cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:05-03-2016
Executado por rafae (administrador) em DESKTOP-AQ1QPQ9 (05-03-2016 08:27:42)
Executando a partir de C:\Users\rafae\Desktop
Perfis Carregados: rafae (Perfis Disponíveis: rafae)
Platform: Windows 10 Pro Versão 1511 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
(AMD) C:\Windows\System32\atiesrxx.exe
() C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGSvc.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(AMD) C:\Windows\System32\atieclxx.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe
() C:\ProgramData\WindowsMsg\osmsg.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Beijing Fantasy Game Network Technology Co., Ltd.) C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGTray.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
() C:\Program Files (x86)\JFileManager\WebBrowser.exe
() C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Beijing Fantasy Game Network Technology Co., Ltd.) C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGExperience.exe
(Microsoft Corporation) C:\Windows\System32\bcastdvr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4867784 2015-12-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [904928 2015-11-04] (GAS Tecnologia LTDA)
HKLM\...\Run: [Sound+] => "C:\Program Files\Sound+\Sound+.exe"
HKLM\...\Run: [cpuminer] => C:\Users\rafae\AppData\Roaming\cpuminer\cpm.exe [1400320 2016-02-29] ()
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696 2011-06-09] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [mbot_en_037050256] => [X]
HKLM-x32\...\Run: [mpck_en_005030256] => [X]
HKLM-x32\...\Run: [LightGate] => c:\programdata\lightgate.exe [1081344 2015-12-04] ()
HKLM-x32\...\Run: [HomePageHelper] => c:\programdata\homepage.exe [1100288 2015-11-25] ()
HKLM-x32\...\Run: [sun7] => [X]
HKLM-x32\...\Run: [rec_en_215] => [X]
HKLM-x32\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-11-04] (Banco do Brasil)
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3639280 2016-02-02] (Electronic Arts)
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation)
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4179288 2015-11-30] (Disc Soft Ltd)
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [DU Meter] => C:\Program Files (x86)\DU Meter\DUMeter.exe [9795736 2016-03-03] (Hagel Technologies Ltd.)
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [osmsg] => C:\ProgramData\WindowsMsg\osmsg.exe [2036224 2016-02-09] ()
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [Pritc] => C:\WINDOWS\TEMP\is-37K5Q.tmp\print.exe [2960896 2016-03-03] (VLOME) <===== ATENÇÃO
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [msiql] => C:\ProgramData\mspop.exe [1888256 2016-03-02] ()
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [Chromium] => "c:\users\rafae\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Run: [taskhost] => rundll32.exe C:\ProgramData\WindowsMsg\675D131108D4FD145B0BFBC68A3E018A.dll Start /DEFAULT
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\RunOnce: [Uninstall C:\Users\rafae\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\rafae\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\MountPoints2: H - "H:\AdobePhotoshop.exe"
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\MountPoints2: {aad29b41-decc-11e5-9c2d-74d435e15295} - "E:\Autorun.exe"
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\...\MountPoints2: {ee727281-bcb4-11e5-9bf0-74d435e15295} - "H:\AdobePhotoshop.exe"
HKU\S-1-5-18\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro3\JSDriver\1.42.1.10648\jsdrv.exe
HKU\S-1-5-18\...\Run: [YTDownloader] => "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
HKU\S-1-5-18\...\Run: [Gameo] => C:\WINDOWS\system32\config\systemprofile\AppData\Roaming\Gameo\gameo.exe "C:\WINDOWS\system32\config\systemprofile\AppData\Roaming\Gameo\gameo.dat" mode:minimized
HKU\S-1-5-18\...\Run: [Chromium] => "c:\users\rafae\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\Program Files (x86)\GbPlugin\gbieh.dll [1945472 2015-11-04] (Banco do Brasil)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WebBrowserJFile.lnk [2016-03-04]
ShortcutTarget: WebBrowserJFile.lnk -> C:\Program Files (x86)\JFileManager\WebBrowser.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WebBrowserMixVideoPlayer.lnk [2016-03-04]
ShortcutTarget: WebBrowserMixVideoPlayer.lnk -> C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe ()
GroupPolicy: Restrição - Chrome <======= ATENÇÃO
CHR HKLM\SOFTWARE\Policies\Google: Restrição <======= ATENÇÃO

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{26b11a49-585f-4b43-a90c-9af3c3d7b25b}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{398264be-bc5e-4c13-b311-e0bbbe02e08c}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c10e42e3-ac65-11e5-b25a-806e6f6e6963}: [NameServer] 104.197.191.4

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKU\S-1-5-21-2629483018-74550958-3562474875-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtByEtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StAyD0AtD0A0FyCyDtGtB0Ezz0FtGyCyDyE0CtGtDtD0AtBtGyB0EzzyEyCzzzytCtD0Czyzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0C0E0E0FzytC0CtG0CtDyByDtGyE0D0C0CtGzz0Fzy0AtGzy0AtDtAtBzzyB0F0Fzzzz0D2QtN0A0LzuyE%26cr%3D1843917256%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtByEtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StAyD0AtD0A0FyCyDtGtB0Ezz0FtGyCyDyE0CtGtDtD0AtBtGyB0EzzyEyCzzzytCtD0Czyzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0C0E0E0FzytC0CtG0CtDyByDtGyE0D0C0CtGzz0Fzy0AtGzy0AtDtAtBzzyB0F0Fzzzz0D2QtN0A0LzuyE%26cr%3D1843917256%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtByEtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StAyD0AtD0A0FyCyDtGtB0Ezz0FtGyCyDyE0CtGtDtD0AtBtGyB0EzzyEyCzzzytCtD0Czyzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0C0E0E0FzytC0CtG0CtDyByDtGyE0D0C0CtGzz0Fzy0AtGzy0AtDtAtBzzyB0F0Fzzzz0D2QtN0A0LzuyE%26cr%3D1843917256%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro
SearchScopes: HKLM -> DefaultScope {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtBtAtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDtCyB0EyE0B0A0CtGyC0E0ByDtG0DyCzztAtGtC0F0F0BtG0EtBtA0CyB0AyB0A0D0FtAtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtCtAtA0F0DtByDtG0ByB0DtCtGyEyBtD0DtGzz0F0B0BtG0Azzzz0EyCyB0DtA0EtAyDtD2QtN0A0LzuyE%26cr%3D1367994138%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKLM -> {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtByEtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StAyD0AtD0A0FyCyDtGtB0Ezz0FtGyCyDyE0CtGtDtD0AtBtGyB0EzzyEyCzzzytCtD0Czyzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0C0E0E0FzytC0CtG0CtDyByDtGyE0D0C0CtGzz0Fzy0AtGzy0AtDtAtBzzyB0F0Fzzzz0D2QtN0A0LzuyE%26cr%3D1843917256%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKLM-x32 -> {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL =
SearchScopes: HKU\.DEFAULT -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL =
SearchScopes: HKU\S-1-5-21-2629483018-74550958-3562474875-1001 -> DefaultScope {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2629483018-74550958-3562474875-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_nwmeddnld_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByE0DyEtAyD0EtCyDtBzyyD0F0F0FyBtN0D0Tzu0StCyDtBtAtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDtCyB0EyE0B0A0CtGyC0E0ByDtG0DyCzztAtGtC0F0F0BtG0EtBtA0CyB0AyB0A0D0FtAtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtCtAtA0F0DtByDtG0ByB0DtCtGyEyBtD0DtGzz0F0B0BtG0Azzzz0EyCyB0DtA0EtAyDtD2QtN0A0LzuyE%26cr%3D1367994138%26a%3Dwbf_nwmeddnld_16_10%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2629483018-74550958-3562474875-1001 -> {B5197E6D-9596-4AE3-85E8-47C5122BC7E6} URL = hxxp://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2016-03-03] (Sun Microsystems, Inc.)
BHO-x32: PriceFountain -> {b608cc98-54de-4775-96c9-097de398500c} -> C:\WINDOWS\SysWow64\config\systemprofile\AppData\Local\PriceFountain\PriceFountainIE.dll [2015-06-18] ()
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\Program Files (x86)\GbPlugin\gbieh.dll [2015-11-04] (Banco do Brasil)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2016-03-03] (Sun Microsystems, Inc.)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [2016-03-03] (Sun Microsystems, Inc.)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2016-03-04] ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF HKU\.DEFAULT\...\Firefox\Extensions: [{58931F90-7418-F91C-7D0E-6744BB523292}] - C:\Program Files (x86)\version09CheckMeUp\194.xpi => não encontrado (a)

Chrome:
=======
CHR Profile: C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-04]
CHR Extension: (Google Docs) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-04]
CHR Extension: (Google Drive) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-04]
CHR Extension: (YouTube) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-04]
CHR Extension: (Google Search) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-03-04]
CHR Extension: (Planilhas do Google) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-04]
CHR Extension: (Documentos Google off-line) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-04]
CHR Extension: (AdBlock) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-03-04]
CHR Extension: (Yahoo!) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd [2016-03-04]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-04]
CHR Extension: (Gmail) - C:\Users\rafae\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-04]
CHR HKLM-x32\...\Chrome\Extension: [ijepgjdjkdbopbnaopmlmobimmhjklhd] - hxxps://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome - chrome.exe

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 ACTION_SVC; C:\Program Files (x86)\Mirillis\Action!\action_svc.exe [16064 2014-10-25] ()
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd)
S2 dojygici; C:\Program Files (x86)\03D40274-1457038451-05E1-5206-950700080009\jnsw378C.tmp [284160 2016-03-03] () [Arquivo não assinado]
R2 GbpSv; C:\Program Files (x86)\GbPlugin\GbpSv.exe [593120 2015-11-04] (GAS Tecnologia)
S2 GoogleChromeUpService; C:\ProgramData\service.exe [1734656 2016-03-03] () [Arquivo não assinado]
S2 GoogleChromeUpSvc; C:\ProgramData\Windows Update\svrupg.exe [2786816 2016-03-03] (TODO: ) [Arquivo não assinado]
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [Arquivo não assinado]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Arquivo não assinado]
S2 jofixifizbt; C:\Program Files (x86)\03D40274-1457038451-05E1-5206-950700080009\knsa71B8.tmp [250368 2016-03-04] () [Arquivo não assinado]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [348640 2016-03-03] (DotC United Inc)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-02] (Electronic Arts)
S2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShow Producer\ScsiAccess.exe [186760 2016-03-04] ()
S2 TheDesktopWeatherService; C:\Program Files (x86)\WeatherTool\2.0.0.11150\WeatherService.exe [153552 2015-12-09] ()
R2 UGSVC; C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGSvc.exe [675912 2016-02-02] ()
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [904928 2015-11-04] (GAS Tecnologia LTDA)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S2 wucotusy; C:\Program Files (x86)\03D40274-1457038451-05E1-5206-950700080009\hnsz8A23.tmp [416256 2016-03-03] () [Arquivo não assinado]
S2 ihpmServer; "C:\Program Files (x86)\RayDld\ihpmServer.exe" [X]
S2 TheCalendarService; C:\Program Files (x86)\CalendarTool\2.0.0.11189\CalendarServ.exe [X]
S2 Winstep Xtreme Service; E:\Arquivos e Programas\Winstep\WsxService [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-17] (Advanced Micro Devices)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34712 2016-03-03] ()
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [56728 2016-03-03] (Windows (R) Win 7 DDK provider)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-01-16] (Disc Soft Ltd)
R3 FETNDIS; C:\Windows\System32\drivers\fetn63a.sys [53248 2015-10-30] (VIA Technologies, Inc. )
R1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [28888 2016-03-05] (GAS Tecnologia)
R0 gbpddreg; C:\Windows\System32\drivers\gbpddreg64.sys [29816 2016-03-04] (GAS Tecnologia)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2015-09-22] (GAS Tecnologia)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-12-26] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [59112 2016-03-03] (DotC United Inc)
R2 NPF; C:\Program Files (x86)\UPCleaner\1.5.36.16098\npf64.sys [36600 2016-02-02] (Riverbed Technology, Inc.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
R1 UGBroMon; C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGBroMon64.sys [75000 2016-02-02] ()
S1 UGKrnlDrv; C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGKrnlDrv64.sys [89848 2016-02-02] ()
R1 UGProtect; C:\Program Files (x86)\UPCleaner\1.5.36.16098\UGProtect64.sys [52984 2016-02-02] ()
R2 UPKernel; C:\Program Files (x86)\UPCleaner\1.5.36.16098\UPKernel64.sys [34040 2016-02-02] ()
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2015-09-22] (GAS Tecnologia LTDA)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R4 WinDivert1.1; C:\Program Files\Diebold\Warsaw\WinDivert64.sys [38104 2015-07-07] (Basil)
R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [101080 2016-03-04] (GAS Tecnologia)
R1 wsddpp; C:\WINDOWS\system32\drivers\wsddpp.sys [103640 2015-03-18] (GAS Tecnologia)
R1 {d169bbad-8206-4fd9-b054-0cbe89a54f7b}Gw64; C:\Windows\System32\drivers\{d169bbad-8206-4fd9-b054-0cbe89a54f7b}Gw64.sys [48744 2016-03-03] (StdLib)
S3 DUMeterDrv; \??\E:\Arquivos e Programas\DU Meter\DUMETR64.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-03-05 08:27 - 2016-03-05 08:27 - 00022801 _____ C:\Users\rafae\Desktop\FRST.txt
2016-03-05 08:20 - 2016-03-05 08:27 - 00000000 ____D C:\FRST
2016-03-05 08:18 - 2016-03-05 08:20 - 02374144 _____ (Farbar) C:\Users\rafae\Desktop\FRST64.exe
2016-03-05 08:10 - 2016-03-05 08:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-04 20:24 - 2016-03-04 20:24 - 01163569 _____ C:\Users\rafae\Downloads\plugin.video.saltshd.lite-1.0.116.zip
2016-03-04 17:01 - 2016-03-04 17:01 - 135178986 _____ C:\Users\rafae\Desktop\final liga elite 4 temporada.mp4
2016-03-04 14:48 - 2016-03-04 14:48 - 163970209 _____ C:\Users\rafae\Desktop\FIFA 16 22_02_2016 09_44_17.mp4
2016-03-04 14:30 - 2016-03-04 14:30 - 00001158 _____ C:\Users\Public\Desktop\JFileManager.lnk
2016-03-04 14:30 - 2016-03-04 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JFileManager
2016-03-04 14:30 - 2016-03-04 14:30 - 00000000 ____D C:\Program Files (x86)\JFileManager
2016-03-04 14:28 - 2016-03-04 14:39 - 401094713 _____ C:\Users\rafae\Desktop\master fifa elite temp 5.mp4
2016-03-04 14:18 - 2016-03-04 14:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer
2016-03-04 14:16 - 2016-03-04 14:18 - 00000000 ____D C:\Program Files (x86)\MixVideoPlayer
2016-03-04 14:08 - 2016-03-04 14:08 - 00000000 _____ C:\Users\rafae\Desktop\5ª temporada pronto.mpg
2016-03-04 11:44 - 2016-03-04 11:44 - 00002214 _____ C:\Users\Public\Desktop\ProShow Producer.lnk
2016-03-04 11:44 - 2016-03-04 11:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProShow Producer
2016-03-04 11:44 - 2016-03-04 11:44 - 00000000 ____D C:\Program Files (x86)\Photodex Presenter
2016-03-04 11:44 - 2016-03-04 11:44 - 00000000 ____D C:\Program Files (x86)\Photodex
2016-03-04 11:39 - 2016-03-04 11:43 - 45002517 _____ C:\Users\rafae\Downloads\ProShow_Producer_v5.0.3206.rar
2016-03-04 11:23 - 2016-03-04 11:27 - 53721958 _____ C:\Users\rafae\Downloads\Photodex ProShow Producer 6.0.3397 + Activator-RNDD.rar
2016-03-04 11:16 - 2016-03-04 11:16 - 09689595 _____ C:\Users\rafae\Desktop\narração fifa elite.aac
2016-03-04 11:16 - 2016-03-04 11:16 - 00011470 _____ C:\Users\rafae\Desktop\narração fifa elite.aac.xmp
2016-03-04 09:05 - 2016-03-04 09:23 - 194627062 _____ C:\Users\rafae\Downloads\Photodex_ProShow_Producer_6.0.3410+ Full Package.rar
2016-03-04 08:48 - 2016-03-04 08:48 - 00003300 _____ C:\WINDOWS\System32\Tasks\{B3F76369-247C-4C8E-9C4F-F62275897318}
2016-03-04 08:46 - 2016-03-04 08:46 - 00003336 _____ C:\WINDOWS\System32\Tasks\{362FCA70-5988-472B-94BA-135FB32D3E86}
2016-03-04 02:27 - 2016-03-05 08:10 - 00000552 _____ C:\WINDOWS\Tasks\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}.job
2016-03-04 02:27 - 2016-03-04 12:54 - 00000000 ____D C:\Users\rafae\AppData\Roaming\WeatherTool
2016-03-04 02:27 - 2016-03-04 02:27 - 00003758 _____ C:\WINDOWS\System32\Tasks\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}
2016-03-04 02:27 - 2016-03-04 02:27 - 00000000 ____D C:\Users\Todos os Usuários\baidu
2016-03-04 02:27 - 2016-03-04 02:27 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Baidu
2016-03-04 02:27 - 2016-03-04 02:27 - 00000000 ____D C:\ProgramData\baidu
2016-03-04 02:27 - 2016-03-04 02:27 - 00000000 ____D C:\Program Files (x86)\WeatherTool
2016-03-04 02:08 - 2016-03-04 02:08 - 00002483 _____ C:\WINDOWS\patsearch.bin
2016-03-04 02:08 - 2016-03-04 02:08 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2016-03-04 02:07 - 2016-03-04 02:07 - 00003712 _____ C:\WINDOWS\System32\Tasks\PFExe
2016-03-04 02:02 - 2016-03-04 02:02 - 00000000 ____D C:\Users\Todos os Usuários\9f76f402-42d5-0
2016-03-04 02:02 - 2016-03-04 02:02 - 00000000 ____D C:\Users\Todos os Usuários\9f76f402-1d51-1
2016-03-04 02:02 - 2016-03-04 02:02 - 00000000 ____D C:\ProgramData\9f76f402-42d5-0
2016-03-04 02:02 - 2016-03-04 02:02 - 00000000 ____D C:\ProgramData\9f76f402-1d51-1
2016-03-04 02:00 - 2016-03-04 02:00 - 05892175 _____ (MediaDownloader ) C:\Users\Public\Documents\MediaDownloader.exe
2016-03-04 01:59 - 2016-03-04 02:00 - 00000000 ____D C:\Users\rafae\AppData\Local\BrowserHelper
2016-03-04 01:58 - 2016-03-05 08:14 - 00000000 ____D C:\Program Files (x86)\YTDownloader
2016-03-04 01:58 - 2016-03-04 01:58 - 00000000 ____D C:\Users\rafae\Desktop\video final
2016-03-04 01:58 - 2016-03-04 01:58 - 00000000 ____D C:\Users\Public\Documents\ShopperPro3
2016-03-04 01:56 - 2016-03-04 01:56 - 00000000 ____D C:\Users\Todos os Usuários\9f76f402-5791-1
2016-03-04 01:56 - 2016-03-04 01:56 - 00000000 ____D C:\ProgramData\9f76f402-5791-1
2016-03-04 01:54 - 2016-03-04 14:14 - 00000000 ____D C:\Program Files (x86)\osTip
2016-03-04 01:44 - 2016-03-05 08:10 - 00001798 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-04 01:44 - 2016-03-04 01:53 - 00000544 _____ C:\Users\rafae\Desktop\falas final.txt
2016-03-04 00:52 - 2016-03-04 11:24 - 00003010 _____ C:\Users\rafae\Desktop\vlog serie a.txt
2016-03-04 00:00 - 2016-03-04 00:00 - 02838434 _____ C:\Users\rafae\Desktop\er.bmp
2016-03-04 00:00 - 2016-03-04 00:00 - 02740550 _____ C:\Users\rafae\Desktop\rf.bmp
2016-03-03 19:54 - 2016-03-03 19:54 - 00000045 _____ C:\Users\rafae\AppData\Roaming\WB.CFG
2016-03-03 19:24 - 2016-03-03 19:24 - 00000000 ____D C:\Users\rafae\AppData\Local\ugpopular
2016-03-03 19:12 - 2016-03-03 19:12 - 00000000 ____D C:\Users\Todos os Usuários\Lrieeousunlop
2016-03-03 19:12 - 2016-03-03 19:12 - 00000000 ____D C:\ProgramData\Lrieeousunlop
2016-03-03 19:11 - 2016-03-03 19:13 - 00000000 ____D C:\Program Files (x86)\rec_en_215
2016-03-03 19:11 - 2016-03-03 19:11 - 00000000 ____D C:\Users\Todos os Usuários\Uniblue
2016-03-03 19:11 - 2016-03-03 19:11 - 00000000 ____D C:\ProgramData\Uniblue
2016-03-03 19:10 - 2016-03-05 08:10 - 00000324 _____ C:\WINDOWS\Tasks\SpeedUpMyPC Startup.job
2016-03-03 19:10 - 2016-03-05 08:10 - 00000310 _____ C:\WINDOWS\Tasks\SpeedUpMyPC Maintenance.job
2016-03-03 19:10 - 2016-03-03 19:10 - 00003356 _____ C:\WINDOWS\System32\Tasks\SpeedUpMyPC Maintenance
2016-03-03 19:10 - 2016-03-03 19:10 - 00002730 _____ C:\WINDOWS\System32\Tasks\SpeedUpMyPC Startup
2016-03-03 19:07 - 2016-03-03 19:18 - 00000000 ____D C:\Users\rafae\AppData\Local\SunnyDay7
2016-03-03 19:07 - 2016-03-03 19:12 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Uniblue
2016-03-03 19:06 - 2016-03-03 19:12 - 00000000 ____D C:\Users\Todos os Usuários\JFHhpCLaxRZ
2016-03-03 19:06 - 2016-03-03 19:12 - 00000000 ____D C:\ProgramData\JFHhpCLaxRZ
2016-03-03 19:04 - 2016-03-03 19:04 - 00000000 ____D C:\Users\rafae\AppData\Local\Setup Wizard
2016-03-03 19:00 - 2016-03-03 19:25 - 00002208 _____ C:\Users\rafae\Desktop\chrome.lnk
2016-03-03 18:59 - 2016-03-03 19:03 - 00000000 ____D C:\Users\rafae\AppData\Roaming\systweak
2016-03-03 18:59 - 2015-11-20 19:27 - 00019888 _____ () C:\WINDOWS\system32\roboot64.exe
2016-03-03 18:53 - 2016-03-03 18:53 - 00003840 _____ C:\WINDOWS\System32\Tasks\gameo_update
2016-03-03 18:53 - 2016-03-03 18:53 - 00000000 ___HD C:\Users\rafae\AppData\Roaming\GoldenGate
2016-03-03 18:52 - 2016-03-03 19:03 - 00000000 ____D C:\Users\rafae\AppData\Local\Gameo
2016-03-03 18:52 - 2016-03-03 19:00 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Gameo
2016-03-03 18:52 - 2016-03-03 18:52 - 00000173 _____ C:\Users\rafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url
2016-03-03 18:52 - 2016-03-03 11:12 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{d169bbad-8206-4fd9-b054-0cbe89a54f7b}Gw64.sys
2016-03-03 18:51 - 2016-03-05 08:27 - 00002210 __RSH C:\Users\Todos os Usuários\ntuser.pol
2016-03-03 18:51 - 2016-03-05 08:27 - 00002210 __RSH C:\ProgramData\ntuser.pol
2016-03-03 18:50 - 2016-03-03 18:50 - 00000000 ___HD C:\$SysReset
2016-03-03 18:49 - 2016-03-03 18:49 - 05892175 _____ (MediaDownloader ) C:\Users\rafae\Downloads\MediaDownloader.exe
2016-03-03 18:43 - 2016-03-03 19:06 - 00002113 _____ C:\Users\Public\Desktop\Atualizar Ajudante.lnk
2016-03-03 18:43 - 2016-03-03 18:43 - 00002067 _____ C:\Users\Public\Desktop\UPCleaner.lnk
2016-03-03 18:43 - 2016-03-03 18:43 - 00000000 ____D C:\Users\rafae\AppData\Roaming\UG
2016-03-03 18:43 - 2016-03-03 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UPCleaner
2016-03-03 18:43 - 2016-03-03 18:43 - 00000000 ____D C:\Program Files (x86)\UPCleaner
2016-03-03 18:42 - 2016-03-03 18:42 - 00001672 ____R C:\Yeabeats Browser.lnk
2016-03-03 18:41 - 2016-03-03 18:42 - 00000000 ____D C:\Users\Todos os Usuários\Windows Update
2016-03-03 18:41 - 2016-03-03 18:42 - 00000000 ____D C:\ProgramData\Windows Update
2016-03-03 18:41 - 2016-03-03 18:41 - 00007404 _____ C:\Users\Todos os Usuários\webad.xml
2016-03-03 18:41 - 2016-03-03 18:41 - 00007404 _____ C:\ProgramData\webad.xml
2016-03-03 18:41 - 2015-12-04 13:14 - 01081344 _____ C:\Users\Todos os Usuários\LightGate.exe
2016-03-03 18:41 - 2015-12-04 13:14 - 01081344 _____ C:\ProgramData\LightGate.exe
2016-03-03 18:41 - 2015-11-25 15:31 - 01100288 _____ C:\Users\Todos os Usuários\HomePage.exe
2016-03-03 18:41 - 2015-11-25 15:31 - 01100288 _____ C:\ProgramData\HomePage.exe
2016-03-03 18:40 - 2016-03-02 13:36 - 01888256 _____ C:\Users\Todos os Usuários\mspop.exe
2016-03-03 18:40 - 2016-03-02 13:36 - 01888256 _____ C:\ProgramData\mspop.exe
2016-03-03 18:38 - 2016-03-03 18:59 - 00000000 ____D C:\Users\rafae\AppData\Local\app
2016-03-03 18:38 - 2016-03-03 18:38 - 01734656 _____ C:\Users\Todos os Usuários\service.exe
2016-03-03 18:38 - 2016-03-03 18:38 - 01734656 _____ C:\ProgramData\service.exe
2016-03-03 18:38 - 2016-03-03 18:38 - 00000000 ____D C:\Users\rafae\AppData\Roaming\CalendarTool
2016-03-03 18:38 - 2016-03-03 18:38 - 00000000 ____D C:\Users\Public\Documents\Tools
2016-03-03 18:38 - 2016-03-03 18:38 - 00000000 ____D C:\Users\Public\Documents\Baidu
2016-03-03 18:37 - 2016-03-03 18:37 - 00003122 _____ C:\WINDOWS\System32\Tasks\ttwifi
2016-03-03 18:37 - 2016-03-03 18:37 - 00003016 _____ C:\WINDOWS\System32\Tasks\osTip
2016-03-03 18:36 - 2016-03-04 14:14 - 00000000 ____D C:\Users\Todos os Usuários\WindowsMsg
2016-03-03 18:36 - 2016-03-04 14:14 - 00000000 ____D C:\ProgramData\WindowsMsg
2016-03-03 18:36 - 2016-03-03 18:38 - 00000000 ____D C:\Users\rafae\AppData\Roaming\UPUpdata
2016-03-03 18:36 - 2016-03-03 18:36 - 00000000 ____D C:\Users\Public\Documents\Guid
2016-03-03 18:34 - 2016-03-03 18:35 - 00000000 ____D C:\Users\rafae\AppData\Roaming\gplyra
2016-03-03 18:34 - 2016-03-03 18:35 - 00000000 ____D C:\Users\rafae\AppData\Roaming\cpuminer
2016-03-03 18:32 - 2016-03-04 01:52 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-03 18:32 - 2016-03-03 18:32 - 00059112 _____ (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-03 18:32 - 2016-03-03 18:32 - 00034712 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-03 18:32 - 2016-03-03 18:32 - 00003418 _____ C:\WINDOWS\System32\Tasks\Ibogjil
2016-03-03 18:32 - 2016-03-03 18:32 - 00000000 ____D C:\Users\rafae\AppData\Roaming\TetaloBasforc
2016-03-03 18:32 - 2016-03-03 18:32 - 00000000 ____D C:\Users\rafae\AppData\LocalLow\Company
2016-03-03 18:32 - 2016-03-03 18:32 - 00000000 ____D C:\Users\rafae\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2016-03-03 18:32 - 2016-03-03 18:32 - 00000000 ____D C:\Users\rafae\AppData\Local\Tempfolder
2016-03-03 18:32 - 2016-03-03 18:32 - 00000000 ____D C:\uninst
2016-03-03 18:10 - 2016-03-03 18:10 - 00000891 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-03 17:56 - 2016-03-03 19:00 - 00000000 ____D C:\Users\rafae\AppData\Local\BoBrowser
2016-03-03 17:56 - 2016-03-03 17:57 - 00000000 ____D C:\Users\rafae\AppData\Local\03D40274-1457027815-05E1-5206-950700080009
2016-03-03 17:56 - 2016-03-03 17:56 - 00003302 _____ C:\WINDOWS\System32\Tasks\crash_service
2016-03-03 17:56 - 2016-03-03 17:56 - 00003278 _____ C:\WINDOWS\System32\Tasks\Run_Bobby_Browser
2016-03-03 17:56 - 2016-03-03 17:52 - 00001379 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-03 17:54 - 2016-03-04 13:30 - 00000000 ____D C:\Program Files (x86)\03D40274-1457038451-05E1-5206-950700080009
2016-03-03 17:52 - 2016-03-03 18:01 - 00000000 ____D C:\Users\rafae\AppData\Roaming\WTools
2016-03-03 17:51 - 2016-03-03 17:59 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Store
2016-03-03 17:50 - 2016-03-03 18:10 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Nosibay
2016-03-03 17:49 - 2016-03-03 17:49 - 00030601 _____ C:\Users\rafae\x.exe
2016-03-03 17:48 - 2016-03-04 01:54 - 00000000 ____D C:\Program Files\Sound+
2016-03-03 17:41 - 2016-03-03 17:41 - 00001665 ____R C:\Users\rafae\Downloads\MSG.txt
2016-03-03 17:41 - 2016-03-03 17:41 - 00000698 ____R C:\Users\rafae\Downloads\RegKey.reg
2016-03-03 17:41 - 2016-03-03 17:41 - 00000213 ____R C:\Users\rafae\Downloads\Seven7i on TPB.url
2016-03-03 17:41 - 2016-03-03 17:41 - 00000206 ____R C:\Users\rafae\Downloads\Seven7i on FB.url
2016-03-03 17:41 - 2016-03-03 17:41 - 00000198 ____R C:\Users\rafae\Downloads\Seven7i on KAT.url
2016-03-03 17:39 - 2016-03-03 17:41 - 00000000 ____D C:\Users\rafae\Downloads\Crack
2016-03-03 17:39 - 2016-03-03 17:39 - 00000000 ____D C:\Users\rafae\Downloads\Karaoke Builder Studio V3.0.080
2016-03-03 17:33 - 2016-03-03 17:33 - 00781262 _____ C:\Users\rafae\Downloads\DU Meter 7.11 Build 4757 Serial Key Patch Download Here.zip
2016-03-03 17:29 - 2016-03-03 18:59 - 00000000 ____D C:\Program Files (x86)\DU Meter
2016-03-03 17:29 - 2016-03-03 17:29 - 00000000 ____D C:\Users\Todos os Usuários\Hagel Technologies
2016-03-03 17:29 - 2016-03-03 17:29 - 00000000 ____D C:\ProgramData\Hagel Technologies
2016-03-03 17:27 - 2016-03-03 17:41 - 06481576 ____R (Hagel Technologies Ltd. ) C:\Users\rafae\Downloads\DUMeter-Install.exe
2016-03-03 17:26 - 2016-03-03 17:26 - 00000000 ____D C:\Users\Todos os Usuários\Sun
2016-03-03 17:26 - 2016-03-03 17:26 - 00000000 ____D C:\Users\rafae\vw
2016-03-03 17:26 - 2016-03-03 17:26 - 00000000 ____D C:\Users\rafae\MyConnection PC
2016-03-03 17:26 - 2016-03-03 17:26 - 00000000 ____D C:\ProgramData\Sun
2016-03-03 17:26 - 2016-03-03 17:25 - 00472808 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\deployJava1.dll
2016-03-03 17:26 - 2016-03-03 17:25 - 00157472 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\javaws.exe
2016-03-03 17:26 - 2016-03-03 17:25 - 00149280 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\javaw.exe
2016-03-03 17:26 - 2016-03-03 17:25 - 00149280 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\java.exe
2016-03-03 17:25 - 2016-03-03 17:25 - 00000000 ____D C:\Program Files (x86)\Java
2016-03-03 17:24 - 2016-03-03 17:24 - 01531144 _____ C:\Users\rafae\Downloads\mcpclite.exe
2016-03-03 17:24 - 2016-03-03 17:24 - 00000000 ____D C:\Users\rafae\AppData\LocalLow\Sun
2016-03-03 17:21 - 2016-03-03 17:21 - 00446711 _____ C:\Users\rafae\Downloads\NetTraffic 1.29.1.zip
2016-03-03 17:21 - 2016-03-03 17:21 - 00000000 ____D C:\Users\rafae\AppData\Local\VENEA.NET
2016-03-03 17:15 - 2016-03-03 17:16 - 05744805 _____ (Hagel Technologies Ltd.) C:\Users\rafae\Downloads\DU.Meter.v7.08.4749.exe
2016-03-03 17:15 - 2016-03-03 17:16 - 05580455 _____ C:\Users\rafae\Downloads\DU Meter 7.08 Activator.zip
2016-03-03 17:13 - 2016-03-03 17:14 - 03125434 _____ C:\Users\rafae\Downloads\DU Meter 1.30.zip
2016-03-03 10:27 - 2016-03-03 18:32 - 00056728 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-02 23:08 - 2016-02-23 08:27 - 07475040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-02 23:08 - 2016-02-23 08:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-02 23:08 - 2016-02-23 08:23 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-02 23:08 - 2016-02-23 08:22 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-02 23:08 - 2016-02-23 08:15 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-02 23:08 - 2016-02-23 07:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-02 23:08 - 2016-02-23 07:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 23:08 - 2016-02-23 07:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-02 23:08 - 2016-02-23 07:31 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-02 23:08 - 2016-02-23 07:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-02 23:08 - 2016-02-23 07:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-02 23:08 - 2016-02-23 07:21 - 06606568 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-02 23:08 - 2016-02-23 06:45 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-02 23:08 - 2016-02-23 06:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 23:08 - 2016-02-23 06:38 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-02 23:08 - 2016-02-23 06:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-02 23:08 - 2016-02-23 06:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-02 23:08 - 2016-02-23 06:26 - 05241984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-02 23:08 - 2016-02-23 05:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-02 23:08 - 2016-02-23 05:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-02 23:08 - 2016-02-23 05:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 23:08 - 2016-02-23 05:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-02 23:08 - 2016-02-23 05:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-02 23:08 - 2016-02-23 05:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-02 23:08 - 2016-02-23 05:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 23:08 - 2016-02-23 05:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-02 23:08 - 2016-02-23 04:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 23:08 - 2016-02-23 04:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 23:08 - 2016-02-23 04:41 - 03594240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-02 23:08 - 2016-02-23 04:30 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-02 23:08 - 2016-02-23 04:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-02 23:08 - 2016-02-23 04:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-02 23:08 - 2016-02-23 04:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-02 23:08 - 2016-02-23 04:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-02 23:08 - 2016-02-23 03:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-02 23:08 - 2016-02-23 03:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-02 23:08 - 2016-02-23 03:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-02 23:08 - 2016-02-23 03:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-02 23:08 - 2016-02-23 03:50 - 22396416 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-02 23:08 - 2016-02-23 03:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-02 23:08 - 2016-02-23 03:40 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-02 23:08 - 2016-02-23 03:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-02 23:08 - 2016-02-23 03:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 23:08 - 2016-02-23 03:36 - 19341312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-02 23:08 - 2016-02-23 03:36 - 18680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-02 23:08 - 2016-02-23 03:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-02 23:08 - 2016-02-23 03:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-02 23:08 - 2016-02-09 00:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 23:08 - 2016-02-09 00:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-02 23:08 - 2016-02-09 00:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-02 23:07 - 2016-02-23 08:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-02 23:07 - 2016-02-23 08:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-02 23:07 - 2016-02-23 08:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 23:07 - 2016-02-23 08:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-02 23:07 - 2016-02-23 08:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-02 23:07 - 2016-02-23 08:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-02 23:07 - 2016-02-23 08:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-02 23:07 - 2016-02-23 08:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-02 23:07 - 2016-02-23 08:09 - 01614176 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-02 23:07 - 2016-02-23 08:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-02 23:07 - 2016-02-23 07:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-02 23:07 - 2016-02-23 07:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 23:07 - 2016-02-23 07:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-02 23:07 - 2016-02-23 07:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-02 23:07 - 2016-02-23 07:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 07:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 23:07 - 2016-02-23 07:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 23:07 - 2016-02-23 07:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 07:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 23:07 - 2016-02-23 07:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-02 23:07 - 2016-02-23 07:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 23:07 - 2016-02-23 07:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-02 23:07 - 2016-02-23 07:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-02 23:07 - 2016-02-23 07:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-02 23:07 - 2016-02-23 06:49 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-02 23:07 - 2016-02-23 06:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-02 23:07 - 2016-02-23 06:45 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-02 23:07 - 2016-02-23 06:45 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-02 23:07 - 2016-02-23 06:45 - 00259336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-02 23:07 - 2016-02-23 06:44 - 00640984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-02 23:07 - 2016-02-23 06:44 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-02 23:07 - 2016-02-23 06:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-02 23:07 - 2016-02-23 06:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-02 23:07 - 2016-02-23 06:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-02 23:07 - 2016-02-23 06:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-02 23:07 - 2016-02-23 06:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-02 23:07 - 2016-02-23 06:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 23:07 - 2016-02-23 06:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-02 23:07 - 2016-02-23 06:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 23:07 - 2016-02-23 06:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-02 23:07 - 2016-02-23 06:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-02 23:07 - 2016-02-23 06:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 23:07 - 2016-02-23 06:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 23:07 - 2016-02-23 06:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 23:07 - 2016-02-23 06:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 23:07 - 2016-02-23 06:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 23:07 - 2016-02-23 06:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 23:07 - 2016-02-23 06:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-02 23:07 - 2016-02-23 06:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 23:07 - 2016-02-23 06:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-02 23:07 - 2016-02-23 05:58 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-02 23:07 - 2016-02-23 05:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-02 23:07 - 2016-02-23 05:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 23:07 - 2016-02-23 05:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-02 23:07 - 2016-02-23 05:55 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-02 23:07 - 2016-02-23 05:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-02 23:07 - 2016-02-23 05:54 - 00539256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-02 23:07 - 2016-02-23 05:54 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-02 23:07 - 2016-02-23 05:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-02 23:07 - 2016-02-23 05:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 23:07 - 2016-02-23 05:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 23:07 - 2016-02-23 05:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 23:07 - 2016-02-23 05:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-02 23:07 - 2016-02-23 05:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 23:07 - 2016-02-23 05:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 23:07 - 2016-02-23 05:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-02 23:07 - 2016-02-23 05:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 23:07 - 2016-02-23 05:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-02 23:07 - 2016-02-23 05:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-02 23:07 - 2016-02-23 05:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 23:07 - 2016-02-23 05:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 23:07 - 2016-02-23 05:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 23:07 - 2016-02-23 05:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 23:07 - 2016-02-23 05:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 23:07 - 2016-02-23 05:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 23:07 - 2016-02-23 05:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 23:07 - 2016-02-23 05:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-02 23:07 - 2016-02-23 05:30 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-02 23:07 - 2016-02-23 05:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 23:07 - 2016-02-23 05:28 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-02 23:07 - 2016-02-23 05:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-02 23:07 - 2016-02-23 05:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-02 23:07 - 2016-02-23 05:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-02 23:07 - 2016-02-23 05:25 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-02 23:07 - 2016-02-23 05:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 23:07 - 2016-02-23 05:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 23:07 - 2016-02-23 05:22 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-02 23:07 - 2016-02-23 05:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-02 23:07 - 2016-02-23 05:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 23:07 - 2016-02-23 05:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 05:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 23:07 - 2016-02-23 05:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 23:07 - 2016-02-23 05:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-02 23:07 - 2016-02-23 05:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 23:07 - 2016-02-23 05:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 23:07 - 2016-02-23 05:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-02 23:07 - 2016-02-23 05:13 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-02 23:07 - 2016-02-23 05:13 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-02 23:07 - 2016-02-23 05:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 23:07 - 2016-02-23 05:11 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-02 23:07 - 2016-02-23 05:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-02 23:07 - 2016-02-23 05:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-02 23:07 - 2016-02-23 05:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 23:07 - 2016-02-23 05:09 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-02 23:07 - 2016-02-23 05:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 23:07 - 2016-02-23 05:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 23:07 - 2016-02-23 05:06 - 01848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-02 23:07 - 2016-02-23 05:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-02 23:07 - 2016-02-23 05:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-02 23:07 - 2016-02-23 05:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 23:07 - 2016-02-23 05:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 23:07 - 2016-02-23 05:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-02 23:07 - 2016-02-23 05:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-02 23:07 - 2016-02-23 05:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-02 23:07 - 2016-02-23 04:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 23:07 - 2016-02-23 04:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 23:07 - 2016-02-23 04:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 23:07 - 2016-02-23 04:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-02 23:07 - 2016-02-23 04:54 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-02 23:07 - 2016-02-23 04:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-02 23:07 - 2016-02-23 04:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-02 23:07 - 2016-02-23 04:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-02 23:07 - 2016-02-23 04:47 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-02 23:07 - 2016-02-23 04:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-02 23:07 - 2016-02-23 04:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-02 23:07 - 2016-02-23 04:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-02 23:07 - 2016-02-23 04:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-02 23:07 - 2016-02-23 04:37 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-02 23:07 - 2016-02-23 04:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-02 23:07 - 2016-02-23 04:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-02 23:07 - 2016-02-23 04:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 23:07 - 2016-02-23 04:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-02 23:07 - 2016-02-23 04:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-02 23:07 - 2016-02-23 04:31 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-02 23:07 - 2016-02-23 04:30 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-02 23:07 - 2016-02-23 04:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 23:07 - 2016-02-23 04:29 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-02 23:07 - 2016-02-23 04:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-02 23:07 - 2016-02-23 04:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-02 23:07 - 2016-02-23 04:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 23:07 - 2016-02-23 04:26 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-02 23:07 - 2016-02-23 04:26 - 01498112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-02 23:07 - 2016-02-23 04:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-02 23:07 - 2016-02-23 04:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 23:07 - 2016-02-23 04:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-02 23:07 - 2016-02-23 04:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-02 23:07 - 2016-02-23 04:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 23:07 - 2016-02-23 04:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-02 23:07 - 2016-02-23 04:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 23:07 - 2016-02-23 04:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 23:07 - 2016-02-23 04:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 23:07 - 2016-02-23 04:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-02 23:07 - 2016-02-23 04:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-02 23:07 - 2016-02-23 03:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-02 23:07 - 2016-02-23 03:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-02 23:07 - 2016-02-23 03:55 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-02 23:07 - 2016-02-23 03:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-02 23:07 - 2016-02-23 03:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-02 23:07 - 2016-02-23 03:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 23:07 - 2016-02-23 03:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 23:07 - 2016-02-23 03:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-02 23:07 - 2016-02-23 03:33 - 14254080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-02 23:07 - 2016-02-23 03:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-02 23:07 - 2016-02-23 03:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-02 23:07 - 2016-02-23 03:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-02 23:07 - 2016-02-23 03:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-02 23:07 - 2016-02-23 03:26 - 12587520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-02 23:07 - 2016-02-09 01:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-02 23:07 - 2016-02-09 01:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-02 23:07 - 2016-02-09 00:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-02 23:07 - 2016-02-09 00:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-02 23:07 - 2016-02-09 00:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-02 02:50 - 2016-03-02 02:50 - 241155553 _____ C:\Users\rafae\Desktop\2016_02_16_09_06_45-man.mp4
2016-03-02 02:29 - 2016-03-02 02:29 - 77221932 _____ C:\Users\rafae\Desktop\2016_02_16_09_06_45-man.wav
2016-03-02 01:52 - 2014-12-23 06:53 - 00000431 _____ C:\Users\rafae\Desktop\Dúvidas.txt
2016-03-01 23:04 - 2016-03-01 23:04 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Lightcomm
2016-02-29 09:22 - 2016-02-29 09:22 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-02-23 22:46 - 2016-03-04 20:22 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Kodi
2016-02-23 22:44 - 2016-02-23 22:44 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
2016-02-23 22:44 - 2016-02-23 22:44 - 00000000 ____D C:\Program Files (x86)\Kodi
2016-02-22 22:58 - 2016-02-22 22:58 - 00000000 ____D C:\Users\Todos os Usuários\Mirillis
2016-02-22 22:58 - 2016-02-22 22:58 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Mirillis
2016-02-22 22:58 - 2016-02-22 22:58 - 00000000 ____D C:\ProgramData\Mirillis
2016-02-22 22:57 - 2016-03-02 01:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
2016-02-22 22:57 - 2016-02-22 22:57 - 00000000 ____D C:\Program Files (x86)\Mirillis
2016-02-22 10:30 - 2016-03-04 16:56 - 00072087 _____ C:\Users\rafae\Desktop\Sem título.prproj
2016-02-22 10:27 - 2016-02-22 11:36 - 00000000 ____D C:\Users\rafae\Desktop\veteranos
2016-02-22 09:24 - 2016-02-22 22:58 - 00000000 ____D C:\Users\rafae\AppData\Local\Mirillis
2016-02-22 09:24 - 2016-02-22 09:24 - 00000000 ____D C:\Action!
2016-02-19 23:24 - 2016-02-19 23:28 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9.001
2016-02-19 23:24 - 2016-02-19 23:24 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9.001\AppData\Local\TileDataLayer
2016-02-19 01:17 - 2016-02-22 23:58 - 00000917 _____ C:\Users\rafae\Desktop\FINANÇAS CELTA.txt
2016-02-17 22:51 - 2016-02-17 22:51 - 00000000 ____D C:\Users\rafae\Documents\SavedGames
2016-02-17 18:39 - 2016-02-17 18:39 - 00000000 ____D C:\Users\rafae\Desktop\plugin.video.saltshd.lite
2016-02-17 16:01 - 2016-02-17 16:01 - 00000000 ____D C:\Users\rafae\Documents\SEGA Mega Drive Classics
2016-02-17 07:26 - 2016-02-17 07:26 - 00001193 _____ C:\Users\rafae\Desktop\audacity - Atalho.lnk
2016-02-16 22:21 - 2016-03-04 16:47 - 00000000 ____D C:\Users\rafae\Desktop\Adobe Premiere Pro Auto-Save
2016-02-16 22:20 - 2016-02-16 22:20 - 156876612 _____ C:\Users\rafae\Desktop\2016_02_16_09_06_45-man_1.mp4
2016-02-16 22:13 - 2016-03-04 16:57 - 00000000 ____D C:\Users\rafae\Desktop\Adobe Premiere Pro Preview Files
2016-02-16 10:08 - 2016-02-16 22:23 - 00060690 _____ C:\Users\rafae\Desktop\teste youtube 16-02-16.prproj
2016-02-16 09:31 - 2016-02-16 09:32 - 492568620 _____ C:\Users\rafae\Desktop\tt.wav
2016-02-16 09:20 - 2016-02-16 09:20 - 00007039 _____ C:\Users\rafae\Desktop\2016_02_16_09_06_45-man.aac.xmp
2016-02-16 09:20 - 2016-02-16 09:20 - 00000000 ____D C:\Users\rafae\AppData\Local\Audacity
2016-02-16 07:51 - 2016-02-16 08:49 - 00000000 ____D C:\Users\rafae\Documents\Gravações de som
2016-02-14 10:47 - 2016-02-14 10:47 - 00117368 _____ C:\Users\rafae\Downloads\EA Font.ttf
2016-02-14 10:36 - 2016-03-03 17:17 - 00000073 _____ C:\Users\Todos os Usuários\killer.bat
2016-02-14 10:36 - 2016-03-03 17:17 - 00000073 _____ C:\ProgramData\killer.bat
2016-02-11 07:29 - 2016-01-29 03:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-11 07:29 - 2016-01-29 03:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-11 07:29 - 2016-01-27 03:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-11 07:29 - 2016-01-27 03:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-11 07:29 - 2016-01-27 02:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-11 07:29 - 2016-01-27 02:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-11 07:29 - 2016-01-27 02:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-11 07:29 - 2016-01-27 02:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-11 07:29 - 2016-01-27 02:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-11 07:29 - 2016-01-27 02:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-11 07:29 - 2016-01-27 02:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-11 07:29 - 2016-01-27 02:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-11 07:29 - 2016-01-27 02:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-11 07:29 - 2016-01-27 02:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-11 07:29 - 2016-01-27 02:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-11 07:29 - 2016-01-27 02:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-11 07:29 - 2016-01-27 02:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-11 07:29 - 2016-01-27 02:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-11 07:29 - 2016-01-27 02:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-11 07:29 - 2016-01-27 02:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-11 07:29 - 2016-01-27 02:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-11 07:29 - 2016-01-27 02:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-11 07:29 - 2016-01-27 02:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-11 07:29 - 2016-01-27 02:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-11 07:29 - 2016-01-27 01:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-11 07:29 - 2016-01-27 01:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-11 07:29 - 2016-01-27 01:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-11 07:29 - 2016-01-27 01:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-11 07:29 - 2016-01-27 01:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-11 07:29 - 2016-01-27 01:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-11 07:29 - 2016-01-27 01:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-11 07:29 - 2016-01-27 01:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-11 07:29 - 2016-01-27 01:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-11 07:29 - 2016-01-27 01:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-10 03:40 - 2016-02-10 03:40 - 00000724 _____ C:\Users\rafae\Desktop\KaraFun Player 2.lnk
2016-02-10 03:40 - 2016-02-10 03:40 - 00000000 ____D C:\KaraFun Player 2
2016-02-10 03:39 - 2016-02-10 03:40 - 11720264 _____ C:\Users\rafae\Downloads\Latitude longitude rosa de saron (play back) (1).mp4
2016-02-10 03:28 - 2016-02-10 03:29 - 11720264 _____ C:\Users\rafae\Downloads\Latitude longitude rosa de saron (play back).mp4
2016-02-10 03:28 - 2016-02-10 03:29 - 04946557 _____ C:\Users\rafae\Downloads\Latitude Longitube playback.mp3.m4a
2016-02-10 03:26 - 2016-02-10 03:28 - 04267447 _____ C:\Users\rafae\Downloads\do alto da pedra playback.mp3.m4a
2016-02-10 03:21 - 2016-02-10 03:21 - 00000619 _____ C:\Users\rafae\Desktop\Karaoke Builder Player.lnk
2016-02-10 03:21 - 2016-02-10 03:21 - 00000600 _____ C:\Users\rafae\Desktop\Karaoke Builder Studio.lnk
2016-02-10 03:21 - 2016-02-10 03:21 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Karaoke Builder Studio
2016-02-10 03:21 - 2003-03-13 11:51 - 00051200 _____ (RenderSoft Software.) C:\WINDOWS\SysWOW64\camcodec.dll
2016-02-10 03:21 - 2003-01-25 21:32 - 00523264 _____ (Aurigma Inc.) C:\WINDOWS\SysWOW64\AviProcessor.dll
2016-02-10 03:21 - 2002-11-05 07:40 - 00042496 _____ (Pegasus Imaging Corp.) C:\WINDOWS\SysWOW64\picn20.dll
2016-02-10 03:21 - 2002-04-26 13:14 - 00419488 _____ (VideoSoft) C:\WINDOWS\SysWOW64\Vsflex7L.ocx
2016-02-10 03:21 - 2001-07-18 05:02 - 00098816 _____ C:\WINDOWS\SysWOW64\FGWVB32.DLL
2016-02-10 03:21 - 2000-11-22 13:38 - 00532480 _____ (Pegasus Software, LLC) C:\WINDOWS\SysWOW64\imagx5.dll
2016-02-10 03:21 - 2000-11-06 11:18 - 00507904 _____ (Pegasus Software,LLC) C:\WINDOWS\SysWOW64\imagr5.dll
2016-02-10 03:21 - 2000-10-20 10:21 - 00271216 _____ (Pegasus Software, LLC) C:\WINDOWS\SysWOW64\ImagXpr5.dll
2016-02-10 03:21 - 2000-09-19 23:14 - 00114688 _____ C:\WINDOWS\SysWOW64\avizlib.dll
2016-02-10 03:21 - 2000-08-23 16:00 - 00033280 _____ (Disappearing Inc.) C:\WINDOWS\SysWOW64\Huffyuv.dll
2016-02-08 17:25 - 2016-02-08 17:25 - 00000222 _____ C:\Users\rafae\Desktop\Tomb Raider.url
2016-02-08 17:24 - 2016-02-08 17:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-02-06 11:31 - 2016-02-06 11:31 - 00018068 _____ C:\Users\rafae\Downloads\UCL FONT.ttf
2016-02-06 10:46 - 2016-03-05 08:10 - 00000000 ____D C:\Program Files (x86)\Steam
2016-02-06 10:46 - 2016-02-06 10:46 - 00001032 _____ C:\Users\Public\Desktop\Steam.lnk
2016-02-05 09:19 - 2016-02-05 11:16 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9.000
2016-02-05 09:19 - 2016-02-05 09:19 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9.000\AppData\Local\TileDataLayer
2016-02-05 09:17 - 2016-02-05 09:17 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9\AppData\Roaming\Raptr
2016-02-05 09:16 - 2016-02-05 09:17 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9
2016-02-05 09:16 - 2016-02-05 09:16 - 00000000 ____D C:\Users\TEMP.DESKTOP-AQ1QPQ9\AppData\Local\TileDataLayer

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-03-05 08:28 - 2016-01-15 03:51 - 00028888 _____ (GAS Tecnologia) C:\WINDOWS\system32\Drivers\gbpddfac64.sys
2016-03-05 08:13 - 2015-12-23 10:02 - 00001108 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-05 08:10 - 2016-01-02 03:54 - 00000000 ____D C:\Users\rafae\AppData\Local\Adobe
2016-03-05 08:10 - 2015-12-23 10:02 - 00001104 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-05 08:10 - 2015-12-23 09:43 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Raptr
2016-03-05 08:10 - 2015-12-23 09:31 - 00000000 ____D C:\Users\Todos os Usuários\Origin
2016-03-05 08:10 - 2015-12-23 09:31 - 00000000 ____D C:\ProgramData\Origin
2016-03-05 08:10 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-04 18:16 - 2015-10-30 04:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-04 17:09 - 2015-12-27 02:50 - 00000000 ____D C:\Users\rafae
2016-03-04 15:31 - 2015-12-23 08:56 - 01819274 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-04 15:31 - 2015-10-30 16:11 - 00785262 _____ C:\WINDOWS\system32\prfh0416.dat
2016-03-04 15:31 - 2015-10-30 16:11 - 00154048 _____ C:\WINDOWS\system32\prfc0416.dat
2016-03-04 15:31 - 2015-10-30 04:21 - 00000000 ____D C:\WINDOWS\INF
2016-03-04 14:47 - 2015-12-23 09:49 - 00004180 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{7AED59AC-D0C6-455E-A203-751D149C576B}
2016-03-04 14:44 - 2016-01-10 10:16 - 00000000 ____D C:\Users\Todos os Usuários\boost_interprocess
2016-03-04 14:44 - 2016-01-10 10:16 - 00000000 ____D C:\ProgramData\boost_interprocess
2016-03-04 14:17 - 2016-01-15 03:51 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin
2016-03-04 14:17 - 2016-01-15 03:51 - 00000000 ____D C:\ProgramData\GbPlugin
2016-03-04 14:14 - 2016-01-15 03:53 - 00101080 _____ (GAS Tecnologia) C:\WINDOWS\system32\Drivers\wsddfac.sys
2016-03-04 14:14 - 2016-01-15 03:51 - 00029816 _____ (GAS Tecnologia) C:\WINDOWS\system32\Drivers\gbpddreg64.sys
2016-03-04 14:14 - 2016-01-15 03:51 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-03-04 14:14 - 2015-12-27 02:54 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-04 14:14 - 2015-10-30 03:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-04 13:59 - 2016-01-02 04:24 - 00000000 ____D C:\Users\rafae\Desktop\projetos photoshop
2016-03-04 13:48 - 2015-12-23 08:52 - 00000000 ____D C:\Users\rafae\AppData\Local\VirtualStore
2016-03-04 12:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-04 11:27 - 2016-01-10 10:44 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Audacity
2016-03-04 01:44 - 2015-12-23 08:52 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-03 19:08 - 2016-01-05 04:41 - 00000000 ____D C:\WINDOWS\Minidump
2016-03-03 18:59 - 2015-12-26 16:14 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DU Meter
2016-03-03 18:51 - 2015-07-10 08:04 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-03-03 18:46 - 2015-07-10 08:04 - 00000194 _____ C:\WINDOWS\win.ini
2016-03-03 18:43 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-03 18:42 - 2015-12-23 10:07 - 00002318 ____R C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-03 17:53 - 2015-12-26 16:08 - 00000000 ____D C:\Users\rafae\AppData\Roaming\uTorrent
2016-03-03 08:45 - 2015-12-27 02:48 - 04890816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-03 08:44 - 2015-10-30 16:14 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-03 08:44 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-03 08:44 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-03 08:44 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-03 00:47 - 2015-10-30 04:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-02-26 01:14 - 2015-12-23 08:52 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Adobe
2016-02-23 22:44 - 2015-12-23 09:31 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-02-23 22:44 - 2015-12-23 09:31 - 00000000 ____D C:\ProgramData\Package Cache
2016-02-22 23:12 - 2016-01-22 20:14 - 00000000 ____D C:\Users\rafae\Documents\FIFA 16
2016-02-19 01:17 - 2016-01-03 05:11 - 00000000 ____D C:\Users\rafae\Desktop\karaokes
2016-02-17 13:06 - 2015-12-25 08:45 - 00000000 ____D C:\Users\rafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-02-12 16:13 - 2015-12-24 18:14 - 00000000 ____D C:\Users\rafae\AppData\Local\Steam
2016-02-11 19:02 - 2015-12-24 16:03 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-02-11 19:00 - 2015-12-24 16:03 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-02-11 07:17 - 2015-12-23 08:54 - 00002369 _____ C:\Users\rafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-11 07:17 - 2015-12-23 08:54 - 00000000 ___RD C:\Users\rafae\OneDrive
2016-02-10 03:42 - 2015-12-26 06:27 - 00000000 ____D C:\kbStudio
2016-02-10 03:40 - 2016-01-03 05:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2
2016-02-09 15:18 - 2015-12-23 09:42 - 00000000 ____D C:\Users\rafae\AppData\Local\AMD
2016-02-08 17:24 - 2015-12-23 10:32 - 00000000 ____D C:\Program Files (x86)\Origin Games
2016-02-05 09:14 - 2015-12-26 07:06 - 00000000 ____D C:\Users\Public\Documents\Winstep

==================== Arquivos na raiz de alguns diretórios =======

2016-03-03 17:49 - 2016-03-03 17:52 - 0001272 _____ () C:\Users\rafae\AppData\Roaming\Bubble Dock.boostrap.log
2016-03-03 17:50 - 2016-03-03 17:51 - 0005710 _____ () C:\Users\rafae\AppData\Roaming\Bubble Dock.installation.log
2016-03-03 17:51 - 2016-03-03 17:51 - 0000078 _____ () C:\Users\rafae\AppData\Roaming\Selection Tools.installation.log
2016-03-03 19:54 - 2016-03-03 19:54 - 0000045 _____ () C:\Users\rafae\AppData\Roaming\WB.CFG
2016-03-03 17:49 - 2016-03-03 17:49 - 0000097 _____ () C:\Users\rafae\AppData\Roaming\WindApp.boostrap.log
2016-03-03 17:51 - 2016-03-03 17:51 - 0000078 _____ () C:\Users\rafae\AppData\Roaming\WindApp.installation.log
2015-12-23 09:07 - 2015-12-23 09:08 - 0007605 _____ () C:\Users\rafae\AppData\Local\resmon.resmoncfg
2016-03-03 18:41 - 2015-11-25 15:31 - 1100288 _____ () C:\ProgramData\HomePage.exe
2016-02-14 10:36 - 2016-03-03 17:17 - 0000073 _____ () C:\ProgramData\killer.bat
2016-03-03 18:41 - 2015-12-04 13:14 - 1081344 _____ () C:\ProgramData\LightGate.exe
2016-03-03 18:40 - 2016-03-02 13:36 - 1888256 _____ () C:\ProgramData\mspop.exe
2016-03-03 18:38 - 2016-03-03 18:38 - 1734656 _____ () C:\ProgramData\service.exe
2016-03-03 18:41 - 2016-03-03 18:41 - 0007404 _____ () C:\ProgramData\webad.xml

Arquivos para serem movidos ou deletados:
====================
C:\WINDOWS\TEMP\is-37K5Q.tmp\print.exe
C:\ProgramData\HomePage.exe
C:\ProgramData\killer.bat
C:\ProgramData\LightGate.exe
C:\ProgramData\mspop.exe
C:\ProgramData\service.exe
C:\Users\rafae\x.exe
C:\Users\Todos os Usuários\HomePage.exe
C:\Users\Todos os Usuários\killer.bat
C:\Users\Todos os Usuários\LightGate.exe
C:\Users\Todos os Usuários\mspop.exe
C:\Users\Todos os Usuários\service.exe


Alguns arquivos em TEMP:
====================
C:\Users\rafae\AppData\Local\Temp\0TN34BGMQN.exe
C:\Users\rafae\AppData\Local\Temp\11YRCON8L4.exe
C:\Users\rafae\AppData\Local\Temp\3463.tmp.exe
C:\Users\rafae\AppData\Local\Temp\3BDD.tmp.exe
C:\Users\rafae\AppData\Local\Temp\4181.tmp.exe
C:\Users\rafae\AppData\Local\Temp\4620.tmp.exe
C:\Users\rafae\AppData\Local\Temp\50DB.tmp.exe
C:\Users\rafae\AppData\Local\Temp\57ED.tmp.exe
C:\Users\rafae\AppData\Local\Temp\7352.tmp.exe
C:\Users\rafae\AppData\Local\Temp\890F.tmp.exe
C:\Users\rafae\AppData\Local\Temp\94FF.tmp.exe
C:\Users\rafae\AppData\Local\Temp\B147.tmp.exe
C:\Users\rafae\AppData\Local\Temp\B223.tmp.exe
C:\Users\rafae\AppData\Local\Temp\C592.tmp.exe
C:\Users\rafae\AppData\Local\Temp\D9BD.tmp.exe
C:\Users\rafae\AppData\Local\Temp\DB3B.tmp.exe
C:\Users\rafae\AppData\Local\Temp\E689.tmp.exe
C:\Users\rafae\AppData\Local\Temp\F3CC.tmp.exe
C:\Users\rafae\AppData\Local\Temp\N1MI3LSSRM.exe
C:\Users\rafae\AppData\Local\Temp\tu17p84.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\WINDOWS\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\wininit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\services.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-03-02 13:20

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité