cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 19-06-2016 01
Executado por Julio (administrador) em JULIO-PC (20-06-2016 10:18:49)
Executando a partir de C:\Users\Julio\Downloads
Perfis Carregados: Julio (Perfis Disponíveis: Julio)
Platform: Windows 7 Professional Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
() C:\Windows.old.000\Program Files\FreeDownloadManager.ORG\Free Download Manager\browsernativehost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)


==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{B32CA6AF-D0C1-4578-BC95-69B42363464C}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-18] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.com.br/webhp?hl=pt-BR
CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?hl=pt-BR"
CHR Profile: C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Free Download Manager Chrome extension) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2016-06-18]
CHR Extension: (Google Drive) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-18]
CHR Extension: (YouTube) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-18]
CHR Extension: (Documentos Google off-line) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-18]
CHR Extension: (Sword Art Online 18 - 1366x768) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeeedeemoolfnjiklajilfdjkaioanpi [2016-06-18]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-18]
CHR Extension: (Gmail) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-18]
CHR Profile: C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Apresentações) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-20]
CHR Extension: (Google Docs) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-20]
CHR Extension: (Google Drive) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-20]
CHR Extension: (YouTube) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-20]
CHR Extension: (ZenMate - IP & Browser Check) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dchhalahcjpkabdgonjhoogdcipienhf [2016-06-20]
CHR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2016-06-20]
CHR Extension: (Planilhas do Google) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-20]
CHR Extension: (Documentos Google off-line) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-20]
CHR Extension: (PSafe Segurança Online) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\higfhiimhkcmfppmdckdpkdcdolcjooo [2016-06-20]
CHR Extension: (Ponder) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpbfinekcbbkphbccmbjpjmehlkplbco [2016-06-20]
CHR Extension: (Fast and Furious Tab) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mcfbdmpahdkfdhejcbajddofglhncfaj [2016-06-20]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-20]
CHR Extension: (Captain America - Winter soldier) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nnladpgncnadepiignbjbjnffgdcciek [2016-06-20]
CHR Extension: (Gmail) - C:\Users\Julio\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-20]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-20 07:36 - 2016-06-20 07:36 - 00002353 _____ C:\Users\Julio\Desktop\GV - Chrome.lnk
2016-06-19 22:10 - 2016-06-19 22:10 - 00000000 ____D C:\Users\Julio\Downloads\citra-latest-windows-amd64
2016-06-19 22:10 - 2016-06-17 15:18 - 20574208 _____ C:\Users\Julio\Downloads\citra-qt.pdb
2016-06-19 22:10 - 2016-06-17 15:18 - 04042752 _____ C:\Users\Julio\Downloads\tests.pdb
2016-06-19 22:10 - 2016-06-17 15:18 - 02601984 _____ C:\Users\Julio\Downloads\citra-qt.exe
2016-06-19 22:10 - 2016-06-17 15:18 - 00359936 _____ C:\Users\Julio\Downloads\tests.exe
2016-06-19 22:10 - 2016-06-17 15:17 - 14274560 _____ C:\Users\Julio\Downloads\citra.pdb
2016-06-19 22:10 - 2016-06-17 15:17 - 02044416 _____ C:\Users\Julio\Downloads\citra.exe
2016-06-19 22:10 - 2016-01-02 08:59 - 01230336 _____ () C:\Users\Julio\Downloads\SDL2.dll
2016-06-19 22:10 - 2015-08-02 18:09 - 00000000 ____D C:\Users\Julio\Downloads\platforms
2016-06-19 22:10 - 2015-08-02 18:05 - 00324096 _____ (The Qt Company Ltd) C:\Users\Julio\Downloads\Qt5OpenGL.dll
2016-06-19 22:10 - 2015-08-02 18:04 - 05473792 _____ (The Qt Company Ltd) C:\Users\Julio\Downloads\Qt5Widgets.dll
2016-06-19 22:10 - 2015-08-02 18:01 - 06087680 _____ (The Qt Company Ltd) C:\Users\Julio\Downloads\Qt5Gui.dll
2016-06-19 22:10 - 2015-08-02 17:57 - 05707776 _____ (The Qt Company Ltd) C:\Users\Julio\Downloads\Qt5Core.dll
2016-06-19 22:07 - 2016-06-19 22:07 - 12860811 _____ C:\Users\Julio\Downloads\citra-latest-windows-amd64.7z
2016-06-19 21:23 - 2016-06-19 21:24 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-06-19 21:23 - 2016-06-19 21:24 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-19 21:23 - 2016-06-19 21:23 - 14572000 _____ (Microsoft Corporation) C:\Users\Julio\Downloads\vc_redist.x64.exe
2016-06-19 21:15 - 2016-04-18 15:00 - 00023232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-06-19 21:12 - 2016-06-19 21:12 - 00013188 _____ C:\Users\Julio\Downloads\api-ms-win-crt-runtime-l1-1-0 (2).zip
2016-06-19 20:58 - 2016-06-19 20:58 - 00031674 _____ C:\Users\Julio\Downloads\Shortcut.txt
2016-06-19 20:42 - 2016-06-20 10:17 - 00011801 _____ C:\Users\Julio\Downloads\Addition.txt
2016-06-19 20:41 - 2016-06-20 10:18 - 00007447 _____ C:\Users\Julio\Downloads\FRST.txt
2016-06-19 20:41 - 2016-06-20 10:18 - 00000000 ____D C:\FRST
2016-06-19 20:41 - 2016-06-19 20:41 - 02387456 _____ (Farbar) C:\Users\Julio\Downloads\FRST64.exe
2016-06-19 20:35 - 2016-06-19 20:35 - 00013188 _____ C:\Users\Julio\Downloads\api-ms-win-crt-runtime-l1-1-0 (1).zip
2016-06-19 19:18 - 2016-06-19 19:18 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-06-19 12:07 - 2016-06-19 12:07 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-06-19 12:07 - 2016-06-19 12:07 - 00002019 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2016-06-19 12:06 - 2016-06-19 12:06 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-06-19 11:58 - 2016-06-19 19:17 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-06-19 11:58 - 2016-06-19 19:17 - 00000000 ____D C:\ProgramData\Adobe
2016-06-19 11:00 - 2016-06-19 11:05 - 75858112 _____ (Adobe Systems Incorporated) C:\Users\Julio\Downloads\AdbeRdr11010_en_US (1).exe
2016-06-19 11:00 - 2016-06-19 11:04 - 75858112 _____ (Adobe Systems Incorporated) C:\Users\Julio\Downloads\AdbeRdr11010_en_US.exe
2016-06-19 08:30 - 2016-06-19 08:30 - 00048819 _____ C:\Users\Julio\Downloads\__64-vcruntime140.dll14.0.22816.0.zip
2016-06-18 21:44 - 2016-06-18 21:44 - 00000000 ____D C:\e722cc5e23643134a476eee3902b927a
2016-06-18 21:43 - 2016-06-18 21:43 - 00000000 ____D C:\6d37e2eda438a778be136481ba7e
2016-06-18 21:35 - 2016-06-19 22:08 - 00000000 ____D C:\Users\Julio\AppData\Local\Free Download Manager
2016-06-18 21:35 - 2016-06-18 21:35 - 00000000 ____D C:\Users\Julio\AppData\Local\CEF
2016-06-18 21:12 - 2016-06-18 21:12 - 00001077 _____ C:\Users\Julio\Desktop\WinRAR.lnk
2016-06-18 20:54 - 2016-06-18 20:54 - 65428784 _____ (Microsoft Corporation) C:\Users\Julio\Downloads\wordloc2013-kb2752073-fullfile-x64-glb.exe
2016-06-18 20:47 - 2016-06-18 20:47 - 00000000 ____D C:\Users\Julio\AppData\Roaming\WinRAR
2016-06-18 20:46 - 2016-06-18 20:46 - 03342040 _____ C:\Users\Julio\Downloads\wrar531br.exe
2016-06-18 20:46 - 2016-06-18 20:46 - 00000000 ____D C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-18 20:46 - 2016-06-18 20:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-18 20:46 - 2016-06-18 20:46 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-06-18 20:45 - 2016-06-18 20:50 - 303473072 _____ (Microsoft Corporation) C:\Users\Julio\Downloads\office2007sp2-kb953195-fullfile-pt-br.exe
2016-06-18 20:38 - 2016-06-18 20:38 - 00000000 ____D C:\Users\Todos os Usuários\DAEMON Tools Lite
2016-06-18 20:38 - 2016-06-18 20:38 - 00000000 ____D C:\Users\Julio\AppData\Roaming\DAEMON Tools Lite
2016-06-18 20:38 - 2016-06-18 20:38 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2016-06-18 16:01 - 2016-06-18 16:01 - 00002579 _____ C:\Users\Julio\Downloads\api-ms-win-crt-runtime-l1-1-0.zip
2016-06-18 15:57 - 2016-06-18 15:57 - 00197333 _____ C:\Users\Julio\Downloads\msvcp140.zip
2016-06-18 15:35 - 2016-06-18 15:35 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-18 15:35 - 2016-06-18 15:35 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-06-18 15:34 - 2014-05-14 13:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-06-18 15:34 - 2014-05-14 13:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-06-18 15:34 - 2014-05-14 13:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-06-18 15:34 - 2014-05-14 13:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-06-18 15:34 - 2014-05-14 13:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-06-18 15:34 - 2014-05-14 13:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-06-18 15:34 - 2014-05-14 13:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-06-18 15:34 - 2014-05-14 13:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-06-18 15:34 - 2014-05-14 13:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-06-18 15:34 - 2014-05-14 13:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-06-18 15:34 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-06-18 15:34 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-06-18 15:34 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-06-18 15:34 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-06-18 15:33 - 2016-06-20 09:44 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-18 15:33 - 2016-06-20 07:27 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-18 15:33 - 2016-06-18 21:52 - 00000000 ____D C:\Users\Julio\AppData\Local\Google
2016-06-18 15:33 - 2016-06-18 15:39 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-06-18 15:33 - 2016-06-18 15:39 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-06-18 15:33 - 2016-06-18 15:35 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-18 15:33 - 2016-06-18 15:33 - 00057560 _____ C:\Users\Julio\AppData\Local\GDIPFONTCACHEV1.DAT
2016-06-18 15:33 - 2016-06-18 15:33 - 00000000 ____D C:\Users\Julio\AppData\Local\Deployment
2016-06-18 15:33 - 2016-06-18 15:33 - 00000000 ____D C:\Users\Julio\AppData\Local\Apps\2.0
2016-06-18 15:30 - 2016-06-18 15:30 - 00001419 _____ C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-06-18 15:30 - 2016-06-18 15:30 - 00001385 _____ C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-06-18 15:30 - 2016-06-18 15:30 - 00000020 ___SH C:\Users\Julio\ntuser.ini
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Modelos
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Meus documentos
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Menu Iniciar
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Documents\Minhas músicas
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Documents\Minhas imagens
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Documents\Meus vídeos
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Dados de aplicativos
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Configurações locais
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\AppData\Local\Histórico
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\AppData\Local\Dados de aplicativos
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Ambiente de rede
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 _SHDL C:\Users\Julio\Ambiente de impressão
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 ____D C:\Users\Julio\AppData\Local\VirtualStore
2016-06-18 15:30 - 2016-06-18 15:30 - 00000000 ____D C:\Users\Julio
2016-06-18 15:30 - 2011-02-05 11:53 - 00000000 ____D C:\Users\Julio\AppData\Roaming\Media Center Programs
2016-06-18 15:28 - 2016-06-18 15:28 - 00418768 __RSH C:\SOUIM
2016-06-18 15:28 - 2016-06-18 15:28 - 00000020 __RSH C:\win7.ld
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Usuário Padrão
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Todos os Usuários
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Modelos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Meus documentos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Menu Iniciar
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Configurações locais
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Ambiente de rede
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Modelos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Menu Iniciar
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Favoritos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Documentos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Program Files\Common Files\Sistema
2016-06-18 15:28 - 2016-06-18 15:28 - 00000000 _SHDL C:\Program Files\Arquivos Comuns
2016-06-18 15:14 - 2016-06-18 15:14 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-06-18 15:14 - 2016-06-18 15:14 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-06-18 15:12 - 2016-06-18 15:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2016-06-18 15:04 - 2016-06-18 15:04 - 00000000 ____D C:\Windows.old.000
2016-06-16 16:40 - 2016-06-16 16:40 - 00000000 ____D C:\Nexon
2016-06-05 14:19 - 2016-06-05 14:29 - 00000000 ____D C:\server plugin
2016-06-01 00:49 - 2016-06-01 00:49 - 00000000 ____D C:\Server 1.8.8
2016-05-20 10:34 - 2016-05-20 10:35 - 00001024 _____ C:\.rnd
2016-05-13 20:30 - 2016-05-31 15:51 - 00000000 ____D C:\Minecraft_Backup
2016-04-23 07:16 - 2016-04-23 07:16 - 00000000 ____D C:\dir

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-20 07:34 - 2009-07-14 01:45 - 00017760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-20 07:34 - 2009-07-14 01:45 - 00017760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-20 07:31 - 2009-07-14 14:55 - 00654272 _____ C:\Windows\system32\prfh0416.dat
2016-06-20 07:31 - 2009-07-14 14:55 - 00124724 _____ C:\Windows\system32\prfc0416.dat
2016-06-20 07:31 - 2009-07-14 02:13 - 01491932 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-20 07:31 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-06-20 07:27 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-18 21:12 - 2011-02-05 11:53 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-06-18 15:28 - 2011-02-07 01:53 - 00000000 ____D C:\Windows\Panther
2016-06-18 15:28 - 2009-07-14 01:45 - 00000000 ____D C:\Windows\Setup
2016-06-18 15:28 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Windows NT
2016-06-18 15:26 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
2016-06-18 15:25 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\oobe
2016-06-18 15:24 - 2009-07-14 01:45 - 00274824 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-18 15:11 - 2011-02-05 11:54 - 00000000 ____D C:\Windows\CSC
2016-06-18 15:09 - 2015-08-24 21:46 - 00008192 __RSH C:\BOOTSECT.BAK
2016-06-18 15:09 - 2009-07-14 02:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-06-18 14:51 - 2015-10-31 22:47 - 00000000 __SHD C:\$360Section
2016-06-10 11:02 - 2015-10-31 22:42 - 00000000 _RSHD C:\360SANDBOX

Alguns arquivos em TEMP:
====================
C:\Users\Julio\AppData\Local\Temp\dt_4352.tmp.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2011-02-07 00:54

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité