:\Windows\system32\Tasks\WinZip Update Notifier 2
2020-04-05 02:39 - 2020-04-05 02:39 - 000003660 _____ C:\Windows\system32\Tasks\WinZip Update Notifier 3
2020-04-05 02:39 - 2020-04-05 02:39 - 000003660 _____ C:\Windows\system32\Tasks\WinZip Update Notifier 1
2020-04-05 02:39 - 2020-04-05 02:39 - 000002087 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip.lnk
2020-04-05 02:39 - 2020-04-05 02:39 - 000001987 _____ C:\ProgramData\Escritorio\WinZip.lnk
2020-04-05 02:39 - 2020-04-05 02:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2020-04-05 02:38 - 2020-04-05 02:40 - 000000000 ____D C:\ProgramData\WinZip
2020-04-05 02:38 - 2020-04-05 02:38 - 000000000 ____D C:\Program Files\WinZip
2020-04-05 02:37 - 2020-04-05 02:37 - 000959296 _____ (WinZip Computing) C:\Users\ivanc\Downloads\winzip24-downwz.exe
2020-04-05 02:37 - 2020-04-05 02:37 - 000000000 ____D C:\ProgramData\UniqueId
2020-04-05 02:25 - 2020-04-05 02:25 - 000000000 ____D C:\Users\ivanc\AppData\Local\CEF
2020-04-05 02:11 - 2020-04-08 18:32 - 000000000 ____D C:\Users\ivanc\AppData\Local\BitTorrentHelper
2020-04-05 02:11 - 2020-04-05 02:22 - 2710019503 ____R C:\Users\ivanc\Downloads\M.OF.16.April.2017.Mul.32X-www.DivxTotaL.com.rar
2020-04-05 02:11 - 2020-04-05 02:11 - 000029711 _____ C:\Users\ivanc\Downloads\M.OF_.16.April_.2017.Mul_.32X-www.DivxTotaL.com_.torrent
2020-04-05 02:09 - 2020-04-08 18:33 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\uTorrent
2020-04-05 02:09 - 2020-04-07 18:54 - 000000000 ____D C:\ProgramData\Avast Software
2020-04-05 02:03 - 2020-04-05 02:04 - 002907000 _____ (BitTorrent Inc.) C:\Users\ivanc\Downloads\uTorrent.exe
2020-04-05 01:56 - 2020-04-05 01:56 - 000138240 _____ C:\Users\ivanc\Downloads\Clase2.ppt
2020-04-05 01:56 - 2020-04-05 01:56 - 000138240 _____ C:\Users\ivanc\Downloads\Clase2 (1).ppt
2020-04-05 01:22 - 2020-04-05 01:22 - 000000000 ____D C:\Users\ivanc\OneDrive\Documentos\Nueva carpeta
2020-04-05 01:22 - 2015-02-03 18:06 - 000000120 ____R C:\Users\ivanc\OneDrive\Documentos\Bloc de notas de ivan.url
2020-04-05 01:20 - 2020-04-07 16:19 - 000000000 ___RD C:\Users\ivanc\OneDrive
2020-04-05 01:20 - 2020-04-07 16:18 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1840741467-1113686577-3156136756-1001
2020-04-05 01:16 - 2020-04-08 23:01 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\WhatsApp
2020-04-05 01:16 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2020-04-05 01:14 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Local\WhatsApp
2020-04-05 01:13 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Local\SquirrelTemp
2020-04-05 01:11 - 2020-04-05 01:12 - 130349488 _____ (WhatsApp) C:\Users\ivanc\Downloads\WhatsAppSetup.exe
2020-04-05 01:01 - 2020-04-05 18:05 - 000000000 ____D C:\Users\ivanc\AppData\Local\Comms
2020-04-05 01:00 - 2020-04-05 01:39 - 000000000 ____D C:\ProgramData\Packages
2020-04-05 00:59 - 2020-04-05 00:59 - 000002375 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-05 00:59 - 2020-04-05 00:59 - 000002334 _____ C:\ProgramData\Escritorio\Google Chrome.lnk
2020-04-05 00:59 - 2020-04-05 00:59 - 000000000 ____D C:\Users\ivanc\AppData\LocalLow\AMD
2020-04-05 00:58 - 2020-04-05 00:58 - 000003622 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-04-05 00:58 - 2020-04-05 00:58 - 000003498 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-04-05 00:58 - 2020-04-05 00:58 - 000000000 ____D C:\Program Files (x86)\Google
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Apfiltr_01009.Wdf
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____D C:\Windows\SysWOW64\sda
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____D C:\Program Files\Apoint2K
2020-04-05 00:55 - 2020-04-05 00:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\AMD
2020-04-05 00:48 - 2020-04-14 13:31 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2020-04-05 00:47 - 2020-04-05 01:04 - 000000000 ____D C:\Users\ivanc\AppData\Local\Google
2020-04-05 00:47 - 2020-04-05 00:48 - 000000000 ____D C:\Program Files\AMD
2020-04-05 00:47 - 2020-04-05 00:47 - 000000000 ____D C:\Windows\system32\AMD
2020-04-05 00:47 - 2019-09-18 18:05 - 000102832 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2020-04-05 00:45 - 2020-04-05 00:45 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-04-05 00:44 - 2019-09-18 18:05 - 003885152 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 003484256 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001705568 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001237088 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001237088 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001010696 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001010696 _____ C:\Windows\system32\vulkan-1.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000941152 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000873640 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000873640 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000768608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000760928 _____ (AMD) C:\Windows\system32\atieclxx.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000574048 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000553568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000493152 _____ C:\Windows\system32\dgtrayicon.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000484960 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000480352 _____ C:\Windows\system32\GameManager64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000468576 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000466528 _____ C:\Windows\system32\amdlogum.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000439904 _____ C:\Windows\system32\atieah64.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000416864 _____ C:\Windows\system32\EEURestart.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000383584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000381536 _____ C:\Windows\SysWOW64\GameManager32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000352352 _____ C:\Windows\SysWOW64\atieah32.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000348768 _____ C:\Windows\system32\clinfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000304224 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000304224 _____ C:\Windows\system32\vulkaninfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000276064 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000276064 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000239200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000211552 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000183904 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000178752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000162912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000158816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000157592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000152672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000138336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000135776 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000134752 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000125536 _____ (AMD) C:\Windows\system32\atimuixx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000124000 _____ C:\Windows\system32\atidxx64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000121440 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000120928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000107104 _____ C:\Windows\SysWOW64\atidxx32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000105568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000090720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000075360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000070240 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000046688 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000043616 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000019768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 001686000 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 001365352 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000554072 _____ C:\Windows\system32\amdmiracast.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000472672 _____ C:\Windows\system32\amdgfxinfo64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000381536 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000134824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000119232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2020-04-05 00:44 - 2019-09-18 17:33 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2020-04-05 00:44 - 2019-09-18 17:33 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2020-04-05 00:44 - 2019-09-18 17:33 - 000920680 _____ C:\Windows\SysWOW64\atiapfxx.blb
2020-04-05 00:44 - 2019-09-18 17:33 - 000920680 _____ C:\Windows\system32\atiapfxx.blb
2020-04-05 00:44 - 2019-09-18 17:33 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000125488 _____ C:\Windows\system32\kapp_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2020-04-05 00:44 - 2019-09-18 17:32 - 000034488 _____ C:\Windows\system32\AMDKernelEvents.man
2020-04-05 00:40 - 2020-04-05 02:58 - 000000000 ____D C:\Users\ivanc\AppData\Local\PlaceholderTileLogoFolder
2020-04-05 00:39 - 2020-04-05 00:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ___HD C:\Users\ivanc\MicrosoftEdgeBackups
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\Publishers
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\MicrosoftEdge
2020-04-05 00:37 - 2020-04-14 19:19 - 000000000 ____D C:\Users\ivanc\AppData\Local\Packages
2020-04-05 00:37 - 2020-04-08 08:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-04-05 00:37 - 2020-04-05 20:21 - 000000000 ___RD C:\Users\ivanc\3D Objects
2020-04-05 00:37 - 2020-04-05 00:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\ConnectedDevicesPlatform
2020-04-05 00:37 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\PackageStaging
2020-04-05 00:37 - 2020-04-05 00:37 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Adobe
2020-04-05 00:37 - 2020-04-05 00:37 - 000000000 ____D C:\Users\ivanc\AppData\Local\VirtualStore
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Windows\system32\SRSLabs
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Program Files\Realtek
2020-04-05 00:35 - 2015-07-03 16:24 - 003271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 002966144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001599792 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001331336 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001122648 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000961024 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000749776 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000645464 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000574248 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000467160 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000381416 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000195184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 072121872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2020-04-05 00:35 - 2015-07-03 16:21 - 004515584 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2020-04-05 00:35 - 2015-07-03 16:21 - 002926848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 002711296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2020-04-05 00:35 - 2015-07-03 16:21 - 001757440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000259288 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2020-04-05 00:35 - 2015-07-02 06:43 - 002897741 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2020-04-05 00:33 - 2020-04-08 14:38 - 000000000 ____D C:\Users\ivanc
2020-04-05 00:33 - 2020-04-07 16:17 - 000002401 _____ C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-04-05 00:33 - 2020-04-05 00:33 - 000000020 ___SH C:\Users\ivanc\ntuser.ini
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Reciente
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Plantillas
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Mis documentos
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Menú Inicio
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Impresoras
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Entorno de red
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Datos de programa
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Configuración local
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Historial
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Datos de programa
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Archivos temporales de Internet
2020-04-04 19:48 - 2020-04-07 18:09 - 000000000 ____D C:\Windows\Panther
2020-04-04 19:39 - 2020-04-07 20:33 - 000000000 ____D C:\Windows.old
2020-04-04 19:30 - 2020-04-08 09:23 - 001684180 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-04 19:28 - 2020-04-08 09:07 - 000000000 ____D C:\Windows\minidump
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Reciente
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Mis documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Impresoras
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Entorno de red
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Configuración local
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historial
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Archivos temporales de Internet
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Reciente
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Mis documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Impresoras
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Entorno de red
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Configuración local
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historial
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Archivos temporales de Internet
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Escritorio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Program Files\Archivos comunes
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Documents and Settings
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Archivos de programa
2020-04-04 19:12 - 2020-01-09 18:25 - 002874368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2020-04-04 19:10 - 2020-04-14 13:32 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-04 19:10 - 2020-04-12 19:13 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-04-04 19:09 - 2020-04-14 19:16 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-04-04 19:09 - 2020-04-04 19:09 - 000000000 ____D C:\Windows\ServiceProfiles
 
==================== Un mes (modificado) ==================
 
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
 
2020-04-14 19:19 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness
2020-04-14 19:18 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-14 13:31 - 2019-03-19 01:37 - 000786432 _____ C:\Windows\system32\config\BBI
2020-04-11 18:09 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\CbsTemp
2020-04-09 16:14 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-04-08 15:58 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF
2020-04-08 09:23 - 2019-03-19 08:59 - 000753744 _____ C:\Windows\system32\perfh00A.dat
2020-04-08 09:23 - 2019-03-19 08:59 - 000148288 _____ C:\Windows\system32\perfc00A.dat
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SystemResources
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellExperiences
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\Provisioning
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\bcastdvr
2020-04-08 04:52 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports
2020-04-08 00:34 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-07 17:38 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-04-07 17:24 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\Downloaded Program Files
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\setup
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\oobe
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\setup
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\oobe
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\PrintDialog
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Dism
2020-04-05 20:11 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\servicing
2020-04-05 04:33 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-04-05 03:35 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-04-05 03:35 - 2019-03-19 01:49 - 000000092 _____ C:\Windows\win.ini
2020-04-05 03:08 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\appcompat
2020-04-05 01:12 - 2019-03-19 09:01 - 000000000 ____D C:\Windows\OCR
2020-04-05 01:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\es-MX
2020-04-05 01:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ServiceState
2020-04-05 00:31 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\USOPrivate
2020-04-04 19:48 - 2019-03-19 01:49 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-04-04 19:30 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2020-04-04 19:28 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\spool
2020-04-04 19:28 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-04-04 19:24 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows NT
2020-04-04 19:11 - 2019-03-19 01:37 - 000032768 _____ C:\Windows\system32\config\ELAM
 
==================== Archivos en la raíz de algunos directorios ========
 
2020-04-09 16:11 - 2020-04-12 19:40 - 000007603 _____ () C:\Users\ivanc\AppData\Local\Resmon.ResmonCfg
 
==================== SigCheck ============================
 
(No existe una corrección automática para los archivos que no pasan la verificación.)
 
==================== Final de FRST.txt ========================

  • 0

#40
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

As your PC is probably at least 5 years old it is unlikely that HP is going to have any updates for you so you might want to uninstall:

 

HP Support Solutions Framework

 

Do you use One Drive?  If not uninstall it.

 

I'm not a fan of CCleaner.  It tends to try to hard to remove stuff which sometimes shouldn't be removed and the registry cleaner part of it is a definite no-no.

 

 

Looks like you had AVG in the past and it didn't fully uninstall

Run AVG Clean or AVG Remover depending on what version you had:

 

https://support.avg....pportType=home#

Downloads are in about the middle of the page.

 

If you don't know which version you had just run them both.  Best to Download, Save then right click and Run As Admin.

 

Go back into Task Manager, Startup and verify that WindowsDefender is ENABLED

 

Download the attached fixlist.txt to the same location as FRST

Attached File  fixlist.txt   8.23KB   22 downloads

Run FRST and press Fix.

 

Fix will take 30-40 minutes as it is also running some tests of your system files.
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.


 

 

 

 

 

 

 


  • 0

Advertisements


#41
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Did everything. Here's the fixlog.

 

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 15-04-2020

Ejecutado por ivanc (15-04-2020 15:00:56) Run:1
Ejecutado desde C:\Users\ivanc\OneDrive\Escritorio
Perfiles cargados: ivanc (Perfiles disponibles: ivanc & COOKES)
Modo de Inicio: Normal
==============================================
 
fixlist contenido:
*****************
HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436704 2020-02-25] (Corel Corporation -> WinZip Computing, S.L.)
C:\Program Files\AVG
Task: {136C6F2E-8E2F-48CB-85E4-5680E87B43D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-10-14] (HP Inc. -> HP Inc.)
Task: {563711BE-2F18-4608-A6EF-6EAC75E5AC4E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {C25BF6EB-2BF4-4AC5-8501-A9BC009B02E5} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {E2483116-8B5D-4CF4-B74B-4599ACA193AE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E37E7C0F-3CCC-42F3-A8E9-8463718F1D93} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {EF469890-A36E-4C7D-ACB8-A90658C6FC6C} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {F5CFC54A-EB07-4FAD-B0AB-4C7E9539206D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [134008 2020-03-25] (HP Inc. -> HP Inc.)
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-04-07]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [378744 2020-03-31] (HP Inc. -> HP Inc.)
U1 avgbdisk; no ImagePath
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivoCMD: DISM /Online /Cleanup-Image /RestoreHealth
AlternateDataStreams: C:\ProgramData\TEMP:1AAB2E68 [119]
AlternateDataStreams: C:\ProgramData\TEMP:55B41E6A [140]
MSCONFIG\Services: McAfee WebAdvisor => 2
FirewallRules: [TCP Query User{46209B81-AFCD-430F-BCD4-6D4196BCDF50}C:\users\ivanc\onedrive\escritorio\anydesk.exe] => (Allow) C:\users\ivanc\onedrive\escritorio\anydesk.exe Ningún archivo
FirewallRules: [UDP Query User{FEFA5D21-3356-443F-AB91-AF2786E85A4E}C:\users\ivanc\onedrive\escritorio\anydesk.exe] => (Allow) C:\users\ivanc\onedrive\escritorio\anydesk.exe Ningún archivo
FirewallRules: [{9732E2E6-1857-4CE0-B182-7FB76A9B67AE}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{271CFB19-7C90-44BF-907E-D5C1F0F673FD}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{2249F6B1-9F77-4867-A258-D887CDEAF737}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{6DAF8AF8-852E-4552-9322-F0EAACC4946D}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{9E39DAD4-EFB6-4AFC-BF56-5BDF271EFA21}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
FirewallRules: [{920FF816-4922-46CB-8991-0BA4C0BC2112}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe Ningún archivo
HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk"
HKLM\...\StartupApproved\Run: => "WinZip UN"
HKLM\...\StartupApproved\Run: => "WinZip FAH"
CMD: mkdir C:\Users\COOKES\AppData\Local\TileDataLayer
CMD: mkdir C:\Users\COOKES\AppData\Local\TileDataLayer\Database
CMD: type C:\Windows\Logs\DISM\dism.log
CMD: SFC /scannow
CMD: findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
*****************
 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\WinZip UN" => eliminado correctamente
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\WinZip FAH" => eliminado correctamente
C:\Program Files\AVG => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{136C6F2E-8E2F-48CB-85E4-5680E87B43D5}" => no encontrado
"C:\Windows\System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{563711BE-2F18-4608-A6EF-6EAC75E5AC4E}" => no encontrado
"C:\Windows\System32\Tasks\CCleaner Update" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C25BF6EB-2BF4-4AC5-8501-A9BC009B02E5}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C25BF6EB-2BF4-4AC5-8501-A9BC009B02E5}" => eliminado correctamente
C:\Windows\System32\Tasks\WinZip Update Notifier 3 => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinZip Update Notifier 3" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2483116-8B5D-4CF4-B74B-4599ACA193AE}" => no encontrado
"C:\Windows\System32\Tasks\CCleanerSkipUAC" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E37E7C0F-3CCC-42F3-A8E9-8463718F1D93}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E37E7C0F-3CCC-42F3-A8E9-8463718F1D93}" => eliminado correctamente
C:\Windows\System32\Tasks\WinZip Update Notifier 2 => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinZip Update Notifier 2" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF469890-A36E-4C7D-ACB8-A90658C6FC6C}" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF469890-A36E-4C7D-ACB8-A90658C6FC6C}" => eliminado correctamente
C:\Windows\System32\Tasks\WinZip Update Notifier 1 => movido correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinZip Update Notifier 1" => eliminado correctamente
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F5CFC54A-EB07-4FAD-B0AB-4C7E9539206D}" => no encontrado
"C:\Windows\System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report" => no encontrado
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report" => no encontrado
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-04-07] => Error: Ninguna corrección automática encontrada para esta entrada.
HPSupportSolutionsFrameworkService => servicio no encontrado.
HKLM\System\CurrentControlSet\Services\avgbdisk => eliminado correctamente
avgbdisk => servicio eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => eliminado correctamente
C:\ProgramData\TEMP => ":1AAB2E68" ADS eliminado correctamente
C:\ProgramData\TEMP => ":55B41E6A" ADS eliminado correctamente
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\McAfee WebAdvisor => eliminado correctamente
HKLM\System\CurrentControlSet\Services\McAfee WebAdvisor => no encontrado
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{46209B81-AFCD-430F-BCD4-6D4196BCDF50}C:\users\ivanc\onedrive\escritorio\anydesk.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{FEFA5D21-3356-443F-AB91-AF2786E85A4E}C:\users\ivanc\onedrive\escritorio\anydesk.exe" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9732E2E6-1857-4CE0-B182-7FB76A9B67AE}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{271CFB19-7C90-44BF-907E-D5C1F0F673FD}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2249F6B1-9F77-4867-A258-D887CDEAF737}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6DAF8AF8-852E-4552-9322-F0EAACC4946D}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9E39DAD4-EFB6-4AFC-BF56-5BDF271EFA21}" => eliminado correctamente
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{920FF816-4922-46CB-8991-0BA4C0BC2112}" => eliminado correctamente
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk" => no encontrado
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\AnyDesk.lnk" => eliminado correctamente
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\WinZip UN" => eliminado correctamente
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\WinZip UN" => no encontrado
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\WinZip FAH" => eliminado correctamente
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\WinZip FAH" => no encontrado
 
========= mkdir C:\Users\COOKES\AppData\Local\TileDataLayer =========
 
 
========= Final de CMD: =========
 
 
========= mkdir C:\Users\COOKES\AppData\Local\TileDataLayer\Database =========
 
 
========= Final de CMD: =========
 
 
========= type C:\Windows\Logs\DISM\dism.log =========
 
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll:                                            - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll:                                            - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll: Parent process command line: C:\Windows\system32\cleanmgr.exe /autoclean /d C: - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Enter DismInitializeInternal - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Initialized GlobalConfig - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Initialized SessionTable - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=4064 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=4064 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 m_pInternalThread started - CCommandThread::Start
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Created g_internalDismSession - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Leave DismInitializeInternal - DismInitializeInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Lookup in table by path failed for: DRIVE_C - CTransactionalImageTable::LookupImagePath
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=2592 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 m_pInternalThread started - CCommandThread::Start
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=7820 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=2592 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=2592 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-07 20:32:38, Info                  DISM   API: PID=5368 TID=2592 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-07 20:32:40, Info                  DISM   PID=5368 TID=2592 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-07 20:32:40, Info                  DISM   PID=5368 TID=2592 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-07 20:32:40, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:32:40, Info                  DISM   PID=5368 TID=2592 Successfully loaded the ImageSession at "C:\Windows\system32\Dism" - CDISMManager::LoadLocalImageSession
2020-04-07 20:32:41, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
[5368] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[5368] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[5368] [0xc142011c] WIMGetMountedImageHandle:(2897)
[5368] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[5368] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[5368] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-07 20:32:51, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:32:51, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-07 20:32:51, Warning               DISM   DISM Provider Store: PID=2644 TID=3444 Failed to load the provider: C:\Users\ivanc\AppData\Local\Temp\7FB24155-E055-4254-83EF-6D74A553D427\PEProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-07 20:32:51, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-07 20:32:51, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-07 20:32:51, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:32:51, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:32:51, Info                  DISM   API: PID=5368 TID=2592 Target image information: OS Version=10.0.18363.720, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-07 20:32:51, Info                  DISM   API: PID=5368 TID=7820 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-07 20:32:51, Info                  DISM   API: PID=5368 TID=7820 Session id is: 2 - DismOpenSessionInternal
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 DismInitialize: 2 - DismInitializeInternal
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Returning existing DismSession=2 for path DRIVE_C. RefCount=2 - CSessionTable::CreateSession
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=2592 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=2592 Successfully dequeued command object - CCommandThread::DequeueCommandObject
[5368] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[5368] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[5368] [0xc142011c] WIMGetMountedImageHandle:(2897)
[5368] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[5368] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[5368] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=2592 Target image information: OS Version=10.0.18363.720, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-07 20:32:54, Info                  DISM   API: PID=5368 TID=7820 Session id is: 2 - DismOpenSessionInternal
2020-04-07 20:33:15, Info                  DISM   API: PID=5368 TID=7820 Enter DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-07 20:33:15, Info                  DISM   API: PID=5368 TID=7820 Input parameters: Session: 2, Type: 1,  - DismGetUsedSpaceInternal
2020-04-07 20:33:15, Info                  DISM   API: PID=5368 TID=7820 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-07 20:33:15, Info                  DISM   API: PID=5368 TID=2592 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-07 20:33:15, Info                  DISM   API: PID=5368 TID=2592 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-07 20:33:16, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Connecting to the provider located at C:\Users\ivanc\AppData\Local\Temp\7FB24155-E055-4254-83EF-6D74A553D427\CbsProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-07 20:33:16, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Encountered a servicing provider, performing additional servicing initializations. - CDISMProviderStore::Internal_LoadProvider
2020-04-07 20:33:16, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-07 20:33:16, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-07 20:33:20, Info                  DISM   DISM Package Manager: PID=2644 TID=3444 Finished initializing the CbsConUI Handler. - CCbsConUIHandler::Initialize
2020-04-07 20:33:20, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-07 20:33:20, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-07 20:33:20, Info                  DISM   DISM Package Manager: PID=2644 TID=3444 CBS is being initialized for online use. More information about CBS actions can be located at: %windir%\logs\cbs\cbs.log - CDISMPackageManager::Initialize
2020-04-07 20:33:20, Info                  DISM   DISM Package Manager: PID=2644 TID=3444 Loaded servicing stack for online use only. - CDISMPackageManager::CreateCbsSession
2020-04-07 20:33:53, Info                  DISM   API: PID=5368 TID=7820 Exit DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Refcount for DismSession= 2s 1 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 DismShutdown: 1 - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Refcount for DismSession= 2s 0 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=2592 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=2592 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=2592 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=2592 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Found the PE Provider.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Finalizing the servicing provider(DISM Package Manager) - CDISMProviderStore::Internal_DisconnectProvider
2020-04-07 20:33:59, Info                  DISM   DISM Package Manager: PID=2644 TID=3444 Finalizing CBS core. - CDISMPackageManager::Finalize
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Disconnecting Provider: DISM Package Manager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Releasing the local reference to OSServices. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Disconnecting Provider: OSServices - CDISMProviderStore::Internal_DisconnectProvider
2020-04-07 20:33:59, Info                  DISM   DISM Provider Store: PID=2644 TID=3444 Releasing the local reference to DISMLogger.  Stop logging. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=2592 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Enter DismShutdownInternal - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Refcount for DismSession= 1s 0 - CSessionTable::RemoveSession
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=4064 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=4064 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=4064 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=4064 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-07 20:33:59, Info                  DISM   PID=5368 TID=4064 Temporarily setting the scratch directory. This may be overridden by user later. - CDISMManager::FinalConstruct
2020-04-07 20:33:59, Info                  DISM   PID=5368 TID=4064 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-07 20:33:59, Info                  DISM   PID=5368 TID=4064 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-07 20:33:59, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=4064 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Deleted g_internalDismSession - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Shutdown SessionTable - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 Leave DismShutdownInternal - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll:                                          - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll: <----- Ending DismApi.dll session -----> - DismShutdownInternal
2020-04-07 20:33:59, Info                  DISM   API: PID=5368 TID=7820 DismApi.dll:                                          - DismShutdownInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll:                                            - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll:                                            - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 DismApi.dll: Parent process command line: C:\Windows\system32\cleanmgr.exe /autoclean /d C: - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Enter DismInitializeInternal - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Initialized GlobalConfig - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Initialized SessionTable - DismInitializeInternal
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=3376 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-10 21:24:43, Info                  DISM   API: PID=1780 TID=1052 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=1052 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 m_pInternalThread started - CCommandThread::Start
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Created g_internalDismSession - DismInitializeInternal
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Leave DismInitializeInternal - DismInitializeInternal
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Lookup in table by path failed for: DRIVE_C - CTransactionalImageTable::LookupImagePath
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=8092 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=8092 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 m_pInternalThread started - CCommandThread::Start
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=3376 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=8092 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:24:44, Info                  DISM   API: PID=1780 TID=8092 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:24:45, Info                  DISM   PID=1780 TID=8092 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-10 21:24:45, Info                  DISM   PID=1780 TID=8092 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-10 21:24:45, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:24:45, Info                  DISM   PID=1780 TID=8092 Successfully loaded the ImageSession at "C:\Windows\system32\Dism" - CDISMManager::LoadLocalImageSession
2020-04-10 21:24:45, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
[1780] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[1780] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[1780] [0xc142011c] WIMGetMountedImageHandle:(2897)
[1780] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[1780] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[1780] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-10 21:24:52, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:24:52, Info                  DISM   DISM Provider Store: PID=8484 TID=2532 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-10 21:24:52, Warning               DISM   DISM Provider Store: PID=8484 TID=2532 Failed to load the provider: C:\Users\ivanc\AppData\Local\Temp\CB1E024E-1241-4746-885D-73F405703E52\PEProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-10 21:24:52, Info                  DISM   DISM Provider Store: PID=8484 TID=2532 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-10 21:24:52, Info                  DISM   DISM Provider Store: PID=8484 TID=2532 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-10 21:24:52, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:24:52, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:24:52, Info                  DISM   API: PID=1780 TID=8092 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-10 21:24:52, Info                  DISM   API: PID=1780 TID=3376 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:24:52, Info                  DISM   API: PID=1780 TID=3376 Session id is: 2 - DismOpenSessionInternal
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 DismInitialize: 2 - DismInitializeInternal
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Returning existing DismSession=2 for path DRIVE_C. RefCount=2 - CSessionTable::CreateSession
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=8092 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=8092 Successfully dequeued command object - CCommandThread::DequeueCommandObject
[1780] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[1780] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[1780] [0xc142011c] WIMGetMountedImageHandle:(2897)
[1780] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[1780] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[1780] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=8092 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:24:54, Info                  DISM   API: PID=1780 TID=3376 Session id is: 2 - DismOpenSessionInternal
2020-04-10 21:25:09, Info                  DISM   API: PID=1780 TID=3376 Enter DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-10 21:25:09, Info                  DISM   API: PID=1780 TID=3376 Input parameters: Session: 2, Type: 1,  - DismGetUsedSpaceInternal
2020-04-10 21:25:09, Info                  DISM   API: PID=1780 TID=3376 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:25:09, Info                  DISM   API: PID=1780 TID=8092 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:25:09, Info                  DISM   API: PID=1780 TID=8092 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:25:09, Info                  DISM   DISM Provider Store: PID=8484 TID=2532 Connecting to the provider located at C:\Users\ivanc\AppData\Local\Temp\CB1E024E-1241-4746-885D-73F405703E52\CbsProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-10 21:25:09, Info                  DISM   DISM Provider Store: PID=8484 TID=2532 Encountered a servicing provider, performing additional servicing initializations. - CDISMProviderStore::Internal_LoadProvider
2020-04-10 21:25:09, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-10 21:25:09, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-10 21:25:09, Info                  DISM   DISM Package Manager: PID=8484 TID=2532 Finished initializing the CbsConUI Handler. - CCbsConUIHandler::Initialize
2020-04-10 21:25:09, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-10 21:25:09, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-10 21:25:09, Info                  DISM   DISM Package Manager: PID=8484 TID=2532 CBS is being initialized for online use. More information about CBS actions can be located at: %windir%\logs\cbs\cbs.log - CDISMPackageManager::Initialize
2020-04-10 21:25:09, Info                  DISM   DISM Package Manager: PID=8484 TID=2532 Loaded servicing stack for online use only. - CDISMPackageManager::CreateCbsSession
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll:                                            - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll:                                            - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll: Parent process command line: C:\Windows\system32\cleanmgr.exe /autoclean /d C: - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Enter DismInitializeInternal - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Initialized GlobalConfig - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Initialized SessionTable - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8516 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8516 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 m_pInternalThread started - CCommandThread::Start
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Created g_internalDismSession - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Leave DismInitializeInternal - DismInitializeInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Lookup in table by path failed for: DRIVE_C - CTransactionalImageTable::LookupImagePath
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=296 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=296 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 m_pInternalThread started - CCommandThread::Start
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=8672 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=296 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:32:43, Info                  DISM   API: PID=8564 TID=296 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:32:43, Info                  DISM   PID=8564 TID=296 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-10 21:32:43, Info                  DISM   PID=8564 TID=296 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-10 21:32:43, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:32:43, Info                  DISM   PID=8564 TID=296 Successfully loaded the ImageSession at "C:\Windows\system32\Dism" - CDISMManager::LoadLocalImageSession
2020-04-10 21:32:43, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
[8564] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[8564] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[8564] [0xc142011c] WIMGetMountedImageHandle:(2897)
[8564] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[8564] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[8564] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-10 21:32:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:32:44, Info                  DISM   DISM Provider Store: PID=1792 TID=7428 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-10 21:32:44, Warning               DISM   DISM Provider Store: PID=1792 TID=7428 Failed to load the provider: C:\Users\ivanc\AppData\Local\Temp\7EE9472D-728B-4C77-AA24-2741A57B410F\PEProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-10 21:32:44, Info                  DISM   DISM Provider Store: PID=1792 TID=7428 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-10 21:32:44, Info                  DISM   DISM Provider Store: PID=1792 TID=7428 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-10 21:32:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:32:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=296 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Session id is: 2 - DismOpenSessionInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 DismInitialize: 2 - DismInitializeInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Returning existing DismSession=2 for path DRIVE_C. RefCount=2 - CSessionTable::CreateSession
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=296 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=296 Successfully dequeued command object - CCommandThread::DequeueCommandObject
[8564] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[8564] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[8564] [0xc142011c] WIMGetMountedImageHandle:(2897)
[8564] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[8564] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[8564] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=296 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-10 21:32:44, Info                  DISM   API: PID=8564 TID=8672 Session id is: 2 - DismOpenSessionInternal
2020-04-10 21:32:47, Info                  DISM   API: PID=8564 TID=8672 Enter DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-10 21:32:47, Info                  DISM   API: PID=8564 TID=8672 Input parameters: Session: 2, Type: 1,  - DismGetUsedSpaceInternal
2020-04-10 21:32:47, Info                  DISM   API: PID=8564 TID=8672 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:32:47, Info                  DISM   API: PID=8564 TID=296 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:32:47, Info                  DISM   API: PID=8564 TID=296 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:32:47, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Connecting to the provider located at C:\Users\ivanc\AppData\Local\Temp\7EE9472D-728B-4C77-AA24-2741A57B410F\CbsProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-10 21:32:47, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Encountered a servicing provider, performing additional servicing initializations. - CDISMProviderStore::Internal_LoadProvider
2020-04-10 21:32:47, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-10 21:32:47, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-10 21:32:48, Info                  DISM   DISM Package Manager: PID=1792 TID=8872 Finished initializing the CbsConUI Handler. - CCbsConUIHandler::Initialize
2020-04-10 21:32:48, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-10 21:32:48, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-10 21:32:48, Info                  DISM   DISM Package Manager: PID=1792 TID=8872 CBS is being initialized for online use. More information about CBS actions can be located at: %windir%\logs\cbs\cbs.log - CDISMPackageManager::Initialize
2020-04-10 21:32:48, Info                  DISM   DISM Package Manager: PID=1792 TID=8872 Loaded servicing stack for online use only. - CDISMPackageManager::CreateCbsSession
2020-04-10 21:33:12, Info                  DISM   API: PID=8564 TID=8672 Exit DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Refcount for DismSession= 2s 1 - CSessionTable::RemoveSession
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 DismShutdown: 1 - DismShutdownInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Refcount for DismSession= 2s 0 - CSessionTable::RemoveSession
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=8672 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=296 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=296 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=296 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-10 21:33:17, Info                  DISM   API: PID=8564 TID=296 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Found the PE Provider.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Finalizing the servicing provider(DISM Package Manager) - CDISMProviderStore::Internal_DisconnectProvider
2020-04-10 21:33:17, Info                  DISM   DISM Package Manager: PID=1792 TID=8872 Finalizing CBS core. - CDISMPackageManager::Finalize
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Disconnecting Provider: DISM Package Manager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Releasing the local reference to OSServices. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Disconnecting Provider: OSServices - CDISMProviderStore::Internal_DisconnectProvider
2020-04-10 21:33:17, Info                  DISM   DISM Provider Store: PID=1792 TID=8872 Releasing the local reference to DISMLogger.  Stop logging. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=296 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Enter DismShutdownInternal - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Refcount for DismSession= 1s 0 - CSessionTable::RemoveSession
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8516 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8516 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8516 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8516 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-10 21:33:18, Info                  DISM   PID=8564 TID=8516 Temporarily setting the scratch directory. This may be overridden by user later. - CDISMManager::FinalConstruct
2020-04-10 21:33:18, Info                  DISM   PID=8564 TID=8516 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-10 21:33:18, Info                  DISM   PID=8564 TID=8516 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-10 21:33:18, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8516 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Deleted g_internalDismSession - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Shutdown SessionTable - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 Leave DismShutdownInternal - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll:                                          - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll: <----- Ending DismApi.dll session -----> - DismShutdownInternal
2020-04-10 21:33:18, Info                  DISM   API: PID=8564 TID=8672 DismApi.dll:                                          - DismShutdownInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll:                                            - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll:                                            - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll: Parent process command line: "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe" - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Enter DismInitializeInternal - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Initialized GlobalConfig - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Initialized SessionTable - DismInitializeInternal
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=6968 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-11 18:07:43, Info                  DISM   API: PID=4384 TID=8296 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=8296 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 m_pInternalThread started - CCommandThread::Start
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Created g_internalDismSession - DismInitializeInternal
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Leave DismInitializeInternal - DismInitializeInternal
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Lookup in table by path failed for: DRIVE_C - CTransactionalImageTable::LookupImagePath
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=7272 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=7272 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 m_pInternalThread started - CCommandThread::Start
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=6968 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=7272 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-11 18:07:44, Info                  DISM   API: PID=4384 TID=7272 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-11 18:07:44, Info                  DISM   PID=4384 TID=7272 Scratch directory set to 'C:\Windows\TEMP\'. - CDISMManager::put_ScratchDir
2020-04-11 18:07:44, Info                  DISM   PID=4384 TID=7272 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-11 18:07:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:44, Info                  DISM   PID=4384 TID=7272 Successfully loaded the ImageSession at "C:\Windows\system32\Dism" - CDISMManager::LoadLocalImageSession
2020-04-11 18:07:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:44, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:44, Info                  DISM   DISM Manager: PID=4384 TID=7272 Successfully created the local image session and provider store. - CDISMManager::CreateLocalImageSession
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Getting the collection of providers from a local provider store type. - CDISMProviderStore::GetProviderCollection
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Connecting to the provider located at C:\Windows\system32\Dism\FolderProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:44, Warning               DISM   DISM Provider Store: PID=4384 TID=7272 Failed to load the provider: C:\Windows\system32\Dism\SiloedPackageProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-11 18:07:44, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Connecting to the provider located at C:\Windows\system32\Dism\FfuProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:45, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Connecting to the provider located at C:\Windows\system32\Dism\WimProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:45, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Connecting to the provider located at C:\Windows\system32\Dism\VHDProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:45, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Connecting to the provider located at C:\Windows\system32\Dism\ImagingProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:45, Warning               DISM   DISM Provider Store: PID=4384 TID=7272 Failed to load the provider: C:\Windows\system32\Dism\MetaDeployProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-11 18:07:45, Info                  DISM   DISM FFU Provider: PID=4384 TID=7272 [C:\] is not recognized by the DISM FFU provider. - CFfuImage::Initialize
[4384] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[4384] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[4384] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-11 18:07:45, Info                  DISM   DISM WIM Provider: PID=4384 TID=7272 [C:\] is not a WIM mount point. - CWimMountedImageInfo::Initialize
2020-04-11 18:07:46, Info                  DISM   DISM VHD Provider: PID=4384 TID=7272 [C:\] is not recognized by the DISM VHD provider. - CVhdImage::Initialize
2020-04-11 18:07:46, Info                  DISM   DISM FFU Provider: PID=4384 TID=7272 [C:\] is not recognized by the DISM FFU provider. - CFfuImage::Initialize
2020-04-11 18:07:46, Info                  DISM   DISM Imaging Provider: PID=4384 TID=7272 The provider FfuManager does not support CreateDismImage on C:\ - CGenericImagingManager::CreateDismImage
2020-04-11 18:07:46, Info                  DISM   DISM VHD Provider: PID=4384 TID=7272 [C:\] is not recognized by the DISM VHD provider. - CVhdImage::Initialize
2020-04-11 18:07:46, Info                  DISM   DISM Imaging Provider: PID=4384 TID=7272 The provider VHDManager does not support CreateDismImage on C:\ - CGenericImagingManager::CreateDismImage
[4384] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[4384] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[4384] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-11 18:07:46, Info                  DISM   DISM WIM Provider: PID=4384 TID=7272 [C:\] is not a WIM mount point. - CWimMountedImageInfo::Initialize
2020-04-11 18:07:46, Info                  DISM   DISM Imaging Provider: PID=4384 TID=7272 The provider WimManager does not support CreateDismImage on C:\ - CGenericImagingManager::CreateDismImage
2020-04-11 18:07:46, Info                  DISM   DISM Imaging Provider: PID=4384 TID=7272 No imaging provider supported CreateDismImage for this path - CGenericImagingManager::CreateDismImage
2020-04-11 18:07:46, Info                  DISM   DISM Manager: PID=4384 TID=7272 physical location path: C:\ - CDISMManager::CreateImageSession
2020-04-11 18:07:46, Info                  DISM   DISM Manager: PID=4384 TID=7272 Event name for current DISM session is Global\{78BF7F47-7D04-4796-9BB5-BD33207A6B6A} - CDISMManager::CheckSessionAndLock
2020-04-11 18:07:46, Info                  DISM   DISM Manager: PID=4384 TID=7272 Create session event 0x19e0 for current DISM session and event name is Global\{78BF7F47-7D04-4796-9BB5-BD33207A6B6A}  - CDISMManager::CheckSessionAndLock
2020-04-11 18:07:46, Info                  DISM   DISM Manager: PID=4384 TID=7272 Copying DISM from "C:\Windows\System32\Dism" - CDISMManager::CreateImageSessionFromLocation
2020-04-11 18:07:48, Info                  DISM   DISM Manager: PID=4384 TID=7272 Successfully loaded the ImageSession at "C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4" - CDISMManager::LoadRemoteImageSession
2020-04-11 18:07:48, Info                  DISM   DISM Image Session: PID=8952 TID=7516 Instantiating the Provider Store. - CDISMImageSession::get_ProviderStore
2020-04-11 18:07:48, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Initializing a provider store for the IMAGE session type. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:48, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Connecting to the provider located at C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4\OSProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:48, Info                  DISM   DISM OS Provider: PID=8952 TID=7516 Defaulting SystemPath to C:\ - CDISMOSServiceManager::Final_OnConnect
2020-04-11 18:07:48, Info                  DISM   DISM OS Provider: PID=8952 TID=7516 Defaulting Windows folder to C:\Windows - CDISMOSServiceManager::Final_OnConnect
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Attempting to initialize the logger from the Image Session. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Connecting to the provider located at C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4\LogProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:49, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-11 18:07:49, Warning               DISM   DISM Provider Store: PID=8952 TID=7516 Failed to load the provider: C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4\PEProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-11 18:07:49, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:49, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:07:49, Info                  DISM   DISM Manager: PID=4384 TID=7272 Image session successfully loaded from the temporary location: C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4 - CDISMManager::CreateImageSession
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=7272 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=6968 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=6968 Session id is: 2 - DismOpenSessionInternal
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=6968 Enter DismDisableFeatureInternal - DismDisableFeatureInternal
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=6968 Input parameters: Session: 2, FeatureName: Windows-Defender-Default-Definitions, PackageName: (null), RemovePayload: 1, CancelEvent: 0x0000000000000000, Progress: 0x0000000000000000, UserData: 0x0000000000000000 - DismDisableFeatureInternal
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=6968 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=7272 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-11 18:07:49, Info                  DISM   API: PID=4384 TID=7272 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Connecting to the provider located at C:\Windows\TEMP\F06814A5-2BD5-4004-B15B-316F680346B4\CbsProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:49, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Encountered a servicing provider, performing additional servicing initializations. - CDISMProviderStore::Internal_LoadProvider
2020-04-11 18:07:49, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-11 18:07:49, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-11 18:07:49, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 Finished initializing the CbsConUI Handler. - CCbsConUIHandler::Initialize
2020-04-11 18:07:49, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-11 18:07:49, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-11 18:07:49, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 CBS is being initialized for online use. More information about CBS actions can be located at: %windir%\logs\cbs\cbs.log - CDISMPackageManager::Initialize
2020-04-11 18:07:49, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 Loaded servicing stack for online use only. - CDISMPackageManager::CreateCbsSession
2020-04-11 18:07:51, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 Initiating Changes on Package with values: 5, fffffff0 - CDISMPackage::Internal_ChangePackageState
2020-04-11 18:07:55, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 CBS session options=0x100! - CDISMPackageManager::Internal_Finalize
2020-04-11 18:09:19, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-11 18:09:19, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-11 18:09:22, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 DISM has detected a DISM component change. Requesting a shutdown. - CDISMPackageManager::Internal_Finalize
2020-04-11 18:09:22, Info                  DISM   DISM Image Session: PID=8952 TID=7516 The image session needs to be closed and re-opened before any servicing operations can be performed. - CDISMImageSession::put_ImageState
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Exit DismDisableFeatureInternal - DismDisableFeatureInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Refcount for DismSession= 2s 0 - CSessionTable::RemoveSession
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=7272 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=7272 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=7272 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=7272 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Found the PE Provider.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Finalizing the servicing provider(DISM Package Manager) - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Package Manager: PID=8952 TID=7516 Finalizing CBS core. - CDISMPackageManager::Finalize
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Disconnecting Provider: DISM Package Manager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Releasing the local reference to OSServices. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Disconnecting Provider: OSServices - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=8952 TID=7516 Releasing the local reference to DISMLogger.  Stop logging. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Manager: PID=4384 TID=7272 Closing session event handle 0x19e0 - CDISMManager::CleanupImageSessionEntry
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Disconnecting Provider: FolderManager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Disconnecting Provider: FfuManager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Disconnecting Provider: WimManager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Disconnecting Provider: VHDManager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Disconnecting Provider: GenericImagingManager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   DISM Provider Store: PID=4384 TID=7272 Releasing the local reference to DISMLogger.  Stop logging. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=7272 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Enter DismShutdownInternal - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Refcount for DismSession= 1s 0 - CSessionTable::RemoveSession
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=8296 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=8296 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=8296 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=8296 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-11 18:09:22, Info                  DISM   PID=4384 TID=8296 Temporarily setting the scratch directory. This may be overridden by user later. - CDISMManager::FinalConstruct
2020-04-11 18:09:22, Info                  DISM   PID=4384 TID=8296 Scratch directory set to 'C:\Windows\TEMP\'. - CDISMManager::put_ScratchDir
2020-04-11 18:09:22, Info                  DISM   PID=4384 TID=8296 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-11 18:09:22, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=8296 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Deleted g_internalDismSession - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Shutdown SessionTable - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 Leave DismShutdownInternal - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll:                                          - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll: <----- Ending DismApi.dll session -----> - DismShutdownInternal
2020-04-11 18:09:22, Info                  DISM   API: PID=4384 TID=6968 DismApi.dll:                                          - DismShutdownInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll:                                            - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll:                                            - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 DismApi.dll: Parent process command line: C:\Windows\system32\cleanmgr.exe /autoclean /d C: - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 Enter DismInitializeInternal - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 Initialized GlobalConfig - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 Initialized SessionTable - DismInitializeInternal
2020-04-13 04:22:19, Info                  DISM   API: PID=8136 TID=9024 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll:                                            - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll: <----- Starting DismApi.dll session -----> - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll:                                            - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll: Host machine information: OS Version=10.0.18363, Running architecture=amd64, Number of processors=4 - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll: API Version 10.0.18362.1 - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll: Parent process command line: C:\Windows\system32\cleanmgr.exe /autoclean /d C: - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 Enter DismInitializeInternal - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   API: PID=6052 TID=4420 Input parameters: LogLevel: 2, LogFilePath: (null), ScratchDirectory: (null) - DismInitializeInternal
2020-04-14 11:31:16, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:31:17, Info                  DISM   API: PID=6052 TID=4420 Initialized GlobalConfig - DismInitializeInternal
2020-04-14 11:31:17, Info                  DISM   API: PID=6052 TID=4420 Initialized SessionTable - DismInitializeInternal
2020-04-14 11:31:17, Info                  DISM   API: PID=6052 TID=4420 Lookup in table by path failed for: DummyPath-2BA51B78-C7F7-4910-B99D-BB7345357CDC - CTransactionalImageTable::LookupImagePath
2020-04-14 11:31:17, Info                  DISM   API: PID=6052 TID=4420 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-14 11:31:17, Info                  DISM   API: PID=6052 TID=6528 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=6528 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 m_pInternalThread started - CCommandThread::Start
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Created g_internalDismSession - DismInitializeInternal
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Leave DismInitializeInternal - DismInitializeInternal
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Lookup in table by path failed for: DRIVE_C - CTransactionalImageTable::LookupImagePath
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Waiting for m_pInternalThread to start - CCommandThread::Start
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=124 Enter CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=124 Enter CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 CommandThread StartupEvent signaled - CCommandThread::WaitForStartup
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 m_pInternalThread started - CCommandThread::Start
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=4420 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=124 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-14 11:31:19, Info                  DISM   API: PID=6052 TID=124 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-14 11:31:22, Info                  DISM   PID=6052 TID=124 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-14 11:31:22, Info                  DISM   PID=6052 TID=124 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-14 11:31:22, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:31:24, Info                  DISM   PID=6052 TID=124 Successfully loaded the ImageSession at "C:\Windows\system32\Dism" - CDISMManager::LoadLocalImageSession
2020-04-14 11:31:25, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
[6052] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[6052] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[6052] [0xc142011c] WIMGetMountedImageHandle:(2897)
[6052] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[6052] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[6052] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-14 11:33:30, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:33:30, Info                  DISM   DISM Provider Store: PID=7348 TID=1348 Found and Initialized the DISM Logger. - CDISMProviderStore::Internal_InitializeLogger
2020-04-14 11:33:30, Warning               DISM   DISM Provider Store: PID=7348 TID=1348 Failed to load the provider: C:\Users\ivanc\AppData\Local\Temp\FC8FE32A-0401-499B-BEB5-A7F28203E339\PEProvider.dll. - CDISMProviderStore::Internal_GetProvider(hr:0x8007007e)
2020-04-14 11:33:30, Info                  DISM   DISM Provider Store: PID=7348 TID=1348 Failed to get and initialize the PE Provider.  Continuing by assuming that it is not a WinPE image. - CDISMProviderStore::Final_OnConnect
2020-04-14 11:33:30, Info                  DISM   DISM Provider Store: PID=7348 TID=1348 Finished initializing the Provider Map. - CDISMProviderStore::Final_OnConnect
2020-04-14 11:33:30, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:33:30, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:33:30, Info                  DISM   API: PID=6052 TID=124 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-14 11:33:30, Info                  DISM   API: PID=6052 TID=4420 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-14 11:33:30, Info                  DISM   API: PID=6052 TID=4420 Session id is: 2 - DismOpenSessionInternal
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 DismInitialize: 2 - DismInitializeInternal
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Enter DismOpenSessionInternal - DismOpenSessionInternal
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Input parameters: ImagePath: DISM_{53BFAE52-B167-4E2F-A258-0A37B57FF845}, WindowsDirectory: (null), SystemDrive: (null) - DismOpenSessionInternal
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Returning existing DismSession=2 for path DRIVE_C. RefCount=2 - CSessionTable::CreateSession
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=124 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=124 Successfully dequeued command object - CCommandThread::DequeueCommandObject
[6052] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[6052] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[6052] [0xc142011c] WIMGetMountedImageHandle:(2897)
[6052] [0x8007007b] FIOReadFileIntoBuffer:(1381): El nombre de archivo, el nombre de directorio o la sintaxis de la etiqueta del volumen no son correctos.
[6052] [0xc142011c] UnmarshallImageHandleFromDirectory:(641)
[6052] [0xc142011c] WIMGetMountedImageHandle:(2897)
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=124 Target image information: OS Version=10.0.18363.752, Image architecture=amd64 - CDismCore::LogImageSessionDetails
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Leave DismOpenSessionInternal - DismOpenSessionInternal
2020-04-14 11:33:35, Info                  DISM   API: PID=6052 TID=4420 Session id is: 2 - DismOpenSessionInternal
2020-04-14 11:33:53, Info                  DISM   API: PID=6052 TID=4420 Enter DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-14 11:33:53, Info                  DISM   API: PID=6052 TID=4420 Input parameters: Session: 2, Type: 1,  - DismGetUsedSpaceInternal
2020-04-14 11:33:53, Info                  DISM   API: PID=6052 TID=4420 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-14 11:33:53, Info                  DISM   API: PID=6052 TID=124 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-14 11:33:53, Info                  DISM   API: PID=6052 TID=124 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-14 11:33:53, Info                  DISM   DISM Provider Store: PID=7348 TID=1348 Connecting to the provider located at C:\Users\ivanc\AppData\Local\Temp\FC8FE32A-0401-499B-BEB5-A7F28203E339\CbsProvider.dll. - CDISMProviderStore::Internal_LoadProvider
2020-04-14 11:33:53, Info                  DISM   DISM Provider Store: PID=7348 TID=1348 Encountered a servicing provider, performing additional servicing initializations. - CDISMProviderStore::Internal_LoadProvider
2020-04-14 11:33:53, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-14 11:33:53, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-14 11:33:54, Info                  DISM   DISM Package Manager: PID=7348 TID=1348 Finished initializing the CbsConUI Handler. - CCbsConUIHandler::Initialize
2020-04-14 11:33:54, Info                  CSI    00000001 Shim considered [l:125]'\??\C:\Windows\Servicing\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_OBJECT_PATH_NOT_FOUND
2020-04-14 11:33:54, Info                  CSI    00000002 Shim considered [l:122]'\??\C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\wcp.dll' : got STATUS_SUCCESS
2020-04-14 11:33:54, Info                  DISM   DISM Package Manager: PID=7348 TID=1348 CBS is being initialized for online use. More information about CBS actions can be located at: %windir%\logs\cbs\cbs.log - CDISMPackageManager::Initialize
2020-04-14 11:33:54, Info                  DISM   DISM Package Manager: PID=7348 TID=1348 Loaded servicing stack for online use only. - CDISMPackageManager::CreateCbsSession
2020-04-14 11:34:22, Info                  DISM   API: PID=6052 TID=4420 Exit DismGetUsedSpaceInternal - DismGetUsedSpaceInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Refcount for DismSession= 2s 1 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 DismShutdown: 1 - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Enter DismCloseSessionInternal - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Input parameters: Session: 2 - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Refcount for DismSession= 2s 0 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=124 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=124 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=124 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=124 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Found the OSServices.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Found the PE Provider.  Waiting to finalize it until all other providers are unloaded. - CDISMProviderStore::Final_OnDisconnect
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Finalizing the servicing provider(DISM Package Manager) - CDISMProviderStore::Internal_DisconnectProvider
2020-04-14 11:34:27, Info                  DISM   DISM Package Manager: PID=7348 TID=4376 Finalizing CBS core. - CDISMPackageManager::Finalize
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Disconnecting Provider: DISM Package Manager - CDISMProviderStore::Internal_DisconnectProvider
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Releasing the local reference to OSServices. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Disconnecting Provider: OSServices - CDISMProviderStore::Internal_DisconnectProvider
2020-04-14 11:34:27, Info                  DISM   DISM Provider Store: PID=7348 TID=4376 Releasing the local reference to DISMLogger.  Stop logging. - CDISMProviderStore::Internal_DisconnectProvider
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=124 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Leave DismCloseSessionInternal - DismCloseSessionInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Enter DismShutdownInternal - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 GetReferenceCount hr: 0x0 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Refcount for DismSession= 1s 0 - CSessionTable::RemoveSession
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Successfully enqueued command object - CCommandThread::EnqueueCommandObject
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=6528 ExecuteLoop: CommandQueue signaled - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=6528 Successfully dequeued command object - CCommandThread::DequeueCommandObject
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=6528 ExecuteLoop: Cancel signaled - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=6528 Leave CCommandThread::ExecuteLoop - CCommandThread::ExecuteLoop
2020-04-14 11:34:27, Info                  DISM   PID=6052 TID=6528 Temporarily setting the scratch directory. This may be overridden by user later. - CDISMManager::FinalConstruct
2020-04-14 11:34:27, Info                  DISM   PID=6052 TID=6528 Scratch directory set to 'C:\Users\ivanc\AppData\Local\Temp\'. - CDISMManager::put_ScratchDir
2020-04-14 11:34:27, Info                  DISM   PID=6052 TID=6528 DismCore.dll version: 10.0.18362.1 - CDISMManager::FinalConstruct
2020-04-14 11:34:27, Info                  DISM   Initialized Panther logging at C:\Windows\Logs\DISM\dism.log
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=6528 Leave CCommandThread::CommandThreadProcedureStub - CCommandThread::CommandThreadProcedureStub
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Deleted g_internalDismSession - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Shutdown SessionTable - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 Leave DismShutdownInternal - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll:                                          - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll: <----- Ending DismApi.dll session -----> - DismShutdownInternal
2020-04-14 11:34:27, Info                  DISM   API: PID=6052 TID=4420 DismApi.dll:                                          - DismShutdownInternal
 
========= Final de CMD: =========
 
 
========= SFC /scannow =========
 
 
 
Iniciando examen en el sistema. Este proceso tardará algún tiempo.
 
 
 
Iniciando la fase de comprobación del examen del sistema.
 
 
Se completó la comprobación de 0%.
Se completó la comprobación de 1%.
Se completó la comprobación de 2%.
Se completó la comprobación de 2%.
Se completó la comprobación de 3%.
Se completó la comprobación de 4%.
Se completó la comprobación de 4%.
Se completó la comprobación de 5%.
Se completó la comprobación de 6%.
Se completó la comprobación de 6%.
Se completó la comprobación de 7%.
Se completó la comprobación de 8%.
Se completó la comprobación de 8%.
Se completó la comprobación de 9%.
Se completó la comprobación de 10%.
Se completó la comprobación de 10%.
Se completó la comprobación de 11%.
Se completó la comprobación de 12%.
Se completó la comprobación de 12%.
Se completó la comprobación de 13%.
Se completó la comprobación de 14%.
Se completó la comprobación de 14%.
Se completó la comprobación de 15%.
Se completó la comprobación de 16%.
Se completó la comprobación de 16%.
Se completó la comprobación de 17%.
Se completó la comprobación de 18%.
Se completó la comprobación de 18%.
Se completó la comprobación de 19%.
Se completó la comprobación de 20%.
Se completó la comprobación de 20%.
Se completó la comprobación de 21%.
Se completó la comprobación de 22%.
Se completó la comprobación de 23%.
Se completó la comprobación de 23%.
Se completó la comprobación de 24%.
Se completó la comprobación de 25%.
Se completó la comprobación de 25%.
Se completó la comprobación de 26%.
Se completó la comprobación de 27%.
Se completó la comprobación de 27%.
Se completó la comprobación de 28%.
Se completó la comprobación de 29%.
Se completó la comprobación de 29%.
Se completó la comprobación de 30%.
Se completó la comprobación de 31%.
Se completó la comprobación de 31%.
Se completó la comprobación de 32%.
Se completó la comprobación de 33%.
Se completó la comprobación de 33%.
Se completó la comprobación de 34%.
Se completó la comprobación de 35%.
Se completó la comprobación de 35%.
Se completó la comprobación de 36%.
Se completó la comprobación de 37%.
Se completó la comprobación de 37%.
Se completó la comprobación de 38%.
Se completó la comprobación de 39%.
Se completó la comprobación de 39%.
Se completó la comprobación de 40%.
Se completó la comprobación de 41%.
Se completó la comprobación de 41%.
Se completó la comprobación de 42%.
Se completó la comprobación de 43%.
Se completó la comprobación de 44%.
Se completó la comprobación de 44%.
Se completó la comprobación de 45%.
Se completó la comprobación de 46%.
Se completó la comprobación de 46%.
Se completó la comprobación de 47%.
Se completó la comprobación de 48%.
Se completó la comprobación de 48%.
Se completó la comprobación de 49%.
Se completó la comprobación de 50%.
Se completó la comprobación de 50%.
Se completó la comprobación de 51%.
Se completó la comprobación de 52%.
Se completó la comprobación de 52%.
Se completó la comprobación de 53%.
Se completó la comprobación de 54%.
Se completó la comprobación de 54%.
Se completó la comprobación de 55%.
Se completó la comprobación de 56%.
Se completó la comprobación de 56%.
Se completó la comprobación de 57%.
Se completó la comprobación de 58%.
Se completó la comprobación de 58%.
Se completó la comprobación de 59%.
Se completó la comprobación de 60%.
Se completó la comprobación de 60%.
Se completó la comprobación de 61%.
Se completó la comprobación de 62%.
Se completó la comprobación de 62%.
Se completó la comprobación de 63%.
Se completó la comprobación de 64%.
Se completó la comprobación de 65%.
Se completó la comprobación de 65%.
Se completó la comprobación de 66%.
Se completó la comprobación de 67%.
Se completó la comprobación de 67%.
Se completó la comprobación de 68%.
Se completó la comprobación de 69%.
Se completó la comprobación de 69%.
Se completó la comprobación de 70%.
Se completó la comprobación de 71%.
Se completó la comprobación de 71%.
Se completó la comprobación de 72%.
Se completó la comprobación de 73%.
Se completó la comprobación de 73%.
Se completó la comprobación de 74%.
Se completó la comprobación de 75%.
Se completó la comprobación de 75%.
Se completó la comprobación de 76%.
Se completó la comprobación de 77%.
Se completó la comprobación de 77%.
Se completó la comprobación de 78%.
Se completó la comprobación de 79%.
Se completó la comprobación de 79%.
Se completó la comprobación de 80%.
Se completó la comprobación de 81%.
Se completó la comprobación de 81%.
Se completó la comprobación de 82%.
Se completó la comprobación de 83%.
Se completó la comprobación de 83%.
Se completó la comprobación de 84%.
Se completó la comprobación de 85%.
Se completó la comprobación de 85%.
Se completó la comprobación de 86%.
Se completó la comprobación de 87%.
Se completó la comprobación de 88%.
Se completó la comprobación de 88%.
Se completó la comprobación de 89%.
Se completó la comprobación de 90%.
Se completó la comprobación de 90%.
Se completó la comprobación de 91%.
Se completó la comprobación de 92%.
Se completó la comprobación de 92%.
Se completó la comprobación de 93%.
Se completó la comprobación de 94%.
Se completó la comprobación de 94%.
Se completó la comprobación de 95%.
Se completó la comprobación de 96%.
Se completó la comprobación de 96%.
Se completó la comprobación de 97%.
Se completó la comprobación de 98%.
Se completó la comprobación de 98%.
Se completó la comprobación de 99%.
Se completó la comprobación de 100%.
 
 
Protección de recursos de Windows encontró archivos dañados y los reparó correctamente.
 
Para las reparaciones en línea, los detalles se encuentran en el archivo de registro de CBS ubicado en
 
windir\Logs\CBS\CBS.log. Por ejemplo, C:\Windows\Logs\CBS\CBS.log. Para las reparaciones
 
sin conexión, los detalles se encuentran en el archivo de registro que proporciona la marca /OFFLOGFILE.
 
 
========= Final de CMD: =========
 
 
========= findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log =========
 
2020-04-12 02:58:24, Info                  CSI    00000006 [SR] Verifying 1 components
2020-04-12 02:58:24, Info                  CSI    00000007 [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:26, Info                  CSI    00000009 [SR] Verify complete
2020-04-12 02:58:26, Info                  CSI    0000000a [SR] Verifying 1 components
2020-04-12 02:58:26, Info                  CSI    0000000b [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:26, Info                  CSI    0000000c [SR] Verify complete
2020-04-12 02:58:26, Info                  CSI    0000000d [SR] Verifying 1 components
2020-04-12 02:58:26, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:26, Info                  CSI    0000000f [SR] Verify complete
2020-04-12 02:58:26, Info                  CSI    00000010 [SR] Verifying 1 components
2020-04-12 02:58:26, Info                  CSI    00000011 [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:27, Info                  CSI    00000012 [SR] Verify complete
2020-04-12 02:58:27, Info                  CSI    00000013 [SR] Verifying 1 components
2020-04-12 02:58:27, Info                  CSI    00000014 [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:27, Info                  CSI    00000015 [SR] Verify complete
2020-04-12 02:58:27, Info                  CSI    00000016 [SR] Verifying 1 components
2020-04-12 02:58:27, Info                  CSI    00000017 [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:28, Info                  CSI    00000018 [SR] Verify complete
2020-04-12 02:58:51, Info                  CSI    00000019 [SR] Verifying 1 components
2020-04-12 02:58:51, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2020-04-12 02:58:51, Info                  CSI    0000001b [SR] Verify complete
2020-04-12 03:00:19, Info                  CSI    0000001c [SR] Verifying 1 components
2020-04-12 03:00:19, Info                  CSI    0000001d [SR] Beginning Verify and Repair transaction
2020-04-12 03:00:19, Info                  CSI    0000001e [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    0000001f [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    00000020 [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    00000021 [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    00000022 [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    00000023 [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    00000024 [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    00000025 [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    00000027 [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    00000028 [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    00000029 [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    0000002a [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    0000002b [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    0000002c [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    0000002d [SR] Verify complete
2020-04-12 03:01:53, Info                  CSI    0000002e [SR] Verifying 1 components
2020-04-12 03:01:53, Info                  CSI    0000002f [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:53, Info                  CSI    00000030 [SR] Verify complete
2020-04-12 03:01:57, Info                  CSI    00000031 [SR] Verifying 1 components
2020-04-12 03:01:57, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2020-04-12 03:01:58, Info                  CSI    00000033 [SR] Verify complete
2020-04-15 15:01:22, Info                  CSI    00000006 [SR] Verifying 100 components
2020-04-15 15:01:22, Info                  CSI    00000007 [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:26, Info                  CSI    00000008 [SR] Verify complete
2020-04-15 15:01:26, Info                  CSI    00000009 [SR] Verifying 100 components
2020-04-15 15:01:26, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:33, Info                  CSI    0000000c [SR] Verify complete
2020-04-15 15:01:33, Info                  CSI    0000000d [SR] Verifying 100 components
2020-04-15 15:01:33, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:36, Info                  CSI    0000000f [SR] Verify complete
2020-04-15 15:01:36, Info                  CSI    00000010 [SR] Verifying 100 components
2020-04-15 15:01:36, Info                  CSI    00000011 [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:43, Info                  CSI    00000012 [SR] Verify complete
2020-04-15 15:01:43, Info                  CSI    00000013 [SR] Verifying 100 components
2020-04-15 15:01:43, Info                  CSI    00000014 [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:46, Info                  CSI    00000015 [SR] Verify complete
2020-04-15 15:01:46, Info                  CSI    00000016 [SR] Verifying 100 components
2020-04-15 15:01:46, Info                  CSI    00000017 [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:53, Info                  CSI    00000018 [SR] Verify complete
2020-04-15 15:01:54, Info                  CSI    00000019 [SR] Verifying 100 components
2020-04-15 15:01:54, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2020-04-15 15:01:59, Info                  CSI    0000001b [SR] Verify complete
2020-04-15 15:01:59, Info                  CSI    0000001c [SR] Verifying 100 components
2020-04-15 15:01:59, Info                  CSI    0000001d [SR] Beginning Verify and Repair transaction
2020-04-15 15:02:16, Info                  CSI    0000001e [SR] Verify complete
2020-04-15 15:02:16, Info                  CSI    0000001f [SR] Verifying 100 components
2020-04-15 15:02:16, Info                  CSI    00000020 [SR] Beginning Verify and Repair transaction
2020-04-15 15:02:38, Info                  CSI    00000021 [SR] Verify complete
2020-04-15 15:02:38, Info                  CSI    00000022 [SR] Verifying 100 components
2020-04-15 15:02:38, Info                  CSI    00000023 [SR] Beginning Verify and Repair transaction
2020-04-15 15:02:44, Info                  CSI    00000024 [SR] Verify complete
2020-04-15 15:02:45, Info                  CSI    00000025 [SR] Verifying 100 components
2020-04-15 15:02:45, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2020-04-15 15:02:49, Info                  CSI    00000027 [SR] Verify complete
2020-04-15 15:02:49, Info                  CSI    00000028 [SR] Verifying 100 components
2020-04-15 15:02:49, Info                  CSI    00000029 [SR] Beginning Verify and Repair transaction
2020-04-15 15:02:58, Info                  CSI    0000002d [SR] Verify complete
2020-04-15 15:02:58, Info                  CSI    0000002e [SR] Verifying 100 components
2020-04-15 15:02:58, Info                  CSI    0000002f [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:02, Info                  CSI    00000030 [SR] Verify complete
2020-04-15 15:03:02, Info                  CSI    00000031 [SR] Verifying 100 components
2020-04-15 15:03:02, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:08, Info                  CSI    00000033 [SR] Verify complete
2020-04-15 15:03:08, Info                  CSI    00000034 [SR] Verifying 100 components
2020-04-15 15:03:08, Info                  CSI    00000035 [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:16, Info                  CSI    00000038 [SR] Verify complete
2020-04-15 15:03:17, Info                  CSI    00000039 [SR] Verifying 100 components
2020-04-15 15:03:17, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:26, Info                  CSI    0000003d [SR] Verify complete
2020-04-15 15:03:26, Info                  CSI    0000003e [SR] Verifying 100 components
2020-04-15 15:03:26, Info                  CSI    0000003f [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:36, Info                  CSI    00000043 [SR] Verify complete
2020-04-15 15:03:36, Info                  CSI    00000044 [SR] Verifying 100 components
2020-04-15 15:03:36, Info                  CSI    00000045 [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:43, Info                  CSI    00000047 [SR] Verify complete
2020-04-15 15:03:43, Info                  CSI    00000048 [SR] Verifying 100 components
2020-04-15 15:03:43, Info                  CSI    00000049 [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:50, Info                  CSI    0000004b [SR] Verify complete
2020-04-15 15:03:51, Info                  CSI    0000004c [SR] Verifying 100 components
2020-04-15 15:03:51, Info                  CSI    0000004d [SR] Beginning Verify and Repair transaction
2020-04-15 15:03:59, Info                  CSI    00000051 [SR] Verify complete
2020-04-15 15:03:59, Info                  CSI    00000052 [SR] Verifying 100 components
2020-04-15 15:03:59, Info                  CSI    00000053 [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:11, Info                  CSI    00000056 [SR] Verify complete
2020-04-15 15:04:11, Info                  CSI    00000057 [SR] Verifying 100 components
2020-04-15 15:04:11, Info                  CSI    00000058 [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:30, Info                  CSI    0000005d [SR] Verify complete
2020-04-15 15:04:30, Info                  CSI    0000005e [SR] Verifying 100 components
2020-04-15 15:04:30, Info                  CSI    0000005f [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:37, Info                  CSI    00000061 [SR] Verify complete
2020-04-15 15:04:37, Info                  CSI    00000062 [SR] Verifying 100 components
2020-04-15 15:04:37, Info                  CSI    00000063 [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:43, Info                  CSI    00000064 [SR] Verify complete
2020-04-15 15:04:43, Info                  CSI    00000065 [SR] Verifying 100 components
2020-04-15 15:04:43, Info                  CSI    00000066 [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:49, Info                  CSI    00000067 [SR] Verify complete
2020-04-15 15:04:49, Info                  CSI    00000068 [SR] Verifying 100 components
2020-04-15 15:04:49, Info                  CSI    00000069 [SR] Beginning Verify and Repair transaction
2020-04-15 15:04:57, Info                  CSI    0000006b [SR] Verify complete
2020-04-15 15:04:57, Info                  CSI    0000006c [SR] Verifying 100 components
2020-04-15 15:04:57, Info                  CSI    0000006d [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:05, Info                  CSI    0000006f [SR] Verify complete
2020-04-15 15:05:05, Info                  CSI    00000070 [SR] Verifying 100 components
2020-04-15 15:05:05, Info                  CSI    00000071 [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:10, Info                  CSI    00000072 [SR] Verify complete
2020-04-15 15:05:11, Info                  CSI    00000073 [SR] Verifying 100 components
2020-04-15 15:05:11, Info                  CSI    00000074 [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:17, Info                  CSI    00000075 [SR] Verify complete
2020-04-15 15:05:17, Info                  CSI    00000076 [SR] Verifying 100 components
2020-04-15 15:05:17, Info                  CSI    00000077 [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:26, Info                  CSI    0000007b [SR] Verify complete
2020-04-15 15:05:26, Info                  CSI    0000007c [SR] Verifying 100 components
2020-04-15 15:05:26, Info                  CSI    0000007d [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:34, Info                  CSI    0000007e [SR] Verify complete
2020-04-15 15:05:34, Info                  CSI    0000007f [SR] Verifying 100 components
2020-04-15 15:05:34, Info                  CSI    00000080 [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:43, Info                  CSI    00000084 [SR] Verify complete
2020-04-15 15:05:43, Info                  CSI    00000085 [SR] Verifying 100 components
2020-04-15 15:05:43, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:51, Info                  CSI    00000089 [SR] Verify complete
2020-04-15 15:05:51, Info                  CSI    0000008a [SR] Verifying 100 components
2020-04-15 15:05:51, Info                  CSI    0000008b [SR] Beginning Verify and Repair transaction
2020-04-15 15:05:59, Info                  CSI    0000008c [SR] Verify complete
2020-04-15 15:06:00, Info                  CSI    0000008d [SR] Verifying 100 components
2020-04-15 15:06:00, Info                  CSI    0000008e [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:13, Info                  CSI    0000009c [SR] Verify complete
2020-04-15 15:06:13, Info                  CSI    0000009d [SR] Verifying 100 components
2020-04-15 15:06:13, Info                  CSI    0000009e [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:25, Info                  CSI    000000a5 [SR] Verify complete
2020-04-15 15:06:25, Info                  CSI    000000a6 [SR] Verifying 100 components
2020-04-15 15:06:25, Info                  CSI    000000a7 [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:38, Info                  CSI    000000b0 [SR] Verify complete
2020-04-15 15:06:39, Info                  CSI    000000b1 [SR] Verifying 100 components
2020-04-15 15:06:39, Info                  CSI    000000b2 [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:45, Info                  CSI    000000b4 [SR] Verify complete
2020-04-15 15:06:46, Info                  CSI    000000b5 [SR] Verifying 100 components
2020-04-15 15:06:46, Info                  CSI    000000b6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:52, Info                  CSI    000000b8 [SR] Verify complete
2020-04-15 15:06:53, Info                  CSI    000000b9 [SR] Verifying 100 components
2020-04-15 15:06:53, Info                  CSI    000000ba [SR] Beginning Verify and Repair transaction
2020-04-15 15:06:57, Info                  CSI    000000bc [SR] Verify complete
2020-04-15 15:06:58, Info                  CSI    000000bd [SR] Verifying 100 components
2020-04-15 15:06:58, Info                  CSI    000000be [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:01, Info                  CSI    000000bf [SR] Verify complete
2020-04-15 15:07:01, Info                  CSI    000000c0 [SR] Verifying 100 components
2020-04-15 15:07:01, Info                  CSI    000000c1 [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:07, Info                  CSI    000000c3 [SR] Verify complete
2020-04-15 15:07:07, Info                  CSI    000000c4 [SR] Verifying 100 components
2020-04-15 15:07:07, Info                  CSI    000000c5 [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:13, Info                  CSI    000000c7 [SR] Verify complete
2020-04-15 15:07:13, Info                  CSI    000000c8 [SR] Verifying 100 components
2020-04-15 15:07:13, Info                  CSI    000000c9 [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:23, Info                  CSI    000000cd [SR] Verify complete
2020-04-15 15:07:23, Info                  CSI    000000ce [SR] Verifying 100 components
2020-04-15 15:07:23, Info                  CSI    000000cf [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:30, Info                  CSI    000000d3 [SR] Verify complete
2020-04-15 15:07:31, Info                  CSI    000000d4 [SR] Verifying 100 components
2020-04-15 15:07:31, Info                  CSI    000000d5 [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:37, Info                  CSI    000000d6 [SR] Verify complete
2020-04-15 15:07:37, Info                  CSI    000000d7 [SR] Verifying 100 components
2020-04-15 15:07:37, Info                  CSI    000000d8 [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:42, Info                  CSI    000000d9 [SR] Verify complete
2020-04-15 15:07:42, Info                  CSI    000000da [SR] Verifying 100 components
2020-04-15 15:07:42, Info                  CSI    000000db [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:48, Info                  CSI    000000dc [SR] Verify complete
2020-04-15 15:07:49, Info                  CSI    000000dd [SR] Verifying 100 components
2020-04-15 15:07:49, Info                  CSI    000000de [SR] Beginning Verify and Repair transaction
2020-04-15 15:07:59, Info                  CSI    000000e1 [SR] Verify complete
2020-04-15 15:07:59, Info                  CSI    000000e2 [SR] Verifying 100 components
2020-04-15 15:07:59, Info                  CSI    000000e3 [SR] Beginning Verify and Repair transaction
2020-04-15 15:08:06, Info                  CSI    000000e5 [SR] Verify complete
2020-04-15 15:08:06, Info                  CSI    000000e6 [SR] Verifying 100 components
2020-04-15 15:08:06, Info                  CSI    000000e7 [SR] Beginning Verify and Repair transaction
2020-04-15 15:08:14, Info                  CSI    000000ea [SR] Verify complete
2020-04-15 15:08:14, Info                  CSI    000000eb [SR] Verifying 100 components
2020-04-15 15:08:14, Info                  CSI    000000ec [SR] Beginning Verify and Repair transaction
2020-04-15 15:08:28, Info                  CSI    000000f0 [SR] Verify complete
2020-04-15 15:08:28, Info                  CSI    000000f1 [SR] Verifying 100 components
2020-04-15 15:08:28, Info                  CSI    000000f2 [SR] Beginning Verify and Repair transaction
2020-04-15 15:08:47, Info                  CSI    000000f4 [SR] Verify complete
2020-04-15 15:08:47, Info                  CSI    000000f5 [SR] Verifying 100 components
2020-04-15 15:08:47, Info                  CSI    000000f6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:08:53, Info                  CSI    000000f8 [SR] Verify complete
2020-04-15 15:08:54, Info                  CSI    000000f9 [SR] Verifying 100 components
2020-04-15 15:08:54, Info                  CSI    000000fa [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:03, Info                  CSI    000000fc [SR] Verify complete
2020-04-15 15:09:03, Info                  CSI    000000fd [SR] Verifying 100 components
2020-04-15 15:09:03, Info                  CSI    000000fe [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:12, Info                  CSI    00000101 [SR] Verify complete
2020-04-15 15:09:12, Info                  CSI    00000102 [SR] Verifying 100 components
2020-04-15 15:09:12, Info                  CSI    00000103 [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:20, Info                  CSI    00000106 [SR] Verify complete
2020-04-15 15:09:20, Info                  CSI    00000107 [SR] Verifying 100 components
2020-04-15 15:09:20, Info                  CSI    00000108 [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:26, Info                  CSI    00000109 [SR] Verify complete
2020-04-15 15:09:26, Info                  CSI    0000010a [SR] Verifying 100 components
2020-04-15 15:09:26, Info                  CSI    0000010b [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:32, Info                  CSI    0000010c [SR] Verify complete
2020-04-15 15:09:33, Info                  CSI    0000010d [SR] Verifying 100 components
2020-04-15 15:09:33, Info                  CSI    0000010e [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:42, Info                  CSI    0000010f [SR] Verify complete
2020-04-15 15:09:42, Info                  CSI    00000110 [SR] Verifying 100 components
2020-04-15 15:09:42, Info                  CSI    00000111 [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:51, Info                  CSI    00000113 [SR] Verify complete
2020-04-15 15:09:52, Info                  CSI    00000114 [SR] Verifying 100 components
2020-04-15 15:09:52, Info                  CSI    00000115 [SR] Beginning Verify and Repair transaction
2020-04-15 15:09:56, Info                  CSI    00000116 [SR] Verify complete
2020-04-15 15:09:57, Info                  CSI    00000117 [SR] Verifying 100 components
2020-04-15 15:09:57, Info                  CSI    00000118 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:03, Info                  CSI    00000119 [SR] Verify complete
2020-04-15 15:10:04, Info                  CSI    0000011a [SR] Verifying 100 components
2020-04-15 15:10:04, Info                  CSI    0000011b [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:09, Info                  CSI    0000011e [SR] Verify complete
2020-04-15 15:10:10, Info                  CSI    0000011f [SR] Verifying 100 components
2020-04-15 15:10:10, Info                  CSI    00000120 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:15, Info                  CSI    00000121 [SR] Verify complete
2020-04-15 15:10:15, Info                  CSI    00000122 [SR] Verifying 100 components
2020-04-15 15:10:15, Info                  CSI    00000123 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:24, Info                  CSI    00000126 [SR] Verify complete
2020-04-15 15:10:24, Info                  CSI    00000127 [SR] Verifying 100 components
2020-04-15 15:10:24, Info                  CSI    00000128 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:30, Info                  CSI    0000012b [SR] Verify complete
2020-04-15 15:10:30, Info                  CSI    0000012c [SR] Verifying 100 components
2020-04-15 15:10:30, Info                  CSI    0000012d [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:37, Info                  CSI    00000131 [SR] Verify complete
2020-04-15 15:10:37, Info                  CSI    00000132 [SR] Verifying 100 components
2020-04-15 15:10:37, Info                  CSI    00000133 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:44, Info                  CSI    00000134 [SR] Verify complete
2020-04-15 15:10:44, Info                  CSI    00000135 [SR] Verifying 100 components
2020-04-15 15:10:44, Info                  CSI    00000136 [SR] Beginning Verify and Repair transaction
2020-04-15 15:10:54, Info                  CSI    0000013c [SR] Verify complete
2020-04-15 15:10:54, Info                  CSI    0000013d [SR] Verifying 100 components
2020-04-15 15:10:54, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:04, Info                  CSI    0000013f [SR] Verify complete
2020-04-15 15:11:04, Info                  CSI    00000140 [SR] Verifying 100 components
2020-04-15 15:11:04, Info                  CSI    00000141 [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:17, Info                  CSI    0000014c [SR] Verify complete
2020-04-15 15:11:17, Info                  CSI    0000014d [SR] Verifying 100 components
2020-04-15 15:11:17, Info                  CSI    0000014e [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:30, Info                  CSI    00000153 [SR] Verify complete
2020-04-15 15:11:30, Info                  CSI    00000154 [SR] Verifying 100 components
2020-04-15 15:11:30, Info                  CSI    00000155 [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:36, Info                  CSI    00000156 [SR] Verify complete
2020-04-15 15:11:37, Info                  CSI    00000157 [SR] Verifying 100 components
2020-04-15 15:11:37, Info                  CSI    00000158 [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:42, Info                  CSI    0000015b [SR] Verify complete
2020-04-15 15:11:43, Info                  CSI    0000015c [SR] Verifying 100 components
2020-04-15 15:11:43, Info                  CSI    0000015d [SR] Beginning Verify and Repair transaction
2020-04-15 15:11:54, Info                  CSI    00000162 [SR] Verify complete
2020-04-15 15:11:54, Info                  CSI    00000163 [SR] Verifying 100 components
2020-04-15 15:11:54, Info                  CSI    00000164 [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:01, Info                  CSI    00000167 [SR] Verify complete
2020-04-15 15:12:02, Info                  CSI    00000168 [SR] Verifying 100 components
2020-04-15 15:12:02, Info                  CSI    00000169 [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:10, Info                  CSI    0000016d [SR] Verify complete
2020-04-15 15:12:10, Info                  CSI    0000016e [SR] Verifying 100 components
2020-04-15 15:12:10, Info                  CSI    0000016f [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:24, Info                  CSI    00000173 [SR] Verify complete
2020-04-15 15:12:24, Info                  CSI    00000174 [SR] Verifying 100 components
2020-04-15 15:12:24, Info                  CSI    00000175 [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:32, Info                  CSI    00000176 [SR] Verify complete
2020-04-15 15:12:32, Info                  CSI    00000177 [SR] Verifying 100 components
2020-04-15 15:12:32, Info                  CSI    00000178 [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:38, Info                  CSI    00000179 [SR] Verify complete
2020-04-15 15:12:38, Info                  CSI    0000017a [SR] Verifying 100 components
2020-04-15 15:12:38, Info                  CSI    0000017b [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:43, Info                  CSI    0000017c [SR] Verify complete
2020-04-15 15:12:43, Info                  CSI    0000017d [SR] Verifying 100 components
2020-04-15 15:12:43, Info                  CSI    0000017e [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:48, Info                  CSI    00000180 [SR] Verify complete
2020-04-15 15:12:49, Info                  CSI    00000181 [SR] Verifying 100 components
2020-04-15 15:12:49, Info                  CSI    00000182 [SR] Beginning Verify and Repair transaction
2020-04-15 15:12:56, Info                  CSI    00000184 [SR] Verify complete
2020-04-15 15:12:57, Info                  CSI    00000185 [SR] Verifying 100 components
2020-04-15 15:12:57, Info                  CSI    00000186 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:04, Info                  CSI    00000187 [SR] Verify complete
2020-04-15 15:13:04, Info                  CSI    00000188 [SR] Verifying 100 components
2020-04-15 15:13:04, Info                  CSI    00000189 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:12, Info                  CSI    0000018a [SR] Verify complete
2020-04-15 15:13:12, Info                  CSI    0000018b [SR] Verifying 100 components
2020-04-15 15:13:12, Info                  CSI    0000018c [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:19, Info                  CSI    0000018e [SR] Verify complete
2020-04-15 15:13:19, Info                  CSI    0000018f [SR] Verifying 100 components
2020-04-15 15:13:19, Info                  CSI    00000190 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:24, Info                  CSI    00000191 [SR] Verify complete
2020-04-15 15:13:24, Info                  CSI    00000192 [SR] Verifying 100 components
2020-04-15 15:13:24, Info                  CSI    00000193 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:29, Info                  CSI    00000197 [SR] Verify complete
2020-04-15 15:13:30, Info                  CSI    00000198 [SR] Verifying 100 components
2020-04-15 15:13:30, Info                  CSI    00000199 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:35, Info                  CSI    0000019b [SR] Verify complete
2020-04-15 15:13:35, Info                  CSI    0000019c [SR] Verifying 100 components
2020-04-15 15:13:35, Info                  CSI    0000019d [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:38, Info                  CSI    0000019e [SR] Verify complete
2020-04-15 15:13:38, Info                  CSI    0000019f [SR] Verifying 100 components
2020-04-15 15:13:38, Info                  CSI    000001a0 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:44, Info                  CSI    000001a3 [SR] Verify complete
2020-04-15 15:13:44, Info                  CSI    000001a4 [SR] Verifying 100 components
2020-04-15 15:13:44, Info                  CSI    000001a5 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:50, Info                  CSI    000001a6 [SR] Verify complete
2020-04-15 15:13:50, Info                  CSI    000001a7 [SR] Verifying 100 components
2020-04-15 15:13:50, Info                  CSI    000001a8 [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:53, Info                  CSI    000001a9 [SR] Verify complete
2020-04-15 15:13:53, Info                  CSI    000001aa [SR] Verifying 100 components
2020-04-15 15:13:53, Info                  CSI    000001ab [SR] Beginning Verify and Repair transaction
2020-04-15 15:13:59, Info                  CSI    000001ae [SR] Verify complete
2020-04-15 15:13:59, Info                  CSI    000001af [SR] Verifying 100 components
2020-04-15 15:13:59, Info                  CSI    000001b0 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:07, Info                  CSI    000001b4 [SR] Verify complete
2020-04-15 15:14:07, Info                  CSI    000001b5 [SR] Verifying 100 components
2020-04-15 15:14:07, Info                  CSI    000001b6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:10, Info                  CSI    000001b8 [SR] Verify complete
2020-04-15 15:14:11, Info                  CSI    000001b9 [SR] Verifying 100 components
2020-04-15 15:14:11, Info                  CSI    000001ba [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:15, Info                  CSI    000001bc [SR] Verify complete
2020-04-15 15:14:15, Info                  CSI    000001bd [SR] Verifying 100 components
2020-04-15 15:14:15, Info                  CSI    000001be [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:19, Info                  CSI    000001c0 [SR] Verify complete
2020-04-15 15:14:19, Info                  CSI    000001c1 [SR] Verifying 100 components
2020-04-15 15:14:19, Info                  CSI    000001c2 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:25, Info                  CSI    000001c4 [SR] Verify complete
2020-04-15 15:14:25, Info                  CSI    000001c5 [SR] Verifying 100 components
2020-04-15 15:14:25, Info                  CSI    000001c6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:32, Info                  CSI    000001c9 [SR] Verify complete
2020-04-15 15:14:32, Info                  CSI    000001ca [SR] Verifying 100 components
2020-04-15 15:14:32, Info                  CSI    000001cb [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:36, Info                  CSI    000001cc [SR] Verify complete
2020-04-15 15:14:36, Info                  CSI    000001cd [SR] Verifying 100 components
2020-04-15 15:14:36, Info                  CSI    000001ce [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:40, Info                  CSI    000001d0 [SR] Verify complete
2020-04-15 15:14:41, Info                  CSI    000001d1 [SR] Verifying 100 components
2020-04-15 15:14:41, Info                  CSI    000001d2 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:53, Info                  CSI    000001d5 [SR] Verify complete
2020-04-15 15:14:53, Info                  CSI    000001d6 [SR] Verifying 100 components
2020-04-15 15:14:53, Info                  CSI    000001d7 [SR] Beginning Verify and Repair transaction
2020-04-15 15:14:57, Info                  CSI    000001d8 [SR] Verify complete
2020-04-15 15:14:57, Info                  CSI    000001d9 [SR] Verifying 100 components
2020-04-15 15:14:57, Info                  CSI    000001da [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:02, Info                  CSI    000001dd [SR] Verify complete
2020-04-15 15:15:02, Info                  CSI    000001de [SR] Verifying 100 components
2020-04-15 15:15:02, Info                  CSI    000001df [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:09, Info                  CSI    000001e1 [SR] Verify complete
2020-04-15 15:15:09, Info                  CSI    000001e2 [SR] Verifying 100 components
2020-04-15 15:15:09, Info                  CSI    000001e3 [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:15, Info                  CSI    000001e4 [SR] Verify complete
2020-04-15 15:15:16, Info                  CSI    000001e5 [SR] Verifying 100 components
2020-04-15 15:15:16, Info                  CSI    000001e6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:20, Info                  CSI    000001e7 [SR] Verify complete
2020-04-15 15:15:21, Info                  CSI    000001e8 [SR] Verifying 100 components
2020-04-15 15:15:21, Info                  CSI    000001e9 [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:26, Info                  CSI    000001ea [SR] Verify complete
2020-04-15 15:15:27, Info                  CSI    000001eb [SR] Verifying 100 components
2020-04-15 15:15:27, Info                  CSI    000001ec [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:31, Info                  CSI    000001ed [SR] Verify complete
2020-04-15 15:15:32, Info                  CSI    000001ee [SR] Verifying 100 components
2020-04-15 15:15:32, Info                  CSI    000001ef [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:39, Info                  CSI    000001f0 [SR] Verify complete
2020-04-15 15:15:39, Info                  CSI    000001f1 [SR] Verifying 100 components
2020-04-15 15:15:39, Info                  CSI    000001f2 [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:45, Info                  CSI    000001f4 [SR] Verify complete
2020-04-15 15:15:45, Info                  CSI    000001f5 [SR] Verifying 100 components
2020-04-15 15:15:45, Info                  CSI    000001f6 [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:51, Info                  CSI    000001f9 [SR] Verify complete
2020-04-15 15:15:51, Info                  CSI    000001fa [SR] Verifying 100 components
2020-04-15 15:15:51, Info                  CSI    000001fb [SR] Beginning Verify and Repair transaction
2020-04-15 15:15:57, Info                  CSI    00000200 [SR] Verify complete
2020-04-15 15:15:57, Info                  CSI    00000201 [SR] Verifying 100 components
2020-04-15 15:15:57, Info                  CSI    00000202 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:02, Info                  CSI    00000203 [SR] Verify complete
2020-04-15 15:16:03, Info                  CSI    00000204 [SR] Verifying 100 components
2020-04-15 15:16:03, Info                  CSI    00000205 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:06, Info                  CSI    00000206 [SR] Verify complete
2020-04-15 15:16:07, Info                  CSI    00000207 [SR] Verifying 100 components
2020-04-15 15:16:07, Info                  CSI    00000208 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:08, Info                  CSI    00000209 [SR] Verify complete
2020-04-15 15:16:08, Info                  CSI    0000020a [SR] Verifying 100 components
2020-04-15 15:16:08, Info                  CSI    0000020b [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:10, Info                  CSI    0000020c [SR] Verify complete
2020-04-15 15:16:10, Info                  CSI    0000020d [SR] Verifying 100 components
2020-04-15 15:16:10, Info                  CSI    0000020e [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:18, Info                  CSI    00000213 [SR] Verify complete
2020-04-15 15:16:18, Info                  CSI    00000214 [SR] Verifying 100 components
2020-04-15 15:16:18, Info                  CSI    00000215 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:23, Info                  CSI    00000216 [SR] Verify complete
2020-04-15 15:16:23, Info                  CSI    00000217 [SR] Verifying 100 components
2020-04-15 15:16:23, Info                  CSI    00000218 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:28, Info                  CSI    0000021a [SR] Verify complete
2020-04-15 15:16:29, Info                  CSI    0000021b [SR] Verifying 100 components
2020-04-15 15:16:29, Info                  CSI    0000021c [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:34, Info                  CSI    0000021e [SR] Verify complete
2020-04-15 15:16:35, Info                  CSI    0000021f [SR] Verifying 100 components
2020-04-15 15:16:35, Info                  CSI    00000220 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:41, Info                  CSI    00000221 [SR] Verify complete
2020-04-15 15:16:41, Info                  CSI    00000222 [SR] Verifying 100 components
2020-04-15 15:16:41, Info                  CSI    00000223 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:46, Info                  CSI    00000225 [SR] Verify complete
2020-04-15 15:16:47, Info                  CSI    00000226 [SR] Verifying 100 components
2020-04-15 15:16:47, Info                  CSI    00000227 [SR] Beginning Verify and Repair transaction
2020-04-15 15:16:54, Info                  CSI    00000229 [SR] Repairing corrupted file \??\C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\OneDrive.lnk from store
2020-04-15 15:16:55, Info                  CSI    0000022b [SR] Verify complete
2020-04-15 15:16:55, Info                  CSI    0000022c [SR] Verifying 100 components
2020-04-15 15:16:55, Info                  CSI    0000022d [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:00, Info                  CSI    0000022e [SR] Verify complete
2020-04-15 15:17:00, Info                  CSI    0000022f [SR] Verifying 100 components
2020-04-15 15:17:00, Info                  CSI    00000230 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:04, Info                  CSI    00000231 [SR] Verify complete
2020-04-15 15:17:04, Info                  CSI    00000232 [SR] Verifying 100 components
2020-04-15 15:17:04, Info                  CSI    00000233 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:09, Info                  CSI    00000234 [SR] Verify complete
2020-04-15 15:17:09, Info                  CSI    00000235 [SR] Verifying 100 components
2020-04-15 15:17:09, Info                  CSI    00000236 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:20, Info                  CSI    00000239 [SR] Verify complete
2020-04-15 15:17:20, Info                  CSI    0000023a [SR] Verifying 100 components
2020-04-15 15:17:20, Info                  CSI    0000023b [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:27, Info                  CSI    00000241 [SR] Verify complete
2020-04-15 15:17:27, Info                  CSI    00000242 [SR] Verifying 100 components
2020-04-15 15:17:27, Info                  CSI    00000243 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:33, Info                  CSI    00000245 [SR] Verify complete
2020-04-15 15:17:33, Info                  CSI    00000246 [SR] Verifying 100 components
2020-04-15 15:17:33, Info                  CSI    00000247 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:39, Info                  CSI    0000024a [SR] Verify complete
2020-04-15 15:17:40, Info                  CSI    0000024b [SR] Verifying 100 components
2020-04-15 15:17:40, Info                  CSI    0000024c [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:46, Info                  CSI    0000024d [SR] Verify complete
2020-04-15 15:17:46, Info                  CSI    0000024e [SR] Verifying 100 components
2020-04-15 15:17:46, Info                  CSI    0000024f [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:52, Info                  CSI    00000250 [SR] Verify complete
2020-04-15 15:17:53, Info                  CSI    00000251 [SR] Verifying 100 components
2020-04-15 15:17:53, Info                  CSI    00000252 [SR] Beginning Verify and Repair transaction
2020-04-15 15:17:59, Info                  CSI    00000255 [SR] Verify complete
2020-04-15 15:17:59, Info                  CSI    00000256 [SR] Verifying 100 components
2020-04-15 15:17:59, Info                  CSI    00000257 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:05, Info                  CSI    00000258 [SR] Verify complete
2020-04-15 15:18:05, Info                  CSI    00000259 [SR] Verifying 100 components
2020-04-15 15:18:05, Info                  CSI    0000025a [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:11, Info                  CSI    0000025c [SR] Verify complete
2020-04-15 15:18:11, Info                  CSI    0000025d [SR] Verifying 100 components
2020-04-15 15:18:11, Info                  CSI    0000025e [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:19, Info                  CSI    00000263 [SR] Verify complete
2020-04-15 15:18:19, Info                  CSI    00000264 [SR] Verifying 100 components
2020-04-15 15:18:19, Info                  CSI    00000265 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:26, Info                  CSI    00000267 [SR] Verify complete
2020-04-15 15:18:27, Info                  CSI    00000268 [SR] Verifying 100 components
2020-04-15 15:18:27, Info                  CSI    00000269 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:31, Info                  CSI    0000026b [SR] Verify complete
2020-04-15 15:18:31, Info                  CSI    0000026c [SR] Verifying 100 components
2020-04-15 15:18:31, Info                  CSI    0000026d [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:36, Info                  CSI    0000026e [SR] Verify complete
2020-04-15 15:18:36, Info                  CSI    0000026f [SR] Verifying 100 components
2020-04-15 15:18:36, Info                  CSI    00000270 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:43, Info                  CSI    00000271 [SR] Verify complete
2020-04-15 15:18:43, Info                  CSI    00000272 [SR] Verifying 100 components
2020-04-15 15:18:43, Info                  CSI    00000273 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:48, Info                  CSI    00000274 [SR] Verify complete
2020-04-15 15:18:48, Info                  CSI    00000275 [SR] Verifying 100 components
2020-04-15 15:18:48, Info                  CSI    00000276 [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:53, Info                  CSI    00000279 [SR] Verify complete
2020-04-15 15:18:53, Info                  CSI    0000027a [SR] Verifying 100 components
2020-04-15 15:18:53, Info                  CSI    0000027b [SR] Beginning Verify and Repair transaction
2020-04-15 15:18:57, Info                  CSI    0000027d [SR] Verify complete
2020-04-15 15:18:57, Info                  CSI    0000027e [SR] Verifying 100 components
2020-04-15 15:18:57, Info                  CSI    0000027f [SR] Beginning Verify and Repair transaction
2020-04-15 15:19:02, Info                  CSI    00000281 [SR] Verify complete
2020-04-15 15:19:02, Info                  CSI    00000282 [SR] Verifying 69 components
2020-04-15 15:19:02, Info                  CSI    00000283 [SR] Beginning Verify and Repair transaction
2020-04-15 15:19:06, Info                  CSI    00000287 [SR] Verify complete
2020-04-15 15:19:06, Info                  CSI    00000288 [SR] Repairing 1 components
2020-04-15 15:19:06, Info                  CSI    00000289 [SR] Beginning Verify and Repair transaction
2020-04-15 15:19:07, Info                  CSI    0000028a [SR] Repairing corrupted file \??\C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\OneDrive.lnk from store
2020-04-15 15:19:07, Info                  CSI    0000028c [SR] Repair complete
2020-04-15 15:19:07, Info                  CSI    0000028d [SR] Committing transaction
2020-04-15 15:19:08, Info                  CSI    00000292 [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction  have been successfully repaired
 
========= Final de CMD: =========
 
 
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
 
Error al borrar el registro Microsoft-Windows-LiveId/Analytic.
Acceso denegado.
Error al borrar el registro Microsoft-Windows-LiveId/Operational.
Acceso denegado.
Error al borrar el registro Microsoft-Windows-USBVideo/Analytic.
Un proveedor de datos WMI no reconoce como válido el nombre de instancia pasado.
 
========= Final de CMD: =========
 
 
 
El sistema necesita reiniciarse.
 
==== Final de Fixlog 15:20:58 ====

  • 0

#42
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

Now I just need a new FRST scan with addition.txt checked.


  • 0

#43
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Here are the logs.

 

Resultados del Análisis Adicional de Farbar Recovery Scan Tool (x64) Versión: 15-04-2020

Ejecutado por ivanc (16-04-2020 23:50:39)
Ejecutado desde C:\Users\ivanc\OneDrive\Escritorio
Windows 10 Home Single Language Versión 1909 18363.752 (X64) (2020-04-04 22:28:19)
Modo de Inicio: Normal
==========================================================
 
 
==================== Cuentas: =============================
 
Administrador (S-1-5-21-1840741467-1113686577-3156136756-500 - Administrator - Disabled)
COOKES (S-1-5-21-1840741467-1113686577-3156136756-1005 - Limited - Enabled) => C:\Users\COOKES
DefaultAccount (S-1-5-21-1840741467-1113686577-3156136756-503 - Limited - Disabled)
Invitado (S-1-5-21-1840741467-1113686577-3156136756-501 - Limited - Disabled)
ivanc (S-1-5-21-1840741467-1113686577-3156136756-1001 - Administrator - Enabled) => C:\Users\ivanc
WDAGUtilityAccount (S-1-5-21-1840741467-1113686577-3156136756-504 - Limited - Disabled)
 
==================== Centro de Seguridad ========================
 
(Si una entrada es incluida en el fixlist, será eliminada.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Programas instalados ======================
 
(Solo los programas de adware con indicador "Oculto", pueden ser añadidos al fixlist para hacerlos visibles. Los programas adware deben ser desinstalados manualmente.)
 
µTorrent (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\uTorrent) (Version: 3.5.5.45628 - BitTorrent Inc.)
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.1202.1711.103 - Alps Electric)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.163 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
LatencyMon 6.71 (HKLM\...\LatencyMon_is1) (Version:  - Resplendence Software Projects Sp.)
Microsoft OneDrive (HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\...\OneDriveSetup.exe) (Version: 19.232.1124.0012 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)
Spotify (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Spotify) (Version: 1.1.30.658.gf13cde74 - Spotify AB)
WhatsApp (HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\WhatsApp) (Version: 0.4.2088 - WhatsApp)
WinZip 24.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C24127}) (Version: 24.0.14033 - Corel Corporation)
 
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.4030.0_x64__8wekyb3d8bbwe [2020-04-15] (Microsoft Studios) [MS Ad]
MSN El tiempo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-04-05] (Microsoft Corporation) [MS Ad]
 
==================== Personalizado CLSID (Lista blanca): ==============
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
ContextMenuHandlers1: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
ContextMenuHandlers6: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2020-02-25] (Corel Corporation -> WinZip Computing)
ContextMenuHandlers1_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers5_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
 
==================== Codecs (Lista blanca) ====================
 
==================== Accesos directos & WMI ========================
 
==================== Módulos cargados (Lista blanca) =============
 
==================== Alternate Data Streams (Lista blanca) ========
 
==================== Modo Seguro (Lista blanca) ==================
 
==================== Asociación (Lista blanca) =================
 
==================== Internet Explorer sitios de confianza/restringidos ==========
 
==================== Hosts contenido: =========================
 
(Si es necesario, la directiva Hosts: puede ser incluida en el fixlist para restablecer Hosts.)
 
2019-03-19 01:49 - 2019-03-19 01:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
 
==================== Otras Áreas ===========================
 
(Actualmente no existe una corrección automática para esta sección.)
 
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\ivanc\OneDrive\Escritorio\640371.jpg
HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 100.72.3.109 - 100.72.3.97
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Firewall de Windows está habilitado.
 
==================== MSCONFIG/TASK MANAGER elementos deshabilitados ==
 
(Si una entrada es incluida en el fixlist, será eliminada.)
 
MSCONFIG\Services: TeamViewer => 2
HKLM\...\StartupApproved\StartupFolder: => "Precargador WinZip.lnk"
HKLM\...\StartupApproved\Run: => "Apoint"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\StartupFolder: => "HDDlife.lnk"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\StartupApproved\Run: => "Spotify"
 
==================== Reglas de firewall (Lista blanca) ================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
FirewallRules: [{9FD110A3-F027-44FA-9683-D55C5E74AD0D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{3895FAAF-B581-40A4-A6D0-689EE3C59376}C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{5512520A-E07A-410D-835F-C6724773E627}C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ivanc\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{0A123001-370F-4651-98B0-25F9ADBE9702}C:\users\ivanc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ivanc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{7D86CDD1-2F9B-4E0C-B6C5-51799A7807FA}C:\users\ivanc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\ivanc\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
 
==================== Puntos de Restauración =========================
 
07-04-2020 20:55:53 Punto de control programado
11-04-2020 18:07:59 Instalador de Módulos de Windows
14-04-2020 19:40:41 Removed HDD Regenerator.
 
==================== Dispositivos defectuosos en el Administrador de dispositivos ============
 
Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Errores del registro de eventos: ========================
 
Errores de aplicación:
==================
Error: (04/16/2020 06:44:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa HxOutlook.exe (versión 16.0.12624.20348) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 20cc
 
Hora de Inicio: 01d61437fc7b5e7a
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20368.0_x64__8wekyb3d8bbwe\HxOutlook.exe
 
Id. de informe: 249a70cb-5528-45fb-bf28-bd1ca7968e5d
 
Nombre completo del paquete con errores: microsoft.windowscommunicationsapps_16005.12624.20368.0_x64__8wekyb3d8bbwe
 
Id. de la aplicación relativa al paquete con errores: microsoft.windowslive.mail
 
Tipo de bloqueo: Activation
 
Error: (04/16/2020 06:15:31 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa YourPhone.exe (versión 1.20032.104.0) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 2458
 
Hora de Inicio: 01d6142b967df15f
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20032.104.0_x64__8wekyb3d8bbwe\YourPhone.exe
 
Id. de informe: c1ebb8eb-1e40-42f0-b808-a6fc4e658aab
 
Nombre completo del paquete con errores: Microsoft.YourPhone_1.20032.104.0_x64__8wekyb3d8bbwe
 
Id. de la aplicación relativa al paquete con errores: App
 
Tipo de bloqueo: Quiesce
 
Error: (04/16/2020 01:54:17 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa YourPhone.exe (versión 1.20032.104.0) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 2a78
 
Hora de Inicio: 01d6140f503bb8fe
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20032.104.0_x64__8wekyb3d8bbwe\YourPhone.exe
 
Id. de informe: a6421353-9274-4251-8a8e-b7e2af9ccb2d
 
Nombre completo del paquete con errores: Microsoft.YourPhone_1.20032.104.0_x64__8wekyb3d8bbwe
 
Id. de la aplicación relativa al paquete con errores: App
 
Tipo de bloqueo: Quiesce
 
Error: (04/15/2020 10:07:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: El programa SearchUI.exe (versión 10.0.18362.752) dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible sobre el problema, comprueba el historial de problemas en el panel de control de seguridad y mantenimiento.
 
Id. de proceso: 10d8
 
Hora de Inicio: 01d61357eb9fde03
 
Hora de finalización: 4294967295
 
Ruta de la aplicación: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
 
Id. de informe: 6b73caea-326e-43d7-8dd7-36b9fa8357a2
 
Nombre completo del paquete con errores: Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
 
Id. de la aplicación relativa al paquete con errores: CortanaUI
 
Tipo de bloqueo: Quiesce
 
 
Errores del sistema:
=============
Error: (04/16/2020 01:48:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppX360dyffbd5crx5cph6sy881bkkccrbr0.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
Error: (04/15/2020 03:56:55 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PAG6OF6)
Description: El servidor Microsoft.Windows.ContentDeliveryManager_10.0.18362.449_neutral_neutral_cw5n1h2txyewy!App.AppXwdz8g2fxr36xz0tdtagygnvemf85s7gg.mca no se registró con DCOM dentro del tiempo de espera requerido.
 
 
==================== Información de la memoria =========================== 
 
BIOS: Insyde F.23 09/04/2014
Placa base: Hewlett-Packard 22D0
Procesador: AMD A4-6210 APU with AMD Radeon R3 Graphics 
Porcentaje de memoria en uso: 87%
RAM física total: 2776.98 MB
RAM física disponible: 353.85 MB
Virtual total: 6872.98 MB
Virtual disponible: 2716.66 MB
 
==================== Unidades ================================
 
Drive c: () (Fixed) (Total:354.42 GB) (Free:312.39 GB) NTFS
Drive d: (Nuevo vol) (Fixed) (Total:87.42 GB) (Free:87.22 GB) NTFS
Drive e: (RECOVERY) (Fixed) (Total:22 GB) (Free:2.11 GB) NTFS ==>[sistema con componentes de arranque (obtenido de unidad)]
 
\\?\Volume{dcbd3020-4d53-437c-b487-2e36b231ec39}\ (WINRE) (Fixed) (Total:0.63 GB) (Free:0.36 GB) NTFS
\\?\Volume{4dc79704-0699-4f3e-8481-9bc0dcda6473}\ () (Fixed) (Total:0.89 GB) (Free:0.41 GB) NTFS
\\?\Volume{6e78db0f-8ba7-4827-bd7c-f62a48b9eff2}\ () (Fixed) (Total:0.25 GB) (Free:0.15 GB) FAT32
 
==================== MBR & Tabla de particiones ====================
 
==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: A8F41E42)
 
Partition: GPT.
 
==================== Final de Addition.txt =======================
 
 
 
 
 
 
 
 
 
Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 15-04-2020
Ejecutado por ivanc (administrador) sobre DESKTOP-PAG6OF6 (Hewlett-Packard HP 14 Notebook PC) (16-04-2020 23:42:22)
Ejecutado desde C:\Users\ivanc\OneDrive\Escritorio
Perfiles cargados: ivanc & COOKES (Perfiles disponibles: ivanc & COOKES)
Platform: Windows 10 Home Single Language Versión 1909 18363.752 (X64) Idioma: Español (España, internacional)
Navegador predeterminado: Chrome
Modo de Inicio: Normal
Tutorial para Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Procesos (Lista blanca) =================
 
(Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.)
 
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atieclxx.exe <2>
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe <2>
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe <2>
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe <2>
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe <2>
(Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <20>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\COOKES\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotification.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.5-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.5-0\NisSrv.exe
(Qualcomm Atheros -> Windows ® Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
0 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
 
==================== Registro (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [735544 2015-08-07] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Run: [uTorrent] => C:\Users\ivanc\AppData\Roaming\uTorrent\uTorrent.exe [2072816 2020-04-06] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Run: [Spotify] => C:\Users\ivanc\AppData\Roaming\Spotify\Spotify.exe [22932200 2020-04-08] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-05] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Precargador WinZip.lnk [2020-04-05]
ShortcutTarget: Precargador WinZip.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing)
Startup: C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk [2020-04-08]
ShortcutTarget: HDDlife.lnk -> C:\Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe (Ningún archivo)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restricción <==== ATENCIÓN
CHR HKLM\SOFTWARE\Policies\Google: Restricción <==== ATENCIÓN
 
==================== Tareas programadas (Lista blanca) ============
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
Task: {39F3A2BE-67B4-40C5-99F7-64EAEFFB4F5D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)
Task: {4647A0D3-DE60-4868-9E37-67E197905BF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-05] (Google LLC -> Google LLC)
Task: {6E3CF37B-CABB-4D94-82A8-5D392DB74AEE} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1840741467-1113686577-3156136756-1005 => C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {8B53B15F-5FD5-474E-AA33-43EB9AE1A472} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\MpCmdRun.exe [485944 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8D4871B2-517B-49FB-966A-0808B7886B82} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\MpCmdRun.exe [485944 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D0C03589-22B9-4A2C-ACA5-C5B8F9E3D318} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\MpCmdRun.exe [485944 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F59268D0-7072-4112-B825-CE4B239E01A7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\MpCmdRun.exe [485944 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
 
(Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.)
 
 
==================== Internet (Lista blanca) ====================
 
(Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.)
 
Tcpip\Parameters: [DhcpNameServer] 100.72.3.109 100.72.3.97
Tcpip\..\Interfaces\{b2f7bd64-1e14-42f2-8837-415e8ab09e87}: [DhcpNameServer] 100.72.3.109 100.72.3.97
 
Internet Explorer:
==================
 
Chrome: 
=======
CHR Profile: C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default [2020-04-16]
CHR DownloadDir: C:\Users\ivanc\OneDrive\Escritorio
CHR Notifications: Default -> hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://google.com.ar/
CHR StartupUrls: Default -> "hxxp://pagina12.com/","hxxps://www.google.com./","hxxp://www.google.com.ar/"
CHR Extension: (Presentaciones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-04-05]
CHR Extension: (Documentos) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-04-05]
CHR Extension: (Google Drive) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-04-05]
CHR Extension: (YouTube) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-04-05]
CHR Extension: (Adblock Plus - bloqueador de anuncios gratis) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]
CHR Extension: (Hojas de cálculo) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-04-05]
CHR Extension: (Cablevisión Flow) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfbnbmbkemlokfckhdoaakhjogffkinc [2020-04-05]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-04-05]
CHR Extension: (AdBlock: el mejor bloqueador de anuncios) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-14]
CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2020-04-14]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2020-04-07]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-04-05]
CHR Extension: (Gmail) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-04-05]
CHR Extension: (Chrome Media Router) - C:\Users\ivanc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-05]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
 
==================== Servicios (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
R2 AMD External Events Utility; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [104824 2015-08-07] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
R2 AtherosSvc; C:\Windows\System32\drivers\AdminService.exe [416192 2018-11-15] (Qualcomm Atheros -> Windows ® Win 7 DDK provider)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-07-03] (Realtek Semiconductor Corp -> Realtek Semiconductor)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\NisSrv.exe [3304992 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.5-0\MsMpEng.exe [103168 2020-04-15] (Microsoft Windows Publisher -> Microsoft Corporation)
 
===================== Controladores (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
S3 amdkmcsp; C:\Windows\system32\DRIVERS\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository͆830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [102832 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 amdpsp; C:\Windows\system32\DRIVERS\amdpsp.sys [239976 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 athr; C:\Windows\System32\drivers\athw8x.sys [4233728 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111112 2017-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2020-01-09] (Microsoft Corporation) [Archivo no firmado]
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-29] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45976 2020-04-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [394472 2020-04-15] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [64744 2020-04-15] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP)
 
==================== NetSvcs (Lista blanca) ===================
 
(Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.)
 
 
==================== Un mes (creado) ===================
 
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
 
2020-04-15 15:01 - 2020-04-15 15:01 - 000000000 ____D C:\Users\COOKES\AppData\Local\TileDataLayer
2020-04-15 14:51 - 2020-04-15 14:50 - 004146112 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgremoverx.exe
2020-04-14 19:30 - 2020-04-14 19:33 - 000025392 _____ C:\Users\ivanc\Downloads\Addition.txt
2020-04-14 19:25 - 2020-04-14 19:33 - 000159735 _____ C:\Users\ivanc\Downloads\FRST.txt
2020-04-14 19:25 - 2020-04-14 19:25 - 000000000 ____D C:\Users\ivanc\Downloads\FRST-OlderVersion
2020-04-14 13:32 - 2020-04-14 19:58 - 000267632 _____ C:\Windows\system32\FNTCACHE.DAT
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\Users\ivanc\AppData\Local\DBG
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2020-04-12 21:19 - 2020-04-12 21:19 - 000000000 ____D C:\Program Files\LatencyMon
2020-04-12 21:19 - 2015-07-13 11:16 - 000026368 _____ (Resplendence Software Projects Sp.) C:\Windows\system32\Drivers\rspLLL64.sys
2020-04-12 03:00 - 2020-04-12 03:00 - 000000000 ____D C:\Users\ivanc\AppData\Local\ElevatedDiagnostics
2020-04-09 16:11 - 2020-04-12 19:40 - 000007603 _____ C:\Users\ivanc\AppData\Local\Resmon.ResmonCfg
2020-04-08 23:05 - 2020-04-08 23:05 - 000036192 _____ (Sysinternals - www.sysinternals.com) C:\Windows\system32\Drivers\PROCEXP152.SYS
2020-04-08 16:01 - 2020-04-08 16:01 - 000000000 ____D C:\Users\COOKES\Downloads\FRST64
2020-04-08 15:25 - 2020-04-08 15:25 - 000000000 ____D C:\Users\COOKES\AppData\Local\D3DSCache
2020-04-08 15:24 - 2020-04-08 15:24 - 000000000 ____D C:\Users\COOKES\AppData\Roaming\AnyDesk
2020-04-08 14:36 - 2020-04-08 14:36 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\BinarySense
2020-04-08 14:34 - 2020-04-08 14:35 - 008691712 _____ C:\Users\ivanc\HDDlifePro 4.2.204.msi
2020-04-08 14:28 - 2020-04-14 19:42 - 000000000 ____D C:\ProgramData\TEMP
2020-04-08 14:28 - 2020-04-14 19:41 - 000000000 ____D C:\Program Files (x86)\HDD Regenerator
2020-04-08 14:28 - 2020-04-08 14:28 - 000000000 ____D C:\Users\ivanc\AppData\Local\Downloaded Installations
2020-04-08 14:01 - 2020-04-13 17:22 - 000000000 ____D C:\ProgramData\AnyDesk
2020-04-08 14:01 - 2020-04-13 17:22 - 000000000 ____D C:\Program Files (x86)\AnyDesk
2020-04-08 13:56 - 2020-04-13 17:22 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\AnyDesk
2020-04-08 13:56 - 2020-04-08 13:56 - 003153872 _____ (philandro Software GmbH) C:\Users\ivanc\Downloads\AnyDesk.exe
2020-04-08 13:56 - 2020-04-08 13:56 - 003153872 _____ (philandro Software GmbH) C:\Users\ivanc\Downloads\AnyDesk (1).exe
2020-04-08 12:29 - 2020-04-08 15:23 - 000000000 ____D C:\Users\COOKES\AppData\Local\PlaceholderTileLogoFolder
2020-04-08 09:41 - 2020-04-15 07:45 - 000003382 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1840741467-1113686577-3156136756-1005
2020-04-08 09:40 - 2020-04-15 07:45 - 000000000 ___RD C:\Users\COOKES\OneDrive
2020-04-08 09:39 - 2020-04-08 09:39 - 000000000 ____D C:\Users\COOKES\AppData\Local\Comms
2020-04-08 09:07 - 2020-04-08 09:08 - 001159668 _____ C:\Windows\Minidump\040820-43296-01.dmp
2020-04-08 09:00 - 2020-04-08 09:00 - 000000000 ____D C:\Users\COOKES\AppData\Local\CEF
2020-04-08 09:00 - 2020-04-08 09:00 - 000000000 ____D C:\Users\COOKES\AppData\Local\Avg
2020-04-08 08:58 - 2020-04-08 08:58 - 000000000 ____D C:\Users\COOKES\AppData\LocalLow\AMD
2020-04-08 08:55 - 2020-04-08 08:57 - 000000000 ____D C:\Users\COOKES\AppData\Local\MicrosoftEdge
2020-04-08 08:55 - 2020-04-08 08:55 - 000000000 ___HD C:\Users\COOKES\MicrosoftEdgeBackups
2020-04-08 08:54 - 2020-04-08 08:54 - 000000000 ____D C:\Users\COOKES\AppData\Local\Publishers
2020-04-08 08:53 - 2020-04-08 12:29 - 000000000 ____D C:\Users\COOKES\AppData\Local\Packages
2020-04-08 08:53 - 2020-04-08 09:41 - 000000000 ____D C:\Users\COOKES\AppData\Local\Google
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ___RD C:\Users\COOKES\3D Objects
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Roaming\Adobe
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Local\VirtualStore
2020-04-08 08:53 - 2020-04-08 08:53 - 000000000 ____D C:\Users\COOKES\AppData\Local\AMD
2020-04-08 08:52 - 2020-04-15 07:45 - 000002404 _____ C:\Users\COOKES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-04-08 08:52 - 2020-04-08 09:40 - 000000000 ____D C:\Users\COOKES
2020-04-08 08:52 - 2020-04-08 08:54 - 000000000 ____D C:\Users\COOKES\AppData\Local\ConnectedDevicesPlatform
2020-04-08 08:52 - 2020-04-08 08:52 - 000000020 ___SH C:\Users\COOKES\ntuser.ini
2020-04-08 01:11 - 2020-04-08 01:11 - 000321536 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2020-04-08 01:11 - 2020-04-08 01:11 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2020-04-08 01:11 - 2020-04-08 01:11 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 022636544 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 019813376 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 008013824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 007017472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 004129416 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 001545216 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001397560 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001264640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 001077264 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2020-04-08 01:10 - 2020-04-08 01:10 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000456192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2020-04-08 01:10 - 2020-04-08 01:10 - 000452096 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-04-08 01:10 - 2020-04-08 01:10 - 000381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000234496 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2020-04-08 01:10 - 2020-04-08 01:10 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2020-04-08 01:10 - 2020-04-08 01:10 - 000021520 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 014818816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 006525424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 003753472 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 003742544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 002800128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 002087168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001587712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001477112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001245184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Vpn.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 001055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000993280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000912896 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000892416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000785920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000729600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000673704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000647680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000628408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000538160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000487784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-04-08 01:09 - 2020-04-08 01:09 - 000456504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000410112 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000406480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-04-08 01:09 - 2020-04-08 01:09 - 000277864 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000203264 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000185952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000123952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000089536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000066624 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000050544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2020-04-08 01:09 - 2020-04-08 01:09 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-04-08 01:09 - 2020-04-08 01:09 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 004563200 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 003728384 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 003547648 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001945600 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001918976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001757096 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-04-08 01:08 - 2020-04-08 01:08 - 001726264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001512832 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 001427456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001378528 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001300280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 001261808 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001257472 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001243648 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001136128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 001011200 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000974336 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000924672 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000915192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000811320 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000759272 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000747320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000684560 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000638480 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000618296 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000604984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000515600 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000513576 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000498688 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000465208 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000323584 _____ (Microsoft Corporation) C:\Windows\system32\sppcommdlg.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000259776 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000259072 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000251704 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000178192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000164368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000147696 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000142544 _____ (Microsoft Corporation) C:\Windows\system32\LicensingUI.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000136192 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000122368 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000115120 _____ (Microsoft Corporation) C:\Windows\system32\phoneactivate.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000102216 _____ (Microsoft Corporation) C:\Windows\system32\changepk.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\UpgradeResultsUI.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2020-04-08 01:08 - 2020-04-08 01:08 - 000033080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2020-04-08 01:08 - 2020-04-08 01:08 - 000031744 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\sbservicetrigger.dll
2020-04-08 01:08 - 2020-04-08 01:08 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 017790464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 007849216 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 003586872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 003109376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002143232 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002126144 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 002114560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001960448 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001762816 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001719808 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001497600 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001413704 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001263856 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 001180672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001127424 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 001071616 _____ (Microsoft Corporation) C:\Windows\system32\BTAGService.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000874512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000735744 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000524264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000437560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000416016 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000297272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000251392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000231912 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000200192 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000193848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000151352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scmbus.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000089912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000059192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000047208 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\WpcProxyStubs.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2020-04-08 01:07 - 2020-04-08 01:07 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2020-04-08 01:07 - 2020-04-08 01:07 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2020-04-08 01:07 - 2020-04-08 01:07 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2020-04-07 18:58 - 2020-04-08 18:33 - 000000000 ____D C:\Users\ivanc\AppData\LocalLow\uTorrent
2020-04-07 18:15 - 2020-04-07 18:15 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\ivanc\Downloads\avg_antivirus_free_setup (1).exe
2020-04-07 18:10 - 2020-04-07 18:10 - 000000000 ____D C:\Users\ivanc\AppData\Local\Avg
2020-04-07 17:29 - 2020-04-07 17:26 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-04-07 17:28 - 2020-04-07 17:28 - 000011960 _____ C:\Users\ivanc\OneDrive\Documentos\cc_20200407_172835.reg
2020-04-07 17:27 - 2020-04-07 17:27 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\ivanc\Downloads\avg_antivirus_free_setup.exe
2020-04-07 17:14 - 2020-04-07 17:14 - 000000000 ____D C:\Windows\pss
2020-04-07 17:06 - 2020-04-07 17:06 - 000000000 ____D C:\Users\ivanc\AppData\Local\OneDrive
2020-04-07 16:48 - 2020-04-07 17:05 - 000000000 ____D C:\Users\ivanc\AppData\Local\TeamViewer
2020-04-07 16:46 - 2020-04-14 19:43 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-07 16:46 - 2020-04-07 16:46 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\TeamViewer
2020-04-07 16:37 - 2020-04-07 16:37 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\ivanc\Downloads\TeamViewer_Setup.exe
2020-04-06 19:18 - 2020-04-08 19:04 - 000000000 ____D C:\Users\ivanc\AppData\Local\Spotify
2020-04-06 19:17 - 2020-04-06 19:17 - 000001836 _____ C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2020-04-06 19:15 - 2020-04-08 18:35 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Spotify
2020-04-06 19:14 - 2020-04-06 19:15 - 000892232 _____ (Spotify Ltd) C:\Users\ivanc\Downloads\SpotifySetup.exe
2020-04-06 19:11 - 2020-04-06 19:11 - 006889184 _____ (Piriform Ltd) C:\Users\ivanc\Downloads\spsetup132 (1).exe
2020-04-06 18:52 - 2020-04-06 18:53 - 006889184 _____ (Piriform Ltd) C:\Users\ivanc\Downloads\spsetup132.exe
2020-04-06 18:40 - 2020-04-08 23:13 - 000030674 _____ C:\junk.txt
2020-04-06 18:28 - 2020-04-06 18:28 - 002798456 _____ (Sysinternals - www.sysinternals.com) C:\Users\ivanc\Downloads\procexp.exe
2020-04-05 20:18 - 2020-02-03 17:56 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-04-05 20:18 - 2020-02-03 17:56 - 000179608 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-04-05 20:11 - 2020-04-05 20:11 - 000000000 ____D C:\ProgramData\ssh
2020-04-05 18:03 - 2020-04-16 23:45 - 000000000 ____D C:\FRST
2020-04-05 17:58 - 2020-04-14 19:25 - 002281472 _____ (Farbar) C:\Users\ivanc\Downloads\FRST64.exe
2020-04-05 04:57 - 2020-04-05 05:07 - 000000000 ____D C:\Windows\system32\MRT
2020-04-05 04:56 - 2020-04-05 04:56 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-04-05 04:33 - 2020-04-05 04:33 - 000000000 ____D C:\Users\ivanc\Downloads\OpenOffice 4.1.7 (es) Installation Files
2020-04-05 04:20 - 2020-04-05 04:20 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 005502464 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 004308480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2020-04-05 04:20 - 2020-04-05 04:20 - 001541632 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2020-04-05 04:19 - 2020-04-05 04:19 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 006285312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003525592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 003243296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-04-05 04:19 - 2020-04-05 04:19 - 002315680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002230232 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001272360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001151816 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 001012792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000890368 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000537608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2020-04-05 04:19 - 2020-04-05 04:19 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-04-05 04:19 - 2020-04-05 04:19 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 025900544 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 007259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 004348408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-04-05 04:18 - 2020-04-05 04:18 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001540096 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001273856 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001218632 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001060352 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 001000960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000996352 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000852480 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000788992 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000500736 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2020-04-05 04:18 - 2020-04-05 04:18 - 000497152 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000494080 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000486400 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000422912 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\DispBroker.Desktop.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000399360 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000366416 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\DAFMCP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2020-04-05 04:18 - 2020-04-05 04:18 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2020-04-05 04:18 - 2020-04-05 04:18 - 000186880 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000099712 _____ (Microsoft Corporation) C:\Windows\system32\FsIso.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000059221 _____ C:\Windows\system32\srms.dat
2020-04-05 04:18 - 2020-04-05 04:18 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2020-04-05 04:18 - 2020-04-05 04:18 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-04-05 04:18 - 2020-04-05 04:18 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-04-05 04:18 - 2020-04-05 04:18 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 004538880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 002259872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001684992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001283600 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2020-04-05 04:17 - 2020-04-05 04:17 - 001216000 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 001195008 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001190912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001083392 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 001031680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000774664 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000568120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000422008 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000403456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000384000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000300392 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpviewerax.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000136328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000125440 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\dusmapi.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\dusmtask.exe
2020-04-05 04:17 - 2020-04-05 04:17 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Drivers\afunix.sys
2020-04-05 04:17 - 2020-04-05 04:17 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2020-04-05 04:17 - 2020-04-05 04:17 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2020-04-05 04:16 - 2020-04-05 04:17 - 130761887 _____ C:\Users\ivanc\Downloads\Apache_OpenOffice_4.1.7_Win_x86_install_es.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 005112832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 003971808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 002875904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002740736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002584008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002307584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 002021888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001985104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001916744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001729024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001562424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001264128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001260544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpsharercom.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001213752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpbase.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001154448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 001007672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000935040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000904504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000892696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000857088 _____ C:\Windows\system32\MBR2GPT.EXE
2020-04-05 04:16 - 2020-04-05 04:16 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000776488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000769552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000768488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000748032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000704512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.FileExplorer.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000673080 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000627216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000597816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000542288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000526848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000521728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000512000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000478792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000453432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000441072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-04-05 04:16 - 2020-04-05 04:16 - 000405632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000375504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000274464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000213984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000190464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeHelper.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000150536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000133464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47mrm.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000102760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000072816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000068408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceReactivation.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000042336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2020-04-05 04:16 - 2020-04-05 04:16 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-04-05 04:16 - 2020-04-05 04:16 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002861568 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002773568 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 002703872 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001854976 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001412096 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000629760 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000486912 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\rdpviewerax.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000181248 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000164776 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUpdateAgent.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000133944 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afunix.sys
2020-04-05 04:15 - 2020-04-05 04:15 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2020-04-05 04:15 - 2020-04-05 04:15 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2020-04-05 04:15 - 2020-04-05 04:15 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 006436352 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 003371720 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001657856 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001482040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 001396152 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001394168 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001170960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001051448 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000983896 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000929144 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000891736 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000845312 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000824848 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000796904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000758800 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000741392 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000637440 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000598528 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000587064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000518456 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000516648 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000467952 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000416056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000400696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000353960 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000335448 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000320312 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000281088 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000234984 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000203776 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000179720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000165832 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000143160 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000133256 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000132624 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\NetDriverInstall.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000107832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000107832 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000098104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000089616 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetDriverInstall.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000058880 _____ C:\Windows\system32\runexehelper.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000046592 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000037392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2020-04-05 04:14 - 2020-04-05 04:14 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2020-04-05 04:14 - 2020-04-05 04:14 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2020-04-05 04:14 - 2020-04-05 04:14 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004471296 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004048896 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 004005888 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 003260928 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002453504 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 002071552 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001972536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001830200 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001823232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001609216 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001602560 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001505592 _____ (Microsoft Corporation) C:\Windows\system32\rdpbase.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001481216 _____ (Microsoft Corporation) C:\Windows\system32\rdpsharercom.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001372160 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-04-05 04:13 - 2020-04-05 04:13 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 001071184 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000949248 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000945384 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000678928 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000678912 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000642216 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000558592 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000545432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000522384 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000369504 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000350720 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SpeechPrivacy.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000263168 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000222208 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000201744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000186672 _____ (Microsoft Corporation) C:\Windows\system32\BCP47mrm.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Taskbar.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000117264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2020-04-05 04:13 - 2020-04-05 04:13 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingExperienceMEM.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSystray.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicPS.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\bindflt.dll
2020-04-05 04:13 - 2020-04-05 04:13 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2020-04-05 04:13 - 2020-04-05 04:13 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 006231200 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 004622280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 003143168 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002808832 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-04-05 04:12 - 2020-04-05 04:12 - 002522112 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002474496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 002157056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 001084216 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 001027000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000914944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000833616 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000737280 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000649728 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000646656 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000429880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2020-04-05 04:12 - 2020-04-05 04:12 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000209920 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000157696 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000155648 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AppExecutionAlias.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_BackgroundApps.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000128312 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000066336 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-04-05 04:12 - 2020-04-05 04:12 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2020-04-05 04:12 - 2020-04-05 04:12 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000804872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000732200 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntime.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000716288 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntimewindows.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-04-05 04:11 - 2020-04-05 04:11 - 000531768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Acx01000.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000306696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000250896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000224056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000222520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000208696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000199992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000184832 _____ (Microsoft Corporation) C:\Windows\system32\AarSvc.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000183608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000180232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationControlCSP.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-04-05 04:11 - 2020-04-05 04:11 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000056632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000048256 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2020-04-05 04:11 - 2020-04-05 04:11 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\FaxPrinterInstaller.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000030008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000029712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000016912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2020-04-05 04:11 - 2020-04-05 04:11 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2020-04-05 04:11 - 2020-04-05 04:11 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUserRes.dll
2020-04-05 03:59 - 2020-04-05 03:59 - 000000000 ____D C:\Windows\system32\Tasks\Hewlett-Packard
2020-04-05 03:59 - 2020-04-05 03:59 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2020-04-05 03:55 - 2020-04-15 14:37 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2020-04-05 03:55 - 2020-04-05 03:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\HP
2020-04-05 03:33 - 2020-02-11 01:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-04-05 03:33 - 2020-02-11 01:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-04-05 03:23 - 2020-04-07 17:24 - 000000000 ____D C:\Users\ivanc\AppData\Local\CrashDumps
2020-04-05 03:22 - 2020-04-14 19:17 - 000000000 ____D C:\Users\ivanc\AppData\Local\D3DSCache
2020-04-05 03:08 - 2020-04-05 03:28 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2020-04-05 03:02 - 2020-04-08 14:15 - 000000000 ____D C:\TORRENTS
2020-04-05 03:00 - 2020-04-05 03:00 - 000034747 _____ C:\Users\ivanc\Downloads\Office-2013-Professional-Plus-Sp1-64bits.torrent
2020-04-05 02:58 - 2020-04-05 02:58 - 000000000 ____D C:\Users\ivanc\AppData\Local\Microsoft Help
2020-04-05 02:57 - 2020-04-05 03:36 - 000000000 ____D C:\Program Files\Microsoft Office
2020-04-05 02:56 - 2020-04-05 02:56 - 000000000 __RHD C:\MSOCache
2020-04-05 02:44 - 2020-04-05 04:17 - 000000000 ___RD C:\Dios es Digital
2020-04-05 02:39 - 2020-04-05 02:49 - 000000000 ____D C:\Users\ivanc\AppData\Local\WinZip
2020-04-05 02:39 - 2020-04-05 02:39 - 000002087 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip.lnk
2020-04-05 02:39 - 2020-04-05 02:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2020-04-05 02:38 - 2020-04-05 02:40 - 000000000 ____D C:\ProgramData\WinZip
2020-04-05 02:38 - 2020-04-05 02:38 - 000000000 ____D C:\Program Files\WinZip
2020-04-05 02:37 - 2020-04-05 02:37 - 000959296 _____ (WinZip Computing) C:\Users\ivanc\Downloads\winzip24-downwz.exe
2020-04-05 02:37 - 2020-04-05 02:37 - 000000000 ____D C:\ProgramData\UniqueId
2020-04-05 02:25 - 2020-04-05 02:25 - 000000000 ____D C:\Users\ivanc\AppData\Local\CEF
2020-04-05 02:11 - 2020-04-08 18:32 - 000000000 ____D C:\Users\ivanc\AppData\Local\BitTorrentHelper
2020-04-05 02:11 - 2020-04-05 02:22 - 2710019503 ____R C:\Users\ivanc\Downloads\M.OF.16.April.2017.Mul.32X-www.DivxTotaL.com.rar
2020-04-05 02:11 - 2020-04-05 02:11 - 000029711 _____ C:\Users\ivanc\Downloads\M.OF_.16.April_.2017.Mul_.32X-www.DivxTotaL.com_.torrent
2020-04-05 02:09 - 2020-04-08 18:33 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\uTorrent
2020-04-05 02:09 - 2020-04-07 18:54 - 000000000 ____D C:\ProgramData\Avast Software
2020-04-05 02:03 - 2020-04-05 02:04 - 002907000 _____ (BitTorrent Inc.) C:\Users\ivanc\Downloads\uTorrent.exe
2020-04-05 01:56 - 2020-04-05 01:56 - 000138240 _____ C:\Users\ivanc\Downloads\Clase2.ppt
2020-04-05 01:56 - 2020-04-05 01:56 - 000138240 _____ C:\Users\ivanc\Downloads\Clase2 (1).ppt
2020-04-05 01:22 - 2020-04-05 01:22 - 000000000 ____D C:\Users\ivanc\OneDrive\Documentos\Nueva carpeta
2020-04-05 01:22 - 2015-02-03 18:06 - 000000120 ____R C:\Users\ivanc\OneDrive\Documentos\Bloc de notas de ivan.url
2020-04-05 01:20 - 2020-04-15 14:38 - 000000000 ___RD C:\Users\ivanc\OneDrive
2020-04-05 01:16 - 2020-04-16 23:41 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\WhatsApp
2020-04-05 01:16 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2020-04-05 01:14 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Local\WhatsApp
2020-04-05 01:13 - 2020-04-05 01:16 - 000000000 ____D C:\Users\ivanc\AppData\Local\SquirrelTemp
2020-04-05 01:11 - 2020-04-05 01:12 - 130349488 _____ (WhatsApp) C:\Users\ivanc\Downloads\WhatsAppSetup.exe
2020-04-05 01:01 - 2020-04-05 18:05 - 000000000 ____D C:\Users\ivanc\AppData\Local\Comms
2020-04-05 01:00 - 2020-04-05 01:39 - 000000000 ____D C:\ProgramData\Packages
2020-04-05 00:59 - 2020-04-05 00:59 - 000002375 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-05 00:59 - 2020-04-05 00:59 - 000002334 _____ C:\ProgramData\Escritorio\Google Chrome.lnk
2020-04-05 00:59 - 2020-04-05 00:59 - 000000000 ____D C:\Users\ivanc\AppData\LocalLow\AMD
2020-04-05 00:58 - 2020-04-05 00:58 - 000003622 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-04-05 00:58 - 2020-04-05 00:58 - 000003498 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-04-05 00:58 - 2020-04-05 00:58 - 000000000 ____D C:\Program Files (x86)\Google
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Apfiltr_01009.Wdf
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____D C:\Windows\SysWOW64\sda
2020-04-05 00:57 - 2020-04-05 00:57 - 000000000 ____D C:\Program Files\Apoint2K
2020-04-05 00:55 - 2020-04-05 00:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\AMD
2020-04-05 00:48 - 2020-04-15 15:57 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2020-04-05 00:47 - 2020-04-05 01:04 - 000000000 ____D C:\Users\ivanc\AppData\Local\Google
2020-04-05 00:47 - 2020-04-05 00:48 - 000000000 ____D C:\Program Files\AMD
2020-04-05 00:47 - 2020-04-05 00:47 - 000000000 ____D C:\Windows\system32\AMD
2020-04-05 00:47 - 2019-09-18 18:05 - 000102832 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2020-04-05 00:45 - 2020-04-05 00:45 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-04-05 00:44 - 2019-09-18 18:05 - 003885152 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 003484256 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001705568 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001237088 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001237088 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001010696 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 001010696 _____ C:\Windows\system32\vulkan-1.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000941152 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000873640 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000873640 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000768608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000760928 _____ (AMD) C:\Windows\system32\atieclxx.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000574048 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000553568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmcl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000493152 _____ C:\Windows\system32\dgtrayicon.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000484960 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000480352 _____ C:\Windows\system32\GameManager64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000468576 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000466528 _____ C:\Windows\system32\amdlogum.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000439904 _____ C:\Windows\system32\atieah64.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000416864 _____ C:\Windows\system32\EEURestart.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000383584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmcl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000381536 _____ C:\Windows\SysWOW64\GameManager32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000352352 _____ C:\Windows\SysWOW64\atieah32.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000348768 _____ C:\Windows\system32\clinfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000304224 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000304224 _____ C:\Windows\system32\vulkaninfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000276064 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000276064 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-04-05 00:44 - 2019-09-18 18:05 - 000239200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000211552 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000183904 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000178752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000162912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000158816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000157592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000152672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000138336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000135776 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000134752 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000125536 _____ (AMD) C:\Windows\system32\atimuixx.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000124000 _____ C:\Windows\system32\atidxx64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000121440 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000120928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000107104 _____ C:\Windows\SysWOW64\atidxx32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000105568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000090720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000075360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000070240 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000046688 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000043616 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000019768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2020-04-05 00:44 - 2019-09-18 18:05 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 001686000 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 001365352 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000554072 _____ C:\Windows\system32\amdmiracast.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000472672 _____ C:\Windows\system32\amdgfxinfo64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000381536 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000134824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000128112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000119232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2020-04-05 00:44 - 2019-09-18 18:04 - 000107728 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2020-04-05 00:44 - 2019-09-18 17:33 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2020-04-05 00:44 - 2019-09-18 17:33 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2020-04-05 00:44 - 2019-09-18 17:33 - 000920680 _____ C:\Windows\SysWOW64\atiapfxx.blb
2020-04-05 00:44 - 2019-09-18 17:33 - 000920680 _____ C:\Windows\system32\atiapfxx.blb
2020-04-05 00:44 - 2019-09-18 17:33 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2020-04-05 00:44 - 2019-09-18 17:33 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000125488 _____ C:\Windows\system32\kapp_ci.sbin
2020-04-05 00:44 - 2019-09-18 17:33 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2020-04-05 00:44 - 2019-09-18 17:32 - 000034488 _____ C:\Windows\system32\AMDKernelEvents.man
2020-04-05 00:40 - 2020-04-05 02:58 - 000000000 ____D C:\Users\ivanc\AppData\Local\PlaceholderTileLogoFolder
2020-04-05 00:39 - 2020-04-05 00:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ___HD C:\Users\ivanc\MicrosoftEdgeBackups
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\Publishers
2020-04-05 00:38 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\MicrosoftEdge
2020-04-05 00:37 - 2020-04-14 19:19 - 000000000 ____D C:\Users\ivanc\AppData\Local\Packages
2020-04-05 00:37 - 2020-04-08 08:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-04-05 00:37 - 2020-04-05 20:21 - 000000000 ___RD C:\Users\ivanc\3D Objects
2020-04-05 00:37 - 2020-04-05 00:55 - 000000000 ____D C:\Users\ivanc\AppData\Local\ConnectedDevicesPlatform
2020-04-05 00:37 - 2020-04-05 00:38 - 000000000 ____D C:\Users\ivanc\AppData\Local\PackageStaging
2020-04-05 00:37 - 2020-04-05 00:37 - 000000000 ____D C:\Users\ivanc\AppData\Roaming\Adobe
2020-04-05 00:37 - 2020-04-05 00:37 - 000000000 ____D C:\Users\ivanc\AppData\Local\VirtualStore
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Windows\system32\SRSLabs
2020-04-05 00:36 - 2020-04-05 00:36 - 000000000 ____D C:\Program Files\Realtek
2020-04-05 00:35 - 2015-07-03 16:24 - 003271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 002966144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001599792 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001331336 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 001122648 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000961024 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000749776 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000645464 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000574248 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000467160 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000381416 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000195184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2020-04-05 00:35 - 2015-07-03 16:24 - 000088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 072121872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2020-04-05 00:35 - 2015-07-03 16:21 - 004515584 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2020-04-05 00:35 - 2015-07-03 16:21 - 002926848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 002711296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2020-04-05 00:35 - 2015-07-03 16:21 - 001757440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000259288 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2020-04-05 00:35 - 2015-07-03 16:21 - 000023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2020-04-05 00:35 - 2015-07-02 06:43 - 002897741 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2020-04-05 00:33 - 2020-04-08 14:38 - 000000000 ____D C:\Users\ivanc
2020-04-05 00:33 - 2020-04-05 00:33 - 000000020 ___SH C:\Users\ivanc\ntuser.ini
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Reciente
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Plantillas
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Mis documentos
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Menú Inicio
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Impresoras
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Entorno de red
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Datos de programa
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\Configuración local
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Historial
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Datos de programa
2020-04-05 00:33 - 2020-04-05 00:33 - 000000000 _SHDL C:\Users\ivanc\AppData\Local\Archivos temporales de Internet
2020-04-04 19:48 - 2020-04-07 18:09 - 000000000 ____D C:\Windows\Panther
2020-04-04 19:39 - 2020-04-07 20:33 - 000000000 ____D C:\Windows.old
2020-04-04 19:30 - 2020-04-08 09:23 - 001684180 _____ C:\Windows\system32\PerfStringBackup.INI
2020-04-04 19:28 - 2020-04-08 09:07 - 000000000 ____D C:\Windows\minidump
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Reciente
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Mis documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Impresoras
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Entorno de red
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\Configuración local
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historial
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Archivos temporales de Internet
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Reciente
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Mis documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Impresoras
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Entorno de red
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\Configuración local
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historial
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Archivos temporales de Internet
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Plantillas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Menú Inicio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Escritorio
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Documentos
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\ProgramData\Datos de programa
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Program Files\Archivos comunes
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Documents and Settings
2020-04-04 19:24 - 2020-04-04 19:24 - 000000000 _SHDL C:\Archivos de programa
2020-04-04 19:12 - 2020-01-09 18:25 - 002874368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2020-04-04 19:10 - 2020-04-15 23:56 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-04-04 19:10 - 2020-04-15 15:58 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-04-04 19:09 - 2020-04-15 21:52 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-04-04 19:09 - 2020-04-04 19:09 - 000000000 ____D C:\Windows\ServiceProfiles
 
==================== Un mes (modificado) ==================
 
(Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.)
 
2020-04-16 14:02 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-16 00:09 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\CbsTemp
2020-04-15 22:13 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-15 22:13 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness
2020-04-15 15:57 - 2019-03-19 01:37 - 000786432 _____ C:\Windows\system32\config\BBI
2020-04-09 16:14 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-04-08 15:58 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF
2020-04-08 09:23 - 2019-03-19 08:59 - 000753744 _____ C:\Windows\system32\perfh00A.dat
2020-04-08 09:23 - 2019-03-19 08:59 - 000148288 _____ C:\Windows\system32\perfc00A.dat
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SystemResources
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellExperiences
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\Provisioning
2020-04-08 09:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\bcastdvr
2020-04-08 04:52 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports
2020-04-07 17:38 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-04-07 17:24 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\Downloaded Program Files
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\setup
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\oobe
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\setup
2020-04-05 20:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\oobe
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\PrintDialog
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-04-05 20:11 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Dism
2020-04-05 20:11 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\servicing
2020-04-05 04:33 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-04-05 03:35 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-04-05 03:35 - 2019-03-19 01:49 - 000000092 _____ C:\Windows\win.ini
2020-04-05 03:08 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\appcompat
2020-04-05 01:12 - 2019-03-19 09:01 - 000000000 ____D C:\Windows\OCR
2020-04-05 01:12 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\es-MX
2020-04-05 01:09 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ServiceState
2020-04-05 00:31 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\USOPrivate
2020-04-04 19:48 - 2019-03-19 01:49 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-04-04 19:30 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2020-04-04 19:28 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\spool
2020-04-04 19:28 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-04-04 19:24 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows NT
2020-04-04 19:11 - 2019-03-19 01:37 - 000032768 _____ C:\Windows\system32\config\ELAM
 
==================== Archivos en la raíz de algunos directorios ========
 
2020-04-09 16:11 - 2020-04-12 19:40 - 000007603 _____ () C:\Users\ivanc\AppData\Local\Resmon.ResmonCfg
 
==================== SigCheck ============================
 
(No existe una corrección automática para los archivos que no pasan la verificación.)
 
==================== Final de FRST.txt ========================

  • 0

#44
RKinner

RKinner

    Malware Expert

  • Expert
  • 22,748 posts
  • MVP

In Chrome, go to chrome://extensions/


Turn off all but the Chrome Apps  and Adblock Plus by moving the blue spot to the left.  (Actually I prefer Ublock Origin to Adblock Plus - faster and doesn't let companies pay to be unblocked)

 

Delete the one called

Hola Free VPN Proxy Unblocker

 

See:

https://thebestvpn.c...views/hola-vpn/

 

If you can't bear to live without it then at least turn it off when not in use.

 

Also delete

AVG SafePrice

Now Go to

chrome://settings/


Find:

On Startup

 

You have three sites starting up every time you start Chrome. 

CHR StartupUrls: Default -> "hxxp://pagina12.com/","hxxps://www.google.com./","hxxp://www.google.com.ar/"
Pagina12.com is a very busy site.  Each one of its little windows gets its own instance of Chrome.  Do you really need it to run every time you start Chrome?  Better to Bookmark it to your Bookmark bar. You can highlight the pagina12 entry then click on the three dots to the right and Remove.
 
Close Chrome and restart it for the changes to take effect.
 
I had a typo in the last fixlist and DISM didn't run.  Let's try it again.
 

Download the attached fixlist.txt to the same location as FRST

Attached File  fixlist.txt   3.3KB   21 downloads

Run FRST and press Fix
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.
 
Also let's do another Process Explorer log.
 
How is it running now?
 



 
 
 
 
 

  • 0

#45
Matias Cooke

Matias Cooke

    Member

  • Topic Starter
  • Member
  • PipPip
  • 50 posts

Here is the fixlog and the other 2 logs

 

Resultados de la corrección de Farbar Recovery Scan Tool (x64) Versión: 19-04-2020

Ejecutado por ivanc (20-04-2020 18:09:22) Run:2
Ejecutado desde C:\Users\ivanc\OneDrive\Escritorio
Perfiles cargados: ivanc & COOKES (Perfiles disponibles: ivanc & COOKES)
Modo de Inicio: Normal
==============================================
 
fixlist contenido:
*****************
Startup: C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk [2020-04-08]
ShortcutTarget: HDDlife.lnk -> C:\Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe (Ningún archivo)
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
CustomCLSID: HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\ivanc\AppData\Local\Microsoft\OneDrive\19.232.1124.0012\amd64\FileSyncShell64.dll => Ningún archivo
ContextMenuHandlers1_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers4_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ContextMenuHandlers5_S-1-5-21-1840741467-1113686577-3156136756-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> Ningún archivo
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Ningún archivo
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
*****************
 
C:\Users\ivanc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk => movido correctamente
"C:\Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe" => no encontrado
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\SOFTWARE\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKU\S-1-5-21-1840741467-1113686577-3156136756-1005\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ FileSyncEx => eliminado correctamente
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => no encontrado
 
========= DISM /Online /Cleanup-Image /RestoreHealth =========
 
 
Herramienta Administraci¢n y mantenimiento de im genes de implementaci¢n
Versi¢n: 10.0.18362.1
 
Versi¢n de imagen: 10.0.18363.778
 
 
[==                         4.5%                           ] 
 
[==                         4.5%                           ] 
 
[==                         4.5%                           ] 
 
[==                         4.5%                           ] 
 
[==                         4.6%                           ] 
 
[==                         4.6%                           ] 
 
[==                         4.6%                           ] 
 
[==                         4.7%                           ] 
 
[==                         4.7%                           ] 
 
[==                         4.7%                           ] 
 
[==                         4.8%                           ] 
 
[==                         4.8%                           ] 
 
[==                         4.9%                           ] 
 
[==                         4.9%                           ] 
 
[==                         5.0%                           ] 
 
[==                         5.0%                           ] 
 
[==                         5.0%                           ] 
 
[==                         5.1%                           ] 
 
[==                         5.1%                           ] 
 
[===                        5.2%                           ] 
 
[===                        5.2%                           ] 
 
[===                        5.2%                           ] 
 
[===                        5.3%                           ] 
 
[===                        5.3%                           ] 
 
[===                        5.4%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.5%                           ] 
 
[===                        5.6%                           ] 
 
[===                        5.6%                           ] 
 
[===                        5.7%                           ] 
 
[===                        5.8%                           ] 
 
[===                        5.8%                           ] 
 
[===                        5.8%                           ] 
 
[===                        5.8%                           ] 
 
[===                        5.9%                           ] 
 
[===                        5.9%                           ] 
 
[===                        5.9%                           ] 
 
[===                        6.0%                           ] 
 
[===                        6.1%                           ] 
 
[===                        6.1%                           ] 
 
[===                        6.2%                           ] 
 
[===                        6.2%                           ] 
 
[===                        6.2%                           ] 
 
[===                        6.3%                           ] 
 
[===                        6.3%                           ] 
 
[===                        6.4%                           ] 
 
[===                        6.4%                           ] 
 
[===                        6.5%                           ] 
 
[===                        6.5%                           ] 
 
[===                        6.5%                           ] 
 
[===                        6.6%                           ] 
 
[===                        6.6%                           ] 
 
[===                        6.7%                           ] 
 
[===                        6.7%                           ] 
 
[===                        6.8%                           ] 
 
[===                        6.8%                           ] 
 
[====                       6.9%                           ] 
 
[====                       6.9%                           ] 
 
[====                       6.9%                           ] 
 
[====                       7.0%                           ] 
 
[====                       7.0%                           ] 
 
[====                       7.1%                           ] 
 
[====                       7.1%                           ] 
 
[====                       7.1%                           ] 
 
[====                       7.2%                           ] 
 
[====                       7.3%                           ] 
 
[====                       7.3%                           ] 
 
[====                       7.3%                           ] 
 
[====                       7.4%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.6%                           ] 
 
[====                       7.6%                           ] 
 
[====                       7.7%                           ] 
 
[====                       7.8%                           ] 
 
[====                       7.9%                           ] 
 
[====                       8.0%                           ] 
 
[====                       8.0%                           ] 
 
[====                       8.1%                           ] 
 
[====                       8.1%                           ] 
 
[====                       8.2%                           ] 
 
[====                       8.2%                           ] 
 
[====                       8.2%                           ] 
 
[====                       8.3%                           ] 
 
[====                       8.3%                           ] 
 
[====                       8.4%                           ] 
 
[====                       8.4%                           ] 
 
[====                       8.5%                           ] 
 
[====                       8.5%                           ] 
 
[====                       8.5%                           ] 
 
[====                       8.5%                           ] 
 
[=====                      8.6%                           ] 
 
[=====                      8.6%                           ] 
 
[=====                      8.7%                           ] 
 
[=====                      8.7%                           ] 
 
[=====                      8.7%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      9.0%                           ] 
 
[=====                      9.0%                           ] 
 
[=====                      9.0%                           ] 
 
[=====                      9.0%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.2%                           ] 
 
[=====                      9.3%                           ] 
 
[=====                      9.3%                           ] 
 
[=====                      9.3%                           ] 
 
[=====                      9.4%                           ] 
 
[=====                      9.4%                           ] 
 
[=====                      9.4%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.6%                           ] 
 
[=====                      9.6%                           ] 
 
[=====                      9.7%                           ] 
 
[=====                      9.7%                           ] 
 
[=====                      9.8%                           ] 
 
[=====                      9.8%                           ] 
 
[=====                      9.8%                           ] 
 
[=====                      9.9%                           ] 
 
[=====                      9.9%                           ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.1%                          ] 
 
[=====                      10.1%                          ] 
 
[=====                      10.2%                          ] 
 
[=====                      10.2%                          ] 
 
[=====                      10.3%                          ] 
 
[======                     10.4%                          ] 
 
[======                     10.5%                          ] 
 
[======                     10.5%                          ] 
 
[======                     10.6%                          ] 
 
[======                     10.6%                          ] 
 
[======                     10.7%                          ] 
 
[======                     10.7%                          ] 
 
[======                     10.9%                          ] 
 
[======                     11.0%                          ] 
 
[======                     11.0%                          ] 
 
[======                     11.1%                          ] 
 
[======                     11.3%                          ] 
 
[======                     11.5%                          ] 
 
[======                     11.6%                          ] 
 
[======                     11.7%                          ] 
 
[======                     11.7%                          ] 
 
[======                     11.8%                          ] 
 
[======                     11.9%                          ] 
 
[======                     12.0%                          ] 
 
[======                     12.0%                          ] 
 
[=======                    12.1%                          ] 
 
[=======                    12.2%                          ] 
 
[=======                    12.3%                          ] 
 
[=======                    12.4%                          ] 
 
[=======                    12.5%                          ] 
 
[=======                    12.6%                          ] 
 
[=======                    12.7%                          ] 
 
[=======                    12.7%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    12.9%                          ] 
 
[=======                    13.0%                          ] 
 
[=======                    13.1%                          ] 
 
[=======                    13.1%                          ] 
 
[=======                    13.2%                          ] 
 
[=======                    13.2%                          ] 
 
[=======                    13.3%                          ] 
 
[=======                    13.4%                          ] 
 
[=======                    13.5%                          ] 
 
[=======                    13.5%                          ] 
 
[=======                    13.5%                          ] 
 
[=======                    13.5%                          ] 
 
[=======                    13.6%                          ] 
 
[=======                    13.7%                          ] 
 
[=======                    13.7%                          ] 
 
[========                   13.8%                          ] 
 
[========                   13.9%                          ] 
 
[========                   13.9%                          ] 
 
[========                   14.0%                          ] 
 
[========                   14.1%                          ] 
 
[========                   14.2%                          ] 
 
[========                   14.3%                          ] 
 
[========                   14.4%                          ] 
 
[========                   14.4%                          ] 
 
[========                   14.5%                          ] 
 
[========                   14.7%                          ] 
 
[========                   14.7%                          ] 
 
[========                   14.8%                          ] 
 
[========                   14.9%                          ] 
 
[========                   14.9%                          ] 
 
[========                   15.0%                          ] 
 
[========                   15.1%                          ] 
 
[========                   15.2%                          ] 
 
[========                   15.3%                          ] 
 
[========                   15.4%                          ] 
 
[========                   15.4%                          ] 
 
[========                   15.5%                          ] 
 
[=========                  15.5%                          ] 
 
[=========                  15.6%                          ] 
 
[=========                  15.6%                          ] 
 
[=========                  15.7%                          ] 
 
[=========                  15.8%                          ] 
 
[=========                  15.9%                          ] 
 
[=========                  15.9%                          ] 
 
[=========                  16.0%                          ] 
 
[=========                  16.1%                          ] 
 
[=========                  16.2%                          ] 
 
[=========                  16.3%                          ] 
 
[=========                  16.4%                          ] 
 
[=========                  16.5%                          ] 
 
[=========                  16.5%                          ] 
 
[=========                  16.6%                          ] 
 
[=========                  16.7%                          ] 
 
[=========                  16.8%                          ] 
 
[=========                  17.0%                          ] 
 
[=========                  17.1%                          ] 
 
[=========                  17.1%                          ] 
 
[=========                  17.2%                          ] 
 
[==========                 17.3%                          ] 
 
[==========                 17.4%                          ] 
 
[==========                 17.5%                          ] 
 
[==========                 17.5%                          ] 
 
[==========                 17.7%                          ] 
 
[==========                 17.7%                          ] 
 
[==========                 17.8%                          ] 
 
[==========                 18.0%                          ] 
 
[==========                 18.1%                          ] 
 
[==========                 18.2%                          ] 
 
[==========                 18.2%                          ] 
 
[==========                 18.3%                          ] 
 
[==========                 18.4%                          ] 
 
[==========                 18.5%                          ] 
 
[==========                 18.5%                          ] 
 
[==========                 18.7%                          ] 
 
[==========                 18.7%                          ] 
 
[==========                 18.8%                          ] 
 
[==========                 18.9%                          ] 
 
[==========                 18.9%                          ] 
 
[==========                 18.9%                          ] 
 
[===========                19.0%                          ] 
 
[===========                19.0%                          ] 
 
[===========                19.1%                          ] 
 
[===========                19.2%                          ] 
 
[===========                19.3%                          ] 
 
[===========                19.3%                          ] 
 
[===========                19.4%                          ] 
 
[===========                19.4%                          ] 
 
[===========                19.5%                          ] 
 
[===========                19.5%                          ] 
 
[===========                19.5%                          ] 
 
[===========                19.5%                          ] 
 
[===========                19.5%                          ] 
 
[===========                19.6%                          ] 
 
[===========                19.8%                          ] 
 
[===========                19.8%                          ] 
 
[===========                19.9%                          ] 
 
[===========                20.0%                          ] 
 
[===========                20.1%                          ] 
 
[===========                20.3%                          ] 
 
[===========                20.4%                          ] 
 
[===========                20.5%                          ] 
 
[===========                20.5%                          ] 
 
[===========                20.5%                          ] 
 
[===========                20.6%                          ] 
 
[===========                20.6%                          ] 
 
[============               20.7%                          ] 
 
[============               20.7%                          ] 
 
[============               20.9%                          ] 
 
[============               20.9%                          ] 
 
[============               21.0%                          ] 
 
[============               21.2%                          ] 
 
[============               21.2%                          ] 
 
[============               21.4%                          ] 
 
[============               21.5%                          ] 
 
[============               21.5%                          ] 
 
[============               21.6%                          ] 
 
[============               21.9%                          ] 
 
[=============              22.5%                          ] 
 
[=============              22.6%                          ] 
 
[=============              23.5%                          ] 
 
[=============              23.9%                          ] 
 
[==============             24.5%                          ] 
 
[==============             24.8%                          ] 
 
[==============             25.7%                          ] 
 
[===============            26.4%                          ] 
 
[===============            26.8%                          ] 
 
[================           27.8%                          ] 
 
[================           28.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          30.4%                          ] 
 
[=================          30.6%                          ] 
 
[=================          30.6%                          ] 
 
[=================          30.9%                          ] 
 
[=================          30.9%                          ] 
 
[=================          31.0%                          ] 
 
[=================          31.0%                          ] 
 
[==================         31.1%                          ] 
 
[==================         31.1%                          ] 
 
[==================         31.1%                          ] 
 
[==================         31.2%                          ] 
 
[==================         31.2%                          ] 
 
[==================         31.3%                          ] 
 
[==================         31.4%                          ] 
 
[==================         31.4%                          ] 
 
[==================         31.4%                          ] 
 
[==================         31.4%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.7%                          ] 
 
[==================         31.7%                          ] 
 
[==================         31.7%                          ] 
 
[==================         31.8%                          ] 
 
[==================         31.8%                          ] 
 
[==================         31.9%                          ] 
 
[==================         31.9%                          ] 
 
[==================         31.9%                          ] 
 
[==================         32.0%                          ] 
 
[==================         32.0%                          ] 
 
[==================         32.1%                          ] 
 
[==================         32.1%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.3%                          ] 
 
[==================         32.3%                          ] 
 
[==================         32.3%                          ] 
 
[==================         32.4%                          ] 
 
[==================         32.5%                          ] 
 
[===================        33.0%                          ] 
 
[===================        33.1%                          ] 
 
[===================        33.2%                          ] 
 
[===================        33.3%                          ] 
 
[===================        33.4%                          ] 
 
[===================        33.5%                          ] 
 
[===================        33.6%                          ] 
 
[===================        33.7%                          ] 
 
[===================        33.8%                          ] 
 
[===================        33.8%                          ] 
 
[===================        33.9%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.2%                          ] 
 
[===================        34.3%                          ] 
 
[===================        34.4%                          ] 
 
[====================       34.7%                          ] 
 
[====================       34.7%                          ] 
 
[====================       34.9%                          ] 
 
[====================       35.3%                          ] 
 
[====================       35.4%                          ] 
 
[====================       35.5%                          ] 
 
[====================       35.8%                          ] 
 
[====================       36.0%                          ] 
 
[====================       36.1%                          ] 
 
[====================       36.2%                          ] 
 
[=====================      36.3%                          ] 
 
[=====================      36.4%                          ] 
 
[=====================      36.5%                          ] 
 
[=====================      36.5%                          ] 
 
[=====================      36.7%                          ] 
 
[=====================      36.7%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.9%                          ] 
 
[=====================      37.0%                          ] 
 
[=====================      37.1%                          ] 
 
[=====================      37.6%                          ] 
 
[======================     38.0%                          ] 
 
[======================     38.3%                          ] 
 
[======================     38.5%                          ] 
 
[======================     38.9%                          ] 
 
[======================     39.0%                          ] 
 
[======================     39.5%                          ] 
 
[=======================    39.7%                          ] 
 
[=======================    40.3%                          ] 
 
[=======================    40.4%                          ] 
 
[=======================    40.7%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.3%                          ] 
 
[========================   41.5%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.9%                          ] 
 
[========================   42.0%                          ] 
 
[========================   42.2%                          ] 
 
[========================   42.4%                          ] 
 
[========================   42.5%                          ] 
 
[========================   42.6%                          ] 
 
[========================   42.6%                          ] 
 
[========================   43.0%                          ] 
 
[========================   43.0%                          ] 
 
[========================   43.1%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.3%                          ] 
 
[=========================  43.4%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.6%                          ] 
 
[=========================  43.7%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.9%                          ] 
 
[=========================  44.0%                          ] 
 
[=========================  44.0%                          ] 
 
[=========================  44.1%                          ] 
 
[=========================  44.1%                          ] 
 
[=========================  44.1%                          ] 
 
[=========================  44.2%                          ] 
 
[=========================  44.3%                          ] 
 
[=========================  44.3%                          ] 
 
[=========================  44.4%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.6%                          ] 
 
[=========================  44.6%                          ] 
 
[=========================  44.6%                          ] 
 
[=========================  44.7%                          ] 
 
[=========================  44.7%                          ] 
 
[=========================  44.7%                          ] 
 
[=========================  44.8%                          ] 
 
[========================== 44.9%                          ] 
 
[========================== 45.0%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.2%                          ] 
 
[========================== 45.3%                          ] 
 
[========================== 45.4%                          ] 
 
[========================== 45.5%                          ] 
 
[========================== 45.5%                          ] 
 
[========================== 45.6%                          ] 
 
[========================== 45.6%                          ] 
 
[========================== 45.7%                          ] 
 
[========================== 45.8%                          ] 
 
[========================== 45.9%                          ] 
 
[========================== 46.0%                          ] 
 
[========================== 46.1%                          ] 
 
[========================== 46.1%                          ] 
 
[========================== 46.2%                          ] 
 
[========================== 46.3%                          ] 
 
[========================== 46.4%                          ] 
 
[========================== 46.5%                          ] 
 
[========================== 46.5%                          ] 
 
[========================== 46.5%                          ] 
 
[========================== 46.5%                          ] 
 
[========================== 46.5%                          ] 
 
[========================== 46.5%                          ] 
 
[===========================46.6%                          ] 
 
[===========================46.6%                          ] 
 
[===========================46.7%                          ] 
 
[===========================46.7%                          ] 
 
[===========================46.8%                          ] 
 
[===========================46.8%                          ] 
 
[===========================46.8%                          ] 
 
[===========================46.9%                          ] 
 
[===========================47.1%                          ] 
 
[===========================48.1%                          ] 
 
[===========================48.6%                          ] 
 
[===========================49.3%                          ] 
 
[===========================49.6%                          ] 
 
[===========================50.3%                          ] 
 
[===========================51.3%                          ] 
 
[===========================51.9%                          ] 
 
[===========================52.1%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.6%                          ] 
 
[===========================52.7%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.9%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.2%                          ] 
 
[===========================53.3%                          ] 
 
[===========================53.3%                          ] 
 
[===========================53.4%                          ] 
 
[===========================53.5%                          ] 
 
[===========================53.5%                          ] 
 
[===========================53.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.7%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.9%                          ] 
 
[===========================55.9%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.1%                          ] 
 
[===========================56.1%                          ] 
 
[===========================56.1%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.3%                          ] 
 
[===========================56.4%                          ] 
 
[===========================56.4%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.9%=                         ] 
 
[===========================57.0%=                         ] 
 
[===========================57.6%=                         ] 
 
[===========================57.6%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.8%=                         ] 
 
[===========================57.8%=                         ] 
 
[===========================57.8%=                         ] 
 
[===========================57.9%=                         ] 
 
[===========================57.9%=                         ] 
 
[===========================57.9%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.2%=                         ] 
 
[===========================58.3%=                         ] 
 
[===========================58.9%==                        ] 
 
[===========================58.9%==                        ] 
 
[===========================58.9%==                        ] 
 
[===========================59.0%==                        ] 
 
[===========================59.1%==                        ] 
 
[===========================59.1%==                        ] 
 
[===========================59.1%==                        ] 
 
[===========================59.2%==                        ] 
 
[===========================59.2%==                        ] 
 
[===========================59.3%==                        ] 
 
[===========================59.3%==                        ] 
 
[===========================59.3%==                        ] 
 
[===========================59.4%==                        ] 
 
[===========================59.4%==                        ] 
 
[===========================59.4%==                        ] 
 
[===========================59.5%==                        ] 
 
[===========================59.5%==                        ] 
 
[===========================59.5%==                        ] 
 
[===========================59.5%==                        ] 
 
[===========================59.6%==                        ] 
 
[===========================60.2%==                        ] 
 
[===========================60.4%===                       ] 
 
[===========================61.1%===                       ] 
 
[===========================61.2%===                       ] 
 
[===========================61.2%===                       ] 
 
[===========================61.3%===                       ] 
 
[===========================61.4%===                       ] 
 
[===========================61.5%===                       ] 
 
[===========================61.5%===                       ] 
 
[===========================61.5%===                       ] 
 
[===========================61.6%===                       ] 
 
[===========================61.7%===                       ] 
 
[===========================61.8%===                       ] 
 
[===========================61.9%===                       ] 
 
[===========================61.9%===                       ] 
 
[===========================62.0%===                       ] 
 
[===========================62.0%===                       ] 
 
[===========================62.0%===                       ] 
 
[===========================62.1%====                      ] 
 
[===========================62.1%====                      ] 
 
[===========================62.2%====                      ] 
 
[===========================62.2%====                      ] 
 
[===========================62.3%====                      ] 
 
[===========================62.3%====                      ] 
 
[===========================62.3%====                      ] 
 
[===========================62.4%====                      ] 
 
[===========================62.4%====                      ] 
 
[===========================62.5%====                      ] 
 
[===========================62.5%====                      ] 
 
[===========================62.5%====                      ] 
 
[===========================62.5%====                      ] 
 
[===========================62.5%====                      ] 
 
[===========================62.6%====                      ] 
 
[===========================62.7%====                      ] 
 
[===========================62.7%====                      ] 
 
[===========================62.8%====                      ] 
 
[===========================62.9%====                      ] 
 
[===========================63.0%====                      ] 
 
[===========================63.1%====                      ] 
 
[===========================63.2%====                      ] 
 
[===========================63.2%====                      ] 
 
[===========================63.3%====                      ] 
 
[===========================63.3%====                      ] 
 
[===========================63.4%====                      ] 
 
[===========================63.5%====                      ] 
 
[===========================63.6%====                      ] 
 
[===========================64.5%=====                     ] 
 
[===========================65.5%=====                     ] 
 
[===========================66.2%======                    ] 
 
[===========================66.5%======                    ] 
 
[===========================66.7%======                    ] 
 
[===========================66.8%======                    ] 
 
[===========================66.9%======                    ] 
 
[===========================66.9%======                    ] 
 
[===========================67.0%======                    ] 
 
[===========================67.2%======                    ] 
 
[===========================67.3%=======                   ] 
 
[===========================67.4%=======                   ] 
 
[===========================67.4%=======                   ] 
 
[===========================67.5%=======                   ] 
 
[===========================67.5%=======                   ] 
 
[===========================67.5%=======                   ] 
 
[===========================67.5%=======                   ] 
 
[===========================67.6%=======                   ] 
 
[===========================67.7%=======                   ] 
 
[===========================67.7%=======                   ] 
 
[===========================67.8%=======                   ] 
 
[===========================67.8%=======                   ] 
 
[===========================67.9%=======                   ] 
 
[===========================68.0%=======                   ] 
 
[===========================68.1%=======                   ] 
 
[===========================68.1%=======                   ] 
 
[===========================68.2%=======                   ] 
 
[===========================68.3%=======                   ] 
 
[===========================68.4%=======                   ] 
 
[===========================68.5%=======                   ] 
 
[===========================68.5%=======                   ] 
 
[===========================68.5%=======                   ] 
 
[===========================69.0%========                  ] 
 
[===========================70.0%========                  ] 
 
[===========================70.7%=========                 ] 
 
[===========================70.8%=========                 ] 
 
[===========================70.9%=========                 ] 
 
[===========================71.0%=========                 ] 
 
[===========================71.0%=========                 ] 
 
[===========================71.1%=========                 ] 
 
[===========================71.2%=========                 ] 
 
[===========================71.3%=========                 ] 
 
[===========================71.4%=========                 ] 
 
[===========================71.5%=========                 ] 
 
[===========================71.5%=========                 ] 
 
[===========================71.6%=========                 ] 
 
[===========================71.7%=========                 ] 
 
[===========================71.7%=========                 ] 
 
[===========================71.8%=========                 ] 
 
[===========================71.9%=========                 ] 
 
[===========================72.0%=========                 ] 
 
[===========================72.1%=========                 ] 
 
[===========================72.2%=========                 ] 
 
[===========================72.3%=========                 ] 
 
[===========================72.4%=========                 ] 
 
[===========================72.5%==========                ] 
 
[===========================72.5%==========                ] 
 
[===========================72.5%==========                ] 
 
[===========================72.9%==========                ] 
 
[===========================73.8%==========                ] 
 
[===========================74.8%===========               ] 
 
[===========================75.5%===========               ] 
 
[===========================75.6%===========               ] 
 
[===========================75.8%===========               ] 
 
[===========================75.9%============              ] 
 
[===========================76.1%============              ] 
 
[===========================76.3%============              ] 
 
[===========================76.5%============              ] 
 
[===========================76.7%============              ] 
 
[===========================77.7%=============             ] 
 
[===========================77.8%=============             ] 
 
[===========================77.9%=============             ] 
 
[===========================78.0%=============             ] 
 
[===========================78.1%=============             ] 
 
[===========================78.2%=============             ] 
 
[===========================78.3%=============             ] 
 
[===========================78.4%=============             ] 
 
[===========================78.5%=============             ] 
 
[===========================78.6%=============             ] 
 
[===========================78.7%=============             ] 
 
[===========================78.8%=============             ] 
 
[===========================79.8%==============            ] 
 
[===========================80.5%==============            ] 
 
[===========================80.9%==============            ] 
 
[===========================81.0%==============            ] 
 
[===========================81.2%===============           ] 
 
[===========================81.3%===============           ] 
 
[===========================81.3%===============           ] 
 
[===========================81.4%===============           ] 
 
[===========================81.5%===============           ] 
 
[===========================81.5%===============           ] 
 
[===========================81.6%===============           ] 
 
[===========================81.6%===============           ] 
 
[===========================81.7%===============           ] 
 
[===========================81.8%===============           ] 
 
[===========================81.9%===============           ] 
 
[===========================82.0%===============           ] 
 
[===========================83.0%================          ] 
 
[===========================84.0%================          ] 
 
[===========================84.2%================          ] 
 
[===========================84.3%================          ] 
 
[===========================84.3%================          ] 
 
[===========================84.4%================          ] 
 
[===========================84.5%================          ] 
 
[===========================84.5%=================         ] 
 
[===========================84.6%=================         ] 
 
[===========================84.7%=================         ] 
 
[===========================84.7%=================         ] 
 
[===========================84.8%=================         ] 
 
[===========================84.9%=================         ] 
 
[===========================84.9%=================         ] 
 
[===========================85.0%=================         ] 
 
[===========================85.0%=================         ] 
 
[===========================85.1%=================         ] 
 
[===========================85.4%=================         ] 
 
[===========================86.4%==================        ] 
 
[===========================87.3%==================        ] 
 
[===========================87.4%==================        ] 
 
[===========================87.5%==================        ] 
 
[===========================87.5%==================        ] 
 
[===========================87.6%==================        ] 
 
[===========================87.7%==================        ] 
 
[===========================87.8%==================        ] 
 
[===========================87.9%==================        ] 
 
[===========================88.0%===================       ] 
 
[===========================88.1%===================       ] 
 
[===========================88.1%===================       ] 
 
[===========================89.1%===================       ] 
 
[===========================90.1%====================      ] 
 
[===========================90.2%====================      ] 
 
[===========================90.3%====================      ] 
 
[===========================90.4%====================      ] 
 
[===========================90.5%====================      ] 
 
[===========================90.5%====================      ] 
 
[===========================90.6%====================      ] 
 
[===========================90.8%====================      ] 
 
[===========================90.9%====================      ] 
 
[===========================91.9%=====================     ] 
 
[===========================92.9%=====================     ] 
 
[===========================93.0%=====================     ] 
 
[===========================93.1%=====================     ] 
 
[===========================93.2%======================    ] 
 
[===========================93.3%======================    ] 
 
[===========================93.9%======================    ] 
 
[===========================93.9%======================    ] 
 
[===========================94.0%======================    ] 
 
[===========================94.0%======================    ] 
 
[===========================94.1%======================    ] 
 
[===========================94.2%======================    ] 
 
[===========================94.2%======================    ] 
 
[===========================94.3%======================    ] 
 
[===========================94.3%======================    ] 
 
[===========================94.4%======================    ] 
 
[===========================94.4%======================    ] 
 
[===========================94.5%======================    ] 
 
[===========================94.5%======================    ] 
 
[===========================94.6%======================    ] 
 
[===========================94.6%======================    ] 
 
[===========================94.7%======================    ] 
 
[===========================94.7%======================    ] 
 
[===========================94.8%======================    ] 
 
[===========================94.9%=======================   ] 
 
[===========================95.9%=======================   ] 
 
[===========================96.8%========================  ] 
 
[===========================96.9%========================  ] 
 
[===========================96.9%========================  ] 
 
[===========================97.0%========================  ] 
 
[===========================97.1%========================  ] 
 
[===========================97.2%========================  ] 
 
[===========================97.2%========================  ] 
 
[===========================97.3%========================  ] 
 
[===========================97.4%========================  ] 
 
[===========================97.5%========================  ] 
 
[===========================97.5%========================  ] 
 
[===========================97.5%========================  ] 
 
[===========================98.5%========================= ] 
 
[===========================98.9%========================= ] 
 
[===========================99.0%========================= ] 
 
[===========================99.1%========================= ] 
 
[===========================99.2%========================= ] 
 
[===========================99.3%========================= ] 
 
[===========================99.4%========================= ] 
 
[===========================99.5%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[===========================99.9%========================= ] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
 
[==========================100.0%==========================] 
La operaci¢n de restauraci¢n finaliz¢ correctamente.
La operaci¢n se complet¢ correctamente.
 
========= Final de CMD: =========
 
 
========= findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log =========
 
2020-04-19 11:25:58, Info                  CSI    00000006 [SR] Verifying 1 components
2020-04-19 11:25:58, Info                  CSI    00000007 [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:00, Info                  CSI    00000009 [SR] Verify complete
2020-04-19 11:26:00, Info                  CSI    0000000a [SR] Verifying 1 components
2020-04-19 11:26:00, Info                  CSI    0000000b [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:01, Info                  CSI    0000000c [SR] Verify complete
2020-04-19 11:26:01, Info                  CSI    0000000d [SR] Verifying 1 components
2020-04-19 11:26:01, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:01, Info                  CSI    0000000f [SR] Verify complete
2020-04-19 11:26:01, Info                  CSI    00000010 [SR] Verifying 1 components
2020-04-19 11:26:01, Info                  CSI    00000011 [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:02, Info                  CSI    00000012 [SR] Verify complete
2020-04-19 11:26:02, Info                  CSI    00000013 [SR] Verifying 1 components
2020-04-19 11:26:02, Info                  CSI    00000014 [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:03, Info                  CSI    00000015 [SR] Verify complete
2020-04-19 11:26:03, Info                  CSI    00000016 [SR] Verifying 1 components
2020-04-19 11:26:03, Info                  CSI    00000017 [SR] Beginning Verify and Repair transaction
2020-04-19 11:26:03, Info                  CSI    00000018 [SR] Verify complete
 
========= Final de CMD: =========
 
 
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
 
Error al borrar el registro Microsoft-Windows-LiveId/Analytic.
Acceso denegado.
Error al borrar el registro Microsoft-Windows-LiveId/Operational.
Acceso denegado.
Error al borrar el registro Microsoft-Windows-USBVideo/Analytic.
Un proveedor de datos WMI no reconoce como válido el nombre de instancia pasado.
 
========= Final de CMD: =========
 
 
 
El sistema necesita reiniciarse.
 
==== Final de Fixlog 18:37:55 ====

  • 0






Similar Topics


Also tagged with one or more of these keywords: virus, disk, slow, laptop

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP