Publicité
Publicité
Commentaire : Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:07-02-2016 Executado por Maollo (administrador) em MAOLLO-PC (11-02-2016 11:29:36) Executando a partir de C:\Users\Maollo\Downloads Perfis Carregados: Maollo (Perfis Disponíveis: Maollo & DefaultAppPool) Platform: Windows 10 Pro Versão 1511 (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe (Qihu Software Co. Limited) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray.exe (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.10\deploy\LoLLauncher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.50\deploy\LoLPatcher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.186\deploy\LolClient.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\Primary Color\updatePrimaryColor.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe () C:\Windows\nci.exe () C:\Windows\mnci.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files (x86)\Primary Color\bin\utilPrimaryColor.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.expext.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.expext.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.PurBrowse64.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.BrowserAdapter.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.BrowserAdapter64.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.BrowserAdapter.exe () C:\Program Files (x86)\Primary Color\bin\PrimaryColor.BrowserAdapter64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [305272 2015-12-11] (QIHU 360 SOFTWARE CO. LIMITED) HKLM-x32\...\Run: [LightGate] => c:\programdata\21383\lightgate.exe [1081344 2015-12-04] () HKLM-x32\...\Run: [HomePageHelper] => c:\programdata\11973\homepage.exe [1100288 2015-11-25] () HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-12-22] (Oracle Corporation) HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Run: [-] => C:\ProgramData\00781\msiql.exe [2412032 2016-01-14] () HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Run: [taskhost] => rundll32.exe C:\ProgramData\WindowsMsg\675D131108D4FD145B0BFBC68A3E018A.dll Start /DEFAULT HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Run: [Pritc] => c:\programdata\windows update\tmp\msdtc-.exe [2980352 2016-01-08] (VLOME) HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Run: [osmsg] => C:\ProgramData\WindowsMsg\osmsg.exe [1905664 2016-01-16] () HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Run: [msiql] => C:\ProgramData\04200\msiql.exe [2415616 2016-01-26] () HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-18\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro3\JSDriver\1.42.1.10638\jsdrv.exe HKU\S-1-5-18\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot HKU\S-1-5-18\...\Run: [Gameo] => C:\WINDOWS\system32\config\systemprofile\AppData\Roaming\Gameo\gameo.exe "C:\WINDOWS\system32\config\systemprofile\AppData\Roaming\Gameo\gameo.dat" mode:minimized HKU\S-1-5-18\...\Run: [Pritc] => c:\programdata\windows update\tmp\msdtc-.exe [2980352 2016-01-08] (VLOME) GroupPolicy: Restrição - Chrome <======= ATENÇÃO CHR HKLM\SOFTWARE\Policies\Google: Restrição <======= ATENÇÃO ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Winsock: Catalog9-x64 01 C:\Windows\system32\Dileiho64.dll [768352 2015-12-31] () Winsock: Catalog9-x64 02 C:\Windows\system32\Dileiho64.dll [768352 2015-12-31] () Winsock: Catalog9-x64 03 C:\Windows\system32\Dileiho64.dll [768352 2015-12-31] () Winsock: Catalog9-x64 04 C:\Windows\system32\Dileiho64.dll [768352 2015-12-31] () Winsock: Catalog9-x64 05 C:\Windows\system32\Dileiho64.dll [768352 2015-12-31] () Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{53c83f7d-ebc0-4abe-a10d-aa15a56f967f}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{846ee342-7039-11de-9d20-806e6f6e6963}: [NameServer] 104.197.191.4 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=da476c53914445094825b50d4d435dd6 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=da476c53914445094825b50d4d435dd6 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = search.mpc.am HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystart.com/?pr=vmn&id=mystarttb&v=5_5&ent=hp_5153&src=5153 HKU\S-1-5-21-2840682155-2406404488-1448223199-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=da476c53914445094825b50d4d435dd6 SearchScopes: HKLM -> DefaultScope {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ8KBAATFgZAbVoJAlpcFVYbdhRaUQ9HDAYQIgEIVA1FRwQXdR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSX5NL04=&q={searchTerms} SearchScopes: HKLM -> OldSearch URL = hxxp://www.google.com/search?hl={language}&q={searchTerms} SearchScopes: HKLM -> {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ8KBAATFgZAbVoJAlpcFVYbdhRaUQ9HDAYQIgEIVA1FRwQXdR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSX5NL04=&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://www.google.com/search?hl={language}&q={searchTerms} SearchScopes: HKLM-x32 -> {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://www.google.com/search?hl={language}&q={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://www.mystart.com/results.php?gen=ms&pr=vmn&id=mystarttb&v=5_5&ent=ch_5153&q={searchTerms} SearchScopes: HKU\.DEFAULT -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://www.mystart.com/results.php?gen=ms&pr=vmn&id=mystarttb&v=5_5&ent=ch_5153&q={searchTerms} SearchScopes: HKU\S-1-5-21-2840682155-2406404488-1448223199-1001 -> DefaultScope {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ8KBAATFgZAbVoJAlpcFVYbdhRaUQ9HDAYQIgEIVA1FRwQXdR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSX5NL04=&q={searchTerms} SearchScopes: HKU\S-1-5-21-2840682155-2406404488-1448223199-1001 -> OldSearch URL = hxxp://www.google.com/search?hl={language}&q={searchTerms} SearchScopes: HKU\S-1-5-21-2840682155-2406404488-1448223199-1001 -> {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ8KBAATFgZAbVoJAlpcFVYbdhRaUQ9HDAYQIgEIVA1FRwQXdR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSX5NL04=&q={searchTerms} SearchScopes: HKU\S-1-5-21-2840682155-2406404488-1448223199-1001 -> {811C5DC1-F05B-4D62-AE1F-5520656C288C} URL = hxxps://br.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=435371&p={searchTerms} BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2015-12-11] (Qihu 360 Software Co., Ltd.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-01-30] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: Primary Color 1.0.0.7 -> {b0a28f54-b08f-4049-a9bf-8d33bd1e9222} -> C:\Program Files (x86)\Primary Color\PrimaryColorbho.dll [2015-12-21] (Primary Color) BHO-x32: PriceFountain -> {b608cc98-54de-4775-96c9-097de398500c} -> C:\WINDOWS\SysWow64\config\systemprofile\AppData\Local\PriceFountain\PriceFountainIE.dll [2015-06-18] () BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2015-12-11] (Qihu 360 Software Co., Ltd.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-30] (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-10-20] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-10-20] () FF Plugin-x32: @java.com/DTPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll [2016-01-30] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\plugin2\npjp2.dll [2016-01-30] (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-17] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-17] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-03] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-03] (Google Inc.) FF HKLM\...\Firefox\Extensions: [{71D41604-39D5-4834-8377-4BF8AFDE7499}] - C:\Program Files\shopperz311220151509\Firefox\{71D41604-39D5-4834-8377-4BF8AFDE7499}.xpi => não encontrado (a) FF HKLM\...\Firefox\Extensions: [{2C45C02C-9AC2-4650-80D9-BDB75E0BF02B}] - C:\Program Files\groover040120161227\Firefox\{2C45C02C-9AC2-4650-80D9-BDB75E0BF02B}.xpi => não encontrado (a) FF HKLM-x32\...\Firefox\Extensions: [{71D41604-39D5-4834-8377-4BF8AFDE7499}] - C:\Program Files\shopperz311220151509\Firefox\{71D41604-39D5-4834-8377-4BF8AFDE7499}.xpi => não encontrado (a) FF HKLM-x32\...\Firefox\Extensions: [{2C45C02C-9AC2-4650-80D9-BDB75E0BF02B}] - C:\Program Files\groover040120161227\Firefox\{2C45C02C-9AC2-4650-80D9-BDB75E0BF02B}.xpi => não encontrado (a) Chrome: ======= CHR DefaultSearchURL: Default -> hxxps://mystart.com/default-search/rsc001__moss__org103__103_55f20019a6fde1d80a7b23c6__2_4_5__moc__nt__yr/?q={searchTerms} CHR DefaultSearchKeyword: Default -> yahoo CHR Profile: C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Apresentações) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-04] CHR Extension: (Google Docs) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-04] CHR Extension: (Google Drive) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-04] CHR Extension: (YouTube) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-04] CHR Extension: (Google Search) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-04] CHR Extension: (Planilhas do Google) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-04] CHR Extension: (Documentos Google off-line) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-04] CHR Extension: (Skype) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-02-04] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-04] CHR Extension: (Gmail) - C:\Users\Maollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-04] CHR HKLM-x32\...\Chrome\Extension: [ijepgjdjkdbopbnaopmlmobimmhjklhd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-10-08] (BlueStack Systems, Inc.) S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-10-08] (BlueStack Systems, Inc.) S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [855672 2015-10-08] (BlueStack Systems, Inc.) S3 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) S3 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) S3 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-26] (NVIDIA Corporation) S2 GoogleChromeUpService; C:\ProgramData\upgsvr.exe [1747968 2015-12-28] () [Arquivo não assinado] S2 GoogleChromeUpSvc; C:\ProgramData\Windows Update\svrupg.exe [2786816 2016-01-17] (TODO: ) [Arquivo não assinado] S3 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [24888 2015-07-26] (Hewlett-Packard Company) R2 mnci; c:\windows\mnci.exe [408576 2016-02-03] () [Arquivo não assinado] R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [349152 2016-01-28] (DotC United Inc) S2 MustangService_2015_10_10; C:\ProgramData\TempMoudleSet\MustangSer2033.exe [235776 2015-12-15] (MustangService) R2 nci; c:\windows\nci.exe [417792 2016-02-03] () [Arquivo não assinado] S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3758336 2015-11-29] (INCA Internet Co., Ltd.) S3 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696 2015-10-12] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-26] (NVIDIA Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1009392 2016-01-20] (Overwolf LTD) R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [903288 2015-12-11] (QIHU 360 SOFTWARE CO. LIMITED) S3 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-04] () S2 TheCalendarService; C:\Program Files (x86)\CalendarTool\2.0.0.11189\CalendarServ.exe [141960 2015-12-25] () R2 Update Primary Color; C:\Program Files (x86)\Primary Color\updatePrimaryColor.exe [662952 2016-02-11] () S2 update_service; C:\Program Files (x86)\updateservice\updateservice.exe [23552 2016-01-20] () [Arquivo não assinado] R2 Util Primary Color; C:\Program Files (x86)\Primary Color\bin\utilPrimaryColor.exe [662952 2016-02-11] () S2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [137808 2015-11-12] (360.cn) R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [77904 2015-12-11] (360.cn) R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [77904 2015-12-11] (360.cn) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [319568 2015-12-11] (360.cn) S3 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [40520 2015-11-12] (360.cn) R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [367696 2015-11-12] (360.cn) R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [181328 2015-12-11] (360.cn) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-10-08] (BlueStack Systems) R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-01-18] (DotC United Inc) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-26] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek ) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.) S3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [117248 2010-11-20] (Microsoft Corporation) [Arquivo não assinado] S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) R1 {0da991e7-651e-44f2-a8d8-99c28d929208}Gw64; C:\Windows\System32\drivers\{0da991e7-651e-44f2-a8d8-99c28d929208}Gw64.sys [48456 2016-02-09] (StdLib) R1 {10593385-12ca-4697-8245-47ada7c055d9}Gw64; C:\Windows\System32\drivers\{10593385-12ca-4697-8245-47ada7c055d9}Gw64.sys [48456 2016-01-27] (StdLib) R1 {14399205-100e-435b-93e2-9f4ebefe8918}Gw64; C:\Windows\System32\drivers\{14399205-100e-435b-93e2-9f4ebefe8918}Gw64.sys [48456 2016-01-28] (StdLib) R1 {54e9b4e5-84c4-42a5-a254-fd1f8319fc98}Gw64; C:\Windows\System32\drivers\{54e9b4e5-84c4-42a5-a254-fd1f8319fc98}Gw64.sys [48456 2016-02-06] (StdLib) R1 {5e399338-5cac-41fc-91a7-455ee6632d3f}Gw64; C:\Windows\System32\drivers\{5e399338-5cac-41fc-91a7-455ee6632d3f}Gw64.sys [48456 2016-02-05] (StdLib) U3 idsvc; não ImagePath U3 wpcsvc; não ImagePath ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-02-11 11:29 - 2016-02-11 11:30 - 00021467 _____ C:\Users\Maollo\Downloads\FRST.txt 2016-02-11 11:29 - 2016-02-11 11:29 - 00000000 ____D C:\FRST 2016-02-11 11:28 - 2016-02-11 11:28 - 02370560 _____ (Farbar) C:\Users\Maollo\Downloads\FRST64.exe 2016-02-11 10:31 - 2016-02-11 10:31 - 00000000 ____D C:\Users\Todos os Usuários\NortonInstaller 2016-02-11 10:31 - 2016-02-11 10:31 - 00000000 ____D C:\ProgramData\NortonInstaller 2016-02-11 10:23 - 2016-02-11 10:28 - 00000000 ____D C:\Program Files (x86)\YTDownloader 2016-02-11 10:22 - 2016-02-11 10:22 - 00000000 ____D C:\Program Files (x86)\ShopperPro3 2016-02-11 10:22 - 2016-02-11 10:22 - 00000000 ____D C:\Program Files (x86)\MixVideoPlayer 2016-02-11 10:21 - 2016-02-11 10:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC 2016-02-11 10:20 - 2016-02-11 10:21 - 00000000 ____D C:\Users\Todos os Usuários\11973 2016-02-11 10:20 - 2016-02-11 10:21 - 00000000 ____D C:\ProgramData\11973 2016-02-11 10:20 - 2016-02-11 10:20 - 00000000 ____D C:\Users\Todos os Usuários\21383 2016-02-11 10:20 - 2016-02-11 10:20 - 00000000 ____D C:\Users\Todos os Usuários\18769 2016-02-11 10:20 - 2016-02-11 10:20 - 00000000 ____D C:\ProgramData\21383 2016-02-11 10:20 - 2016-02-11 10:20 - 00000000 ____D C:\ProgramData\18769 2016-02-11 10:20 - 2016-02-11 10:20 - 00000000 ____D C:\Program Files (x86)\CalendarTool 2016-02-11 10:19 - 2016-02-11 10:20 - 00000000 ____D C:\Users\Todos os Usuários\23996 2016-02-11 10:19 - 2016-02-11 10:20 - 00000000 ____D C:\ProgramData\23996 2016-02-10 10:17 - 2016-01-27 03:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-02-10 10:17 - 2016-01-27 03:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-02-10 10:17 - 2016-01-27 03:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-02-10 10:17 - 2016-01-27 03:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-02-10 10:17 - 2016-01-27 03:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-02-10 10:17 - 2016-01-27 03:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-02-10 10:17 - 2016-01-27 03:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-02-10 10:17 - 2016-01-27 03:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-02-10 10:17 - 2016-01-27 02:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-02-10 10:17 - 2016-01-27 02:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-02-10 10:17 - 2016-01-27 02:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-02-10 10:17 - 2016-01-27 02:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-02-10 10:17 - 2016-01-27 02:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-02-10 10:16 - 2016-01-29 04:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-02-10 10:16 - 2016-01-29 04:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-02-10 10:16 - 2016-01-27 04:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-02-10 10:16 - 2016-01-27 04:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-02-10 10:16 - 2016-01-27 04:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-02-10 10:16 - 2016-01-27 04:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-02-10 10:16 - 2016-01-27 04:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-02-10 10:16 - 2016-01-27 03:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-02-10 10:16 - 2016-01-27 03:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-02-10 10:16 - 2016-01-27 03:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-02-10 10:16 - 2016-01-27 03:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-02-10 10:16 - 2016-01-27 03:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe 2016-02-10 10:16 - 2016-01-27 03:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-02-10 10:16 - 2016-01-27 03:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-02-10 10:16 - 2016-01-27 03:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-02-10 10:16 - 2016-01-27 03:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-02-10 10:16 - 2016-01-27 03:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-02-10 10:16 - 2016-01-27 03:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2016-02-10 10:16 - 2016-01-27 03:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-02-10 10:16 - 2016-01-27 03:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-02-10 10:16 - 2016-01-27 03:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll 2016-02-10 10:16 - 2016-01-27 03:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll 2016-02-10 10:16 - 2016-01-27 03:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-02-10 10:16 - 2016-01-27 03:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-02-10 10:16 - 2016-01-27 03:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll 2016-02-10 10:16 - 2016-01-27 03:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll 2016-02-10 10:16 - 2016-01-27 03:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-02-10 10:16 - 2016-01-27 03:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll 2016-02-10 10:16 - 2016-01-27 03:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll 2016-02-10 10:16 - 2016-01-27 03:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-02-10 10:16 - 2016-01-27 03:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-02-10 10:16 - 2016-01-27 03:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-02-10 10:16 - 2016-01-27 03:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-02-10 10:16 - 2016-01-27 03:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll 2016-02-10 10:16 - 2016-01-27 03:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-02-10 10:16 - 2016-01-27 02:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll 2016-02-10 10:16 - 2016-01-27 02:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-02-10 10:16 - 2016-01-27 02:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-02-10 10:16 - 2016-01-27 02:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-02-10 10:16 - 2016-01-27 02:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-02-10 10:16 - 2016-01-27 02:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-02-10 10:16 - 2016-01-27 02:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-02-10 10:16 - 2016-01-27 02:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-02-10 10:16 - 2016-01-27 02:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll 2016-02-10 10:16 - 2016-01-27 02:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-02-10 10:16 - 2016-01-27 02:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-02-10 10:16 - 2016-01-27 02:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-02-10 10:16 - 2016-01-27 02:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-02-10 10:16 - 2016-01-27 02:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-02-10 10:16 - 2016-01-27 02:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-02-10 10:16 - 2016-01-27 02:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-02-10 10:16 - 2016-01-27 02:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll 2016-02-09 21:39 - 2016-02-09 14:36 - 00048456 _____ (StdLib) C:\WINDOWS\system32\Drivers\{0da991e7-651e-44f2-a8d8-99c28d929208}Gw64.sys 2016-02-09 17:35 - 2016-02-09 17:35 - 00013200 _____ C:\Users\Maollo\Downloads\videos_carnaval.zip 2016-02-07 11:30 - 2016-02-06 08:35 - 00048456 _____ (StdLib) C:\WINDOWS\system32\Drivers\{54e9b4e5-84c4-42a5-a254-fd1f8319fc98}Gw64.sys 2016-02-05 22:42 - 2016-02-05 14:35 - 00048456 _____ (StdLib) C:\WINDOWS\system32\Drivers\{5e399338-5cac-41fc-91a7-455ee6632d3f}Gw64.sys 2016-02-05 22:40 - 2016-02-11 11:21 - 00000000 ____D C:\Program Files (x86)\Primary Color 2016-02-05 22:38 - 2016-02-05 22:39 - 00000000 ____D C:\Users\Todos os Usuários\04200 2016-02-05 22:38 - 2016-02-05 22:39 - 00000000 ____D C:\Users\Todos os Usuários\02109 2016-02-05 22:38 - 2016-02-05 22:39 - 00000000 ____D C:\ProgramData\04200 2016-02-05 22:38 - 2016-02-05 22:39 - 00000000 ____D C:\ProgramData\02109 2016-02-05 22:36 - 2016-02-05 22:36 - 00232004 _____ C:\WINDOWS\Minidump\020516-17671-01.dmp 2016-02-04 10:51 - 2016-02-05 16:51 - 00000000 ____D C:\Users\Maollo\AppData\Local\WebBar 2016-02-03 22:15 - 2016-02-03 22:15 - 00000000 ____D C:\Program Files (x86)\Professional Cleaning Software 2016-02-03 22:12 - 2016-02-03 22:12 - 00631808 _____ C:\WINDOWS\nci.dat 2016-02-03 22:12 - 2016-02-03 22:12 - 00408576 _____ C:\WINDOWS\mnci.exe 2016-02-03 22:11 - 2016-02-03 22:12 - 00417792 _____ C:\WINDOWS\nci.exe 2016-02-03 22:11 - 2016-02-03 22:11 - 00000000 ____D C:\Program Files (x86)\RinoReader 2016-02-03 22:09 - 2016-02-03 22:09 - 00000000 ____D C:\Users\Todos os Usuários\05364 2016-02-03 22:09 - 2016-02-03 22:09 - 00000000 ____D C:\ProgramData\05364 2016-02-01 16:31 - 2016-02-01 16:31 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2016-02-01 11:02 - 2016-02-01 11:02 - 00003808 _____ C:\WINDOWS\System32\Tasks\Overwolf Updater Task 2016-02-01 11:02 - 2016-02-01 11:02 - 00000000 ____D C:\Users\Maollo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2016-02-01 11:02 - 2016-02-01 11:02 - 00000000 ____D C:\Users\Maollo\AppData\Local\CEF 2016-02-01 11:01 - 2016-02-01 11:02 - 00000000 ____D C:\Users\Todos os Usuários\Overwolf 2016-02-01 11:01 - 2016-02-01 11:02 - 00000000 ____D C:\ProgramData\Overwolf 2016-02-01 11:01 - 2016-02-01 11:02 - 00000000 ____D C:\Program Files (x86)\Overwolf 2016-02-01 10:59 - 2016-02-04 12:25 - 00000000 ____D C:\Users\Maollo\AppData\Roaming\TS3Client 2016-02-01 10:59 - 2016-02-01 13:29 - 00000000 ____D C:\Users\Maollo\AppData\Local\Overwolf 2016-02-01 10:59 - 2016-02-01 10:59 - 00000621 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2016-02-01 10:59 - 2016-02-01 10:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2016-02-01 10:46 - 2016-02-01 10:55 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\Maollo\Downloads\TeamSpeak3-Client-win64-3.0.18.2.exe 2016-01-30 18:25 - 2016-01-30 18:46 - 00000000 ____D C:\Users\Maollo\AppData\Roaming\.minecraft 2016-01-30 18:24 - 2016-01-31 10:56 - 00000000 ____D C:\Users\Maollo\Desktop\Windows 2016-01-30 18:23 - 2016-01-30 18:24 - 05468254 _____ C:\Users\Maollo\Downloads\KeiNett.Launcher.Novo.rar 2016-01-30 18:18 - 2016-01-30 18:20 - 00000356 _____ C:\Users\Maollo\Documents\launcher_profiles.json 2016-01-30 18:18 - 2016-01-30 18:20 - 00000000 ____D C:\Users\Maollo\Documents\versions 2016-01-30 18:18 - 2016-01-30 18:20 - 00000000 ____D C:\Users\Maollo\Documents\libraries 2016-01-30 18:11 - 2016-01-30 18:11 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-01-30 18:11 - 2016-01-30 18:11 - 00000000 ____D C:\Users\Maollo\minecraft 2016-01-30 18:11 - 2016-01-30 18:11 - 00000000 ____D C:\Users\Maollo\AppData\Roaming\Sun 2016-01-30 18:11 - 2016-01-30 18:11 - 00000000 ____D C:\Users\Maollo\AppData\LocalLow\Sun 2016-01-30 18:11 - 2016-01-30 18:11 - 00000000 ____D C:\Users\Maollo\.oracle_jre_usage 2016-01-30 18:11 - 2016-01-30 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-01-30 18:10 - 2016-01-30 18:11 - 00000000 ____D C:\Users\Todos os Usuários\Oracle 2016-01-30 18:10 - 2016-01-30 18:11 - 00000000 ____D C:\ProgramData\Oracle 2016-01-30 18:10 - 2016-01-30 18:10 - 00000000 ____D C:\Program Files (x86)\Java 2016-01-30 18:08 - 2016-01-30 18:08 - 00643168 _____ (Oracle Corporation) C:\Users\Maollo\Downloads\JavaSetup8u71.exe 2016-01-30 18:08 - 2016-01-30 18:08 - 00000000 ____D C:\Users\Maollo\AppData\LocalLow\Oracle 2016-01-29 18:53 - 2016-01-29 18:53 - 00000000 ____D C:\Users\Todos os Usuários\30689 2016-01-29 18:53 - 2016-01-29 18:53 - 00000000 ____D C:\ProgramData\30689 2016-01-29 18:50 - 2016-01-29 18:50 - 00262144 ____N C:\WINDOWS\Minidump\012916-26171-01.dmp 2016-01-29 16:49 - 2016-02-03 22:18 - 00000000 ____D C:\ProfessionalCleaningSoftware 2016-01-29 16:49 - 2016-01-29 16:49 - 00000000 ____D C:\Program Files (x86)\Pro PC Cleaner 2016-01-29 16:45 - 2016-01-29 16:45 - 00000000 ____D C:\Users\Todos os Usuários\22090 2016-01-29 16:45 - 2016-01-29 16:45 - 00000000 ____D C:\ProgramData\22090 2016-01-29 16:41 - 2016-02-05 22:36 - 431248031 _____ C:\WINDOWS\MEMORY.DMP 2016-01-29 16:41 - 2016-01-29 16:43 - 00294756 _____ C:\WINDOWS\Minidump\012916-25609-01.dmp 2016-01-28 17:49 - 2016-01-28 08:31 - 00048456 _____ (StdLib) C:\WINDOWS\system32\Drivers\{14399205-100e-435b-93e2-9f4ebefe8918}Gw64.sys 2016-01-28 17:48 - 2016-02-11 10:21 - 00001798 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk 2016-01-28 17:48 - 2016-01-28 17:49 - 00000000 ____D C:\Users\Todos os Usuários\24912 2016-01-28 17:48 - 2016-01-28 17:49 - 00000000 ____D C:\ProgramData\24912 2016-01-28 17:48 - 2016-01-28 17:48 - 00000000 ____D C:\Users\Todos os Usuários\00509 2016-01-28 17:48 - 2016-01-28 17:48 - 00000000 ____D C:\ProgramData\00509 2016-01-28 17:47 - 2016-01-28 17:47 - 00000000 ____D C:\Users\Todos os Usuários\27756 2016-01-28 17:47 - 2016-01-28 17:47 - 00000000 ____D C:\Users\Todos os Usuários\25142 2016-01-28 17:47 - 2016-01-28 17:47 - 00000000 ____D C:\ProgramData\27756 2016-01-28 17:47 - 2016-01-28 17:47 - 00000000 ____D C:\ProgramData\25142 2016-01-28 17:45 - 2016-01-28 17:45 - 00000282 _____ C:\WINDOWS\Tasks\Launch 4540.job 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\Users\Todos os Usuários\26522 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\Users\Todos os Usuários\21817 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\Users\Todos os Usuários\18388 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\ProgramData\26522 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\ProgramData\21817 2016-01-28 17:41 - 2016-01-28 17:41 - 00000000 ____D C:\ProgramData\18388 2016-01-28 17:40 - 2016-01-28 17:41 - 00000000 ____D C:\Users\Todos os Usuários\31750 2016-01-28 17:40 - 2016-01-28 17:41 - 00000000 ____D C:\ProgramData\31750 2016-01-28 13:22 - 2016-01-16 04:23 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-01-28 13:22 - 2016-01-16 04:20 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-01-28 13:21 - 2016-01-16 04:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2016-01-28 13:21 - 2016-01-16 03:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-01-28 13:21 - 2016-01-16 03:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-01-28 13:21 - 2016-01-16 03:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-01-28 13:21 - 2016-01-16 03:30 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-01-28 13:21 - 2016-01-16 03:28 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-01-28 13:21 - 2016-01-16 03:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2016-01-28 13:21 - 2016-01-16 03:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-01-28 13:21 - 2016-01-16 03:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-01-28 13:21 - 2016-01-16 03:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-01-28 13:21 - 2016-01-16 03:20 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-01-28 13:21 - 2016-01-16 03:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-01-28 13:21 - 2016-01-16 03:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-01-28 13:21 - 2016-01-16 03:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-01-28 13:21 - 2016-01-16 03:14 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-01-28 13:21 - 2016-01-16 03:14 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-01-28 13:20 - 2016-01-16 04:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2016-01-28 13:20 - 2016-01-16 04:36 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-01-28 13:20 - 2016-01-16 04:36 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-01-28 13:20 - 2016-01-16 04:34 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-01-28 13:20 - 2016-01-16 04:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-01-28 13:20 - 2016-01-16 04:23 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-01-28 13:20 - 2016-01-16 04:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2016-01-28 13:20 - 2016-01-16 04:23 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-01-28 13:20 - 2016-01-16 04:23 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-01-28 13:20 - 2016-01-16 04:23 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-01-28 13:20 - 2016-01-16 04:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2016-01-28 13:20 - 2016-01-16 04:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-01-28 13:20 - 2016-01-16 04:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2016-01-28 13:20 - 2016-01-16 04:19 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-01-28 13:20 - 2016-01-16 04:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-01-28 13:20 - 2016-01-16 04:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-01-28 13:20 - 2016-01-16 04:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-01-28 13:20 - 2016-01-16 04:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-01-28 13:20 - 2016-01-16 04:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2016-01-28 13:20 - 2016-01-16 03:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-01-28 13:20 - 2016-01-16 03:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-01-28 13:20 - 2016-01-16 03:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll 2016-01-28 13:20 - 2016-01-16 03:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll 2016-01-28 13:20 - 2016-01-16 03:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll 2016-01-28 13:20 - 2016-01-16 03:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-01-28 13:20 - 2016-01-16 03:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll 2016-01-28 13:20 - 2016-01-16 03:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2016-01-28 13:20 - 2016-01-16 03:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll 2016-01-28 13:20 - 2016-01-16 03:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2016-01-28 13:20 - 2016-01-16 03:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe 2016-01-28 13:20 - 2016-01-16 03:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll 2016-01-28 13:20 - 2016-01-16 03:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-01-28 13:20 - 2016-01-16 03:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll 2016-01-28 13:20 - 2016-01-16 03:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll 2016-01-28 13:20 - 2016-01-16 03:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-01-28 13:20 - 2016-01-16 03:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-01-28 13:20 - 2016-01-16 03:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-01-28 13:20 - 2016-01-16 03:37 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-01-28 13:20 - 2016-01-16 03:36 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-01-28 13:20 - 2016-01-16 03:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll 2016-01-28 13:20 - 2016-01-16 03:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-01-28 13:20 - 2016-01-16 03:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll 2016-01-28 13:20 - 2016-01-16 03:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll 2016-01-28 13:20 - 2016-01-16 03:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-01-28 13:20 - 2016-01-16 03:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll 2016-01-28 13:20 - 2016-01-16 03:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-01-28 13:20 - 2016-01-16 03:34 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-01-28 13:20 - 2016-01-16 03:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2016-01-28 13:20 - 2016-01-16 03:34 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-01-28 13:20 - 2016-01-16 03:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll 2016-01-28 13:20 - 2016-01-16 03:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2016-01-28 13:20 - 2016-01-16 03:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2016-01-28 13:20 - 2016-01-16 03:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-01-28 13:20 - 2016-01-16 03:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2016-01-28 13:20 - 2016-01-16 03:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2016-01-28 13:20 - 2016-01-16 03:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-01-28 13:20 - 2016-01-16 03:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-01-28 13:20 - 2016-01-16 03:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-01-28 13:20 - 2016-01-16 03:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-01-28 13:20 - 2016-01-16 03:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe 2016-01-28 13:20 - 2016-01-16 03:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-01-28 13:20 - 2016-01-16 03:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-01-28 13:20 - 2016-01-16 03:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll 2016-01-28 13:20 - 2016-01-16 03:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll 2016-01-28 13:20 - 2016-01-16 03:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2016-01-28 13:20 - 2016-01-16 03:29 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-01-28 13:20 - 2016-01-16 03:28 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-01-28 13:20 - 2016-01-16 03:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll 2016-01-28 13:20 - 2016-01-16 03:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll 2016-01-28 13:20 - 2016-01-16 03:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-01-28 13:20 - 2016-01-16 03:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-01-28 13:20 - 2016-01-16 03:26 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-01-28 13:20 - 2016-01-16 03:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll 2016-01-28 13:20 - 2016-01-16 03:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-01-28 13:20 - 2016-01-16 03:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2016-01-28 13:20 - 2016-01-16 03:25 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-01-28 13:20 - 2016-01-16 03:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll 2016-01-28 13:20 - 2016-01-16 03:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-01-28 13:20 - 2016-01-16 03:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-01-28 13:20 - 2016-01-16 03:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2016-01-28 13:20 - 2016-01-16 03:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-01-28 13:20 - 2016-01-16 03:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-01-28 13:20 - 2016-01-16 03:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll 2016-01-28 13:20 - 2016-01-16 03:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2016-01-28 13:20 - 2016-01-16 03:19 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2016-01-28 13:20 - 2016-01-16 03:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll 2016-01-28 13:20 - 2016-01-16 03:19 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-01-28 13:20 - 2016-01-16 03:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2016-01-28 13:20 - 2016-01-16 03:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2016-01-28 13:20 - 2016-01-16 03:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2016-01-28 12:49 - 2016-01-28 12:49 - 00000000 ____D C:\Users\Maollo\Documents\League of Legends 2016-01-27 12:53 - 2016-01-27 12:53 - 00001465 _____ C:\Users\Public\Desktop\Blade & Soul.lnk 2016-01-27 12:53 - 2016-01-27 12:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT 2016-01-27 12:04 - 2016-02-11 10:24 - 00004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5F6AB27D-71A6-440A-90D6-915E7E844D0F} 2016-01-27 11:31 - 2016-01-27 02:33 - 00048456 _____ (StdLib) C:\WINDOWS\system32\Drivers\{10593385-12ca-4697-8245-47ada7c055d9}Gw64.sys 2016-01-27 11:27 - 2016-01-27 11:27 - 00000000 ____D C:\Users\Todos os Usuários\16157 2016-01-27 11:27 - 2016-01-27 11:27 - 00000000 ____D C:\Users\Todos os Usuários\12205 2016-01-27 11:27 - 2016-01-27 11:27 - 00000000 ____D C:\ProgramData\16157 2016-01-27 11:27 - 2016-01-27 11:27 - 00000000 ____D C:\ProgramData\12205 2016-01-27 11:26 - 2016-01-27 11:26 - 00000000 ____D C:\Users\Todos os Usuários\12957 2016-01-27 11:26 - 2016-01-27 11:26 - 00000000 ____D C:\ProgramData\12957 2016-01-27 11:25 - 2016-01-27 11:25 - 00000000 ____D C:\Users\Todos os Usuários\01393 2016-01-27 11:25 - 2016-01-27 11:25 - 00000000 ____D C:\ProgramData\01393 2016-01-27 11:20 - 2016-01-27 11:21 - 31510703 _____ C:\Users\Maollo\Downloads\20759651_46be44de5bcd01ef075c79a1628c0596594e10c1.cab 2016-01-27 11:07 - 2016-01-27 11:07 - 00000000 ____D C:\Users\Todos os Usuários\12915 2016-01-27 11:07 - 2016-01-27 11:07 - 00000000 ____D C:\ProgramData\12915 2016-01-27 11:06 - 2016-01-27 11:06 - 00000000 ____D C:\Users\Todos os Usuários\31505 2016-01-27 11:06 - 2016-01-27 11:06 - 00000000 ____D C:\Users\Todos os Usuários\17620 2016-01-27 11:06 - 2016-01-27 11:06 - 00000000 ____D C:\ProgramData\31505 2016-01-27 11:06 - 2016-01-27 11:06 - 00000000 ____D C:\ProgramData\17620 2016-01-27 11:05 - 2016-01-27 11:05 - 00000000 ____D C:\Users\Todos os Usuários\24646 2016-01-27 11:05 - 2016-01-27 11:05 - 00000000 ____D C:\ProgramData\24646 2016-01-27 10:59 - 2016-01-27 10:59 - 00000000 ____D C:\Program Files\Realtek 2016-01-27 10:51 - 2016-01-27 10:56 - 148781560 _____ (Lenovo Group Limited ) C:\Users\Maollo\Downloads\h4as09ww.exe 2016-01-23 12:32 - 2016-01-23 12:32 - 00000000 ____D C:\Users\Todos os Usuários\01510 2016-01-23 12:32 - 2016-01-23 12:32 - 00000000 ____D C:\ProgramData\01510 2016-01-23 10:07 - 2016-01-23 10:07 - 00000000 ____D C:\Users\Todos os Usuários\18381 2016-01-23 10:07 - 2016-01-23 10:07 - 00000000 ____D C:\ProgramData\18381 2016-01-22 19:39 - 2016-01-22 19:39 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Modelos 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Meus Documentos 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Iniciar 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Minhas Músicas 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Minhas Imagens 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Meus Vídeos 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Dados de Aplicativos 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Configurações Locais 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Histórico 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Dados de Aplicativos 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Ambiente de Rede 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 _SHDL C:\Users\DefaultAppPool\Ambiente de Impressão 2016-01-22 19:39 - 2016-01-22 19:39 - 00000000 ____D C:\Users\DefaultAppPool 2016-01-22 19:39 - 2016-01-06 14:28 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs 2016-01-22 19:36 - 2016-01-22 19:36 - 00000000 ____D C:\Users\Maollo\AppData\Roaming\Awesomium 2016-01-22 19:35 - 2016-01-22 19:35 - 00000000 ____D C:\Users\Maollo\Documents\BnS 2016-01-21 23:05 - 2016-01-27 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest 2016-01-21 23:05 - 2016-01-27 12:52 - 00000000 ____D C:\Program Files (x86)\NCWest 2016-01-21 22:50 - 2016-01-21 22:58 - 225000432 _____ (NC Interactive, LLC ) C:\Users\Maollo\Downloads\BnS_Lite_Installer.exe 2016-01-21 17:11 - 2016-01-21 17:11 - 00000000 ____D C:\Users\Maollo\AppData\Local\MicrosoftEdge 2016-01-21 17:08 - 2016-01-21 17:08 - 00042180 _____ C:\Users\Maollo\Desktop\23797668300001503643380250170059859700633330.pdf 2016-01-20 13:04 - 2016-01-20 13:04 - 00000000 ____D C:\Users\Public\Documents\Tools 2016-01-20 12:22 - 2016-02-10 12:22 - 00000314 _____ C:\WINDOWS\Tasks\{2A75E130-E0AE-40d1-B479-E583A0419691}.job 2016-01-20 12:22 - 2016-01-20 12:22 - 00003340 _____ C:\WINDOWS\System32\Tasks\{2A75E130-E0AE-40d1-B479-E583A0419691} 2016-01-20 12:22 - 2016-01-20 12:22 - 00000000 ____D C:\Users\Todos os Usuários\25382 2016-01-20 12:22 - 2016-01-20 12:22 - 00000000 ____D C:\ProgramData\25382 2016-01-20 11:39 - 2016-01-20 11:39 - 00000000 ____D C:\Users\Todos os Usuários\121f8832-4d95-0 2016-01-20 11:39 - 2016-01-20 11:39 - 00000000 ____D C:\ProgramData\121f8832-4d95-0 2016-01-20 11:33 - 2016-01-20 11:33 - 00023248 _____ C:\WINDOWS\System32\Tasks\{0E7F0E47-790E-0908-0F11-0C790E0E110E} 2016-01-20 11:33 - 2016-01-20 11:33 - 00000000 ____D C:\Users\Todos os Usuários\TempMoudleSet 2016-01-20 11:33 - 2016-01-20 11:33 - 00000000 ____D C:\Users\Todos os Usuários\121f8832-3091-1 2016-01-20 11:33 - 2016-01-20 11:33 - 00000000 ____D C:\ProgramData\TempMoudleSet 2016-01-20 11:33 - 2016-01-20 11:33 - 00000000 ____D C:\ProgramData\121f8832-3091-1 2016-01-20 11:32 - 2016-01-23 10:06 - 00000000 ____D C:\Program Files (x86)\updateservice 2016-01-20 11:32 - 2016-01-20 11:32 - 00000000 ____D C:\Users\Todos os Usuários\29918 2016-01-20 11:32 - 2016-01-20 11:32 - 00000000 ____D C:\ProgramData\29918 2016-01-19 15:14 - 2016-01-19 15:14 - 00000000 ____D C:\Users\Todos os Usuários\09450 2016-01-19 15:14 - 2016-01-19 15:14 - 00000000 ____D C:\ProgramData\09450 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\Users\Todos os Usuários\28321 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\Users\Todos os Usuários\20187 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\Users\Todos os Usuários\13390 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\ProgramData\28321 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\ProgramData\20187 2016-01-18 21:33 - 2016-01-18 21:33 - 00000000 ____D C:\ProgramData\13390 2016-01-18 21:32 - 2016-01-18 21:33 - 00000000 ____D C:\Users\Todos os Usuários\00781 2016-01-18 21:32 - 2016-01-18 21:33 - 00000000 ____D C:\ProgramData\00781 2016-01-18 21:21 - 2016-01-18 21:21 - 00000000 ____D C:\Users\Todos os Usuários\08831 2016-01-18 21:21 - 2016-01-18 21:21 - 00000000 ____D C:\ProgramData\08831 2016-01-18 20:35 - 2016-01-18 20:35 - 00003712 _____ C:\WINDOWS\System32\Tasks\PFExe 2016-01-18 20:34 - 2016-01-18 21:20 - 00000000 ____D C:\Program Files\WajaNetEn 2016-01-18 20:31 - 2016-02-11 10:24 - 05892175 _____ (MediaDownloader ) C:\Users\Public\Documents\MediaDownloader.exe 2016-01-18 20:29 - 2016-01-18 20:28 - 00060136 _____ (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys 2016-01-18 20:26 - 2016-01-18 20:26 - 00000000 ____D C:\Users\Todos os Usuários\00862 2016-01-18 20:26 - 2016-01-18 20:26 - 00000000 ____D C:\ProgramData\00862 2016-01-17 23:55 - 2016-02-11 10:20 - 00000000 ____D C:\Users\Todos os Usuários\WindowsMsg 2016-01-17 23:55 - 2016-02-11 10:20 - 00000000 ____D C:\ProgramData\WindowsMsg 2016-01-17 23:54 - 2016-01-17 23:55 - 00000000 ____D C:\Users\Todos os Usuários\17491 2016-01-17 23:54 - 2016-01-17 23:55 - 00000000 ____D C:\ProgramData\17491 2016-01-17 23:54 - 2016-01-17 23:54 - 00000000 ____D C:\Users\Todos os Usuários\26378 2016-01-17 23:54 - 2016-01-17 23:54 - 00000000 ____D C:\Users\Todos os Usuários\12493 2016-01-17 23:54 - 2016-01-17 23:54 - 00000000 ____D C:\ProgramData\26378 2016-01-17 23:54 - 2016-01-17 23:54 - 00000000 ____D C:\ProgramData\12493 2016-01-17 23:53 - 2016-01-17 23:54 - 00000000 ____D C:\Users\Todos os Usuários\28992 2016-01-17 23:53 - 2016-01-17 23:54 - 00000000 ____D C:\ProgramData\28992 2016-01-16 21:25 - 2016-01-16 21:25 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-01-16 14:27 - 2016-01-16 14:27 - 00000000 ____D C:\Users\Todos os Usuários\28532 2016-01-16 14:27 - 2016-01-16 14:27 - 00000000 ____D C:\ProgramData\28532 2016-01-16 14:26 - 2016-01-16 14:26 - 00000000 ____D C:\Users\Todos os Usuários\03606 2016-01-16 14:26 - 2016-01-16 14:26 - 00000000 ____D C:\ProgramData\03606 2016-01-16 14:25 - 2016-01-16 14:26 - 00000000 ____D C:\Users\Todos os Usuários\31376 2016-01-16 14:25 - 2016-01-16 14:26 - 00000000 ____D C:\ProgramData\31376 2016-01-16 14:24 - 2016-01-16 14:25 - 00000000 ____D C:\Users\Todos os Usuários\16383 2016-01-16 14:24 - 2016-01-16 14:25 - 00000000 ____D C:\ProgramData\16383 2016-01-16 14:22 - 2016-01-16 14:28 - 00000000 ____D C:\Users\Todos os Usuários\32066 2016-01-16 14:22 - 2016-01-16 14:28 - 00000000 ____D C:\ProgramData\32066 2016-01-16 14:22 - 2016-01-16 14:22 - 00000000 ____D C:\Users\Todos os Usuários\04526 2016-01-16 14:22 - 2016-01-16 14:22 - 00000000 ____D C:\ProgramData\04526 2016-01-16 14:21 - 2016-01-16 16:13 - 00000000 ____D C:\Users\Todos os Usuários\09754 2016-01-16 14:21 - 2016-01-16 16:13 - 00000000 ____D C:\ProgramData\09754 2016-01-16 14:21 - 2016-01-16 14:21 - 00000000 ____D C:\Users\Todos os Usuários\07140 2016-01-16 14:21 - 2016-01-16 14:21 - 00000000 ____D C:\ProgramData\07140 2016-01-16 13:21 - 2016-01-05 00:51 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-01-16 13:21 - 2016-01-05 00:51 - 01141496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-01-16 13:21 - 2016-01-05 00:50 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2016-01-16 13:21 - 2016-01-05 00:48 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2016-01-16 13:21 - 2016-01-05 00:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-01-16 13:21 - 2016-01-05 00:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-01-16 13:21 - 2016-01-05 00:37 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-01-16 13:21 - 2016-01-05 00:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2016-01-16 13:21 - 2016-01-05 00:37 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-01-16 13:21 - 2016-01-05 00:37 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2016-01-16 13:21 - 2016-01-05 00:37 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll 2016-01-16 13:21 - 2016-01-05 00:36 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-01-16 13:21 - 2016-01-05 00:33 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-01-16 13:21 - 2016-01-05 00:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-01-16 13:21 - 2016-01-05 00:33 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-01-16 13:21 - 2016-01-05 00:33 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll 2016-01-16 13:21 - 2016-01-05 00:33 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2016-01-16 13:21 - 2016-01-05 00:31 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-01-16 13:21 - 2016-01-05 00:27 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-01-16 13:21 - 2016-01-05 00:24 - 00796352 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-01-16 13:21 - 2016-01-05 00:23 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll 2016-01-16 13:21 - 2016-01-05 00:23 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-01-16 13:21 - 2016-01-05 00:23 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL 2016-01-16 13:21 - 2016-01-05 00:23 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL 2016-01-16 13:21 - 2016-01-05 00:21 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-01-16 13:21 - 2016-01-05 00:17 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL 2016-01-16 13:21 - 2016-01-05 00:16 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL 2016-01-16 13:21 - 2016-01-04 23:57 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll 2016-01-16 13:21 - 2016-01-04 23:56 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2016-01-16 13:21 - 2016-01-04 23:54 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-01-16 13:21 - 2016-01-04 23:50 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-01-16 13:21 - 2016-01-04 23:50 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2016-01-16 13:21 - 2016-01-04 23:49 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL 2016-01-16 13:21 - 2016-01-04 23:49 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2016-01-16 13:21 - 2016-01-04 23:49 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll 2016-01-16 13:21 - 2016-01-04 23:48 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL 2016-01-16 13:21 - 2016-01-04 23:48 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll 2016-01-16 13:21 - 2016-01-04 23:47 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-01-16 13:21 - 2016-01-04 23:47 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-01-16 13:21 - 2016-01-04 23:45 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-01-16 13:21 - 2016-01-04 23:45 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll 2016-01-16 13:21 - 2016-01-04 23:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-01-16 13:21 - 2016-01-04 23:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-01-16 13:21 - 2016-01-04 23:41 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-01-16 13:21 - 2016-01-04 23:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL 2016-01-16 13:21 - 2016-01-04 23:39 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-01-16 13:21 - 2016-01-04 23:39 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll 2016-01-16 13:21 - 2016-01-04 23:39 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-01-16 13:21 - 2016-01-04 23:38 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-01-16 13:21 - 2016-01-04 23:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll 2016-01-16 13:21 - 2016-01-04 23:30 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-01-16 13:20 - 2016-01-04 23:57 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll 2016-01-16 13:20 - 2016-01-04 23:53 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2016-01-16 13:20 - 2016-01-04 23:52 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-01-16 13:20 - 2016-01-04
Format du document : text/plain
Prévisualisation