cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 20-06-2016 01
Executado por Wilson Florencio (administrador) em WILSONFLORENCIO (22-06-2016 09:09:56)
Executando a partir de C:\Users\Wilson Florencio\Downloads
Perfis Carregados: Wilson Florencio (Perfis Disponíveis: Wilson Florencio)
Platform: Windows 7 Professional (X64) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: FF)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Oracle Corporation) C:\Windows\System32\VBoxService.exe
(Oracle Corporation) C:\Windows\System32\VBoxTray.exe
(Apache Software Foundation) C:\Apache2\bin\ApacheMonitor.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\xampp\xampp-control.exe
() C:\xampp\xampp-control.exe
() C:\xampp\xampp-control.exe
(David Harris) C:\xampp\MercuryMail\mercury.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\Adobe Application Manager (Updater).exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DECore\Setup.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [VBoxTray] => C:\Windows\system32\VBoxTray.exe [1657376 2016-04-28] (Oracle Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-739915380-4225785303-743020258-1000\...\MountPoints2: {5cb18dc7-3720-11e6-b759-806e6f6e6963} - D:\VBoxWindowsAdditions.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Apache Servers.lnk [2016-06-21]
ShortcutTarget: Monitor Apache Servers.lnk -> C:\Apache2\bin\ApacheMonitor.exe (Apache Software Foundation)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 192.168.3.1
Tcpip\..\Interfaces\{CFBE0047-5CF3-4655-A888-486DB5EFF345}: [DhcpNameServer] 192.168.3.1

Internet Explorer:
==================
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Wilson Florencio\AppData\Roaming\Mozilla\Firefox\Profiles\07j7mheq.default
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated)
S2 Apache2; C:\Apache2\bin\Apache.exe [20541 2005-02-10] (Apache Software Foundation) [Arquivo não assinado]
S2 FileZilla Server; C:\xampp\filezillaftp\filezillaserver.exe [632320 2012-02-26] (FileZilla Project) [Arquivo não assinado]
S2 mysql; C:\xampp\mysql\bin\mysqld.exe [11583304 2016-03-24] ()
R2 VBoxService; C:\Windows\System32\VBoxService.exe [1788832 2016-04-28] (Oracle Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 VBoxGuest; C:\Windows\System32\DRIVERS\VBoxGuest.sys [164344 2016-04-28] (Oracle Corporation)
R3 VBoxMouse; C:\Windows\System32\DRIVERS\VBoxMouse.sys [128992 2016-04-28] (Oracle Corporation)
R1 VBoxSF; C:\Windows\System32\drivers\VBoxSF.sys [291136 2016-04-28] (Oracle Corporation)
R3 VBoxVideo; C:\Windows\System32\DRIVERS\VBoxVideo.sys [149376 2016-04-28] (Oracle Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-22 09:08 - 2016-06-22 09:08 - 00013120 _____ C:\Users\Wilson Florencio\Downloads\Addition.txt
2016-06-22 09:07 - 2016-06-22 09:09 - 00005720 _____ C:\Users\Wilson Florencio\Downloads\FRST.txt
2016-06-22 09:07 - 2016-06-22 09:09 - 00000000 ____D C:\FRST
2016-06-22 09:06 - 2016-06-22 09:06 - 00001530 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2016-06-22 09:06 - 2016-06-22 09:06 - 00001518 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk
2016-06-22 09:05 - 2016-06-22 09:06 - 02387456 _____ (Farbar) C:\Users\Wilson Florencio\Downloads\FRST64.exe
2016-06-22 08:54 - 2016-06-22 08:54 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-06-22 08:54 - 2016-06-22 08:54 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-22 08:54 - 2016-06-22 08:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP
2016-06-22 08:51 - 2016-06-22 08:55 - 00000000 ____D C:\xampp
2016-06-22 08:29 - 2016-06-22 08:49 - 124491304 _____ (Bitnami) C:\Users\Wilson Florencio\Downloads\xampp-win32-7.0.6-0-VC14-installer.exe
2016-06-21 17:01 - 2016-06-22 08:58 - 325071513 _____ C:\Users\Wilson Florencio\Downloads\mysql-5.7.13-winx64.zip
2016-06-21 16:58 - 2016-06-21 17:00 - 21354005 _____ C:\Users\Wilson Florencio\Downloads\php-5.6.22-Win32-VC11-x86.zip
2016-06-21 16:58 - 2016-06-21 17:00 - 10340386 _____ C:\Users\Wilson Florencio\Downloads\php-debug-pack-5.6.22-Win32-VC11-x86.zip
2016-06-21 16:53 - 2016-06-21 16:54 - 09676003 _____ C:\Users\Wilson Florencio\Downloads\httpd-2.2.31-win64.zip
2016-06-21 16:42 - 2016-06-21 16:42 - 00057560 _____ C:\Users\Wilson Florencio\AppData\Local\GDIPFONTCACHEV1.DAT
2016-06-21 16:42 - 2016-06-21 16:42 - 00003538 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-WilsonFlorencio-Wilson Florencio
2016-06-21 16:41 - 2016-06-21 16:41 - 00001231 _____ C:\Users\Wilson Florencio\Desktop\Adobe Dreamweaver CS6.lnk
2016-06-21 16:41 - 2016-06-21 16:41 - 00000000 ____D C:\Users\Wilson Florencio\AppData\LocalLow\Adobe
2016-06-21 16:41 - 2016-06-21 16:41 - 00000000 ____D C:\Users\Todos os Usuários\regid.1986-12.com.adobe
2016-06-21 16:41 - 2016-06-21 16:41 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-06-21 16:40 - 2016-06-21 16:40 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2016-06-21 16:40 - 2016-06-21 16:40 - 00001353 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2016-06-21 16:40 - 2016-06-21 16:40 - 00000997 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2016-06-21 16:39 - 2016-06-21 16:41 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-06-21 16:39 - 2016-06-21 16:39 - 00001097 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Widget Browser.lnk
2016-06-21 16:39 - 2016-06-21 16:39 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Roaming\Macromedia
2016-06-21 16:39 - 2016-06-21 16:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-06-21 16:39 - 2016-06-21 16:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-06-21 16:35 - 2016-06-22 08:26 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-06-21 16:35 - 2016-06-22 08:26 - 00000000 ____D C:\ProgramData\Adobe
2016-06-21 16:35 - 2016-06-21 16:35 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Macromedia
2016-06-21 16:34 - 2016-06-22 09:06 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Local\Adobe
2016-06-21 16:34 - 2016-06-21 16:42 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Adobe
2016-06-21 16:04 - 2013-03-05 20:57 - 00000000 ____D C:\Users\Wilson Florencio\Downloads\Adobe Dreamweaver CS6
2016-06-21 15:13 - 2016-06-21 15:40 - 00000000 ____D C:\Users\Wilson Florencio\Desktop\Arquivos
2016-06-21 15:08 - 2016-06-21 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apache HTTP Server 2.0.53
2016-06-21 15:08 - 2016-06-21 15:08 - 00000000 ____D C:\Apache2
2016-06-21 14:47 - 2016-06-21 14:47 - 00000000 _____ C:\Users\Wilson Florencio\httpd
2016-06-21 14:46 - 2016-06-21 14:46 - 00000000 _____ C:\Windows\system32\httpd
2016-06-21 14:12 - 2016-06-21 16:48 - 00000000 ____D C:\CursoPhP
2016-06-21 13:55 - 2016-06-21 14:06 - 00039827 _____ C:\Windows\php.ini
2016-06-21 13:51 - 2004-09-21 14:08 - 00000000 ____D C:\php
2016-06-21 13:28 - 2016-06-21 13:28 - 00000000 ____D C:\Users\Wilson Florencio\Documents\Curso PHP
2016-06-21 12:15 - 1997-11-19 15:49 - 00303616 _____ (InstallShield Software Corporation) C:\Windows\IsUninst.exe
2016-06-21 11:30 - 2016-06-21 11:30 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox Guest Additions
2016-06-21 11:29 - 2016-06-21 11:29 - 00000000 ____D C:\Program Files\Oracle
2016-06-21 10:56 - 2016-06-21 15:44 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Local\Mozilla
2016-06-21 10:56 - 2016-06-21 10:58 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Mozilla
2016-06-21 10:56 - 2016-06-21 10:56 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-06-21 10:56 - 2016-06-21 10:56 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-06-21 10:56 - 2016-06-21 10:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-21 10:56 - 2016-06-21 10:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-21 10:52 - 2016-06-21 10:52 - 00242296 _____ C:\Users\Wilson Florencio\Downloads\Firefox Setup Stub 47.0.exe
2016-06-21 10:29 - 2016-06-13 19:31 - 00484008 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-06-21 10:22 - 2016-06-21 10:22 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\WinRAR
2016-06-21 10:21 - 2016-06-21 10:21 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-21 10:21 - 2016-06-21 10:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-21 10:21 - 2016-06-21 10:21 - 00000000 ____D C:\Program Files\WinRAR
2016-06-21 10:16 - 2016-06-21 10:16 - 06331344 _____ C:\Users\Wilson Florencio\Downloads\httpd-2.4.20.tar.bz2
2016-06-20 16:57 - 2016-06-21 14:47 - 00000000 ____D C:\Users\Wilson Florencio
2016-06-20 16:57 - 2016-06-20 16:57 - 00001419 _____ C:\Users\Wilson Florencio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-06-20 16:57 - 2016-06-20 16:57 - 00001385 _____ C:\Users\Wilson Florencio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-06-20 16:57 - 2016-06-20 16:57 - 00000020 ___SH C:\Users\Wilson Florencio\ntuser.ini
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Modelos
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Meus documentos
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Menu Iniciar
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Documents\Minhas músicas
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Documents\Minhas imagens
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Documents\Meus vídeos
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Dados de aplicativos
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Configurações locais
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\AppData\Local\Histórico
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\AppData\Local\Dados de aplicativos
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Ambiente de rede
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 _SHDL C:\Users\Wilson Florencio\Ambiente de impressão
2016-06-20 16:57 - 2016-06-20 16:57 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Local\VirtualStore
2016-06-20 16:57 - 2009-07-14 10:12 - 00000000 ____D C:\Users\Wilson Florencio\AppData\Roaming\Media Center Programs
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Usuário Padrão
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Todos os Usuários
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Modelos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Meus documentos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Menu Iniciar
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Configurações locais
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Ambiente de rede
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Modelos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Menu Iniciar
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Favoritos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Documentos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Program Files\Common Files\Sistema
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Program Files\Arquivos Comuns
2016-06-20 16:56 - 2016-06-20 16:56 - 00000000 _SHDL C:\Arquivos de Programas
2016-06-20 16:53 - 2016-06-20 16:53 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-06-20 16:53 - 2016-06-20 16:53 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-06-20 16:51 - 2016-06-20 16:56 - 00000000 ____D C:\Windows\Panther
2016-04-28 10:26 - 2016-04-28 10:26 - 01738840 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLpackspu.dll
2016-04-28 10:26 - 2016-04-28 10:26 - 01643248 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGL.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 01788832 _____ (Oracle Corporation) C:\Windows\system32\VBoxService.exe
2016-04-28 10:25 - 2016-04-28 10:25 - 01657376 _____ (Oracle Corporation) C:\Windows\system32\VBoxTray.exe
2016-04-28 10:25 - 2016-04-28 10:25 - 01489536 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLcrutil.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 01309296 _____ (Oracle Corporation) C:\Windows\system32\VBoxControl.exe
2016-04-28 10:25 - 2016-04-28 10:25 - 01249512 _____ (Oracle Corporation) C:\Windows\system32\VBoxMRXNP.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 01077072 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxMRXNP.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00887488 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLfeedbackspu.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00577264 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLarrayspu.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00291136 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxSF.sys
2016-04-28 10:25 - 2016-04-28 10:25 - 00164344 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxGuest.sys
2016-04-28 10:25 - 2016-04-28 10:25 - 00149376 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxVideo.sys
2016-04-28 10:25 - 2016-04-28 10:25 - 00140376 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLerrorspu.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00128992 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxMouse.sys
2016-04-28 10:25 - 2016-04-28 10:25 - 00098992 _____ (Oracle Corporation) C:\Windows\system32\VBoxDisp.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00094656 _____ (Oracle Corporation) C:\Windows\system32\VBoxOGLpassthroughspu.dll
2016-04-28 10:25 - 2016-04-28 10:25 - 00057888 _____ (Oracle Corporation) C:\Windows\system32\VBoxHook.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 01565824 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLpackspu.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 01381480 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGL.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 01281224 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLcrutil.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 00787688 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLfeedbackspu.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 00506104 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLarrayspu.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 00126880 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLerrorspu.dll
2016-04-28 10:22 - 2016-04-28 10:22 - 00087368 _____ (Oracle Corporation) C:\Windows\SysWOW64\VBoxOGLpassthroughspu.dll

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-22 08:17 - 2009-07-14 01:45 - 00010000 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-22 08:17 - 2009-07-14 01:45 - 00010000 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-21 16:11 - 2009-07-14 09:55 - 00654470 _____ C:\Windows\system32\prfh0416.dat
2016-06-21 16:11 - 2009-07-14 09:55 - 00124922 _____ C:\Windows\system32\prfc0416.dat
2016-06-21 16:11 - 2009-07-14 02:13 - 01491932 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-21 16:11 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-06-21 16:06 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-21 15:48 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-20 16:57 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
2016-06-20 16:56 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Windows NT
2016-06-20 16:54 - 2009-07-14 01:45 - 00274824 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-20 16:53 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\sysprep
2016-06-20 16:52 - 2009-07-14 10:12 - 00000000 ____D C:\Windows\CSC
2016-06-20 16:51 - 2009-07-14 02:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template

==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-06-21 12:35

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité