cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-05-2015 02
Ran by Cliente (administrator) on INTEL-PC on 14-05-2015 20:29:38
Running from C:\Users\Cliente\Downloads
Loaded Profiles: Cliente (Available profiles: Cliente & UpdatusUser & Convidado)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Português (Brasil)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(QNT) C:\Users\Cliente\AppData\Roaming\NetService\netservice.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files\WajaWebEnhance\WajaWebEnhance Internet Enhancer\InternetEnhancerService.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files\Free USB Disk Security\USBSecurity.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-25] (AVAST Software)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [Free USB Security] => C:\Program Files\Free USB Disk Security\USBSecurity.exe [845824 2012-11-25] ()
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [NCUpdateHelper] => C:\Program Files\NCWest\NCLauncher\NCUpdateHelper.exe
HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\...\Run: [ToolwizCareFree] => C:\Program Files\ToolwizCareFree\ToolwizCares.exe [5274328 2015-04-07] (Toolwiz)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2014-08-25] (AVAST Software)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.com
HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKU\S-1-5-21-2148002555-1264172292-1573454602-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2148002555-1264172292-1573454602-1000 -> DefaultScope {9C8BEDD3-E273-437E-A030-693B707D513D} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2148002555-1264172292-1573454602-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL =
SearchScopes: HKU\S-1-5-21-2148002555-1264172292-1573454602-1000 -> {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} URL =
SearchScopes: HKU\S-1-5-21-2148002555-1264172292-1573454602-1000 -> {9C8BEDD3-E273-437E-A030-693B707D513D} URL = https://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-18] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 177.129.104.1 177.129.104.2
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @raidcall.en/RCplugin -> C:\Users\Cliente\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-27] (Raidcall)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-08-25]

Chrome:
=======
CHR HomePage: Default ->
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-08-27]
CHR Extension: (Google Docs) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-27]
CHR Extension: (Google Drive) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-08-27]
CHR Extension: (YouTube) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-08-27]
CHR Extension: (Google Search) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-08-27]
CHR Extension: (Google Sheets) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-08-27]
CHR Extension: (Bookmark Manager) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-21]
CHR Extension: (Avast Online Security) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-08-27]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-20]
CHR Extension: (Google Wallet) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-27]
CHR Extension: (Gmail) - C:\Users\Cliente\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-27]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-25]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-25] (AVAST Software)
R2 NetTcpHandler; C:\Users\Cliente\AppData\Roaming\NetService\netservice.exe [211824 2015-03-20] (QNT)
S3 npggsvc; C:\Windows\system32\GameMon.des [5132656 2013-11-25] (INCA Internet Co., Ltd.)
R2 WajaWebEnhance Service; C:\Program Files\WajaWebEnhance\WajaWebEnhance Internet Enhancer\InternetEnhancerService.exe [691200 2015-05-06] () [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-08-25] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-08-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-08-25] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-08-25] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-11-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-08-25] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-08-25] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-08-25] ()
R3 athur; C:\Windows\System32\DRIVERS\athur.sys [1500160 2010-01-05] (Atheros Communications, Inc.)
R1 BTOWSFF; C:\Windows\system32\Drivers\BTOWSFF.sys [27648 2015-04-07] (Toolwiz.com)
R0 BTOWSVF; C:\Windows\System32\Drivers\BTOWSVF.sys [45952 2015-04-07] (Toolwiz.com)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2014-09-11] (DT Soft Ltd)
R0 KSafeDISK; C:\Windows\System32\Drivers\KSafeDISK.sys [48640 2015-04-07] (Toolwiz.com)
S3 MUCABRASIL; C:\Program Files\MUCABRASIL\AntiCheat32.sys [30368 2015-04-13] (MUCABRASIL)
S3 PciSPorts; C:\Windows\System32\DRIVERS\PciSPorts.sys [115200 2008-12-19] ()
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
S3 XDva419; \??\C:\Windows\system32\XDva419.sys [X]
S3 XDva422; \??\C:\Windows\system32\XDva422.sys [X]
U3 mbr; \??\C:\Users\Cliente\AppData\Local\Temp\mbr.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-14 20:29 - 2015-05-14 20:30 - 00012834 _____ () C:\Users\Cliente\Downloads\FRST.txt
2015-05-14 20:28 - 2015-05-14 20:29 - 00000000 ____D () C:\FRST
2015-05-14 20:28 - 2015-05-14 20:28 - 01145856 _____ (Farbar) C:\Users\Cliente\Downloads\FRST.exe
2015-05-14 18:57 - 2015-05-14 18:57 - 00108914 _____ () C:\Users\Cliente\Desktop\ZHPDiag.txt
2015-05-14 18:12 - 2015-05-14 18:14 - 00004693 _____ () C:\Users\Cliente\Desktop\ZHPCleaner.txt
2015-05-14 17:59 - 2015-05-14 17:59 - 01823744 _____ () C:\Users\Cliente\Downloads\ZHPCleaner.exe
2015-05-14 17:59 - 2015-05-14 17:59 - 00000832 _____ () C:\Users\Cliente\Desktop\ZHPCleaner.lnk
2015-05-14 17:30 - 2015-05-14 17:30 - 01196032 _____ () C:\Users\Cliente\Downloads\CTR.exe
2015-05-14 17:28 - 2015-05-14 17:29 - 01348096 _____ () C:\Users\Cliente\Downloads\SFTGC.exe
2015-05-14 17:06 - 2015-05-14 17:06 - 02721175 _____ (Thisisu) C:\Users\Cliente\Downloads\JRT.exe
2015-05-14 17:02 - 2015-05-14 17:02 - 00001824 _____ () C:\Windows\PFRO.log
2015-05-14 16:50 - 2015-05-14 16:50 - 00000000 ____D () C:\Users\Cliente\AppData\Local\Apps\2.0
2015-05-14 16:01 - 2015-05-14 18:56 - 00000512 _____ () C:\PhysicalDisk0_MBR.bin
2015-05-14 15:58 - 2015-05-14 18:17 - 00000000 ____D () C:\Users\Cliente\Desktop\Relatorios
2015-05-14 15:56 - 2015-05-14 15:56 - 00001897 _____ () C:\Users\Cliente\Desktop\ZHPFix.lnk
2015-05-14 15:56 - 2015-05-14 15:56 - 00001770 _____ () C:\Users\Cliente\Desktop\ZHPDiag.lnk
2015-05-14 15:56 - 2015-05-14 15:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2015-05-14 15:55 - 2015-05-14 18:56 - 00000000 ____D () C:\Program Files\ZHPDiag
2015-05-14 15:08 - 2015-05-14 15:08 - 00000000 ____D () C:\Users\Cliente\Desktop\My Shared Folder
2015-05-14 15:06 - 2015-05-14 15:06 - 00000745 _____ () C:\Users\Cliente\Desktop\PointBlank.lnk
2015-05-14 15:06 - 2015-05-14 15:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PointBlank
2015-05-14 14:55 - 2015-05-14 14:56 - 00269094 _____ (Software Installer ) C:\Users\Cliente\Downloads\superantispyware-free-6-0-1194-32-bits.exe.vl7ud3k.partial
2015-05-14 14:52 - 2015-05-14 14:53 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Cliente\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-14 14:43 - 2015-05-14 14:43 - 00000000 ____D () C:\ongame
2015-05-14 12:47 - 2015-05-14 19:48 - 01373048 _____ () C:\Windows\WindowsUpdate.log
2015-05-14 12:44 - 2015-05-14 18:15 - 00000280 _____ () C:\Windows\setupact.log
2015-05-14 12:44 - 2015-05-14 12:44 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-14 10:45 - 2015-05-14 10:49 - 09106235 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver29.exe
2015-05-14 10:45 - 2015-05-14 10:49 - 06614261 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver32.exe
2015-05-14 10:45 - 2015-05-14 10:48 - 12755664 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver28.exe
2015-05-14 10:45 - 2015-05-14 10:48 - 11597173 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver30.exe
2015-05-14 10:45 - 2015-05-14 10:48 - 07309960 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver31.exe
2015-05-14 10:16 - 2015-05-14 10:21 - 70219874 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver33.exe
2015-05-14 10:09 - 2015-05-14 10:09 - 00292184 _____ (Microsoft Corporation) C:\Users\Cliente\Downloads\dxwebsetup.exe
2015-05-14 09:55 - 2015-05-14 09:56 - 00786500 _____ () C:\Users\Cliente\Downloads\Patch_PointBlank_Ver34.exe
2015-05-14 08:23 - 2015-05-14 08:23 - 00628688 _____ (CMI Limited) C:\Users\Cliente\AppData\Local\nsu9585.tmp
2015-05-14 07:08 - 2015-05-14 15:06 - 00000745 _____ () C:\Users\UpdatusUser\Desktop\PointBlank.lnk
2015-05-14 07:08 - 2015-05-14 15:06 - 00000745 _____ () C:\Users\Convidado\Desktop\PointBlank.lnk
2015-05-14 06:58 - 2015-05-14 18:14 - 00000000 ____D () C:\Program Files\WajaWebEnhance
2015-05-14 06:57 - 2015-05-10 18:44 - 00000000 _____ () C:\Windows\system32\Drivers\etc\hp.bak
2015-05-14 06:56 - 2015-05-14 12:50 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\RunDir
2015-05-14 06:56 - 2015-05-14 06:56 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\NetService
2015-05-14 06:56 - 2015-05-14 06:56 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\03000200-1431597409-0500-0006-000700080009
2015-05-14 06:43 - 2015-05-14 06:43 - 00000000 ___HD () C:\Windows\PIF
2015-05-13 16:08 - 2015-05-13 16:08 - 00000000 ____D () C:\Program Files\NetDragon
2015-05-13 13:00 - 2015-05-13 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2015-05-13 13:00 - 2015-05-13 13:00 - 00000000 ____D () C:\Program Files\NCSOFT
2015-05-13 13:00 - 2015-05-13 13:00 - 00000000 ____D () C:\Program Files\InstallShield Installation Information
2015-05-13 12:59 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2015-05-13 12:59 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2015-05-13 12:59 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2015-05-13 12:59 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2015-05-13 12:59 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-05-13 12:59 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2015-05-13 12:59 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-05-13 12:59 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-05-13 12:59 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2015-05-13 12:59 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2015-05-13 12:59 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2015-05-13 12:59 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2015-05-13 12:59 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2015-05-13 12:59 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2015-05-13 12:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2015-05-13 12:59 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2015-05-13 12:59 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2015-05-13 12:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2015-05-13 12:59 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2015-05-13 12:59 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2015-05-13 12:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2015-05-13 12:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2015-05-13 12:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2015-05-13 12:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2015-05-13 12:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2015-05-13 12:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2015-05-13 12:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2015-05-13 12:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2015-05-13 12:59 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2015-05-13 12:59 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2015-05-13 12:59 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2015-05-13 12:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2015-05-13 12:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2015-05-13 12:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2015-05-13 12:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2015-05-13 12:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2015-05-13 12:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2015-05-13 12:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2015-05-13 12:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2015-05-13 12:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2015-05-13 12:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2015-05-13 12:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2015-05-13 12:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2015-05-13 12:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2015-05-13 12:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2015-05-13 12:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2015-05-13 12:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2015-05-13 12:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2015-05-13 12:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2015-05-13 12:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2015-05-13 12:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2015-05-13 12:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2015-05-13 12:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2015-05-13 12:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2015-05-13 12:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2015-05-13 12:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2015-05-13 12:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2015-05-13 12:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2015-05-13 12:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2015-05-13 12:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2015-05-13 12:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2015-05-13 12:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2015-05-13 12:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2015-05-13 12:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2015-05-13 12:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-05-13 12:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2015-05-13 12:59 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2015-05-13 12:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2015-05-13 12:59 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2015-05-13 12:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2015-05-13 12:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2015-05-13 12:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2015-05-13 12:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2015-05-13 12:59 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2015-05-13 12:59 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2015-05-13 12:59 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2015-05-13 12:59 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2015-05-13 12:59 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2015-05-13 12:59 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2015-05-13 12:59 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2015-05-13 12:59 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2015-05-13 12:59 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2015-05-13 12:59 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2015-05-13 12:59 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-05-13 12:59 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2015-05-13 12:59 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2015-05-13 12:55 - 2015-05-14 10:10 - 00000000 ____D () C:\Windows\system32\directx
2015-05-13 12:55 - 2015-05-14 06:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
2015-05-13 12:55 - 2015-05-13 12:55 - 00000000 ____D () C:\Program Files\NCWest
2015-05-10 18:25 - 2015-05-10 18:25 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-05-04 19:35 - 2015-05-07 10:30 - 00000000 ____D () C:\Users\Todos os Usuários\AppMgr2.72.4772429
2015-05-04 19:35 - 2015-05-07 10:30 - 00000000 ____D () C:\ProgramData\AppMgr2.72.4772429
2015-05-04 18:07 - 2015-05-12 11:41 - 00000000 ____D () C:\Users\Cliente\Documents\Arquivos do Outlook
2015-04-22 17:37 - 2015-04-22 17:37 - 00000000 ____D () C:\Windows\system32\screenshots
2015-04-22 17:37 - 2015-04-22 17:37 - 00000000 ____D () C:\Windows\system32\cache

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-14 20:24 - 2014-08-27 14:34 - 00001058 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-14 19:35 - 2014-08-25 15:15 - 00000902 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-14 18:48 - 2009-07-14 01:34 - 00026080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-14 18:48 - 2009-07-14 01:34 - 00026080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-14 18:44 - 2015-04-07 11:34 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\ZHP
2015-05-14 18:16 - 2014-08-27 14:34 - 00001054 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-14 18:15 - 2009-07-14 01:53 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-14 18:15 - 2009-07-14 01:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-14 17:01 - 2015-01-22 13:49 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MuHeLLFire Season 4
2015-05-14 16:43 - 2014-08-25 14:33 - 00000952 _____ () C:\Users\Cliente\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-14 16:43 - 2014-08-25 14:32 - 00000000 ___RD () C:\Users\Cliente\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-14 16:38 - 2015-03-14 22:36 - 00000000 ____D () C:\Users\Cliente\Desktop\Nova pasta
2015-05-14 15:25 - 2014-08-27 14:33 - 00000000 ____D () C:\Users\Cliente\AppData\Local\Deployment
2015-05-14 14:39 - 2014-09-24 19:45 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\uTorrent
2015-05-14 13:19 - 2014-08-25 16:43 - 00000000 ____D () C:\Program Files\Google
2015-05-14 13:04 - 2014-08-27 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-14 11:36 - 2014-12-13 10:55 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\TS3Client
2015-05-14 11:36 - 2014-09-11 08:20 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\DAEMON Tools Lite
2015-05-14 11:36 - 2014-08-25 14:21 - 00000000 ____D () C:\Windows\Panther
2015-05-14 11:33 - 2015-03-03 16:14 - 00000000 ____D () C:\Windows\Minidump
2015-05-14 09:13 - 2014-09-25 22:53 - 00000000 ____D () C:\Program Files\Megacubo
2015-05-13 13:53 - 2014-11-15 05:39 - 00000000 ____D () C:\Program Files\Puxa Rápido
2015-05-10 18:43 - 2014-08-25 14:32 - 00000000 ____D () C:\Users\Cliente
2015-05-08 16:27 - 2009-07-13 23:37 - 00000000 ____D () C:\Windows\AppCompat
2015-05-06 23:04 - 2014-11-02 12:18 - 00000000 ____D () C:\Program Files\MUCABRASIL
2015-05-04 20:23 - 2010-11-20 23:33 - 00708740 _____ () C:\Windows\system32\prfh0416.dat
2015-05-04 20:23 - 2010-11-20 23:33 - 00148520 _____ () C:\Windows\system32\prfc0416.dat
2015-05-04 20:23 - 2010-11-20 18:01 - 01643814 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-04 19:05 - 2014-08-25 16:03 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\Skype
2015-05-04 18:10 - 2014-08-25 16:45 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\TeamViewer
2015-05-04 18:09 - 2014-08-25 15:51 - 00000000 ____D () C:\Users\Todos os Usuários\Microsoft Help
2015-05-04 18:09 - 2014-08-25 15:51 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-05-02 11:44 - 2009-07-13 23:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-20 18:35 - 2014-08-25 15:15 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-20 18:35 - 2014-08-25 15:15 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-18 17:51 - 2014-09-25 23:34 - 00000375 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2015-04-18 17:06 - 2014-08-25 14:32 - 00000000 __SHD () C:\Recovery
2015-04-18 16:11 - 2014-08-25 15:14 - 00002007 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2015-04-18 16:07 - 2014-10-04 16:28 - 00000000 ____D () C:\Users\Alex.Intel-PC.000
2015-04-18 16:07 - 2014-10-02 11:01 - 00000000 ____D () C:\Users\Alex.Intel-PC
2015-04-18 16:07 - 2014-10-01 23:59 - 00000000 ____D () C:\Users\Alex
2015-04-18 16:07 - 2014-10-01 23:51 - 00000000 ____D () C:\Users\Convidado
2015-04-18 16:07 - 2009-07-13 23:37 - 00000000 ____D () C:\Windows\system32\wfp
2015-04-18 16:07 - 2009-07-13 23:37 - 00000000 ____D () C:\Windows\registration
2015-04-15 15:43 - 2014-08-25 18:03 - 00000000 ____D () C:\Users\Cliente\AppData\Roaming\Ahead

==================== Files in the root of some directories =======

2014-09-01 05:18 - 2014-09-01 05:18 - 0002086 _____ () C:\Users\Cliente\AppData\Roaming\IEDJ
2014-09-01 05:18 - 2014-09-01 05:18 - 0001248 _____ () C:\Users\Cliente\AppData\Roaming\IRGS
2015-05-14 08:23 - 2015-05-14 08:23 - 0628688 _____ (CMI Limited) C:\Users\Cliente\AppData\Local\nsu9585.tmp

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-14 14:31

==================== End Of Log ============================

Publicité


Signaler le contenu de ce document

Publicité