cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-06-2015
Ran by nazareno (administrator) on NAZARENO-PC on 04-06-2015 13:10:38
Running from C:\Users\TEMP\Downloads
Loaded Profiles: nazareno (Available Profiles: nazareno)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Português (Brasil)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [3D BubbleSound] => "C:\Program Files\BubbleSound\3D BubbleSound.exe"
HKLM\...\Run: [mbot_br_764] => [X]
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\Launcher\Avira.Systray.exe
HKLM\...\Run: [avgnt] => "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2015-04-14] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=20629&r=2015/05/19&hid=3025818138329734900&lg=EN&cc=BR&unqvl=86
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://br.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_bxi01_15_21¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDzytD0FyDyB0AyE0B0ByDyDzyyEzztN0D0Tzu0StCtBtAtAtN1L2XzutAtFtCtDtFyCtFtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyC0AtBzztDtBtCtDtG0AtD0CzytG0EtByE0CtG0FyCyDtDtGtDyEyD0A0FtCtDyByB0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0F0E0B0AtA0B0DtDtG0EtC0C0EtGyE0EtCzytGzytC0EyBtGtD0BtCtBtCzyyByEtC0BtAyC2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyByCtA%26cr%3D1542118339%26a%3Dwncy_bxi01_15_21%26os%3DWindows 7 Home Premium&p={searchTerms}
SearchScopes: HKLM -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=20629&r=2015/05/19&hid=3025818138329734900&lg=EN&cc=BR&unqvl=86
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-21] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-21] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-04]
CHR Extension: (Google Docs) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-04]
CHR Extension: (Google Drive) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-04]
CHR Extension: (YouTube) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-04]
CHR Extension: (Google Search) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-04]
CHR Extension: (Google Sheets) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-04]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-06-04]
CHR Extension: (Google Wallet) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-04]
CHR Extension: (Gmail) - C:\Users\TEMP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-04]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 odserv; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [441136 2006-10-26] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 AntiVirMailService; "C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe" [X]
S2 AntiVirSchedulerService; "C:\Program Files\Avira\AntiVir Desktop\sched.exe" [X]
S2 AntiVirService; "C:\Program Files\Avira\AntiVir Desktop\avguard.exe" [X]
S2 AntiVirWebService; "C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe" [X]
S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]
S2 Avira.ServiceHost; "C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [347136 2009-07-13] (Realtek Semiconductor Corporation )
R1 {4bffb11f-9f9a-403f-bfc2-d9007494cc07}Gw; C:\Windows\System32\drivers\{4bffb11f-9f9a-403f-bfc2-d9007494cc07}Gw.sys [43152 2015-05-17] (StdLib)
S2 avgntflt; system32\DRIVERS\avgntflt.sys [X]
S1 avipbb; system32\DRIVERS\avipbb.sys [X]
S1 avkmgr; system32\DRIVERS\avkmgr.sys [X]
S2 avnetflt; system32\DRIVERS\avnetflt.sys [X]
S1 scfd_1_10_0_16; system32\drivers\scfd_1_10_0_16.sys [X]
S1 ssmdrv; system32\DRIVERS\ssmdrv.sys [X]
S1 tbfd_1_10_0_16; system32\drivers\tbfd_1_10_0_16.sys [X]
S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-04 13:10 - 2015-06-04 13:11 - 00007987 _____ C:\Users\TEMP\Downloads\FRST.txt
2015-06-04 13:10 - 2015-06-04 13:10 - 01147392 _____ (Farbar) C:\Users\TEMP\Downloads\FRST.exe
2015-06-04 13:10 - 2015-06-04 13:10 - 00000000 ____D C:\FRST
2015-06-04 12:29 - 2015-06-04 12:29 - 00000020 ___SH C:\Users\TEMP\ntuser.ini
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Modelos
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Meus documentos
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Menu Iniciar
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Documents\Minhas músicas
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Documents\Minhas imagens
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Documents\Meus vídeos
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Dados de aplicativos
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Configurações locais
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\AppData\Local\Histórico
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\AppData\Local\Dados de aplicativos
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Ambiente de rede
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 _SHDL C:\Users\TEMP\Ambiente de impressão
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 ____D C:\Users\TEMP\AppData\Local\VirtualStore
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 ____D C:\Users\TEMP\AppData\Local\Google
2015-06-04 12:29 - 2015-06-04 12:29 - 00000000 ____D C:\Users\TEMP
2015-06-04 12:29 - 2009-07-14 01:42 - 00000000 ___RD C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-06-04 12:29 - 2009-07-14 01:37 - 00000000 ___RD C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-06-04 11:57 - 2015-06-04 11:57 - 00000000 ____D C:\OETemp
2015-06-04 11:57 - 2015-06-04 11:57 - 00000000 _____ C:\Users\Todos os Usuários\rebootpending.txt
2015-06-04 11:57 - 2015-06-04 11:57 - 00000000 _____ C:\ProgramData\rebootpending.txt
2015-05-31 14:37 - 2015-05-31 18:57 - 00011875 _____ C:\Users\nazareno\Desktop\Despesas.xlsx
2015-05-31 14:37 - 2015-05-31 14:37 - 00000165 ____H C:\Users\nazareno\Desktop\~$Despesas.xlsx
2015-05-30 07:59 - 2015-05-30 07:59 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-30 07:59 - 2015-05-30 07:59 - 00001989 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-05-30 07:58 - 2015-05-30 07:58 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-05-30 07:50 - 2015-05-30 07:55 - 75858112 _____ (Adobe Systems Incorporated) C:\Users\nazareno\Downloads\AdbeRdr11010_en_US.exe
2015-05-28 16:48 - 2015-06-04 12:29 - 00000672 _____ C:\Windows\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job
2015-05-28 16:48 - 2015-05-28 16:48 - 00000000 ____D C:\Users\Public\Documents\PC Faster
2015-05-28 16:48 - 2015-05-28 16:48 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}
2015-05-28 16:47 - 2015-05-28 17:39 - 00000781 _____ C:\Users\nazareno\AppData\Roaming\burnaware.ini
2015-05-28 16:47 - 2015-05-28 16:47 - 00001012 _____ C:\Users\Public\Desktop\BurnAware Free.lnk
2015-05-28 16:47 - 2015-05-28 16:47 - 00000000 ____D C:\Users\Public\Documents\Baidu
2015-05-28 16:46 - 2015-05-28 16:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free
2015-05-28 16:46 - 2015-05-28 16:46 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\OpenCandy
2015-05-28 16:46 - 2015-05-28 16:46 - 00000000 ____D C:\Program Files\BurnAware Free
2015-05-28 16:45 - 2015-05-28 16:45 - 08424456 _____ (Burnaware ) C:\Users\nazareno\Downloads\burnaware_free.exe
2015-05-28 14:25 - 2015-05-28 14:34 - 162283048 _____ C:\Users\nazareno\Downloads\Romim Mata em Caxias MA 24.05.15 Raylto CDS.rar
2015-05-28 11:11 - 2015-05-28 11:12 - 19130488 _____ (Elex do Brasil Participações Ltda) C:\Users\nazareno\Downloads\yet_another_cleaner_bxk.exe
2015-05-28 11:00 - 2015-05-28 11:09 - 166133240 _____ C:\Users\nazareno\Downloads\avira_free_antivirus_ptbr.exe
2015-05-28 10:53 - 2015-06-04 11:58 - 00000000 ____D C:\Program Files\Avira
2015-05-28 10:53 - 2015-05-28 11:31 - 00000000 ____D C:\Users\Todos os Usuários\Avira
2015-05-28 10:53 - 2015-05-28 11:31 - 00000000 ____D C:\ProgramData\Avira
2015-05-28 10:50 - 2015-05-28 10:51 - 04643528 _____ (Avira Operations GmbH & Co. KG) C:\Users\nazareno\Downloads\avira_pt-br_av_55671c9086a2d__ws.exe
2015-05-25 22:44 - 2015-05-25 22:53 - 00000000 _____ C:\Users\nazareno\Downloads\GABRIEL DINIZ EM LIMOEIRO - PE - 16-05-15 - MATUTO CDS.zip
2015-05-25 16:48 - 2015-05-25 16:54 - 118875889 _____ C:\Users\nazareno\Downloads\WESLEY SAFADAO GAROTA SAFADA - SANTA CRUZ - RN - 21.05.2015 -www.Jovens Do Paggodao.net - Marcos CDs.rar
2015-05-25 15:25 - 2015-05-25 15:26 - 00000000 _____ C:\Users\nazareno\Downloads\Henrique_e_Juliano_Gordinho_Saliente_DVD_Ao_vivo_em_Bras_lia_V_deo_Oficial_.mp4
2015-05-23 19:04 - 2015-05-23 19:04 - 00000000 _____ C:\Users\nazareno\Downloads\Michel_Tel_part_Gusttavo_Lima_Implorando_Pra_Trair_CLIPE_OFICIAL_.mp4
2015-05-23 19:00 - 2015-05-23 19:00 - 00000000 _____ C:\Users\nazareno\Downloads\Thaeme_amp_Thiago_C_Gama_Part_Lucas_Lucco_DVD_Novos_Tempos.mp4
2015-05-23 18:57 - 2015-05-23 18:59 - 22992810 _____ C:\Users\nazareno\Downloads\Lucas_Lucco_Pr_ncipe_DVD_O_Destino_Ao_Vivo_.mp4
2015-05-22 19:07 - 2015-05-22 19:12 - 75711262 _____ C:\Users\nazareno\Downloads\AVNEH VINNY XE POP NA BOATE KATHEDRAL EM CARNAUBAL-CE MAIO 2015 - VICTOR CDS .rar
2015-05-22 18:57 - 2015-05-22 19:02 - 51644192 _____ C:\Users\nazareno\Downloads\Forro Real Remasterizado Pra Paredao Repertorio Novo - YWTON PLAY-MP CDS.rar
2015-05-22 16:30 - 2015-05-22 16:30 - 00001144 _____ C:\Users\Public\Desktop\aTube Catcher.lnk
2015-05-22 16:30 - 2015-05-22 16:30 - 00000049 _____ C:\Windows\system32\ScrRecX.log
2015-05-22 16:30 - 2015-05-22 16:30 - 00000000 ____D C:\Users\Todos os Usuários\APN
2015-05-22 16:30 - 2015-05-22 16:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2015-05-22 16:30 - 2015-05-22 16:30 - 00000000 ____D C:\ProgramData\APN
2015-05-22 16:30 - 2015-05-22 16:30 - 00000000 ____D C:\Program Files\DsNET Corp
2015-05-22 16:30 - 2008-08-18 19:18 - 00077824 _____ (Fox Magic Software) C:\Windows\system32\fmcodec.DLL
2015-05-22 10:03 - 2015-05-22 10:08 - 00000000 ____D C:\Windows\system32\MRT
2015-05-22 10:02 - 2015-04-30 10:07 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-22 09:57 - 2015-05-22 09:57 - 00730322 _____ C:\Users\nazareno\AppData\Roaming\unins000.exe
2015-05-22 09:57 - 2015-05-22 09:57 - 00016403 _____ C:\Users\nazareno\AppData\Roaming\unins000.dat
2015-05-22 09:57 - 2015-05-22 09:57 - 00000000 ____D C:\Users\nazareno\AppData\Local\GAS Tecnologia
2015-05-21 12:39 - 2015-05-21 13:41 - 00007168 ____H C:\Users\nazareno\Desktop\photothumb.db
2015-05-21 12:24 - 2015-05-21 13:35 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\PhotoScape
2015-05-21 12:23 - 2015-05-21 12:24 - 00000000 ____D C:\Program Files\PhotoScape
2015-05-21 12:23 - 2015-05-21 12:23 - 00000989 _____ C:\Users\nazareno\Desktop\PhotoScape.lnk
2015-05-21 12:23 - 2015-05-21 12:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2015-05-21 12:21 - 2015-05-21 12:22 - 21360800 _____ (Mooii) C:\Users\nazareno\Downloads\PhotoScape_V3.7.exe
2015-05-21 12:11 - 2015-05-21 12:11 - 00502104 _____ () C:\Users\nazareno\Downloads\setup.exe
2015-05-21 10:23 - 2015-05-25 16:41 - 00002127 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-05-21 10:23 - 2015-05-21 10:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-21 10:21 - 2015-06-04 12:35 - 00001058 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d093c9e685a44.job
2015-05-21 10:21 - 2015-06-04 12:29 - 00001054 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d093c9d8f3e20.job
2015-05-21 10:21 - 2015-05-21 10:23 - 00000000 ____D C:\Program Files\Google
2015-05-21 09:11 - 2015-05-21 09:11 - 00000000 ____D C:\Windows\CheckSur
2015-05-21 07:52 - 2015-05-21 07:52 - 00113543 _____ C:\Windows\system32\slmgr.vbs
2015-05-21 07:48 - 2015-05-21 07:51 - 09458428 _____ (Anemeros Software) C:\Users\nazareno\Downloads\CW.eXe
2015-05-21 00:30 - 2015-05-21 00:46 - 00000000 ____D C:\Users\Todos os Usuários\MFAData
2015-05-21 00:30 - 2015-05-21 00:46 - 00000000 ____D C:\ProgramData\MFAData
2015-05-21 00:30 - 2015-05-21 00:30 - 04578040 _____ (AVG Technologies) C:\Users\nazareno\Downloads\avg_free_stb_all_2015_5315_ppc1.exe
2015-05-21 00:30 - 2015-05-21 00:30 - 00000000 ____D C:\Users\nazareno\AppData\Local\MFAData
2015-05-21 00:30 - 2015-05-21 00:30 - 00000000 ____D C:\Users\nazareno\AppData\Local\Avg2015
2015-05-20 23:40 - 2015-05-20 23:44 - 90879422 _____ C:\Users\nazareno\Downloads\MATHEUS FERNADES NO FAROESTECE16.05.2015.zip
2015-05-20 16:40 - 2015-05-20 16:47 - 110736918 _____ C:\Users\nazareno\Downloads\Avioes - CD Promocional Maio 2015.rar
2015-05-20 16:26 - 2015-05-20 16:32 - 104307631 _____ C:\Users\nazareno\Downloads\Mala 100 Alca - As 20 melhores - Reynaldo Gravacoes.rar
2015-05-20 16:05 - 2015-05-20 16:06 - 07790760 _____ C:\Users\nazareno\Downloads\brasfoot2015 (1).exe
2015-05-20 07:37 - 2015-05-20 07:39 - 00000000 _____ C:\Users\nazareno\Downloads\RemoveWAT.2.2.7.0.zip
2015-05-19 09:18 - 2015-05-28 21:05 - 00000000 ____D C:\Users\Todos os Usuários\e294d23100002b82
2015-05-19 09:18 - 2015-05-28 21:05 - 00000000 ____D C:\ProgramData\e294d23100002b82
2015-05-19 09:13 - 2015-05-19 09:13 - 00000000 _____ C:\Users\nazareno\AppData\Local\Temp.dat
2015-05-19 09:10 - 2015-05-19 09:11 - 00000000 ____D C:\Users\Todos os Usuários\3720158799184518716
2015-05-19 09:10 - 2015-05-19 09:11 - 00000000 ____D C:\ProgramData\3720158799184518716
2015-05-19 09:09 - 2015-05-19 09:09 - 00000000 ____D C:\Users\Todos os Usuários\egmnbmcdemnpjnbachhknmiihcfjebbm
2015-05-19 09:09 - 2015-05-19 09:09 - 00000000 ____D C:\ProgramData\egmnbmcdemnpjnbachhknmiihcfjebbm
2015-05-19 09:08 - 2015-05-20 09:08 - 00000000 ____D C:\Users\Todos os Usuários\{30531896-97db-27b8-3053-3189697d625a}
2015-05-19 09:08 - 2015-05-20 09:08 - 00000000 ____D C:\ProgramData\{30531896-97db-27b8-3053-3189697d625a}
2015-05-19 08:51 - 2015-05-20 09:52 - 00000000 ____D C:\Users\nazareno\AppData\Local\Unity
2015-05-19 08:39 - 2015-05-19 08:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-05-19 08:37 - 2006-10-26 19:56 - 00032592 _____ (Microsoft Corporation) C:\Windows\system32\msonpmon.dll
2015-05-19 08:31 - 2015-05-19 08:31 - 00000000 ____D C:\Program Files\Microsoft Works
2015-05-19 08:28 - 2015-05-19 08:28 - 00000000 ____D C:\Program Files\Microsoft Visual Studio
2015-05-19 08:28 - 2015-05-19 08:28 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-05-19 08:26 - 2015-05-19 08:26 - 00000000 ____D C:\Windows\PCHEALTH
2015-05-19 08:23 - 2015-05-19 08:23 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8
2015-05-19 08:22 - 2015-05-19 08:22 - 00000000 ____D C:\Users\nazareno\AppData\Local\Microsoft Help
2015-05-19 08:21 - 2015-05-19 08:39 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2015-05-19 08:21 - 2015-05-19 08:39 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-05-19 08:21 - 2015-05-19 08:28 - 00000000 ____D C:\Program Files\Microsoft Office
2015-05-19 08:19 - 2015-05-19 08:19 - 00000000 __RHD C:\MSOCache
2015-05-19 08:17 - 2015-05-19 08:17 - 00000000 ____D C:\Users\nazareno\Documents\Microsoft Office 2007 PT-BR
2015-05-19 01:49 - 2015-05-19 01:55 - 00000000 _____ C:\Users\nazareno\Downloads\ROMIM MATA REP NOVO MAIO 2015.rar
2015-05-19 01:47 - 2015-05-19 01:47 - 39035640 _____ (Microsoft Corporation) C:\Users\nazareno\Downloads\pacote-de-compatibilidade-para-formatos-de-arquivo-microsoft-office-word-excel-e-powerpoint-2007-32-bits [1].exe
2015-05-19 01:43 - 2015-05-19 01:44 - 00695400 _____ (Software Installer generic ) C:\Users\nazareno\Downloads\pacote-de-compatibilidade-para-formatos-de-arquivo-microsoft-office-word-excel-e-powerpoint-2007-32-bits.exe
2015-05-18 23:06 - 2015-05-21 10:21 - 00000000 ____D C:\Users\nazareno\AppData\Local\Deployment
2015-05-18 23:06 - 2015-05-18 23:06 - 00000000 ____D C:\Users\nazareno\AppData\Local\Apps\2.0
2015-05-18 23:01 - 2015-05-18 23:01 - 06303232 _____ C:\Users\nazareno\Downloads\word-2007-redaction-tool-1-0-32-bits [1].exe
2015-05-18 22:59 - 2015-05-18 23:00 - 00695400 _____ (Software Installer generic ) C:\Users\nazareno\Downloads\word-2007-redaction-tool-1-0-32-bits.exe
2015-05-17 16:57 - 2015-06-04 13:10 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-17 16:57 - 2015-05-17 16:57 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-05-17 16:57 - 2015-05-17 16:57 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-17 16:57 - 2015-05-17 16:57 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\Macromedia
2015-05-17 16:49 - 2015-05-17 16:49 - 00000000 ____D C:\Users\nazareno\AppData\Local\Crossbrowse
2015-05-17 16:48 - 2015-05-17 01:54 - 00043152 _____ (StdLib) C:\Windows\system32\Drivers\{4bffb11f-9f9a-403f-bfc2-d9007494cc07}Gw.sys
2015-05-17 16:46 - 2015-05-17 16:46 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\7AF59000-1431891974-0000-0000-000000000000
2015-05-17 16:44 - 2015-05-17 17:14 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\Opera Software
2015-05-17 16:44 - 2015-05-17 17:14 - 00000000 ____D C:\Users\nazareno\AppData\Local\Opera Software
2015-05-17 16:38 - 2015-05-20 09:51 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\7AF59000-1431891494-0000-0000-000000000000
2015-05-17 16:38 - 2015-05-17 16:38 - 00000000 ____D C:\Users\nazareno\AppData\Local\globalUpdate
2015-05-17 16:14 - 2015-05-17 16:14 - 00000000 ____D C:\Users\nazareno\AppData\Local\CrashRpt
2015-05-17 13:57 - 2015-05-17 15:46 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\MailUpdate
2015-05-17 13:57 - 2015-05-17 15:35 - 00000000 ____D C:\Users\Todos os Usuários\MailUpdate
2015-05-17 13:57 - 2015-05-17 15:35 - 00000000 ____D C:\ProgramData\MailUpdate
2015-05-17 13:56 - 2015-05-20 09:51 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\7AF59000-1431881817-0000-0000-000000000000
2015-05-16 21:19 - 2015-05-16 21:19 - 00000000 ____D C:\Windows\system32\Macromed
2015-05-15 22:32 - 2015-05-15 22:32 - 00000000 ____D C:\Users\Todos os Usuários\Browser
2015-05-15 22:32 - 2015-05-15 22:32 - 00000000 ____D C:\ProgramData\Browser
2015-05-15 14:42 - 2015-05-15 14:42 - 00000000 ____D C:\Users\Todos os Usuários\Radio
2015-05-15 14:42 - 2015-05-15 14:42 - 00000000 ____D C:\ProgramData\Radio
2015-05-14 17:07 - 2015-05-14 17:07 - 00249224 _____ C:\Users\nazareno\Downloads\VDownloader4OC.exe
2015-05-14 10:49 - 2015-05-01 10:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 14:58 - 2015-02-18 04:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-13 10:50 - 2015-04-27 16:11 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-05-13 10:50 - 2015-04-27 16:11 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-13 10:50 - 2015-04-27 16:11 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-13 10:50 - 2015-04-27 16:11 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-05-13 10:50 - 2015-04-27 16:08 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-05-13 10:50 - 2015-04-27 16:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-05-13 10:50 - 2015-04-27 16:04 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 10:50 - 2015-04-27 16:04 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-05-13 10:50 - 2015-04-27 16:04 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-13 10:50 - 2015-04-27 16:04 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-05-13 10:50 - 2015-04-27 16:04 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-05-13 10:50 - 2015-04-27 16:04 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-05-13 10:50 - 2015-04-27 16:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-05-13 10:50 - 2015-04-27 16:03 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-05-13 10:50 - 2015-04-27 16:01 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-05-13 10:50 - 2015-04-27 16:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-05-13 10:50 - 2015-04-27 15:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-05-13 10:50 - 2015-04-27 15:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-05-13 10:50 - 2015-04-27 15:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-13 10:50 - 2015-01-29 00:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-13 10:49 - 2015-04-21 14:58 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 11030016 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 06032896 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 02088448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00428544 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-05-13 10:49 - 2015-04-21 14:57 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2015-05-13 10:49 - 2015-04-21 14:56 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 10:49 - 2015-04-21 14:56 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-13 10:49 - 2015-04-21 14:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-05-13 10:49 - 2015-04-21 14:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-05-13 10:49 - 2015-04-21 14:29 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 10:49 - 2015-04-21 14:11 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-13 10:49 - 2015-04-19 23:55 - 01081344 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 10:49 - 2015-04-19 23:55 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 10:49 - 2015-04-19 23:03 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 10:44 - 2015-04-13 00:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 10:44 - 2015-04-08 00:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-13 10:44 - 2015-04-08 00:14 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-05-13 10:44 - 2015-03-04 01:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-05-13 10:44 - 2015-03-04 01:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-05-13 10:44 - 2015-03-04 01:10 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-05-13 10:44 - 2015-03-04 01:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-11 22:24 - 2015-05-11 22:37 - 259508214 _____ C:\Users\nazareno\Downloads\Gabriel Diniz - GD BLACK or WHITE - SERRA TALHADA-PE - 09 de MAIO - Sigam DiegoEdicoes GabrielDiniz.zip
2015-05-11 22:15 - 2015-05-11 22:20 - 111974321 _____ C:\Users\nazareno\Downloads\PEDRINHO PEGACAO - PROMOCIONAL ABRIL 2015.rar
2015-05-11 22:04 - 2015-05-11 22:09 - 107898631 _____ C:\Users\nazareno\Downloads\Chicabana-Maio 2015 rep novo RR gravacoes -sigam rodrigorangell.rar
2015-05-11 15:06 - 2015-05-20 16:07 - 00000622 _____ C:\Users\nazareno\Desktop\Brasfoot2015.lnk
2015-05-11 15:06 - 2015-05-11 15:06 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brasfoot2015
2015-05-11 15:06 - 2015-05-11 15:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brasfoot2015
2015-05-11 15:06 - 2015-05-11 15:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brasfoot 2015
2015-05-11 15:05 - 2015-05-11 15:06 - 00000000 ____D C:\Brasfoot2015
2015-05-11 15:04 - 2015-05-11 15:05 - 07790760 _____ C:\Users\nazareno\Downloads\brasfoot2015.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-04 12:38 - 2015-04-10 19:43 - 02062441 _____ C:\Windows\WindowsUpdate.log
2015-06-04 12:26 - 2009-07-14 01:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-04 12:26 - 2009-07-14 01:39 - 00033260 _____ C:\Windows\setupact.log
2015-06-04 12:25 - 2009-07-14 01:34 - 00013904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-04 12:25 - 2009-07-14 01:34 - 00013904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-02 20:49 - 2015-04-13 10:45 - 00000000 ____D C:\Users\Todos os Usuários\GAS Tecnologia
2015-06-02 20:49 - 2015-04-13 10:45 - 00000000 ____D C:\ProgramData\GAS Tecnologia
2015-06-02 11:43 - 2015-04-10 22:19 - 01551758 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-02 11:43 - 2009-07-14 05:31 - 00672368 _____ C:\Windows\system32\prfh0416.dat
2015-06-02 11:43 - 2009-07-14 05:31 - 00136274 _____ C:\Windows\system32\prfc0416.dat
2015-05-30 07:58 - 2015-04-14 18:15 - 00000000 ____D C:\Program Files\Adobe
2015-05-30 07:58 - 2015-04-14 18:14 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2015-05-30 07:58 - 2015-04-14 18:14 - 00000000 ____D C:\ProgramData\Adobe
2015-05-28 18:34 - 2015-04-11 18:10 - 01155320 _____ C:\Windows\PFRO.log
2015-05-28 17:40 - 2009-07-13 23:37 - 00000000 ____D C:\Program Files\Common Files\System
2015-05-28 10:44 - 2015-04-11 08:40 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2015-05-28 10:44 - 2015-04-11 08:40 - 00000000 ____D C:\ProgramData\AVAST Software
2015-05-27 10:20 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\system32\NDF
2015-05-22 17:22 - 2015-04-11 08:28 - 00000000 ____D C:\Users\nazareno\AppData\Local\VirtualStore
2015-05-22 17:21 - 2015-04-13 10:45 - 00000000 ____D C:\Users\Todos os Usuários\boost_interprocess
2015-05-22 17:21 - 2015-04-13 10:45 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-05-22 09:57 - 2015-04-13 10:36 - 00003223 _____ C:\Users\nazareno\Downloads\Instalação do Módulo Adicional de Segurança CAIXA.log
2015-05-22 09:51 - 2015-04-11 08:49 - 00001060 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-21 10:23 - 2015-04-11 08:49 - 00000000 ____D C:\Users\nazareno\AppData\Local\Google
2015-05-21 10:21 - 2015-04-11 08:49 - 00001056 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-21 08:41 - 2015-04-11 08:28 - 00000000 ____D C:\Users\nazareno
2015-05-20 08:53 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-05-20 07:43 - 2015-04-13 12:32 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-05-20 07:43 - 2015-04-13 12:31 - 00410624 _____ C:\Windows\system32\systemcpl.dll
2015-05-20 07:43 - 2015-04-13 12:31 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2015-05-19 10:39 - 2009-07-14 01:33 - 00411032 _____ C:\Windows\system32\FNTCACHE.DAT
2015-05-19 09:08 - 2015-04-11 08:40 - 00109280 _____ C:\Users\nazareno\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-19 08:30 - 2009-07-14 01:52 - 00000000 ____D C:\Program Files\MSBuild
2015-05-19 08:30 - 2009-07-13 23:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-05-19 08:28 - 2009-07-14 05:53 - 00000000 ____D C:\Windows\ShellNew
2015-05-19 08:26 - 2015-04-13 10:33 - 00000000 ____D C:\Program Files\Microsoft.NET
2015-05-19 08:22 - 2009-07-13 23:04 - 00000580 _____ C:\Windows\win.ini
2015-05-18 12:03 - 2009-07-14 05:52 - 00000000 ___RD C:\Users\Public\Recorded TV
2015-05-17 17:06 - 2009-07-13 23:37 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-05-17 16:57 - 2015-04-14 18:16 - 00000000 ____D C:\Users\nazareno\AppData\Roaming\Adobe
2015-05-17 15:50 - 2015-04-11 08:28 - 00001389 _____ C:\Users\nazareno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-17 09:54 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\rescache
2015-05-17 08:43 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\system32\LogFiles
2015-05-15 15:19 - 2009-07-14 05:53 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-14 10:56 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\system32\pt-BR
2015-05-14 10:56 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-05-13 15:02 - 2009-07-13 23:37 - 00000000 __RHD C:\Users\Public\Libraries

==================== Files in the root of some directories =======

2015-06-04 11:57 - 2015-06-04 11:57 - 0000000 _____ () C:\ProgramData\rebootpending.txt

Files to move or delete:
====================
C:\Windows\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job


Some files in TEMP:
====================
C:\Users\nazareno\AppData\Local\Temp\8916.exe
C:\Users\nazareno\AppData\Local\Temp\appshat_generic.exe
C:\Users\nazareno\AppData\Local\Temp\avgnt.exe
C:\Users\nazareno\AppData\Local\Temp\dufgmr4c.exe
C:\Users\nazareno\AppData\Local\Temp\InstallHelper.exe
C:\Users\nazareno\AppData\Local\Temp\oo2.exe
C:\Users\nazareno\AppData\Local\Temp\OptimizerPro.exe
C:\Users\nazareno\AppData\Local\Temp\setup.exe
C:\Users\nazareno\AppData\Local\Temp\setup_gmsd_br.exe
C:\Users\nazareno\AppData\Local\Temp\tu17p84.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll
[2015-04-13 12:32] - [2015-05-20 07:43] - 0811520 ____A (Microsoft Corporation) 8626F0C30D4E3564FFDD25C90F4426F1

C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-06-04 12:18

==================== End of log ============================

Publicité


Signaler le contenu de ce document

Publicité