cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:03-05-2016
Executado por Juliano (administrador) em JULIANO-PC (03-05-2016 17:25:14)
Executando a partir de C:\Users\Juliano\Desktop
Perfis Carregados: Juliano (Perfis Disponíveis: Juliano)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BavSvc.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BHipsSvc.exe
(DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\bavhm.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Baidu, Inc.) C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BavSvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Baidu, Inc.) C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe
(Baidu, Inc.) C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe
(Baidu, Inc.) C:\Program Files (x86)\PC Faster\5.1.0.0\PCFTray.exe
(Baidu, Inc.) C:\Program Files (x86)\PC Faster\5.1.0.0\SysOptEngineSvc.exe
(COMODO) C:\Program Files (x86)\COMODO\COMODO Cloud Antivirus\ccavsrv.exe
(COMODO) C:\Program Files (x86)\COMODO\COMODO Cloud Antivirus\ccavsrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-13] (Realtek Semiconductor)
HKLM-x32\...\Run: [Baidu Antivirus] => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BavTray.exe [1997296 2016-05-03] (Baidu, Inc.)
HKLM-x32\...\Run: [Baidu PC Faster 5.1.0.0] => C:\Program Files (x86)\PC Faster\5.1.0.0\PCFTray.exe [2333152 2015-05-07] (Baidu, Inc.)
HKLM-x32\...\Run: [ccav] => C:\Program Files (x86)\COMODO\COMODO Cloud Antivirus\ccavsrv.exe [5037392 2016-04-22] (COMODO)
HKLM\...\RunOnce: [OTUTPRODUCT_TFGC8] => C:\Program Files (x86)\sunnyday\otutnetwork.exe [764416 2016-05-03] (xaqqPLmb)
HKLM\...\RunOnce: [IDSCPRODUCT] => C:\Program Files (x86)\Hostify\idscservice.exe [763392 2016-05-03] (xaqqPLmb)
HKLM\...\RunOnce: [Hard Disk Sync Tool] => C:\ProgramData\Hard Disk Sync Tool\o9icem9e3g5.exe [551936 2016-05-03] (Zello Inc)
HKLM-x32\...\RunOnce: [Hard Disk Sync Tool] => C:\ProgramData\Hard Disk Sync Tool\o9icem9e3g5.exe [551936 2016-05-03] (Zello Inc)
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== ATENÇÃO
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Run: [taskhost] => rundll32.exe C:\ProgramData\WindowsMsg\675D131108D4FD145B0BFBC68A3E018A.dll Start /AUTORUN
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Run: [Installer] => C:\Users\Juliano\AppData\Local\Temp\CCY7NYNMB\17O42DFFG.exe [1965568 2016-05-03] (TZ) <===== ATENÇÃO
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Run: [Hard Disk Sync Tool] => C:\ProgramData\Hard Disk Sync Tool\o9icem9e3g5.exe [551936 2016-05-03] (Zello Inc)
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Policies\Explorer: []
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\Policies\Explorer: [TaskbarNoNotification] 1
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\...\MountPoints2: {c77e57ea-b48d-11e5-bbe7-50b7c3444ae6} - D:\LaunchCGS.exe
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-03-13] (Microsoft Corporation)
IFEO\mbam.exe: [Debugger] hten.exe
IFEO\mbamgui.exe: [Debugger] iisa.exe
IFEO\MRT.exe: [Debugger] mtbmlcjxvkj.exe
IFEO\mrtstub.exe: [Debugger] rkgqvaxjajt.exe
IFEO\rstrui.exe: [Debugger] ogfpoqxkvmq.exe
IFEO\winmgr108.exe: [Debugger] bpnr.exe
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BavShx64.dll [2016-05-03] (Baidu, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Juliano\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
CHR HKLM\SOFTWARE\Policies\Google: Restrição <======= ATENÇÃO

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4D74DE62-A471-48D1-A93E-ABF24CBAF865}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{7A833842-01BD-4D0F-BFFE-1AB1A7B2D912}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{7A833842-01BD-4D0F-BFFE-1AB1A7B2D912}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{846ee342-7039-11de-9d20-806e6f6e6963}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{AB1D0DAF-66B4-4CE6-AE37-84A1D9B8AD1C}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{B613DC4D-EC52-453B-B322-74495C6396EF}: [NameServer] 104.197.191.4

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am/?geo=br
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am/?geo=br
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = search.mpc.am/?geo=br
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = search.mpc.am/?geo=br
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3XjGGZrhGQbtaAYaJJ2jy8TVbJJ1FXn81Z7-S3xoMKy6MigGRMRdegu__iB3hEGovwcCSJYuLvIa1PVTejyLD3eP6lvnf9Xl-9WoFjBjCD8Ohgv08aILwmGsIvWw8dA4hRGsweCYVhXuDfUTZg0ZFVDadiuY6oqG93Kj-wK&q={searchTerms}
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3XjGGZrhGQbtaAYaJJ2jy8TVbJJ1FXn81Z7-S3xoMKy6MigGRMRdegu__iB3hEGovwcCSJYuLvIa1PVTejyLD3eP6lvnf9Xl-9WoFjBjCD8Ohgv08aILwmGsIvWw8dA4hRGsweCYVhXuDfUTZg0ZFVDadiuY6oqG93Kj-wK&q={searchTerms}
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3XjGGZrhGQbtaAYaJJ2jy8TVbJJ1FXn81Z7-S3xoMKy6MigGRMRdegu__iB3hEGovwcCSJYuLvIa1PVTejyLD3eP6lvnf9Xl-9WoFjBjCD8Ohgv08aILwmGsIvWw8dA4hRGsweCYVhXuDfUTZg0ZFVDadiuY6oqG93Kj-wK&q={searchTerms}
HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\Software\Microsoft\Internet Explorer\Main,Start Page = search.mpc.am/?geo=br
SearchScopes: HKLM -> DefaultScope {0644EE93-D778-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {73cd434e-8e1e-46b6-bb8d-7dd935140717} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_ir_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0Czz0FyBtAtA0Fzy0D0D0B0AtB0CyDyCtN0D0Tzu0StCyDtAyCtN1L2XzutAtFtCzytFtAtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyBzyyDyEyEyD0AyBtGyCyCyC0EtGyC0B0CyEtGtD0F0FyCtG0AtAtAyEtA0D0AtDzzyEtDzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0CtA0DyBtC0EtGyCzztD0EtGyE0D0FtDtG0AzyyB0DtGzzyBtAtDyD0F0A0FzzyDtC0B2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCyByEzy%26cr%3D1091708249%26a%3Djmb_ir_16_11%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate&p={searchTerms}
SearchScopes: HKLM -> {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_ir_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0Czz0FyBtAtA0Fzy0D0D0B0AtB0CyDyCtN0D0Tzu0StCyDtAyCtN1L2XzutAtFtCzytFtAtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyBzyyDyEyEyD0AyBtGyCyCyC0EtGyC0B0CyEtGtD0F0FyCtG0AtAtAyEtA0D0AtDzzyEtDzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0CtA0DyBtC0EtGyCzztD0EtGyE0D0FtDtG0AzyyB0DtGzzyBtAtDyD0F0A0FzzyDtC0B2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCyByEzy%26cr%3D1091708249%26a%3Djmb_ir_16_11%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3XjGGZrhGQbtaAYaJJ2jy8TVbJJ1FXn81Z7-S3xoMKy6MigGRMRdegu__iB3hEGovwcCSJYuLvIa1PVTejyLD3eP6lvnf9Xl-9WoFjBjCD8Ohgv08aILwmGsIvWw8dA4hRGsweCYVhXuDfUTZg0ZFVDadiuY6oqG93Kj-wK&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> DefaultScope {0644EE93-D778-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.mpc.am/index/search?q={searchTerms}&cx=partner-pub-3796753109442372:3837783968&ie=UTF-8
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> 8FF6A2F4927F2C6890A42408E15DEB2E URL = hxxps://br.search.yahoo.com/yhs/search?hspart=itm&hsimp=yhs-001&type=jmb_ir_16_11¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DJoomborio%26cd%3D2XzuyEtN2Y1L1Qzu0Czz0FyBtAtA0Fzy0D0D0B0AtB0CyDyCtN0D0Tzu0StCyDtAyCtN1L2XzutAtFtCzytFtAtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyBzyyDyEyEyD0AyBtGyCyCyC0EtGyC0B0CyEtGtD0F0FyCtG0AtAtAyEtA0D0AtDzzyEtDzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0CtA0DyBtC0EtGyCzztD0EtGyE0D0FtDtG0AzyyB0DtGzzyBtAtDyD0F0A0FzzyDtC0B2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCyByEzy%26cr%3D1091708249%26a%3Djmb_ir_16_11%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> {0644EE93-D778-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.mpc.am/index/search?q={searchTerms}&cx=partner-pub-3796753109442372:3837783968&ie=UTF-8
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> {5A619815E33876B500CB15387A560D1930DC2BDBE2592C56A2} URL = hxxp://internet-start.net/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> {73cd434e-8e1e-46b6-bb8d-7dd935140717} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-d6194eaa&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} URL = hxxp://yandex.ru/search/?win=221&clid=2256429-002&text={searchTerms}
SearchScopes: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3XjGGZrhGQbtaAYaJJ2jy8TVbJJ1FXn81Z7-S3xoMKy6MigGRMRdegu__iB3hEGovwcCSJYuLvIa1PVTejyLD3eP6lvnf9Xl-9WoFjBjCD8Ohgv08aILwmGsIvWw8dA4hRGsweCYVhXuDfUTZg0ZFVDadiuY6oqG93Kj-wK&q={searchTerms}
BHO: Sem Nome -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Nenhum Arquivo
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation)
BHO-x32: Sem Nome -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Nenhum Arquivo
Toolbar: HKU\S-1-5-21-2534326695-1102520343-3421699137-1000 -> Sem Nome - {91397D20-1446-11D4-8AF4-0040CA1127B6} - Nenhum Arquivo
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
FF NewTab: C:\ProgramData\Ronzaps\ff.NT
FF DefaultSearchEngine: hohosearch
FF SelectedSearchEngine: hohosearch
FF Homepage: search.mpc.am/?geo=br
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @real.com/nppl3260;version=6.0.12.732 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll [2010-04-16] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.732 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll [2010-04-16] (RealNetworks, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF user.js: detected! => C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\user.js [2016-05-03]
FF SearchPlugin: C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\yandex.ru-190601.xml [2016-03-24]
FF SearchPlugin: C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml [2016-05-03]
FF SearchPlugin: C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\findit.xml [2016-05-03]
FF SearchPlugin: C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\yandex.ru-190601.xml [2016-03-24]
FF Extension: GsearchFinder - C:\Users\Juliano\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi [2016-05-02]

Chrome:
=======
CHR HomePage: Default -> yandex.ru/?__PARAM__from=chromehp
CHR StartupUrls: Default -> "hxxps://mail.google.com/mail/u/0/#inbox","hxxps://mail.google.com/mail/u/1/#inbox","hxxps://br-mg5.mail.yahoo.com/neo/launch?.rand=b7od8rdivt9r9#8067082123","hxxps://www.facebook.com/","hxxps://www.youtube.com/","hxxp://hypescience.com/"
CHR Profile: C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-22]
CHR Extension: (Google Docs) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-22]
CHR Extension: (Google Drive) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-22]
CHR Extension: (YouTube) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-22]
CHR Extension: (Adblock Plus) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-08]
CHR Extension: (Google Search) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-22]
CHR Extension: (Tampermonkey) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2016-04-15]
CHR Extension: (Free Rider HD) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\emikpifndnjfkgofoglceekhkbaicbde [2016-04-28]
CHR Extension: (Planilhas do Google) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-22]
CHR Extension: (Documentos Google off-line) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-16]
CHR Extension: (Google Play) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2015-12-22]
CHR Extension: (Disable Extensions Temporarily) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\lcfdefmogcogicollfebhgjiiakbjdje [2015-12-22]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01]
CHR Extension: (Gmail) - C:\Users\Juliano\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-22]
CHR HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2534326695-1102520343-3421699137-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [cncgohepihcekklokhbhiblhfcmipbdh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [dkekdlkmdpipihonapoleopfekmapadh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fdjdjkkjoiomafnihnobkinnfjnnlhdg] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gdljkkmghdkckhaogaemgbgdfophkfco] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gehngeifmelphpllncobkmimphfkckne] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lgdnilodcpljomelbbnpgdogdbmclbni] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [mdeldjolamfbcgnndjmjjiinnhbnbnla] - hxxp://clients2.google.com/service/update2/crx

Opera:
=======
OPR StartupUrls: "hxxp://www.yandex.ru/?win=221&clid=2256428-002"

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S4 Aushkev; C:\Users\Juliano\AppData\Roaming\Eeugajecex\Eeugajecex.exe [174928 2016-05-03] ()
S4 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [Arquivo não assinado]
R2 BavSvc; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BavSvc.exe [2572928 2016-05-03] (Baidu, Inc.)
R2 BHipsSvc; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BHipsSvc.exe [531232 2016-05-03] (Baidu, Inc.)
R2 ccavsrv; C:\Program Files (x86)\COMODO\COMODO Cloud Antivirus\ccavsrv.exe [5037392 2016-04-22] (COMODO)
S4 CloudPrinter; C:\ProgramData\\CloudPrinter\\CloudPrinter.exe [832000 2016-05-03] () [Arquivo não assinado]
S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2015-12-22] (Dropbox, Inc.)
S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2015-12-22] (Dropbox, Inc.)
S4 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe [1278296 2015-07-29] (Disc Soft Ltd)
S4 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe [1340760 2015-08-10] (Disc Soft Ltd)
S4 Easy Launcher; C:\Program Files (x86)\Samsung\Easy Settings\CmdServer\EasyLauncher.exe [1587592 2013-04-11] (Samsung Electronics CO., LTD.) [Arquivo não assinado]
S4 GoogleChromeUpService; C:\ProgramData\service.exe [1755136 2016-04-27] () [Arquivo não assinado]
S4 GoogleChromeUpSvc; C:\ProgramData\Windows Update\svrupg.exe [2783744 2016-05-03] (TODO: ) [Arquivo não assinado]
S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2015-12-10] (Intel Corporation)
S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [Arquivo não assinado]
S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
S4 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131032 2013-01-14] (Intel Corporation)
S4 IntelliMemory; C:\Program Files\Condusiv Technologies\IntelliMemory\IntelliMem.exe [55568 2013-03-27] (Condusiv Technologies)
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165336 2013-01-14] (Intel Corporation)
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-05-03] (DotC United Inc)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-04] (Electronic Arts)
R2 PCFasterSvc_{PCFaster_5.1.0.0}; C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe [1714448 2015-05-07] (Baidu, Inc.)
S4 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2016-01-21] ()
S4 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2016-02-05] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2016-02-05] ()
S4 ProntSpooler; C:\Users\Juliano\AppData\Local\Apps\2.0\abril.exe [111616 2016-03-21] () [Arquivo não assinado]
S4 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (arvato digital services llc)
S4 SparkSvc; C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [97080 2016-03-22] (Baidu Inc.)
S4 SparkUpdater; C:\Program Files (x86)\Baidu\SparkUpdate\Sparkupdate.exe [1372472 2016-03-22] (Baidu.com, Inc.)
S4 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Arquivo não assinado]
S4 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3287848 2016-02-24] (Samsung Electronics Co., Ltd.)
S4 VRLService; C:\Program Files\Chaos Group\VRLService\OLS\startvrolservice.exe [227328 2016-02-02] () [Arquivo não assinado]
S4 Wajon; C:\Users\Juliano\AppData\Roaming\ShikoDir\Gujaq.exe [125776 2016-05-03] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [536346624 2016-05-03] () [Arquivo não assinado]
S4 Zaigpyq; C:\Users\Juliano\AppData\Roaming\Jhcogde\Jhcogde.exe [174960 2016-05-03] ()
S3 BdSandboxSrv; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BdSandboxSrv64.exe [X]
S2 BugreportW; "C:\Program Files (x86)\hohobnd\pijward.exe" {154DFF63-3402-4815-941A-AAD63AE8B428} [X]
S2 nekatynufochconfigurationservice; "C:\Program Files (x86)\Nekatynufoch\nekatynufochconfigurationservice.exe" {79740E79-A383-47A7-B513-3DF6563D007F} {A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-27] (Advanced Micro Devices, Inc.)
U3 BdApiUtil; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BdApiUtil64.sys [116936 2016-05-03] (Baidu, Inc.)
R3 bdark64; C:\Windows\system32\drivers\bdark64.sys [78792 2015-05-27] ()
U3 BdCameraProtect; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\BdCameraProtect64.sys [25032 2016-05-03] (Baidu, Inc.)
R1 Bfilter; C:\Windows\System32\drivers\Bfilter.sys [62920 2016-05-03] (Baidu, Inc.)
R1 Bfmon; C:\Windows\System32\drivers\Bfmon.sys [38344 2016-05-03] (Baidu, Inc.)
R1 Bnbase; C:\Windows\System32\drivers\bnbasex64.sys [62792 2016-05-03] (Baidu, Inc.)
R1 Bndef; C:\Windows\System32\drivers\bndef64.sys [485672 2016-05-03] (Baidu, Inc.)
R3 Bnmon; C:\Program Files (x86)\Baidu Security\Baidu Antivirus\5.4.3.147185.0\Bnmon64.sys [82376 2016-05-03] (Baidu, Inc.)
R1 Bprotect; C:\Windows\System32\drivers\Bprotect.sys [169416 2016-05-03] (Baidu, Inc.)
R1 BprotectEx; C:\Windows\System32\drivers\BprotectEx.sys [93512 2015-03-31] (Baidu, Inc.)
S3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [1448248 2015-01-13] (Motorola Solutions, Inc.)
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [82240 2016-05-03] (Cherimoya Ltd)
R0 cmdccav; C:\Windows\System32\DRIVERS\CmdCCAV.sys [127624 2016-04-22] (COMODO)
R3 dtproscsibus; C:\Windows\System32\DRIVERS\dtproscsibus.sys [30352 2016-02-12] (Disc Soft Ltd)
R3 dtultrascsibus; C:\Windows\System32\DRIVERS\dtultrascsibus.sys [30264 2016-01-11] (Disc Soft Ltd)
R3 dtultrausbbus; C:\Windows\System32\DRIVERS\dtultrausbbus.sys [47160 2016-01-11] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [30960 2015-05-29] (Intel Corporation)
R3 int0800; C:\Windows\System32\DRIVERS\flashud.sys [51712 2009-09-09] (Intel Corporation)
R1 intmfs; C:\Windows\System32\DRIVERS\intmfs.sys [28944 2013-03-27] (Condusiv Technologies)
R0 intmsd; C:\Windows\System32\DRIVERS\intmsd.sys [107280 2013-03-27] (Condusiv Technologies)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [180480 2015-10-08] (Intel Corporation)
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-05-03] (DotC United Inc)
R3 NETwNs64; C:\Windows\System32\DRIVERS\NETwsw01.sys [11534096 2015-05-04] (Intel Corporation)
U3 PCFApiUtil; C:\Program Files (x86)\PC Faster\5.1.0.0\PCFApiUtil64.sys [144648 2015-03-31] (Baidu, Inc.)
S2 Proteq; C:\Windows\SysWow64\Drivers\Proteq.sys [7598 2012-06-25] (PROTEQ)
R3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [417024 2015-11-12] (Realsil Semiconductor Corporation)
R3 usb3Hub; C:\Windows\System32\DRIVERS\usb3Hub.sys [47072 2012-10-09] (Windows (R) Win 7 DDK provider)
R2 WIBUKEY; C:\Windows\System32\DRIVERS\WibuKey64.sys [97792 2011-09-22] (WIBU-SYSTEMS AG)
R3 XHCIPort; C:\Windows\System32\DRIVERS\XHCIPort.sys [188896 2012-10-09] (Windows (R) Win 7 DDK provider)
S3 BdSandbox; \??\C:\Windows\System32\drivers\BdSandbox.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 X6va035; \??\C:\Windows\SysWOW64\Drivers\X6va035 [X]
S3 X6va062; \??\C:\Windows\SysWOW64\Drivers\X6va062 [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-05-03 17:25 - 2016-05-03 17:25 - 00034425 _____ C:\Users\Juliano\Desktop\FRST.txt
2016-05-03 17:09 - 2016-05-03 17:13 - 00113128 _____ C:\Users\Juliano\Downloads\Shortcut.txt
2016-05-03 17:05 - 2016-05-03 17:13 - 00067706 _____ C:\Users\Juliano\Downloads\Addition.txt
2016-05-03 17:03 - 2016-05-03 17:13 - 00404123 _____ C:\Users\Juliano\Downloads\FRST.txt
2016-05-03 17:02 - 2016-05-03 17:25 - 00000000 ____D C:\FRST
2016-05-03 16:44 - 2016-05-03 16:44 - 02377216 _____ (Farbar) C:\Users\Juliano\Desktop\FRST64.exe
2016-05-03 16:24 - 2016-05-03 17:24 - 00000000 ___HD C:\CCAV
2016-05-03 16:15 - 2016-05-03 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO
2016-05-03 16:15 - 2016-05-03 16:15 - 00000000 ____D C:\Program Files (x86)\COMODO
2016-05-03 16:04 - 2016-05-03 16:04 - 00014501 _____ C:\Users\Todos os Usuários\Duplicaterecord.js
2016-05-03 16:04 - 2016-05-03 16:04 - 00014501 _____ C:\ProgramData\Duplicaterecord.js
2016-05-03 16:04 - 2016-05-03 16:04 - 00003648 _____ C:\Windows\System32\Tasks\Baidu PC Faster Service
2016-05-03 16:04 - 2016-05-03 16:04 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Baidu PC Faster
2016-05-03 16:04 - 2016-05-03 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu PC Faster
2016-05-03 16:04 - 2015-03-31 03:22 - 00093512 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\BprotectEx.sys
2016-05-03 16:03 - 2016-05-03 16:03 - 05823752 _____ (COMODO) C:\Users\Juliano\Downloads\ccav_installer (1).exe
2016-05-03 16:03 - 2016-05-03 16:03 - 00003700 _____ C:\Windows\System32\Tasks\Baidu PC Faster Update
2016-05-03 16:03 - 2016-05-03 16:03 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\PC Faster
2016-05-03 16:02 - 2016-05-03 16:16 - 00000000 ____D C:\Users\Todos os Usuários\COMODO
2016-05-03 16:02 - 2016-05-03 16:16 - 00000000 ____D C:\ProgramData\COMODO
2016-05-03 16:02 - 2016-05-03 16:05 - 231936176 _____ (COMODO) C:\Users\Juliano\Downloads\cfw_installer_6106_53.exe
2016-05-03 16:02 - 2016-05-03 16:02 - 00000000 ____D C:\Program Files (x86)\PC Faster
2016-05-03 16:01 - 2016-05-03 16:01 - 05823752 _____ (COMODO) C:\Users\Juliano\Downloads\ccav_installer.exe
2016-05-03 15:51 - 2016-05-03 15:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-05-03 15:49 - 2016-05-03 15:49 - 00000000 ____D C:\Windows\system32\yge
2016-05-03 15:42 - 2016-05-03 15:42 - 00000000 ____D C:\Users\Juliano\AppData\Local\AMD
2016-05-03 15:32 - 2016-05-03 15:51 - 00000352 ____H C:\Windows\Tasks\alFSVWJB.job
2016-05-03 15:32 - 2016-05-03 15:32 - 00002954 _____ C:\Windows\System32\Tasks\alFSVWJB
2016-05-03 15:26 - 2016-05-03 15:26 - 00000000 __SHD C:\Users\Todos os Usuários\Hard Disk Sync Tool
2016-05-03 15:26 - 2016-05-03 15:26 - 00000000 __SHD C:\ProgramData\Hard Disk Sync Tool
2016-05-03 15:18 - 2016-05-03 15:18 - 00003992 _____ C:\Windows\System32\Tasks\LaunchPreSignup
2016-05-03 15:15 - 2016-05-03 15:15 - 00000030 _____ C:\Windows\SysWOW64\${LOGFILE}
2016-05-03 15:15 - 2016-05-03 15:15 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\MPC Cleaner
2016-05-03 15:10 - 2016-05-03 16:04 - 00003570 _____ C:\Windows\System32\Tasks\060184C3-9766-46a0-B258-F4518A0B2633
2016-05-03 15:10 - 2016-05-03 16:04 - 00001397 _____ C:\Windows\wininit.ini
2016-05-03 15:10 - 2016-05-03 16:00 - 00000000 ____D C:\Users\Todos os Usuários\Baidu Security
2016-05-03 15:10 - 2016-05-03 16:00 - 00000000 ____D C:\ProgramData\Baidu Security
2016-05-03 15:10 - 2016-05-03 15:09 - 00485672 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\bndef64.sys
2016-05-03 15:10 - 2016-05-03 15:09 - 00169416 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\Bprotect.sys
2016-05-03 15:10 - 2016-05-03 15:09 - 00062792 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\bnbasex64.sys
2016-05-03 15:10 - 2016-05-03 15:09 - 00038344 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\Bfmon.sys
2016-05-03 15:09 - 2016-05-03 16:00 - 00000000 ____D C:\Program Files (x86)\Baidu Security
2016-05-03 15:09 - 2016-05-03 15:09 - 00062920 _____ (Baidu, Inc.) C:\Windows\system32\Drivers\Bfilter.sys
2016-05-03 15:09 - 2016-05-03 15:09 - 00003458 _____ C:\Windows\System32\Tasks\Baidu Antivirus Update
2016-05-03 15:09 - 2016-05-03 15:09 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow\BAVData
2016-05-03 15:09 - 2016-05-03 15:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Antivirus
2016-05-03 15:09 - 2015-05-27 08:10 - 00078792 _____ C:\Windows\system32\Drivers\bdark64.sys
2016-05-03 15:05 - 2016-05-03 15:05 - 02033264 _____ (Baidu, Inc.) C:\Users\Juliano\Downloads\BavPro_Setup_Mini_Br1.exe
2016-05-03 15:05 - 2016-05-03 15:05 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\BavMini
2016-05-03 15:03 - 2016-05-03 15:03 - 00003588 _____ C:\Windows\System32\Tasks\{594C6EBF-D9A3-4695-99A3-FE4F0A78106B}
2016-05-03 14:54 - 2016-05-03 14:54 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\MCorp
2016-05-03 14:49 - 2016-05-03 14:49 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow00464698
2016-05-03 14:49 - 2016-05-03 14:49 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow0000000000475478
2016-05-03 14:49 - 2016-05-03 14:49 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow00000000004753A8
2016-05-03 14:48 - 2016-05-03 14:48 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow0042A1E8
2016-05-03 14:47 - 2016-05-03 14:49 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow0000000000475548
2016-05-03 14:47 - 2016-05-03 14:48 - 00282208 _____ C:\Windows\Minidump\050316-67751-01.dmp
2016-05-03 14:41 - 2016-05-03 14:41 - 00000000 ____D C:\Windows\system32\ubuf
2016-05-03 14:41 - 2016-05-03 14:41 - 00000000 ____D C:\Windows\system32\edep
2016-05-03 14:38 - 2016-05-03 14:53 - 00002397 _____ C:\Windows\SysWOW64\findit.xml
2016-05-03 14:38 - 2016-05-03 14:38 - 00000000 ____D C:\Users\Todos os Usuários\Ronzaps
2016-05-03 14:38 - 2016-05-03 14:38 - 00000000 ____D C:\ProgramData\Ronzaps
2016-05-03 14:35 - 2016-05-03 14:35 - 06494208 _____ C:\Users\Juliano\AppData\Roaming\agent.dat
2016-05-03 14:35 - 2016-05-03 14:35 - 01626777 _____ C:\Users\Juliano\AppData\Roaming\Zotdex.tst
2016-05-03 14:35 - 2016-05-03 14:35 - 00126464 _____ C:\Users\Juliano\AppData\Roaming\noah.dat
2016-05-03 14:35 - 2016-05-03 14:35 - 00065568 _____ C:\Users\Juliano\AppData\Roaming\Config.xml
2016-05-03 14:35 - 2016-05-03 14:35 - 00018432 _____ C:\Users\Juliano\AppData\Roaming\Main.dat
2016-05-03 14:34 - 2016-05-03 15:27 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Store
2016-05-03 14:34 - 2016-05-03 15:18 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\WTools
2016-05-03 14:34 - 2016-05-03 14:35 - 00005568 _____ C:\Users\Juliano\AppData\Roaming\md.xml
2016-05-03 14:34 - 2016-05-03 14:34 - 00126464 _____ C:\Users\Juliano\AppData\Roaming\lobby.dat
2016-05-03 14:34 - 2016-05-03 14:34 - 00072717 _____ C:\Users\Juliano\AppData\Roaming\Rankron.tst
2016-05-03 14:34 - 2016-05-03 14:34 - 00054272 _____ C:\Users\Juliano\AppData\Roaming\ApplicationHosting.dat
2016-05-03 14:34 - 2016-05-03 14:34 - 00000000 ____D C:\Users\Todos os Usuários\CloudPrinter
2016-05-03 14:34 - 2016-05-03 14:34 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\ShikoDir
2016-05-03 14:34 - 2016-05-03 14:34 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Eeugajecex
2016-05-03 14:34 - 2016-05-03 14:34 - 00000000 ____D C:\ProgramData\CloudPrinter
2016-05-03 14:34 - 2016-05-03 14:30 - 00832000 _____ C:\Users\Juliano\AppData\Roaming\Zotdex.exe
2016-05-03 14:33 - 2016-05-03 14:33 - 00848437 _____ C:\Users\Juliano\AppData\Roaming\Keytop.bin
2016-05-03 14:33 - 2016-05-03 14:30 - 00832000 _____ C:\Users\Juliano\AppData\Roaming\Rankron.exe
2016-05-03 14:32 - 2016-05-03 14:52 - 00073073 _____ C:\Users\Todos os Usuários\YSIns.exe
2016-05-03 14:32 - 2016-05-03 14:52 - 00073073 _____ C:\ProgramData\YSIns.exe
2016-05-03 14:32 - 2016-05-03 14:32 - 00002303 _____ C:\Users\Todos os Usuários\webad.xml
2016-05-03 14:32 - 2016-05-03 14:32 - 00002303 _____ C:\ProgramData\webad.xml
2016-05-03 14:32 - 2016-05-03 14:32 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Real
2016-05-03 14:32 - 2016-05-03 14:32 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2016-05-03 14:32 - 2016-04-26 06:27 - 01916928 _____ C:\Users\Todos os Usuários\msiql.exe
2016-05-03 14:32 - 2016-04-26 06:27 - 01916928 _____ C:\ProgramData\msiql.exe
2016-05-03 14:31 - 2016-05-03 15:41 - 00000000 ____D C:\Program Files (x86)\ttwifi
2016-05-03 14:31 - 2016-05-03 14:32 - 02783744 _____ (TODO: ) C:\Users\Juliano\AppData\Roaming\svrupg.exe
2016-05-03 14:31 - 2016-05-03 14:31 - 00002303 _____ C:\Users\Juliano\AppData\Roaming\webad.xml
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\Users\Todos os Usuários\WindowsMsg
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\Users\Todos os Usuários\Windows Update
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\Users\Public\Documents\Tools
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\ProgramData\WindowsMsg
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\ProgramData\Windows Update
2016-05-03 14:31 - 2016-05-03 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ttwifi
2016-05-03 14:30 - 2016-05-03 14:49 - 00000000 ____D C:\Users\Juliano\AppData\Local\app
2016-05-03 14:30 - 2016-05-03 14:34 - 00000000 ____D C:\Users\Juliano\AppData\Local\Tempfolder
2016-05-03 14:30 - 2016-05-03 14:32 - 00016992 _____ C:\Users\Juliano\AppData\Roaming\InstallationConfiguration.xml
2016-05-03 14:30 - 2016-05-03 14:30 - 00127488 _____ C:\Users\Juliano\AppData\Roaming\Installer.dat
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Public\Documents\Guid
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Nosibay
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Jhcogde
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow\Company
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\Users\Juliano\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-05-03 14:30 - 2016-05-03 14:30 - 00000000 ____D C:\uninst
2016-05-03 14:30 - 2016-04-26 06:27 - 01916928 _____ C:\Users\Juliano\AppData\Roaming\msiql.exe
2016-05-03 14:30 - 2016-04-25 11:45 - 00600312 _____ C:\Users\Juliano\AppData\Roaming\YeaPlayer_br_IBD_Bundle.exe
2016-05-03 14:29 - 2016-05-03 15:24 - 00000000 ____D C:\Program Files (x86)\Hostify
2016-05-03 14:29 - 2016-05-03 15:07 - 00000000 ____D C:\Program Files (x86)\sunnyday
2016-05-03 14:29 - 2016-05-03 14:29 - 00009084 _____ C:\Windows\System32\Tasks\Nekatynufoch Configuration
2016-05-03 14:29 - 2016-05-03 14:29 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-05-03 14:29 - 2016-04-27 03:51 - 01755136 _____ C:\Users\Todos os Usuários\service.exe
2016-05-03 14:29 - 2016-04-27 03:51 - 01755136 _____ C:\Users\Juliano\AppData\Roaming\service.exe
2016-05-03 14:29 - 2016-04-27 03:51 - 01755136 _____ C:\ProgramData\service.exe
2016-05-03 14:28 - 2016-05-03 14:28 - 00000000 ____D C:\Users\Juliano\AppData\Local\csdi_monetize_120160503
2016-05-03 14:27 - 2016-05-03 15:29 - 00000000 ____D C:\Program Files (x86)\mybestofferstoday
2016-05-03 14:26 - 2016-05-03 14:49 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-05-03 14:26 - 2016-05-03 14:36 - 00060136 _____ (DotC United Inc) C:\Windows\system32\Drivers\MPCKpt.sys
2016-05-03 14:26 - 2016-05-03 14:27 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\gplyra
2016-05-03 14:26 - 2016-05-03 14:27 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\cpuminer
2016-05-03 14:25 - 2016-05-03 15:38 - 00000000 ____D C:\Program Files (x86)\CleanBrowser
2016-05-03 14:25 - 2016-05-03 14:25 - 00000000 ____D C:\Program Files (x86)\DNS Unlocker
2016-05-03 14:23 - 2016-05-03 14:21 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak
2016-05-03 14:22 - 2016-05-03 14:23 - 00000000 ____D C:\Program Files (x86)\DF632600-1462296170-11E2-9A15-CAA372762F00
2016-05-03 14:21 - 2008-04-15 09:00 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvbvm50.dll
2016-05-03 14:21 - 1996-01-11 21:00 - 00935632 _____ (Microsoft Corporation) C:\Windows\system\Vb40016.dll
2016-05-03 14:21 - 1993-05-11 14:00 - 00398416 _____ (Microsoft Corporation) C:\Windows\system\Vbrun300.dll
2016-05-03 14:21 - 1992-10-20 19:00 - 00356992 _____ (Microsoft Corporation) C:\Windows\system\vbrun200.dll
2016-05-03 14:21 - 1991-05-09 20:00 - 00271264 _____ C:\Windows\system\vbrun100.dll
2016-05-03 14:20 - 2016-05-03 14:20 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\DriverPack Easy Search
2016-05-03 14:20 - 2013-11-25 10:27 - 00660120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00444328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MShflxgd.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00416408 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00279192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00259736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00253080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00222360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tabctl32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00219288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00218776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00212112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00179352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00131728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00119960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00104088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx
2016-05-03 14:20 - 2013-11-25 10:27 - 00084624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx
2016-05-03 14:20 - 2011-01-12 16:36 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71u.dll
2016-05-03 14:20 - 2011-01-12 16:25 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71DEU.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ITA.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71FRA.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ESP.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ENU.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71KOR.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71JPN.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHT.DLL
2016-05-03 14:20 - 2011-01-12 16:25 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHS.DLL
2016-05-03 14:20 - 2011-01-12 16:19 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71.dll
2016-05-03 14:20 - 2011-01-12 15:53 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll
2016-05-03 14:20 - 2007-01-30 13:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll
2016-05-03 14:20 - 2006-08-25 17:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll
2016-05-03 14:20 - 2006-08-25 17:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll
2016-05-03 14:20 - 2006-08-25 17:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll
2016-05-03 14:20 - 2006-08-25 16:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll
2016-05-03 14:20 - 2006-04-10 17:41 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL32.OCX
2016-05-03 14:20 - 2005-01-20 12:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll
2016-05-03 14:20 - 2002-01-04 22:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVCP70.DLL
2016-05-03 14:20 - 1996-01-11 21:00 - 00722192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vb40032.dll
2016-05-03 14:20 - 1994-11-17 18:00 - 00210944 _____ C:\Windows\SysWOW64\msvcrt10.dll
2016-05-03 14:05 - 2016-05-03 14:05 - 00000000 ____H C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
2016-05-03 14:05 - 2016-05-03 14:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2016-05-03 14:05 - 2016-05-03 14:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2016-05-03 14:05 - 2016-05-03 14:05 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-05-03 14:04 - 2016-01-13 23:39 - 04751104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-05-03 14:04 - 2016-01-13 23:39 - 02894968 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-05-03 14:04 - 2016-01-13 23:38 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-05-03 14:04 - 2016-01-13 21:23 - 04902286 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-05-03 14:04 - 2015-05-29 11:05 - 00646408 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2016-05-03 14:04 - 2015-05-29 11:05 - 00030960 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
2016-05-03 14:04 - 2012-07-26 01:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2016-05-03 14:04 - 2012-07-26 01:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2016-05-03 14:04 - 2012-07-25 23:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2016-05-03 14:04 - 2012-06-02 11:35 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2016-05-03 14:03 - 2016-01-13 23:50 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-05-03 14:03 - 2016-01-13 23:50 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-05-03 14:03 - 2016-01-13 23:50 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-05-03 14:03 - 2016-01-13 23:50 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00192984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-05-03 14:03 - 2016-01-13 23:49 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 03073024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 02708864 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 01356504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-05-03 14:03 - 2016-01-13 23:48 - 00084624 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-05-03 14:03 - 2016-01-13 23:47 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-05-03 14:03 - 2016-01-13 23:46 - 00678184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-05-03 14:03 - 2016-01-13 23:46 - 00618184 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-05-03 14:03 - 2016-01-13 23:46 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00253864 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-05-03 14:03 - 2016-01-13 23:45 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-05-03 14:03 - 2016-01-13 23:44 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-05-03 14:03 - 2016-01-13 23:44 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-05-03 14:03 - 2016-01-13 23:44 - 00327456 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-05-03 14:03 - 2016-01-13 23:44 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-05-03 14:03 - 2016-01-13 23:44 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-05-03 14:03 - 2016-01-13 23:39 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-05-03 14:03 - 2016-01-13 23:38 - 00023696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-05-03 14:03 - 2016-01-13 23:37 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-05-03 14:03 - 2016-01-13 23:37 - 02037368 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-05-03 14:03 - 2016-01-13 23:36 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-05-03 14:03 - 2016-01-13 23:35 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-05-03 14:03 - 2016-01-13 23:35 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-05-03 14:03 - 2015-12-23 13:29 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2016-05-03 14:03 - 2015-12-23 13:29 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2016-05-03 14:03 - 2015-12-23 13:29 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2016-05-03 14:03 - 2015-12-23 13:29 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2016-05-03 14:03 - 2015-12-23 13:29 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2016-05-03 14:03 - 2015-12-23 13:28 - 10962472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2016-05-03 14:03 - 2015-12-23 13:28 - 09017808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2016-05-03 14:03 - 2015-12-23 13:28 - 08089248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2016-05-03 14:03 - 2015-12-23 13:26 - 00296648 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
2016-05-03 14:03 - 2015-12-23 13:22 - 23973888 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2016-05-03 14:03 - 2015-12-23 12:52 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2016-05-03 14:03 - 2015-12-23 12:51 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2016-05-03 14:03 - 2015-12-23 12:43 - 31378432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2016-05-03 14:03 - 2015-12-23 12:43 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2016-05-03 14:03 - 2015-12-23 12:43 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2016-05-03 14:03 - 2015-12-23 12:37 - 25841152 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2016-05-03 14:03 - 2015-12-23 12:35 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2016-05-03 14:03 - 2015-12-23 12:31 - 00561152 _____ (AMD) C:\Windows\system32\atieclxx.exe
2016-05-03 14:03 - 2015-12-23 12:31 - 00224256 _____ C:\Windows\system32\dgtrayicon.exe
2016-05-03 14:03 - 2015-12-23 12:31 - 00209920 _____ C:\Windows\system32\GameManager64.dll
2016-05-03 14:03 - 2015-12-23 12:31 - 00186368 _____ C:\Windows\SysWOW64\GameManager32.dll
2016-05-03 14:03 - 2015-12-23 12:31 - 00162304 _____ C:\Windows\system32\atieah64.exe
2016-05-03 14:03 - 2015-12-23 12:31 - 00145408 _____ C:\Windows\SysWOW64\atieah32.exe
2016-05-03 14:03 - 2015-12-23 12:31 - 00078336 _____ (AMD) C:\Windows\system32\atimuixx.dll
2016-05-03 14:03 - 2015-12-23 12:30 - 00246272 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2016-05-03 14:03 - 2015-12-23 12:30 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll
2016-05-03 14:03 - 2015-12-23 12:27 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2016-05-03 14:03 - 2015-12-23 12:27 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00672256 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2016-05-03 14:03 - 2015-12-23 12:26 - 00195072 _____ C:\Windows\system32\hsa-thunk64.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00174592 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2016-05-03 14:03 - 2015-12-23 12:26 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2016-05-03 14:03 - 2015-10-20 13:14 - 00007112 _____ C:\Windows\system32\AMDKernelEvents.man
2016-05-03 14:03 - 2015-07-24 19:43 - 00047664 _____ C:\Windows\system32\kapp_ci.sbin
2016-05-03 14:03 - 2015-07-24 19:43 - 00043536 _____ C:\Windows\system32\kapp_si.sbin
2016-05-03 14:03 - 2014-09-03 09:55 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2016-05-03 14:03 - 2014-09-03 09:55 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2016-05-03 14:02 - 2015-12-23 13:29 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll
2016-05-03 14:02 - 2015-12-23 13:29 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll
2016-05-03 14:02 - 2015-12-23 13:29 - 00118608 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2016-05-03 14:02 - 2015-12-23 13:29 - 00110344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2016-05-03 14:02 - 2015-12-23 13:17 - 49984512 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2016-05-03 14:02 - 2015-12-23 13:17 - 00235008 _____ C:\Windows\system32\clinfo.exe
2016-05-03 14:02 - 2015-12-23 13:16 - 41510912 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2016-05-03 14:02 - 2015-12-23 13:15 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-05-03 14:02 - 2015-12-23 13:15 - 00059392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-05-03 14:02 - 2015-12-23 13:13 - 27596800 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2016-05-03 14:02 - 2015-12-23 13:13 - 22348288 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
2016-05-03 14:02 - 2015-12-23 12:52 - 00677888 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2016-05-03 14:02 - 2015-12-23 12:52 - 00562688 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2016-05-03 14:02 - 2015-12-23 12:51 - 06643200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2016-05-03 14:02 - 2015-12-23 12:47 - 05223936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2016-05-03 14:02 - 2015-12-23 12:40 - 00865280 _____ (AMD) C:\Windows\system32\coinst_15.30.dll
2016-05-03 14:02 - 2015-12-23 12:37 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2016-05-03 14:02 - 2015-12-23 12:37 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2016-05-03 14:02 - 2015-12-23 12:35 - 15711744 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2016-05-03 14:02 - 2015-12-23 12:35 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2016-05-03 14:02 - 2015-12-23 12:35 - 00685496 _____ C:\Windows\SysWOW64\atiapfxx.blb
2016-05-03 14:02 - 2015-12-23 12:35 - 00685496 _____ C:\Windows\system32\atiapfxx.blb
2016-05-03 14:02 - 2015-12-23 12:35 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2016-05-03 14:02 - 2015-12-23 12:35 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2016-05-03 14:02 - 2015-12-23 12:35 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2016-05-03 14:02 - 2015-12-23 12:35 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2016-05-03 14:02 - 2015-12-23 12:34 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2016-05-03 14:02 - 2015-12-23 12:31 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2016-05-03 14:02 - 2015-12-23 12:31 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2016-05-03 14:02 - 2015-12-23 12:31 - 00204800 _____ C:\Windows\system32\amdgfxinfo64.dll
2016-05-03 14:02 - 2015-12-23 12:31 - 00189952 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2016-05-03 14:02 - 2015-12-23 12:26 - 01272832 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2016-05-03 14:02 - 2015-12-23 12:26 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2016-05-03 14:02 - 2015-12-23 12:26 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2016-05-03 14:02 - 2015-12-23 12:26 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2016-05-03 14:02 - 2015-11-10 03:35 - 00844462 _____ C:\Windows\system32\amdicdxx.dat
2016-05-03 14:02 - 2015-10-16 15:19 - 00166560 _____ C:\Windows\system32\amde34a.dat
2016-05-03 14:02 - 2015-10-15 18:08 - 00100832 _____ C:\Windows\system32\ativce02.dat
2016-05-03 14:02 - 2015-10-15 18:04 - 00177344 _____ C:\Windows\system32\ativce03.dat
2016-05-03 14:02 - 2015-10-15 17:59 - 00175648 _____ C:\Windows\system32\amde31a.dat
2016-05-03 14:02 - 2015-10-14 15:50 - 00261920 _____ C:\Windows\system32\ativvaxy_stn_nd.dat
2016-05-03 14:02 - 2015-10-14 15:48 - 00258464 _____ C:\Windows\system32\ativvaxy_cz_nd.dat
2016-05-03 14:02 - 2015-10-14 15:46 - 00252628 _____ C:\Windows\system32\ativvaxy_FJ.dat
2016-05-03 14:02 - 2015-10-14 15:44 - 00249680 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat
2016-05-03 14:02 - 2015-09-22 16:21 - 00323588 _____ C:\Windows\system32\ativvaxy_el.dat
2016-05-03 14:02 - 2015-09-22 16:19 - 00320992 _____ C:\Windows\system32\ativvaxy_el_nd.dat
2016-05-03 14:02 - 2015-09-22 14:38 - 00322740 _____ C:\Windows\system32\ativvaxy_vi.dat
2016-05-03 14:02 - 2015-09-22 14:36 - 00321072 _____ C:\Windows\system32\ativvaxy_vi_nd.dat
2016-05-03 14:02 - 2015-09-22 14:28 - 00234292 _____ C:\Windows\system32\ativvaxy_cik.dat
2016-05-03 14:02 - 2015-09-22 14:27 - 00232624 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2016-05-03 14:02 - 2014-11-06 07:53 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2016-05-03 14:01 - 2015-12-10 11:32 - 00190868 _____ C:\Windows\system32\resTHA.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00183476 _____ C:\Windows\system32\resELL.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00179252 _____ C:\Windows\system32\resRUS.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00164932 _____ C:\Windows\system32\resARA.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00164404 _____ C:\Windows\system32\resJPN.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00164356 _____ C:\Windows\system32\resHEB.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00159732 _____ C:\Windows\system32\resHUN.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00159716 _____ C:\Windows\system32\resFRA.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00158004 _____ C:\Windows\system32\resKOR.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157892 _____ C:\Windows\system32\resDEU.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157860 _____ C:\Windows\system32\resITA.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157668 _____ C:\Windows\system32\resROM.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157572 _____ C:\Windows\system32\resESN.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157140 _____ C:\Windows\system32\resPLK.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00157012 _____ C:\Windows\system32\resSKY.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00156836 _____ C:\Windows\system32\resNLD.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00156228 _____ C:\Windows\system32\resPTB.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00156132 _____ C:\Windows\system32\resCSY.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00156116 _____ C:\Windows\system32\resTRK.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00155940 _____ C:\Windows\system32\resPTG.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00155460 _____ C:\Windows\system32\resFIN.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00155060 _____ C:\Windows\system32\resHRV.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00154628 _____ C:\Windows\system32\resSVE.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00154484 _____ C:\Windows\system32\resSLV.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00153508 _____ C:\Windows\system32\resNOR.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00153028 _____ C:\Windows\system32\resDAN.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00151684 _____ C:\Windows\system32\resENU.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00149924 _____ C:\Windows\system32\resCHT.cui
2016-05-03 14:01 - 2015-12-10 11:32 - 00149060 _____ C:\Windows\system32\resCHS.cui
2016-05-03 14:01 - 2015-12-10 11:31 - 22905344 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 17837568 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 10948400 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 03792272 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2016-05-03 14:01 - 2015-12-10 11:31 - 01987072 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 01786368 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 01137120 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 01133000 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00609280 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00454760 _____ (Intel Corporation) C:\Windows\system32\igdmd64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00376832 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxOSP.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00366680 _____ (Intel Corporation) C:\Windows\SysWOW64\igdmd32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00366080 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00321536 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00286720 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00255488 _____ C:\Windows\system32\igfxCPL.cpl
2016-05-03 14:01 - 2015-12-10 11:31 - 00224256 _____ C:\Windows\system32\igdde64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00218848 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00209408 _____ (Intel Corporation) C:\Windows\system32\igfxDTCM.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00188928 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v4338.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00188496 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00185856 _____ C:\Windows\SysWOW64\igdde32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00183840 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00162304 _____ C:\Windows\system32\igdail64.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00159096 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00143872 _____ C:\Windows\SysWOW64\igdail32.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00086528 _____ C:\Windows\system32\igfxCUIServicePS.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00069632 _____ ( ) C:\Windows\system32\igfxDHLibv2_0.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00059904 _____ ( ) C:\Windows\system32\igfxDHLib.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00010752 _____ ( ) C:\Windows\system32\igfxDILibv2_0.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00010752 _____ ( ) C:\Windows\system32\igfxDILib.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLibv2_0.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLib.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLibv2_0.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLib.dll
2016-05-03 14:01 - 2015-12-10 11:31 - 00002582 _____ C:\Windows\system32\iglhxs64.vp
2016-05-03 14:00 - 2015-12-10 11:31 - 08513536 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll
2016-05-03 14:00 - 2015-12-10 11:31 - 06500352 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll
2016-05-03 14:00 - 2015-12-10 11:31 - 04382824 _____ (Intel Corporation) C:\Windows\system32\Gfxv4_0.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 04379240 _____ (Intel Corporation) C:\Windows\system32\Gfxv2_0.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00959592 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00545896 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00545384 _____ (Intel Corporation) C:\Windows\system32\DPTopologyAppv2_0.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00530536 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00399976 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00399464 _____ (Intel Corporation) C:\Windows\system32\CustomModeAppv2_0.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00372840 _____ (Intel Corporation) C:\Windows\system32\igfxTray.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00319080 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00316245 _____ C:\Windows\system32\DisplayAudiox64.cab
2016-05-03 14:00 - 2015-12-10 11:31 - 00280680 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00247400 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe
2016-05-03 14:00 - 2015-12-10 11:31 - 00156264 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2016-05-03 14:00 - 2015-11-12 20:32 - 09898744 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-05-03 14:00 - 2015-11-12 20:32 - 00417024 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsUer.sys
2016-05-03 14:00 - 2015-11-12 20:32 - 00091904 _____ (Realtek Semiconductor.) C:\Windows\system32\RtCRX64.dll
2016-05-03 14:00 - 2015-10-08 16:15 - 00180480 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2016-05-03 14:00 - 2015-05-04 05:14 - 11534096 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwsw01.sys
2016-05-03 14:00 - 2015-01-13 06:09 - 01448248 _____ (Motorola Solutions, Inc.) C:\Windows\system32\Drivers\btmhsf.sys
2016-05-03 14:00 - 2013-04-23 06:24 - 00069088 _____ (Intel Corporation) C:\Windows\system32\Drivers\iBtFltCoex.sys
2016-05-03 14:00 - 2012-08-17 05:57 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2016-05-03 14:00 - 2012-08-15 04:23 - 01721216 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2016-05-03 10:42 - 2016-05-03 10:42 - 00287921 _____ C:\Users\Juliano\Downloads\PLANTA arquitetnico-tipo-02- (1).pdf
2016-05-03 10:42 - 2016-05-03 10:42 - 00287921 _____ C:\Users\Juliano\Downloads\PLANTA APE PRAIA.pdf
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ___HD C:\Users\Todos os Usuários\Permission
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ___HD C:\ProgramData\Permission
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ____D C:\Users\Todos os Usuários\Procad
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ____D C:\Users\Todos os Usuários\Isolated Storage
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ____D C:\ProgramData\Procad
2016-05-03 10:36 - 2016-05-03 10:36 - 00000000 ____D C:\ProgramData\Isolated Storage
2016-05-03 10:22 - 2016-05-03 10:23 - 00005481 _____ C:\Users\Juliano\Downloads\MÁRIO ZARDO - CAFÉ - Bradesco_29042016_104533.PDF
2016-05-03 09:15 - 2016-05-03 09:15 - 00000000 ____D C:\Program Files\Promob
2016-05-03 08:43 - 2016-05-03 14:34 - 00082240 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2016-05-03 08:30 - 2016-05-03 08:32 - 00000000 ____D C:\Users\Juliano\Downloads\Trees, Clouds & Silence - Trees, Clouds & Silence (Full Album)
2016-05-02 08:19 - 2016-05-02 08:19 - 03981421 _____ C:\Users\Juliano\Downloads\área de lazer (1).dwg
2016-04-29 10:03 - 2016-04-29 10:03 - 00624946 _____ C:\Users\Juliano\Downloads\Cascata_High_Tech[1][1][1].skp
2016-04-29 09:48 - 2016-04-29 09:48 - 00246333 _____ C:\Users\Juliano\Downloads\deck-rovere-areia-60X60-ext_1ffef630011b95d233d7dd7c7b078568.zip
2016-04-28 09:52 - 2016-04-28 09:52 - 00000000 ____D C:\Users\Juliano\AppData\Local\ElevatedDiagnostics
2016-04-28 08:36 - 2016-05-03 09:04 - 00000000 ____D C:\Users\Juliano\Downloads\Promob Plus 2015-Render-Cut
2016-04-28 08:36 - 2016-04-28 09:14 - 1692336128 _____ C:\Users\Juliano\Downloads\Promob.Arch.2013.iso
2016-04-27 14:42 - 2016-04-27 14:42 - 01016410 _____ C:\Users\Juliano\Downloads\canela-dourada-20X120-nat_8e7430b9ddecec4bf5f27f4a48f2cd82.zip
2016-04-26 08:42 - 2016-04-26 08:42 - 00576533 _____ C:\Users\Juliano\Downloads\Proposta-Projeto-BIOarquitetonico Juliano.pdf
2016-04-24 14:21 - 2016-04-24 14:21 - 00589628 _____ (Img2CAD, Inc. ) C:\Users\Juliano\Downloads\img2cad.exe
2016-04-24 14:21 - 2016-04-24 14:21 - 00000995 _____ C:\Users\Juliano\Desktop\Img2CAD.lnk
2016-04-24 14:21 - 2016-04-24 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Img2CAD
2016-04-24 14:21 - 2016-04-24 14:21 - 00000000 ____D C:\Program Files (x86)\Img2CAD
2016-04-22 13:21 - 2016-04-22 13:21 - 00555688 _____ (COMODO) C:\Windows\system32\CcavGuard64.dll
2016-04-22 13:21 - 2016-04-22 13:21 - 00431792 _____ (COMODO) C:\Windows\SysWOW64\CcavGuard32.dll
2016-04-22 13:20 - 2016-04-22 13:20 - 00127624 _____ (COMODO) C:\Windows\system32\Drivers\CmdCCAV.sys
2016-04-22 09:13 - 2016-04-22 09:13 - 04097496 _____ C:\Users\Juliano\Downloads\área de lazer.dwg
2016-04-22 08:03 - 2016-04-22 08:03 - 00007845 _____ C:\Users\Juliano\Downloads\41160411891896000162550010000773351200009807-procNfe.xml
2016-04-21 20:36 - 2016-04-21 20:36 - 00202082 _____ C:\Users\Juliano\Downloads\watch.html
2016-04-21 20:33 - 2016-05-03 15:16 - 00004096 _____ C:\Windows\System32\Tasks\SparkUpdater
2016-04-21 20:33 - 2016-04-21 20:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser
2016-04-21 20:32 - 2016-04-21 20:33 - 00000000 ____D C:\Program Files (x86)\baidu
2016-04-21 17:42 - 2016-04-21 17:55 - 48197912 _____ C:\Users\Juliano\Downloads\Spark_Setup_all.exe
2016-04-20 21:16 - 2016-04-20 21:16 - 00001963 _____ C:\Users\Juliano\Downloads\Comprovante Averbação Nilton Jaqueline.pdf
2016-04-19 07:53 - 2016-04-19 07:53 - 00066648 _____ C:\Users\Juliano\Downloads\Orçamento Krueger Decor (Sra. Mariana).pdf
2016-04-18 10:42 - 2016-04-18 10:42 - 00428669 _____ C:\Users\Juliano\Downloads\Placa de obra - em curvas (1).cdr
2016-04-18 10:03 - 2016-04-18 10:04 - 02109856 _____ C:\Users\Juliano\Downloads\JULIKA GESSO - INICIO.dwg
2016-04-18 08:12 - 2016-04-18 08:12 - 00000000 __SHD C:\found.000
2016-04-16 10:33 - 2016-04-16 10:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-04-15 10:56 - 2016-04-15 10:56 - 00428669 _____ C:\Users\Juliano\Downloads\Placa de obra - em curvas.cdr
2016-04-14 09:17 - 2016-04-14 09:17 - 00340878 _____ C:\Users\Juliano\Documents\Movel Nichos Julika.skp
2016-04-12 13:40 - 2016-04-12 13:40 - 00053648 _____ C:\Users\Juliano\Downloads\Rodapé Onélia.pdf
2016-04-11 08:33 - 2016-04-11 08:33 - 04283490 _____ C:\Users\Juliano\Downloads\casa koepp (2).dwg
2016-04-11 08:15 - 2016-04-11 08:15 - 01937648 _____ C:\Users\Juliano\Downloads\1001bit_freeware_v1.0.3_v1.0.5.rbz
2016-04-08 08:58 - 2016-04-08 09:21 - 00000000 ____D C:\Users\Public\Valdir 3D Leo
2016-04-08 08:55 - 2016-04-08 08:56 - 00000000 ____D C:\Users\Juliano\Documents\Valdir 3D Leo
2016-04-07 10:41 - 2016-05-03 15:18 - 00003458 _____ C:\Windows\System32\Tasks\EasySettings
2016-04-07 10:41 - 2016-05-03 15:18 - 00003454 _____ C:\Windows\System32\Tasks\EasySettings_config
2016-04-07 10:41 - 2016-05-03 15:17 - 00003580 _____ C:\Windows\System32\Tasks\SCCSpeedBoot
2016-04-07 10:41 - 2016-04-07 10:41 - 00003442 _____ C:\Windows\System32\Tasks\WLANStartup
2016-04-07 10:40 - 2016-04-07 10:40 - 00002063 _____ C:\Users\Public\Desktop\Easy Settings.lnk
2016-04-07 09:56 - 2016-04-07 10:06 - 130088408 _____ C:\Users\Juliano\Downloads\Easy_Settings_1.1.1.4.ZIP
2016-04-05 08:34 - 2016-05-03 14:55 - 00000000 ____D C:\Windows\system32\appmgmt

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-05-03 15:59 - 2016-03-24 19:06 - 00000000 ____D C:\Users\Juliano\AppData\Local\Yandex
2016-05-03 15:58 - 2016-03-24 19:12 - 00000000 ____D C:\Users\Juliano\AppData\LocalLow\Yandex
2016-05-03 15:58 - 2016-03-24 19:05 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Yandex
2016-05-03 15:58 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-05-03 15:58 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-05-03 15:51 - 2016-03-16 09:11 - 00000372 __RSH C:\Users\Todos os Usuários\ntuser.pol
2016-05-03 15:51 - 2016-03-16 09:11 - 00000372 __RSH C:\ProgramData\ntuser.pol
2016-05-03 15:51 - 2016-03-16 09:11 - 00000278 _____ C:\Windows\Tasks\UpdateTask.job
2016-05-03 15:51 - 2016-02-15 09:42 - 00000392 _____ C:\Windows\Tasks\update-sys.job
2016-05-03 15:51 - 2016-02-15 09:42 - 00000392 _____ C:\Windows\Tasks\update-S-1-5-21-2534326695-1102520343-3421699137-1000.job
2016-05-03 15:51 - 2015-12-22 15:59 - 00001022 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-05-03 15:51 - 2015-12-22 15:59 - 00001018 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-05-03 15:51 - 2015-12-22 14:51 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-03 15:51 - 2015-12-22 14:51 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-03 15:51 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-03 15:33 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files\Windows Defender
2016-05-03 15:33 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-05-03 15:30 - 2016-01-04 17:14 - 00000000 ____D C:\Users\Todos os Usuários\Electronic Arts
2016-05-03 15:30 - 2016-01-04 17:14 - 00000000 ____D C:\ProgramData\Electronic Arts
2016-05-03 15:19 - 2015-12-22 14:51 - 00003828 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-03 15:18 - 2015-12-22 15:59 - 00003780 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2016-05-03 15:18 - 2015-12-22 14:51 - 00004078 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-03 15:17 - 2016-03-11 08:11 - 00003938 _____ C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d
2016-05-03 15:17 - 2016-03-11 08:11 - 00003692 _____ C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon
2016-05-03 15:17 - 2016-02-15 09:42 - 00003402 _____ C:\Windows\System32\Tasks\update-sys
2016-05-03 15:17 - 2016-02-15 09:42 - 00003384 _____ C:\Windows\System32\Tasks\update-S-1-5-21-2534326695-1102520343-3421699137-1000
2016-05-03 15:17 - 2015-12-22 15:59 - 00004030 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2016-05-03 15:17 - 2015-12-22 14:55 - 00003044 _____ C:\Windows\System32\Tasks\SAgent
2016-05-03 15:17 - 2015-12-22 14:25 - 00003858 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1450805108
2016-05-03 15:16 - 2015-12-22 14:03 - 00003166 _____ C:\Windows\System32\Tasks\RtHDVBg
2016-05-03 15:15 - 2016-03-16 09:11 - 00003228 _____ C:\Windows\System32\Tasks\UpdateTask
2016-05-03 15:15 - 2015-12-22 19:59 - 00003054 _____ C:\Windows\System32\Tasks\SUPatchForW10Up
2016-05-03 15:12 - 2015-12-22 16:22 - 00049536 _____ (Absolute Software Corp.) C:\Windows\SysWOW64\agremove.exe
2016-05-03 15:08 - 2016-01-17 09:41 - 00000000 ____D C:\Users\Juliano\AppData\Local\Apps\2.0
2016-05-03 15:08 - 2015-12-22 13:38 - 00017408 _____ C:\Windows\system32\rpcnetp.exe
2016-05-03 15:05 - 2015-12-22 16:16 - 00000000 ___RD C:\Users\Juliano\Dropbox
2016-05-03 14:59 - 2009-07-14 02:32 - 00000000 ____D C:\Windows\Downloaded Program Files
2016-05-03 14:56 - 2015-12-22 15:04 - 00000000 ___RD C:\Users\Juliano\Google Drive
2016-05-03 14:55 - 2009-07-29 13:08 - 00706008 _____ C:\Windows\system32\prfh0416.dat
2016-05-03 14:55 - 2009-07-29 13:08 - 00147848 _____ C:\Windows\system32\prfc0416.dat
2016-05-03 14:55 - 2009-07-14 02:13 - 01635826 _____ C:\Windows\system32\PerfStringBackup.INI
2016-05-03 14:54 - 2016-01-17 09:41 - 00000000 ____D C:\Users\Juliano\AppData\Local\Deployment
2016-05-03 14:54 - 2015-12-22 14:53 - 00002078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-03 14:54 - 2015-12-22 13:54 - 00001435 _____ C:\Users\Juliano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-05-03 14:52 - 2015-12-22 14:23 - 00000000 __SHD C:\Users\Juliano\IntelGraphicsProfiles
2016-05-03 14:49 - 2015-12-22 14:23 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-05-03 14:47 - 2016-03-05 09:35 - 696626168 _____ C:\Windows\MEMORY.DMP
2016-05-03 14:47 - 2016-03-05 09:35 - 00000000 ____D C:\Windows\Minidump
2016-05-03 14:42 - 2016-03-24 19:00 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-05-03 14:40 - 2015-12-22 15:11 - 00000000 ____D C:\Users\Juliano\AppData\Local\JDownloader v2.0
2016-05-03 14:33 - 2016-01-05 07:16 - 01601100 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-05-03 14:21 - 2016-03-24 18:57 - 00003458 _____ C:\Windows\System32\Tasks\DriverPack Notifier
2016-05-03 14:21 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system
2016-05-03 14:20 - 2016-03-24 19:00 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-03 14:20 - 2016-03-24 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-03 14:07 - 2015-12-22 14:03 - 00003146 _____ C:\Windows\System32\Tasks\RTKCPL
2016-05-03 14:07 - 2015-12-22 14:03 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-05-03 10:39 - 2015-12-22 14:54 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\uTorrent
2016-05-03 08:29 - 2015-12-22 15:04 - 00000000 ___RD C:\Users\Juliano\Documents\MEGA
2016-05-03 08:26 - 2015-12-22 16:16 - 00000000 ___RD C:\Users\Juliano\OneDrive
2016-05-02 09:02 - 2016-01-12 07:00 - 00000000 ____D C:\Users\Juliano\Desktop\Filmes
2016-04-28 07:41 - 2015-12-22 15:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-04-27 15:43 - 2016-02-12 07:38 - 00213504 ___SH C:\Users\Public\Thumbs.db
2016-04-24 16:01 - 2015-12-22 16:16 - 00002174 _____ C:\Users\Juliano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-04-21 20:34 - 2015-12-25 06:28 - 00000000 ____D C:\Users\Juliano\AppData\Roaming\Baidu
2016-04-21 20:33 - 2016-02-05 07:55 - 00000000 ____D C:\Users\Todos os Usuários\Baidu
2016-04-21 20:33 - 2016-02-05 07:55 - 00000000 ____D C:\ProgramData\Baidu
2016-04-21 19:51 - 2016-01-04 12:58 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-21 15:05 - 2015-12-22 14:49 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-04-16 10:33 - 2015-12-22 15:16 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-04-15 10:28 - 2015-12-22 15:16 - 00000000 ____D C:\Users\Juliano\AppData\Local\Dropbox
2016-04-15 08:07 - 2015-12-22 15:01 - 00000000 ____D C:\Users\Juliano\AppData\Local\MEGAsync
2016-04-11 09:10 - 2016-01-07 13:20 - 00000000 ____D C:\Users\Juliano\AppData\Local\cache
2016-04-07 10:40 - 2015-12-22 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2016-04-04 18:11 - 2016-03-15 17:13 - 00000000 ____D C:\Program Files\zDZ

==================== Arquivos na raiz de alguns diretórios =======

2016-02-05 14:51 - 2016-02-24 08:42 - 0000132 _____ () C:\Users\Juliano\AppData\Roaming\Adobe PNG Format CS6 Prefs
2016-05-03 14:35 - 2016-05-03 14:35 - 6494208 _____ () C:\Users\Juliano\AppData\Roaming\agent.dat
2016-05-03 14:34 - 2016-05-03 14:34 - 0054272 _____ () C:\Users\Juliano\AppData\Roaming\ApplicationHosting.dat
2016-05-03 14:29 - 2016-05-03 14:34 - 0001281 _____ () C:\Users\Juliano\AppData\Roaming\Bubble Dock.boostrap.log
2016-05-03 14:29 - 2016-05-03 14:32 - 0005723 _____ () C:\Users\Juliano\AppData\Roaming\Bubble Dock.installation.log
2016-05-03 14:35 - 2016-05-03 14:35 - 0065568 _____ () C:\Users\Juliano\AppData\Roaming\Config.xml
2016-05-03 14:30 - 2016-05-03 14:32 - 0016992 _____ () C:\Users\Juliano\AppData\Roaming\InstallationConfiguration.xml
2016-05-03 14:30 - 2016-05-03 14:30 - 0127488 _____ () C:\Users\Juliano\AppData\Roaming\Installer.dat
2016-05-03 14:33 - 2016-05-03 14:33 - 0848437 _____ () C:\Users\Juliano\AppData\Roaming\Keytop.bin
2016-05-03 14:34 - 2016-05-03 14:34 - 0126464 _____ () C:\Users\Juliano\AppData\Roaming\lobby.dat
2016-05-03 14:35 - 2016-05-03 14:35 - 0018432 _____ () C:\Users\Juliano\AppData\Roaming\Main.dat
2016-05-03 14:34 - 2016-05-03 14:35 - 0005568 _____ () C:\Users\Juliano\AppData\Roaming\md.xml
2016-05-03 14:30 - 2016-04-26 06:27 - 1916928 _____ () C:\Users\Juliano\AppData\Roaming\msiql.exe
2016-05-03 14:35 - 2016-05-03 14:35 - 0126464 _____ () C:\Users\Juliano\AppData\Roaming\noah.dat
2016-05-03 14:33 - 2016-05-03 14:30 - 0832000 _____ () C:\Users\Juliano\AppData\Roaming\Rankron.exe
2016-05-03 14:34 - 2016-05-03 14:34 - 0072717 _____ () C:\Users\Juliano\AppData\Roaming\Rankron.tst
2016-05-03 14:34 - 2016-05-03 14:34 - 0000078 _____ () C:\Users\Juliano\AppData\Roaming\Selection Tools.installation.log
2016-05-03 14:29 - 2016-04-27 03:51 - 1755136 _____ () C:\Users\Juliano\AppData\Roaming\service.exe
2016-05-03 14:31 - 2016-05-03 14:32 - 2783744 _____ (TODO: ) C:\Users\Juliano\AppData\Roaming\svrupg.exe
2016-03-16 10:11 - 2016-03-30 07:55 - 0000140 _____ () C:\Users\Juliano\AppData\Roaming\WB.CFG
2016-05-03 14:31 - 2016-05-03 14:31 - 0002303 _____ () C:\Users\Juliano\AppData\Roaming\webad.xml
2016-05-03 14:29 - 2016-05-03 14:29 - 0000097 _____ () C:\Users\Juliano\AppData\Roaming\WindApp.boostrap.log
2016-05-03 14:32 - 2016-05-03 14:33 - 0000078 _____ () C:\Users\Juliano\AppData\Roaming\WindApp.installation.log
2016-05-03 14:30 - 2016-04-25 11:45 - 0600312 _____ () C:\Users\Juliano\AppData\Roaming\YeaPlayer_br_IBD_Bundle.exe
2016-05-03 14:34 - 2016-05-03 14:30 - 0832000 _____ () C:\Users\Juliano\AppData\Roaming\Zotdex.exe
2016-05-03 14:35 - 2016-05-03 14:35 - 1626777 _____ () C:\Users\Juliano\AppData\Roaming\Zotdex.tst
2016-03-12 13:36 - 2016-03-12 13:36 - 0007604 _____ () C:\Users\Juliano\AppData\Local\Resmon.ResmonCfg
2016-02-15 09:42 - 2016-02-15 09:42 - 0000003 _____ () C:\Users\Juliano\AppData\Local\updater.log
2016-02-15 09:42 - 2016-02-15 09:42 - 0000424 _____ () C:\Users\Juliano\AppData\Local\UserProducts.xml
2016-03-11 08:26 - 2016-03-11 08:27 - 0010574 _____ () C:\Users\Juliano\AppData\Local\WiDiSetupLog.20160311.082613.txt
2015-12-22 14:03 - 2015-12-22 14:03 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-05-03 16:04 - 2016-05-03 16:04 - 0014501 _____ () C:\ProgramData\Duplicaterecord.js
2016-01-05 15:29 - 2016-01-05 15:29 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2016-05-03 14:32 - 2016-04-26 06:27 - 1916928 _____ () C:\ProgramData\msiql.exe
2016-05-03 14:29 - 2016-04-27 03:51 - 1755136 _____ () C:\ProgramData\service.exe
2016-05-03 14:32 - 2016-05-03 14:32 - 0002303 _____ () C:\ProgramData\webad.xml
2016-05-03 14:32 - 2016-05-03 14:52 - 0073073 _____ () C:\ProgramData\YSIns.exe

Arquivos para serem movidos ou deletados:
====================
C:\Users\Juliano\AppData\Local\Temp\CCY7NYNMB\17O42DFFG.exe
C:\ProgramData\Duplicaterecord.js
C:\ProgramData\msiql.exe
C:\ProgramData\service.exe
C:\ProgramData\YSIns.exe
C:\Users\Todos os Usuários\Duplicaterecord.js
C:\Users\Todos os Usuários\msiql.exe
C:\Users\Todos os Usuários\service.exe
C:\Users\Todos os Usuários\YSIns.exe


Alguns arquivos em TEMP:
====================
C:\Users\Juliano\AppData\Local\Temp\112F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\121C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\1333.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\144D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\1AC3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\26D5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\26E6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\26E7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\26E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\26E9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C66.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C67.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C68.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C69.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C79.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C7A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C8B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C8C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C8D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2C8E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CAE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CAF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CB0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CB1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CB2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CC3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CC4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CE4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CE5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CE6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CF8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CF9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CFA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CFB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2CFC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D0C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D0D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D0E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D0F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D20.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D21.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D51.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D52.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D53.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D54.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D64.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D65.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D66.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D67.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D78.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D79.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D7A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D7B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D8B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D8C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D8D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D8E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2D9F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DA0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DA1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DA2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DB3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DC3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DC4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DC5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DD6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DD7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DD8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DD9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DE9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DEA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2DEB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2E0C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2E0D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2E0E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F18.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F19.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F1A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F2A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F3B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F3C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F4D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F4E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F4F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F50.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F60.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F61.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F62.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F63.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F64.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F84.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F85.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F86.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F97.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F98.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F99.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2F9A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2FBA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2FBB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2FBC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\2FBD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3163.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3164.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3185.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3186.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3187.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3188.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31A8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31A9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31AB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31BC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31CD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31CE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31CF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31D0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31E1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31E2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31E3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\31E4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3204.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3205.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3215.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3216.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32A4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32A5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32C5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32D9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32EA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32EC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32ED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\32FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3300.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3301.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3311.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3312.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3313.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3314.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3325.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3326.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3346.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3347.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3348.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3359.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\335A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\335B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\335C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\336C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33CB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33CC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33FC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33FD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\33FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\341F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3420.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3421.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3422.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3461.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3462.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3463.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3464.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37A1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37D2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37D3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37D4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37D5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37E6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37E7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\37E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\38D3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\38E3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\38E4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\38E5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3905.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3916.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3917.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3918.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3A80.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3A81.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3A82.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B3E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B3F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B50.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B51.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B52.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B62.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B63.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B64.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B65.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B66.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3B67.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3C71.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3C72.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3C73.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3CB3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3CB4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3CB5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DCF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DD0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DD1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DD2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DE2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DE3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DE4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DE5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DE6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DF8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3DF9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E09.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E0A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E0B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E0C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E1E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E7D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E7E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E8E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3E8F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EA0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EA1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EA2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EA3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EB3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3ED4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3ED5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3ED6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EE6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EE7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EE8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EF9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EFA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3EFB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F0B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F1C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F2E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F3E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F3F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F40.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F41.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F52.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F53.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F54.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F93.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F94.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3F95.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FA6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FB6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FC7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FC8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FC9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FCA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FCB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FEB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FEC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FEE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\3FFF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4000.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4010.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4011.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4012.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4023.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4034.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4035.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4036.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4046.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4047.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4058.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4059.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\405A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\406A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\406B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\408C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\408D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\408E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\409E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40BE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40BF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40E2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\40E3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4103.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4113.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4114.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4115.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4116.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4117.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4138.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4139.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4149.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\414A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\414B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\414C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\414D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\415E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\415F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4288.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4289.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\428A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42AB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42BC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42BD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42CE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42DE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\42FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4300.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4301.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4322.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4323.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4324.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4325.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4335.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4336.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4337.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4386.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4387.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43EC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\43ED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\442C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\444C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\445D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\445E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\446F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4470.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4471.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4472.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4482.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4483.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4484.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4495.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44A5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\44CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4509.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\450A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\450B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\451C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4599.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\45AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46B4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46B5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46B6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46B7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46B8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46CB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46CC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46ED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46EE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\46EF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\47CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\47DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4897.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4898.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\48A9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\48AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\48BA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\48BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4A04.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4A15.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4CF3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4CF4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D04.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D25.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D35.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D36.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D37.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D38.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D39.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D4A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D6A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D6B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D6C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D6D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D7E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D8E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D8F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D90.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D91.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4D92.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DA3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DA4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DC4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DC5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DC6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DC7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DE7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DE8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DE9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DEA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DFB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DFC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DFD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4DFE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E2E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E2F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E30.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E31.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E41.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E42.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E43.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E44.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E74.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E75.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E76.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4E77.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EA7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EA8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EA9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EAA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EAB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EAC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EAD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EAE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EBE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EBF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EC0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EC1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EE2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4EF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F08.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F18.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F19.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F1A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F1B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4F99.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FAA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FBA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FBB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FBC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FBD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FDE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FDF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FE0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FE1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FF1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FF2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FF3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\4FF4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5005.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5006.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5007.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5017.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5028.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5029.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\502A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\504A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\505B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\505C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\505D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\505E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\507E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\507F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\509F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50A1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50A2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50C2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50C4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50C5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50F5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50F6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50F7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\50F8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5118.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5119.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\511A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\511B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\518A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\518B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\51AB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\51AC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\51AD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\51AE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\524B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\524C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52CA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52DD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\52EE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\530E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\530F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5310.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5311.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5322.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5323.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5324.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5325.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5335.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5336.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5337.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5338.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5349.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\534A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\535A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\535B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\53E9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\53F9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54A8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54A9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54AB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54BC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54BD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54BE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\54BF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\554C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\554D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\554E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\555F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\56C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\56C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\56C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\56C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5757.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5758.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5778.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5779.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\577A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\577B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\579B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\579C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\579D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\579E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57BE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57BF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57D1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57E2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57F2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57F3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\57F4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\596C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\596D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\597D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\597E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\598F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5990.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59A1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59A2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59A3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59B4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59B5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59E7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59F8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59F9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59FA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\59FB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A1C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A8B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A8C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A9C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5A9D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5ABE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5ABF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AC0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AC1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5ADD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AE1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AE2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AE3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AE4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AF4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AF5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AF6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5AF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B08.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B09.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B1A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B1B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B98.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5B99.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BBA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BBB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BBC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BBD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BDD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BDE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BEE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5BEF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C10.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C11.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C21.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C32.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C42.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C43.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C54.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C55.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C56.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C67.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C77.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5C78.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CA8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CA9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CAA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CAB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CDB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CDC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CEC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CFE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5CFF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D1F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D20.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D21.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D22.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D42.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D43.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D44.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D45.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D85.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D86.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D87.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D88.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5D98.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DA9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DAA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DAB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DCB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DCC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DCD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DCE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DEE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DEF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DF0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5DF1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\5FF5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6006.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6007.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6008.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6028.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6029.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\602A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\602B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\603C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\603D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\603E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\607D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\607E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\607F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6090.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6091.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6092.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6093.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6094.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6095.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6096.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60A8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60A9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60CB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60CC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\60CD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\618F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\619F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61B0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61B1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61B2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61B3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61C4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61C5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61D7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61D8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61D9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61FA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\61FB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\620C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\620D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\621D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\622E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\622F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6230.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6231.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6232.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6243.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6244.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6254.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6255.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6266.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6267.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62B6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62B7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62D9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62DD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\62EE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\630E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\631E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\631F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6320.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6321.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6332.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6333.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6334.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63D1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63D2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63F2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63F3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63F4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\63F5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6454.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6455.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6456.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6466.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6487.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6488.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6489.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\648A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\649A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\649B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\649C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\64AD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\64BD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\64BE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\64BF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\64C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\651F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6530.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6550.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6551.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6552.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6553.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6573.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6574.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6575.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6576.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6577.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6578.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6589.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\658A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\658B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\658C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\658D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\658E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\659E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\659F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65A5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65D5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65E6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65E7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65E9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65EA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\65EC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\660C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\660D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\661D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6708.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6719.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\671A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67E6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67E7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67F7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67F8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67F9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\67FA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\681B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\681C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\681D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\682D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\682E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\683F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6840.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6841.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6861.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6862.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6863.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6864.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6875.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6876.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6877.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6878.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6879.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6889.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\688A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\688B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\688C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\689D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68AD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68AE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68AF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68B0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68C2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68C4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68D5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68D6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68D7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68D8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68E9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68EA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68FC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68FD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\68FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\695D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\695E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\695F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6960.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6981.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6982.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6983.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6984.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69A4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69A5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69B7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69B8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69D9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69EC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69ED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69EE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\69FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A00.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A01.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A31.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A32.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A33.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A34.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A92.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6A93.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AB3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AB4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AC5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AC6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AD7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6AF8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B08.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B09.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B0A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B0B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B0C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B1E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B3E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B4F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B50.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B51.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B52.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B62.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B63.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B64.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B65.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B76.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B77.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B88.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B89.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B8A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6B9A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C08.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C09.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C0A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C1B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C1C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C3D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C3E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C4F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C50.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C70.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C71.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C82.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C83.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C84.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C85.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C95.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C96.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C97.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C98.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6C99.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CAA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CCA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CDB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CDC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CDD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CED.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CEE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CEF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6CF0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D01.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D02.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D03.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D13.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D34.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D35.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D36.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D37.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D47.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D48.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D49.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D4A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D8A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D8B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D8C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D8D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D9D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6D9E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DBE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DBF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DC0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DC1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DD2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DD3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DD4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DE5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DF5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DF6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DF7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6DF8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6F60.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6F61.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6F62.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6F63.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FA2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FA3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FA4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FA5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FB6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FB7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FB8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FB9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FBA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FCB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FCC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\6FCD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\705A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\705B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70AA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70AB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70BC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70BD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70FC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70FD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\70FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\71BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\71BC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7362.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7363.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7384.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7385.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7395.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7396.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73A8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73A9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73B9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73BA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73CC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73CD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73DE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73DF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\73eecqo33.exe
C:\Users\Juliano\AppData\Local\Temp\73EF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\743E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\743F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7440.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7460.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7461.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7462.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7463.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7493.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7494.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7495.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74A7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74A8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74B8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74B9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74BA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74CC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74CD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74CE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\74DF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\77F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\783A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\783B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7926.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7927.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7947.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7948.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7958.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7959.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\796A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\796B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\796C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\797D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\797E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\797F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\799F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79A1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79B1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79B2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79B3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79B4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79B5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\79DD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7A5A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7A5B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B56.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B57.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B77.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B88.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B89.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7B8A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7C36.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7C47.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7CD4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7CD5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7CD6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7CE7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D65.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D75.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D86.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D87.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D88.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D89.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D9A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D9B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D9C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7D9D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7E59.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\7E5A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8000.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8001.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8012.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8022.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8023.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8024.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8044.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8045.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8046.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8057.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8058.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8059.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\806A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\807A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\807B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\807C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\809C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\809D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\809E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\809F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\80C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\80C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\80C2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\80C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\80F2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8103.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8104.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8105.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8125.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8126.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8146.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8147.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8158.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8159.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\816A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\816B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\816C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\816D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\817D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\817E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\818F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8190.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\81B0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\81B1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\81D1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\81D2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8202.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8203.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8204.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8205.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8216.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8217.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8227.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8228.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8229.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\822A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\822B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\823C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\828B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\828C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\828D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\828E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82AE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82AF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82C2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82E3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\82E4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8304.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8305.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8306.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8307.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8394.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8395.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83B6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83D9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83DC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83FC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\83FD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\841D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\841E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\842F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8430.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8440.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8441.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8442.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8443.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8454.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8455.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8456.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8467.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8477.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8478.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8479.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\847A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\848B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\848C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\848D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\849D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84BE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84BF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84EE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84EF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84F0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\84F1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8512.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8513.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8523.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8524.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8525.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8526.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8575.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8576.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8587.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8588.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8589.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\858A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\859A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\859B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\859C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\859D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85AE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85AF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85C0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85C1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85C2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85D3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85E4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\85E5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8605.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8606.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8617.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8618.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8638.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8639.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8649.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\864A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\864B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\865C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\867C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\867D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\867E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\867F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\869F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86B1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86B2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86C3.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86C4.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86C5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86D5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86D6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86D7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86E8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86E9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86EA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\86EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\870B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\870C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\870D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\870E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\870F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8720.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8721.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8722.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8790.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\87A0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\883D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\884E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\885F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8860.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8870.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8871.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8891.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8892.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8893.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8894.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88A5.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88A6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88C6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88C7.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88C8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88C9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88DA.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88DB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88EB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88EC.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88FD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88FE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\88FF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8900.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8911.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8921.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\893.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\894.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A1C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A1D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A2D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A2E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A2F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A30.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A41.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A42.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A43.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A44.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A64.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A65.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A66.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A67.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A68.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A79.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A7A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A8A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A8B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A9C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A9D.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8A9E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8AAF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8AB0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8ADF.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8AE0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8AE1.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8AE2.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B03.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B04.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B05.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B06.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B26.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B27.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B28.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B29.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B39.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B3A.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\8B3B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\947563.exe
C:\Users\Juliano\AppData\Local\Temp\AF6.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\BackupSetup.exe
C:\Users\Juliano\AppData\Local\Temp\Baidu_Secure_SystemUp_5.1.3.126764.exe
C:\Users\Juliano\AppData\Local\Temp\C6B0.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\C9CD.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\CB06.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\CC4F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\CFE8.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\D19E.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\D508.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\D509.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\DBDE.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\EDD9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\F059.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\F2BB.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\F654.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\F665.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\F98.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\FA6B.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\FE1F.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\FFC9.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\ICReinstall_121C.tmp.exe
C:\Users\Juliano\AppData\Local\Temp\o9icem9e3g5_1.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll
[2016-03-12 15:56] - [2016-03-12 15:56] - 0357888 ____A (Microsoft Corporation) 9BF5BD60CE24C20D71193D6C17EFB18E

C:\Windows\SysWOW64\dnsapi.dll
[2016-03-12 15:56] - [2016-03-12 15:56] - 0270336 ____A (Microsoft Corporation) F958B9DBEB54411BA76D214F867C810F

C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-04-28 11:50

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité