cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.5.111 Por Nicolas Coolman (2015/08/5)
~ iniciado por Evanio N Mariano (Administrator) (2015/08/06 04:43:44)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Status da versão: Version OK
~ Modo: Scanner
~ Relatório: C:\Users\Evanio\Desktop\ZHPDiag.txt
~ Relatório: C:\Users\Evanio\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Inicialização do sistema: Normal (Normal boot)
~ Windows 8.1 Single Language, 64-bit (Build 9600)

---\\ Navegadores Internet (2) - 0s
GCIE: Google Chrome v43.0.2357.134
MSIE: Internet Explorer v11.0.9600.17905

---\\ Informações sobre os produtos Windows (4) - 2s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : KO
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema (1) - 1s
Malwarebytes Anti-Malware versão 2.1.8.1057

---\\ Monitoramento dos softwares (1) - 1s
Adobe Flash Player 11 Plugin

---\\ Informações sobre o sistema (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 6147.072 MB (67% free)
~ System Restore: Activé (Enable)
~ System drive C: has 0 GB free of 945 GB

---\\ Modo de conexão ao sistema (3) - 0s
~ Computer Name: MARIANO-LISBOA
~ User Name: Evanio N Mariano
~ Logged in as Administrator

---\\ Enumeração das unidades dos discos (2) - 0s
~ Drive C: has 0 GB free of 945 GB (System)
~ Drive D: has GB free of 0 GB

---\\ Estado do Centro de Segurança do Windows (14) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Pesquisa particular de ficheiros genéricos (22) - 0s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Windows Explorer.) () -- C:\WINDOWS\Explorer.exe [2501368]
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920]
[MD5.98C6A46E9E2822BF83196C2EAE43DBD4] - (.Microsoft Corporation - Internet Extensions para Win32.) () -- C:\WINDOWS\System32\wininet.dll [2427392]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800]
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Driver de porta i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848]
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB do Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Driver de porta paralela.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecionador do Dispositivo RDP da Micros.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080]

---\\ Processos lançados (10) - 0s
[MD5.4F440DCDB7C8C14DEDDB1D63B94335D1] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [579896] [PID.932]
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.5204]
[MD5.ABEFA4BD23329FD9BD47496BF2E58774] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456] [PID.3092]
[MD5.4F440DCDB7C8C14DEDDB1D63B94335D1] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [579896] [PID.5428]
[MD5.23F27A9900FB713D2D7E2CDB5549FE48] - (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\quickset.exe [4384928] [PID.1876]
[MD5.EDA917548C58FA93F5357A9000D297BF] - (.GAS Tecnologia LTDA - GAS Tecnologia - Core.) -- C:\Program Files\Diebold\Warsaw\core.exe [847160] [PID.4212]
[MD5.832E3C7587AC4723856F51DD28D1E295] - (.Seagate Technology LLC - Seagate Dashboard.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe [126056] [PID.5324]
[MD5.AE1DEF51190B3CB36CEAE75683B51DF9] - (.Seagate Technology LLC - Seagate Dashboard.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1519176] [PID.6528]
[MD5.6EA9333DF6FB999A2A40B51254A5DEF6] - (.PC-Doctor, Inc. - PC-Doctor Module.) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1216680] [PID.3216]
[MD5.318706813FB613072A688F2653B0689F] - (.Banco Bradesco S.A. - scpVista.) -- C:\Program Files (x86)\Scpad\scpVista.exe [360624] [PID.2860]

---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2 (12) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ajax.googleapis.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://r7---sn-jucj-0qpl.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://redirector.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.forumpcbrasil.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com.br/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com/
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) (4) - 0s
P2 - FPN: [HKCU] [@hola.org/vlc,version=1.8.649] - (...) -- C:\Users\Evanio\AppData\Local\Hola\firefox_hola\app\vlc
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/cef] - (.GAS Tecnologia.) -- C:\Users\Evanio\AppData\Local\GAS Tecnologia\GBBD\npsf_cef.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4) (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Gestão do Proxy (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Redireção do ficheiro Hosts (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Objects do navegador (O2) (4) - 0s
O2 - BHO: CompSegIB [64Bits] - {2E3C3651-B19C-4DD9-A979-901EC3E930AF} (Orphean)
O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: G-Buster Browser Defense [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540000} (Orphean)
O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Aplicações iniciadas por registo & pastas (O4) (33) - 1s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [QuickSet] . (.Dell Inc. - QuickSet.) -- c:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [IntelTBRunOnce] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SA3\SAcpl.exe
O4 - HKLM\..\Run: [BtTray] . (.Qualcomm Atheros - BtTray.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtTray.exe
O4 - HKLM\..\Run: [BtvStack] . (.Atheros Communications - Bluetooth Stack Server.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
O4 - HKLM\..\Run: [Nvtmru] . (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [Diebold - Warsaw] . (.GAS Tecnologia LTDA - GAS Tecnologia - Core.) -- C:\Program Files\Diebold\Warsaw\core.exe
O4 - HKLM\..\Run: [hola] C:\Program Files\Hola\app\hola.exe (.not file.)
O4 - HKCU\..\Run: [ChicaPasswordManager] C:\Program Files (x86)\ChicaLogic\Chica Password Manager\stpass.exe (.not file.)
O4 - HKCU\..\Run: [Uploader] . (.Seagate Technology LLC - Seagate Dashboard.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Google Installer.) -- C:\Users\Evanio\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKCU\..\Run: [VDownloader] C:\Program Files\VDownloader\VDownloader4.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [Nikon Message Center 2] . (.Nikon Corporation - Nikon Message Center 2.) -- C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [DBAgent] . (.Seagate Technology LLC - Seagate Dashboard.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [Application Restart #0] . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [Application Restart #0] . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - HKUS\S-1-5-21-122634110-2796016627-362079612-1002\..\Run: [ChicaPasswordManager] C:\Program Files (x86)\ChicaLogic\Chica Password Manager\stpass.exe (.not file.)
O4 - HKUS\S-1-5-21-122634110-2796016627-362079612-1002\..\Run: [Uploader] . (.Seagate Technology LLC - Seagate Dashboard.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe
O4 - HKUS\S-1-5-21-122634110-2796016627-362079612-1002\..\Run: [Google Update] . (.Google Inc. - Google Installer.) -- C:\Users\Evanio\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKUS\S-1-5-21-122634110-2796016627-362079612-1002\..\Run: [VDownloader] C:\Program Files\VDownloader\VDownloader4.exe (.not file.)

---\\ Alteração Dominio/Clientes DNS (017) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = domain.name

---\\ Lista dos serviços NT não Microsoft e não desativados (023) (29) - 1s
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe
O23 - Service: Serviço do Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CxUtilSvc (CxUtilSvc) . (.Conexant Systems, Inc. - Utility Service.) - C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe
O23 - Service: Dell Customer Connect (Dell Customer Connect) . (.Dell Inc. - OTBSurvey.) - C:\Program Files (x86)\Dell Customer Connect\OTBSurvey.exe
O23 - Service: Dell Data Vault (DellDataVault) . (.Dell Inc. - Dell Data Vault Service.) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) . (.Dell Inc. - Dell Data Vault Wizard.) - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
O23 - Service: Dell Update Service (DellUpdate) . (.Dell Inc. - Dell Update Windows Service.) - C:\Program Files (x86)\Dell Update\DellUpService.exe
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Tecnologia de armazenamento Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) - C:\WINDOWS\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: scpVista (scpVista) . (.Banco Bradesco S.A. - scpVista.) - C:\Program Files (x86)\Scpad\scpVista.exe
O23 - Service: Seagate Dashboard Services (Seagate Dashboard Services) . (.Seagate Technology LLC - Seagate Dashboard.) - C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.DASWindowsService.exe
O23 - Service: Seagate MobileBackup Service (Seagate MobileBackup Service) . (.Seagate Technology LLC - Seagate Dashboard.) - C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\MobileService.exe
O23 - Service: SoftThinks Agent Service (SftService) . (.SoftThinks SAS - SoftThinks Agent Service.) - C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc. - Service.) - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: (Update service) . (.Company - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe
O23 - Service: Warsaw Technology (Warsaw Technology) . (.GAS Tecnologia LTDA - GAS Tecnologia - Core.) - C:\Program Files\Diebold\Warsaw\core.exe
O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe

---\\ Listagem dos dados do BootExecute (Bex) (034) (1) - 0s
O34 - HKLM BootExecute: (C:\PROGRA~3\SPYWAR~1\st_rsdel.exe "\??\C:\ProgramData\Spyware Terminator\st_rsdel.dat") - File not found

---\\ Tarefas planificadas automaticamente (039) (36) - 5s
[MD5.438F31336B3DC248ABC632F1C8F34A24] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416]
[MD5.00000000000000000000000000000000] [APT] [avast! BCU UpdateS-1-5-21-122634110-2796016627-362079612-1007] (...) -- C:\Users\RachÆo-Rachinha\AppData\Roaming\AVAST Software\Browser Cleanup\BCUUpdate.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [avastBCLS-1-5-21-122634110-2796016627-362079612-1007] (...) -- C:\Users\RachÆo-Rachinha\AppData\Roaming\AVAST Software\Browser Cleanup\BCUSched.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [DF0604BD-97D1-47C4-AAB2-623E4D30B9D2] (...) -- C:\Users\Evanio\AppData\Local\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2.exe (.not file.) [0]
[MD5.AE1DEF51190B3CB36CEAE75683B51DF9] [APT] [Evanio N Mariano DBAgent 2 0] (.Seagate Technology LLC.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe [1519176]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.F172AD4E906D97ED8F071896FC6789DC] [APT] [GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002Core] (.Google Inc..) -- C:\Users\Evanio\AppData\Local\Google\Update\GoogleUpdate.exe [107912]
[MD5.F172AD4E906D97ED8F071896FC6789DC] [APT] [GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002UA] (.Google Inc..) -- C:\Users\Evanio\AppData\Local\Google\Update\GoogleUpdate.exe [107912]
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007Core] (...) -- C:\Users\RachÆo-Rachinha\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007UA] (...) -- C:\Users\RachÆo-Rachinha\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.735EB749F3EF23BA1D7F9225DEBE5793] [APT] [Seagate_Install_Launch] (.Seagate Technology LLC.) -- C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Dashboard.exe [1651784]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [902]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1102]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1106]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002Core - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002Core.job [1080]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002UA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002UA.job [1132]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007Core - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007Core.job [1096]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007UA - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007UA.job [1148]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3790]
O39 - APT: avast! BCU UpdateS-1-5-21-122634110-2796016627-362079612-1007 - (...) -- C:\WINDOWS\System32\Tasks\avast! BCU UpdateS-1-5-21-122634110-2796016627-362079612-1007 [4312]
O39 - APT: avastBCLS-1-5-21-122634110-2796016627-362079612-1007 - (...) -- C:\WINDOWS\System32\Tasks\avastBCLS-1-5-21-122634110-2796016627-362079612-1007 [3420]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate [3622]
O39 - APT: DF0604BD-97D1-47C4-AAB2-623E4D30B9D2 - (...) -- C:\WINDOWS\System32\Tasks\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2 [4250]
O39 - APT: Evanio N Mariano DBAgent 2 0 - (.Seagate Technology LLC.) -- C:\WINDOWS\System32\Tasks\Evanio N Mariano DBAgent 2 0 [3560]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3842]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4078]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002Core - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002Core [3720]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002UA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1002UA [4100]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007Core - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007Core [3734]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007UA - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-122634110-2796016627-362079612-1007UA [4114]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\PCDEventLauncherTask [3484]
O39 - APT: Seagate_Install_Launch - (.Seagate Technology LLC.) -- C:\WINDOWS\System32\Tasks\Seagate_Install_Launch [3572]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\SystemToolsDailyTest [3252]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\{7312A793-C4FD-436C-BBE4-1BC8E727A070} [3180]

---\\ Software instalados (042) (82) - 6s
O42 - Logiciel: Conexant SmartAudio HD - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA
O42 - Logiciel: Hola™ 1.8.649 - Better Internet - (.Hola Networks Ltd..) [HKLM][64Bits] -- Hola
O42 - Logiciel: JDownloader 2 - (.AppWork GmbH.) [HKLM][64Bits] -- jdownloader2
O42 - Logiciel: Dell SupportAssist - (.Dell.) [HKLM][64Bits] -- PC-Doctor for Windows
O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Picture Control Utility x64 - (.Nikon.) [HKLM][64Bits] -- {11953C65-BB4E-4CA4-B0F0-2600A4B20040}
O42 - Logiciel: Warsaw 1.5.1.8886 64 bits - (.GAS Tecnologia.) [HKLM][64Bits] -- {20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {5A68A656-979F-4168-8795-E2E368AA4DC2}
O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM][64Bits] -- {635BE602-BB9C-4C59-8CC5-93F9366E8A21}
O42 - Logiciel: Monitor da tecnologia Intel® Turbo Boost 2.6 - (.Intel.) [HKLM][64Bits] -- {6C9365EB-1F9E-4893-9196-3EC77C88D0C5}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Paint.NET v3.5.11 - (.dotPDN LLC.) [HKLM][64Bits] -- {72EF03F5-0507-4861-9A44-D99FD4C41418}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {787136D2-F0F8-4625-AA3F-72D7795AC842}
O42 - Logiciel: Quickset64 - (.Dell Inc..) [HKLM][64Bits] -- {87CF757E-C1F1-4D22-865C-00C6950B5258}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: Dell Touchpad - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}
O42 - Logiciel: NVIDIA Driver de gráficos 331.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 1.7 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Software do sistema PhysX 9.13.0725 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: Atualizações da NVIDIA 9.3.16 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: NVIDIA Virtual Audio 1.2.9 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Receitanet - (.Serpro - Serviço Federal de Processamento de Dados.) [HKLM][64Bits] -- ECC16E3C-16D1-4DC2-9D8A-6AC06B3005A5
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: CyberLink Media Suite Essentials - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}
O42 - Logiciel: BizAgi Process Modeler - (.BizAgi Limited.) [HKLM][64Bits] -- InstallShield_{980EC6D7-A345-4489-A915-39CC50F37EC2}
O42 - Logiciel: IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva - (.Receita Federal do Brasil.) [HKLM][64Bits] -- IRPF2014
O42 - Logiciel: IRPF2015 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva - (.Receita Federal do Brasil.) [HKLM][64Bits] -- IRPF2015
O42 - Logiciel: Malwarebytes Anti-Malware versão 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Microsoft Money Plus - (.Microsoft.) [HKLM][64Bits] -- Money2008b
O42 - Logiciel: Popcorn Time - (.Popcorn Time.) [HKLM][64Bits] -- Popcorn Time_is1
O42 - Logiciel: The KMPlayer (remove only) - (.PandoraTV.) [HKLM][64Bits] -- The KMPlayer
O42 - Logiciel: Tim Communicator\Tim_ConnectionManager.exe - (.LightComm Tecnologia.) [HKLM][64Bits] -- timgsm_is1
O42 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1
O42 - Logiciel: Dell Backup and Recovery - (.Dell Inc..) [HKLM][64Bits] -- {0ED7EE95-6A97-47AA-AD73-152C08A15B04}
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: MPC-HC 1.6.8 - (.MPC-HC Team.) [HKLM][64Bits] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1
O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Dell WLAN and Bluetooth Client Installation - (.Dell Inc..) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
O42 - Logiciel: Dell SupportAssistAgent - (.Dell.) [HKLM][64Bits] -- {287348C8-8B47-4C36-AF28-441A3B7D8722}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: RescuePRO Deluxe 5.2.3.7 - (.LC Technology International, Inc..) [HKLM][64Bits] -- {38D9AAB8-116B-40BB-A801-50B71DF82D24}_is1
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: GBBD Caixa Economica Federal - (...) [HKLM][64Bits] -- {5d01f486-f32d-462e-8830-cc1d116e8ece}_is1
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Seagate Dashboard - (.Seagate.) [HKLM][64Bits] -- {67445E65-3D93-428F-83A5-446F7D02689A}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}
O42 - Logiciel: Microsoft Money Shared Libraries - (.Microsoft Corporation.) [HKLM][64Bits] -- {7F1B3341-A94E-4F5C-B587-CA0EB964221E}
O42 - Logiciel: RescuePRO 3.5 - (.LC Technology International, Inc..) [HKLM][64Bits] -- {81B109ED-6ECA-49FF-9238-8E31FA5DB1A9}_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0416-0000-0000000FF1CE}
O42 - Logiciel: Dell Update - (.Dell Inc..) [HKLM][64Bits] -- {90437913-9D4D-4D9D-B438-B8664DF851E9}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: BizAgi Process Modeler - (.BizAgi Limited.) [HKLM][64Bits] -- {980EC6D7-A345-4489-A915-39CC50F37EC2}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Dell Backup and Recovery - Support Software - (.Dell Inc..) [HKLM][64Bits] -- {A9668246-FB70-4103-A1E3-66C9BC2EFB49}
O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM][64Bits] -- {B014EE44-9197-4513-9613-71E6EB1B514E}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}
O42 - Logiciel: CyberLink LabelPrint 2.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: Suporte para Aplicativos Apple - (.Apple Inc..) [HKLM][64Bits] -- {D9DAD0FF-495A-472B-9F10-BAE430A26682}
O42 - Logiciel: ArcSoft Panorama Maker 6 - (.ArcSoft.) [HKLM][64Bits] -- {DABFD34E-BE68-4BC6-9254-5D7A7FF76B99}
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Lightworks - (.Lightworks.) [HKLM][64Bits] -- {E94DD4E4-7746-472c-AA7B-1242FED0CFC8}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Galeria de Fotos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5248B7E-779A-4FA4-8134-D1933D8680FA}
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Dell Customer Connect - (.Dell Inc..) [HKLM][64Bits] -- {FEFDCDCF-C49C-45D0-AAF8-5345858ADEC7}
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent
O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1

---\\ HKCU & HKLM Software Keys (131) - 6s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Applications
HKLM\SOFTWARE\Wow6432Node\ArcSoft
HKLM\SOFTWARE\Wow6432Node\ATHEROS
HKLM\SOFTWARE\Wow6432Node\AutoHelpDesk
HKLM\SOFTWARE\Wow6432Node\baidu
HKLM\SOFTWARE\Wow6432Node\Baidu Security
HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos
HKLM\SOFTWARE\Wow6432Node\BizAgi
HKLM\SOFTWARE\Wow6432Node\ChicaLogic, Inc.
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Dell
HKLM\SOFTWARE\Wow6432Node\Dell Inc.
HKLM\SOFTWARE\Wow6432Node\DellBackupandRecovery
HKLM\SOFTWARE\Wow6432Node\Dell_Wlan
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\EVP
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KMPlayer
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Lenovo
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LightComm
HKLM\SOFTWARE\Wow6432Node\Lightworks
HKLM\SOFTWARE\Wow6432Node\LimeWire Ultra Accelerator
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Nikon
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Orolix
HKLM\SOFTWARE\Wow6432Node\PC-Doctor
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\SIEN SA
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftThinks
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\Trumpet Section
HKLM\SOFTWARE\Wow6432Node\TuneUp
HKLM\SOFTWARE\Wow6432Node\User Loops
HKLM\SOFTWARE\Wow6432Node\Vocal Transformer
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Action
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Alps
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AppWork
HKCU\SOFTWARE\ArcSoft
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\AutoHelpDesk
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Baixaki
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BrowserTemp
HKCU\SOFTWARE\ChicaLogic, Inc.
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CoinisRevShare
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elcomsoft
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GbAs
HKCU\SOFTWARE\GbPlugin
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hola
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\KMPlayer
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\LC Technology Inc
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Lightworks
HKCU\SOFTWARE\LimeWire Ultra Accelerator
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept (Nikon)
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nikon
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Orolix
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\PC-Doctor
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Seagate
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\System Image Utility
HKCU\SOFTWARE\Techno Kit
HKCU\SOFTWARE\Themes
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Waves Audio
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\DVDVideoSoft
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43) (254) - 5s
O43 - CFD: 2015/07/15 23:52:06 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2013/10/26 21:20:45 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2014/01/04 23:38:07 - [] D -- C:\Program Files (x86)\ArcSoft
O43 - CFD: 2014/02/26 00:43:53 - [] D -- C:\Program Files (x86)\Baidu Security
O43 - CFD: 2013/11/14 08:56:59 - [] D -- C:\Program Files (x86)\BizAgi
O43 - CFD: 2013/10/26 21:19:59 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2015/08/01 12:10:02 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2012/11/27 21:01:03 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/03/20 18:38:10 - [] D -- C:\Program Files (x86)\Dell
O43 - CFD: 2015/08/03 23:25:01 - [] D -- C:\Program Files (x86)\Dell Backup and Recovery
O43 - CFD: 2015/06/12 22:55:05 - [] D -- C:\Program Files (x86)\Dell Customer Connect
O43 - CFD: 2015/07/08 23:55:08 - [] D -- C:\Program Files (x86)\Dell Update
O43 - CFD: 2012/11/27 20:55:32 - [] D -- C:\Program Files (x86)\Dell Wireless
O43 - CFD: 2015/02/02 23:20:04 - [] D -- C:\Program Files (x86)\Diebold
O43 - CFD: 2013/09/14 23:25:22 - [0] D -- C:\Program Files (x86)\DsNET Corp
O43 - CFD: 2013/10/19 08:41:12 - [] D -- C:\Program Files (x86)\Easy Excel Password Recovery Free
O43 - CFD: 2013/10/19 08:39:37 - [] D -- C:\Program Files (x86)\Elcomsoft Password Recovery
O43 - CFD: 2013/10/19 08:41:44 - [] D -- C:\Program Files (x86)\Excel Password Unlocker
O43 - CFD: 2014/04/04 00:39:43 - [] D -- C:\Program Files (x86)\FLV Video Player
O43 - CFD: 2015/02/02 23:20:04 - [] D -- C:\Program Files (x86)\GAS Tecnologia
O43 - CFD: 2015/08/06 04:41:03 - [] AD -- C:\Program Files (x86)\GbPlugin
O43 - CFD: 2015/07/25 08:18:02 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/03/23 18:46:17 - [] D -- C:\Program Files (x86)\Image Toolbar beta
O43 - CFD: 2015/04/28 22:43:20 - [] D -- C:\Program Files (x86)\InstallJammer Registry
O43 - CFD: 2014/01/04 23:38:00 - [] D -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/06/20 04:11:22 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/07/19 17:41:19 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/07/06 20:10:13 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2015/04/28 22:39:42 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/07/16 00:20:30 - [] D -- C:\Program Files (x86)\Lenovo
O43 - CFD: 2014/04/24 00:04:22 - [] D -- C:\Program Files (x86)\Lightworks
O43 - CFD: 2015/08/04 23:45:12 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2014/08/22 21:09:40 - [] D -- C:\Program Files (x86)\McAfee
O43 - CFD: 2014/05/09 20:14:33 - [] D -- C:\Program Files (x86)\Microsoft Money Plus
O43 - CFD: 2013/05/22 23:52:48 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/05/17 17:52:01 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2013/05/22 23:52:58 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 2012/11/27 21:07:51 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2013/11/07 01:42:17 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2013/11/24 16:38:42 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2013/08/05 20:37:56 - [] D -- C:\Program Files (x86)\MPC-HC
O43 - CFD: 2013/11/07 02:19:35 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2014/01/04 23:32:28 - [] D -- C:\Program Files (x86)\Nikon
O43 - CFD: 2013/11/11 07:49:52 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2014/08/31 00:06:00 - [] D -- C:\Program Files (x86)\Popcorn Time
O43 - CFD: 2015/04/28 22:43:25 - [] D -- C:\Program Files (x86)\Programas RFB
O43 - CFD: 2012/11/27 20:49:51 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2013/11/07 02:19:35 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014/04/16 23:41:35 - [] D -- C:\Program Files (x86)\RescuePRO
O43 - CFD: 2014/04/16 23:52:09 - [] D -- C:\Program Files (x86)\RescuePRO Deluxe
O43 - CFD: 2013/06/02 21:08:05 - [] D -- C:\Program Files (x86)\Scpad
O43 - CFD: 2014/07/08 23:52:16 - [] D -- C:\Program Files (x86)\Seagate
O43 - CFD: 2014/10/15 23:00:25 - [] D -- C:\Program Files (x86)\Tim
O43 - CFD: 2015/03/18 00:41:10 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/04/24 01:28:15 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2015/03/18 00:38:59 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/03/18 00:38:58 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/03/18 00:38:58 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 12:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/03/18 00:38:57 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/03/18 00:38:58 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/11/07 01:42:20 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 12:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/05/10 21:31:03 - [] D -- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 2015/03/18 00:41:05 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/03/18 00:41:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/18 00:41:05 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/01/04 23:38:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Panorama Maker 6
O43 - CFD: 2013/11/07 01:42:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros Smart Net
O43 - CFD: 2013/11/14 08:57:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BizAgi
O43 - CFD: 2013/11/07 01:46:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
O43 - CFD: 2013/11/07 01:46:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
O43 - CFD: 2015/07/08 23:55:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
O43 - CFD: 2013/11/07 01:46:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Backup and Recovery
O43 - CFD: 2013/11/07 01:46:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/03/09 13:28:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2013/11/07 01:42:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HotSpot
O43 - CFD: 2013/11/07 01:46:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2014/07/06 20:10:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2015/04/28 22:40:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2014/04/24 00:04:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightworks
O43 - CFD: 2014/01/04 23:29:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon
O43 - CFD: 2013/08/22 12:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/04 23:45:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2014/05/09 20:14:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Money Plus
O43 - CFD: 2015/05/03 22:05:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/05/16 11:38:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2013/11/07 01:46:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
O43 - CFD: 2014/01/04 23:32:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2
O43 - CFD: 2013/11/11 07:49:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2014/08/28 00:10:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time
O43 - CFD: 2015/04/28 22:43:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB
O43 - CFD: 2014/04/16 23:41:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RescuePRO
O43 - CFD: 2014/04/16 23:51:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RescuePRO Deluxe
O43 - CFD: 2014/07/08 23:52:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard 2.0
O43 - CFD: 2013/08/22 12:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/03/18 00:41:05 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/09/30 00:59:00 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/10/15 23:00:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tim
O43 - CFD: 2014/01/04 23:30:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2
O43 - CFD: 2014/01/22 22:29:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/05/10 21:31:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2014/08/05 19:41:48 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2015/07/24 01:32:11 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/07/06 17:16:58 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2013/10/26 21:22:02 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2013/08/22 11:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/06/16 17:47:19 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 2014/05/24 13:13:06 - [] D -- C:\ProgramData\Baidu Security
O43 - CFD: 2012/11/27 20:57:12 - [] D -- C:\ProgramData\CLSK
O43 - CFD: 2013/11/07 01:42:22 - [] D -- C:\ProgramData\Conexant
O43 - CFD: 2014/01/22 21:06:44 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2013/05/22 18:46:08 - [0] SHD -- C:\ProgramData\Dados de Aplicativos
O43 - CFD: 2015/05/11 01:12:57 - [] D -- C:\ProgramData\DatacardService
O43 - CFD: 2015/06/20 04:09:47 - [] D -- C:\ProgramData\Dell
O43 - CFD: 2013/08/22 11:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/05/22 18:46:08 - [0] SHD -- C:\ProgramData\Documentos
O43 - CFD: 2013/08/22 11:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/01/04 23:31:12 - [] D -- C:\ProgramData\EnterNHelp
O43 - CFD: 2015/03/02 23:41:17 - [] D -- C:\ProgramData\GAS Tecnologia
O43 - CFD: 2015/08/06 04:41:01 - [] D -- C:\ProgramData\GbPlugin
O43 - CFD: 2014/04/24 00:04:10 - [] D -- C:\ProgramData\Geevs
O43 - CFD: 2012/11/27 21:01:01 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2013/05/22 18:53:54 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/03/24 09:35:22 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 2015/08/04 23:45:05 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/08/22 21:09:40 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2013/05/22 18:46:08 - [0] SHD -- C:\ProgramData\Menu Iniciar
O43 - CFD: 2015/03/24 16:05:50 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/05/22 23:52:49 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2013/05/22 18:46:08 - [0] SHD -- C:\ProgramData\Modelos
O43 - CFD: 2014/07/08 23:52:28 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2014/01/05 09:44:03 - [] D -- C:\ProgramData\Nikon
O43 - CFD: 2014/06/11 00:27:10 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2013/11/11 07:50:17 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/04/28 22:41:09 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/02/02 23:20:20 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/06/29 21:56:21 - [] D -- C:\ProgramData\PC-Doctor for Windows
O43 - CFD: 2015/06/29 21:55:13 - [] D -- C:\ProgramData\PCDr
O43 - CFD: 2013/11/07 01:42:31 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2015/07/25 19:13:48 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2014/07/08 23:42:22 - [] D -- C:\ProgramData\Seagate
O43 - CFD: 2015/08/01 12:10:03 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/22 11:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/06/09 23:27:29 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/03/20 22:43:42 - [] D -- C:\ProgramData\SupportAssistAgent
O43 - CFD: 2014/07/11 00:19:53 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2013/08/22 11:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2014/10/15 23:00:25 - [] D -- C:\ProgramData\Tim
O43 - CFD: 2015/06/17 00:14:49 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 2015/07/18 00:21:00 - [] D -- C:\ProgramData\Uimiieavgus
O43 - CFD: 2014/01/04 23:31:12 - [] D -- C:\ProgramData\Ultima_T15
O43 - CFD: 2015/03/20 18:40:29 - [] HDC -- C:\ProgramData\{6AACA38B-2810-4B47-BDEC-D7A1F38B1531}
O43 - CFD: 2015/06/17 00:11:07 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 2015/07/24 01:32:26 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/07/06 20:08:32 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2014/01/04 23:38:51 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft
O43 - CFD: 2012/11/27 20:52:27 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 2012/11/27 20:58:18 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2015/07/25 19:13:47 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2014/01/04 23:37:48 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2012/11/27 20:35:43 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2012/11/27 21:16:05 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 2015/04/28 22:40:32 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2014/08/22 21:09:01 - [] D -- C:\Program Files (x86)\Common Files\mcafee
O43 - CFD: 2014/05/09 20:14:31 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2014/07/08 23:52:39 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2014/01/04 23:31:20 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 2012/11/27 20:48:07 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2012/11/27 20:53:12 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 2013/08/22 12:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/03/18 00:38:53 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2012/11/27 21:06:29 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2014/05/03 08:30:22 - [] D -- C:\Users\Evanio\AppData\Roaming\Adobe
O43 - CFD: 2014/07/06 17:43:23 - [] D -- C:\Users\Evanio\AppData\Roaming\Apple Computer
O43 - CFD: 2014/01/04 23:39:14 - [] D -- C:\Users\Evanio\AppData\Roaming\ArcSoft
O43 - CFD: 2013/05/22 18:54:02 - [] D -- C:\Users\Evanio\AppData\Roaming\Atheros
O43 - CFD: 2013/11/24 16:37:23 - [] D -- C:\Users\Evanio\AppData\Roaming\Baidu Security
O43 - CFD: 2013/11/14 09:07:06 - [] D -- C:\Users\Evanio\AppData\Roaming\BizAgi Ltd
O43 - CFD: 2014/01/22 21:06:22 - [] D -- C:\Users\Evanio\AppData\Roaming\CyberLink
O43 - CFD: 2015/07/15 23:49:54 - [] D -- C:\Users\Evanio\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2014/05/17 19:00:22 - [] D -- C:\Users\Evanio\AppData\Roaming\Google
O43 - CFD: 2013/05/22 19:09:01 - [] D -- C:\Users\Evanio\AppData\Roaming\Identities
O43 - CFD: 2013/05/22 18:55:01 - [] D -- C:\Users\Evanio\AppData\Roaming\Intel Corporation
O43 - CFD: 2013/11/14 09:07:07 - [] D -- C:\Users\Evanio\AppData\Roaming\IsolatedStorage
O43 - CFD: 2013/05/22 18:52:06 - [] D -- C:\Users\Evanio\AppData\Roaming\Leadertech
O43 - CFD: 2013/05/22 18:52:28 - [] D -- C:\Users\Evanio\AppData\Roaming\Macromedia
O43 - CFD: 2013/10/30 18:07:32 - [] D -- C:\Users\Evanio\AppData\Roaming\Media Player Classic
O43 - CFD: 2014/02/28 00:33:56 - [] SD -- C:\Users\Evanio\AppData\Roaming\Microsoft
O43 - CFD: 2015/07/25 19:06:07 - [] D -- C:\Users\Evanio\AppData\Roaming\Mozilla
O43 - CFD: 2013/09/02 23:31:56 - [] D -- C:\Users\Evanio\AppData\Roaming\MP3Rocket
O43 - CFD: 2014/07/09 00:00:36 - [] D -- C:\Users\Evanio\AppData\Roaming\Nero
O43 - CFD: 2014/01/04 23:39:40 - [] D -- C:\Users\Evanio\AppData\Roaming\Nikon
O43 - CFD: 2014/07/17 11:29:18 - [] D -- C:\Users\Evanio\AppData\Roaming\PCDr
O43 - CFD: 2014/08/30 23:26:25 - [] D -- C:\Users\Evanio\AppData\Roaming\PopcornTime
O43 - CFD: 2014/07/08 23:42:19 - [] D -- C:\Users\Evanio\AppData\Roaming\Seagate
O43 - CFD: 2015/08/01 12:09:50 - [] D -- C:\Users\Evanio\AppData\Roaming\Skype
O43 - CFD: 2015/06/17 00:13:53 - [] D -- C:\Users\Evanio\AppData\Roaming\TuneUp Software
O43 - CFD: 2014/08/29 01:00:15 - [] D -- C:\Users\Evanio\AppData\Roaming\uTorrent
O43 - CFD: 2014/01/22 21:07:37 - [] D -- C:\Users\Evanio\AppData\Roaming\WebApp
O43 - CFD: 2014/01/22 22:36:46 - [] D -- C:\Users\Evanio\AppData\Roaming\WinRAR
O43 - CFD: 2015/08/06 04:43:52 - [] D -- C:\Users\Evanio\AppData\Roaming\ZHP
O43 - CFD: 2014/05/03 08:30:22 - [] D -- C:\Users\Evanio\AppData\Local\Adobe
O43 - CFD: 2013/10/26 21:20:47 - [] D -- C:\Users\Evanio\AppData\Local\Apple
O43 - CFD: 2013/10/26 21:25:18 - [] D -- C:\Users\Evanio\AppData\Local\Apple Computer
O43 - CFD: 2013/11/14 09:07:06 - [] D -- C:\Users\Evanio\AppData\Local\BizAgi Ltd
O43 - CFD: 2013/05/22 18:54:30 - [] D -- C:\Users\Evanio\AppData\Local\BMExplorer
O43 - CFD: 2014/03/01 07:14:08 - [0] D -- C:\Users\Evanio\AppData\Local\cache
O43 - CFD: 2013/05/22 18:54:00 - [] D -- C:\Users\Evanio\AppData\Local\Conexant
O43 - CFD: 2013/11/03 22:29:28 - [] D -- C:\Users\Evanio\AppData\Local\CrashDumps
O43 - CFD: 2014/01/22 21:10:14 - [] D -- C:\Users\Evanio\AppData\Local\Cyberlink
O43 - CFD: 2013/11/07 01:36:54 - [0] SHD -- C:\Users\Evanio\AppData\Local\Dados de Aplicativos
O43 - CFD: 2015/07/19 18:19:05 - [0] D -- C:\Users\Evanio\AppData\Local\Diagnostics
O43 - CFD: 2014/01/04 23:32:15 - [] D -- C:\Users\Evanio\AppData\Local\Downloaded Installations
O43 - CFD: 2013/12/25 15:38:00 - [0] D -- C:\Users\Evanio\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/20 06:41:34 - [0] SHD -- C:\Users\Evanio\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/20 06:41:34 - [0] SHD -- C:\Users\Evanio\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/20 06:41:34 - [0] SHD -- C:\Users\Evanio\AppData\Local\EmieUserList
O43 - CFD: 2014/01/31 20:47:32 - [] D -- C:\Users\Evanio\AppData\Local\GAS Tecnologia
O43 - CFD: 2015/07/24 01:07:22 - [] D -- C:\Users\Evanio\AppData\Local\Google
O43 - CFD: 2015/07/18 00:10:25 - [] D -- C:\Users\Evanio\AppData\Local\GWX
O43 - CFD: 2013/11/07 01:36:54 - [0] SHD -- C:\Users\Evanio\AppData\Local\Histórico
O43 - CFD: 2013/11/14 09:07:07 - [] D -- C:\Users\Evanio\AppData\Local\IsolatedStorage
O43 - CFD: 2014/10/14 22:10:42 - [] D -- C:\Users\Evanio\AppData\Local\JDownloader v2.0
O43 - CFD: 2014/04/16 23:52:06 - [] D -- C:\Users\Evanio\AppData\Local\LC Technology Inc
O43 - CFD: 2015/07/19 18:04:54 - [] D -- C:\Users\Evanio\AppData\Local\Lenovo
O43 - CFD: 2015/03/24 16:05:47 - [] D -- C:\Users\Evanio\AppData\Local\Microsoft
O43 - CFD: 2013/06/09 00:45:43 - [] D -- C:\Users\Evanio\AppData\Local\Microsoft Help
O43 - CFD: 2015/07/25 19:06:06 - [] D -- C:\Users\Evanio\AppData\Local\Mozilla
O43 - CFD: 2014/01/04 23:39:40 - [] D -- C:\Users\Evanio\AppData\Local\Nikon
O43 - CFD: 2013/11/11 07:51:03 - [] D -- C:\Users\Evanio\AppData\Local\NVIDIA
O43 - CFD: 2015/08/06 04:27:33 - [] D -- C:\Users\Evanio\AppData\Local\Packages
O43 - CFD: 2014/03/03 23:00:40 - [] D -- C:\Users\Evanio\AppData\Local\Paint.NET
O43 - CFD: 2013/05/22 18:53:59 - [] D -- C:\Users\Evanio\AppData\Local\Power2Go8
O43 - CFD: 2013/08/05 20:37:24 - [] D -- C:\Users\Evanio\AppData\Local\Programs
O43 - CFD: 2014/09/13 10:52:35 - [] D -- C:\Users\Evanio\AppData\Local\Skype
O43 - CFD: 2015/08/06 04:43:29 - [] D -- C:\Users\Evanio\AppData\Local\Temp
O43 - CFD: 2013/11/07 01:36:54 - [0] SHD -- C:\Users\Evanio\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/06/17 00:13:53 - [] D -- C:\Users\Evanio\AppData\Local\TuneUp Software
O43 - CFD: 2014/03/31 23:38:27 - [] D -- C:\Users\Evanio\AppData\Local\VirtualStore
O43 - CFD: 2014/11/12 23:35:24 - [] D -- C:\Users\Evanio\AppData\Local\Windows Live
O43 - CFD: 2013/08/22 12:36:32 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/08/22 12:36:32 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/30 23:49:35 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/11/21 07:31:00 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
O43 - CFD: 2015/01/21 21:54:46 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast
O43 - CFD: 2014/02/26 00:52:32 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
O43 - CFD: 2013/08/22 12:36:32 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/04/30 19:38:23 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014
O43 - CFD: 2015/04/28 22:42:38 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2015
O43 - CFD: 2015/07/30 23:49:35 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/11/07 01:39:07 - [] RD -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2014/02/28 22:54:02 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
O43 - CFD: 2014/01/22 22:29:26 - [] D -- C:\Users\Evanio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Lista dos drivers do sistema (SDL) (O58) (84) - 2s
O58 - SDL:2013/08/22 09:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896]
O58 - SDL:2013/08/22 09:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2013/08/22 09:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 09:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 09:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952]
O58 - SDL:2012/07/12 04:04:30 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\WINDOWS\System32\drivers\Apfiltr.sys [445304]
O58 - SDL:2013/08/22 09:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016]
O58 - SDL:2012/07/31 23:51:44 A . (.Windows (R) Win 7 DDK provider - BulkUsb Driver.) -- C:\WINDOWS\System32\drivers\AthDfu.sys [55448]
O58 - SDL:2013/06/18 11:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256]
O58 - SDL:2013/03/01 08:21:40 A . (.Blue Coat Systems, Inc. - K9 Web Protection Driver (WFP).) -- C:\WINDOWS\System32\drivers\bckd.sys [127216]
O58 - SDL:2013/08/12 20:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2014/01/21 11:14:40 A . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\WINDOWS\System32\drivers\Bfilter.sys [52032]
O58 - SDL:2014/01/21 11:14:50 A . (.Baidu, Inc. - Baidu FS Monitor Driver.) -- C:\WINDOWS\System32\drivers\Bfmon.sys [34624]
O58 - SDL:2014/01/21 07:01:36 A . (.Baidu, Inc. - Baidu Antivirus Selfprotect Driver.) -- C:\WINDOWS\System32\drivers\Bprotect.sys [128992]
O58 - SDL:2012/07/31 17:51:46 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\WINDOWS\System32\drivers\btath_a2dp.sys [344216]
O58 - SDL:2012/07/31 17:51:46 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\WINDOWS\System32\drivers\btath_avdt.sys [114840]
O58 - SDL:2012/07/31 17:51:46 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_flt.sys [88728]
O58 - SDL:2012/07/31 17:51:48 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\WINDOWS\System32\drivers\btath_hcrp.sys [178840]
O58 - SDL:2012/07/31 17:51:48 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_lwflt.sys [76952]
O58 - SDL:2012/07/31 17:51:50 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\WINDOWS\System32\drivers\btath_rcp.sys [135832]
O58 - SDL:2014/04/28 06:33:30 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240]
O58 - SDL:2013/08/22 09:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2012/06/05 17:54:18 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1607328]
O58 - SDL:2012/06/25 09:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536]
O58 - SDL:2013/10/23 23:22:18 A . (.Connectify - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\cnnctfy3.sys [35352]
O58 - SDL:2015/08/05 07:23:25 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\cwixu.sys [79064]
O58 - SDL:2015/02/26 13:00:46 A . (.Dell Computer Corporation - DDDriver.sys.) -- C:\WINDOWS\System32\drivers\DDDriver64Dcsa.sys [23760]
O58 - SDL:2015/02/26 13:00:46 A . (.Dell Computer Corporation - DellProf.sys.) -- C:\WINDOWS\System32\drivers\DellProf.sys [23312]
O58 - SDL:2012/08/05 03:22:10 A . (.OSR Open Systems Resources, Inc. - Airplane Mode Switch Driver.) -- C:\WINDOWS\System32\drivers\DellRbtn.sys [10752]
O58 - SDL:2013/08/22 09:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024]
O58 - SDL:2015/08/06 04:44:11 A . (.GAS Tecnologia - GAS Tecnologia - FAC.) -- C:\WINDOWS\System32\drivers\gbpddfac64.sys [28888]
O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2012/07/02 20:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784]
O58 - SDL:2013/08/22 09:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 15:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 16:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2012/10/27 00:02:10 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [651832]
O58 - SDL:2013/08/09 21:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 09:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2013/10/03 22:42:44 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4185600]
O58 - SDL:2012/06/19 12:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528]
O58 - SDL:2013/09/26 06:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320]
O58 - SDL:2014/01/31 17:56:34 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [33616]
O58 - SDL:2013/09/26 06:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032]
O58 - SDL:2013/06/18 11:44:59 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [129224]
O58 - SDL:2012/07/31 23:51:56 A . (.Atheros - Bluetooth Low Engergy Hid Driver.) -- C:\WINDOWS\System32\drivers\leath_hid.sys [39704]
O58 - SDL:2013/08/22 09:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 09:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 09:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 09:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2013/06/07 13:39:00 A . (.MBB Incorporated - CDROM Filter.) -- C:\WINDOWS\System32\drivers\massfilter.sys [12288]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/08/05 00:02:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2013/08/22 09:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 09:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 09:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840]
O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216]
O58 - SDL:2013/07/25 15:53:46 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl64.sys [23040]
O58 - SDL:2013/10/23 07:30:23 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [12572960]
O58 - SDL:2013/10/23 07:30:23 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [32544]
O58 - SDL:2013/08/22 09:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 09:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288]
O58 - SDL:2012/08/01 05:57:52 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\WINDOWS\System32\drivers\nvstusb.sys [445288]
O58 - SDL:2013/09/27 20:01:44 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [39200]
O58 - SDL:2012/07/31 23:51:56 A . (.Qualcomm Atheros Communications Inc. - Qualcomm Atheros UART bus emulator for Blue.) -- C:\WINDOWS\System32\drivers\qca_shb.sys [99328]
O58 - SDL:2012/06/15 18:50:46 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUVStor.sys [315536]
O58 - SDL:2013/08/22 12:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 09:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 09:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2013/08/20 06:02:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [103576]
O58 - SDL:2013/08/20 06:02:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [204568]
O58 - SDL:2013/08/22 09:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072]
O58 - SDL:2011/08/24 11:56:28 A . (.Windows (R) Win 7 DDK provider - Spyware Terminator 2012 driver.) -- C:\WINDOWS\System32\drivers\stflt.sys [51496]
O58 - SDL:2013/06/20 22:09:44 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42184]
O58 - SDL:2012/05/30 12:10:50 A . (.Intel(R) Corporation - TurboB Device Driver.) -- C:\WINDOWS\System32\drivers\TurboB.sys [16168]
O58 - SDL:2012/12/14 23:03:00 A . (.MBB - Mobile Broadband NDIS 6.20 Miniport Driver.) -- C:\WINDOWS\System32\drivers\usb2mbim7.sys [209920]
O58 - SDL:2012/12/13 13:13:06 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\usb2serials.sys [82944]
O58 - SDL:2012/12/13 13:50:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2013/08/22 09:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808]
O58 - SDL:2013/08/22 09:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 09:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504]
O58 - SDL:2012/07/24 07:44:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athw8x.sys [3618304]
O58 - SDL:2014/08/25 10:10:04 A . (.Basil's Projects - WinDivert network packet capture and (re)in.) -- C:\WINDOWS\System32\WinDivert64.sys [37592]

---\\ Últimos ficheiros alterados ou criados (Utilizador) (061) (12) - 14s
O61 - LFC: 2015/08/03 21:32:56 A . (.Avast Software s.r.o..) -- C:\Users\Evanio\Downloads\avast_free_antivirus_setup_online.exe [5500000]
O61 - LFC: 2015/08/06 04:19:55 A . (..) -- C:\Users\Evanio\AppData\Roaming\appdataFr2.bin [4]
O61 - LFC: 2015/08/01 11:44:30 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll01_08_2015_11_43_51.bin [1219]
O61 - LFC: 2015/08/03 21:07:44 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll03_08_2015_21_07_27.bin [1197]
O61 - LFC: 2015/08/03 23:25:28 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll03_08_2015_23_25_14.bin [1190]
O61 - LFC: 2015/08/06 04:40:48 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll06_08_2015_04_40_48.bin [6534]
O61 - LFC: 2015/07/30 23:57:08 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll30_07_2015_23_56_47.bin [1203]
O61 - LFC: 2015/07/30 23:57:37 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll30_07_2015_23_57_21.bin [1212]
O61 - LFC: 2015/07/31 00:05:01 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll31_07_2015_00_04_30.bin [1209]
O61 - LFC: 2015/08/01 11:43:18 A . (..) -- C:\Users\Evanio\AppData\LocalLow\Scpad\bradesco_logscpMIB.dll31_07_2015_00_31_28.bin [1210]
O61 - LFC: 2015/08/06 04:29:24 A . (..) -- C:\Users\Evanio\AppData\Local\Microsoft\Windows\INetCache\IE\ORG6DP5H\urlblockindex[1].bin [16]
O61 - LFC: 2015/08/06 04:30:04 A . (..) -- C:\Users\Evanio\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]

---\\ Associações Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de inicialização Internet (068) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe

---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) (1) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Listagem dos serviços iniciados pelo Svchost (SSS) (O83) (34) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\WINDOWS\System32\aelupsvc.dll [214528]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\WINDOWS\System32\certprop.dll [156160]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\WINDOWS\System32\certprop.dll [156160]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\WINDOWS\system32\srvsvc.dll [329216]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Política de Grupo.) -- C:\WINDOWS\System32\gpsvc.dll [1360896]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\WINDOWS\system32\seclogon.dll [31744]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\WINDOWS\System32\appinfo.dll [110080]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\WINDOWS\System32\eapsvc.dll [110592]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\WINDOWS\system32\schedsvc.dll [1265152]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\WINDOWS\system32\mmcss.dll [71168]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\WINDOWS\System32\browser.dll [135168]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [227328]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [339968]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\WINDOWS\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\WINDOWS\system32\kmsvc.dll [101376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Serviço de Estrutura de Localização do Wind.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Serviço Conta da Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\WINDOWS\system32\themeservice.dll [59392]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gerenciador de Instalação de Dispositivo.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Serviço Assistente de Conectividade de Rede.) -- C:\WINDOWS\System32\ncasvc.dll [166400]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\WINDOWS\System32\rasauto.dll [102912]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\WINDOWS\System32\rasmans.dll [542208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [226816]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\WINDOWS\System32\sens.dll [73728]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\WINDOWS\System32\ipnathlp.dll [452608]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [313344]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [3701760]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de tel.) -- C:\WINDOWS\System32\qmgr.dll [933376]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [640000]

---\\ Lista das exceções do FireWall (FirewallRules) (O87) (25) - 2s
O87 - FAEL: "UDP Query User{663D66F8-1CFC-466F-B567-982C0C849E7C}C:\program files (x86)\dell wireless\bluetooth suite\bttray.exe" [In-None-P17-TRUE] .(.Qualcomm Atheros - BtTray.) -- C:\program files (x86)\dell wireless\bluetooth suite\bttray.exe
O87 - FAEL: "TCP Query User{466B7E5B-BA01-4311-ADBC-1FEC91175C96}C:\program files (x86)\dell wireless\bluetooth suite\bttray.exe" [In-None-P6-TRUE] .(.Qualcomm Atheros - BtTray.) -- C:\program files (x86)\dell wireless\bluetooth suite\bttray.exe
O87 - FAEL: "UDP Query User{4CEF9FE4-459E-46D0-AAB8-B8236C35EEDA}C:\program files (x86)\dell wireless\bluetooth suite\btvstack.exe" [In-None-P17-TRUE] .(.Atheros Communications - Bluetooth Stack Server.) -- C:\program files (x86)\dell wireless\bluetooth suite\btvstack.exe
O87 - FAEL: "TCP Query User{5D0DF67A-3F38-4DAA-ABA6-852F2C62DAAA}C:\program files (x86)\dell wireless\bluetooth suite\btvstack.exe" [In-None-P6-TRUE] .(.Atheros Communications - Bluetooth Stack Server.) -- C:\program files (x86)\dell wireless\bluetooth suite\btvstack.exe
O87 - FAEL: "{37F36917-E492-4422-9F50-C0FC767C5390}" [Out-None-P6-TRUE] .(.Qualcomm Atheros - Win7UI.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Win7Ui.exe
O87 - FAEL: "{8D85C777-C777-436D-8EA7-22F37180FD91}" [Out-None-P6-TRUE] .(.Qualcomm Atheros - BtTray.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtTray.exe
O87 - FAEL: "{D61CE352-6CF1-4914-8251-D5400BE680EF}" [In-None-P6-TRUE] .(.Qualcomm Atheros - BtTray.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtTray.exe
O87 - FAEL: "{209F5663-ED07-4904-B0EC-888E673B5F37}" [In-None-P6-TRUE] .(.Atheros Communications - Bluetooth Stack Server.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Btvstack.exe
O87 - FAEL: "{E834FEF6-9B23-4D6F-A5C8-76E90780D2B8}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Evanio\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{8B56C6FE-258D-44AA-93EF-12617FC9ECBB}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Evanio\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "TCP Query User{2B30909B-2A7D-49F7-8924-38B83DC7273C}C:\users\evanio\desktop\utorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\evanio\desktop\utorrent.exe
O87 - FAEL: "UDP Query User{5C1B1D9A-F8E6-43E8-87A7-763F5DC71EDF}C:\users\evanio\desktop\utorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\evanio\desktop\utorrent.exe
O87 - FAEL: "TCP Query User{BAF89551-B257-45D5-AA93-F56D49242673}C:\users\evanio\desktop\utorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\evanio\desktop\utorrent.exe
O87 - FAEL: "UDP Query User{63C09005-D4DC-4CAF-ACC3-6E2C217EDBB8}C:\users\evanio\desktop\utorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\evanio\desktop\utorrent.exe
O87 - FAEL: "{25477E97-AF6D-4FE3-9B54-FBF87B45CF5F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Lightworks\Lightworks.exe
O87 - FAEL: "{2ADC29E2-C654-4D92-B33B-DFBBB5F762A1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Lightworks\Lightworks.exe
O87 - FAEL: "{95689E5E-C5FD-4CBF-8BDE-77CC0675DD49}" [In-None-P6-TRUE] .(.Editshare EMEA - Lightworks Editor Application.) -- C:\Program Files (x86)\Lightworks\ntcardvt.exe
O87 - FAEL: "{FC3FA995-2467-4736-9415-98E6CE4FF35B}" [In-None-P17-TRUE] .(.Editshare EMEA - Lightworks Editor Application.) -- C:\Program Files (x86)\Lightworks\ntcardvt.exe
O87 - FAEL: "TCP Query User{3D0FBB3B-F235-4071-B7EB-BFEA1F371C76}C:\program files (x86)\seagate\seagate dashboard 2.0\dashboard.exe" [In-None-P6-TRUE] .(.Seagate Technology LLC - Seagate Dashboard.) -- C:\program files (x86)\seagate\seagate dashboard 2.0\dashboard.exe
O87 - FAEL: "UDP Query User{7226315C-242A-4100-9FA4-ED87383F14AA}C:\program files (x86)\seagate\seagate dashboard 2.0\dashboard.exe" [In-None-P17-TRUE] .(.Seagate Technology LLC - Seagate Dashboard.) -- C:\program files (x86)\seagate\seagate dashboard 2.0\dashboard.exe
O87 - FAEL: "{4013D201-7809-4C5A-9665-8A6DC3363CA9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe
O87 - FAEL: "{781BCB78-E209-42CF-8683-858385A39E91}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe
O87 - FAEL: "{9F3DEEB8-DD34-4805-9298-1E1D735977AB}" [In-None-P6-TRUE] .(.Popcorn Time - Popcorn Time Updater.) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeUpdater.exe
O87 - FAEL: "{FE228635-17E2-48A8-A26E-F00B8AE9A2FC}" [In-None-P17-TRUE] .(.Popcorn Time - Popcorn Time Updater.) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeUpdater.exe
O87 - FAEL: "{8E610669-DD58-490C-BD44-05FC51A21AD0}" [In-None-P17-TRUE] .(.GAS Tecnologia LTDA - GAS Tecnologia - Core.) -- C:\Program Files\Diebold\Warsaw\core.exe

---\\ Scâner Aditional (088) (1) - 0s
~ Nenhum ítem malicioso o desnecessários foi encontrado.

---\\ Resumo dos elementos encontrados na sua estação de trabalho (1) - 0s
~ Nenhum ítem malicioso o desnecessários foi encontrado.

~ End of the scan, 24018 items in 93 seconds (883)(0)()

Publicité


Signaler le contenu de ce document

Publicité