cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.7.112 Por Nicolas Coolman (2015/08/7)
~ iniciado por Wendling (Administrator) (2015/08/07 21:15:31)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Status da versão: Version OK
~ Modo: Scanner
~ Relatório: C:\Users\Wendling\Desktop\ZHPDiag.txt
~ Relatório: C:\Users\Wendling\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Inicialização do sistema: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)

---\\ Navegadores Internet (3) - 1s
GCIE: Google Chrome v44.0.2403.130
MFIE: Mozilla Firefox 39.0 (x86 pt-BR) v39.0
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informações sobre os produtos Windows (4) - 1s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema (1) - 1s
Kaspersky Anti-Virus v15.0.2.361

---\\ Softwares d'optimização do sistema (1) - 1s
CCleaner v5.06

---\\ Monitoramento dos softwares (3) - 1s
Adobe Flash Player 16 ActiveX & Plugin 64-bit
Adobe Flash Player 18 NPAPI
Adobe Acrobat Reader DC - Português

---\\ Informações sobre o sistema (6) - 0s
~ Operating System: AMD64 Family 16 Model 10 Stepping 0, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8368.184 MB (72% free)
~ System Restore: Activé (Enable)
~ System drive C: has 60 GB free of 114 GB

---\\ Modo de conexão ao sistema (3) - 0s
~ Computer Name: WENDLING-PC
~ User Name: Wendling
~ Logged in as Administrator

---\\ Enumeração das unidades dos discos (3) - 0s
~ Drive C: has 60 GB free of 114 GB (System)
~ Drive E: has 439 GB free of 476 GB
~ Drive G: has 745 GB free of 952 GB

---\\ Estado do Centro de Segurança do Windows (16) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Pesquisa particular de ficheiros genéricos (23) - 0s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Windows Explorer.) () -- C:\Windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) () -- C:\Windows\System32\Wininit.exe [129024]
[MD5.E066FDC3A2074D926903B8C31EF3B347] - (.Microsoft Corporation - Internet Extensions para Win32.) () -- C:\Windows\System32\wininet.dll [2427392]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) () -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) () -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224]
[MD5.1877EB1495CFBDAB27D6A32F6DDF3818] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) () -- C:\Windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184]
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808]

---\\ Processos lançados (8) - 1s
[MD5.6BF0147A7A924E5A3AE049A95ECC9B34] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [246784] [PID.928]
[MD5.B7CC6DB515E9347EEC2FC19D4C09A962] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [672768] [PID.1180]
[MD5.9C7C876ACB9B707ECD08BD434C46A4D3] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe [194000] [PID.1140]
[MD5.CD421DDB5C6E5458CE52EDC36DE7DC5B] - (...) -- C:\Windows\System32\PnkBstrA.exe [76152] [PID.1156]
[MD5.70AF0E844C9A684236B96E582D2B2E61] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avpui.exe [192768] [PID.2596]
[MD5.B0D709EF53A34AEF9EBEC9F024F857A5] - (.Raptr Inc. - Elevation Proxy.) -- C:\Program Files (x86)\Raptr\raptr_ep64.exe [149760] [PID.5076]
[MD5.76A12E1111EFB89E20903096D7C3CAF6] - (.Kaspersky Lab ZAO - Kaspersky Native Messaging Server for plugi.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\plugin-nm-server.exe [854824] [PID.5708]
[MD5.D7AA45AF3145D2871BC814F8B7BD7293] - (.Kaspersky Lab ZAO - WMI x64 Helper.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\wmi64.exe [20376] [PID.5432]

---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2 (13) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com.br/
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ogmlicblmiajmhbdggemakpjjeghfhka] Pically - Calendar Creator
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) (16) - 1s
P2 - EXT FILE: (...) -- C:\Users\Wendling\AppData\Roaming\Mozilla\Firefox\Profiles\yvb04pta.default-1422655926814\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\buscape.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mercadolivre.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-br.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-br.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@esn.me/esnsonar,version=0.70.4] - (.ESN Social Software AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
P2 - FPN: [HKLM] [@esn/esnlaunch,version=2.3.0] - (.ESN Social Software AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll
P2 - FPN: [HKLM] [@esn/npbattlelog,version=2.7.1] - (.EA Digital Illusions CE AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
P2 - FPN: [HKLM] [@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\content_blocker@kaspersky.com
P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\virtual_keyboard@kaspersky.com

---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4) (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com.br/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2

---\\ Internet Explorer, Gestão do Proxy (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Redireção do ficheiro Hosts (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (1)

---\\ Browser Helper Objects do navegador (O2) (5) - 1s
O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll
O2 - BHO: Safe Money Plugin [64Bits] - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Aplicações iniciadas por registo & pastas (O4) (6) - 0s
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Wendling\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [Raptr] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files (x86)\Raptr\raptrstub.exe
O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [Malwarebytes Anti-Exploit] C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe (.not file.)
O4 - HKUS\S-1-5-21-1735972694-2679632832-3279594583-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Wendling\AppData\Local\Microsoft\OneDrive\OneDrive.exe

---\\ Alteração Dominio/Clientes DNS (017) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = domain.name
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = domain.name

---\\ Lista dos serviços NT não Microsoft e não desativados (023) (9) - 0s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - AMD Fuel Service.) - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Servicio Kaspersky Anti-Virus 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe
O23 - Service: Serviço Atualização do Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\Windows\system32\EscSvc64.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe

---\\ Tarefas planificadas automaticamente (039) (22) - 4s
[MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512]
[MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512]
[MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLDE.EXE [679488]
[MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLDE.EXE [679488]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [902] =>.Adobe Systems Incorporated
O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job [1020] =>.Dropbox, Inc.
O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job [1024] =>.Dropbox, Inc.
O39 - APT: EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}.job [727] =>.SEIKO EPSON CORPORATION
O39 - APT: EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}.job [913] =>.SEIKO EPSON CORPORATION
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc.
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3840] =>.Adobe Systems Incorporated
O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore [3768] =>.Dropbox, Inc.
O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA [4020] =>.Dropbox, Inc.
O39 - APT: EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} [3794] =>.SEIKO EPSON CORPORATION
O39 - APT: EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} [3980] =>.SEIKO EPSON CORPORATION
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc.
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{3AACD3F9-AAF0-4355-AAC2-1896EF527A0E} [3086]

---\\ Software instalados (042) (88) - 9s
O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1
O42 - Logiciel: Adobe Flash Player 16 ActiveX & Plugin 64-bit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: EPSON XP-211 214 216 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON XP-211 214 216 Series
O42 - Logiciel: Malwarebytes Anti-Exploit version 1.07.1.1015 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Exploit_is1
O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client
O42 - Logiciel: WinRAR 5.00 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {426582A8-202F-D13C-8BD5-F00551BAFC93}
O42 - Logiciel: Epson Customer Participation - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {814FA673-A085-403C-9545-747FC1495069}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8B6CFE66-6961-3E02-3C57-9BA146AFB935}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8DF1EF50-AEB6-902C-F68C-4683C45784E6}
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8F2415FA-72F2-F029-0450-4EB2FAE484C5}
O42 - Logiciel: AMD Steady Video Plug-In - (.AMD.) [HKLM][64Bits] -- {94BFDEF9-D91D-4B5D-8A60-08514C7191AF}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C270821D-2479-D0F4-1BD1-7BBAF6762A98}
O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F6BF49D7-479E-23FE-A8A9-63D193D05697}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Shockwave Player + Authorware Web Player - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player + Authorware Web Player
O42 - Logiciel: MSI Afterburner 4.1.1 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner
O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: ESN Sonar - (.ESN Social Software AB.) [HKLM][64Bits] -- ESN Sonar-0.70.4
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: HD Tune Pro 5.60 - (.EFD Software.) [HKLM][64Bits] -- HD Tune Pro_is1
O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142}
O42 - Logiciel: K-Lite Mega Codec Pack 11.1.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: Mozilla Firefox 39.0 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 pt-BR)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Native Instruments Controller Editor - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Controller Editor
O42 - Logiciel: Native Instruments Guitar Rig 5 - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig 5
O42 - Logiciel: Native Instruments Guitar Rig Mobile I/O - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig Mobile I/O
O42 - Logiciel: Native Instruments Guitar Rig Session I/O - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig Session I/O
O42 - Logiciel: Native Instruments Rig Kontrol 3 - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Rig Kontrol 3
O42 - Logiciel: Native Instruments Service Center - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Service Center
O42 - Logiciel: Naviextras Toolbox - (.NNG Llc..) [HKLM][64Bits] -- Naviextras Toolbox
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin
O42 - Logiciel: Raptr - (...) [HKLM][64Bits] -- Raptr
O42 - Logiciel: RivaTuner Statistics Server 6.3.0 - (.Unwinder.) [HKLM][64Bits] -- RTSS
O42 - Logiciel: SpywareBlaster 5.2 - (.BrightFort LLC.) [HKLM][64Bits] -- SpywareBlaster_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam
O42 - Logiciel: Hitman: Absolution - (.IO Interactive.) [HKLM][64Bits] -- Steam App 203140
O42 - Logiciel: Saints Row IV - (.Deep Silver Volition.) [HKLM][64Bits] -- Steam App 206420
O42 - Logiciel: Don't Starve - (.Klei Entertainment.) [HKLM][64Bits] -- Steam App 219740
O42 - Logiciel: Don't Starve Together Beta - (.Klei Entertainment.) [HKLM][64Bits] -- Steam App 322330
O42 - Logiciel: Besiege - (.Spiderling Studios.) [HKLM][64Bits] -- Steam App 346010
O42 - Logiciel: Sniper Elite - (.Rebellion.) [HKLM][64Bits] -- Steam App 3700
O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850
O42 - Logiciel: Manual Epson XP-211_XP-214 versão 1.0 - (...) [HKLM][64Bits] -- UsersGuideManual Epson XP-211_XP-214_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142}
O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94}
O42 - Logiciel: Epson Event Manager - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {10144CFE-D76C-4CFA-81A1-37A1642349A3}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47}
O42 - Logiciel: Adobe Photoshop CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {15FEDA5F-141C-4127-8D7E-B962D1742728}
O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0}
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}
O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799}
O42 - Logiciel: Suporte para Aplicativos Apple - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D}
O42 - Logiciel: Adobe After Effects CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4817D846-700B-474E-A31B-80892B3E92E3}
O42 - Logiciel: Naviextras Toolbox Prerequesities - (.NNG Llc..) [HKLM][64Bits] -- {537575D6-3B96-474C-BD8F-DFF667363DBD}
O42 - Logiciel: Battlefield 1942™ - (.Electronic Arts.) [HKLM][64Bits] -- {5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Adobe Premiere Pro CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7176B973-6011-43C1-AEBC-2D73FE7C6982}
O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392}
O42 - Logiciel: Battlefield 4™ - (.Electronic Arts.) [HKLM][64Bits] -- {ABADE36E-EC37-413B-8179-B432AD3FACE7}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Acrobat Reader DC - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-AC0F074E4100}
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1}
O42 - Logiciel: The Sims™ 3 - (.Electronic Arts.) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}
O42 - Logiciel: aTube Catcher versão 3.8 - (.DsNET Corp.) [HKLM][64Bits] -- {D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1
O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {D60071DB-459C-465C-92EF-336E65F1A436}
O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FE23D063-934D-4829-A0D8-00634CE79B4A}
O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (121) - 9s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\ASIO4ALL
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins
HKLM\SOFTWARE\Wow6432Node\bethesda softworks
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\Dropbox
HKLM\SOFTWARE\Wow6432Node\DropboxUpdate
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\EpsonNet
HKLM\SOFTWARE\Wow6432Node\ESN Launcher
HKLM\SOFTWARE\Wow6432Node\ESN Sonar-0.70.4
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MSI
HKLM\SOFTWARE\Wow6432Node\My Company Name
HKLM\SOFTWARE\Wow6432Node\Native Instruments
HKLM\SOFTWARE\Wow6432Node\Naviextras
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\Overwolf
HKLM\SOFTWARE\Wow6432Node\Propellerhead Software
HKLM\SOFTWARE\Wow6432Node\Raptr
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\SEIKO EPSON CORPORATION
HKLM\SOFTWARE\Wow6432Node\Sims
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SpywareBlaster
HKLM\SOFTWARE\Wow6432Node\Swearware
HKLM\SOFTWARE\Wow6432Node\Unwinder
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Even Balance
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASIO4ALL v2 by Wuschel
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Battlefield 1942
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DropboxUpdate
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\EFD Software
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IO Interactive
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\MSI
HKCU\SOFTWARE\Native Instruments
HKCU\SOFTWARE\Naviextras
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\PACE Anti-Piracy
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\SEIKO EPSON CORPORATION
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Spiderling Games
HKCU\SOFTWARE\SpywareBlaster
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Unwinder
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Wget
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Conteúdo das pastas Programs (O43) (215) - 7s
O43 - CFD: 2015/07/11 10:39:06 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/07/11 10:37:48 - [] D -- C:\Program Files (x86)\Adobe Media Player
O43 - CFD: 2015/07/22 18:51:04 - [] D -- C:\Program Files (x86)\AMD
O43 - CFD: 2015/06/23 13:33:54 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 2015/06/23 20:19:33 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/07/11 21:13:36 - [] D -- C:\Program Files (x86)\ASIO4ALL v2
O43 - CFD: 2015/06/24 20:12:03 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 2015/08/03 22:20:47 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/07/11 21:08:15 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 2015/07/30 18:28:27 - [] D -- C:\Program Files (x86)\Dropbox
O43 - CFD: 2015/06/23 20:20:50 - [] D -- C:\Program Files (x86)\DsNET Corp
O43 - CFD: 2015/06/25 12:21:03 - [] D -- C:\Program Files (x86)\epson
O43 - CFD: 2015/06/25 16:20:33 - [] D -- C:\Program Files (x86)\EPSON Software
O43 - CFD: 2015/06/22 22:24:53 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/08/07 20:55:15 - [] D -- C:\Program Files (x86)\HD Tune Pro
O43 - CFD: 2015/07/10 22:01:43 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/07/15 08:13:06 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/23 13:00:56 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/06/22 22:20:34 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 2015/08/03 19:31:12 - [] D -- C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 2015/06/22 22:30:08 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2015/06/22 22:30:06 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/06/25 12:58:16 - [] D -- C:\Program Files (x86)\Microsoft OneDrive
O43 - CFD: 2015/06/24 15:05:48 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2015/06/23 13:31:46 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/08/02 20:57:43 - [] D -- C:\Program Files (x86)\MKJogo
O43 - CFD: 2015/07/08 16:42:55 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/08 19:09:36 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/07/19 16:56:10 - [] D -- C:\Program Files (x86)\MSI Afterburner
O43 - CFD: 2015/07/01 22:05:40 - [] D -- C:\Program Files (x86)\My Company Name
O43 - CFD: 2015/07/06 22:04:40 - [] D -- C:\Program Files (x86)\Naviextras
O43 - CFD: 2015/07/27 18:14:05 - [] D -- C:\Program Files (x86)\Origin
O43 - CFD: 2015/07/11 10:18:20 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 2015/07/28 21:32:48 - [] D -- C:\Program Files (x86)\Raptr
O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/07/19 16:56:14 - [] D -- C:\Program Files (x86)\RivaTuner Statistics Server
O43 - CFD: 2015/07/17 18:36:14 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/07/14 23:18:14 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2009/07/14 01:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2015/06/23 19:26:10 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/06/23 22:36:57 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/23 22:37:02 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 00:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/11 00:32:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/22 21:58:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/11 10:37:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
O43 - CFD: 2015/08/03 19:20:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
O43 - CFD: 2015/06/23 19:01:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
O43 - CFD: 2015/06/23 20:20:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
O43 - CFD: 2015/07/03 18:19:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 1942
O43 - CFD: 2015/06/24 13:10:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
O43 - CFD: 2015/07/02 06:47:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4
O43 - CFD: 2015/06/23 13:14:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/07/11 21:08:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2015/07/30 18:28:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 2015/06/25 12:21:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/06/25 12:38:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
O43 - CFD: 2015/07/10 22:01:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/06/22 22:24:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/08/07 20:55:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro
O43 - CFD: 2015/06/22 22:16:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/06/22 22:20:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2015/08/03 19:31:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus
O43 - CFD: 2009/07/14 01:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/06/22 22:33:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/06/24 13:18:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
O43 - CFD: 2015/07/04 23:05:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager
O43 - CFD: 2015/06/24 13:01:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
O43 - CFD: 2015/07/11 10:18:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2015/07/11 00:15:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/19 14:26:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
O43 - CFD: 2009/07/14 01:54:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/06/23 19:25:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2010/11/21 06:48:04 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/17 18:36:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 2015/06/23 19:26:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/06/22 22:17:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/07/11 10:38:04 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/08/03 19:20:33 - [] D -- C:\ProgramData\AMD
O43 - CFD: 2015/06/23 20:19:33 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2015/07/11 10:18:05 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/08/03 19:20:56 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Dados de aplicativos
O43 - CFD: 2015/07/11 21:08:47 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Documentos
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/07/06 12:35:39 - [] D -- C:\ProgramData\Dropbox
O43 - CFD: 2015/06/24 20:10:48 - [] D -- C:\ProgramData\EA Core
O43 - CFD: 2015/07/04 22:49:55 - [] D -- C:\ProgramData\EA Logs
O43 - CFD: 2015/06/24 20:10:53 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 2015/06/25 12:35:28 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Favoritos
O43 - CFD: 2015/08/07 20:55:48 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 2015/08/03 21:41:49 - [] D -- C:\ProgramData\Licenses
O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Menu Iniciar
O43 - CFD: 2015/07/11 00:14:10 - [] ASD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/15 00:14:08 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/06/25 12:58:07 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Modelos
O43 - CFD: 2015/06/22 22:21:00 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/07/11 21:09:23 - [] D -- C:\ProgramData\Native Instruments
O43 - CFD: 2015/06/23 13:01:05 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/08/06 17:55:19 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2015/07/01 22:08:56 - [] D -- C:\ProgramData\PACE Anti-Piracy
O43 - CFD: 2015/06/22 22:14:48 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/07/11 10:38:56 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2015/07/30 18:30:30 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 2015/07/17 18:36:19 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/06/23 13:00:41 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/08/03 22:20:55 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/06/25 12:22:18 - [] D -- C:\ProgramData\UDL
O43 - CFD: 2015/07/11 21:09:23 - [] HDC -- C:\ProgramData\{30FA7941-4170-4C83-A9A8-FDF01C431704}
O43 - CFD: 2015/07/11 21:09:32 - [] HDC -- C:\ProgramData\{5A23829C-A66E-47B0-AD50-21A3FFE6C325}
O43 - CFD: 2015/07/11 21:09:11 - [] HDC -- C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14}
O43 - CFD: 2015/07/11 21:10:54 - [] HDC -- C:\ProgramData\{B0CAD5CC-867E-473E-B55F-339F9635A45D}
O43 - CFD: 2015/07/11 21:11:47 - [] HDC -- C:\ProgramData\{B7072B15-6E80-42FF-A9AE-4E62AF2B2418}
O43 - CFD: 2015/07/11 21:10:20 - [] HDC -- C:\ProgramData\{CB28D9D3-6B5D-4AFA-BA37-B4AFAAAF71B9}
O43 - CFD: 2015/07/11 10:38:12 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/07/01 22:05:09 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2015/07/11 10:17:41 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2015/06/23 13:33:53 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\Program Files (x86)\Common Files\Avid
O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\Program Files (x86)\Common Files\Digidesign
O43 - CFD: 2015/07/03 18:19:45 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 2015/07/05 13:14:12 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/06/23 13:00:41 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/06/23 23:13:58 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2015/07/01 22:05:44 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/07/11 00:15:26 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/07/01 22:05:44 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/06/23 19:37:23 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/06/23 22:37:02 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/07/11 13:03:34 - [] D -- C:\Users\Wendling\AppData\Roaming\Adobe
O43 - CFD: 2015/06/24 21:10:01 - [] D -- C:\Users\Wendling\AppData\Roaming\AMD
O43 - CFD: 2015/07/11 10:33:40 - [] D -- C:\Users\Wendling\AppData\Roaming\Apple Computer
O43 - CFD: 2015/06/23 16:00:19 - [] D -- C:\Users\Wendling\AppData\Roaming\ATI
O43 - CFD: 2015/07/16 18:08:00 - [] D -- C:\Users\Wendling\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2015/07/06 12:37:31 - [] D -- C:\Users\Wendling\AppData\Roaming\Dropbox
O43 - CFD: 2015/06/25 16:20:38 - [] D -- C:\Users\Wendling\AppData\Roaming\EPSON
O43 - CFD: 2015/08/07 20:57:02 - [] D -- C:\Users\Wendling\AppData\Roaming\HD Tune Pro
O43 - CFD: 2015/06/22 22:02:32 - [] D -- C:\Users\Wendling\AppData\Roaming\Identities
O43 - CFD: 2015/06/25 12:25:49 - [] D -- C:\Users\Wendling\AppData\Roaming\Leadertech
O43 - CFD: 2015/06/23 19:01:41 - [] D -- C:\Users\Wendling\AppData\Roaming\library_dir
O43 - CFD: 2015/07/30 18:30:47 - [] D -- C:\Users\Wendling\AppData\Roaming\LolClient
O43 - CFD: 2015/06/22 22:24:52 - [] D -- C:\Users\Wendling\AppData\Roaming\Macromedia
O43 - CFD: 2010/11/21 06:48:04 - [0] D -- C:\Users\Wendling\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/07/22 18:51:04 - [] SD -- C:\Users\Wendling\AppData\Roaming\Microsoft
O43 - CFD: 2015/06/22 22:23:31 - [] D -- C:\Users\Wendling\AppData\Roaming\Mozilla
O43 - CFD: 2015/06/23 18:58:15 - [] D -- C:\Users\Wendling\AppData\Roaming\MPC-HC
O43 - CFD: 2015/07/06 22:05:32 - [] D -- C:\Users\Wendling\AppData\Roaming\naviextras
O43 - CFD: 2015/06/23 22:42:51 - [] D -- C:\Users\Wendling\AppData\Roaming\Origin
O43 - CFD: 2015/07/01 22:08:56 - [] D -- C:\Users\Wendling\AppData\Roaming\PACE Anti-Piracy
O43 - CFD: 2015/08/07 20:44:32 - [] D -- C:\Users\Wendling\AppData\Roaming\Raptr
O43 - CFD: 2015/08/06 22:35:13 - [] D -- C:\Users\Wendling\AppData\Roaming\Skype
O43 - CFD: 2015/07/22 21:08:21 - [] D -- C:\Users\Wendling\AppData\Roaming\TS3Client
O43 - CFD: 2015/08/07 20:55:36 - [] D -- C:\Users\Wendling\AppData\Roaming\uTorrent
O43 - CFD: 2015/07/18 03:13:18 - [] D -- C:\Users\Wendling\AppData\Roaming\vlc
O43 - CFD: 2015/06/22 22:28:05 - [] D -- C:\Users\Wendling\AppData\Roaming\WinRAR
O43 - CFD: 2015/08/07 21:15:39 - [] D -- C:\Users\Wendling\AppData\Roaming\ZHP
O43 - CFD: 2015/07/18 12:46:10 - [] D -- C:\Users\Wendling\AppData\Local\Adobe
O43 - CFD: 2015/06/23 16:00:25 - [] D -- C:\Users\Wendling\AppData\Local\AMD
O43 - CFD: 2015/06/23 20:19:34 - [] D -- C:\Users\Wendling\AppData\Local\Apple
O43 - CFD: 2015/06/22 22:23:08 - [] D -- C:\Users\Wendling\AppData\Local\Apps
O43 - CFD: 2015/06/23 16:00:19 - [] D -- C:\Users\Wendling\AppData\Local\ATI
O43 - CFD: 2015/07/01 22:08:56 - [] HD -- C:\Users\Wendling\AppData\Local\bj9WeayFD
O43 - CFD: 2015/07/04 23:05:50 - [] D -- C:\Users\Wendling\AppData\Local\Black_Tree_Gaming
O43 - CFD: 2015/07/05 12:46:10 - [] D -- C:\Users\Wendling\AppData\Local\Blue_entertainment
O43 - CFD: 2015/07/20 20:06:57 - [] D -- C:\Users\Wendling\AppData\Local\CEF
O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Dados de aplicativos
O43 - CFD: 2015/06/22 22:23:34 - [0] D -- C:\Users\Wendling\AppData\Local\Deployment
O43 - CFD: 2015/08/07 20:44:16 - [] D -- C:\Users\Wendling\AppData\Local\Dropbox
O43 - CFD: 2015/08/05 07:30:43 - [] D -- C:\Users\Wendling\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/24 20:12:04 - [] D -- C:\Users\Wendling\AppData\Local\ESN
O43 - CFD: 2015/06/22 22:24:59 - [] D -- C:\Users\Wendling\AppData\Local\Google
O43 - CFD: 2015/06/29 22:19:30 - [] D -- C:\Users\Wendling\AppData\Local\GWX
O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Histórico
O43 - CFD: 2015/07/11 10:32:16 - [] D -- C:\Users\Wendling\AppData\Local\Microsoft
O43 - CFD: 2015/06/22 22:30:06 - [0] D -- C:\Users\Wendling\AppData\Local\Microsoft Help
O43 - CFD: 2015/06/22 22:21:14 - [] D -- C:\Users\Wendling\AppData\Local\Mozilla
O43 - CFD: 2015/07/11 21:15:25 - [] D -- C:\Users\Wendling\AppData\Local\Native Instruments
O43 - CFD: 2015/06/24 20:10:29 - [] D -- C:\Users\Wendling\AppData\Local\Origin
O43 - CFD: 2015/07/01 22:08:56 - [0] D -- C:\Users\Wendling\AppData\Local\PACE Anti-Piracy
O43 - CFD: 2015/06/22 22:20:16 - [] D -- C:\Users\Wendling\AppData\Local\Programs
O43 - CFD: 2015/07/05 12:33:22 - [] D -- C:\Users\Wendling\AppData\Local\PunkBuster
O43 - CFD: 2015/07/11 00:15:31 - [] D -- C:\Users\Wendling\AppData\Local\Skype
O43 - CFD: 2015/07/04 23:03:48 - [] D -- C:\Users\Wendling\AppData\Local\Skyrim
O43 - CFD: 2015/06/23 19:30:01 - [] D -- C:\Users\Wendling\AppData\Local\Steam
O43 - CFD: 2015/08/07 21:15:27 - [] AD -- C:\Users\Wendling\AppData\Local\Temp
O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/06/22 22:02:29 - [0] D -- C:\Users\Wendling\AppData\Local\VirtualStore
O43 - CFD: 2009/07/14 01:54:32 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/23 22:41:02 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/11 21:13:36 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
O43 - CFD: 2015/07/05 12:36:19 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2009/07/14 01:49:38 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/02 20:57:57 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo
O43 - CFD: 2015/07/19 14:29:50 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
O43 - CFD: 2015/07/06 22:04:43 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Naviextras
O43 - CFD: 2015/07/19 14:30:18 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
O43 - CFD: 2015/06/23 22:41:02 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/10 20:21:39 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2015/06/22 22:17:15 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53) (18) - 1s
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O53 - SMSR:HKLM\...\startupreg\AdobeCS5ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\AdobeCS6ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O53 - SMSR:HKLM\...\startupreg\Dropbox [Key] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
O53 - SMSR:HKLM\...\startupreg\EADM [Key] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O53 - SMSR:HKLM\...\startupreg\EEventManager [Key] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
O53 - SMSR:HKLM\...\startupreg\MK LOL [Key] . (...) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O53 - SMSR:HKLM\...\startupreg\Raptr [Key] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files (x86)\Raptr\raptrstub.exe
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe
O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\SwitchBoard [Key] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

---\\ Lista dos drivers do sistema (SDL) (O58) (67) - 1s
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/07/13 22:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2015/07/15 23:09:00 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [297672]
O58 - SDL:2012/12/03 22:49:38 A . (.Advanced Micro Devices Inc. - AMD miniIDE Driver.) -- C:\Windows\System32\drivers\amdide64.sys [11944]
O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/13 22:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2014/11/09 14:19:08 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4108288]
O58 - SDL:2015/07/15 07:20:32 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [96256]
O58 - SDL:2015/07/15 23:06:36 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [21622272]
O58 - SDL:2015/07/15 22:13:26 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [665088]
O58 - SDL:2009/06/10 17:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/13 22:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2009/06/10 17:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480]
O58 - SDL:2011/10/17 03:00:00 N . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224]
O58 - SDL:2011/10/17 03:00:00 N . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224]
O58 - SDL:2009/07/13 22:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2015/07/04 07:41:06 A . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- C:\Windows\System32\drivers\cm_km_w.sys [247016]
O58 - SDL:2015/07/11 21:08:15 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064]
O58 - SDL:2009/07/13 22:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2009/06/10 17:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016]
O58 - SDL:2009/06/10 17:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2010/11/21 00:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2011/03/11 03:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2009/07/13 22:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2015/07/04 07:41:06 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [478392]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Virtual Disk fre_wnet_x64.) -- C:\Windows\System32\drivers\kldisk.sys [64368]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [159960]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [225976]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [850608]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [39280]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x6.) -- C:\Windows\System32\drivers\klkbdflt.sys [40304]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [39280]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [24944]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [65208]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\drivers\klwtp.sys [85360]
O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\drivers\kneps.sys [190648]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2009/07/13 22:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2011/11/03 03:01:00 N . (.Rovi Corporation - Px Engine Device Driver for 64-bit Windows.) -- C:\Windows\System32\drivers\PxHlpa64.sys [56208]
O58 - SDL:2009/07/13 22:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/13 22:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2015/06/24 11:58:04 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [977624]
O58 - SDL:2009/06/10 17:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/13 22:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/13 22:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/13 22:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2014/10/31 04:44:34 A . (.VIA Technologies, Inc. - Framework Version of ViaHub3 Dynamic Bus En.) -- C:\Windows\System32\drivers\ViaHub3.sys [225792]
O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2014/10/31 04:44:28 A . (.VIA Technologies, Inc. - WDF Driver for VIA eXtensible Host Controll.) -- C:\Windows\System32\drivers\xhcdrv.sys [305664]

---\\ Últimos ficheiros alterados ou criados (Utilizador) (061) (17) - 2s
O61 - LFC: 2015/08/07 20:50:51 A . (.BitTorrent Inc..) -- C:\Users\Wendling\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe [1693024]
O61 - LFC: 2015/08/06 17:43:09 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server2.raptr.com [1217]
O61 - LFC: 2015/08/03 21:27:29 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server3.raptr.com [1217]
O61 - LFC: 2015/08/05 19:54:58 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server4.raptr.com [1217]
O61 - LFC: 2015/08/07 20:35:25 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server5.raptr.com [1217]
O61 - LFC: 2015/08/01 17:01:50 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server6.raptr.com [1217]
O61 - LFC: 2015/08/07 20:44:22 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server7.raptr.com [1217]
O61 - LFC: 2015/08/04 09:13:31 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server8.raptr.com [1217]
O61 - LFC: 2015/08/06 22:38:02 A . (..) -- C:\Users\Wendling\AppData\Roaming\AMD\GLCache\729ff77ca0da20e4_22.bin [30893]
O61 - LFC: 2015/08/06 21:54:49 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF4\pb\PnkBstrB.exe [226168]
O61 - LFC: 2015/08/06 21:55:00 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF4\pb\PnkBstrK.sys [138648]
O61 - LFC: 2015/08/05 20:47:36 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\pbcl.dll [1017232]
O61 - LFC: 2015/08/05 20:43:32 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\pbclold.dll [1017232]
O61 - LFC: 2015/08/05 20:47:37 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\PnkBstrB.exe [348360]
O61 - LFC: 2015/08/05 20:47:49 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\PnkBstrK.sys [138816]
O61 - LFC: 2015/08/07 20:55:51 A . (..) -- C:\Users\Wendling\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/08/07 20:44:09 A . (..) -- C:\Users\Wendling\AppData\Local\ATI\ACE\Manifest.Bin [30042]

---\\ Associações Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de inicialização Internet (068) (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe

---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) (2) - 6s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {600FB4BB-3F3B-4CDE-BFCB-496E4C6EE5D1} - (Google) - http://www.google.com/

---\\ Listagem dos serviços iniciados pelo Svchost (SSS) (O83) (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [680960]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [683520]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2603008]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\system32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536]

---\\ Lista das exceções do FireWall (FirewallRules) (O87) (26) - 1s
O87 - FAEL: "{9B58AEB4-211E-4860-B6E5-A2FE96B3672F}" [In-None-P6-TRUE] .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
O87 - FAEL: "{92BB0704-69C9-4125-9E97-29FE6FC9AEAB}" [In-None-P17-TRUE] .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
O87 - FAEL: "{CE1A0F1A-873E-49A2-9F2B-4D8E0E5E6956}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4_x86.exe
O87 - FAEL: "{28F1860B-1254-43AF-8DFC-3268C48E8280}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4_x86.exe
O87 - FAEL: "{BF45834A-CA1B-4FBD-8317-B5782ADEE7EC}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4.exe
O87 - FAEL: "{57A43650-1AC3-4644-9B69-389AD5BEBD1E}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4.exe
O87 - FAEL: "{2E205C46-9D6D-4511-9B80-F6B73FAFF3E2}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Besiege\Besiege.exe
O87 - FAEL: "{87BC6808-DAD3-40D3-89AA-171F6F67770B}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Besiege\Besiege.exe
O87 - FAEL: "{C25C27B9-7135-4C28-A0EA-A0BA8E94DE7C}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Origin\Battlefield 1942\BF1942.exe
O87 - FAEL: "{8267DCE2-0CD0-489B-AD7E-03F0401DE250}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Origin\Battlefield 1942\BF1942.exe
O87 - FAEL: "{F63F448E-07BF-4A8C-9BA5-8933FA29E01D}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 3™.) -- G:\JOGOS\Origin\Battlefield 3\bf3.exe
O87 - FAEL: "{F910DB92-E08E-431E-87B4-A4CEBE4E7F06}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 3™.) -- G:\JOGOS\Origin\Battlefield 3\bf3.exe
O87 - FAEL: "{86034737-8017-49F5-8A71-7E355EB02119}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
O87 - FAEL: "{638C0901-CBCE-45E0-B02B-1FDB5FC16CE8}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
O87 - FAEL: "{8860374C-DFD0-4C66-99AC-9E5C6F41BFF2}" [In-None-P6-TRUE] .(.Koch Media GmbH - Saints Row IV.) -- G:\JOGOS\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
O87 - FAEL: "{D69A4C1A-54A1-4DE6-8A60-59CDD7C60F8E}" [In-None-P17-TRUE] .(.Koch Media GmbH - Saints Row IV.) -- G:\JOGOS\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
O87 - FAEL: "{BE9D4A38-FAE6-4894-AFFB-E96D55274608}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Sniper Elite\SniperElite.exe
O87 - FAEL: "{0FFFBFD1-7BA3-4ABC-A2E0-A176DA3B99D7}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Sniper Elite\SniperElite.exe
O87 - FAEL: "{C105B922-ED8E-42D4-A8D4-388E3C1C9F08}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
O87 - FAEL: "{69C8DE67-C492-4376-B685-17594517617C}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
O87 - FAEL: "{D972FE42-4586-46C5-8D4D-FCDC94ABA42B}" [In-None-P6-TRUE] .(.Copyright (C) 2012 - Hitman: Absolution.) -- G:\JOGOS\Steam\steamapps\common\Hitman Absolution\HMA.exe
O87 - FAEL: "{2C832CD9-688C-418C-9325-D1C71950F30E}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - Hitman: Absolution.) -- G:\JOGOS\Steam\steamapps\common\Hitman Absolution\HMA.exe
O87 - FAEL: "{577A3EA0-6AC8-4FC3-8A1E-68547CB2980C}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{915DDFC2-39D4-4071-AE4F-7CA474CA7F1F}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{302AB7D1-5233-4551-87BD-6F4EB3C85F43}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{613B3CDD-044A-44DD-92C8-D07A9DB5916C}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe

---\\ Scâner Aditional (088) (1) - 0s
~ Nenhum ítem malicioso o desnecessários foi encontrado.

---\\ Resumo dos elementos encontrados na sua estação de trabalho (1) - 0s
~ Nenhum ítem malicioso o desnecessários foi encontrado.

~ End of the scan, 43269 items in 56 seconds (808)(0)()

Publicité


Signaler le contenu de ce document

Publicité