cjoint

Publicité


Publicité

Commentaire : ~ ZHPDiag v2016.5.17.97 Por Nicolas Coolman (2016/05/09) ~ iniciado por Teddy Picker (Administrator) (2016/05/20 14:10:46) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: ~ Modo: Scanner ~ Relatório: C:\Users\Teddy Picker\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Inicialização do sistema: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Navegadores Internet (2) - 0s GCIE: Google Chrome v50.0.2661.102 MSIE: Internet Explorer v11.0.9600.18314 ---\\ Informações sobre os produtos Windows (4) - 4s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Softwares de proteçao do sistema (1) - 6s avast! Free Antivirus v8.0.1506.0 ---\\ Monitoramento dos softwares (2) - 7s Adobe Flash Player 21 ActiveX Adobe Reader XI ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4184.312 MB (40% free) System Restore: Activé (Enable) System drive C: has 45 GB () free of 199 GB ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: ALEXANDRE-PC ~ User Name: Teddy Picker ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (3) - 0s ~ Drive C: has 45 GB free of 199 GB (System) ~ Drive D: has 0 GB free of 495 GB ~ Drive E: has 19 GB free of 19 GB ---\\ Estado do Centro de Segurança do Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Pesquisa particular de ficheiros genéricos (25) - 3s [MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [3231232] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.D88379C0F2BDCEA5ADBDAD175B2F23E9] - 23/04/2016 - (.Microsoft Corporation - Internet Extensions para Win32.) -- C:\Windows\System32\wininet.dll [2596864] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 16/07/2014 - (.Microsoft Corporation - Aplicativo de Logon do Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Driver de porta i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.035C0A9A63DF3F3A52B90D8F6BF0F166] - 09/04/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Driver de porta paralela.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Driver de cópia de sombra de volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Serviços NT não Microsoft e não desativados (14) - 3s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software® O23 - Service: Serviço do Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: BRApp (BRApp) . (...) - C:\Program Files (x86)\BRApp\brapp.exe {2B2633FC2F963C} =>PUP.Optional.BRApp O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\GbpSv.exe {58C005F9811C3FD333668072A04E0D1B} O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (...) - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe (.not file.) =>PUP.Optional.GlobalUpdate O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: PriceMeterLiveUpdate Service (pricemeterliveUpdate) (pricemeterliveUpdate) . (.PriceMeter - PriceMeterLiveUpdate Update.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O23 - Service: Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc. - TorchCrashHandler.) - C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch O23 - Service: Update BeatTool (Update BeatTool) . (...) - C:\Program Files (x86)\BeatTool\updateBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool O23 - Service: Util BeatTool (Util BeatTool) . (...) - C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool ---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (19) - 39s SR - Auto [22/04/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [12/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [28/08/2014] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [22/01/2014] [ 46808] avast! Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software® SR - Auto [30/08/2011] [ 462184] Serviço do Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Auto [05/12/2014] [ 443432] BRApp (BRApp) . (...) - C:\Program Files (x86)\BRApp\brapp.exe {2B2633FC2F963C} =>PUP.Optional.BRApp SR - Auto [12/08/2015] [ 587576] Gbp Service (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\GbpSv.exe {58C005F9811C3FD333668072A04E0D1B} SS - Auto [14/07/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [14/07/2015] [ 144200] Serviço do Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Demand [01/09/2014] [ 640840] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Auto [14/04/2014] [ 150504] PriceMeterLiveUpdate Service (pricemeterliveUpdate) (pricemeterliveUpdate) . (.PriceMeter.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter SS - Demand [14/04/2014] [ 150504] PriceMeterLiveUpdate Service (pricemeterliveUpdatem) (pricemeterliveUpdatem) . (.PriceMeter.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [04/03/2016] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® SS - Demand [20/10/2015] [ 1372472] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files (x86)\baidu\SparkUpdate\Sparkupdate.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® SR - Auto [24/06/2015] [ 1217032] Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc..) - C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch SR - Auto [11/04/2014] [ 350488] Update BeatTool (Update BeatTool) . (...) - C:\Program Files (x86)\BeatTool\updateBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool SR - Auto [13/04/2014] [ 350488] Util BeatTool (Util BeatTool) . (...) - C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool ---\\ Processos lançados (38) - 24s [MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\GbpSv.exe [587576] [PID.816] {58C005F9811C3FD333668072A04E0D1B} [MD5.E3BE7DAC6E46C2F1461996F29A09B6FA] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808] [PID.1220] =>.AVAST Software® [MD5.36114214BF8D7C464D1E92E4EB6B2DD3] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1512] =>.Adobe Systems, Incorporated® [MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1532] =>.Apple Inc.® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1572] =>.Apple Inc.® [MD5.6A881210DB2753D610EF045BF27BC022] - (.Baidu Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [97080] [PID.1996] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.AA3AFE319CED72F949D36CF92E5A8D0D] - (.TorchMedia Inc. - TorchCrashHandler.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032] [PID.1104] {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch [MD5.C6EE250072EE187B12CEFBB930548805] - (...) -- C:\Program Files (x86)\BeatTool\updateBeatTool.exe [350488] [PID.1212] {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool [MD5.C6EE250072EE187B12CEFBB930548805] - (...) -- C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe [350488] [PID.1652] {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool [MD5.3D8B851E7EFCDC130E4B301BDDE10099] - (.PriceMeter - PriceMeterLiveUpdate Update.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [150504] [PID.2588] =>PUP.Optional.PriceMeter [MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\GbpSv.exe [587576] [PID.2672] {58C005F9811C3FD333668072A04E0D1B} [MD5.92FDB0658CA16974B4AE80E248A5B118] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [165912] [PID.3568] =>.Intel Corporation® [MD5.23A6AE66AA4BEF792649736385BB51BA] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [385560] [PID.3580] =>.Intel Corporation® [MD5.F6FA1865978214FB7FCD80149BBF1C13] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [363544] [PID.3588] =>.Intel Corporation® [MD5.813BCBF7F858077692445D0A3CDB33BA] - (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1702400] [PID.3600] [MD5.6C0587F59A3CF4C4D17295A0E3B62B15] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [491032] [PID.3632] =>.Intel Corporation® [MD5.69E967F3FF9E3DF41F4228440FBD43AE] - (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe [1015808] [PID.3728] [MD5.FFD906DD935A1BE748B9855B2AA245B4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [50599552] [PID.3752] =>.Skype Software Sarl® [MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336] [PID.3924] =>.Oracle America, Inc.® [MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.3968] =>.Apple Inc.® [MD5.635F7587F7576AA14871B850EB95BFB8] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [640840] [PID.2764] =>.Apple Inc.® [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2572] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.B94B661413FD73E1EEDF76934707E80E] - (.Torch Media Inc. - Torch Update Module.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Update\45.0.0.11172\TorchUpdate.exe [1122816] [PID.2560] =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2860] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4124] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4132] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4140] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4172] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4192] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4208] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4216] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4644] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4812] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2852] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4296] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.3620] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch [MD5.41A6377FF2E6AAD7A4882A4FD2574987] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Teddy Picker\Downloads\ZHPDiag3.exe [2207232] [PID.4244] =>.Nicolas Coolman [MD5.3F7CD7873FA942C38F9831F286698414] - (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe [41336] [PID.1844] =>.Adobe Systems, Incorporated® ---\\ Google Chrome, Arranque,Pesquisa,Extensões (13) - 2s G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.istartsurf.com/ =>PUP.Optional.IsStart G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [jifflliplgeajjdhmkcfnngfpgbjonjg] New tab for Chrome™ G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (6) - 2s P2 - EXT: (.Gomita - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\7d1dbe5f00a142a36386add08c3ca40f =>.Gomita P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=3] - (.PriceMeter.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=9] - (.PriceMeter.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter ---\\ Internet Explorer, Arranque, Pesquisa, Phishing (20) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://br.search.yahoo.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://br.search.yahoo.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://start.search.us.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://start.search.us.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Gestão do Proxy (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8118 =>Hijacker.Proxy R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Redireção do ficheiro Hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (23) ---\\ Browser Helper Objects do navegador (4) - 0s O2 - BHO: CrossriderApp0051390 [64Bits] - {11111111-1111-1111-1111-110511131190} . (...) -- C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-bho.dll (.not file.) =>PUP.Optional.CrossRider O2 - BHO: avast! Online Security [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} (Orphean) O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Barras do Internet Explorer (2) - 1s O3 - Toolbar: Smartbar - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} . (...) -- (.not file.) =>PUP.Optional.QuickShare O3 - Toolbar: Funmoods Toolbar - [HKLM]{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} . (...) -- C:\PROGRA~2\Funmoods\1.5.23.22\escorTlbr.dll (.not file.) =>PUP.Optional.Funmoods ---\\ Aplicações iniciadas por registo & pastas (28) - 1s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [SMSERIAL] . (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [ares] . (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe O4 - HKCU\..\Run: [EA Core] C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.not file.) O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [NPSStartup] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [Deskmedia] C:\Positivo\Deskmedia\Downloader.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Wow6432Node\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\Setup\emupdate\5af73469-69c6-4d57-a908-c7d8a243ca98.exe =>.AVAST Software® O4 - HKLM\..\Wow6432Node\Run: [mbot_br_59] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [gmsd_br_280] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [gmsd_br_279] (Orphean) O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [ares] . (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [EA Core] C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.not file.) O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation ---\\ Atalhos globais Startup (91) - 20s O4 - GS\Desktop [Administrador]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Desktop [Administrador]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Desktop [Administrador]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Administrador]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\Desktop [Administrador]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrador]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Administrador]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd® O4 - GS\Quicklaunch [Administrador]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Quicklaunch [Administrador]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Quicklaunch [Administrador]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Administrador]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrador]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\TaskBar [Administrador]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\TaskBar [Administrador]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Startup [Administrador]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe O4 - GS\Desktop [Convidado]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Desktop [Convidado]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Desktop [Convidado]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Convidado]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\Desktop [Convidado]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Desktop [Convidado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Convidado]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Convidado]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd® O4 - GS\Quicklaunch [Convidado]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Quicklaunch [Convidado]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Quicklaunch [Convidado]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Convidado]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Convidado]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\TaskBar [Convidado]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\TaskBar [Convidado]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Startup [Convidado]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe O4 - GS\Desktop [Forever-XD]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Desktop [Forever-XD]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Desktop [Forever-XD]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Forever-XD]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\Desktop [Forever-XD]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Desktop [Forever-XD]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Forever-XD]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Forever-XD]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd® O4 - GS\Quicklaunch [Forever-XD]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Quicklaunch [Forever-XD]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Quicklaunch [Forever-XD]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Forever-XD]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Forever-XD]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\TaskBar [Forever-XD]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\TaskBar [Forever-XD]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Startup [Forever-XD]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe O4 - GS\Desktop [Paty]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Desktop [Paty]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Desktop [Paty]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Paty]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\Desktop [Paty]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Desktop [Paty]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Paty]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Paty]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd® O4 - GS\Quicklaunch [Paty]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Quicklaunch [Paty]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Quicklaunch [Paty]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Paty]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Paty]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\TaskBar [Paty]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\TaskBar [Paty]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Startup [Paty]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe O4 - GS\Desktop [Teddy Picker]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Desktop [Teddy Picker]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Desktop [Teddy Picker]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Teddy Picker]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\Desktop [Teddy Picker]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Desktop [Teddy Picker]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Teddy Picker]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Teddy Picker]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd® O4 - GS\Quicklaunch [Teddy Picker]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe O4 - GS\Quicklaunch [Teddy Picker]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft O4 - GS\Quicklaunch [Teddy Picker]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Teddy Picker]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Teddy Picker]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\TaskBar [Teddy Picker]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech® O4 - GS\TaskBar [Teddy Picker]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Startup [Teddy Picker]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: DriverEasy.lnk . (.Easeware - DriverEasy.) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe {4AF11BC8EE79357C9AC8763849A519A1} =>.Easeware O4 - GS\CommonDesktop [Public]: Facebook.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.ManyCam LLC - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\Programs [Public]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O4 - GS\Programs [Public]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Alteração Dominio/Clientes DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 201.21.192.123 201.21.192.119 O17 - HKLM\System\CCS\Services\Tcpip\..\{4BC4A91C-1E58-4783-AFF1-EBAFE6D96A4E}: DhcpNameServer = 201.21.192.123 201.21.192.119 O17 - HKLM\System\CCS\Services\Tcpip\..\{A75443B7-0A47-4019-A292-FEBE1C75A1CE}: DhcpNameServer = 8.8.8.8 ---\\ Protocolo adicional (22) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® ---\\ Software instalados (74) - 19s O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E68EADA6-63A4-F6D3-FE12-968B879F7AD6} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.16) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824184103} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM][64Bits] -- {B2EC4A38-B545-4A00-8214-13FE0E915E6D} =>.Nero AG O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: Ares 2.1.7 - (.Ares Development Group.) [HKLM][64Bits] -- Ares O42 - Logiciel: Arquivo do WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: avast! Free Antivirus v8.0.1506.0 - (.AVAST Software.) [HKLM][64Bits] -- avast =>.AVAST Software® O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM][64Bits] -- Spark =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O42 - Logiciel: BlockAndSurf - (.BlockAndSurf-software.) [HKLM][64Bits] -- D3409403-DBED-7EE1-C1F3-ED34C28D4F67 =>PUP.Optional.BlockAndSurf O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: BrOffice.org 3.2 - (.OpenOffice.org.) [HKLM][64Bits] -- {1FD5861E-57EE-49F2-9854-93B846D4E54F} =>.OpenOffice.org O42 - Logiciel: Bundled software uninstaller - (...) [HKLM][64Bits] -- bi_uninstaller {00841D099D16B738F34172FEEFE1D2574F} =>PUP.Optional.MegaSearch O42 - Logiciel: CoolNovo - (.The Maple Studio.) [HKCU][64Bits] -- ChromePlus =>.Beijing Beijiashidai Technology Co., Ltd® O42 - Logiciel: Discador Gremio - (...) [HKLM][64Bits] -- Discador Gremio O42 - Logiciel: DriverEasy 4.0.6 - (.Easeware.) [HKLM][64Bits] -- DriverEasy_is1 {4AF11BC8EE79357C9AC8763849A519A1} =>.Easeware O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited O42 - Logiciel: Free Mp3 M4a Wma Converter V 1.6 - (.KastorSoft.) [HKLM][64Bits] -- Free Mp3 M4a Wma Converter_is1 =>.KastorSoft O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {D7269C20-B3CE-4CD0-8E88-3D307D3BD41A} =>.Google, Inc. O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E} =>.Google O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {41101F0C-DBD9-321C-A6B1-E0689B495A4E} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI =>.Intel Corporation® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} =>.Apple Inc. O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217040FF} =>.Oracle O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc. O42 - Logiciel: Java(TM) 6 Update 39 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416039FF} =>.Oracle O42 - Logiciel: K-Lite Mega Codec Pack 6.1.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: LayoutsExpress - (...) [HKLM][64Bits] -- LayoutsExpress =>Toolbar.LayoutExpress O42 - Logiciel: ManyCam 3.1.59 - (.ManyCam LLC.) [HKLM][64Bits] -- ManyCam =>.ManyCam LLC O42 - Logiciel: Messenger Plus! 6 - (.Yuna Software.) [HKLM][64Bits] -- Messenger Plus! =>.Yuna Software O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13} =>.Microsoft Corp. O42 - Logiciel: Motorola SM56 Speakerphone Modem - (.Motorola Inc.) [HKLM][64Bits] -- SMSERIAL =>.Motorola Inc O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} =>.Microsoft O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {70CB6C40-8DF1-11E1-BDCF-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Nero 9 Lite - (.Nero AG.) [HKLM][64Bits] -- {e0365891-70b8-4afd-adfc-6bc371354a63} =>.Nero AG® O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A} =>.Nero AG O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM][64Bits] -- {E8A80433-302B-4FF1-815D-FCC8EAC482FF} =>.Nero AG O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM][64Bits] -- {C81A2FE0-3574-00A9-CED4-BDAA334CBE8E} =>.Nero AG O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM][64Bits] -- {7748AC8C-18E3-43BB-959B-088FAEA16FB2} =>.Nero AG O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU][64Bits] -- PhotoFiltre Studio X O42 - Logiciel: PhotoScape - (...) [HKLM][64Bits] -- PhotoScape O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive O42 - Logiciel: SavensohArue - (.savenshare.) [HKLM][64Bits] -- {62D82EC1-0D3A-DF54-8E3E-07E1337A5311} =>PUP.Optional.SaveShare O42 - Logiciel: Search Assistant MocaFlix 1.66 - (...) [HKLM][64Bits] -- SP_8e4eb48d O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: sprotector 1.62 - (...) [HKLM][64Bits] -- SProtector =>PUP.Optional.MocaFlix O42 - Logiciel: Suporte para Aplicativos Apple - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} =>.Apple Inc. O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Topaz Adjust 4 - (.Topaz Labs.) [HKLM][64Bits] -- {9FDC7042-CB9F-4336-A14C-DF10F53762E2} =>.Topaz Labs O42 - Logiciel: Topaz Adjust 4 - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Adjust 4 =>.Topaz Labs O42 - Logiciel: Topaz Adjust 4 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- {FB237A35-F491-4AC1-95E0-85118D6751D9} =>.Topaz Labs O42 - Logiciel: Topaz Adjust 4 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Adjust 4 (64-bit) =>.Topaz Labs O42 - Logiciel: Topaz Clean 3 - (.Topaz Labs, LLC.) [HKLM][64Bits] -- Topaz Clean 3 =>.Topaz Labs, LLC O42 - Logiciel: Topaz Clean 3 - (.Topaz Labs.) [HKLM][64Bits] -- {85E00941-FDFF-4796-A3B8-3ACC766FFCA5} =>.Topaz Labs O42 - Logiciel: Topaz Clean 3 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- {FA85C599-2569-4C48-9AA6-2B8D8F029FA7} =>.Topaz Labs O42 - Logiciel: Topaz Clean 3 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Clean 3 (64-bit) =>.Topaz Labs O42 - Logiciel: Torch - (.Torch Media, Inc.) [HKCU][64Bits] -- Torch {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch O42 - Logiciel: Torntv V9.0 - (.installdaddy.) [HKLM][64Bits] -- Torntv V9.0 =>PUP.Optional.TornTV O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM][64Bits] -- {5EE7D259-D137-4438-9A5F-42F432EC0421} =>.DivX, Inc O42 - Logiciel: Vivaldi - (.Vivaldi.) [HKCU][64Bits] -- Vivaldi =>.Vivaldi Technologies AS® O42 - Logiciel: WeatherBug Alert - (.AWS Convergence Technologies.) [HKLM][64Bits] -- {7426428E-71D4-452C-BA13-B14E5EB52859} =>PUP.Optional.WeatherBug ---\\ HKCU & HKLM Software Keys (154) - 19s HKLM\SOFTWARE\Wow6432Node\360Safe HKLM\SOFTWARE\Wow6432Node\5ae8d88b76aed46 =>PUP.Optional.Heuristic HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Baidu HKLM\SOFTWARE\Wow6432Node\Baidu Security HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos HKLM\SOFTWARE\Wow6432Node\BeatTool =>PUP.Optional.BeatTool HKLM\SOFTWARE\Wow6432Node\BlueStacks HKLM\SOFTWARE\Wow6432Node\BonanzaDealsLive =>PUP.Optional.BonanzaDeals HKLM\SOFTWARE\Wow6432Node\BrowserMngr =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Bunndle HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\Chromium HKLM\SOFTWARE\Wow6432Node\Clara =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\CloudOPTInfo HKLM\SOFTWARE\Wow6432Node\Codec Tweak Tool HKLM\SOFTWARE\Wow6432Node\Comodo HKLM\SOFTWARE\Wow6432Node\ComodoGroup HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr HKLM\SOFTWARE\Wow6432Node\DealPlyLive =>PUP.Optional.Dealply HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware =>.Superfluous.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Deskmedia HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\DivXNetworks HKLM\SOFTWARE\Wow6432Node\DSPRobotics HKLM\SOFTWARE\Wow6432Node\DT Soft HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\hosts HKLM\SOFTWARE\Wow6432Node\Ibest HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Image-Line HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\IncrediMail HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Linden Research, Inc. HKLM\SOFTWARE\Wow6432Node\Loani HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\ManyCam HKLM\SOFTWARE\Wow6432Node\MarkAny HKLM\SOFTWARE\Wow6432Node\MaxPower HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Megacubo HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Minibar =>PUP.Optional.Minibar HKLM\SOFTWARE\Wow6432Node\Mooii HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Netscape HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenOffice.org HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Panda Security HKLM\SOFTWARE\Wow6432Node\Panda Software HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask HKLM\SOFTWARE\Wow6432Node\PriceMeterLiveUpdate HKLM\SOFTWARE\Wow6432Node\Propellerhead Software HKLM\SOFTWARE\Wow6432Node\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Reg HKLM\SOFTWARE\Wow6432Node\S3R521 HKLM\SOFTWARE\Wow6432Node\SaveSenseLive =>PUP.Optional.SaveS

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.5.17.97 Por Nicolas Coolman (2016/05/09)
~ iniciado por Teddy Picker (Administrator) (2016/05/20 14:10:46)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Status da versão:
~ Modo: Scanner
~ Relatório: C:\Users\Teddy Picker\Desktop\ZHPDiag.txt
~ Relatório: C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Inicialização do sistema: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)

---\\ Navegadores Internet (2) - 0s
GCIE: Google Chrome v50.0.2661.102
MSIE: Internet Explorer v11.0.9600.18314

---\\ Informações sobre os produtos Windows (4) - 4s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema (1) - 6s
avast! Free Antivirus v8.0.1506.0

---\\ Monitoramento dos softwares (2) - 7s
Adobe Flash Player 21 ActiveX
Adobe Reader XI

---\\ Informações sobre o sistema (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4184.312 MB (40% free)
System Restore: Activé (Enable)
System drive C: has 45 GB () free of 199 GB

---\\ Modo de conexão ao sistema (3) - 0s
~ Computer Name: ALEXANDRE-PC
~ User Name: Teddy Picker
~ Logged in as Administrator

---\\ Enumeração das unidades dos discos (3) - 0s
~ Drive C: has 45 GB free of 199 GB (System)
~ Drive D: has 0 GB free of 495 GB
~ Drive E: has 19 GB free of 19 GB

---\\ Estado do Centro de Segurança do Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Pesquisa particular de ficheiros genéricos (25) - 3s
[MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [3231232] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.D88379C0F2BDCEA5ADBDAD175B2F23E9] - 23/04/2016 - (.Microsoft Corporation - Internet Extensions para Win32.) -- C:\Windows\System32\wininet.dll [2596864] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 16/07/2014 - (.Microsoft Corporation - Aplicativo de Logon do Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Driver de porta i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.035C0A9A63DF3F3A52B90D8F6BF0F166] - 09/04/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Driver de porta paralela.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Driver de cópia de sombra de volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®

---\\ Serviços NT não Microsoft e não desativados (14) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software®
O23 - Service: Serviço do Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: BRApp (BRApp) . (...) - C:\Program Files (x86)\BRApp\brapp.exe {2B2633FC2F963C} =>PUP.Optional.BRApp
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\GbpSv.exe {58C005F9811C3FD333668072A04E0D1B}
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (...) - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe (.not file.) =>PUP.Optional.GlobalUpdate
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: PriceMeterLiveUpdate Service (pricemeterliveUpdate) (pricemeterliveUpdate) . (.PriceMeter - PriceMeterLiveUpdate Update.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O23 - Service: Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc. - TorchCrashHandler.) - C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O23 - Service: Update BeatTool (Update BeatTool) . (...) - C:\Program Files (x86)\BeatTool\updateBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool
O23 - Service: Util BeatTool (Util BeatTool) . (...) - C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool

---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (19) - 39s

SR - Auto [22/04/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [12/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [28/08/2014] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [22/01/2014] [ 46808] avast! Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software®
SR - Auto [30/08/2011] [ 462184] Serviço do Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Auto [05/12/2014] [ 443432] BRApp (BRApp) . (...) - C:\Program Files (x86)\BRApp\brapp.exe {2B2633FC2F963C} =>PUP.Optional.BRApp
SR - Auto [12/08/2015] [ 587576] Gbp Service (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\GbpSv.exe {58C005F9811C3FD333668072A04E0D1B}
SS - Auto [14/07/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [14/07/2015] [ 144200] Serviço do Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Demand [01/09/2014] [ 640840] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SS - Auto [14/04/2014] [ 150504] PriceMeterLiveUpdate Service (pricemeterliveUpdate) (pricemeterliveUpdate) . (.PriceMeter.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter
SS - Demand [14/04/2014] [ 150504] PriceMeterLiveUpdate Service (pricemeterliveUpdatem) (pricemeterliveUpdatem) . (.PriceMeter.) - C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [04/03/2016] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
SS - Demand [20/10/2015] [ 1372472] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files (x86)\baidu\SparkUpdate\Sparkupdate.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
SR - Auto [24/06/2015] [ 1217032] Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc..) - C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
SR - Auto [11/04/2014] [ 350488] Update BeatTool (Update BeatTool) . (...) - C:\Program Files (x86)\BeatTool\updateBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool
SR - Auto [13/04/2014] [ 350488] Util BeatTool (Util BeatTool) . (...) - C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool

---\\ Processos lançados (38) - 24s
[MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\GbpSv.exe [587576] [PID.816] {58C005F9811C3FD333668072A04E0D1B}
[MD5.E3BE7DAC6E46C2F1461996F29A09B6FA] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808] [PID.1220] =>.AVAST Software®
[MD5.36114214BF8D7C464D1E92E4EB6B2DD3] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1512] =>.Adobe Systems, Incorporated®
[MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1532] =>.Apple Inc.®
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1572] =>.Apple Inc.®
[MD5.6A881210DB2753D610EF045BF27BC022] - (.Baidu Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [97080] [PID.1996] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.AA3AFE319CED72F949D36CF92E5A8D0D] - (.TorchMedia Inc. - TorchCrashHandler.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032] [PID.1104] {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
[MD5.C6EE250072EE187B12CEFBB930548805] - (...) -- C:\Program Files (x86)\BeatTool\updateBeatTool.exe [350488] [PID.1212] {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool
[MD5.C6EE250072EE187B12CEFBB930548805] - (...) -- C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe [350488] [PID.1652] {5A07B7666FDB1CEB67AD677224C30BCB} =>PUP.Optional.BeatTool
[MD5.3D8B851E7EFCDC130E4B301BDDE10099] - (.PriceMeter - PriceMeterLiveUpdate Update.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [150504] [PID.2588] =>PUP.Optional.PriceMeter
[MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\GbpSv.exe [587576] [PID.2672] {58C005F9811C3FD333668072A04E0D1B}
[MD5.92FDB0658CA16974B4AE80E248A5B118] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [165912] [PID.3568] =>.Intel Corporation®
[MD5.23A6AE66AA4BEF792649736385BB51BA] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [385560] [PID.3580] =>.Intel Corporation®
[MD5.F6FA1865978214FB7FCD80149BBF1C13] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [363544] [PID.3588] =>.Intel Corporation®
[MD5.813BCBF7F858077692445D0A3CDB33BA] - (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1702400] [PID.3600]
[MD5.6C0587F59A3CF4C4D17295A0E3B62B15] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [491032] [PID.3632] =>.Intel Corporation®
[MD5.69E967F3FF9E3DF41F4228440FBD43AE] - (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe [1015808] [PID.3728]
[MD5.FFD906DD935A1BE748B9855B2AA245B4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [50599552] [PID.3752] =>.Skype Software Sarl®
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336] [PID.3924] =>.Oracle America, Inc.®
[MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.3968] =>.Apple Inc.®
[MD5.635F7587F7576AA14871B850EB95BFB8] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [640840] [PID.2764] =>.Apple Inc.®
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2572] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.B94B661413FD73E1EEDF76934707E80E] - (.Torch Media Inc. - Torch Update Module.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Update\45.0.0.11172\TorchUpdate.exe [1122816] [PID.2560] =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2860] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4124] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4132] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4140] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4172] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4192] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4208] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4216] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4644] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4812] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.2852] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.4296] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.6967B35E62C464E2F361CA0C4D70A9BB] - (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe [761720] [PID.3620] {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
[MD5.41A6377FF2E6AAD7A4882A4FD2574987] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Teddy Picker\Downloads\ZHPDiag3.exe [2207232] [PID.4244] =>.Nicolas Coolman
[MD5.3F7CD7873FA942C38F9831F286698414] - (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe [41336] [PID.1844] =>.Adobe Systems, Incorporated®

---\\ Google Chrome, Arranque,Pesquisa,Extensões (13) - 2s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.istartsurf.com/ =>PUP.Optional.IsStart
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [jifflliplgeajjdhmkcfnngfpgbjonjg] New tab for Chrome™
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (6) - 2s
P2 - EXT: (.Gomita - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\7d1dbe5f00a142a36386add08c3ca40f =>.Gomita
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=3] - (.PriceMeter.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter
P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=9] - (.PriceMeter.) -- C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter

---\\ Internet Explorer, Arranque, Pesquisa, Phishing (20) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://br.search.yahoo.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://br.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://start.search.us.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://start.search.us.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.sweet-page.com/ =>PUP.Optional.SweetPage
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Gestão do Proxy (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8118 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Redireção do ficheiro Hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (23)

---\\ Browser Helper Objects do navegador (4) - 0s
O2 - BHO: CrossriderApp0051390 [64Bits] - {11111111-1111-1111-1111-110511131190} . (...) -- C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-bho.dll (.not file.) =>PUP.Optional.CrossRider
O2 - BHO: avast! Online Security [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Barras do Internet Explorer (2) - 1s
O3 - Toolbar: Smartbar - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} . (...) -- (.not file.) =>PUP.Optional.QuickShare
O3 - Toolbar: Funmoods Toolbar - [HKLM]{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} . (...) -- C:\PROGRA~2\Funmoods\1.5.23.22\escorTlbr.dll (.not file.) =>PUP.Optional.Funmoods

---\\ Aplicações iniciadas por registo & pastas (28) - 1s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [SMSERIAL] . (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [ares] . (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.not file.)
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [NPSStartup] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [Deskmedia] C:\Positivo\Deskmedia\Downloader.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\Setup\emupdate\5af73469-69c6-4d57-a908-c7d8a243ca98.exe =>.AVAST Software®
O4 - HKLM\..\Wow6432Node\Run: [mbot_br_59] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [gmsd_br_280] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [gmsd_br_279] (Orphean)
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [ares] . (.Ares Development Group - Ares p2p for windows.) -- C:\Program Files (x86)\Ares\Ares.exe
O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [EA Core] C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.not file.)
O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-2414333856-950786312-4200251571-1613\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation

---\\ Atalhos globais Startup (91) - 20s
O4 - GS\Desktop [Administrador]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Desktop [Administrador]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Desktop [Administrador]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre
O4 - GS\Desktop [Administrador]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\Desktop [Administrador]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrador]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Administrador]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd®
O4 - GS\Quicklaunch [Administrador]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Quicklaunch [Administrador]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Quicklaunch [Administrador]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\sendTo [Administrador]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrador]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Administrador]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\TaskBar [Administrador]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Startup [Administrador]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - GS\Desktop [Convidado]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Desktop [Convidado]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Desktop [Convidado]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre
O4 - GS\Desktop [Convidado]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\Desktop [Convidado]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\Desktop [Convidado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Convidado]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Convidado]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd®
O4 - GS\Quicklaunch [Convidado]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Quicklaunch [Convidado]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Quicklaunch [Convidado]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\sendTo [Convidado]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Convidado]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Convidado]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\TaskBar [Convidado]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Startup [Convidado]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - GS\Desktop [Forever-XD]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Desktop [Forever-XD]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Desktop [Forever-XD]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre
O4 - GS\Desktop [Forever-XD]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\Desktop [Forever-XD]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\Desktop [Forever-XD]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Forever-XD]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Forever-XD]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd®
O4 - GS\Quicklaunch [Forever-XD]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Quicklaunch [Forever-XD]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Quicklaunch [Forever-XD]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\sendTo [Forever-XD]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Forever-XD]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Forever-XD]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\TaskBar [Forever-XD]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Startup [Forever-XD]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - GS\Desktop [Paty]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Desktop [Paty]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Desktop [Paty]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre
O4 - GS\Desktop [Paty]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\Desktop [Paty]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\Desktop [Paty]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Paty]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Paty]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd®
O4 - GS\Quicklaunch [Paty]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Quicklaunch [Paty]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Quicklaunch [Paty]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\sendTo [Paty]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Paty]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Paty]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\TaskBar [Paty]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Startup [Paty]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - GS\Desktop [Teddy Picker]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Desktop [Teddy Picker]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Desktop [Teddy Picker]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre
O4 - GS\Desktop [Teddy Picker]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\Desktop [Teddy Picker]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\Desktop [Teddy Picker]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Teddy Picker\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Teddy Picker]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Teddy Picker]: CoolNovo.lnk . (.Maple Studio - CoolNovo Browser.) C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Beijing Beijiashidai Technology Co., Ltd®
O4 - GS\Quicklaunch [Teddy Picker]: Google Chrome.lnk . (...) C:\Program Files (x86)\Alfasistem Memory\tschromium.exe
O4 - GS\Quicklaunch [Teddy Picker]: Kastor Free Mp3 M4a Wma Converter.lnk . (.KastorSoft - Free Mp3 M4a Wma Converter.) C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter\FreeMp3M4aWmaConverter.exe =>.KastorSoft
O4 - GS\Quicklaunch [Teddy Picker]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\sendTo [Teddy Picker]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Teddy Picker]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Teddy Picker]: PhotoScape.lnk . (.Copyright (C) 2005 - PhotoScape.) C:\Program Files (x86)\PhotoScape\PhotoScape.exe =>.Mooii Tech®
O4 - GS\TaskBar [Teddy Picker]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Startup [Teddy Picker]: IMVU.lnk . (...) C:\Users\Teddy Picker\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\CommonDesktop [Public]: DriverEasy.lnk . (.Easeware - DriverEasy.) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe {4AF11BC8EE79357C9AC8763849A519A1} =>.Easeware
O4 - GS\CommonDesktop [Public]: Facebook.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.ManyCam LLC - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\Programs [Public]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O4 - GS\Programs [Public]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\Teddy Picker\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS®
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Alteração Dominio/Clientes DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 201.21.192.123 201.21.192.119
O17 - HKLM\System\CCS\Services\Tcpip\..\{4BC4A91C-1E58-4783-AFF1-EBAFE6D96A4E}: DhcpNameServer = 201.21.192.123 201.21.192.119
O17 - HKLM\System\CCS\Services\Tcpip\..\{A75443B7-0A47-4019-A292-FEBE1C75A1CE}: DhcpNameServer = 8.8.8.8

---\\ Protocolo adicional (22) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll =>.Microsoft Corporation®
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Software instalados (74) - 19s
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E68EADA6-63A4-F6D3-FE12-968B879F7AD6} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI (11.0.16) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824184103} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM][64Bits] -- {B2EC4A38-B545-4A00-8214-13FE0E915E6D} =>.Nero AG
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc.
O42 - Logiciel: Ares 2.1.7 - (.Ares Development Group.) [HKLM][64Bits] -- Ares
O42 - Logiciel: Arquivo do WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: avast! Free Antivirus v8.0.1506.0 - (.AVAST Software.) [HKLM][64Bits] -- avast =>.AVAST Software®
O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM][64Bits] -- Spark =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O42 - Logiciel: BlockAndSurf - (.BlockAndSurf-software.) [HKLM][64Bits] -- D3409403-DBED-7EE1-C1F3-ED34C28D4F67 =>PUP.Optional.BlockAndSurf
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc.
O42 - Logiciel: BrOffice.org 3.2 - (.OpenOffice.org.) [HKLM][64Bits] -- {1FD5861E-57EE-49F2-9854-93B846D4E54F} =>.OpenOffice.org
O42 - Logiciel: Bundled software uninstaller - (...) [HKLM][64Bits] -- bi_uninstaller {00841D099D16B738F34172FEEFE1D2574F} =>PUP.Optional.MegaSearch
O42 - Logiciel: CoolNovo - (.The Maple Studio.) [HKCU][64Bits] -- ChromePlus =>.Beijing Beijiashidai Technology Co., Ltd®
O42 - Logiciel: Discador Gremio - (...) [HKLM][64Bits] -- Discador Gremio
O42 - Logiciel: DriverEasy 4.0.6 - (.Easeware.) [HKLM][64Bits] -- DriverEasy_is1 {4AF11BC8EE79357C9AC8763849A519A1} =>.Easeware
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited
O42 - Logiciel: Free Mp3 M4a Wma Converter V 1.6 - (.KastorSoft.) [HKLM][64Bits] -- Free Mp3 M4a Wma Converter_is1 =>.KastorSoft
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {D7269C20-B3CE-4CD0-8E88-3D307D3BD41A} =>.Google, Inc.
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E} =>.Google
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {41101F0C-DBD9-321C-A6B1-E0689B495A4E} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI =>.Intel Corporation®
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} =>.Apple Inc.
O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217040FF} =>.Oracle
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 6 Update 39 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416039FF} =>.Oracle
O42 - Logiciel: K-Lite Mega Codec Pack 6.1.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: LayoutsExpress - (...) [HKLM][64Bits] -- LayoutsExpress =>Toolbar.LayoutExpress
O42 - Logiciel: ManyCam 3.1.59 - (.ManyCam LLC.) [HKLM][64Bits] -- ManyCam =>.ManyCam LLC
O42 - Logiciel: Messenger Plus! 6 - (.Yuna Software.) [HKLM][64Bits] -- Messenger Plus! =>.Yuna Software
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13} =>.Microsoft Corp.
O42 - Logiciel: Motorola SM56 Speakerphone Modem - (.Motorola Inc.) [HKLM][64Bits] -- SMSERIAL =>.Motorola Inc
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} =>.Microsoft
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {70CB6C40-8DF1-11E1-BDCF-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Nero 9 Lite - (.Nero AG.) [HKLM][64Bits] -- {e0365891-70b8-4afd-adfc-6bc371354a63} =>.Nero AG®
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A} =>.Nero AG
O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM][64Bits] -- {E8A80433-302B-4FF1-815D-FCC8EAC482FF} =>.Nero AG
O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM][64Bits] -- {C81A2FE0-3574-00A9-CED4-BDAA334CBE8E} =>.Nero AG
O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM][64Bits] -- {7748AC8C-18E3-43BB-959B-088FAEA16FB2} =>.Nero AG
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG
O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU][64Bits] -- PhotoFiltre Studio X
O42 - Logiciel: PhotoScape - (...) [HKLM][64Bits] -- PhotoScape
O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive
O42 - Logiciel: SavensohArue - (.savenshare.) [HKLM][64Bits] -- {62D82EC1-0D3A-DF54-8E3E-07E1337A5311} =>PUP.Optional.SaveShare
O42 - Logiciel: Search Assistant MocaFlix 1.66 - (...) [HKLM][64Bits] -- SP_8e4eb48d
O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: sprotector 1.62 - (...) [HKLM][64Bits] -- SProtector =>PUP.Optional.MocaFlix
O42 - Logiciel: Suporte para Aplicativos Apple - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} =>.Apple Inc.
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Topaz Adjust 4 - (.Topaz Labs.) [HKLM][64Bits] -- {9FDC7042-CB9F-4336-A14C-DF10F53762E2} =>.Topaz Labs
O42 - Logiciel: Topaz Adjust 4 - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Adjust 4 =>.Topaz Labs
O42 - Logiciel: Topaz Adjust 4 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- {FB237A35-F491-4AC1-95E0-85118D6751D9} =>.Topaz Labs
O42 - Logiciel: Topaz Adjust 4 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Adjust 4 (64-bit) =>.Topaz Labs
O42 - Logiciel: Topaz Clean 3 - (.Topaz Labs, LLC.) [HKLM][64Bits] -- Topaz Clean 3 =>.Topaz Labs, LLC
O42 - Logiciel: Topaz Clean 3 - (.Topaz Labs.) [HKLM][64Bits] -- {85E00941-FDFF-4796-A3B8-3ACC766FFCA5} =>.Topaz Labs
O42 - Logiciel: Topaz Clean 3 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- {FA85C599-2569-4C48-9AA6-2B8D8F029FA7} =>.Topaz Labs
O42 - Logiciel: Topaz Clean 3 (64-bit) - (.Topaz Labs.) [HKLM][64Bits] -- Topaz Clean 3 (64-bit) =>.Topaz Labs
O42 - Logiciel: Torch - (.Torch Media, Inc.) [HKCU][64Bits] -- Torch {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O42 - Logiciel: Torntv V9.0 - (.installdaddy.) [HKLM][64Bits] -- Torntv V9.0 =>PUP.Optional.TornTV
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM][64Bits] -- {5EE7D259-D137-4438-9A5F-42F432EC0421} =>.DivX, Inc
O42 - Logiciel: Vivaldi - (.Vivaldi.) [HKCU][64Bits] -- Vivaldi =>.Vivaldi Technologies AS®
O42 - Logiciel: WeatherBug Alert - (.AWS Convergence Technologies.) [HKLM][64Bits] -- {7426428E-71D4-452C-BA13-B14E5EB52859} =>PUP.Optional.WeatherBug

---\\ HKCU & HKLM Software Keys (154) - 19s
HKLM\SOFTWARE\Wow6432Node\360Safe
HKLM\SOFTWARE\Wow6432Node\5ae8d88b76aed46 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Baidu
HKLM\SOFTWARE\Wow6432Node\Baidu Security
HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos
HKLM\SOFTWARE\Wow6432Node\BeatTool =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
HKLM\SOFTWARE\Wow6432Node\BrowserMngr =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Chromium
HKLM\SOFTWARE\Wow6432Node\Clara =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\CloudOPTInfo
HKLM\SOFTWARE\Wow6432Node\Codec Tweak Tool
HKLM\SOFTWARE\Wow6432Node\Comodo
HKLM\SOFTWARE\Wow6432Node\ComodoGroup
HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\DealPlyLive =>PUP.Optional.Dealply
HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware =>.Superfluous.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\Deskmedia
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\DSPRobotics
HKLM\SOFTWARE\Wow6432Node\DT Soft
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\hosts
HKLM\SOFTWARE\Wow6432Node\Ibest
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Image-Line
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\IncrediMail
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Linden Research, Inc.
HKLM\SOFTWARE\Wow6432Node\Loani
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\ManyCam
HKLM\SOFTWARE\Wow6432Node\MarkAny
HKLM\SOFTWARE\Wow6432Node\MaxPower
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Megacubo
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\Minibar =>PUP.Optional.Minibar
HKLM\SOFTWARE\Wow6432Node\Mooii
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Netscape
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice.org
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Panda Security
HKLM\SOFTWARE\Wow6432Node\Panda Software
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\PriceMeterLiveUpdate
HKLM\SOFTWARE\Wow6432Node\Propellerhead Software
HKLM\SOFTWARE\Wow6432Node\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef
HKLM\SOFTWARE\Wow6432Node\RealNetworks
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\S3R521
HKLM\SOFTWARE\Wow6432Node\SaveSenseLive =>PUP.Optional.SaveSense
HKLM\SOFTWARE\Wow6432Node\Siber Systems
HKLM\SOFTWARE\Wow6432Node\SimplyGen =>PUP.Optional.PredictAd
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftVoice
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Wow6432Node\Sun Microsystems
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Wow6432Node\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\Topaz Labs
HKLM\SOFTWARE\Wow6432Node\Torch =>.Superfluous.Torch
HKLM\SOFTWARE\Wow6432Node\Torntv V9.0 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Uniblue =>.Superfluous.Uniblue
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\Web Assistant =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wpm =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\Yuna Software
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Ares
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Baidu
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Baixaki
HKCU\SOFTWARE\ChromePlus
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\INTEL
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Last.fm
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Motorola
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\PhotoFiltre Studio X
HKCU\SOFTWARE\PriceMeterLiveUpdate
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Torch =>.Superfluous.Torch
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Vivaldi
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yuna Software
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Macromedia
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Conteúdo das pastas Programs (312) - 337s
O43 - CFD: 01/07/2010 - [0] SHD -- C:\Program Files\Arquivos Comuns
O43 - CFD: 21/03/2011 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software®
O43 - CFD: 12/08/2013 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.®
O43 - CFD: 17/02/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 28/10/2015 - [0] D -- C:\Program Files\Diebold
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 20/08/2012 - [] D -- C:\Program Files\Easeware {4AF11BC8EE79357C9AC8763849A519A1}
O43 - CFD: 21/02/2013 - [0] D -- C:\Program Files\Google
O43 - CFD: 01/08/2013 - [0] D -- C:\Program Files\Image-Line
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation®
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\iTunes
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files\Java =>.Sun Microsystems, Inc.®
O43 - CFD: 14/07/2010 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 21/11/2013 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 01/07/2010 - [] D -- C:\Program Files\Motorola
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 06/03/2015 - [] D -- C:\Program Files\shopperz =>PUP.Optional.Shopperz
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 20/02/2013 - [] D -- C:\Program Files\VDownloader
O43 - CFD: 12/07/2013 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 01/07/2010 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 10/05/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Adobe Download Assistant
O43 - CFD: 14/07/2015 - [] D -- C:\Program Files (x86)\Alfasistem Memory
O43 - CFD: 28/10/2011 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 01/03/2011 - [] D -- C:\Program Files (x86)\Ares
O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\baidu =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O43 - CFD: 06/03/2015 - [] D -- C:\Program Files (x86)\Baidu Security
O43 - CFD: 02/08/2014 - [] D -- C:\Program Files (x86)\Baidu-Security-2014-4.4.4.73687
O43 - CFD: 23/11/2014 - [] D -- C:\Program Files (x86)\Baidu-Security-2014-4.4.4.82805
O43 - CFD: 12/03/2015 - [] D -- C:\Program Files (x86)\BeatTool =>PUP.Optional.BeatTool
O43 - CFD: 18/03/2014 - [] D -- C:\Program Files (x86)\BonanzaDeals =>PUP.Optional.BonanzaDeals
O43 - CFD: 18/03/2014 - [] D -- C:\Program Files (x86)\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
O43 - CFD: 12/08/2013 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.®
O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\BRApp {2B2633FC2F963C} =>PUP.Optional.BRApp
O43 - CFD: 01/07/2010 - [] D -- C:\Program Files (x86)\BrOffice.org 3
O43 - CFD: 18/03/2014 - [] D -- C:\Program Files (x86)\BrowserCompanion =>PUP.Optional.Blabbers
O43 - CFD: 10/05/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 25/08/2012 - [] D -- C:\Program Files (x86)\Conduit =>.Superfluous.Conduit
O43 - CFD: 04/09/2010 - [] D -- C:\Program Files (x86)\Discador Gremio
O43 - CFD: 01/08/2013 - [0] D -- C:\Program Files (x86)\DSPRobotics
O43 - CFD: 14/07/2015 - [] D -- C:\Program Files (x86)\Electronic Arts
O43 - CFD: 02/09/2014 - [] D -- C:\Program Files (x86)\FilesFrog Update Checker =>PUP.Optional.MegaSearch
O43 - CFD: 20/05/2016 - [] AD -- C:\Program Files (x86)\GbPlugin {58C005F9811C3FD333668072A04E0D1B}
O43 - CFD: 14/07/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 21/10/2015 - [] D -- C:\Program Files (x86)\GU Player =>PUP.Optional.GUPlayer
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files (x86)\GUMED30.tmp =>.Google Inc®
O43 - CFD: 12/12/2012 - [0] D -- C:\Program Files (x86)\Hao123.com
O43 - CFD: 01/08/2013 - [] D -- C:\Program Files (x86)\Image-Line
O43 - CFD: 14/04/2014 - [] D -- C:\Program Files (x86)\Iminent =>.Superfluous.SienSA
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files (x86)\iTunes =>.Apple Inc.®
O43 - CFD: 14/04/2014 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 01/07/2010 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 20/04/2015 - [] D -- C:\Program Files (x86)\Kastor Free Mp3 M4a Wma Converter
O43 - CFD: 12/12/2012 - [] D -- C:\Program Files (x86)\LayoutsExpress =>Toolbar.LayoutExpress
O43 - CFD: 04/08/2013 - [] D -- C:\Program Files (x86)\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 03/07/2010 - [] D -- C:\Program Files (x86)\Maxis
O43 - CFD: 02/11/2010 - [] D -- C:\Program Files (x86)\Messenger Plus! Live =>.Yuna Software Limited®
O43 - CFD: 27/04/2013 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation®
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Application Virtualization Client =>.Microsoft Corporation®
O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 19/09/2012 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation®
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files (x86)\Microsoft WSE
O43 - CFD: 26/11/2012 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 12/12/2012 - [] D -- C:\Program Files (x86)\Minibar =>PUP.Optional.Minibar
O43 - CFD: 10/12/2012 - [] D -- C:\Program Files (x86)\MocaFlix =>PUP.Optional.MocaFlix
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 01/04/2014 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 03/07/2010 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 20/10/2013 - [] D -- C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup
O43 - CFD: 03/07/2010 - [] D -- C:\Program Files (x86)\Nero =>.Nero AG®
O43 - CFD: 19/12/2011 - [0] D -- C:\Program Files (x86)\Netscape
O43 - CFD: 06/12/2014 - [0] D -- C:\Program Files (x86)\NJax
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\onewebsearch =>PUP.Optional.SimpleSearches
O43 - CFD: 19/12/2011 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 29/06/2015 - [] D -- C:\Program Files (x86)\Pay-By-Ads =>PUP.Optional.PaybyAds
O43 - CFD: 02/09/2012 - [] D -- C:\Program Files (x86)\Perion
O43 - CFD: 03/03/2016 - [] D -- C:\Program Files (x86)\PhotoFiltre Studio X
O43 - CFD: 06/03/2015 - [] D -- C:\Program Files (x86)\PhotoScape =>.Mooii Tech®
O43 - CFD: 29/07/2011 - [0] D -- C:\Program Files (x86)\PluginLetras
O43 - CFD: 05/09/2014 - [0] D -- C:\Program Files (x86)\predm =>PUP.Optional.Downware
O43 - CFD: 01/08/2012 - [] D -- C:\Program Files (x86)\PriceGong =>PUP.Optional.PriceGong
O43 - CFD: 01/04/2014 - [] D -- C:\Program Files (x86)\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter
O43 - CFD: 24/11/2012 - [] D -- C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
O43 - CFD: 14/04/2014 - [] D -- C:\Program Files (x86)\RBM {0159F824AE51D90E04B4ACA79A1BB571}
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 29/09/2011 - [] D -- C:\Program Files (x86)\Samsung =>.SAMSUNG ELECTRONICS CO.,LTD.®
O43 - CFD: 14/04/2014 - [] D -- C:\Program Files (x86)\SaveSenseLive =>PUP.Optional.SaveSense
O43 - CFD: 05/02/2014 - [0] D -- C:\Program Files (x86)\SaveShare =>PUP.Optional.SaveShare
O43 - CFD: 10/12/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 14/08/2013 - [] D -- C:\Program Files (x86)\Spotflux
O43 - CFD: 18/03/2014 - [] D -- C:\Program Files (x86)\SProtector =>PUP.Optional.MocaFlix
O43 - CFD: 05/02/2014 - [0] D -- C:\Program Files (x86)\ss helper
O43 - CFD: 05/02/2014 - [0] D -- C:\Program Files (x86)\Ss.Helper =>PUP.Optional.SaveShare
O43 - CFD: 17/02/2016 - [] D -- C:\Program Files (x86)\Topaz Labs
O43 - CFD: 02/09/2014 - [] D -- C:\Program Files (x86)\Torntv V9.0 =>PUP.Optional.TornTV
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 21/10/2015 - [] D -- C:\Program Files (x86)\version43BlockAndSurf =>PUP.Optional.BlockAndSurf
O43 - CFD: 15/12/2012 - [0] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 29/09/2014 - [] D -- C:\Program Files (x86)\Visual Clipboard
O43 - CFD: 29/09/2014 - [] D -- C:\Program Files (x86)\Visual Clipboard Pro
O43 - CFD: 05/02/2014 - [0] D -- C:\Program Files (x86)\WebSearch =>PUP.Optional.SimpleSearches
O43 - CFD: 14/04/2014 - [0] D -- C:\Program Files (x86)\WebSpades =>PUP.Optional.WebSpades
O43 - CFD: 12/07/2013 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 24/05/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 26/09/2012 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 21/09/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 03/07/2010 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 29/03/2011 - [] D -- C:\Program Files (x86)\Yuna Software =>.Yuna Software Limited®
O43 - CFD: 14/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\32bit Web Browser
O43 - CFD: 30/06/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 21/09/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/12/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ares
O43 - CFD: 26/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser
O43 - CFD: 15/03/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrOffice.org 3.2
O43 - CFD: 12/05/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
O43 - CFD: 20/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverEasy
O43 - CFD: 14/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 28/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 02/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hao123-Brazil
O43 - CFD: 01/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 13/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 01/07/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kastor Free Mp3 M4a Wma Converter
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 04/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 03/07/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxis
O43 - CFD: 21/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Português (Brasil))
O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 03/07/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 20/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
O43 - CFD: 13/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 14/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 17/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Topaz Labs
O43 - CFD: 29/09/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Clipboard
O43 - CFD: 13/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 03/07/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 18/07/2014 - [] D -- C:\ProgramData\.mono
O43 - CFD: 15/09/2013 - [] D -- C:\ProgramData\0
O43 - CFD: 09/04/2015 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 11/05/2016 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 14/02/2014 - [] D -- C:\ProgramData\akipmlhliobaanplcfobbadcjghfcnip
O43 - CFD: 25/12/2012 - [] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 11/09/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 12/08/2013 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 11/10/2011 - [] D -- C:\ProgramData\Ask
O43 - CFD: 21/03/2011 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 04/10/2011 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 14/02/2015 - [] D -- C:\ProgramData\baidu
O43 - CFD: 06/03/2015 - [] D -- C:\ProgramData\Baidu Security
O43 - CFD: 16/05/2013 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 16/05/2013 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 21/11/2013 - [] D -- C:\ProgramData\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
O43 - CFD: 01/07/2010 - [0] SHD -- C:\ProgramData\Dados de aplicativos
O43 - CFD: 30/04/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 01/07/2010 - [0] SHD -- C:\ProgramData\Documentos
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 18/03/2014 - [0] D -- C:\ProgramData\Download keEper
O43 - CFD: 14/07/2015 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 09/03/2014 - [] D -- C:\ProgramData\f1413e84b373d8e2
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 01/07/2010 - [0] SHD -- C:\ProgramData\Favoritos
O43 - CFD: 27/10/2015 - [] D -- C:\ProgramData\GAS Tecnologia
O43 - CFD: 27/10/2015 - [] D -- C:\ProgramData\GbPlugin
O43 - CFD: 20/02/2013 - [] D -- C:\ProgramData\Google
O43 - CFD: 10/05/2014 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 18/05/2015 - [] D -- C:\ProgramData\IePluginService =>Trojan.SProtector
O43 - CFD: 18/05/2015 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
O43 - CFD: 12/04/2011 - [] D -- C:\ProgramData\Installations
O43 - CFD: 18/03/2014 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma
O43 - CFD: 28/10/2012 - [] D -- C:\ProgramData\levelup downloader
O43 - CFD: 29/04/2012 - [] D -- C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 17/02/2013 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 01/07/2010 - [0] SHD -- C:\ProgramData\Menu Iniciar
O43 - CFD: 14/02/2012 - [] D -- C:\ProgramData\Messenger Plus!
O43 - CFD: 11/12/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 26/11/2012 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 19/09/2012 - [] D -- C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 01/07/2010 - [0] SHD -- C:\ProgramData\Modelos
O43 - CFD: 03/07/2010 - [] D -- C:\ProgramData\Nero
O43 - CFD: 27/12/2012 - [] D -- C:\ProgramData\Norton
O43 - CFD: 21/12/2012 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 01/07/2010 - [] D -- C:\ProgramData\NOS
O43 - CFD: 14/04/2014 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 06/03/2015 - [] D -- C:\ProgramData\ORYIpLiLN
O43 - CFD: 26/02/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 01/09/2012 - [] D -- C:\ProgramData\Pinnacle
O43 - CFD: 30/10/2012 - [] D -- C:\ProgramData\Positivo Informática
O43 - CFD: 14/02/2013 - [] D -- C:\ProgramData\Premium
O43 - CFD: 01/04/2014 - [] D -- C:\ProgramData\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter
O43 - CFD: 10/09/2013 - [] D -- C:\ProgramData\PSafe
O43 - CFD: 06/02/2013 - [] D -- C:\ProgramData\RightClick
O43 - CFD: 04/07/2012 - [] D -- C:\ProgramData\RoboForm
O43 - CFD: 17/07/2015 - [] D -- C:\ProgramData\RRandoomPriicae =>PUP.Optional.RandomPrice
O43 - CFD: 17/04/2011 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 30/04/2014 - [] D -- C:\ProgramData\SavensohArue =>PUP.Optional.SaveShare
O43 - CFD: 13/04/2014 - [] D -- C:\ProgramData\SaveSenseLive =>PUP.Optional.SaveSense
O43 - CFD: 10/03/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/08/2013 - [] D -- C:\ProgramData\spotflux
O43 - CFD: 02/08/2013 - [] D -- C:\ProgramData\StarApp =>PUP.Optional.StarApp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 27/08/2013 - [] D -- C:\ProgramData\SummerSoft
O43 - CFD: 02/09/2012 - [] D -- C:\ProgramData\Sun
O43 - CFD: 21/12/2012 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 27/10/2015 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 20/05/2016 - [] D -- C:\ProgramData\TorchCrashHandler =>.Superfluous.Torch
O43 - CFD: 17/07/2015 - [] D -- C:\ProgramData\UTUboerAdBBlockeR =>PUP.Optional.UTubeAdBlocker
O43 - CFD: 05/02/2013 - [] D -- C:\ProgramData\VirtualizedApplications
O43 - CFD: 09/09/2012 - [] D -- C:\ProgramData\Web Installer
O43 - CFD: 01/01/2013 - [] D -- C:\ProgramData\WoW Worldwide Software LTD
O43 - CFD: 17/02/2016 - [] HDC -- C:\ProgramData\{16996CC6-7043-45AD-9C8D-A784409115E4}
O43 - CFD: 17/02/2016 - [] HDC -- C:\ProgramData\{8265C354-3D13-4FE5-95C7-65F277FF3041}
O43 - CFD: 20/11/2012 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 17/02/2016 - [] HDC -- C:\ProgramData\{9DE75BC9-6CF5-4972-8A4E-86BAAD477DC6}
O43 - CFD: 17/02/2016 - [] HDC -- C:\ProgramData\{AB404F93-CDCE-40D9-8D4E-8606C84D368C}
O43 - CFD: 11/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 15/05/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 02/10/2012 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 26/07/2011 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 13/09/2013 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 03/07/2010 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Common Files\PC Tools
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 10/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 09/11/2011 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Topaz Labs
O43 - CFD: 03/10/2010 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 09/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Adobe
O43 - CFD: 21/06/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Apple Computer
O43 - CFD: 12/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\baidu
O43 - CFD: 13/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\BrOffice.org
O43 - CFD: 14/07/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
O43 - CFD: 30/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 07/09/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Easeware
O43 - CFD: 03/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Identities
O43 - CFD: 20/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\KastorFreeAudioConverter
O43 - CFD: 04/11/2014 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Macromedia
O43 - CFD: 07/09/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Teddy Picker\AppData\Roaming\Media Center Programs
O43 - CFD: 14/08/2015 - [] SD -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft
O43 - CFD: 29/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 03/03/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\PhotoFiltre Studio X
O43 - CFD: 22/10/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\PhotoScape
O43 - CFD: 08/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\SecondLife
O43 - CFD: 20/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Skype
O43 - CFD: 07/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\SoftGrid Client
O43 - CFD: 14/07/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\uTorrent
O43 - CFD: 13/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\WinRAR
O43 - CFD: 20/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\ZHP
O43 - CFD: 09/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\Adobe
O43 - CFD: 12/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Apple
O43 - CFD: 12/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Apple Computer
O43 - CFD: 03/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Ares
O43 - CFD: 01/03/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\CEF
O43 - CFD: 12/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Chromium
O43 - CFD: 12/03/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\Dados de aplicativos
O43 - CFD: 15/02/2016 - [0] D -- C:\Users\Teddy Picker\AppData\Local\Diagnostics
O43 - CFD: 26/07/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\EmieBrowserModeList
O43 - CFD: 26/07/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\EmieSiteList
O43 - CFD: 26/07/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\EmieUserList
O43 - CFD: 11/09/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Google
O43 - CFD: 12/03/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\Histórico
O43 - CFD: 07/09/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 13/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\MapleStudio
O43 - CFD: 30/03/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\Microsoft
O43 - CFD: 17/02/2016 - [0] D -- C:\Users\Teddy Picker\AppData\Local\PackageAware =>PUP.Optional.BearShare
O43 - CFD: 18/08/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Programs
O43 - CFD: 10/12/2015 - [0] D -- C:\Users\Teddy Picker\AppData\Local\Skype
O43 - CFD: 13/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\SoftGrid Client
O43 - CFD: 20/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\Temp
O43 - CFD: 12/03/2015 - [0] SHD -- C:\Users\Teddy Picker\AppData\Local\Temporary Internet Files
O43 - CFD: 02/05/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\Torch =>.Superfluous.Torch
O43 - CFD: 02/04/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Unity
O43 - CFD: 01/05/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\Updater
O43 - CFD: 12/06/2015 - [] D -- C:\Users\Teddy Picker\AppData\Local\VirtualStore
O43 - CFD: 22/04/2016 - [] D -- C:\Users\Teddy Picker\AppData\Local\Vivaldi
O43 - CFD: 18/08/2015 - [0] D -- C:\Users\Teddy Picker\AppData\Local\Programs\Common
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 15/02/2016 - [] RD -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 13/03/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CoolNovo
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 03/03/2016 - [0] D -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
O43 - CFD: 07/05/2016 - [] RD -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2015 - [] D -- C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch =>.Superfluous.Torch

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL de Extensão do Shell do Armazenamento A.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensões do Shell para compartilhamento.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software®

---\\ Lista dos drivers do sistema (72) - 16s
O58 - SDL:2012/05/31 21:21:04 RA . (.360.cn - 360HipsOEM.) -- C:\Windows\System32\drivers\360FltOEM.sys [289952] {0100000000012F12F6C071} =>.360.cn
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2013/05/09 05:59:06 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [22600] =>.AVAST Software®
O58 - SDL:2014/01/22 12:52:19 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [80816] =>.AVAST Software®
O58 - SDL:2011/11/28 14:52:22 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [42328] =>.AVAST Software®
O58 - SDL:2014/01/22 12:52:21 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [72016] =>.AVAST Software®
O58 - SDL:2014/01/22 12:52:21 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65336] =>.AVAST Software® (ALWIL Software)
O58 - SDL:2014/01/22 12:52:21 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1030952] =>.AVAST Software®
O58 - SDL:2014/01/22 12:52:21 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [64288] =>.AVAST Software®
O58 - SDL:2014/01/22 12:52:21 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [189936] =>.AVAST Software® (ALWIL Software)
O58 - SDL:2009/06/10 17:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/13 22:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 17:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/13 22:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 17:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2016/05/20 13:58:36 A . (.GAS Tecnologia - GAS Tecnologia - FAC.) -- C:\Windows\System32\drivers\gbpddfac64.sys [28888] {58C005F9811C3FD333668072A04E0D1B}
O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.®
O58 - SDL:2009/06/10 17:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/20 10:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2011/03/11 03:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2009/09/23 19:23:02 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [6180832] =>.Intel Corporation
O58 - SDL:2009/07/13 22:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/04/29 16:28:30 A . (.Windows (R) Codename Longhorn DDK provider - KMWDFilter Driver from UASSOFT.COM.) -- C:\Windows\System32\drivers\KMWDFILTER.sys [30208] =>.MLK Technologies Limited®
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2008/03/13 04:46:00 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\Windows\System32\drivers\ManyCam_x64.sys [27136] =>.Superfluous.VisicomMedia
O58 - SDL:2013/01/31 06:50:58 A . (.ManyCam LLC - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [28160] =>.ManyCam LLC
O58 - SDL:2012/07/20 07:12:00 A . (.ManyCam LLC - ManyCam Virtual Webcam.) -- C:\Windows\System32\drivers\mcvidrv_x64.sys [44928] =>.ManyCam LLC
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2014/10/21 23:54:24 A . (.NetFilterSDK.com - NetFilter SDK TDI Hook Driver (WPP).) -- C:\Windows\System32\drivers\mosfilterdrv.sys [60728] {277274BF0FD1B3}
O58 - SDL:2009/07/13 22:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2014/12/02 17:57:06 A . (.NetFilterSDK.com - NetFilter SDK TDI Hook Driver (WPP).) -- C:\Windows\System32\drivers\pofilterdrv.sys [60736] {049125AABD28C8}
O58 - SDL:2009/07/13 22:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2010/01/12 06:37:34 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [325152] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/06/10 17:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/13 22:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/10/26 15:36:22 A . (.Motorola Inc. - Motorola SM56 Modem WDM Driver.) -- C:\Windows\System32\drivers\smserial.sys [1202688]
O58 - SDL:2009/06/10 18:01:14 A . (.Motorola Inc. - Motorola SM56 Modem WDM Driver.) -- C:\Windows\System32\drivers\SmSerl64.sys [1227776]
O58 - SDL:2015/04/29 17:16:08 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [386680] =>.Disc Soft Ltd®
O58 - SDL:2010/04/26 23:25:16 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwh.sys [15872] =>.MCCI Corporation®
O58 - SDL:2010/04/26 23:25:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cm.sys [15360] =>.MCCI Corporation®
O58 - SDL:2010/04/26 23:25:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_wh.sys [15872] =>.MCCI Corporation®
O58 - SDL:2009/07/13 22:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2013/08/12 20:10:26 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42184] =>.AnchorFree Inc®
O58 - SDL:2013/07/08 17:12:10 A . (.Spotflux, Inc. - Spotflux Network Device Driver.) -- C:\Windows\System32\drivers\tapSF0901.sys [39104] {787B156DBE2C603B1C32E7122CF5A030}
O58 - SDL:2010/06/14 09:32:54 A . (.Teruten Inc - File System Mini Filter Drvier.) -- C:\Windows\System32\drivers\TFsExDisk.sys [16448] =>.Teruten, Inc.®
O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2015/03/06 15:25:33 A . (...) -- C:\Windows\System32\drivers\webTinstMK.sys [50800] {7949FFE63B1683DCCBED2E599AECDFFD} =>PUP.Optional.CorsicaTechnologies
O58 - SDL:2015/10/27 14:10:26 A . (.Basil - WinDivert (web: http://reqrypt.org/windiver.) -- C:\Windows\System32\WinDivert64.sys [38104] {58C005F9811C3FD333668072A04E0D1B}

---\\ Últimos ficheiros alterados ou criados (Utilizador) (3) - 110s
O61 - LFC: 2016/05/16 17:32:34 A . (..) -- C:\Users\Teddy Picker\AppData\Roaming\BrOffice.org\3\user\uno_packages\cache\stamp.sys [1]
O61 - LFC: 2016/05/20 14:02:30 A . (..) -- C:\Users\Teddy Picker\AppData\Local\Torch\User Data\ev_hashes_whitelist.bin [674082] =>.Superfluous.Torch
O61 - LFC: 2016/05/14 23:58:04 A . (..) -- C:\Users\Teddy Picker\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [119129]

---\\ Associações Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor do Registro.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®

---\\ Menu de inicialização Internet (40) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.The Chromium Authors - Chromium.) -- C:\Users\Forever-XD\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Maple Studio - CoolNovo Browser.) -- C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe http://www.delta-homes.com/ =>PUP.Optional.Qvo6
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\Forever-XD\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- iexplore.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Opera\Opera.exe
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB}
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Torch Media Inc. - Torch.) -- C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe http://www.delta-homes.com/ =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\Forever-XD\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Maple Studio - CoolNovo Browser.) -- C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Maple Studio
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Forever-XD\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.The Chromium Authors - Chromium.) -- C:\Users\Forever-XD\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Maple Studio - CoolNovo Browser.) -- C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Maple Studio
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Forever-XD\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\Forever-XD\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Maple Studio - CoolNovo Browser.) -- C:\Users\Teddy Picker\AppData\Local\MapleStudio\ChromePlus\Application\chrome.exe =>.Maple Studio
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Forever-XD\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch

---\\ Pesquisa de infeção nos navegadores da Internet (14) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (istartsurf) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - () - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {86c83f9e-48a4-4cd2-a763-64fea5df35f7} [DefaultScope] - (Baixaki) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKLM] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Messenger Plus Smartbar Search) - http://feed.plusnetwork.com/ =>PUP.Optional.PlusNetwork
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {3F73B557-9AFE-9857-9F4B-631A7EECF8C4} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Funmoods) - http://start.funmoods.com/ =>PUP.Optional.Funmoods
O69 - SBI: SearchScopes [HKLM] {86c83f9e-48a4-4cd2-a763-64fea5df35f7} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Messenger Plus BR Customized Web Search) - http://search.conduit.com/ =>.Superfluous.Conduit
O69 - SBI: SearchScopes [HKLM] {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} - (WebSearch) - http://websearch.searchiseasy.info/
O69 - SBI: SearchScopes [HKLM] {EEE6C360-6118-11DC-9C72-001320C79847} - (SweetIM Search) - http://search.sweetim.com/ =>PUP.Optional.SweetIM

---\\ Listagem dos serviços iniciados pelo Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Lista das exceções do FireWall (FirewallRules) (69) - 9s
O87 - FAEL: "{E86997BE-E3C4-48E2-B71C-1BCB3D112C51}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\lxbkcoms.exe (.not file.)
O87 - FAEL: "{D7190067-DC29-4483-91AC-6A9CBE232610}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\lxbkcoms.exe (.not file.)
O87 - FAEL: "{FC7A91E8-D37F-4AA5-8560-08305C495416}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\lxbkcoms.exe (.not file.)
O87 - FAEL: "{AA6265DC-242C-40E4-8620-AD68242C8F77}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\lxbkcoms.exe (.not file.)
O87 - FAEL: "{B45D1EEE-101F-4681-9167-53FC166DF1A4}" [In-None-P6-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MX08OXSN\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "{248ED9D9-6F5F-4BF1-80BA-003B8AEB3D0B}" [In-None-P17-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MX08OXSN\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "{93B7386D-688E-4434-B615-3BC32B9D6E6D}" [In-None-P6-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3MCRA1N6\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "{79BB5B9C-3B12-4CD0-9418-95ACA5CC774B}" [In-None-P17-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3MCRA1N6\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "{F4501671-3B14-4E9A-8A9D-53BCEB960D3B}" [In-None-P6-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Temp\SweetIMReinstall\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "{A230210C-C366-4DEA-8585-5DBC5A9F0C56}" [In-None-P17-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Temp\SweetIMReinstall\SweetImSetup[1].exe (.not file.) =>PUP.Optional.SweetIM
O87 - FAEL: "TCP Query User{7245AC60-B69E-4D8C-AC17-D56859FE7B2E}C:\program files (x86)\ares\ares.exe" [In-None-P6-TRUE] .(.Ares Development Group - Ares p2p for windows.) -- C:\program files (x86)\ares\ares.exe
O87 - FAEL: "UDP Query User{D64AAC99-8570-4DA9-9C01-1350F315570B}C:\program files (x86)\ares\ares.exe" [In-None-P17-TRUE] .(.Ares Development Group - Ares p2p for windows.) -- C:\program files (x86)\ares\ares.exe
O87 - FAEL: "TCP Query User{02C898AE-2072-4815-9E24-4B91D0A21AFD}C:\program files (x86)\ares\chatserver.exe" [In-None-P6-TRUE] .(.Ares Development Group - Ares Chat Server.) -- C:\program files (x86)\ares\chatserver.exe
O87 - FAEL: "UDP Query User{C3787F67-C1D2-485F-8573-8C7340220F77}C:\program files (x86)\ares\chatserver.exe" [In-None-P17-TRUE] .(.Ares Development Group - Ares Chat Server.) -- C:\program files (x86)\ares\chatserver.exe
O87 - FAEL: "TCP Query User{1979105E-51C7-4273-BAC4-C00FA96547EA}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{53B89FBC-2D8A-4340-9567-5A6705E6723A}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "TCP Query User{0DF20A0E-8D6C-42FE-94DD-E87510F5302C}C:\users\alexandre\desktop\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\alexandre\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{0A91F3F9-45E4-42E2-840D-AB5A37BDFEC2}C:\users\alexandre\desktop\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\alexandre\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "TCP Query User{DCDC4A4D-BB64-4E35-8100-03FA2C8A8EE3}C:\program files (x86)\megacubo\components\bin\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\megacubo\components\bin\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{603E928C-09D4-44D7-BE62-B94012CF7A99}C:\program files (x86)\megacubo\components\bin\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\megacubo\components\bin\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "{3064C9AD-5D4D-4CEA-AB3E-6438793A4DF3}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.)
O87 - FAEL: "{CDFC4A51-F1D6-461A-96DE-1B5EDE205960}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.)
O87 - FAEL: "{87F46085-0DC4-4607-B1D8-F6DB49EF3635}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.)
O87 - FAEL: "{DE88BF99-439F-4CAB-AADE-A420E3ADA156}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.)
O87 - FAEL: "{62EF1682-2376-4611-9CB6-4D970EF0BB42}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.)
O87 - FAEL: "{754436D4-8FDA-40F2-A657-5810E2CCBCAA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.)
O87 - FAEL: "TCP Query User{6C9818E7-76B1-4158-BCC0-829D38B37C0E}C:\users\alexandre\appdata\local\temp\cprogram files (x86)opera\operaupgrader.exe" [In-None-P6-TRUE] .(...) -- C:\users\alexandre\appdata\local\temp\cprogram files (x86)opera\operaupgrader.exe (.not file.)
O87 - FAEL: "UDP Query User{2E315AA3-C013-42EA-8649-B04CB69DC1F5}C:\users\alexandre\appdata\local\temp\cprogram files (x86)opera\operaupgrader.exe" [In-None-P17-TRUE] .(...) -- C:\users\alexandre\appdata\local\temp\cprogram files (x86)opera\operaupgrader.exe (.not file.)
O87 - FAEL: "{2CC33817-2781-426E-BF12-630555FA331C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Megacubo\megacubo.exe (.not file.)
O87 - FAEL: "{38646843-849C-4CA8-8C6B-25F6EBB0CE35}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Megacubo\megacubo.exe (.not file.)
O87 - FAEL: "TCP Query User{63D122ED-B37F-4A55-9D81-149D90E6A473}C:\program files (x86)\secondlifeviewer\slvoice.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\secondlifeviewer\slvoice.exe (.not file.)
O87 - FAEL: "UDP Query User{E0D1469C-DD83-48CC-A51E-4A85406F0016}C:\program files (x86)\secondlifeviewer\slvoice.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\secondlifeviewer\slvoice.exe (.not file.)
O87 - FAEL: "{3DA767B4-4AC9-4A1A-83D5-6CCCD6FE5870}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.)
O87 - FAEL: "{008884E1-62A4-490C-B2CF-59183CE32CA9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.)
O87 - FAEL: "{0B4A40AB-EF87-41F8-B856-C438E7861181}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.)
O87 - FAEL: "{0C644D1B-3571-4F51-AB5A-18E323A66364}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.)
O87 - FAEL: "{DEB3DA75-DF9F-4E2E-8A18-3932961F1FE6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.)
O87 - FAEL: "{9FB02BD6-84A0-41F4-A2BC-A197D5212C37}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.)
O87 - FAEL: "{04C6128D-4FEF-4540-A0C3-E667D79DF74B}" [In-None-P6-FALSE] .(...) -- C:\Users\Alexandre\AppData\Local\Temp\incredibar_installer.exe (.not file.) =>PUP.Optional.IncrediBar
O87 - FAEL: "{1429A86B-35B9-49DE-99E1-57A9BE84BA7B}" [In-None-P17-FALSE] .(...) -- C:\Users\Alexandre\AppData\Local\Temp\incredibar_installer.exe (.not file.) =>PUP.Optional.IncrediBar
O87 - FAEL: "{C3D50DD0-0013-4CC3-9043-6D55E34207B7}" [In-None-P17-TRUE] .(...) -- C:\Users\Alexandre\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.)
O87 - FAEL: "TCP Query User{B6CD96E5-15DC-49A2-A571-52809048FB46}C:\users\alexandre\appdata\local\apps\2.0\yo4z1d9z.e4e\alj1rweh.4nk\leve..tion_b598c967a14cb714_0000.0009_a49bd9f8c2249a5a\levelup.downloaderclient.exe" [In-None-P6-TRUE] .(...) -- C:\users\alexandre\appdata\local\apps\2.0\yo4z1d9z.e4e\alj1rweh.4nk\leve..tion_b598c967a14cb714_0000.0009_a49bd9f8c2249a5a\levelup.downloaderclient.exe (.not file.)
O87 - FAEL: "UDP Query User{5A48478D-87DE-4172-A877-AB7E2F35A5A4}C:\users\alexandre\appdata\local\apps\2.0\yo4z1d9z.e4e\alj1rweh.4nk\leve..tion_b598c967a14cb714_0000.0009_a49bd9f8c2249a5a\levelup.downloaderclient.exe" [In-None-P17-TRUE] .(...) -- C:\users\alexandre\appdata\local\apps\2.0\yo4z1d9z.e4e\alj1rweh.4nk\leve..tion_b598c967a14cb714_0000.0009_a49bd9f8c2249a5a\levelup.downloaderclient.exe (.not file.)
O87 - FAEL: "{AF2027E3-E18D-424A-B2F6-047878C64ACC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{E45A43F2-A3C0-4C9C-B52E-4F7E4DBB502A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{5D7E3CE3-01B8-4FF6-936E-28608789968B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\baidu_dumper.exe (.not file.)
O87 - FAEL: "{4140FB58-4620-432F-9670-A2A3237C0D62}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\baidu_dumper.exe (.not file.)
O87 - FAEL: "{32F7FDE8-E001-4611-A0BD-4A2724D2DAFB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe (.not file.)
O87 - FAEL: "{667138DC-CA72-42D9-943D-15071519D8BC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\MxUp.exe (.not file.)
O87 - FAEL: "{774D4B78-0ACA-4279-9E9D-F85D1C54869C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\MxUp.exe (.not file.)
O87 - FAEL: "{933DD34E-7B93-43A8-8BAA-C095B34D787F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe (.not file.)
O87 - FAEL: "TCP Query User{E56A014E-8833-461B-B553-DE2B875A7448}C:\users\forever-xd\appdata\local\google\chrome sxs\application\chrome.exe" [In-None-P6-TRUE] .(...) -- C:\users\forever-xd\appdata\local\google\chrome sxs\application\chrome.exe (.not file.)
O87 - FAEL: "UDP Query User{D74C4340-586C-45D4-9A29-5E4838C564EB}C:\users\forever-xd\appdata\local\google\chrome sxs\application\chrome.exe" [In-None-P17-TRUE] .(...) -- C:\users\forever-xd\appdata\local\google\chrome sxs\application\chrome.exe (.not file.)
O87 - FAEL: "TCP Query User{54604113-7894-48B4-968F-EEBC97B9D097}C:\program files (x86)\torntv.com\torntv downloader.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\torntv.com\torntv downloader.exe (.not file.) =>PUP.Optional.TornTV
O87 - FAEL: "UDP Query User{740907C3-F320-4DC2-9DA3-23F81A594F6B}C:\program files (x86)\torntv.com\torntv downloader.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\torntv.com\torntv downloader.exe (.not file.) =>PUP.Optional.TornTV
O87 - FAEL: "{BB24ABC8-54E4-4F58-B221-2618286865DB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.)
O87 - FAEL: "{255FF619-7D53-4954-A23A-6E1AD6F3AC85}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.)
O87 - FAEL: "{5095FFB3-D126-4315-887F-50807884EFA4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.)
O87 - FAEL: "{1620C129-7539-4DE9-9D7D-7A531D689FE8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.)
O87 - FAEL: "{CD074B7A-D3AF-45D2-8449-B48737D14AD9}" [In-None-P17-TRUE] .(.Torch Media Inc. - Torch.) -- C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O87 - FAEL: "{F677A586-08CE-407D-AF74-77458C8C499F}" [In-None-P17-TRUE] .(...) -- C:\Users\Forever-XD\AppData\Local\Torch\Plugins\Hola\hola_plugin.exe (.not file.) =>.Superfluous.Torch
O87 - FAEL: "{EF9E470F-0E58-4BCB-A949-DFE89972F15C}" [In-None-P17-TRUE] .(...) -- C:\Users\Forever-XD\AppData\Local\CrossBrowser\Application\crossbrowser.exe (.not file.) =>PUP.Optional.CrossBrowser
O87 - FAEL: "{3F974184-302B-4CD0-885B-A7762D73D094}" [In-None-P6-TRUE] .(...) -- C:\Users\Teddy Picker\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{AA3F47A2-9479-4F81-AE1A-CCD3D71C6444}" [In-None-P17-TRUE] .(...) -- C:\Users\Teddy Picker\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "TCP Query User{557D00DF-90D2-453B-A518-1CD63FA7B77C}C:\program files (x86)\electronic arts\eadm\core.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\electronic arts\eadm\core.exe (.not file.)
O87 - FAEL: "UDP Query User{3E6AB517-1CC2-427C-8408-FC0F31CDA347}C:\program files (x86)\electronic arts\eadm\core.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\electronic arts\eadm\core.exe (.not file.)
O87 - FAEL: "{9A9D3605-B845-4D7E-ABDB-457FEBA9CC80}" [In-None-P17-TRUE] .(.Torch Media Inc. - Torch.) -- C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O87 - FAEL: "{3625D03B-0CCD-4BE2-B65E-AF63DC1332D6}" [In-None-P17-TRUE] .(...) -- C:\Users\Teddy Picker\AppData\Local\Torch\Plugins\Hola\hola_plugin.exe (.not file.) =>.Superfluous.Torch
O87 - FAEL: "{6B1DAB1E-96DE-427F-B156-38F195EF85D9}" [In-None-P17-TRUE] .(...) -- C:\Users\Teddy Picker\AppData\Local\Torch\Plugins\Hola\hola_plugin_x64.exe (.not file.) =>.Superfluous.Torch

---\\ Claves Tracing (26) - 7s
HKLM\SOFTWARE\Microsoft\Tracing\LinkuryInstaller_RASAPI32 =>PUP.Optional.Linkury
HKLM\SOFTWARE\Microsoft\Tracing\LinkuryInstaller_RASMANCS =>PUP.Optional.Linkury
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bdMiniDownloader_NoUI_BR_Softonic_32_300_RASAPI32 =>.Superfluous.Softonic
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bdMiniDownloader_NoUI_BR_Softonic_32_300_RASMANCS =>.Superfluous.Softonic
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASAPI32 =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASMANCS =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\conduitinstaller_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\conduitinstaller_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DAEMON Tools Toolbar_RASAPI32 =>Toolbar.Agent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DAEMON Tools Toolbar_RASMANCS =>Toolbar.Agent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASAPI32 =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASMANCS =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\facemoodssrv_RASAPI32 =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\facemoodssrv_RASMANCS =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Facemoods_RASAPI32 =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Facemoods_RASMANCS =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\funmoods131212_RASAPI32 =>PUP.Optional.Funmoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\funmoods131212_RASMANCS =>PUP.Optional.Funmoods

---\\ Scâner Aditional (151) - 0s
C:\Program Files (x86)\BRApp =>PUP.Optional.BRApp
HKLM\SYSTEM\CurrentControlSet\Services\BRApp =>PUP.Optional.BRApp
C:\Program Files (x86)\BRApp\brapp.exe =>PUP.Optional.BRApp
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\TorchCrashHandler =>.Superfluous.Torch
C:\Users\Teddy Picker\AppData\Local\Torch\Update\TorchCrashHandler.exe =>.Superfluous.Torch
HKLM\SOFTWARE\BeatTool =>PUP.Optional.BeatTool
C:\Program Files (x86)\BeatTool =>PUP.Optional.BeatTool
HKLM\SYSTEM\CurrentControlSet\Services\Update BeatTool =>PUP.Optional.BeatTool
C:\Program Files (x86)\BeatTool\updateBeatTool.exe =>PUP.Optional.BeatTool
HKLM\SYSTEM\CurrentControlSet\Services\Util BeatTool =>PUP.Optional.BeatTool
C:\Program Files (x86)\BeatTool\bin\utilBeatTool.exe =>PUP.Optional.BeatTool
C:\Users\Teddy Picker\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
C:\Users\Teddy Picker\AppData\Local\Torch\Update\45.0.0.11172\TorchUpdate.exe =>.Superfluous.Torch
C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131190} =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\D3409403-DBED-7EE1-C1F3-ED34C28D4F67 =>PUP.Optional.BlockAndSurf
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LayoutsExpress =>Toolbar.LayoutExpress
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torntv V9.0 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311} =>PUP.Optional.SaveShare
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7426428E-71D4-452C-BA13-B14E5EB52859} =>PUP.Optional.WeatherBug
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\D3409403-DBED-7EE1-C1F3-ED34C28D4F67 =>PUP.Optional.BlockAndSurf
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\LayoutsExpress =>Toolbar.LayoutExpress
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Torntv V9.0 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{62D82EC1-0D3A-DF54-8E3E-07E1337A5311} =>PUP.Optional.SaveShare
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7426428E-71D4-452C-BA13-B14E5EB52859} =>PUP.Optional.WeatherBug
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torch =>.Superfluous.Torch
HKLM\SOFTWARE\Wow6432Node\5ae8d88b76aed46 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\BeatTool =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
HKLM\SOFTWARE\Wow6432Node\BrowserMngr =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Clara =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\DealPlyLive =>PUP.Optional.Dealply
HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware =>.Superfluous.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\Minibar =>PUP.Optional.Minibar
HKLM\SOFTWARE\Wow6432Node\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef
HKLM\SOFTWARE\Wow6432Node\SaveSenseLive =>PUP.Optional.SaveSense
HKLM\SOFTWARE\Wow6432Node\SimplyGen =>PUP.Optional.PredictAd
HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Wow6432Node\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\Torch =>.Superfluous.Torch
HKLM\SOFTWARE\Wow6432Node\Torntv V9.0 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Uniblue =>.Superfluous.Uniblue
HKLM\SOFTWARE\Wow6432Node\Web Assistant =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Wpm =>PUP.Optional.WpManager
HKCU\SOFTWARE\Torch =>.Superfluous.Torch
C:\Program Files\shopperz =>PUP.Optional.Shopperz
C:\Program Files (x86)\BonanzaDeals =>PUP.Optional.BonanzaDeals
C:\Program Files (x86)\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
C:\Program Files (x86)\Conduit =>.Superfluous.Conduit
C:\Program Files (x86)\FilesFrog Update Checker =>PUP.Optional.MegaSearch
C:\Program Files (x86)\GU Player =>PUP.Optional.GUPlayer
C:\Program Files (x86)\LayoutsExpress =>Toolbar.LayoutExpress
C:\Program Files (x86)\ManyCam =>.Superfluous.VisicomMedia
C:\Program Files (x86)\Minibar =>PUP.Optional.Minibar
C:\Program Files (x86)\MocaFlix =>PUP.Optional.MocaFlix
C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup
C:\Program Files (x86)\onewebsearch =>PUP.Optional.SimpleSearches
C:\Program Files (x86)\Pay-By-Ads =>PUP.Optional.PaybyAds
C:\Program Files (x86)\predm =>PUP.Optional.Downware
C:\Program Files (x86)\PriceGong =>PUP.Optional.PriceGong
C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
C:\Program Files (x86)\SaveSenseLive =>PUP.Optional.SaveSense
C:\Program Files (x86)\SaveShare =>PUP.Optional.SaveShare
C:\Program Files (x86)\SProtector =>PUP.Optional.MocaFlix
C:\Program Files (x86)\Ss.Helper =>PUP.Optional.SaveShare
C:\Program Files (x86)\Torntv V9.0 =>PUP.Optional.TornTV
C:\Program Files (x86)\version43BlockAndSurf =>PUP.Optional.BlockAndSurf
C:\Program Files (x86)\WebSearch =>PUP.Optional.SimpleSearches
C:\Program Files (x86)\WebSpades =>PUP.Optional.WebSpades
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\ProgramData\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
C:\ProgramData\IePluginService =>Trojan.SProtector
C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
C:\ProgramData\InstallMate =>.Superfluous.Tarma
C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia
C:\ProgramData\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter
C:\ProgramData\RRandoomPriicae =>PUP.Optional.RandomPrice
C:\ProgramData\SavensohArue =>PUP.Optional.SaveShare
C:\ProgramData\SaveSenseLive =>PUP.Optional.SaveSense
C:\ProgramData\StarApp =>PUP.Optional.StarApp
C:\ProgramData\TorchCrashHandler =>.Superfluous.Torch
C:\ProgramData\UTUboerAdBBlockeR =>PUP.Optional.UTubeAdBlocker
C:\Users\Teddy Picker\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
C:\Users\Teddy Picker\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
C:\Users\Teddy Picker\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
C:\Users\Teddy Picker\AppData\Local\PackageAware =>PUP.Optional.BearShare
C:\Users\Teddy Picker\AppData\Local\Torch =>.Superfluous.Torch
C:\Users\Teddy Picker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch =>.Superfluous.Torch
C:\Windows\System32\drivers\ManyCam_x64.sys =>.Superfluous.VisicomMedia
C:\Windows\System32\drivers\webTinstMK.sys =>PUP.Optional.CorsicaTechnologies
C:\Users\Teddy Picker\AppData\Local\Torch\User Data\ev_hashes_whitelist.bin =>.Superfluous.Torch
C:\Users\Forever-XD\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} =>PUP.Optional.DoSearches
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.DoSearches
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} =>PUP.Optional.DoSearches
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{86c83f9e-48a4-4cd2-a763-64fea5df35f7} =>PUP.Optional.DoSearches
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} =>PUP.Optional.DoSearches
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} =>PUP.Optional.PlusNetwork
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} =>PUP.Optional.Funmoods
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} =>.Superfluous.Conduit
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} =>PUP.Optional.SweetIM
HKLM64\SOFTWARE\Microsoft\Tracing\LinkuryInstaller_RASAPI32 =>PUP.Optional.Linkury
HKLM64\SOFTWARE\Microsoft\Tracing\LinkuryInstaller_RASMANCS =>PUP.Optional.Linkury
HKLM64\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV
HKLM64\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bdMiniDownloader_NoUI_BR_Softonic_32_300_RASAPI32 =>.Superfluous.Softonic
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bdMiniDownloader_NoUI_BR_Softonic_32_300_RASMANCS =>.Superfluous.Softonic
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASAPI32 =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASMANCS =>PUP.Optional.BeatTool
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\conduitinstaller_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\conduitinstaller_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DAEMON Tools Toolbar_RASAPI32 =>Toolbar.Agent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DAEMON Tools Toolbar_RASMANCS =>Toolbar.Agent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASAPI32 =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASMANCS =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\facemoodssrv_RASAPI32 =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\facemoodssrv_RASMANCS =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Facemoods_RASAPI32 =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Facemoods_RASMANCS =>PUP.Optional.Facemoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\funmoods131212_RASAPI32 =>PUP.Optional.Funmoods
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\funmoods131212_RASMANCS =>PUP.Optional.Funmoods

---\\ Resumo dos elementos encontrados na sua estação de trabalho (76) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BRApp
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/?p=414 =>PUP.Optional.PriceMeter
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Torch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BeatTool
http://www.nicolascoolman.fr/?p=266 =>PUP.Optional.AnyProtect
http://www.nicolascoolman.fr/?p=1626 =>PUP.Optional.BlockAndSurf
http://www.nicolascoolman.fr/?p=792 =>PUP.Optional.SaveSense
http://www.nicolascoolman.fr/?p=203 =>PUP.Optional.Dealply
http://www.nicolascoolman.fr/?p=29 =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/?p=721 =>PUP.Optional.Qvo6
http://www.nicolascoolman.fr/?p=596 =>PUP.Optional.SweetPage
http://www.nicolascoolman.info/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=433 =>PUP.Optional.QuickShare
http://www.nicolascoolman.fr/?p=362 =>PUP.Optional.Funmoods
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.VisicomManyCam
http://www.nicolascoolman.fr/?p=431 =>PUP.Optional.MegaSearch
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.LayoutExpress
http://www.nicolascoolman.fr/?p=1344 =>PUP.Optional.MocaFlix
http://www.nicolascoolman.fr/?p=290 =>PUP.Optional.TornTV
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SaveShare
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.WeatherBug
http://www.nicolascoolman.info/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon
http://www.nicolascoolman.info/2016/04/28/pup-optional-bonanzadeals/ =>PUP.Optional.BonanzaDeals
http://www.nicolascoolman.fr/?p=297 =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=270 =>PUP.Optional.Datamngr
http://www.nicolascoolman.fr/?p=273 =>.Superfluous.DeltaSearch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GamesDesktop
http://www.nicolascoolman.fr/pup-agentodr/ =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/?p=418 =>PUP.Optional.Minibar
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.MyBestOffersToday
http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-optional-quickref/ =>PUP.Optional.QuickRef
http://www.nicolascoolman.fr/?p=370 =>PUP.Optional.PredictAd
http://www.nicolascoolman.fr/?p=336 =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/?p=173 =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/?p=332 =>PUP.Optional.SweetIM
http://www.nicolascoolman.fr/pup-systweak/ =>.Superfluous.Systweak
http://www.nicolascoolman.fr/?p=122 =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Uniblue
http://www.nicolascoolman.fr/?p=175 =>PUP.Optional.IncrediBar
http://www.nicolascoolman.info/2016/04/21/pup-optional-shopperz/ =>PUP.Optional.Shopperz
http://www.nicolascoolman.info/2016/05/05/superfluous-blabbers/ =>PUP.Optional.Blabbers
http://www.nicolascoolman.fr/pup-optional-guplayer =>PUP.Optional.GUPlayer
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.SienSA
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.VisicomMedia
http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SimpleSearches
http://www.nicolascoolman.fr/?p=1754 =>PUP.Optional.PaybyAds
http://www.nicolascoolman.fr/?p=401 =>PUP.Optional.Downware
http://www.nicolascoolman.fr/?p=387 =>PUP.Optional.PriceGong
http://www.nicolascoolman.info/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
http://www.nicolascoolman.fr/?p=562 =>PUP.Optional.WebSpades
http://www.nicolascoolman.fr/?p=187 =>Trojan.SProtector
http://www.nicolascoolman.fr/?p=259 =>.Superfluous.Tarma
http://www.nicolascoolman.fr/?p=1543 =>PUP.Optional.RandomPrice
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.StarApp
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.UTubeAdBlocker
http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy
http://www.nicolascoolman.fr/?p=343 =>PUP.Optional.BearShare
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CorsicaTechnologies
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Torch
http://www.nicolascoolman.fr/?p=579 =>PUP.Optional.DoSearches
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PlusNetwork
http://www.nicolascoolman.info/2016/04/30/superfluous-cacaoweb/ =>.Superfluous.CacaoWeb
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CrossBrowser
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Linkury
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AskBar
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.Agent
http://www.nicolascoolman.fr/?p=681 =>PUP.Optional.Facemoods

~ End of the scan, 45169 items in 00h14mn10s (1403)(0)

Publicité


Signaler le contenu de ce document

Publicité