cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:07-05-2016
Executado por ANDRE (administrador) em ANDRE-PC (08-05-2016 18:34:40)
Executando a partir de C:\Users\ANDRE\Downloads
Perfis Carregados: ANDRE (Perfis Disponíveis: ANDRE)
Platform: Windows 7 Ultimate (X64) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Windows\SysWOW64\srvany.exe
() C:\Windows\KMService.exe
(GOOBZO) C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe
(BitTorrent Inc.) C:\Users\ANDRE\AppData\Roaming\uTorrent\uTorrent.exe
(GOOBZO) C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(BitTorrent Inc.) C:\Users\ANDRE\AppData\Roaming\uTorrent\updates\3.4.6_42178\utorrentie.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(BitTorrent Inc.) C:\Users\ANDRE\AppData\Roaming\uTorrent\updates\3.4.6_42178\utorrentie.exe
() C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe
() C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2016-05-06] (Avast Software s.r.o.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro3\JSDriver\1.42.1.10657\jsdrv.exe [2562048 2016-04-05] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\...\Run: [uTorrent] => C:\Users\ANDRE\AppData\Roaming\uTorrent\uTorrent.exe [1959424 2016-05-07] (BitTorrent Inc.)
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\...\Run: [GoogleChromeAutoLaunch_B9578268EF9C272A05D26A60073B645F] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [881304 2016-04-27] (Google Inc.)
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro3\JSDriver\1.42.1.10657\jsdrv.exe [2562048 2016-04-05] ()
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\...\Run: [GoobzoYouTubeAccelerator] => C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe [2226120 2016-05-08] (GOOBZO)
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\...\Run: [GoogleChromeAutoLaunch_17D1F2E31F54A188A7C1CC62C195B7BC] => C:\Users\ANDRE\AppData\Local\Chromium\Application\chrome.exe [667136 2015-08-11] (The Chromium Authors)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-05] (Avast Software s.r.o.)
CHR HKLM\SOFTWARE\Policies\Google: Restrição <======= ATENÇÃO

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Winsock: Catalog9 01 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [176584 2016-05-07] (GOOBZO)
Winsock: Catalog9 02 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [176584 2016-05-07] (GOOBZO)
Winsock: Catalog9 03 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [176584 2016-05-07] (GOOBZO)
Winsock: Catalog9 04 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [176584 2016-05-07] (GOOBZO)
Winsock: Catalog9 15 C:\Program Files (x86)\YouTube Accelerator\ytalsp.dll [176584 2016-05-07] (GOOBZO)
Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{682BBF65-56BB-4E5A-9A27-4F5F326823D2}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-2de2750d
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-2de2750d
HKU\S-1-5-21-1396560576-321590961-3887464982-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-2de2750d
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-2de2750d&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-2de2750d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1396560576-321590961-3887464982-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-2de2750d&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1396560576-321590961-3887464982-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-2de2750d&q={searchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-05-05] (Avast Software s.r.o.)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro3\ShopperPro364.dll [2016-04-05] ()
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2016-05-08] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-05-05] (Avast Software s.r.o.)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro3\ShopperPro3.dll [2016-04-05] ()
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2016-05-08] (Oracle Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2016-05-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2016-05-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-05-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-05-06] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-05] [não assinado]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.istartsurf.com/?type=hp&ts=1439258068&z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlma&from=cornl&uid=SAMSUNGXHD161HJ_S15LJ50Q129166
CHR StartupUrls: Default -> "chrome://chrome-signin/?source=0","hxxp://www.google.com.br/","hxxp://www.istartsurf.com/?type=hp&ts=1439258068&z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlma&from=cornl&uid=SAMSUNGXHD161HJ_S15LJ50Q129166","hxxp://www.istartsurf.com/?type=hppp&ts=1439258141&z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlma&from=cornl&uid=SAMSUNGXHD161HJ_S15LJ50Q129166","hxxp://www.istartsurf.com/?type=hp&ts=1446213280&z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlma&from=cor&uid=SAMSUNGXHD161HJ_S15LJ50Q129166","hxxp://www.omniboxes.com/?type=hp&ts=1448466726&z=2255188d1604b4f5a43c440gcz8z4b8z9q1q2mbo0q&from=amt&uid=samsungxhd161hj_s15lj50q129166","hxxp://www.yessearches.com/?mode=nnnb&ptid=sto&uid=FFFB47A1DCDEB4483E079906093AD408&v=20160425&ts=AHEqAHYmB34mB0.."
CHR Profile: C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-06]
CHR Extension: (Google Docs) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-06]
CHR Extension: (Google Drive) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-06]
CHR Extension: (Search Manager) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\bahkljhhdeciiaodlkppoonappfnheoi [2016-05-08]
CHR Extension: (YouTube) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-06]
CHR Extension: (Facebook Secret Emoticons) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2016-05-07]
CHR Extension: (Manga e HQs in brazilian) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmidfbpiiicmkfimcbcoagpmchgmkpl [2016-05-07]
CHR Extension: (Adblock para o Youtube™) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2016-05-07]
CHR Extension: (Talk and Comment - Voice notes anywhere) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\djnhkfljnimcpelfndpcjcgngmefaobl [2016-05-07]
CHR Extension: (Planilhas do Google) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-06]
CHR Extension: (Attack on Titan: Eren Jaeger) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhodmdpaleejajgggnkfkkmjkamgclgb [2016-05-07]
CHR Extension: (Ad;Block Plus) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfjjjihomcibpcjpgdnodccdbmcejole [2016-05-07]
CHR Extension: (Documentos Google off-line) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-06]
CHR Extension: (Avast Online Security) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-06]
CHR Extension: (Facebook Emoticons) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2016-05-07]
CHR Extension: (Roms43 for Chrome) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\hodglkaodhnbkakchphcmbgdinlgcfgc [2016-05-07]
CHR Extension: (Pokemon Online Free MMO RPG Game - Fan Made) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmpioinopoicldchodddooadonajhidg [2016-05-07]
CHR Extension: (Audio EQ) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfafdlnjaliaghpjdajmlcnnblkgcefh [2016-05-07]
CHR Extension: (Hangouts do Google) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2016-05-07]
CHR Extension: (Auto Refresh Blocker) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmhmgghfmjjoejobimppckbalonobkck [2016-05-07]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-06]
CHR Extension: (Antivirus Online Scanner) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\npdhjdikbnmbjamabeigljgbokepmkce [2016-05-07]
CHR Extension: (AdBlock Pro) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2016-05-07]
CHR Extension: (Game Boy Emulator online) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbkbkhieclkbbkhfaomkdfghcpcdidph [2016-05-07]
CHR Extension: (Gmail) - C:\Users\ANDRE\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-06]
CHR HKU\S-1-5-21-1396560576-321590961-3887464982-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-05]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2016-05-05] (Avast Software s.r.o.)
R2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2016-05-05] () [Arquivo não assinado]
R2 rtop; C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe [254264 2016-05-08] ()
S2 SPBIUpd; C:\Program Files\Common Files\ShopperPro3\spbiu.exe [1224704 2016-04-05] () [Arquivo não assinado]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)
R2 YouTubeAcceleratorService; C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe [1509320 2016-05-08] (GOOBZO)

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2016-05-05] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2016-05-05] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2016-05-05] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2016-05-05] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2016-05-05] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2016-05-06] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2016-05-05] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2016-05-05] ()
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro3\spbiw.sys [43832 2016-04-05] ()
S2 SPDRIVER_1.42.1.10657; C:\Program Files (x86)\ShopperPro3\JSDriver\1.42.1.10657\jsdrv.sys [53040 2016-04-05] ()

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-05-08 18:22 - 2016-05-08 18:34 - 00017643 _____ C:\Users\ANDRE\Downloads\FRST.txt
2016-05-08 18:21 - 2016-05-08 18:21 - 02379264 _____ (Farbar) C:\Users\ANDRE\Downloads\FRST64.exe
2016-05-08 17:55 - 2016-05-08 17:55 - 00204917 _____ C:\Users\ANDRE\Downloads\msvcp140.zip
2016-05-08 17:39 - 2016-05-08 17:39 - 00000000 ____D C:\Users\ANDRE\Downloads\platforms
2016-05-08 17:39 - 2016-05-08 16:12 - 00000000 _____ C:\Users\ANDRE\Downloads\citra-qt.pdb
2016-05-08 17:39 - 2016-05-08 16:12 - 00000000 _____ C:\Users\ANDRE\Downloads\citra-qt.exe
2016-05-08 17:39 - 2016-05-08 16:11 - 00000000 _____ C:\Users\ANDRE\Downloads\citra.pdb
2016-05-08 17:39 - 2016-01-02 08:59 - 00000000 _____ C:\Users\ANDRE\Downloads\SDL2.dll
2016-05-08 17:39 - 2015-08-02 18:05 - 00000000 _____ C:\Users\ANDRE\Downloads\Qt5OpenGL.dll
2016-05-08 17:39 - 2015-08-02 18:04 - 00000000 _____ C:\Users\ANDRE\Downloads\Qt5Widgets.dll
2016-05-08 17:39 - 2015-08-02 18:01 - 00000000 _____ C:\Users\ANDRE\Downloads\Qt5Gui.dll
2016-05-08 17:39 - 2015-08-02 17:57 - 00000000 _____ C:\Users\ANDRE\Downloads\Qt5Core.dll
2016-05-08 17:37 - 2016-05-08 17:38 - 00000000 ____D C:\Users\ANDRE\Downloads\citra
2016-05-08 17:33 - 2016-05-08 17:35 - 12018121 _____ C:\Users\ANDRE\Downloads\citra-latest-windows-amd64 (2).7z
2016-05-08 17:31 - 2016-05-08 17:31 - 00000000 ____D C:\Users\ANDRE\Downloads\citra-latest-windows-amd64 (1)
2016-05-08 16:15 - 2016-05-08 16:15 - 00000000 ____D C:\Program Files (x64)
2016-05-08 16:14 - 2016-05-08 16:14 - 00000000 ____D C:\Users\ANDRE\Downloads\Dolphin-x64
2016-05-08 16:11 - 2016-05-08 16:13 - 05063186 _____ C:\Users\ANDRE\Downloads\dolphin-master-4.0-9289-x64.7z
2016-05-08 15:58 - 2016-05-08 16:00 - 12014609 _____ C:\Users\ANDRE\Downloads\citra-latest-windows-amd64.7z
2016-05-08 15:48 - 2016-05-08 15:49 - 01730048 _____ (Farbar) C:\Users\ANDRE\Downloads\FRST.exe
2016-05-08 15:48 - 2016-05-08 15:48 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence
2016-05-08 15:44 - 2016-05-08 15:44 - 00000000 ____D C:\Users\Todos os Usuários\ByteFence
2016-05-08 15:44 - 2016-05-08 15:44 - 00000000 ____D C:\ProgramData\ByteFence
2016-05-08 15:41 - 2016-05-08 15:41 - 00003464 _____ C:\Windows\System32\Tasks\Inst_Rep
2016-05-08 15:38 - 2016-05-08 15:38 - 12464099 _____ C:\Users\ANDRE\Downloads\nc.exe
2016-05-08 15:31 - 2016-04-18 15:00 - 00023232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-05-08 15:28 - 2016-04-18 15:00 - 00023232 _____ (Microsoft Corporation) C:\Users\ANDRE\Desktop\api-ms-win-crt-runtime-l1-1-0.dll
2016-05-08 15:27 - 2016-05-08 15:26 - 00013188 _____ C:\Users\ANDRE\Desktop\api-ms-win-crt-runtime-l1-1-0.zip
2016-05-08 15:26 - 2016-05-08 15:26 - 00013188 _____ C:\Users\ANDRE\Downloads\api-ms-win-crt-runtime-l1-1-0.zip
2016-05-08 15:07 - 2016-05-08 15:07 - 00000000 ____D C:\Users\Todos os Usuários\NortonInstaller
2016-05-08 15:07 - 2016-05-08 15:07 - 00000000 ____D C:\ProgramData\NortonInstaller
2016-05-08 14:55 - 2016-05-08 14:55 - 00002211 _____ C:\Users\ANDRE\Desktop\Chromium.lnk
2016-05-08 14:55 - 2016-05-08 14:55 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium
2016-05-08 14:55 - 2016-05-08 14:55 - 00000000 ____D C:\Users\ANDRE\AppData\Local\Chromium
2016-05-08 14:40 - 2016-05-08 14:59 - 12014609 _____ C:\Users\ANDRE\Downloads\citra-latest-windows-amd64 (1).7z
2016-05-08 14:06 - 2016-05-08 14:08 - 00000000 ____D C:\Users\ANDRE\AppData\Local\{98E3AEBF-BC4B-C207-D1D3-E7EFF5BB1B77}
2016-05-08 14:06 - 2016-05-08 14:06 - 00003476 _____ C:\Windows\System32\Tasks\ByteFence Scan
2016-05-08 14:06 - 2016-05-08 14:06 - 00000372 __RSH C:\Users\Todos os Usuários\ntuser.pol
2016-05-08 14:06 - 2016-05-08 14:06 - 00000372 __RSH C:\ProgramData\ntuser.pol
2016-05-08 14:05 - 2016-05-08 15:52 - 00000000 ____D C:\Program Files\ByteFence
2016-05-08 14:05 - 2016-05-08 14:05 - 00003372 _____ C:\Windows\System32\Tasks\ByteFence
2016-05-08 14:05 - 2016-05-08 14:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware
2016-05-08 12:09 - 2016-05-08 12:09 - 00000000 ____D C:\Users\Todos os Usuários\Sun
2016-05-08 12:09 - 2016-05-08 12:09 - 00000000 ____D C:\ProgramData\Sun
2016-05-08 12:08 - 2016-05-08 12:08 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2016-05-08 12:08 - 2016-05-08 12:08 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2016-05-08 12:08 - 2016-05-08 12:08 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2016-05-08 12:08 - 2016-05-08 12:08 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2016-05-08 12:08 - 2016-05-08 12:08 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2016-05-08 12:08 - 2016-05-08 12:08 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-05-08 12:08 - 2016-05-08 12:08 - 00000000 ____D C:\Program Files (x86)\Java
2016-05-08 11:56 - 2016-05-08 11:56 - 00001961 _____ C:\Users\ANDRE\Desktop\Play R4 3DS Games.lnk
2016-05-08 11:56 - 2016-05-08 11:56 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\R4 3DS Emulator
2016-05-08 11:56 - 2016-05-08 11:56 - 00000000 ____D C:\Program Files (x86)\R4 3DS Emulator
2016-05-08 11:52 - 2016-05-08 11:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
2016-05-07 22:45 - 2016-05-07 22:45 - 00000000 ____D C:\Users\ANDRE\AppData\LocalLow\Sun
2016-05-07 22:43 - 2016-05-08 15:52 - 00000000 ____D C:\Users\ANDRE\AppData\Local\FilesFrog Update Checker
2016-05-07 22:43 - 2016-05-08 15:43 - 00000000 ____D C:\Users\Todos os Usuários\TEMP
2016-05-07 22:43 - 2016-05-08 15:43 - 00000000 ____D C:\ProgramData\TEMP
2016-05-07 22:43 - 2016-05-08 11:52 - 00003446 _____ C:\Windows\System32\Tasks\YTAUpdate
2016-05-07 22:43 - 2016-05-08 11:52 - 00003260 _____ C:\Windows\System32\Tasks\YTAUpdate_logon
2016-05-07 22:43 - 2016-05-08 11:52 - 00001146 _____ C:\Users\ANDRE\Desktop\YouTube Accelerator.lnk
2016-05-07 22:43 - 2016-05-08 11:52 - 00000000 ____D C:\Program Files (x86)\YouTube Accelerator
2016-05-07 22:43 - 2016-05-07 22:43 - 00172032 _____ (Jin Hui E-mail: jinhui@jcomsoft.com Web: hxxp://www.jcomsoft.com) C:\Windows\SysWOW64\AniGIF.ocx
2016-05-07 22:43 - 2016-05-07 22:43 - 00001176 _____ C:\Users\ANDRE\Desktop\Check for Updates.lnk
2016-05-07 22:43 - 2016-05-07 22:43 - 00000000 ____D C:\Users\Public\Documents\GOOBZO
2016-05-07 22:43 - 2016-05-07 22:43 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker
2016-05-07 22:43 - 2016-05-07 22:43 - 00000000 ____D C:\Users\ANDRE\AppData\LocalLow\Goobzo
2016-05-07 22:42 - 2016-05-08 11:50 - 00000000 ____D C:\Program Files\Common Files\ShopperPro3
2016-05-07 22:42 - 2016-05-08 11:49 - 00004350 _____ C:\Windows\System32\Tasks\ShopperPro3
2016-05-07 22:42 - 2016-05-08 11:49 - 00004238 _____ C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_313331363632333833332d5a4a6c414a34572a506c415a
2016-05-07 22:42 - 2016-05-08 11:49 - 00003570 _____ C:\Windows\System32\Tasks\ShopperProJSUpd
2016-05-07 22:42 - 2016-05-08 11:49 - 00000000 ____D C:\Program Files (x86)\ShopperPro3
2016-05-07 22:42 - 2016-05-07 22:42 - 00003498 _____ C:\Windows\System32\Tasks\SPDriver
2016-05-07 22:42 - 2016-05-07 22:42 - 00000000 ____D C:\Users\Todos os Usuários\ShopperPro3
2016-05-07 22:42 - 2016-05-07 22:42 - 00000000 ____D C:\Users\Public\Documents\ShopperPro3
2016-05-07 22:42 - 2016-05-07 22:42 - 00000000 ____D C:\ProgramData\ShopperPro3
2016-05-07 22:40 - 2016-05-08 18:16 - 00000000 ____D C:\Users\ANDRE\AppData\Local\CrashDumps
2016-05-07 22:24 - 2016-05-07 22:24 - 00000577 _____ C:\Users\ANDRE\Downloads\Citra_Setup.vbs
2016-05-07 08:23 - 2016-05-07 08:23 - 00002113 _____ C:\Users\Public\Desktop\WinDS PRO.lnk
2016-05-07 08:23 - 2016-05-07 08:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDS PRO
2016-05-07 08:22 - 2016-05-08 17:31 - 00000000 ____D C:\Users\ANDRE\Downloads\1325 - Pokemon Omega Ruby (Europe) (En,Ja,Fr,De,Es,It,Ko) Decrypted
2016-05-07 08:20 - 2016-05-07 08:20 - 00037579 _____ C:\Users\ANDRE\Downloads\1325 - Pokemon Omega Ruby (Europe) (En,Ja,Fr,De,Es,It,Ko) Decrypted.torrent
2016-05-07 02:58 - 2016-05-07 07:25 - 00000000 ___SD C:\Users\ANDRE\AppData\LocalLow\Temp
2016-05-07 02:06 - 2016-05-08 18:31 - 00025091 _____ C:\Users\ANDRE\Downloads\Addition.txt
2016-05-07 02:04 - 2016-05-08 18:34 - 00000000 ____D C:\FRST
2016-05-07 01:55 - 2016-05-07 02:17 - 00000000 ____D C:\Users\Todos os Usuários\Informer Technologies, Inc
2016-05-07 01:55 - 2016-05-07 02:17 - 00000000 ____D C:\ProgramData\Informer Technologies, Inc
2016-05-07 01:10 - 2016-05-07 01:10 - 00002351 _____ C:\Users\ANDRE\Desktop\Inicializador de aplicativos do Google Chrome.lnk
2016-05-07 01:10 - 2016-05-07 01:10 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-05-07 01:10 - 2016-05-07 01:10 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome
2016-05-07 00:31 - 2016-05-08 15:43 - 00000000 ____D C:\Users\ANDRE\AppData\LocalLow\uTorrent
2016-05-07 00:30 - 2016-05-07 00:30 - 00002601 _____ C:\Users\ANDRE\Desktop\µTorrent.lnk
2016-05-07 00:30 - 2016-05-07 00:30 - 00002601 _____ C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-05-07 00:29 - 2016-05-08 18:34 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\uTorrent
2016-05-07 00:00 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2016-05-07 00:00 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2016-05-07 00:00 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2016-05-07 00:00 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2016-05-07 00:00 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2016-05-07 00:00 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2016-05-07 00:00 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2016-05-07 00:00 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2016-05-07 00:00 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2016-05-07 00:00 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2016-05-06 23:59 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2016-05-06 23:59 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2016-05-06 23:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2016-05-06 23:59 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2016-05-06 23:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2016-05-06 23:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2016-05-06 23:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2016-05-06 23:59 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2016-05-06 23:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2016-05-06 23:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2016-05-06 23:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2016-05-06 23:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2016-05-06 23:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2016-05-06 23:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2016-05-06 23:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2016-05-06 23:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2016-05-06 23:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2016-05-06 23:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2016-05-06 23:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2016-05-06 23:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2016-05-06 23:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2016-05-06 23:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2016-05-06 23:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2016-05-06 23:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2016-05-06 23:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2016-05-06 23:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2016-05-06 23:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2016-05-06 23:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2016-05-06 23:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2016-05-06 23:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2016-05-06 23:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2016-05-06 23:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2016-05-06 23:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2016-05-06 23:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2016-05-06 23:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2016-05-06 23:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2016-05-06 23:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2016-05-06 23:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2016-05-06 23:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2016-05-06 23:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2016-05-06 23:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2016-05-06 23:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2016-05-06 23:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2016-05-06 23:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2016-05-06 23:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2016-05-06 23:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2016-05-06 23:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2016-05-06 23:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2016-05-06 23:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2016-05-06 23:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2016-05-06 23:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2016-05-06 23:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2016-05-06 23:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2016-05-06 23:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2016-05-06 23:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2016-05-06 23:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2016-05-06 23:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2016-05-06 23:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2016-05-06 23:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2016-05-06 23:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2016-05-06 23:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2016-05-06 23:58 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2016-05-06 23:58 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2016-05-06 23:58 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2016-05-06 23:58 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2016-05-06 23:58 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2016-05-06 23:58 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2016-05-06 23:58 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2016-05-06 23:58 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2016-05-06 23:58 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2016-05-06 23:58 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2016-05-06 23:58 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2016-05-06 23:58 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2016-05-06 23:58 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2016-05-06 23:58 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2016-05-06 23:58 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2016-05-06 23:58 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2016-05-06 23:58 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2016-05-06 23:58 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2016-05-06 23:58 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2016-05-06 23:58 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2016-05-06 23:58 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2016-05-06 23:58 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2016-05-06 23:58 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2016-05-06 23:58 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2016-05-06 23:58 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2016-05-06 23:58 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2016-05-06 23:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2016-05-06 23:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2016-05-06 23:58 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2016-05-06 23:58 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2016-05-06 23:58 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2016-05-06 23:58 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2016-05-06 23:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2016-05-06 23:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2016-05-06 23:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2016-05-06 23:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2016-05-06 23:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2016-05-06 23:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2016-05-06 23:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2016-05-06 23:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2016-05-06 23:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2016-05-06 23:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2016-05-06 23:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2016-05-06 23:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2016-05-06 23:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2016-05-06 23:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2016-05-06 23:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2016-05-06 23:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2016-05-06 23:39 - 2016-05-07 08:23 - 00000000 ____D C:\Windows\SysWOW64\directx
2016-05-06 23:39 - 2016-05-06 23:39 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-05-06 23:39 - 2016-05-06 23:39 - 00000000 ____D C:\Program Files\Common Files\AV
2016-05-06 23:38 - 2016-05-07 08:23 - 00000000 ____D C:\Users\Public\Documents\WinDS PRO
2016-05-06 23:38 - 2016-05-06 23:39 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-05-06 23:38 - 2016-05-06 23:39 - 00000000 ____D C:\ProgramData\Package Cache
2016-05-06 22:40 - 2016-05-08 16:11 - 00000000 _____ C:\Users\ANDRE\Downloads\citra.exe
2016-05-06 22:10 - 2016-04-21 15:05 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-05-06 21:58 - 2016-05-06 21:58 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-06 21:58 - 2016-05-06 21:58 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-06 21:48 - 2016-05-08 17:53 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-06 21:48 - 2016-05-08 15:43 - 00001062 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-06 21:48 - 2016-05-06 22:45 - 00000000 ____D C:\Users\ANDRE\AppData\Local\Google
2016-05-06 21:48 - 2016-05-06 21:58 - 00000000 ____D C:\Program Files (x86)\Google
2016-05-06 21:48 - 2016-05-06 21:48 - 00004062 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-06 21:48 - 2016-05-06 21:48 - 00003810 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-06 21:47 - 2016-05-06 21:48 - 00000000 ____D C:\Users\ANDRE\AppData\Local\Deployment
2016-05-06 21:47 - 2016-05-06 21:47 - 00000000 ____D C:\Users\ANDRE\AppData\Local\Apps\2.0
2016-05-06 00:43 - 2016-05-08 18:26 - 00004310 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{15105BB1-0603-46BF-84CB-F56BE7DE829F}
2016-05-05 23:59 - 2016-05-05 23:59 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-05 23:59 - 2016-05-05 23:59 - 00000000 ____D C:\Users\ANDRE\Documents\Nitro
2016-05-05 23:59 - 2016-05-05 23:59 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\vlc
2016-05-05 23:59 - 2016-05-05 23:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-05-05 23:59 - 2016-05-05 23:59 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-05-05 23:54 - 2016-05-05 23:54 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-05-05 23:54 - 2016-05-05 23:54 - 00002019 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2016-05-05 23:54 - 2016-05-05 23:54 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-05-05 23:53 - 2016-05-05 23:54 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-05-05 23:53 - 2016-05-05 23:54 - 00000000 ____D C:\ProgramData\Adobe
2016-05-05 23:45 - 2016-05-05 23:45 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\AVAST Software
2016-05-05 23:39 - 2016-05-05 23:39 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-05-05 23:39 - 2016-05-05 23:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-05-05 23:38 - 2016-05-08 15:43 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-05-05 23:38 - 2016-05-06 23:41 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2016-05-05 23:38 - 2016-05-05 23:38 - 00272248 _____ C:\Windows\system32\Drivers\aswVmm.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00137288 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00089944 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00065736 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2016-05-05 23:38 - 2016-05-05 23:38 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2016-05-05 23:38 - 2016-05-05 23:38 - 00029168 _____ C:\Windows\system32\Drivers\aswHwid.sys
2016-05-05 23:37 - 2016-05-05 23:37 - 00000000 ____D C:\Program Files\AVAST Software
2016-05-05 23:36 - 2016-05-05 23:36 - 00084136 _____ C:\Users\ANDRE\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-05 23:36 - 2016-05-05 23:36 - 00003031 _____ C:\Users\ANDRE\Desktop\Microsoft Word 2010.lnk
2016-05-05 23:36 - 2016-05-05 23:36 - 00002911 _____ C:\Users\ANDRE\Desktop\Microsoft PowerPoint 2010.lnk
2016-05-05 23:36 - 2016-05-05 23:36 - 00002911 _____ C:\Users\ANDRE\Desktop\Microsoft Excel 2010.lnk
2016-05-05 23:36 - 2016-05-05 23:36 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2016-05-05 23:36 - 2016-05-05 23:36 - 00000000 ____D C:\ProgramData\AVAST Software
2016-05-05 23:32 - 2016-05-05 23:19 - 00151552 _____ C:\Windows\KMService.exe
2016-05-05 23:32 - 2016-05-05 23:19 - 00008192 _____ C:\Windows\SysWOW64\srvany.exe
2016-05-05 23:21 - 2016-05-05 23:21 - 00000000 ____D C:\Windows\PCHEALTH
2016-05-05 23:21 - 2016-05-05 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-05-05 23:21 - 2016-05-05 23:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2016-05-05 23:21 - 2016-05-05 23:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-05-05 23:20 - 2016-05-05 23:20 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-05-05 23:19 - 2016-05-05 23:19 - 00000000 ____D C:\Program Files\Microsoft Office
2016-05-05 23:19 - 2016-05-05 23:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-05-05 23:18 - 2016-05-05 23:27 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2016-05-05 23:18 - 2016-05-05 23:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-05-05 23:18 - 2016-05-05 23:18 - 00000000 __RHD C:\MSOCache
2016-05-05 23:18 - 2016-05-05 23:18 - 00000000 ____D C:\Users\ANDRE\AppData\Local\Microsoft Help
2016-05-05 23:10 - 2016-05-05 23:10 - 00347497 __RSH C:\TPHYR
2016-05-05 23:09 - 2016-05-05 23:09 - 00000000 ____D C:\Users\ANDRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-05 23:09 - 2016-05-05 23:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-05 23:09 - 2016-05-05 23:09 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-05-05 23:03 - 2016-05-05 23:03 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-05-08 15:50 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-05-08 15:50 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-05-08 15:49 - 2009-07-14 14:55 - 00654272 _____ C:\Windows\system32\prfh0416.dat
2016-05-08 15:49 - 2009-07-14 14:55 - 00124724 _____ C:\Windows\system32\prfc0416.dat
2016-05-08 15:49 - 2009-07-14 02:13 - 01491932 _____ C:\Windows\system32\PerfStringBackup.INI
2016-05-08 15:49 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-05-08 15:42 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-08 15:40 - 2009-07-14 00:20 - 00000000 ____D C:\PerfLogs
2016-05-08 14:06 - 2009-07-14 00:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2016-05-08 14:06 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2016-05-07 01:07 - 2009-07-14 15:11 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-05-06 00:41 - 2011-10-20 01:54 - 00000000 ____D C:\Users\ANDRE\AppData\Local\VirtualStore
2016-05-06 00:00 - 2009-07-14 01:45 - 00337632 _____ C:\Windows\system32\FNTCACHE.DAT
2016-05-05 23:20 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-05-05 23:19 - 2009-07-14 15:11 - 00000000 ____D C:\Windows\ShellNew

Alguns arquivos em TEMP:
====================
C:\Users\ANDRE\AppData\Local\Temp\cabex.dll
C:\Users\ANDRE\AppData\Local\Temp\ICReinstall_r4_3ds_emulator.exe
C:\Users\ANDRE\AppData\Local\Temp\IeSearchProvider314958177964683007.exe
C:\Users\ANDRE\AppData\Local\Temp\InstallGenieo.exe
C:\Users\ANDRE\AppData\Local\Temp\jreInstall.exe
C:\Users\ANDRE\AppData\Local\Temp\setup_gmsd_br.exe
C:\Users\ANDRE\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
C:\Users\ANDRE\AppData\Local\Temp\unelevate.exe
C:\Users\ANDRE\AppData\Local\Temp\UpdateCheckerSetup.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-05-06 00:31

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité