Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Ggosavanow on my google chrome
Message
<blockquote data-quote="gnk10090" data-source="post: 260784" data-attributes="member: 27763"><p>Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-09-2014</p><p>Ran by Gianca (administrator) on GIANCA-PC on 12-09-2014 20:11:58</p><p>Running from C:\Users\Gianca\Downloads</p><p>Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Español (España, internacional)</p><p>Internet Explorer Version 11</p><p>Boot Mode: Normal</p><p></p><p>The only official download link for FRST:</p><p>Download link for 32-Bit version: <a href="http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/" target="_blank">http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/</a> </p><p>Download link for 64-Bit Version: <a href="http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/" target="_blank">http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/</a> </p><p>Download link from any site other than Bleeping Computer is unpermitted or outdated.</p><p>See tutorial for FRST: <a href="http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/" target="_blank">http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/</a></p><p></p><p>/==================== Processes (Whitelisted) =================</p><p></p><p>(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)</p><p></p><p>(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe</p><p>(Intel Corporation) C:\Windows\System32\igfxCUIService.exe</p><p>(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe</p><p>(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe</p><p>(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe</p><p>(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE</p><p>(Microsoft Corporation) C:\Windows\System32\wlanext.exe</p><p>(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE</p><p>(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe</p><p>(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe</p><p>(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe</p><p>(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe</p><p>(Hi-Rez Studios) E:\Hi-Rez Studios\HiPatchService.exe</p><p>(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe</p><p>(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe</p><p>(Microsoft Corporation) C:\Windows\System32\rundll32.exe</p><p>(Intel Corporation) C:\Windows\System32\igfxEM.exe</p><p>(Intel Corporation) C:\Windows\System32\igfxHK.exe</p><p>(Intel Corporation) C:\Windows\System32\igfxTray.exe</p><p>(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE</p><p>(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe</p><p>(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe</p><p>(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe</p><p>(Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe</p><p>(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe</p><p>(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe</p><p>(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe</p><p>(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe</p><p>(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe</p><p>(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe</p><p>(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\Bluetooth Headset Helper.exe</p><p>(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>() E:\League of Legends\RADS\system\rads_user_kernel.exe</p><p>() E:\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.222\deploy\LoLLauncher.exe</p><p>() E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe</p><p>() E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe</p><p>() E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Microsoft Corporation) C:\Windows\System32\dllhost.exe</p><p>(Microsoft Corporation) C:\Windows\System32\dllhost.exe</p><p></p><p></p><p>==================== Registry (Whitelisted) ==================</p><p></p><p>(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)</p><p></p><p>HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [7520768 2014-06-28] (Dell Inc.)</p><p>HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)</p><p>HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated)</p><p>HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"</p><p>HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [290688 2012-10-24] (Intel Corporation)</p><p>HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)</p><p>HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)</p><p>HKLM-x32\...\Run: [Adobe ARM] => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"</p><p>HKU\.DEFAULT\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-06-28] (Microsoft Corporation)</p><p>HKU\S-1-5-21-2977411719-851333777-3290948327-1000\...\Run: [DellSystemDetect] => C:\Users\Gianca\AppData\Local\Apps\2.0\YQTJN4GZ.C7K\5M57WRNB.6XN\dell..tion_0f612f649c4a10af_0005.0008_a4204ff54ae5d3ac\DellSystemDetect.exe [262720 2014-06-28] (Dell)</p><p>HKU\S-1-5-21-2977411719-851333777-3290948327-1000\...\MountPoints2: {f4b95cc7-fe0f-11e3-97e2-806e6f6e6963} - D:\setup.exe</p><p>Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll</p><p>Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk</p><p>ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)</p><p>Startup: C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor de la tecnología Intel® Turbo Boost 2.6.lnk</p><p>ShortcutTarget: Monitor de la tecnología Intel® Turbo Boost 2.6.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation)</p><p>GroupPolicy: Group Policy on Chrome detected <======= ATTENTION</p><p></p><p>==================== Internet (Whitelisted) ====================</p><p></p><p>(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)</p><p></p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = <a href="http://latam.msn.com/?ocid=iehp" target="_blank">http://latam.msn.com/?ocid=iehp</a></p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x107550CBFB92CF01</p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es-EC</p><p>StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe</p><p>BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)</p><p>BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)</p><p>BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)</p><p>BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)</p><p>BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)</p><p>BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)</p><p>BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)</p><p>BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)</p><p>Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)</p><p>Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)</p><p>Tcpip\Parameters: [DhcpNameServer] 192.168.0.1</p><p></p><p>FireFox:</p><p>========</p><p>FF ProfilePath: C:\Users\Gianca\AppData\Roaming\Mozilla\Firefox\Profiles\yma1egvc.default-1410402826328</p><p>FF Homepage: Mozilla</p><p>FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()</p><p>FF Plugin: @microsoft.com/GENUINE -> disabled No File</p><p>FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)</p><p>FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()</p><p>FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)</p><p>FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)</p><p>FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File</p><p>FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)</p><p>FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)</p><p>FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File</p><p>FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File</p><p>FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File</p><p>FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)</p><p>FF Plugin HKCU: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll (The Happy Cloud)</p><p>FF Extension: Webbiing - C:\Users\Gianca\AppData\Roaming\Mozilla\Firefox\Profiles\yma1egvc.default-1410402826328\Extensions\<a href="mailto:73@fQ.edu">73@fQ.edu</a> [2014-09-10]</p><p>FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]</p><p></p><p>Chrome: </p><p>=======</p><p>CHR HomePage: Default -> </p><p>CHR StartupUrls: Default -> "hxxp://<a href="http://www.duelingnetwork.com/" target="_blank">www.duelingnetwork.com/</a>"</p><p>CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google<img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite115" alt=":p" title="Stick out tongue :p" loading="lazy" data-shortname=":p" />ageClassification}{google:searchVersion}{google:sessionToken}sugkey={google:suggestAPIKeyParameter}</p><p>CHR Profile: C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default</p><p>CHR Extension: (GGosavenow) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahcohldobmjfdbnlodcdhamlaolphfjh [2014-09-08]</p><p>CHR Extension: (Google Docs) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-28]</p><p>CHR Extension: (Google Drive) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-28]</p><p>CHR Extension: (YouTube) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-28]</p><p>CHR Extension: (Búsqueda de Google) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-28]</p><p>CHR Extension: (Toradora! Theme) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\iebgbgngpdoigmmjhkclhghgkbakcidm [2014-06-28]</p><p>CHR Extension: (zate.tv) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\khoncmmfjdkoiamjpnhohoeanaefcdnj [2014-06-28]</p><p>CHR Extension: (Google Wallet) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-28]</p><p>CHR Extension: (zate.tv) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohbfcalhonopbkinbhdgdkgbjddgadon [2014-06-28]</p><p>CHR Extension: (Gmail) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-28]</p><p>CHR Extension: (GGosavenow) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahcohldobmjfdbnlodcdhamlaolphfjh\1.8 [2014-09-08]</p><p>CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]</p><p>CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION</p><p></p><p>==================== Services (Whitelisted) =================</p><p></p><p>(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)</p><p></p><p>R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)</p><p>R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)</p><p>S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [107552 2014-08-04] (EasyAntiCheat Ltd)</p><p>R2 HiPatchService; E:\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [File not signed]</p><p>R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2464400 2012-09-07] (Realsil Microelectronics Inc.)</p><p>R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-21] (Intel Corporation)</p><p>R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)</p><p>R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)</p><p>S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [5232840 2013-11-28] (INCA Internet Co., Ltd.)</p><p>R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor)</p><p>R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6292992 2014-06-28] (Dell Inc.) [File not signed]</p><p>S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]</p><p>S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]</p><p></p><p>==================== Drivers (Whitelisted) ====================</p><p></p><p>(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)</p><p></p><p>R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [165688 2014-06-28] (Broadcom Corporation.)</p><p>R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)</p><p>R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)</p><p>S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)</p><p>R0 rtcrfilt64; C:\Windows\System32\DRIVERS\rtcrfilt64.sys [19600 2012-09-04] (Realtek Semiconductor Corp.)</p><p>R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated)</p><p>S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]</p><p>S3 tsusbhub; system32\drivers\tsusbhub.sys [X]</p><p>S3 VGPU; System32\drivers\rdvgkmd.sys [X]</p><p></p><p>==================== NetSvcs (Whitelisted) ===================</p><p></p><p>(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)</p><p></p><p></p><p>==================== One Month Created Files and Folders ========</p><p></p><p>(If an entry is included in the fixlist, the file\folder will be moved.)</p><p></p><p>2014-09-12 20:10 - 2014-09-12 20:13 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Gianca\Downloads\mbam-setup-2.0.2.1012.exe</p><p>2014-09-12 15:14 - 2014-09-12 15:14 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe</p><p>2014-09-11 00:40 - 2014-08-19 13:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll</p><p>2014-09-11 00:40 - 2014-08-19 12:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll</p><p>2014-09-11 00:40 - 2014-08-18 18:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb</p><p>2014-09-11 00:40 - 2014-08-18 17:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll</p><p>2014-09-11 00:40 - 2014-08-18 17:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe</p><p>2014-09-11 00:40 - 2014-08-18 17:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe</p><p>2014-09-11 00:40 - 2014-08-18 16:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb</p><p>2014-09-11 00:40 - 2014-08-18 16:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe</p><p>2014-09-11 00:40 - 2014-08-18 16:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe</p><p>2014-09-11 00:40 - 2014-08-18 16:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe</p><p>2014-09-11 00:40 - 2014-08-18 16:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl</p><p>2014-09-11 00:40 - 2014-08-18 16:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll</p><p>2014-09-11 00:40 - 2014-08-18 16:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl</p><p>2014-09-11 00:40 - 2014-08-18 16:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll</p><p>2014-09-11 00:40 - 2014-08-18 15:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll</p><p>2014-09-11 00:40 - 2014-08-18 15:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll</p><p>2014-09-11 00:40 - 2014-08-18 15:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll</p><p>2014-09-11 00:40 - 2014-08-18 15:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll</p><p>2014-09-11 00:40 - 2014-08-18 15:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll</p><p>2014-09-11 00:29 - 2014-06-26 21:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll</p><p>2014-09-11 00:29 - 2014-06-26 20:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll</p><p>2014-09-10 22:21 - 2014-09-10 22:21 - 00033813 _____ () C:\Users\Gianca\Downloads\Addition.txt</p><p>2014-09-10 22:19 - 2014-09-12 20:12 - 00000000 ____D () C:\FRST</p><p>2014-09-10 22:19 - 2014-09-12 20:11 - 00016407 _____ () C:\Users\Gianca\Downloads\FRST.txt</p><p>2014-09-10 22:18 - 2014-09-10 22:18 - 02105856 _____ (Farbar) C:\Users\Gianca\Downloads\FRST64.exe</p><p>2014-09-10 22:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll</p><p>2014-09-10 22:11 - 2014-09-10 22:14 - 00000000 ____D () C:\AdwCleaner</p><p>2014-09-10 21:59 - 2014-09-10 22:02 - 01370467 _____ () C:\Users\Gianca\Downloads\adwcleaner_3.309.exe</p><p>2014-09-10 19:42 - 2014-08-01 06:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll</p><p>2014-09-10 19:42 - 2014-08-01 06:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll</p><p>2014-09-10 19:42 - 2014-06-23 22:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll</p><p>2014-09-10 19:42 - 2014-06-23 21:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll</p><p>2014-09-10 19:41 - 2014-07-06 21:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll</p><p>2014-09-10 19:41 - 2014-07-06 21:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll</p><p>2014-09-10 19:41 - 2014-07-06 20:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll</p><p>2014-09-10 19:41 - 2014-07-06 20:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll</p><p>2014-09-10 19:41 - 2014-07-06 20:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll</p><p>2014-09-10 19:40 - 2014-09-04 21:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll</p><p>2014-09-10 19:40 - 2014-09-04 21:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll</p><p>2014-09-10 11:59 - 2014-09-10 11:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf</p><p>2014-09-09 00:52 - 2014-09-09 00:52 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Adobe</p><p>2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Thinstall</p><p>2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Thinstall</p><p>2014-09-09 00:08 - 2014-09-11 22:04 - 00000000 ____D () C:\Users\Gianca\Desktop\verdesoto</p><p>2014-09-09 00:08 - 2014-09-11 12:15 - 00000000 ____D () C:\Users\Gianca\Desktop\logistica</p><p>2014-09-08 23:14 - 2014-09-09 00:10 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe</p><p>2014-09-08 23:14 - 2014-09-09 00:09 - 00000000 ____D () C:\ProgramData\Adobe</p><p>2014-09-08 22:47 - 2014-09-10 21:14 - 00000000 ____D () C:\ProgramData\YoutuebeAdBlockkee</p><p>2014-09-08 22:47 - 2014-09-10 21:13 - 00000000 ____D () C:\Program Files (x86)\YoutuebeAdBlockkee</p><p>2014-09-08 22:47 - 2014-09-10 21:10 - 00000000 ____D () C:\ProgramData\GosaVEnow</p><p>2014-09-08 22:47 - 2014-09-10 21:08 - 00000000 ____D () C:\Program Files (x86)\GosaVEnow</p><p>2014-09-08 22:46 - 2014-09-10 21:52 - 00000000 ____D () C:\ProgramData\cf4b54494e6af06d</p><p>2014-09-08 22:46 - 2014-09-10 21:50 - 00000418 __RSH () C:\ProgramData\ntuser.pol</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador</p><p>2014-09-08 15:46 - 2014-09-08 15:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk</p><p>2014-09-08 15:46 - 2014-09-08 15:46 - 00000000 ____D () C:\Program Files (x86)\Adobe</p><p>2014-09-08 15:42 - 2014-09-08 15:47 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe-BackupByIllustratorCS6Portable</p><p>2014-08-28 16:39 - 2014-08-28 16:39 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dispositivos Bluetooth</p><p>2014-08-28 07:58 - 2014-08-28 08:13 - 00000000 ____D () C:\Users\Gianca\Desktop\prog. ventas</p><p>2014-08-27 18:33 - 2014-08-22 21:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll</p><p>2014-08-27 18:33 - 2014-08-22 20:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll</p><p>2014-08-27 18:33 - 2014-08-22 19:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys</p><p>2014-08-13 23:42 - 2014-06-30 17:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll</p><p>2014-08-13 23:42 - 2014-06-30 17:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll</p><p>2014-08-13 23:42 - 2014-06-06 01:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe</p><p>2014-08-13 23:42 - 2014-06-06 01:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe</p><p>2014-08-13 23:42 - 2014-03-09 16:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe</p><p>2014-08-13 23:42 - 2014-03-09 16:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll</p><p>2014-08-13 23:42 - 2014-03-09 16:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe</p><p>2014-08-13 23:42 - 2014-03-09 16:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll</p><p>2014-08-13 15:33 - 2014-07-15 22:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll</p><p>2014-08-13 15:33 - 2014-07-15 21:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll</p><p>2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL</p><p>2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL</p><p>2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL</p><p>2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL</p><p>2014-08-13 15:33 - 2014-07-08 21:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL</p><p>2014-08-13 15:33 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL</p><p>2014-08-13 15:33 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL</p><p>2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL</p><p>2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL</p><p>2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL</p><p>2014-08-13 15:33 - 2014-07-08 17:38 - 00419992 _____ () C:\Windows\system32\locale.nls</p><p>2014-08-13 15:33 - 2014-07-08 17:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls</p><p>2014-08-13 15:32 - 2014-06-24 21:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll</p><p>2014-08-13 15:32 - 2014-06-24 20:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll</p><p>2014-08-13 15:32 - 2014-06-15 21:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys</p><p>2014-08-13 15:32 - 2014-06-03 05:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll</p><p>2014-08-13 15:32 - 2014-06-03 05:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll</p><p>2014-08-13 15:32 - 2014-06-03 05:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll</p><p>2014-08-13 15:32 - 2014-06-03 05:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe</p><p>2014-08-13 15:32 - 2014-06-03 04:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll</p><p>2014-08-13 15:32 - 2014-06-03 04:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll</p><p>2014-08-13 15:32 - 2014-06-03 04:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll</p><p>2014-08-13 15:31 - 2014-07-13 21:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll</p><p>2014-08-13 15:31 - 2014-07-13 20:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll</p><p></p><p>==================== One Month Modified Files and Folders =======</p><p></p><p>(If an entry is included in the fixlist, the file\folder will be moved.)</p><p></p><p>2014-09-12 20:13 - 2014-09-12 20:10 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Gianca\Downloads\mbam-setup-2.0.2.1012.exe</p><p>2014-09-12 20:12 - 2014-09-10 22:19 - 00016407 _____ () C:\Users\Gianca\Downloads\FRST.txt</p><p>2014-09-12 20:12 - 2014-09-10 22:19 - 00000000 ____D () C:\FRST</p><p>2014-09-12 20:01 - 2014-06-28 17:56 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job</p><p>2014-09-12 20:00 - 2014-07-02 16:45 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Skype</p><p>2014-09-12 19:14 - 2014-07-01 18:58 - 00000838 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job</p><p>2014-09-12 19:00 - 2009-07-14 04:31 - 00747970 _____ () C:\Windows\system32\perfh00A.dat</p><p>2014-09-12 19:00 - 2009-07-14 04:31 - 00159410 _____ () C:\Windows\system32\perfc00A.dat</p><p>2014-09-12 19:00 - 2009-07-14 00:13 - 01678218 _____ () C:\Windows\system32\PerfStringBackup.INI</p><p>2014-09-12 18:57 - 2009-07-13 23:51 - 00038007 _____ () C:\Windows\setupact.log</p><p>2014-09-12 18:01 - 2014-06-28 17:56 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job</p><p>2014-09-12 16:02 - 2014-06-27 10:34 - 01171299 _____ () C:\Windows\WindowsUpdate.log</p><p>2014-09-12 15:14 - 2014-09-12 15:14 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe</p><p>2014-09-12 15:14 - 2014-07-01 18:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe</p><p>2014-09-12 15:14 - 2014-07-01 18:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl</p><p>2014-09-12 15:14 - 2014-07-01 18:58 - 00003776 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater</p><p>2014-09-12 14:09 - 2009-07-13 23:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0</p><p>2014-09-12 14:09 - 2009-07-13 23:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0</p><p>2014-09-12 13:56 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT</p><p>2014-09-11 22:04 - 2014-09-09 00:08 - 00000000 ____D () C:\Users\Gianca\Desktop\verdesoto</p><p>2014-09-11 22:03 - 2014-07-18 14:12 - 00000000 ____D () C:\Users\Gianca\Desktop\Deberes</p><p>2014-09-11 13:49 - 2009-07-14 00:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD</p><p>2014-09-11 12:15 - 2014-09-09 00:08 - 00000000 ____D () C:\Users\Gianca\Desktop\logistica</p><p>2014-09-11 00:40 - 2014-06-29 20:07 - 00000000 ____D () C:\ProgramData\Microsoft Help</p><p>2014-09-11 00:39 - 2014-06-28 09:39 - 01652804 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI</p><p>2014-09-11 00:38 - 2014-06-28 13:21 - 00001912 _____ () C:\Windows\epplauncher.mif</p><p>2014-09-11 00:38 - 2014-06-28 13:19 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk</p><p>2014-09-11 00:38 - 2014-06-28 13:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client</p><p>2014-09-11 00:38 - 2014-06-28 13:18 - 00000000 ____D () C:\Program Files\Microsoft Security Client</p><p>2014-09-11 00:37 - 2014-06-28 12:02 - 00000000 ____D () C:\Windows\system32\MRT</p><p>2014-09-11 00:29 - 2014-06-28 12:02 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe</p><p>2014-09-11 00:28 - 2014-06-29 13:02 - 00000000 ___SD () C:\Windows\system32\CompatTel</p><p>2014-09-10 22:21 - 2014-09-10 22:21 - 00033813 _____ () C:\Users\Gianca\Downloads\Addition.txt</p><p>2014-09-10 22:18 - 2014-09-10 22:18 - 02105856 _____ (Farbar) C:\Users\Gianca\Downloads\FRST64.exe</p><p>2014-09-10 22:15 - 2014-06-28 14:29 - 00109720 _____ () C:\Windows\PFRO.log</p><p>2014-09-10 22:14 - 2014-09-10 22:11 - 00000000 ____D () C:\AdwCleaner</p><p>2014-09-10 22:14 - 2014-07-01 18:52 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk</p><p>2014-09-10 22:14 - 2014-06-28 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome</p><p>2014-09-10 22:14 - 2014-06-27 10:40 - 00000975 _____ () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk</p><p>2014-09-10 22:02 - 2014-09-10 21:59 - 01370467 _____ () C:\Users\Gianca\Downloads\adwcleaner_3.309.exe</p><p>2014-09-10 21:52 - 2014-09-08 22:46 - 00000000 ____D () C:\ProgramData\cf4b54494e6af06d</p><p>2014-09-10 21:50 - 2014-09-08 22:46 - 00000418 __RSH () C:\ProgramData\ntuser.pol</p><p>2014-09-10 21:14 - 2014-09-08 22:47 - 00000000 ____D () C:\ProgramData\YoutuebeAdBlockkee</p><p>2014-09-10 21:13 - 2014-09-08 22:47 - 00000000 ____D () C:\Program Files (x86)\YoutuebeAdBlockkee</p><p>2014-09-10 21:10 - 2014-09-08 22:47 - 00000000 ____D () C:\ProgramData\GosaVEnow</p><p>2014-09-10 21:08 - 2014-09-08 22:47 - 00000000 ____D () C:\Program Files (x86)\GosaVEnow</p><p>2014-09-10 11:59 - 2014-09-10 11:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf</p><p>2014-09-09 00:52 - 2014-09-09 00:52 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Adobe</p><p>2014-09-09 00:24 - 2014-06-28 09:33 - 00109296 _____ () C:\Users\Gianca\AppData\Local\GDIPFONTCACHEV1.DAT</p><p>2014-09-09 00:10 - 2014-09-08 23:14 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe</p><p>2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Thinstall</p><p>2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Thinstall</p><p>2014-09-09 00:09 - 2014-09-08 23:14 - 00000000 ____D () C:\ProgramData\Adobe</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Comodo</p><p>2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador</p><p>2014-09-08 22:46 - 2014-06-28 17:56 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Google</p><p>2014-09-08 22:46 - 2014-06-28 17:56 - 00000000 ____D () C:\Program Files (x86)\Google</p><p>2014-09-08 22:46 - 2009-07-13 22:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy</p><p>2014-09-08 22:46 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy</p><p>2014-09-08 15:47 - 2014-09-08 15:42 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe-BackupByIllustratorCS6Portable</p><p>2014-09-08 15:46 - 2014-09-08 15:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk</p><p>2014-09-08 15:46 - 2014-09-08 15:46 - 00000000 ____D () C:\Program Files (x86)\Adobe</p><p>2014-09-07 21:30 - 2014-08-05 15:15 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Tera_Awesomium</p><p>2014-09-04 21:10 - 2014-09-10 19:40 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll</p><p>2014-09-04 21:05 - 2014-09-10 19:40 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll</p><p>2014-09-04 16:06 - 2009-07-14 00:08 - 00032618 _____ () C:\Windows\Tasks\SCHEDLGU.TXT</p><p>2014-08-28 17:04 - 2014-08-05 12:00 - 00000000 ____D () C:\ProgramData\HappyCloud</p><p>2014-08-28 16:39 - 2014-08-28 16:39 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dispositivos Bluetooth</p><p>2014-08-28 08:13 - 2014-08-28 07:58 - 00000000 ____D () C:\Users\Gianca\Desktop\prog. ventas</p><p>2014-08-27 20:41 - 2009-07-13 23:45 - 00408952 _____ () C:\Windows\system32\FNTCACHE.DAT</p><p>2014-08-22 21:07 - 2014-08-27 18:33 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll</p><p>2014-08-22 20:45 - 2014-08-27 18:33 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll</p><p>2014-08-22 19:59 - 2014-08-27 18:33 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys</p><p>2014-08-21 16:12 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\rescache</p><p>2014-08-19 13:05 - 2014-09-11 00:40 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll</p><p>2014-08-19 12:39 - 2014-09-11 00:40 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll</p><p>2014-08-18 18:01 - 2014-09-11 00:40 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll</p><p>2014-08-18 17:29 - 2014-09-11 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb</p><p>2014-08-18 17:29 - 2014-09-11 00:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll</p><p>2014-08-18 17:26 - 2014-09-11 00:40 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll</p><p>2014-08-18 17:20 - 2014-09-11 00:40 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll</p><p>2014-08-18 17:19 - 2014-09-11 00:40 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll</p><p>2014-08-18 17:15 - 2014-09-11 00:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll</p><p>2014-08-18 17:15 - 2014-09-11 00:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll</p><p>2014-08-18 17:14 - 2014-09-11 00:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll</p><p>2014-08-18 17:14 - 2014-09-11 00:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll</p><p>2014-08-18 17:08 - 2014-09-11 00:40 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll</p><p>2014-08-18 17:08 - 2014-09-11 00:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll</p><p>2014-08-18 17:08 - 2014-09-11 00:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll</p><p>2014-08-18 17:05 - 2014-09-11 00:40 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll</p><p>2014-08-18 17:03 - 2014-09-11 00:40 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll</p><p>2014-08-18 17:03 - 2014-09-11 00:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe</p><p>2014-08-18 17:03 - 2014-09-11 00:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe</p><p>2014-08-18 16:57 - 2014-09-11 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb</p><p>2014-08-18 16:56 - 2014-09-11 00:40 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe</p><p>2014-08-18 16:51 - 2014-09-11 00:40 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll</p><p>2014-08-18 16:46 - 2014-09-11 00:40 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll</p><p>2014-08-18 16:45 - 2014-09-11 00:40 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll</p><p>2014-08-18 16:45 - 2014-09-11 00:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll</p><p>2014-08-18 16:44 - 2014-09-11 00:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll</p><p>2014-08-18 16:44 - 2014-09-11 00:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll</p><p>2014-08-18 16:42 - 2014-09-11 00:40 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll</p><p>2014-08-18 16:40 - 2014-09-11 00:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll</p><p>2014-08-18 16:39 - 2014-09-11 00:40 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll</p><p>2014-08-18 16:39 - 2014-09-11 00:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll</p><p>2014-08-18 16:39 - 2014-09-11 00:40 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll</p><p>2014-08-18 16:38 - 2014-09-11 00:40 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll</p><p>2014-08-18 16:37 - 2014-09-11 00:40 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll</p><p>2014-08-18 16:36 - 2014-09-11 00:40 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe</p><p>2014-08-18 16:35 - 2014-09-11 00:40 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll</p><p>2014-08-18 16:27 - 2014-09-11 00:40 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll</p><p>2014-08-18 16:25 - 2014-09-11 00:40 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll</p><p>2014-08-18 16:25 - 2014-09-11 00:40 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe</p><p>2014-08-18 16:23 - 2014-09-11 00:40 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl</p><p>2014-08-18 16:23 - 2014-09-11 00:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll</p><p>2014-08-18 16:22 - 2014-09-11 00:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll</p><p>2014-08-18 16:19 - 2014-09-11 00:40 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll</p><p>2014-08-18 16:17 - 2014-09-11 00:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll</p><p>2014-08-18 16:17 - 2014-09-11 00:40 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll</p><p>2014-08-18 16:16 - 2014-09-11 00:40 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll</p><p>2014-08-18 16:15 - 2014-09-11 00:40 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll</p><p>2014-08-18 16:15 - 2014-09-11 00:40 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll</p><p>2014-08-18 16:09 - 2014-09-11 00:40 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll</p><p>2014-08-18 16:08 - 2014-09-11 00:40 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl</p><p>2014-08-18 16:07 - 2014-09-11 00:40 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll</p><p>2014-08-18 15:55 - 2014-09-11 00:40 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll</p><p>2014-08-18 15:46 - 2014-09-11 00:40 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll</p><p>2014-08-18 15:38 - 2014-09-11 00:40 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll</p><p>2014-08-18 15:38 - 2014-09-11 00:40 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll</p><p>2014-08-18 15:36 - 2014-09-11 00:40 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll</p><p>2014-08-14 19:58 - 2014-07-02 16:45 - 00000000 ____D () C:\ProgramData\Skype</p><p>2014-08-14 13:57 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\PolicyDefinitions</p><p></p><p>Some content of TEMP:</p><p>====================</p><p>C:\Users\Gianca\AppData\Local\Temp\HiPatchSelfUpdateWindow.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\HiRezLauncherControls.dll</p><p>C:\Users\Gianca\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\LiveSupport_setup.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\optprosetup.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\Quarantine.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\s4i0.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\sSetup-se.exe</p><p>C:\Users\Gianca\AppData\Local\Temp\swt-win32-3349.dll</p><p></p><p></p><p>==================== Bamital & volsnap Check =================</p><p></p><p>(There is no automatic fix for files that do not pass verification.)</p><p></p><p>C:\Windows\System32\winlogon.exe => File is digitally signed</p><p>C:\Windows\System32\wininit.exe => File is digitally signed</p><p>C:\Windows\SysWOW64\wininit.exe => File is digitally signed</p><p>C:\Windows\explorer.exe => File is digitally signed</p><p>C:\Windows\SysWOW64\explorer.exe => File is digitally signed</p><p>C:\Windows\System32\svchost.exe => File is digitally signed</p><p>C:\Windows\SysWOW64\svchost.exe => File is digitally signed</p><p>C:\Windows\System32\services.exe => File is digitally signed</p><p>C:\Windows\System32\User32.dll => File is digitally signed</p><p>C:\Windows\SysWOW64\User32.dll => File is digitally signed</p><p>C:\Windows\System32\userinit.exe => File is digitally signed</p><p>C:\Windows\SysWOW64\userinit.exe => File is digitally signed</p><p>C:\Windows\System32\rpcss.dll => File is digitally signed</p><p>C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed</p><p></p><p></p><p>LastRegBack: 2014-09-11 21:53</p><p></p><p>==================== End Of Log ============================</p><p>This is what i got from the application.</p><p></p><p>And the additional log is this:</p><p></p><p></p><p>Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-09-2014</p><p>Ran by Gianca at 2014-09-10 22:21:03</p><p>Running from C:\Users\Gianca\Downloads</p><p>Boot Mode: Normal</p><p>==========================================================</p><p></p><p></p><p>==================== Security Center ========================</p><p></p><p>(If an entry is included in the fixlist, it will be removed.)</p><p></p><p>AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}</p><p>AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}</p><p>AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}</p><p></p><p>==================== Installed Programs ======================</p><p></p><p>(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)</p><p></p><p>Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)</p><p>Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)</p><p>Adobe Reader XI (11.0.08) - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)</p><p>Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden</p><p>Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden</p><p>Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden</p><p>Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{132D27B8-C656-44BD-8C16-73C54EA8A85F}) (Version: - Microsoft)</p><p>Dell System Detect (HKCU\...\9204f5692a8faf3b) (Version: 5.8.1.1 - Dell)</p><p>Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated)</p><p>DW WLAN Card Utility (HKLM\...\DW WLAN Card Utility) (Version: 6.20.55.58 - Dell Inc.)</p><p>Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.103 - Google Inc.)</p><p>Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden</p><p>Happy Cloud Client (HKCU\...\HappyCloud) (Version: 4.54 - Happy Cloud, Inc.)</p><p>Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)</p><p>Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)</p><p>Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.6.245 - Intel Corporation)</p><p>Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)</p><p>Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden</p><p>League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)</p><p>League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden</p><p>Magicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North)</p><p>Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)</p><p>Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden</p><p>Microsoft Office Access MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Excel MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Groove MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office InfoPath MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office OneNote MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Outlook MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office PowerPoint MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)</p><p>Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (Basque) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (Catalan) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (Galician) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (Portuguese (Brazil)) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Proofing (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Publisher MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Shared 64-bit MUI (Spanish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Shared MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Office Word MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden</p><p>Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden</p><p>Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)</p><p>Monitor de la tecnología Intel® Turbo Boost 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel)</p><p>Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla)</p><p>Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)</p><p>My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.)</p><p>NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)</p><p>Paquete de controladores de Windows - Broadcom (BcmVWL) Net (10/21/2011 6.20.55.1) (HKLM\...\D3D5243E35F0E912D4EBC814E30F950D23D4C15B) (Version: 10/21/2011 6.20.55.1 - Broadcom)</p><p>Portable Photoshop CS5 12 (HKLM-x32\...\Portable Photoshop CS5 12) (Version: - )</p><p>Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.70.314.2013 - Realtek)</p><p>Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7023 - Realtek Semiconductor Corp.)</p><p>Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.39034 - Realtek Semiconductor Corp.)</p><p>S4League (HKLM-x32\...\S4League_is1) (Version: S4League - yuisy)</p><p>Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)</p><p>Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden</p><p>Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)</p><p>Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.)</p><p>Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2298.3 - Hi-Rez Studios)</p><p>Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)</p><p>TERA (HKCU\...\teraenmasse) (Version: - )</p><p>Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft)</p><p>Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version: - Microsoft)</p><p>Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)</p><p>Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)</p><p>Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft)</p><p>Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUSR_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft)</p><p>Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{794A0574-4E2F-4D58-B2A0-D7460ACDC85C}) (Version: - Microsoft)</p><p>Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)</p><p>Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)</p><p>Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{A57A9AE3-09A9-44A0-AA78-458C71DA6FDE}) (Version: - Microsoft)</p><p>Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft)</p><p>Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{837C1EAC-6A89-44A0-8C45-E655AAFD8CE1}) (Version: - Microsoft)</p><p>Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft)</p><p>Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)</p><p>Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)</p><p>Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft)</p><p>Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft)</p><p>Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version: - Microsoft)</p><p>WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.3500 - Broadcom Corporation)</p><p>WinRAR 5.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH)</p><p></p><p>==================== Custom CLSID (selected items): ==========================</p><p></p><p>(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)</p><p></p><p>CustomCLSID: HKU\S-1-5-21-2977411719-851333777-3290948327-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)</p><p></p><p>==================== Restore Points =========================</p><p></p><p>25-08-2014 02:16:15 Windows Update</p><p>28-08-2014 01:38:04 Windows Update</p><p>31-08-2014 15:09:35 Windows Update</p><p>03-09-2014 19:39:51 Windows Update</p><p>07-09-2014 21:59:32 Windows Update</p><p>11-09-2014 00:39:44 Windows Update</p><p></p><p>==================== Hosts content: ==========================</p><p></p><p>(If needed Hosts: directive could be included in the fixlist to reset Hosts.)</p><p></p><p>2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts</p><p></p><p>==================== Scheduled Tasks (whitelisted) =============</p><p></p><p>(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)</p><p></p><p>Task: {01D90D66-5B9B-4080-B831-DD35D239E961} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe</p><p>Task: {3C0052CB-3787-41EA-A1F8-82D229E2E4FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe</p><p>Task: {8864547A-9AC1-4753-8B80-17610133F904} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-06] (Adobe Systems Incorporated)</p><p>Task: {BC5EEA19-D1F5-4A36-9439-4031E465D877} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-10] (PC-Doctor, Inc.)</p><p>Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe</p><p>Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe</p><p>Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe</p><p></p><p>==================== Loaded Modules (whitelisted) =============</p><p></p><p>2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF</p><p>2012-05-30 13:15 - 2012-05-30 13:15 - 00404008 _____ () C:\Program Files\Intel\TurboBoost\es\SignalIslandUi.resources.dll</p><p>2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF</p><p>2014-09-03 21:03 - 2014-08-29 21:49 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\libglesv2.dll</p><p>2014-09-03 21:03 - 2014-08-29 21:49 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\libegl.dll</p><p>2014-09-03 21:03 - 2014-08-29 21:49 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\pdf.dll</p><p>2014-09-03 21:03 - 2014-08-29 21:49 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\ppGoogleNaClPluginChrome.dll</p><p>2014-09-03 21:03 - 2014-08-29 21:49 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\ffmpegsumo.dll</p><p></p><p>==================== Alternate Data Streams (whitelisted) =========</p><p></p><p>(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)</p><p></p><p></p><p>==================== Safe Mode (whitelisted) ===================</p><p></p><p>(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)</p><p></p><p></p><p>==================== EXE Association (whitelisted) =============</p><p></p><p>(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)</p><p></p><p></p><p>==================== MSCONFIG/TASK MANAGER disabled items =========</p><p></p><p>(Currently there is no automatic fix for this section.)</p><p></p><p></p><p>==================== Faulty Device Manager Devices =============</p><p></p><p></p><p>==================== Event log errors: =========================</p><p></p><p>Application errors:</p><p>==================</p><p>Error: (09/09/2014 00:50:50 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: Illustrator.exe, versión: 16.0.2.682, marca de tiempo: 0x5056bfb8</p><p>Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000</p><p>Código de excepción: 0xc0000005</p><p>Desplazamiento de errores: 0x00000000</p><p>Id. del proceso con errores: 0x100c</p><p>Hora de inicio de la aplicación con errores: 0xIllustrator.exe0</p><p>Ruta de acceso de la aplicación con errores: Illustrator.exe1</p><p>Ruta de acceso del módulo con errores: Illustrator.exe2</p><p>Id. del informe: Illustrator.exe3</p><p></p><p>Error: (09/09/2014 00:10:57 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6</p><p>Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7</p><p>Código de excepción: 0xc0000005</p><p>Desplazamiento de errores: 0x0002dfe4</p><p>Id. del proceso con errores: 0x4a0</p><p>Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0</p><p>Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1</p><p>Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2</p><p>Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3</p><p></p><p>Error: (09/09/2014 00:10:39 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6</p><p>Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7</p><p>Código de excepción: 0xc0000005</p><p>Desplazamiento de errores: 0x0002dfe4</p><p>Id. del proceso con errores: 0xa38</p><p>Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0</p><p>Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1</p><p>Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2</p><p>Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3</p><p></p><p>Error: (09/09/2014 00:10:17 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6</p><p>Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7</p><p>Código de excepción: 0xc0000374</p><p>Desplazamiento de errores: 0x000ce753</p><p>Id. del proceso con errores: 0x330</p><p>Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0</p><p>Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1</p><p>Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2</p><p>Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3</p><p></p><p>Error: (08/24/2014 10:11:12 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: League of Legends.exe, versión: 4.14.0.362, marca de tiempo: 0x53f3e75c</p><p>Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000</p><p>Código de excepción: 0xc0000005</p><p>Desplazamiento de errores: 0xd28bb829</p><p>Id. del proceso con errores: 0x580</p><p>Hora de inicio de la aplicación con errores: 0xLeague of Legends.exe0</p><p>Ruta de acceso de la aplicación con errores: League of Legends.exe1</p><p>Ruta de acceso del módulo con errores: League of Legends.exe2</p><p>Id. del informe: League of Legends.exe3</p><p></p><p>Error: (08/23/2014 04:03:50 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: El programa TERA-Launcher.exe, versión 3.5.3.2, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.</p><p></p><p>Identificador de proceso: 298</p><p></p><p>Hora de inicio: 01cfbf0f4bace953</p><p></p><p>Hora de finalización: 4</p><p></p><p>Ruta de acceso de la aplicación: E:\HappyCloud\Cache\TERA\TERA-Launcher.exe</p><p></p><p>Identificador de informe: f267e8a6-2b08-11e4-b60b-9c2a70d5e8ea</p><p></p><p>Error: (08/15/2014 10:05:16 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: El programa rads_user_kernel.exe, versión 0.0.0.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.</p><p></p><p>Identificador de proceso: 1574</p><p></p><p>Hora de inicio: 01cfb8fee0c6441e</p><p></p><p>Hora de finalización: 2</p><p></p><p>Ruta de acceso de la aplicación: E:\League of Legends\RADS\system\rads_user_kernel.exe</p><p></p><p>Identificador de informe: 2430600d-24f2-11e4-8d7f-9c2a70d5e8ea</p><p></p><p>Error: (08/15/2014 09:11:41 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: El programa rads_user_kernel.exe, versión 0.0.0.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades.</p><p></p><p>Identificador de proceso: 20c</p><p></p><p>Hora de inicio: 01cfb8f7533ed0c4</p><p></p><p>Hora de finalización: 1</p><p></p><p>Ruta de acceso de la aplicación: E:\League of Legends\RADS\system\rads_user_kernel.exe</p><p></p><p>Identificador de informe: a6be224c-24ea-11e4-8d7f-9c2a70d5e8ea</p><p></p><p>Error: (08/09/2014 04:02:17 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: TERA-Launcher.exe, versión: 3.5.3.2, marca de tiempo: 0x5236e244</p><p>Nombre del módulo con errores: libcef.dll, versión: 1.1248.785.0, marca de tiempo: 0x515e1207</p><p>Código de excepción: 0x80000003</p><p>Desplazamiento de errores: 0x004a14a0</p><p>Id. del proceso con errores: 0xe88</p><p>Hora de inicio de la aplicación con errores: 0xTERA-Launcher.exe0</p><p>Ruta de acceso de la aplicación con errores: TERA-Launcher.exe1</p><p>Ruta de acceso del módulo con errores: TERA-Launcher.exe2</p><p>Id. del informe: TERA-Launcher.exe3</p><p></p><p>Error: (08/07/2014 07:02:03 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Nombre de la aplicación con errores: LolClient.exe, versión: 0.0.0.0, marca de tiempo: 0x515663e0</p><p>Nombre del módulo con errores: Adobe AIR.dll, versión: 3.7.0.1530, marca de tiempo: 0x5156646c</p><p>Código de excepción: 0xc0000005</p><p>Desplazamiento de errores: 0x0006dd76</p><p>Id. del proceso con errores: 0x7e4</p><p>Hora de inicio de la aplicación con errores: 0xLolClient.exe0</p><p>Ruta de acceso de la aplicación con errores: LolClient.exe1</p><p>Ruta de acceso del módulo con errores: LolClient.exe2</p><p>Id. del informe: LolClient.exe3</p><p></p><p></p><p>System errors:</p><p>=============</p><p>Error: (09/10/2014 10:18:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 09:53:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 09:17:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 09:12:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 07:16:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 00:09:36 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )</p><p>Description: %NT AUTHORITY60 has encountered an error trying to update signatures.</p><p></p><p> New Signature Version: </p><p></p><p> Previous Signature Version: 1.183.1996.0</p><p></p><p> Update Source: %NT AUTHORITY59</p><p></p><p> Update Stage: 4.5.0216.00</p><p></p><p> Source Path: 4.5.0216.01</p><p></p><p> Signature Type: %NT AUTHORITY602</p><p></p><p> Update Type: %NT AUTHORITY604</p><p></p><p> User: NT AUTHORITY\SYSTEM</p><p></p><p> Current Engine Version: %NT AUTHORITY605</p><p></p><p> Previous Engine Version: %NT AUTHORITY606</p><p></p><p> Error code: %NT AUTHORITY607</p><p></p><p> Error description: %NT AUTHORITY608</p><p></p><p>Error: (09/10/2014 00:01:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (09/10/2014 09:37:35 AM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )</p><p>Description: %NT AUTHORITY60 has encountered an error trying to update signatures.</p><p></p><p> New Signature Version: </p><p></p><p> Previous Signature Version: 1.183.1996.0</p><p></p><p> Update Source: %NT AUTHORITY59</p><p></p><p> Update Stage: 4.5.0216.00</p><p></p><p> Source Path: 4.5.0216.01</p><p></p><p> Signature Type: %NT AUTHORITY602</p><p></p><p> Update Type: %NT AUTHORITY604</p><p></p><p> User: NT AUTHORITY\SYSTEM</p><p></p><p> Current Engine Version: %NT AUTHORITY605</p><p></p><p> Previous Engine Version: %NT AUTHORITY606</p><p></p><p> Error code: %NT AUTHORITY607</p><p></p><p> Error description: %NT AUTHORITY608</p><p></p><p>Error: (09/10/2014 09:29:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: </p><p>%%2</p><p></p><p>Error: (08/26/2014 10:11:57 PM) (Source: Disk) (EventID: 11) (User: )</p><p>Description: El controlador detectó un error de controladora en \Device\Harddisk1\DR2.</p><p></p><p></p><p>Microsoft Office Sessions:</p><p>=========================</p><p>Error: (09/09/2014 00:50:50 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Illustrator.exe16.0.2.6825056bfb8unknown0.0.0.000000000c000000500000000100c01cfcbe49f11d130G:\Illustrator\IllustratorPortable\App\IllustratorCS6\Support Files\Contents\Windows\Illustrator.exeunknown402bd7a8-37e5-11e4-a23e-9c2a70d5e8ea</p><p></p><p>Error: (09/09/2014 00:10:57 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c00000050002dfe44a001cfcbec6f7326baC:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.394\PS- CS5 -Portable - <a href="http://www.therebels.biz" target="_blank">www.therebels.biz</a> by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dllae26fbee-37df-11e4-a23e-9c2a70d5e8ea</p><p></p><p>Error: (09/09/2014 00:10:39 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c00000050002dfe4a3801cfcbec64449760C:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.234\PS- CS5 -Portable - <a href="http://www.therebels.biz" target="_blank">www.therebels.biz</a> by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dlla30230b8-37df-11e4-a23e-9c2a70d5e8ea</p><p></p><p>Error: (09/09/2014 00:10:17 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c0000374000ce75333001cfcbec3b864ea6C:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.360\PS- CS5 -Portable - <a href="http://www.therebels.biz" target="_blank">www.therebels.biz</a> by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dll95fb5804-37df-11e4-a23e-9c2a70d5e8ea</p><p></p><p>Error: (08/24/2014 10:11:12 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: League of Legends.exe4.14.0.36253f3e75cunknown0.0.0.000000000c0000005d28bb82958001cfc00d07630509E:\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.52\deploy\League of Legends.exeunknown77084885-2c05-11e4-8d7c-9c2a70d5e8ea</p><p></p><p>Error: (08/23/2014 04:03:50 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: TERA-Launcher.exe3.5.3.229801cfbf0f4bace9534E:\HappyCloud\Cache\TERA\TERA-Launcher.exef267e8a6-2b08-11e4-b60b-9c2a70d5e8ea</p><p></p><p>Error: (08/15/2014 10:05:16 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: rads_user_kernel.exe0.0.0.0157401cfb8fee0c6441e2E:\League of Legends\RADS\system\rads_user_kernel.exe2430600d-24f2-11e4-8d7f-9c2a70d5e8ea</p><p></p><p>Error: (08/15/2014 09:11:41 PM) (Source: Application Hang) (EventID: 1002) (User: )</p><p>Description: rads_user_kernel.exe0.0.0.020c01cfb8f7533ed0c41E:\League of Legends\RADS\system\rads_user_kernel.exea6be224c-24ea-11e4-8d7f-9c2a70d5e8ea</p><p></p><p>Error: (08/09/2014 04:02:17 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: TERA-Launcher.exe3.5.3.25236e244libcef.dll1.1248.785.0515e120780000003004a14a0e8801cfb410a04b4099E:\HappyCloud\Cache\TERA\TERA-Launcher.exeE:\HappyCloud\Cache\TERA\libcef.dll716cf476-2008-11e4-a622-9c2a70d5e8ea</p><p></p><p>Error: (08/07/2014 07:02:03 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: LolClient.exe0.0.0.0515663e0Adobe AIR.dll3.7.0.15305156646cc00000050006dd767e401cfb2926a29f62bE:\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.101\deploy\LolClient.exeE:\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.101\deploy\Adobe AIR\Versions\1.0\Adobe AIR.dll39f62e3b-1e8f-11e4-a34c-9c2a70d5e8ea</p></blockquote><p></p>
[QUOTE="gnk10090, post: 260784, member: 27763"] Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-09-2014 Ran by Gianca (administrator) on GIANCA-PC on 12-09-2014 20:11:58 Running from C:\Users\Gianca\Downloads Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Español (España, internacional) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: [url]http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/[/url] Download link for 64-Bit Version: [url]http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/[/url] Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: [url]http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/[/url] /==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Hi-Rez Studios) E:\Hi-Rez Studios\HiPatchService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\Bluetooth Headset Helper.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () E:\League of Legends\RADS\system\rads_user_kernel.exe () E:\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.222\deploy\LoLLauncher.exe () E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe () E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe () E:\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.6\deploy\LoLPatcher.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [7520768 2014-06-28] (Dell Inc.) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [290688 2012-10-24] (Intel Corporation) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" HKU\.DEFAULT\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-06-28] (Microsoft Corporation) HKU\S-1-5-21-2977411719-851333777-3290948327-1000\...\Run: [DellSystemDetect] => C:\Users\Gianca\AppData\Local\Apps\2.0\YQTJN4GZ.C7K\5M57WRNB.6XN\dell..tion_0f612f649c4a10af_0005.0008_a4204ff54ae5d3ac\DellSystemDetect.exe [262720 2014-06-28] (Dell) HKU\S-1-5-21-2977411719-851333777-3290948327-1000\...\MountPoints2: {f4b95cc7-fe0f-11e3-97e2-806e6f6e6963} - D:\setup.exe Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor de la tecnología Intel® Turbo Boost 2.6.lnk ShortcutTarget: Monitor de la tecnología Intel® Turbo Boost 2.6.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [url]http://latam.msn.com/?ocid=iehp[/url] HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x107550CBFB92CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = es-EC StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Gianca\AppData\Roaming\Mozilla\Firefox\Profiles\yma1egvc.default-1410402826328 FF Homepage: Mozilla FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll (The Happy Cloud) FF Extension: Webbiing - C:\Users\Gianca\AppData\Roaming\Mozilla\Firefox\Profiles\yma1egvc.default-1410402826328\Extensions\[email]73@fQ.edu[/email] [2014-09-10] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14] Chrome: ======= CHR HomePage: Default -> CHR StartupUrls: Default -> "hxxp://[url="http://www.duelingnetwork.com/"]www.duelingnetwork.com/[/url]" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (GGosavenow) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahcohldobmjfdbnlodcdhamlaolphfjh [2014-09-08] CHR Extension: (Google Docs) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-28] CHR Extension: (Google Drive) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-28] CHR Extension: (YouTube) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-28] CHR Extension: (Búsqueda de Google) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-28] CHR Extension: (Toradora! Theme) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\iebgbgngpdoigmmjhkclhghgkbakcidm [2014-06-28] CHR Extension: (zate.tv) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\khoncmmfjdkoiamjpnhohoeanaefcdnj [2014-06-28] CHR Extension: (Google Wallet) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-28] CHR Extension: (zate.tv) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohbfcalhonopbkinbhdgdkgbjddgadon [2014-06-28] CHR Extension: (Gmail) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-28] CHR Extension: (GGosavenow) - C:\Users\Gianca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahcohldobmjfdbnlodcdhamlaolphfjh\1.8 [2014-09-08] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [107552 2014-08-04] (EasyAntiCheat Ltd) R2 HiPatchService; E:\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [File not signed] R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2464400 2012-09-07] (Realsil Microelectronics Inc.) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-21] (Intel Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [5232840 2013-11-28] (INCA Internet Co., Ltd.) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6292992 2014-06-28] (Dell Inc.) [File not signed] S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [165688 2014-06-28] (Broadcom Corporation.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) R0 rtcrfilt64; C:\Windows\System32\DRIVERS\rtcrfilt64.sys [19600 2012-09-04] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated) S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-12 20:10 - 2014-09-12 20:13 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Gianca\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-12 15:14 - 2014-09-12 15:14 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-11 00:40 - 2014-08-19 13:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-11 00:40 - 2014-08-19 12:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-11 00:40 - 2014-08-18 18:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-11 00:40 - 2014-08-18 17:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-11 00:40 - 2014-08-18 17:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-11 00:40 - 2014-08-18 17:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-11 00:40 - 2014-08-18 17:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-11 00:40 - 2014-08-18 17:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-11 00:40 - 2014-08-18 17:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-11 00:40 - 2014-08-18 17:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-11 00:40 - 2014-08-18 17:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-11 00:40 - 2014-08-18 17:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-11 00:40 - 2014-08-18 17:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-11 00:40 - 2014-08-18 17:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-11 00:40 - 2014-08-18 17:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-11 00:40 - 2014-08-18 17:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-11 00:40 - 2014-08-18 17:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-11 00:40 - 2014-08-18 17:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-11 00:40 - 2014-08-18 17:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-11 00:40 - 2014-08-18 16:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-11 00:40 - 2014-08-18 16:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-11 00:40 - 2014-08-18 16:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-11 00:40 - 2014-08-18 16:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-11 00:40 - 2014-08-18 16:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-11 00:40 - 2014-08-18 16:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-11 00:40 - 2014-08-18 16:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-11 00:40 - 2014-08-18 16:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-11 00:40 - 2014-08-18 16:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-11 00:40 - 2014-08-18 16:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-11 00:40 - 2014-08-18 16:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-11 00:40 - 2014-08-18 16:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-11 00:40 - 2014-08-18 16:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-11 00:40 - 2014-08-18 16:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-11 00:40 - 2014-08-18 16:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-11 00:40 - 2014-08-18 16:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-11 00:40 - 2014-08-18 16:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-11 00:40 - 2014-08-18 16:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-11 00:40 - 2014-08-18 16:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-11 00:40 - 2014-08-18 16:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-11 00:40 - 2014-08-18 16:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-11 00:40 - 2014-08-18 16:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-11 00:40 - 2014-08-18 16:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-11 00:40 - 2014-08-18 16:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-11 00:40 - 2014-08-18 16:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-11 00:40 - 2014-08-18 16:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-11 00:40 - 2014-08-18 16:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-11 00:40 - 2014-08-18 16:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-11 00:40 - 2014-08-18 16:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-11 00:40 - 2014-08-18 16:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-11 00:40 - 2014-08-18 16:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-11 00:40 - 2014-08-18 16:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-11 00:40 - 2014-08-18 15:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-11 00:40 - 2014-08-18 15:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-11 00:40 - 2014-08-18 15:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-11 00:40 - 2014-08-18 15:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-11 00:40 - 2014-08-18 15:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-11 00:29 - 2014-06-26 21:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-11 00:29 - 2014-06-26 20:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-10 22:21 - 2014-09-10 22:21 - 00033813 _____ () C:\Users\Gianca\Downloads\Addition.txt 2014-09-10 22:19 - 2014-09-12 20:12 - 00000000 ____D () C:\FRST 2014-09-10 22:19 - 2014-09-12 20:11 - 00016407 _____ () C:\Users\Gianca\Downloads\FRST.txt 2014-09-10 22:18 - 2014-09-10 22:18 - 02105856 _____ (Farbar) C:\Users\Gianca\Downloads\FRST64.exe 2014-09-10 22:12 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-09-10 22:11 - 2014-09-10 22:14 - 00000000 ____D () C:\AdwCleaner 2014-09-10 21:59 - 2014-09-10 22:02 - 01370467 _____ () C:\Users\Gianca\Downloads\adwcleaner_3.309.exe 2014-09-10 19:42 - 2014-08-01 06:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-10 19:42 - 2014-08-01 06:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-10 19:42 - 2014-06-23 22:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-10 19:42 - 2014-06-23 21:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 19:41 - 2014-07-06 21:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-10 19:41 - 2014-07-06 21:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-10 19:41 - 2014-07-06 20:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-10 19:41 - 2014-07-06 20:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-10 19:41 - 2014-07-06 20:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-10 19:40 - 2014-09-04 21:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-10 19:40 - 2014-09-04 21:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-10 11:59 - 2014-09-10 11:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-09-09 00:52 - 2014-09-09 00:52 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Adobe 2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Thinstall 2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Thinstall 2014-09-09 00:08 - 2014-09-11 22:04 - 00000000 ____D () C:\Users\Gianca\Desktop\verdesoto 2014-09-09 00:08 - 2014-09-11 12:15 - 00000000 ____D () C:\Users\Gianca\Desktop\logistica 2014-09-08 23:14 - 2014-09-09 00:10 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe 2014-09-08 23:14 - 2014-09-09 00:09 - 00000000 ____D () C:\ProgramData\Adobe 2014-09-08 22:47 - 2014-09-10 21:14 - 00000000 ____D () C:\ProgramData\YoutuebeAdBlockkee 2014-09-08 22:47 - 2014-09-10 21:13 - 00000000 ____D () C:\Program Files (x86)\YoutuebeAdBlockkee 2014-09-08 22:47 - 2014-09-10 21:10 - 00000000 ____D () C:\ProgramData\GosaVEnow 2014-09-08 22:47 - 2014-09-10 21:08 - 00000000 ____D () C:\Program Files (x86)\GosaVEnow 2014-09-08 22:46 - 2014-09-10 21:52 - 00000000 ____D () C:\ProgramData\cf4b54494e6af06d 2014-09-08 22:46 - 2014-09-10 21:50 - 00000418 __RSH () C:\ProgramData\ntuser.pol 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$ 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador 2014-09-08 15:46 - 2014-09-08 15:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-09-08 15:46 - 2014-09-08 15:46 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-09-08 15:42 - 2014-09-08 15:47 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe-BackupByIllustratorCS6Portable 2014-08-28 16:39 - 2014-08-28 16:39 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dispositivos Bluetooth 2014-08-28 07:58 - 2014-08-28 08:13 - 00000000 ____D () C:\Users\Gianca\Desktop\prog. ventas 2014-08-27 18:33 - 2014-08-22 21:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-27 18:33 - 2014-08-22 20:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-27 18:33 - 2014-08-22 19:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-13 23:42 - 2014-06-30 17:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-08-13 23:42 - 2014-06-30 17:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-08-13 23:42 - 2014-06-06 01:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-13 23:42 - 2014-06-06 01:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-08-13 23:42 - 2014-03-09 16:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-08-13 23:42 - 2014-03-09 16:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-08-13 23:42 - 2014-03-09 16:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-08-13 23:42 - 2014-03-09 16:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-08-13 15:33 - 2014-07-15 22:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-08-13 15:33 - 2014-07-15 21:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2014-08-13 15:33 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2014-08-13 15:33 - 2014-07-08 21:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2014-08-13 15:33 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2014-08-13 15:33 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2014-08-13 15:33 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2014-08-13 15:33 - 2014-07-08 17:38 - 00419992 _____ () C:\Windows\system32\locale.nls 2014-08-13 15:33 - 2014-07-08 17:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls 2014-08-13 15:32 - 2014-06-24 21:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-08-13 15:32 - 2014-06-24 20:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-08-13 15:32 - 2014-06-15 21:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-08-13 15:32 - 2014-06-03 05:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-08-13 15:32 - 2014-06-03 05:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-08-13 15:32 - 2014-06-03 05:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-08-13 15:32 - 2014-06-03 05:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-08-13 15:32 - 2014-06-03 04:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-13 15:32 - 2014-06-03 04:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-13 15:32 - 2014-06-03 04:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-13 15:31 - 2014-07-13 21:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-08-13 15:31 - 2014-07-13 20:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-12 20:13 - 2014-09-12 20:10 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Gianca\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-12 20:12 - 2014-09-10 22:19 - 00016407 _____ () C:\Users\Gianca\Downloads\FRST.txt 2014-09-12 20:12 - 2014-09-10 22:19 - 00000000 ____D () C:\FRST 2014-09-12 20:01 - 2014-06-28 17:56 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-12 20:00 - 2014-07-02 16:45 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Skype 2014-09-12 19:14 - 2014-07-01 18:58 - 00000838 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-12 19:00 - 2009-07-14 04:31 - 00747970 _____ () C:\Windows\system32\perfh00A.dat 2014-09-12 19:00 - 2009-07-14 04:31 - 00159410 _____ () C:\Windows\system32\perfc00A.dat 2014-09-12 19:00 - 2009-07-14 00:13 - 01678218 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-12 18:57 - 2009-07-13 23:51 - 00038007 _____ () C:\Windows\setupact.log 2014-09-12 18:01 - 2014-06-28 17:56 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-12 16:02 - 2014-06-27 10:34 - 01171299 _____ () C:\Windows\WindowsUpdate.log 2014-09-12 15:14 - 2014-09-12 15:14 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-12 15:14 - 2014-07-01 18:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-12 15:14 - 2014-07-01 18:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-12 15:14 - 2014-07-01 18:58 - 00003776 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-12 14:09 - 2009-07-13 23:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-12 14:09 - 2009-07-13 23:45 - 00020704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-12 13:56 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-11 22:04 - 2014-09-09 00:08 - 00000000 ____D () C:\Users\Gianca\Desktop\verdesoto 2014-09-11 22:03 - 2014-07-18 14:12 - 00000000 ____D () C:\Users\Gianca\Desktop\Deberes 2014-09-11 13:49 - 2009-07-14 00:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-09-11 12:15 - 2014-09-09 00:08 - 00000000 ____D () C:\Users\Gianca\Desktop\logistica 2014-09-11 00:40 - 2014-06-29 20:07 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-11 00:39 - 2014-06-28 09:39 - 01652804 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-11 00:38 - 2014-06-28 13:21 - 00001912 _____ () C:\Windows\epplauncher.mif 2014-09-11 00:38 - 2014-06-28 13:19 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk 2014-09-11 00:38 - 2014-06-28 13:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client 2014-09-11 00:38 - 2014-06-28 13:18 - 00000000 ____D () C:\Program Files\Microsoft Security Client 2014-09-11 00:37 - 2014-06-28 12:02 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-11 00:29 - 2014-06-28 12:02 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-11 00:28 - 2014-06-29 13:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-10 22:21 - 2014-09-10 22:21 - 00033813 _____ () C:\Users\Gianca\Downloads\Addition.txt 2014-09-10 22:18 - 2014-09-10 22:18 - 02105856 _____ (Farbar) C:\Users\Gianca\Downloads\FRST64.exe 2014-09-10 22:15 - 2014-06-28 14:29 - 00109720 _____ () C:\Windows\PFRO.log 2014-09-10 22:14 - 2014-09-10 22:11 - 00000000 ____D () C:\AdwCleaner 2014-09-10 22:14 - 2014-07-01 18:52 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-10 22:14 - 2014-06-28 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-09-10 22:14 - 2014-06-27 10:40 - 00000975 _____ () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-09-10 22:02 - 2014-09-10 21:59 - 01370467 _____ () C:\Users\Gianca\Downloads\adwcleaner_3.309.exe 2014-09-10 21:52 - 2014-09-08 22:46 - 00000000 ____D () C:\ProgramData\cf4b54494e6af06d 2014-09-10 21:50 - 2014-09-08 22:46 - 00000418 __RSH () C:\ProgramData\ntuser.pol 2014-09-10 21:14 - 2014-09-08 22:47 - 00000000 ____D () C:\ProgramData\YoutuebeAdBlockkee 2014-09-10 21:13 - 2014-09-08 22:47 - 00000000 ____D () C:\Program Files (x86)\YoutuebeAdBlockkee 2014-09-10 21:10 - 2014-09-08 22:47 - 00000000 ____D () C:\ProgramData\GosaVEnow 2014-09-10 21:08 - 2014-09-08 22:47 - 00000000 ____D () C:\Program Files (x86)\GosaVEnow 2014-09-10 11:59 - 2014-09-10 11:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-09-09 00:52 - 2014-09-09 00:52 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Adobe 2014-09-09 00:24 - 2014-06-28 09:33 - 00109296 _____ () C:\Users\Gianca\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-09 00:10 - 2014-09-08 23:14 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe 2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Thinstall 2014-09-09 00:09 - 2014-09-09 00:09 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Thinstall 2014-09-09 00:09 - 2014-09-08 23:14 - 00000000 ____D () C:\ProgramData\Adobe 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Invitado 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\HomeGroupUser$ 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Google 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador\AppData\Local\Comodo 2014-09-08 22:46 - 2014-09-08 22:46 - 00000000 ____D () C:\Users\Administrador 2014-09-08 22:46 - 2014-06-28 17:56 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Google 2014-09-08 22:46 - 2014-06-28 17:56 - 00000000 ____D () C:\Program Files (x86)\Google 2014-09-08 22:46 - 2009-07-13 22:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-09-08 22:46 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy 2014-09-08 15:47 - 2014-09-08 15:42 - 00000000 ____D () C:\Users\Gianca\AppData\Local\Adobe-BackupByIllustratorCS6Portable 2014-09-08 15:46 - 2014-09-08 15:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-09-08 15:46 - 2014-09-08 15:46 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-09-07 21:30 - 2014-08-05 15:15 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Tera_Awesomium 2014-09-04 21:10 - 2014-09-10 19:40 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-04 21:05 - 2014-09-10 19:40 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 16:06 - 2009-07-14 00:08 - 00032618 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-08-28 17:04 - 2014-08-05 12:00 - 00000000 ____D () C:\ProgramData\HappyCloud 2014-08-28 16:39 - 2014-08-28 16:39 - 00000000 ____D () C:\Users\Gianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dispositivos Bluetooth 2014-08-28 08:13 - 2014-08-28 07:58 - 00000000 ____D () C:\Users\Gianca\Desktop\prog. ventas 2014-08-27 20:41 - 2009-07-13 23:45 - 00408952 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-22 21:07 - 2014-08-27 18:33 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-22 20:45 - 2014-08-27 18:33 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-22 19:59 - 2014-08-27 18:33 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-21 16:12 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\rescache 2014-08-19 13:05 - 2014-09-11 00:40 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-19 12:39 - 2014-09-11 00:40 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-18 18:01 - 2014-09-11 00:40 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-18 17:29 - 2014-09-11 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-18 17:29 - 2014-09-11 00:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-18 17:26 - 2014-09-11 00:40 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-18 17:20 - 2014-09-11 00:40 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-18 17:19 - 2014-09-11 00:40 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-18 17:15 - 2014-09-11 00:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-18 17:15 - 2014-09-11 00:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-18 17:14 - 2014-09-11 00:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-18 17:14 - 2014-09-11 00:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-18 17:08 - 2014-09-11 00:40 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-18 17:08 - 2014-09-11 00:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-18 17:08 - 2014-09-11 00:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-18 17:05 - 2014-09-11 00:40 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-18 17:03 - 2014-09-11 00:40 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-18 17:03 - 2014-09-11 00:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-18 17:03 - 2014-09-11 00:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-18 16:57 - 2014-09-11 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-18 16:56 - 2014-09-11 00:40 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-18 16:51 - 2014-09-11 00:40 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-18 16:46 - 2014-09-11 00:40 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-18 16:45 - 2014-09-11 00:40 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-18 16:45 - 2014-09-11 00:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-18 16:44 - 2014-09-11 00:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-18 16:44 - 2014-09-11 00:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-18 16:42 - 2014-09-11 00:40 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-18 16:40 - 2014-09-11 00:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-18 16:39 - 2014-09-11 00:40 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-18 16:39 - 2014-09-11 00:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-18 16:39 - 2014-09-11 00:40 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-18 16:38 - 2014-09-11 00:40 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-18 16:37 - 2014-09-11 00:40 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-18 16:36 - 2014-09-11 00:40 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-18 16:35 - 2014-09-11 00:40 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-18 16:27 - 2014-09-11 00:40 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-18 16:25 - 2014-09-11 00:40 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-18 16:25 - 2014-09-11 00:40 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-18 16:23 - 2014-09-11 00:40 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-18 16:23 - 2014-09-11 00:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-18 16:22 - 2014-09-11 00:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-18 16:19 - 2014-09-11 00:40 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-18 16:17 - 2014-09-11 00:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-18 16:17 - 2014-09-11 00:40 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-18 16:16 - 2014-09-11 00:40 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-18 16:15 - 2014-09-11 00:40 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-18 16:15 - 2014-09-11 00:40 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-18 16:09 - 2014-09-11 00:40 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-18 16:08 - 2014-09-11 00:40 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-18 16:07 - 2014-09-11 00:40 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-18 15:55 - 2014-09-11 00:40 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-18 15:46 - 2014-09-11 00:40 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-18 15:38 - 2014-09-11 00:40 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-18 15:38 - 2014-09-11 00:40 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-18 15:36 - 2014-09-11 00:40 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-14 19:58 - 2014-07-02 16:45 - 00000000 ____D () C:\ProgramData\Skype 2014-08-14 13:57 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\PolicyDefinitions Some content of TEMP: ==================== C:\Users\Gianca\AppData\Local\Temp\HiPatchSelfUpdateWindow.exe C:\Users\Gianca\AppData\Local\Temp\HiRezLauncherControls.dll C:\Users\Gianca\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe C:\Users\Gianca\AppData\Local\Temp\LiveSupport_setup.exe C:\Users\Gianca\AppData\Local\Temp\optprosetup.exe C:\Users\Gianca\AppData\Local\Temp\Quarantine.exe C:\Users\Gianca\AppData\Local\Temp\s4i0.exe C:\Users\Gianca\AppData\Local\Temp\sSetup-se.exe C:\Users\Gianca\AppData\Local\Temp\swt-win32-3349.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-11 21:53 ==================== End Of Log ============================ This is what i got from the application. And the additional log is this: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-09-2014 Ran by Gianca at 2014-09-10 22:21:03 Running from C:\Users\Gianca\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.08) - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{132D27B8-C656-44BD-8C16-73C54EA8A85F}) (Version: - Microsoft) Dell System Detect (HKCU\...\9204f5692a8faf3b) (Version: 5.8.1.1 - Dell) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated) DW WLAN Card Utility (HKLM\...\DW WLAN Card Utility) (Version: 6.20.55.58 - Dell Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Happy Cloud Client (HKCU\...\HappyCloud) (Version: 4.54 - Happy Cloud, Inc.) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.6.245 - Intel Corporation) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Magicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Office Access MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Basque) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Catalan) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Galician) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Portuguese (Brazil)) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (Spanish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Monitor de la tecnología Intel® Turbo Boost 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel) Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Paquete de controladores de Windows - Broadcom (BcmVWL) Net (10/21/2011 6.20.55.1) (HKLM\...\D3D5243E35F0E912D4EBC814E30F950D23D4C15B) (Version: 10/21/2011 6.20.55.1 - Broadcom) Portable Photoshop CS5 12 (HKLM-x32\...\Portable Photoshop CS5 12) (Version: - ) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.70.314.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7023 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.39034 - Realtek Semiconductor Corp.) S4League (HKLM-x32\...\S4League_is1) (Version: S4League - yuisy) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2298.3 - Hi-Rez Studios) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TERA (HKCU\...\teraenmasse) (Version: - ) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUSR_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{794A0574-4E2F-4D58-B2A0-D7460ACDC85C}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{A57A9AE3-09A9-44A0-AA78-458C71DA6FDE}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0C0A-0000-0000000FF1CE}_Office14.PROPLUSR_{837C1EAC-6A89-44A0-8C45-E655AAFD8CE1}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft) Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version: - Microsoft) WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.3500 - Broadcom Corporation) WinRAR 5.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2977411719-851333777-3290948327-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 25-08-2014 02:16:15 Windows Update 28-08-2014 01:38:04 Windows Update 31-08-2014 15:09:35 Windows Update 03-09-2014 19:39:51 Windows Update 07-09-2014 21:59:32 Windows Update 11-09-2014 00:39:44 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {01D90D66-5B9B-4080-B831-DD35D239E961} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {3C0052CB-3787-41EA-A1F8-82D229E2E4FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {8864547A-9AC1-4753-8B80-17610133F904} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-06] (Adobe Systems Incorporated) Task: {BC5EEA19-D1F5-4A36-9439-4031E465D877} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-10] (PC-Doctor, Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2012-05-30 13:15 - 2012-05-30 13:15 - 00404008 _____ () C:\Program Files\Intel\TurboBoost\es\SignalIslandUi.resources.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-09-03 21:03 - 2014-08-29 21:49 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\libglesv2.dll 2014-09-03 21:03 - 2014-08-29 21:49 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\libegl.dll 2014-09-03 21:03 - 2014-08-29 21:49 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\pdf.dll 2014-09-03 21:03 - 2014-08-29 21:49 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\ppGoogleNaClPluginChrome.dll 2014-09-03 21:03 - 2014-08-29 21:49 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.103\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/09/2014 00:50:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: Illustrator.exe, versión: 16.0.2.682, marca de tiempo: 0x5056bfb8 Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x00000000 Id. del proceso con errores: 0x100c Hora de inicio de la aplicación con errores: 0xIllustrator.exe0 Ruta de acceso de la aplicación con errores: Illustrator.exe1 Ruta de acceso del módulo con errores: Illustrator.exe2 Id. del informe: Illustrator.exe3 Error: (09/09/2014 00:10:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6 Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0002dfe4 Id. del proceso con errores: 0x4a0 Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0 Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1 Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2 Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3 Error: (09/09/2014 00:10:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6 Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0002dfe4 Id. del proceso con errores: 0xa38 Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0 Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1 Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2 Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3 Error: (09/09/2014 00:10:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe, versión: 12.0.0.0, marca de tiempo: 0x4bbc56b6 Nombre del módulo con errores: ntdll.dll, versión: 6.1.7601.18247, marca de tiempo: 0x521ea8e7 Código de excepción: 0xc0000374 Desplazamiento de errores: 0x000ce753 Id. del proceso con errores: 0x330 Hora de inicio de la aplicación con errores: 0xAdobe Photoshop CS5 Extended - Portable.exe0 Ruta de acceso de la aplicación con errores: Adobe Photoshop CS5 Extended - Portable.exe1 Ruta de acceso del módulo con errores: Adobe Photoshop CS5 Extended - Portable.exe2 Id. del informe: Adobe Photoshop CS5 Extended - Portable.exe3 Error: (08/24/2014 10:11:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: League of Legends.exe, versión: 4.14.0.362, marca de tiempo: 0x53f3e75c Nombre del módulo con errores: unknown, versión: 0.0.0.0, marca de tiempo: 0x00000000 Código de excepción: 0xc0000005 Desplazamiento de errores: 0xd28bb829 Id. del proceso con errores: 0x580 Hora de inicio de la aplicación con errores: 0xLeague of Legends.exe0 Ruta de acceso de la aplicación con errores: League of Legends.exe1 Ruta de acceso del módulo con errores: League of Legends.exe2 Id. del informe: League of Legends.exe3 Error: (08/23/2014 04:03:50 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa TERA-Launcher.exe, versión 3.5.3.2, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades. Identificador de proceso: 298 Hora de inicio: 01cfbf0f4bace953 Hora de finalización: 4 Ruta de acceso de la aplicación: E:\HappyCloud\Cache\TERA\TERA-Launcher.exe Identificador de informe: f267e8a6-2b08-11e4-b60b-9c2a70d5e8ea Error: (08/15/2014 10:05:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa rads_user_kernel.exe, versión 0.0.0.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades. Identificador de proceso: 1574 Hora de inicio: 01cfb8fee0c6441e Hora de finalización: 2 Ruta de acceso de la aplicación: E:\League of Legends\RADS\system\rads_user_kernel.exe Identificador de informe: 2430600d-24f2-11e4-8d7f-9c2a70d5e8ea Error: (08/15/2014 09:11:41 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: El programa rads_user_kernel.exe, versión 0.0.0.0, dejó de interactuar con Windows y se cerró. Para ver si hay más información disponible acerca del problema, compruebe el historial de problemas en el panel de control Centro de actividades. Identificador de proceso: 20c Hora de inicio: 01cfb8f7533ed0c4 Hora de finalización: 1 Ruta de acceso de la aplicación: E:\League of Legends\RADS\system\rads_user_kernel.exe Identificador de informe: a6be224c-24ea-11e4-8d7f-9c2a70d5e8ea Error: (08/09/2014 04:02:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: TERA-Launcher.exe, versión: 3.5.3.2, marca de tiempo: 0x5236e244 Nombre del módulo con errores: libcef.dll, versión: 1.1248.785.0, marca de tiempo: 0x515e1207 Código de excepción: 0x80000003 Desplazamiento de errores: 0x004a14a0 Id. del proceso con errores: 0xe88 Hora de inicio de la aplicación con errores: 0xTERA-Launcher.exe0 Ruta de acceso de la aplicación con errores: TERA-Launcher.exe1 Ruta de acceso del módulo con errores: TERA-Launcher.exe2 Id. del informe: TERA-Launcher.exe3 Error: (08/07/2014 07:02:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: LolClient.exe, versión: 0.0.0.0, marca de tiempo: 0x515663e0 Nombre del módulo con errores: Adobe AIR.dll, versión: 3.7.0.1530, marca de tiempo: 0x5156646c Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0006dd76 Id. del proceso con errores: 0x7e4 Hora de inicio de la aplicación con errores: 0xLolClient.exe0 Ruta de acceso de la aplicación con errores: LolClient.exe1 Ruta de acceso del módulo con errores: LolClient.exe2 Id. del informe: LolClient.exe3 System errors: ============= Error: (09/10/2014 10:18:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 09:53:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 09:17:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 09:12:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 07:16:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 00:09:36 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: %NT AUTHORITY60 has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.183.1996.0 Update Source: %NT AUTHORITY59 Update Stage: 4.5.0216.00 Source Path: 4.5.0216.01 Signature Type: %NT AUTHORITY602 Update Type: %NT AUTHORITY604 User: NT AUTHORITY\SYSTEM Current Engine Version: %NT AUTHORITY605 Previous Engine Version: %NT AUTHORITY606 Error code: %NT AUTHORITY607 Error description: %NT AUTHORITY608 Error: (09/10/2014 00:01:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (09/10/2014 09:37:35 AM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: %NT AUTHORITY60 has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.183.1996.0 Update Source: %NT AUTHORITY59 Update Stage: 4.5.0216.00 Source Path: 4.5.0216.01 Signature Type: %NT AUTHORITY602 Update Type: %NT AUTHORITY604 User: NT AUTHORITY\SYSTEM Current Engine Version: %NT AUTHORITY605 Previous Engine Version: %NT AUTHORITY606 Error code: %NT AUTHORITY607 Error description: %NT AUTHORITY608 Error: (09/10/2014 09:29:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio Google Update Servicio (gupdate) no pudo iniciarse debido al siguiente error: %%2 Error: (08/26/2014 10:11:57 PM) (Source: Disk) (EventID: 11) (User: ) Description: El controlador detectó un error de controladora en \Device\Harddisk1\DR2. Microsoft Office Sessions: ========================= Error: (09/09/2014 00:50:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Illustrator.exe16.0.2.6825056bfb8unknown0.0.0.000000000c000000500000000100c01cfcbe49f11d130G:\Illustrator\IllustratorPortable\App\IllustratorCS6\Support Files\Contents\Windows\Illustrator.exeunknown402bd7a8-37e5-11e4-a23e-9c2a70d5e8ea Error: (09/09/2014 00:10:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c00000050002dfe44a001cfcbec6f7326baC:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.394\PS- CS5 -Portable - [url="http://www.therebels.biz"]www.therebels.biz[/url] by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dllae26fbee-37df-11e4-a23e-9c2a70d5e8ea Error: (09/09/2014 00:10:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c00000050002dfe4a3801cfcbec64449760C:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.234\PS- CS5 -Portable - [url="http://www.therebels.biz"]www.therebels.biz[/url] by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dlla30230b8-37df-11e4-a23e-9c2a70d5e8ea Error: (09/09/2014 00:10:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Adobe Photoshop CS5 Extended - Portable.exe12.0.0.04bbc56b6ntdll.dll6.1.7601.18247521ea8e7c0000374000ce75333001cfcbec3b864ea6C:\Users\Gianca\AppData\Local\Temp\Rar$EXa0.360\PS- CS5 -Portable - [url="http://www.therebels.biz"]www.therebels.biz[/url] by carlton_br\Adobe Photoshop CS5 Extended - Portable.exeC:\Windows\SysWOW64\ntdll.dll95fb5804-37df-11e4-a23e-9c2a70d5e8ea Error: (08/24/2014 10:11:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: League of Legends.exe4.14.0.36253f3e75cunknown0.0.0.000000000c0000005d28bb82958001cfc00d07630509E:\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.52\deploy\League of Legends.exeunknown77084885-2c05-11e4-8d7c-9c2a70d5e8ea Error: (08/23/2014 04:03:50 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: TERA-Launcher.exe3.5.3.229801cfbf0f4bace9534E:\HappyCloud\Cache\TERA\TERA-Launcher.exef267e8a6-2b08-11e4-b60b-9c2a70d5e8ea Error: (08/15/2014 10:05:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: rads_user_kernel.exe0.0.0.0157401cfb8fee0c6441e2E:\League of Legends\RADS\system\rads_user_kernel.exe2430600d-24f2-11e4-8d7f-9c2a70d5e8ea Error: (08/15/2014 09:11:41 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: rads_user_kernel.exe0.0.0.020c01cfb8f7533ed0c41E:\League of Legends\RADS\system\rads_user_kernel.exea6be224c-24ea-11e4-8d7f-9c2a70d5e8ea Error: (08/09/2014 04:02:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TERA-Launcher.exe3.5.3.25236e244libcef.dll1.1248.785.0515e120780000003004a14a0e8801cfb410a04b4099E:\HappyCloud\Cache\TERA\TERA-Launcher.exeE:\HappyCloud\Cache\TERA\libcef.dll716cf476-2008-11e4-a622-9c2a70d5e8ea Error: (08/07/2014 07:02:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: LolClient.exe0.0.0.0515663e0Adobe AIR.dll3.7.0.15305156646cc00000050006dd767e401cfb2926a29f62bE:\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.101\deploy\LolClient.exeE:\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.101\deploy\Adobe AIR\Versions\1.0\Adobe AIR.dll39f62e3b-1e8f-11e4-a34c-9c2a70d5e8ea [/QUOTE]
Insert quotes…
Verification
Post reply
Top