cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x86) Versão: 18-07-2016
Executado por Carla (administrador) em CARLA-PC (19-07-2016 17:35:00)
Executando a partir de C:\Users\Carla\Downloads
Perfis Carregados: Carla (Perfis Disponíveis: Carla)
Platform: Microsoft Windows 7 Ultimate (X86) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Intel(R) Corporation) C:\Program Files\Intel\BCA\pabeSvc.exe
() C:\Windows\KMS-R@1n.exe
() C:\Windows\System32\srvany.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
(BitTorrent Inc.) C:\Users\Carla\AppData\Roaming\uTorrent\uTorrent.exe
(Spotify Ltd) C:\Users\Carla\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Spotify Ltd) C:\Users\Carla\AppData\Roaming\Spotify\Spotify.exe
() C:\Users\Carla\AppData\Roaming\oldhelp.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe
() C:\Users\Carla\AppData\Local\CarlTalent\JManalistycs.exe
(BitTorrent Inc.) C:\Users\Carla\AppData\Roaming\uTorrent\updates\3.4.7_42330\utorrentie.exe
(BitTorrent Inc.) C:\Users\Carla\AppData\Roaming\uTorrent\updates\3.4.7_42330\utorrentie.exe
(Spotify Ltd) C:\Users\Carla\AppData\Roaming\Spotify\SpotifyCrashService.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
() C:\Windows\KMS-R@1nhook.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
() C:\Users\Carla\AppData\Roaming\oldhelp.exe
(Spotify Ltd) C:\Users\Carla\AppData\Roaming\Spotify\Spotify.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [TWebCamera] => C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [4325800 2012-08-13] (TOSHIBA CORPORATION.)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [153136 2007-06-01] (Nero AG)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [uTorrent] => C:\Users\Carla\AppData\Roaming\uTorrent\uTorrent.exe [2530304 2016-06-07] (BitTorrent Inc.)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [Spotify Web Helper] => C:\Users\Carla\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1554032 2016-07-14] (Spotify Ltd)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [Spotify] => C:\Users\Carla\AppData\Roaming\Spotify\Spotify.exe [6913648 2016-07-14] (Spotify Ltd)
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [next system] => C:\Users\Carla\AppData\Roaming\oldhelp.exe [17328640 2016-06-27] ()
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\...\Run: [Unzip] => C:\Users\Carla\AppData\Local\Temp\systemzip.exe <===== ATENÇÃO
IFEO\OSPPSVC.EXE: [Debugger] KMS-R@1nhook.exe
IFEO\SppSvc.exe: [Debugger] KMS-R@1nhook.exe
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-06-23]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hurutrsutetypokiko.lnk [2016-06-23]
ShortcutTarget: hurutrsutetypokiko.lnk -> C:\Users\Carla\AppData\Local\CarlTalent\JManalistycs.exe ()

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Hosts: 0.0.0.1 mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 192.168.25.1
Tcpip\..\Interfaces\{31FA183D-8F50-4176-9947-78A003FD8512}: [DhcpNameServer] 192.168.25.1
Tcpip\..\Interfaces\{A4A3D6DB-70CC-429F-9CF1-E6AA4B446EBF}: [DhcpNameServer] 192.168.25.1

Internet Explorer:
==================
HKU\S-1-5-21-2263297410-568121635-1991056616-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com.br/
BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-06-28] (Intel Security)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2016-06-10] (Microsoft Corporation)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\root\Office16\URLREDIR.DLL [2016-06-10] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-06-10] (Microsoft Corporation)
Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-06-28] (Intel Security)
Toolbar: HKU\S-1-5-21-2263297410-568121635-1991056616-1000 -> True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-06-28] (Intel Security)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-06-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-06-10] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-14] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-14] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-01-20] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com.br/
CHR Profile: C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Apresentações) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-14]
CHR Extension: (Google Docs) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-14]
CHR Extension: (Google Drive) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-14]
CHR Extension: (YouTube) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-14]
CHR Extension: (Planilhas do Google) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-14]
CHR Extension: (Documentos Google off-line) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-14]
CHR Extension: (Skype) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-05-24]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-14]
CHR Extension: (Gmail) - C:\Users\Carla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-14]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 cfWiMAXService; C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe [185712 2010-01-28] (TOSHIBA CORPORATION)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2114816 2016-06-10] (Microsoft Corporation)
R2 ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [46448 2009-03-10] (TOSHIBA CORPORATION)
R2 IntelBCAsvc; C:\Program Files\Intel\BCA\pabeSvc.exe [2377368 2016-05-06] (Intel(R) Corporation)
R2 KMS-R@1n; C:\Windows\KMS-R@1n.exe [23040 2016-06-08] () [Arquivo não assinado]
R2 KMService; C:\Windows\system32\srvany.exe [8192 2016-05-14] () [Arquivo não assinado]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.334\McCHSvc.exe [239880 2016-05-31] (McAfee, Inc.)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [906208 2016-06-22] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16792 2016-06-22] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [73968 2016-06-22] (McAfee, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-13] (Microsoft Corporation)
S2 InstallerService; "C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe" [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R3 PGEffect; C:\Windows\System32\DRIVERS\pgeffect.sys [33616 2011-02-08] (TOSHIBA Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-07-19 17:35 - 2016-07-19 17:35 - 00013558 _____ C:\Users\Carla\Downloads\FRST.txt
2016-07-19 17:33 - 2016-07-19 17:35 - 00000000 ____D C:\FRST
2016-07-19 17:33 - 2016-07-19 17:33 - 01741824 _____ (Farbar) C:\Users\Carla\Downloads\FRST.exe
2016-07-19 17:28 - 2016-07-19 17:28 - 00629006 _____ C:\Users\Carla\Downloads\Windows6.1-KB2999226-x86.msu
2016-07-19 16:54 - 2016-07-19 16:54 - 00024623 _____ C:\Users\Carla\Desktop\emissaoBoletoRedirecionar.pdf
2016-07-19 16:44 - 2016-07-19 16:44 - 00120669 _____ C:\Users\Carla\Desktop\gutierre2.pdf
2016-07-19 16:40 - 2016-07-19 16:40 - 00120745 _____ C:\Users\Carla\Desktop\gutierre1.pdf
2016-07-19 16:17 - 2016-07-19 16:17 - 00001083 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk
2016-07-19 16:17 - 2016-07-19 16:17 - 00000000 ____D C:\Users\Carla\AppData\Roaming\DLL-files.com
2016-07-19 16:17 - 2016-07-19 16:17 - 00000000 ____D C:\Users\Carla\AppData\Roaming\DFXCT
2016-07-19 16:17 - 2016-07-19 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client
2016-07-19 16:17 - 2016-07-19 16:17 - 00000000 ____D C:\Program Files\DLL-Files.com Client
2016-07-19 16:16 - 2016-07-19 16:16 - 03785560 _____ (DLL-Files.com Client ) C:\Users\Carla\Downloads\clientsetup_d-0.exe
2016-07-19 16:07 - 2016-07-19 16:07 - 00001061 _____ C:\Users\Carla\Desktop\otPokemon New.lnk
2016-07-19 15:53 - 2012-08-30 13:15 - 00421200 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2016-07-19 15:53 - 2012-08-17 10:38 - 00773968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2016-07-19 15:49 - 2016-07-19 15:49 - 00421229 _____ C:\Users\Carla\Downloads\msvc_dll_error_fix_[youtube-Charlei13].rar
2016-07-19 15:44 - 2016-07-19 16:07 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\otPokemonNew
2016-07-18 11:45 - 2016-07-18 11:45 - 00000000 ____D C:\Users\Carla\otPokemon
2016-07-18 11:14 - 2016-07-18 11:14 - 13767776 _____ (Microsoft Corporation) C:\Users\Carla\Downloads\vc_redist.x86.exe
2016-07-18 11:00 - 2016-07-18 11:00 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Macromedia
2016-07-18 10:59 - 2016-07-19 16:18 - 00000000 ____D C:\Users\Carla\AppData\Roaming\otPokemon
2016-07-15 12:17 - 2016-07-15 12:17 - 00104274 _____ C:\Users\Carla\Downloads\WhatsApp-Image-20160715.jpeg
2016-07-13 17:25 - 2016-07-13 17:25 - 00333003 _____ C:\Users\Carla\Downloads\TERMO DE CONSENTIMENTO PARA USO DA TOXINA BOTULÍNICA.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00265171 _____ C:\Users\Carla\Downloads\questionário para dtm, bruxismo e apneia.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00224577 _____ C:\Users\Carla\Downloads\questionario para cefaléia.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00219712 _____ C:\Users\Carla\Downloads\Ficha de Controle de Toxina.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00215840 _____ C:\Users\Carla\Downloads\Ficha Aplicação do Ácido Hialurônico.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00016776 _____ C:\Users\Carla\Downloads\pos op toxina.pdf
2016-07-13 17:25 - 2016-07-13 17:25 - 00010216 _____ C:\Users\Carla\Downloads\PO preench.pdf
2016-07-12 14:18 - 2016-07-12 14:18 - 00258057 _____ C:\Users\Carla\Downloads\CADASTRO PESSOA FÍSICA INTHERA.pdf
2016-07-08 11:45 - 2016-07-08 11:45 - 00038682 _____ C:\Users\Carla\Downloads\Proposta (Pre Cadastro) 033-3432-130038353.html
2016-07-05 14:51 - 2015-01-05 10:19 - 00297984 _____ (Borland Software Corporation) C:\Windows\system32\midas.dll
2016-07-05 14:50 - 2016-07-05 14:50 - 36646912 _____ C:\Users\Carla\Downloads\INST_GERENCIADOR_SANTANDER.EXE
2016-07-05 14:50 - 2016-07-05 14:50 - 02140932 _____ C:\Users\Carla\MANUAL_GERENCIADOR_PDF.pdf
2016-06-28 16:10 - 2016-06-28 16:10 - 00040586 _____ C:\Users\Carla\Downloads\LOGOMARCA SHARING_FUNDO AZUL.cdr
2016-06-27 18:42 - 2016-06-27 18:42 - 17328640 _____ C:\Users\Carla\AppData\Roaming\oldhelp.exe
2016-06-27 18:42 - 2016-06-27 18:42 - 00000231 _____ C:\Users\Carla\AppData\Roaming\oldhelp.exe.config
2016-06-27 15:37 - 2016-06-28 15:08 - 00000000 ____D C:\Users\Carla\AppData\Roaming\vlc
2016-06-27 15:35 - 2016-06-27 15:35 - 00001024 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-06-27 15:35 - 2016-06-27 15:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-06-27 15:35 - 2016-06-27 15:35 - 00000000 ____D C:\Program Files\VideoLAN
2016-06-27 15:33 - 2016-06-27 15:33 - 30510920 _____ C:\Users\Carla\Downloads\vlc-2.2.2-win32.exe
2016-06-27 15:21 - 2016-06-27 15:21 - 00652800 _____ C:\Users\Carla\Downloads\AtualizacaoFlash_Plyer16.11.105.1.exe
2016-06-27 15:21 - 2016-06-27 15:21 - 00000000 ____D C:\Users\Carla\AppData\Roaming\F058B43B
2016-06-27 15:15 - 2016-06-27 15:15 - 07145472 _____ (1464157862_ooo_calc) C:\Users\Carla\AppData\Roaming\oldbug.dll
2016-06-24 15:47 - 2016-06-27 14:40 - 00000000 ____D C:\Users\Carla\Downloads\documentos miriam
2016-06-24 15:46 - 2016-06-24 15:47 - 00000000 ____D C:\Users\Carla\Downloads\documentos gabriel
2016-06-23 15:10 - 2016-06-23 15:10 - 00000000 ____D C:\Users\Todos os Usuários\TrueKey
2016-06-23 15:10 - 2016-06-23 15:10 - 00000000 ____D C:\ProgramData\TrueKey
2016-06-23 15:10 - 2016-06-23 15:10 - 00000000 ____D C:\Program Files\Intel
2016-06-23 15:09 - 2016-07-18 11:15 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-06-23 15:09 - 2016-07-18 11:15 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-23 15:09 - 2016-07-18 10:55 - 00001271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Key.lnk
2016-06-23 15:09 - 2016-07-11 09:25 - 00000000 ____D C:\Program Files\McAfee
2016-06-23 15:09 - 2016-06-24 13:17 - 00000000 ____D C:\Program Files\Common Files\McAfee
2016-06-23 15:09 - 2016-06-23 15:12 - 00000000 ____D C:\Users\Carla\AppData\Local\tkdata
2016-06-23 15:09 - 2016-06-23 15:09 - 00001257 _____ C:\Users\Carla\True Key.lnk
2016-06-23 15:09 - 2016-06-23 15:09 - 00000000 ____D C:\Program Files\Intel Security
2016-06-23 15:09 - 2016-06-23 15:09 - 00000000 ____D C:\Program Files\Common Files\AV
2016-06-23 15:00 - 2016-06-23 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-06-23 14:59 - 2016-07-18 16:40 - 00000000 ____D C:\Users\Todos os Usuários\McAfee Security Scan
2016-06-23 14:59 - 2016-07-18 16:40 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2016-06-23 14:59 - 2016-07-18 10:55 - 00000000 ____D C:\Program Files\TrueKey
2016-06-23 14:59 - 2016-06-30 13:30 - 00000000 ____D C:\Users\Todos os Usuários\McAfee
2016-06-23 14:59 - 2016-06-30 13:30 - 00000000 ____D C:\ProgramData\McAfee
2016-06-23 14:59 - 2016-06-23 15:00 - 00002045 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-06-23 14:59 - 2016-06-23 15:00 - 00000000 ____D C:\Program Files\McAfee Security Scan
2016-06-23 14:58 - 2016-07-14 13:57 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-23 14:58 - 2016-06-23 14:58 - 00002017 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-06-23 14:58 - 2016-06-23 14:58 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-06-23 14:58 - 2016-06-23 14:58 - 00000000 ____D C:\Program Files\Adobe
2016-06-23 14:57 - 2016-06-23 14:57 - 00000000 ____D C:\Users\Carla\AppData\Local\CarlTalent
2016-06-23 14:57 - 2016-06-23 14:57 - 00000000 _____ C:\Users\Carla\AppData\Local\Heysoul.ebay
2016-06-23 14:56 - 2016-06-23 14:56 - 00647680 _____ C:\Users\Carla\Downloads\Adobe Flash Player - 2016 - .exe
2016-06-23 14:01 - 2016-07-19 10:25 - 00000000 ____D C:\Users\Carla\AppData\Local\Spotify
2016-06-23 14:01 - 2016-06-23 14:01 - 00001805 _____ C:\Users\Carla\Desktop\Spotify.lnk
2016-06-23 14:01 - 2016-06-23 14:01 - 00001791 _____ C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2016-06-23 14:01 - 2016-06-23 14:01 - 00000000 ____D C:\Users\Carla\AppData\Local\CEF
2016-06-23 14:00 - 2016-07-19 16:21 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Spotify
2016-06-23 14:00 - 2016-06-23 14:00 - 00348376 _____ (Spotify Ltd) C:\Users\Carla\Downloads\SpotifySetup.exe
2016-06-22 14:12 - 2016-06-22 14:12 - 00013050 _____ C:\Users\Carla\Downloads\Doc para Registro.pdf
2016-06-09 16:59 - 2016-06-17 15:44 - 00000000 ____D C:\Users\Carla\Documents\Modelos Personalizados do Office
2016-06-09 16:59 - 2016-06-09 16:59 - 00014868 _____ C:\Users\Carla\Documents\TimeCard1.xlsx
2016-06-08 00:26 - 2016-06-08 00:26 - 00000000 ____D C:\Users\Carla\AppData\Local\mpress
2016-06-08 00:25 - 2016-06-08 00:26 - 00023040 _____ C:\Windows\KMS-R@1n.exe
2016-06-08 00:25 - 2016-06-08 00:26 - 00006144 ____N C:\Windows\KMS-QADhook.dll
2016-06-08 00:25 - 2016-06-08 00:26 - 00004096 ____N C:\Windows\KMS-R@1nhook.exe
2016-06-08 00:16 - 2016-06-08 00:16 - 00000000 ____D C:\Users\Carla\Tracing
2016-06-08 00:09 - 2009-11-25 11:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2016-06-08 00:09 - 2009-11-25 11:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2016-06-08 00:09 - 2009-11-25 11:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2016-06-08 00:09 - 2009-11-25 11:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2016-06-08 00:09 - 2009-11-25 11:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2016-06-08 00:06 - 2016-06-08 00:07 - 69999448 _____ (Microsoft Corporation) C:\Users\Carla\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe
2016-06-08 00:04 - 2016-06-08 00:04 - 00002162 _____ C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-06-08 00:04 - 2016-06-08 00:04 - 00002064 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-06-08 00:04 - 2016-06-08 00:04 - 00002064 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-06-08 00:04 - 2016-06-08 00:04 - 00002064 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-06-08 00:04 - 2016-06-08 00:04 - 00000000 ___RD C:\Users\Carla\OneDrive
2016-06-08 00:04 - 2016-06-08 00:04 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive
2016-06-08 00:04 - 2016-06-08 00:04 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-06-07 23:27 - 2016-06-07 23:27 - 00002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002417 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002406 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002371 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002352 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002342 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002338 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00002322 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-06-07 23:27 - 2016-06-07 23:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2016
2016-06-07 23:25 - 2016-06-20 14:56 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2016-06-07 23:25 - 2016-06-20 14:56 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-06-07 23:20 - 2016-06-07 23:20 - 00000000 ____D C:\Users\Carla\AppData\Roaming\WinRAR
2016-06-07 22:44 - 2016-06-07 22:57 - 2244831879 _____ C:\Users\Carla\Downloads\Office 2016 Pro Final Português Brasil RATONDOWNLOADS.rar
2016-06-07 22:43 - 2016-07-19 10:24 - 00000000 ____D C:\Users\Carla\AppData\LocalLow\uTorrent
2016-06-07 22:43 - 2016-07-18 16:28 - 00000000 ___SD C:\Users\Carla\AppData\LocalLow\Temp
2016-06-07 22:43 - 2016-06-07 22:43 - 00002639 _____ C:\Users\Carla\Desktop\µTorrent.lnk
2016-06-07 22:43 - 2016-06-07 22:43 - 00002639 _____ C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-06-07 22:43 - 2016-06-07 22:43 - 00000000 ____D C:\Users\Carla\AppData\Roaming\RPEng
2016-06-07 22:43 - 2016-06-07 22:43 - 00000000 ____D C:\Users\Carla\AppData\Roaming\PlutoTV
2016-06-07 22:40 - 2016-06-07 22:40 - 03342040 _____ C:\Users\Carla\Downloads\wrar531br.exe
2016-06-07 22:40 - 2016-06-07 22:40 - 00000279 _____ C:\Users\Carla\Downloads\Link-Magnet.txt
2016-06-07 22:40 - 2016-06-07 22:40 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-07 22:40 - 2016-06-07 22:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-07 22:39 - 2016-06-07 22:39 - 01213734 _____ C:\Users\Carla\Downloads\Re-Loader Office 2016.rar
2016-06-07 22:38 - 2016-07-19 17:34 - 00000000 ____D C:\Users\Carla\AppData\Roaming\uTorrent
2016-06-07 22:36 - 2016-06-07 22:37 - 02530304 _____ (BitTorrent Inc.) C:\Users\Carla\Downloads\uTorrent.exe
2016-06-01 14:37 - 2016-06-01 15:24 - 00000000 ____D C:\Users\Carla\AppData\Local\Microsoft Games
2016-05-31 09:09 - 2016-05-31 09:09 - 00187086 _____ C:\Users\Carla\Downloads\CNPJ.pdf
2016-05-31 09:08 - 2016-05-31 09:08 - 00707059 _____ C:\Users\Carla\Downloads\Constituição 04-09-2015.pdf
2016-05-25 14:25 - 2016-05-25 14:37 - 02914324 _____ C:\Users\Carla\Downloads\artessharing.zip
2016-05-25 14:25 - 2016-05-25 14:36 - 01906840 _____ C:\Users\Carla\Downloads\Proart Banner Escovário Impressão digital em lona 80 x 120.pdf
2016-05-23 20:07 - 2016-05-23 20:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2016-05-16 16:27 - 2016-05-16 16:27 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Tibia
2016-05-16 16:26 - 2016-07-19 15:42 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Skype
2016-05-16 16:26 - 2016-06-09 10:36 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2016-05-16 16:26 - 2016-06-09 10:36 - 00000000 ____D C:\ProgramData\Skype
2016-05-16 16:26 - 2016-05-16 16:26 - 00002687 _____ C:\Users\Carla\Desktop\Skype.lnk
2016-05-16 16:26 - 2016-05-16 16:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-05-16 16:26 - 2016-05-16 16:26 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-05-16 16:25 - 2016-05-16 16:25 - 01463424 _____ (Skype Technologies S.A.) C:\Users\Carla\Downloads\SkypeSetup.exe
2016-05-16 16:08 - 2016-05-16 16:10 - 45905484 _____ () C:\Users\Carla\Downloads\install1090.exe
2016-05-16 15:22 - 2016-06-27 16:12 - 00000000 ____D C:\Users\Carla\AppData\Local\Adobe
2016-05-16 15:22 - 2016-05-16 15:22 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Adobe
2016-05-16 15:22 - 2016-05-16 15:22 - 00000000 ____D C:\Users\Carla\AppData\LocalLow\Adobe
2016-05-15 19:11 - 2016-05-15 19:11 - 00000000 ____D C:\Windows\system32\sda
2016-05-15 19:10 - 2010-02-08 21:57 - 00186912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys
2016-05-15 19:10 - 2010-02-08 19:19 - 08038944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSUSTORicon.dll
2016-05-15 19:10 - 2010-02-08 19:19 - 00313888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll
2016-05-15 19:04 - 2016-05-15 19:04 - 00000000 ____D C:\Users\Todos os Usuários\Toshiba
2016-05-15 19:04 - 2016-05-15 19:04 - 00000000 ____D C:\Users\Carla\AppData\Local\Toshiba
2016-05-15 19:04 - 2016-05-15 19:04 - 00000000 ____D C:\ProgramData\Toshiba
2016-05-14 23:54 - 2016-05-14 19:23 - 00000000 ____D C:\Windows\Panther
2016-05-14 22:09 - 2016-05-14 22:09 - 00000866 _____ C:\Users\Carla\Desktop\Web Camera Application.lnk
2016-05-14 22:06 - 2016-06-08 00:15 - 00111520 _____ C:\Users\Carla\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-14 22:06 - 2016-05-14 22:08 - 00000000 ____D C:\Users\Carla\AppData\Local\Ahead
2016-05-14 22:05 - 2016-05-14 22:05 - 00002728 _____ C:\Users\Public\Desktop\Nero StartSmart Essentials.lnk
2016-05-14 22:05 - 2016-05-14 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials
2016-05-14 21:55 - 2016-05-14 21:55 - 00000000 ____D C:\Users\Todos os Usuários\Ahead
2016-05-14 21:55 - 2016-05-14 21:55 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Ahead
2016-05-14 21:55 - 2016-05-14 21:55 - 00000000 ____D C:\ProgramData\Ahead
2016-05-14 21:51 - 2016-05-14 21:54 - 00000000 ____D C:\Program Files\Common Files\Ahead
2016-05-14 21:51 - 2016-05-14 21:51 - 00000000 ____D C:\Users\Todos os Usuários\Nero
2016-05-14 21:51 - 2016-05-14 21:51 - 00000000 ____D C:\ProgramData\Nero
2016-05-14 21:50 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2016-05-14 21:50 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2016-05-14 21:20 - 2011-02-08 19:08 - 00033616 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\PGEffect.sys
2016-05-14 21:19 - 2016-05-15 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2016-05-14 20:52 - 2016-06-20 14:07 - 00002139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-14 20:52 - 2016-06-20 14:07 - 00002127 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-14 20:37 - 2016-05-14 20:37 - 00000000 ____D C:\Windows\system32\Atheros_L1e
2016-05-14 19:56 - 2016-07-19 17:06 - 00001058 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-14 19:56 - 2016-07-19 10:24 - 00001054 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-14 19:55 - 2016-05-14 21:33 - 00000000 ____D C:\Users\Carla\AppData\Local\Google
2016-05-14 19:51 - 2016-05-14 19:51 - 00001389 _____ C:\Users\Carla\Desktop\Internet Explorer.lnk
2016-05-14 19:50 - 2009-10-02 13:33 - 00862208 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192se.sys
2016-05-14 19:49 - 2016-05-14 19:49 - 00000000 ____D C:\Users\Carla\AppData\Roaming\WinBatch
2016-05-14 19:47 - 2016-05-14 19:47 - 00151552 _____ C:\Windows\KMService.exe
2016-05-14 19:47 - 2016-05-14 19:47 - 00008192 _____ C:\Windows\system32\srvany.exe
2016-05-14 19:42 - 2016-05-14 19:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-05-14 19:42 - 2016-05-14 19:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-05-14 19:41 - 2016-06-20 14:55 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-05-14 19:41 - 2016-05-14 19:41 - 00000000 ____D C:\Windows\PCHEALTH
2016-05-14 19:39 - 2016-06-20 14:56 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2016-05-14 19:39 - 2016-05-14 19:39 - 00000000 ____D C:\Users\Carla\AppData\Local\Microsoft Help
2016-05-14 19:30 - 2016-06-23 14:58 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-05-14 19:30 - 2016-06-23 14:58 - 00000000 ____D C:\ProgramData\Adobe
2016-05-14 19:28 - 2016-07-19 10:28 - 01633534 _____ C:\Windows\system32\PerfStringBackup.INI
2016-05-14 19:24 - 2016-05-14 19:24 - 00001389 _____ C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-05-14 19:23 - 2016-07-18 11:45 - 00000000 ____D C:\Users\Carla
2016-05-14 19:23 - 2016-05-14 19:23 - 00000020 ___SH C:\Users\Carla\ntuser.ini
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Usuário Padrão
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Todos os Usuários
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Modelos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Meus documentos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Menu Iniciar
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Configurações locais
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Ambiente de rede
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Modelos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Meus documentos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Menu Iniciar
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Documents\Minhas músicas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Documents\Minhas imagens
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Documents\Meus vídeos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Configurações locais
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\AppData\Local\Histórico
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\AppData\Local\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Ambiente de rede
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Users\Carla\Ambiente de impressão
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Modelos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Menu Iniciar
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Favoritos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Documentos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 _SHDL C:\Program Files\Common Files\Sistema
2016-05-14 19:23 - 2016-05-14 19:23 - 00000000 ____D C:\Users\Carla\AppData\Local\VirtualStore
2016-05-14 19:23 - 2009-07-14 04:48 - 00000000 ____D C:\Users\Carla\AppData\Roaming\Media Center Programs
2016-05-14 18:58 - 2016-05-14 18:58 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-05-14 18:58 - 2016-05-14 18:58 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-05-14 18:57 - 2016-05-14 18:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-07-19 17:22 - 2009-07-14 01:34 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-19 17:22 - 2009-07-14 01:34 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-19 10:28 - 2009-07-29 15:46 - 00705268 _____ C:\Windows\system32\prfh0416.dat
2016-07-19 10:28 - 2009-07-29 15:46 - 00147108 _____ C:\Windows\system32\prfc0416.dat
2016-07-19 10:28 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\inf
2016-07-19 10:23 - 2009-07-14 01:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-18 16:40 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\registration
2016-06-23 14:45 - 2009-07-13 23:37 - 00000000 ____D C:\Windows\system32\NDF
2016-06-20 14:55 - 2009-07-13 23:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-06-20 14:54 - 2016-05-14 19:39 - 00000000 ____D C:\Program Files\Microsoft Office

==================== Arquivos na raiz de alguns diretórios =======

2016-06-27 15:15 - 2016-06-27 15:15 - 7145472 _____ (1464157862_ooo_calc) C:\Users\Carla\AppData\Roaming\oldbug.dll
2016-06-27 18:42 - 2016-06-27 18:42 - 17328640 _____ () C:\Users\Carla\AppData\Roaming\oldhelp.exe
2016-06-27 18:42 - 2016-06-27 18:42 - 0000231 _____ () C:\Users\Carla\AppData\Roaming\oldhelp.exe.config
2016-06-23 14:57 - 2016-06-23 14:57 - 0000000 _____ () C:\Users\Carla\AppData\Local\Heysoul.ebay

Alguns arquivos em TEMP:
====================
C:\Users\Carla\AppData\Local\Temp\ose00000.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-07-14 10:01

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité