~ ZHPDiag v2015.8.7.112 Por Nicolas Coolman (2015/08/7) ~ iniciado por Wendling (Administrator) (2015/08/07 21:15:31) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: Version OK ~ Modo: Scanner ~ Relatório: C:\Users\Wendling\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Wendling\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Inicialização do sistema: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Navegadores Internet (3) - 1s GCIE: Google Chrome v44.0.2403.130 MFIE: Mozilla Firefox 39.0 (x86 pt-BR) v39.0 MSIE: Internet Explorer v11.0.9600.17914 ---\\ Informações sobre os produtos Windows (4) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Softwares de proteçao do sistema (1) - 1s Kaspersky Anti-Virus v15.0.2.361 ---\\ Softwares d'optimização do sistema (1) - 1s CCleaner v5.06 ---\\ Monitoramento dos softwares (3) - 1s Adobe Flash Player 16 ActiveX & Plugin 64-bit Adobe Flash Player 18 NPAPI Adobe Acrobat Reader DC - Português ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: AMD64 Family 16 Model 10 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8368.184 MB (72% free) ~ System Restore: Activé (Enable) ~ System drive C: has 60 GB free of 114 GB ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: WENDLING-PC ~ User Name: Wendling ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (3) - 0s ~ Drive C: has 60 GB free of 114 GB (System) ~ Drive E: has 439 GB free of 476 GB ~ Drive G: has 745 GB free of 952 GB ---\\ Estado do Centro de Segurança do Windows (16) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Pesquisa particular de ficheiros genéricos (23) - 0s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Windows Explorer.) () -- C:\Windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) () -- C:\Windows\System32\Wininit.exe [129024] [MD5.E066FDC3A2074D926903B8C31EF3B347] - (.Microsoft Corporation - Internet Extensions para Win32.) () -- C:\Windows\System32\wininet.dll [2427392] [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) () -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] [MD5.1877EB1495CFBDAB27D6A32F6DDF3818] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) () -- C:\Windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ---\\ Processos lançados (8) - 1s [MD5.6BF0147A7A924E5A3AE049A95ECC9B34] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [246784] [PID.928] [MD5.B7CC6DB515E9347EEC2FC19D4C09A962] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [672768] [PID.1180] [MD5.9C7C876ACB9B707ECD08BD434C46A4D3] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe [194000] [PID.1140] [MD5.CD421DDB5C6E5458CE52EDC36DE7DC5B] - (...) -- C:\Windows\System32\PnkBstrA.exe [76152] [PID.1156] [MD5.70AF0E844C9A684236B96E582D2B2E61] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avpui.exe [192768] [PID.2596] [MD5.B0D709EF53A34AEF9EBEC9F024F857A5] - (.Raptr Inc. - Elevation Proxy.) -- C:\Program Files (x86)\Raptr\raptr_ep64.exe [149760] [PID.5076] [MD5.76A12E1111EFB89E20903096D7C3CAF6] - (.Kaspersky Lab ZAO - Kaspersky Native Messaging Server for plugi.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\plugin-nm-server.exe [854824] [PID.5708] [MD5.D7AA45AF3145D2871BC814F8B7BD7293] - (.Kaspersky Lab ZAO - WMI x64 Helper.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\wmi64.exe [20376] [PID.5432] ---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2 (13) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com.br/ G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] __MSG_ExtensionName__ G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ogmlicblmiajmhbdggemakpjjeghfhka] Pically - Calendar Creator G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) (16) - 1s P2 - EXT FILE: (...) -- C:\Users\Wendling\AppData\Roaming\Mozilla\Firefox\Profiles\yvb04pta.default-1422655926814\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\buscape.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mercadolivre.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-br.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-br.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll P2 - FPN: [HKLM] [@esn.me/esnsonar,version=0.70.4] - (.ESN Social Software AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll P2 - FPN: [HKLM] [@esn/esnlaunch,version=2.3.0] - (.ESN Social Software AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll P2 - FPN: [HKLM] [@esn/npbattlelog,version=2.7.1] - (.EA Digital Illusions CE AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll P2 - FPN: [HKLM] [@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\content_blocker@kaspersky.com P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\virtual_keyboard@kaspersky.com ---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4) (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com.br/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, Gestão do Proxy (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Redireção do ficheiro Hosts (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ Browser Helper Objects do navegador (O2) (5) - 1s O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean) O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: Safe Money Plugin [64Bits] - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean) ---\\ Aplicações iniciadas por registo & pastas (O4) (6) - 0s O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Wendling\AppData\Local\Microsoft\OneDrive\OneDrive.exe O4 - HKLM\..\Wow6432Node\Run: [Raptr] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files (x86)\Raptr\raptrstub.exe O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [Malwarebytes Anti-Exploit] C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe (.not file.) O4 - HKUS\S-1-5-21-1735972694-2679632832-3279594583-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Wendling\AppData\Local\Microsoft\OneDrive\OneDrive.exe ---\\ Alteração Dominio/Clientes DNS (017) (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = domain.name O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = domain.name ---\\ Lista dos serviços NT não Microsoft e não desativados (023) (9) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - AMD Fuel Service.) - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: Servicio Kaspersky Anti-Virus 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\avp.exe O23 - Service: Serviço Atualização do Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\Windows\system32\EscSvc64.exe O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ---\\ Tarefas planificadas automaticamente (039) (22) - 4s [MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268976] [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512] [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512] [MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLDE.EXE [679488] [MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLDE.EXE [679488] [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [902] =>.Adobe Systems Incorporated O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job [1020] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job [1024] =>.Dropbox, Inc. O39 - APT: EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}.job [727] =>.SEIKO EPSON CORPORATION O39 - APT: EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95}.job [913] =>.SEIKO EPSON CORPORATION O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3840] =>.Adobe Systems Incorporated O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore [3768] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA [4020] =>.Dropbox, Inc. O39 - APT: EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-211 214 216 Series Invitation {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} [3794] =>.SEIKO EPSON CORPORATION O39 - APT: EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-211 214 216 Series Update {438ADD9C-7DBA-462A-A4E1-DB3AEBE91D95} [3980] =>.SEIKO EPSON CORPORATION O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{3AACD3F9-AAF0-4355-AAC2-1896EF527A0E} [3086] ---\\ Software instalados (042) (88) - 9s O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1 O42 - Logiciel: Adobe Flash Player 16 ActiveX & Plugin 64-bit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: EPSON XP-211 214 216 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON XP-211 214 216 Series O42 - Logiciel: Malwarebytes Anti-Exploit version 1.07.1.1015 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Exploit_is1 O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client O42 - Logiciel: WinRAR 5.00 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {426582A8-202F-D13C-8BD5-F00551BAFC93} O42 - Logiciel: Epson Customer Participation - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {814FA673-A085-403C-9545-747FC1495069} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8B6CFE66-6961-3E02-3C57-9BA146AFB935} O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8DF1EF50-AEB6-902C-F68C-4683C45784E6} O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8F2415FA-72F2-F029-0450-4EB2FAE484C5} O42 - Logiciel: AMD Steady Video Plug-In - (.AMD.) [HKLM][64Bits] -- {94BFDEF9-D91D-4B5D-8A60-08514C7191AF} O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C270821D-2479-D0F4-1BD1-7BBAF6762A98} O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F6BF49D7-479E-23FE-A8A9-63D193D05697} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI O42 - Logiciel: Adobe Shockwave Player + Authorware Web Player - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player + Authorware Web Player O42 - Logiciel: MSI Afterburner 4.1.1 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner O42 - Logiciel: ESN Sonar - (.ESN Social Software AB.) [HKLM][64Bits] -- ESN Sonar-0.70.4 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: HD Tune Pro 5.60 - (.EFD Software.) [HKLM][64Bits] -- HD Tune Pro_is1 O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142} O42 - Logiciel: K-Lite Mega Codec Pack 11.1.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Mozilla Firefox 39.0 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 pt-BR) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Native Instruments Controller Editor - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Controller Editor O42 - Logiciel: Native Instruments Guitar Rig 5 - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig 5 O42 - Logiciel: Native Instruments Guitar Rig Mobile I/O - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig Mobile I/O O42 - Logiciel: Native Instruments Guitar Rig Session I/O - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Guitar Rig Session I/O O42 - Logiciel: Native Instruments Rig Kontrol 3 - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Rig Kontrol 3 O42 - Logiciel: Native Instruments Service Center - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Service Center O42 - Logiciel: Naviextras Toolbox - (.NNG Llc..) [HKLM][64Bits] -- Naviextras Toolbox O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin O42 - Logiciel: Raptr - (...) [HKLM][64Bits] -- Raptr O42 - Logiciel: RivaTuner Statistics Server 6.3.0 - (.Unwinder.) [HKLM][64Bits] -- RTSS O42 - Logiciel: SpywareBlaster 5.2 - (.BrightFort LLC.) [HKLM][64Bits] -- SpywareBlaster_is1 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam O42 - Logiciel: Hitman: Absolution - (.IO Interactive.) [HKLM][64Bits] -- Steam App 203140 O42 - Logiciel: Saints Row IV - (.Deep Silver Volition.) [HKLM][64Bits] -- Steam App 206420 O42 - Logiciel: Don't Starve - (.Klei Entertainment.) [HKLM][64Bits] -- Steam App 219740 O42 - Logiciel: Don't Starve Together Beta - (.Klei Entertainment.) [HKLM][64Bits] -- Steam App 322330 O42 - Logiciel: Besiege - (.Spiderling Studios.) [HKLM][64Bits] -- Steam App 346010 O42 - Logiciel: Sniper Elite - (.Rebellion.) [HKLM][64Bits] -- Steam App 3700 O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850 O42 - Logiciel: Manual Epson XP-211_XP-214 versão 1.0 - (...) [HKLM][64Bits] -- UsersGuideManual Epson XP-211_XP-214_is1 O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142} O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} O42 - Logiciel: Epson Event Manager - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {10144CFE-D76C-4CFA-81A1-37A1642349A3} O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47} O42 - Logiciel: Adobe Photoshop CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {15FEDA5F-141C-4127-8D7E-B962D1742728} O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A} O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799} O42 - Logiciel: Suporte para Aplicativos Apple - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} O42 - Logiciel: Adobe After Effects CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4817D846-700B-474E-A31B-80892B3E92E3} O42 - Logiciel: Naviextras Toolbox Prerequesities - (.NNG Llc..) [HKLM][64Bits] -- {537575D6-3B96-474C-BD8F-DFF667363DBD} O42 - Logiciel: Battlefield 1942™ - (.Electronic Arts.) [HKLM][64Bits] -- {5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Adobe Premiere Pro CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7176B973-6011-43C1-AEBC-2D73FE7C6982} O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392} O42 - Logiciel: Battlefield 4™ - (.Electronic Arts.) [HKLM][64Bits] -- {ABADE36E-EC37-413B-8179-B432AD3FACE7} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Acrobat Reader DC - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-AC0F074E4100} O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} O42 - Logiciel: The Sims™ 3 - (.Electronic Arts.) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8} O42 - Logiciel: aTube Catcher versão 3.8 - (.DsNET Corp.) [HKLM][64Bits] -- {D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1 O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {D60071DB-459C-465C-92EF-336E65F1A436} O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FE23D063-934D-4829-A0D8-00634CE79B4A} O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (121) - 9s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\ASIO4ALL HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins HKLM\SOFTWARE\Wow6432Node\bethesda softworks HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\EpsonNet HKLM\SOFTWARE\Wow6432Node\ESN Launcher HKLM\SOFTWARE\Wow6432Node\ESN Sonar-0.70.4 HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MSI HKLM\SOFTWARE\Wow6432Node\My Company Name HKLM\SOFTWARE\Wow6432Node\Native Instruments HKLM\SOFTWARE\Wow6432Node\Naviextras HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Origin HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\Overwolf HKLM\SOFTWARE\Wow6432Node\Propellerhead Software HKLM\SOFTWARE\Wow6432Node\Raptr HKLM\SOFTWARE\Wow6432Node\Riot Games HKLM\SOFTWARE\Wow6432Node\SEIKO EPSON CORPORATION HKLM\SOFTWARE\Wow6432Node\Sims HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SpywareBlaster HKLM\SOFTWARE\Wow6432Node\Swearware HKLM\SOFTWARE\Wow6432Node\Unwinder HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Even Balance HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AMD HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASIO4ALL v2 by Wuschel HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Battlefield 1942 HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\EFD Software HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\IO Interactive HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Leadertech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MSI HKCU\SOFTWARE\Native Instruments HKCU\SOFTWARE\Naviextras HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PACE Anti-Piracy HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Raptr HKCU\SOFTWARE\SEIKO EPSON CORPORATION HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Spiderling Games HKCU\SOFTWARE\SpywareBlaster HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Unwinder HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Wget HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Conteúdo das pastas Programs (O43) (215) - 7s O43 - CFD: 2015/07/11 10:39:06 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/07/11 10:37:48 - [] D -- C:\Program Files (x86)\Adobe Media Player O43 - CFD: 2015/07/22 18:51:04 - [] D -- C:\Program Files (x86)\AMD O43 - CFD: 2015/06/23 13:33:54 - [] D -- C:\Program Files (x86)\AMD AVT O43 - CFD: 2015/06/23 20:19:33 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/07/11 21:13:36 - [] D -- C:\Program Files (x86)\ASIO4ALL v2 O43 - CFD: 2015/06/24 20:12:03 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins O43 - CFD: 2015/08/03 22:20:47 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/07/11 21:08:15 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 2015/07/30 18:28:27 - [] D -- C:\Program Files (x86)\Dropbox O43 - CFD: 2015/06/23 20:20:50 - [] D -- C:\Program Files (x86)\DsNET Corp O43 - CFD: 2015/06/25 12:21:03 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 2015/06/25 16:20:33 - [] D -- C:\Program Files (x86)\EPSON Software O43 - CFD: 2015/06/22 22:24:53 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/08/07 20:55:15 - [] D -- C:\Program Files (x86)\HD Tune Pro O43 - CFD: 2015/07/10 22:01:43 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/07/15 08:13:06 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/06/23 13:00:56 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/06/22 22:20:34 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 2015/08/03 19:31:12 - [] D -- C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 2015/06/22 22:30:08 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/06/22 22:30:06 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/06/25 12:58:16 - [] D -- C:\Program Files (x86)\Microsoft OneDrive O43 - CFD: 2015/06/24 15:05:48 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/06/23 13:31:46 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/08/02 20:57:43 - [] D -- C:\Program Files (x86)\MKJogo O43 - CFD: 2015/07/08 16:42:55 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/07/08 19:09:36 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/07/19 16:56:10 - [] D -- C:\Program Files (x86)\MSI Afterburner O43 - CFD: 2015/07/01 22:05:40 - [] D -- C:\Program Files (x86)\My Company Name O43 - CFD: 2015/07/06 22:04:40 - [] D -- C:\Program Files (x86)\Naviextras O43 - CFD: 2015/07/27 18:14:05 - [] D -- C:\Program Files (x86)\Origin O43 - CFD: 2015/07/11 10:18:20 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 2015/07/28 21:32:48 - [] D -- C:\Program Files (x86)\Raptr O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/07/19 16:56:14 - [] D -- C:\Program Files (x86)\RivaTuner Statistics Server O43 - CFD: 2015/07/17 18:36:14 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/07/14 23:18:14 - [] D -- C:\Program Files (x86)\Steam O43 - CFD: 2009/07/14 01:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2015/06/23 19:26:10 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/06/23 22:36:57 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/23 22:37:02 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 00:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2010/11/21 06:37:34 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/11 00:32:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/22 21:58:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/11 10:37:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe O43 - CFD: 2015/08/03 19:20:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 2015/06/23 19:01:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved O43 - CFD: 2015/06/23 20:20:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher O43 - CFD: 2015/07/03 18:19:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 1942 O43 - CFD: 2015/06/24 13:10:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 O43 - CFD: 2015/07/02 06:47:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 O43 - CFD: 2015/06/23 13:14:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/07/11 21:08:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 2015/07/30 18:28:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2015/06/25 12:21:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2015/06/25 12:38:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software O43 - CFD: 2015/07/10 22:01:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/06/22 22:24:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/08/07 20:55:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro O43 - CFD: 2015/06/22 22:16:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/06/22 22:20:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/08/03 19:31:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus O43 - CFD: 2009/07/14 01:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/06/22 22:33:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/06/24 13:18:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments O43 - CFD: 2015/07/04 23:05:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager O43 - CFD: 2015/06/24 13:01:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin O43 - CFD: 2015/07/11 10:18:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2015/07/11 00:15:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/07/19 14:26:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy O43 - CFD: 2009/07/14 01:54:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/06/23 19:25:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2010/11/21 06:48:04 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/07/17 18:36:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client O43 - CFD: 2015/06/23 19:26:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/06/22 22:17:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/07/11 10:38:04 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/08/03 19:20:33 - [] D -- C:\ProgramData\AMD O43 - CFD: 2015/06/23 20:19:33 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/07/11 10:18:05 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/08/03 19:20:56 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Dados de aplicativos O43 - CFD: 2015/07/11 21:08:47 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Documentos O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/07/06 12:35:39 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 2015/06/24 20:10:48 - [] D -- C:\ProgramData\EA Core O43 - CFD: 2015/07/04 22:49:55 - [] D -- C:\ProgramData\EA Logs O43 - CFD: 2015/06/24 20:10:53 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 2015/06/25 12:35:28 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Favoritos O43 - CFD: 2015/08/07 20:55:48 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 2015/08/03 21:41:49 - [] D -- C:\ProgramData\Licenses O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Menu Iniciar O43 - CFD: 2015/07/11 00:14:10 - [] ASD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/15 00:14:08 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/06/25 12:58:07 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2015/06/22 22:02:24 - [0] SHD -- C:\ProgramData\Modelos O43 - CFD: 2015/06/22 22:21:00 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/07/11 21:09:23 - [] D -- C:\ProgramData\Native Instruments O43 - CFD: 2015/06/23 13:01:05 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/08/06 17:55:19 - [] D -- C:\ProgramData\Origin O43 - CFD: 2015/07/01 22:08:56 - [] D -- C:\ProgramData\PACE Anti-Piracy O43 - CFD: 2015/06/22 22:14:48 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/07/11 10:38:56 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/07/30 18:30:30 - [] D -- C:\ProgramData\Riot Games O43 - CFD: 2015/07/17 18:36:19 - [] D -- C:\ProgramData\Skype O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/06/23 13:00:41 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/08/03 22:20:55 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/06/25 12:22:18 - [] D -- C:\ProgramData\UDL O43 - CFD: 2015/07/11 21:09:23 - [] HDC -- C:\ProgramData\{30FA7941-4170-4C83-A9A8-FDF01C431704} O43 - CFD: 2015/07/11 21:09:32 - [] HDC -- C:\ProgramData\{5A23829C-A66E-47B0-AD50-21A3FFE6C325} O43 - CFD: 2015/07/11 21:09:11 - [] HDC -- C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} O43 - CFD: 2015/07/11 21:10:54 - [] HDC -- C:\ProgramData\{B0CAD5CC-867E-473E-B55F-339F9635A45D} O43 - CFD: 2015/07/11 21:11:47 - [] HDC -- C:\ProgramData\{B7072B15-6E80-42FF-A9AE-4E62AF2B2418} O43 - CFD: 2015/07/11 21:10:20 - [] HDC -- C:\ProgramData\{CB28D9D3-6B5D-4AFA-BA37-B4AFAAAF71B9} O43 - CFD: 2015/07/11 10:38:12 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/07/01 22:05:09 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 2015/07/11 10:17:41 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2015/06/23 13:33:53 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\Program Files (x86)\Common Files\Avid O43 - CFD: 2015/07/11 21:11:12 - [] D -- C:\Program Files (x86)\Common Files\Digidesign O43 - CFD: 2015/07/03 18:19:45 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 2015/07/05 13:14:12 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/06/23 13:00:41 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/06/23 23:13:58 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2015/07/01 22:05:44 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/07/11 00:15:26 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2015/07/01 22:05:44 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/06/23 19:37:23 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 2015/06/23 22:37:02 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/07/11 13:03:34 - [] D -- C:\Users\Wendling\AppData\Roaming\Adobe O43 - CFD: 2015/06/24 21:10:01 - [] D -- C:\Users\Wendling\AppData\Roaming\AMD O43 - CFD: 2015/07/11 10:33:40 - [] D -- C:\Users\Wendling\AppData\Roaming\Apple Computer O43 - CFD: 2015/06/23 16:00:19 - [] D -- C:\Users\Wendling\AppData\Roaming\ATI O43 - CFD: 2015/07/16 18:08:00 - [] D -- C:\Users\Wendling\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 2015/07/06 12:37:31 - [] D -- C:\Users\Wendling\AppData\Roaming\Dropbox O43 - CFD: 2015/06/25 16:20:38 - [] D -- C:\Users\Wendling\AppData\Roaming\EPSON O43 - CFD: 2015/08/07 20:57:02 - [] D -- C:\Users\Wendling\AppData\Roaming\HD Tune Pro O43 - CFD: 2015/06/22 22:02:32 - [] D -- C:\Users\Wendling\AppData\Roaming\Identities O43 - CFD: 2015/06/25 12:25:49 - [] D -- C:\Users\Wendling\AppData\Roaming\Leadertech O43 - CFD: 2015/06/23 19:01:41 - [] D -- C:\Users\Wendling\AppData\Roaming\library_dir O43 - CFD: 2015/07/30 18:30:47 - [] D -- C:\Users\Wendling\AppData\Roaming\LolClient O43 - CFD: 2015/06/22 22:24:52 - [] D -- C:\Users\Wendling\AppData\Roaming\Macromedia O43 - CFD: 2010/11/21 06:48:04 - [0] D -- C:\Users\Wendling\AppData\Roaming\Media Center Programs O43 - CFD: 2015/07/22 18:51:04 - [] SD -- C:\Users\Wendling\AppData\Roaming\Microsoft O43 - CFD: 2015/06/22 22:23:31 - [] D -- C:\Users\Wendling\AppData\Roaming\Mozilla O43 - CFD: 2015/06/23 18:58:15 - [] D -- C:\Users\Wendling\AppData\Roaming\MPC-HC O43 - CFD: 2015/07/06 22:05:32 - [] D -- C:\Users\Wendling\AppData\Roaming\naviextras O43 - CFD: 2015/06/23 22:42:51 - [] D -- C:\Users\Wendling\AppData\Roaming\Origin O43 - CFD: 2015/07/01 22:08:56 - [] D -- C:\Users\Wendling\AppData\Roaming\PACE Anti-Piracy O43 - CFD: 2015/08/07 20:44:32 - [] D -- C:\Users\Wendling\AppData\Roaming\Raptr O43 - CFD: 2015/08/06 22:35:13 - [] D -- C:\Users\Wendling\AppData\Roaming\Skype O43 - CFD: 2015/07/22 21:08:21 - [] D -- C:\Users\Wendling\AppData\Roaming\TS3Client O43 - CFD: 2015/08/07 20:55:36 - [] D -- C:\Users\Wendling\AppData\Roaming\uTorrent O43 - CFD: 2015/07/18 03:13:18 - [] D -- C:\Users\Wendling\AppData\Roaming\vlc O43 - CFD: 2015/06/22 22:28:05 - [] D -- C:\Users\Wendling\AppData\Roaming\WinRAR O43 - CFD: 2015/08/07 21:15:39 - [] D -- C:\Users\Wendling\AppData\Roaming\ZHP O43 - CFD: 2015/07/18 12:46:10 - [] D -- C:\Users\Wendling\AppData\Local\Adobe O43 - CFD: 2015/06/23 16:00:25 - [] D -- C:\Users\Wendling\AppData\Local\AMD O43 - CFD: 2015/06/23 20:19:34 - [] D -- C:\Users\Wendling\AppData\Local\Apple O43 - CFD: 2015/06/22 22:23:08 - [] D -- C:\Users\Wendling\AppData\Local\Apps O43 - CFD: 2015/06/23 16:00:19 - [] D -- C:\Users\Wendling\AppData\Local\ATI O43 - CFD: 2015/07/01 22:08:56 - [] HD -- C:\Users\Wendling\AppData\Local\bj9WeayFD O43 - CFD: 2015/07/04 23:05:50 - [] D -- C:\Users\Wendling\AppData\Local\Black_Tree_Gaming O43 - CFD: 2015/07/05 12:46:10 - [] D -- C:\Users\Wendling\AppData\Local\Blue_entertainment O43 - CFD: 2015/07/20 20:06:57 - [] D -- C:\Users\Wendling\AppData\Local\CEF O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Dados de aplicativos O43 - CFD: 2015/06/22 22:23:34 - [0] D -- C:\Users\Wendling\AppData\Local\Deployment O43 - CFD: 2015/08/07 20:44:16 - [] D -- C:\Users\Wendling\AppData\Local\Dropbox O43 - CFD: 2015/08/05 07:30:43 - [] D -- C:\Users\Wendling\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/24 20:12:04 - [] D -- C:\Users\Wendling\AppData\Local\ESN O43 - CFD: 2015/06/22 22:24:59 - [] D -- C:\Users\Wendling\AppData\Local\Google O43 - CFD: 2015/06/29 22:19:30 - [] D -- C:\Users\Wendling\AppData\Local\GWX O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Histórico O43 - CFD: 2015/07/11 10:32:16 - [] D -- C:\Users\Wendling\AppData\Local\Microsoft O43 - CFD: 2015/06/22 22:30:06 - [0] D -- C:\Users\Wendling\AppData\Local\Microsoft Help O43 - CFD: 2015/06/22 22:21:14 - [] D -- C:\Users\Wendling\AppData\Local\Mozilla O43 - CFD: 2015/07/11 21:15:25 - [] D -- C:\Users\Wendling\AppData\Local\Native Instruments O43 - CFD: 2015/06/24 20:10:29 - [] D -- C:\Users\Wendling\AppData\Local\Origin O43 - CFD: 2015/07/01 22:08:56 - [0] D -- C:\Users\Wendling\AppData\Local\PACE Anti-Piracy O43 - CFD: 2015/06/22 22:20:16 - [] D -- C:\Users\Wendling\AppData\Local\Programs O43 - CFD: 2015/07/05 12:33:22 - [] D -- C:\Users\Wendling\AppData\Local\PunkBuster O43 - CFD: 2015/07/11 00:15:31 - [] D -- C:\Users\Wendling\AppData\Local\Skype O43 - CFD: 2015/07/04 23:03:48 - [] D -- C:\Users\Wendling\AppData\Local\Skyrim O43 - CFD: 2015/06/23 19:30:01 - [] D -- C:\Users\Wendling\AppData\Local\Steam O43 - CFD: 2015/08/07 21:15:27 - [] AD -- C:\Users\Wendling\AppData\Local\Temp O43 - CFD: 2015/06/22 22:02:26 - [0] SHD -- C:\Users\Wendling\AppData\Local\Temporary Internet Files O43 - CFD: 2015/06/22 22:02:29 - [0] D -- C:\Users\Wendling\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 01:54:32 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/23 22:41:02 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/11 21:13:36 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 O43 - CFD: 2015/07/05 12:36:19 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2009/07/14 01:49:38 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/02 20:57:57 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo O43 - CFD: 2015/07/19 14:29:50 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner O43 - CFD: 2015/07/06 22:04:43 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Naviextras O43 - CFD: 2015/07/19 14:30:18 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server O43 - CFD: 2015/06/23 22:41:02 - [] RD -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/07/10 20:21:39 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2015/06/22 22:17:15 - [] D -- C:\Users\Wendling\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53) (18) - 1s O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe O53 - SMSR:HKLM\...\startupreg\AdobeCS5ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe O53 - SMSR:HKLM\...\startupreg\AdobeCS6ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O53 - SMSR:HKLM\...\startupreg\Dropbox [Key] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe O53 - SMSR:HKLM\...\startupreg\EADM [Key] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe O53 - SMSR:HKLM\...\startupreg\EEventManager [Key] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe O53 - SMSR:HKLM\...\startupreg\MK LOL [Key] . (...) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe O53 - SMSR:HKLM\...\startupreg\Raptr [Key] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files (x86)\Raptr\raptrstub.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\SwitchBoard [Key] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ---\\ Lista dos drivers do sistema (SDL) (O58) (67) - 1s O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/13 22:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] O58 - SDL:2015/07/15 23:09:00 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [297672] O58 - SDL:2012/12/03 22:49:38 A . (.Advanced Micro Devices Inc. - AMD miniIDE Driver.) -- C:\Windows\System32\drivers\amdide64.sys [11944] O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/13 22:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2011/03/11 03:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2014/11/09 14:19:08 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4108288] O58 - SDL:2015/07/15 07:20:32 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [96256] O58 - SDL:2015/07/15 23:06:36 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [21622272] O58 - SDL:2015/07/15 22:13:26 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [665088] O58 - SDL:2009/06/10 17:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/13 22:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2009/06/10 17:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2011/10/17 03:00:00 N . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224] O58 - SDL:2011/10/17 03:00:00 N . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224] O58 - SDL:2009/07/13 22:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2015/07/04 07:41:06 A . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- C:\Windows\System32\drivers\cm_km_w.sys [247016] O58 - SDL:2015/07/11 21:08:15 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] O58 - SDL:2009/07/13 22:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 17:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2009/06/10 17:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2010/11/21 00:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2011/03/11 03:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2009/07/13 22:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2015/07/04 07:41:06 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [478392] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Virtual Disk fre_wnet_x64.) -- C:\Windows\System32\drivers\kldisk.sys [64368] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [159960] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [225976] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [850608] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [39280] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x6.) -- C:\Windows\System32\drivers\klkbdflt.sys [40304] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [39280] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [24944] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [65208] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\drivers\klwtp.sys [85360] O58 - SDL:2015/07/04 07:41:08 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\drivers\kneps.sys [190648] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2009/07/13 22:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2011/03/11 03:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2011/11/03 03:01:00 N . (.Rovi Corporation - Px Engine Device Driver for 64-bit Windows.) -- C:\Windows\System32\drivers\PxHlpa64.sys [56208] O58 - SDL:2009/07/13 22:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/13 22:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2015/06/24 11:58:04 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [977624] O58 - SDL:2009/06/10 17:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/13 22:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/13 22:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2009/07/13 22:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2014/10/31 04:44:34 A . (.VIA Technologies, Inc. - Framework Version of ViaHub3 Dynamic Bus En.) -- C:\Windows\System32\drivers\ViaHub3.sys [225792] O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] O58 - SDL:2014/10/31 04:44:28 A . (.VIA Technologies, Inc. - WDF Driver for VIA eXtensible Host Controll.) -- C:\Windows\System32\drivers\xhcdrv.sys [305664] ---\\ Últimos ficheiros alterados ou criados (Utilizador) (061) (17) - 2s O61 - LFC: 2015/08/07 20:50:51 A . (.BitTorrent Inc..) -- C:\Users\Wendling\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe [1693024] O61 - LFC: 2015/08/06 17:43:09 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server2.raptr.com [1217] O61 - LFC: 2015/08/03 21:27:29 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server3.raptr.com [1217] O61 - LFC: 2015/08/05 19:54:58 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server4.raptr.com [1217] O61 - LFC: 2015/08/07 20:35:25 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server5.raptr.com [1217] O61 - LFC: 2015/08/01 17:01:50 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server6.raptr.com [1217] O61 - LFC: 2015/08/07 20:44:22 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server7.raptr.com [1217] O61 - LFC: 2015/08/04 09:13:31 A . (..) -- C:\Users\Wendling\AppData\Roaming\Raptr\data\namegamer\config\certificates\x509\tls_peers\xmpp-server8.raptr.com [1217] O61 - LFC: 2015/08/06 22:38:02 A . (..) -- C:\Users\Wendling\AppData\Roaming\AMD\GLCache\729ff77ca0da20e4_22.bin [30893] O61 - LFC: 2015/08/06 21:54:49 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF4\pb\PnkBstrB.exe [226168] O61 - LFC: 2015/08/06 21:55:00 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF4\pb\PnkBstrK.sys [138648] O61 - LFC: 2015/08/05 20:47:36 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\pbcl.dll [1017232] O61 - LFC: 2015/08/05 20:43:32 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\pbclold.dll [1017232] O61 - LFC: 2015/08/05 20:47:37 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\PnkBstrB.exe [348360] O61 - LFC: 2015/08/05 20:47:49 A . (..) -- C:\Users\Wendling\AppData\Local\PunkBuster\BF3\pb\PnkBstrK.sys [138816] O61 - LFC: 2015/08/07 20:55:51 A . (..) -- C:\Users\Wendling\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/08/07 20:44:09 A . (..) -- C:\Users\Wendling\AppData\Local\ATI\ACE\Manifest.Bin [30042] ---\\ Associações Shell Spawning (O67) (1) - 0s O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe ---\\ Menu de inicialização Internet (068) (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe ---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) (2) - 6s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {600FB4BB-3F3B-4CDE-BFCB-496E4C6EE5D1} - (Google) - http://www.google.com/ ---\\ Listagem dos serviços iniciados pelo Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [683520] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2603008] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\system32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536] ---\\ Lista das exceções do FireWall (FirewallRules) (O87) (26) - 1s O87 - FAEL: "{9B58AEB4-211E-4860-B6E5-A2FE96B3672F}" [In-None-P6-TRUE] .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe O87 - FAEL: "{92BB0704-69C9-4125-9E97-29FE6FC9AEAB}" [In-None-P17-TRUE] .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe O87 - FAEL: "{CE1A0F1A-873E-49A2-9F2B-4D8E0E5E6956}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4_x86.exe O87 - FAEL: "{28F1860B-1254-43AF-8DFC-3268C48E8280}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4_x86.exe O87 - FAEL: "{BF45834A-CA1B-4FBD-8317-B5782ADEE7EC}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4.exe O87 - FAEL: "{57A43650-1AC3-4644-9B69-389AD5BEBD1E}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 4™.) -- G:\JOGOS\Origin\Battlefield 4\bf4.exe O87 - FAEL: "{2E205C46-9D6D-4511-9B80-F6B73FAFF3E2}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Besiege\Besiege.exe O87 - FAEL: "{87BC6808-DAD3-40D3-89AA-171F6F67770B}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Besiege\Besiege.exe O87 - FAEL: "{C25C27B9-7135-4C28-A0EA-A0BA8E94DE7C}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Origin\Battlefield 1942\BF1942.exe O87 - FAEL: "{8267DCE2-0CD0-489B-AD7E-03F0401DE250}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Origin\Battlefield 1942\BF1942.exe O87 - FAEL: "{F63F448E-07BF-4A8C-9BA5-8933FA29E01D}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield 3™.) -- G:\JOGOS\Origin\Battlefield 3\bf3.exe O87 - FAEL: "{F910DB92-E08E-431E-87B4-A4CEBE4E7F06}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield 3™.) -- G:\JOGOS\Origin\Battlefield 3\bf3.exe O87 - FAEL: "{86034737-8017-49F5-8A71-7E355EB02119}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe O87 - FAEL: "{638C0901-CBCE-45E0-B02B-1FDB5FC16CE8}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe O87 - FAEL: "{8860374C-DFD0-4C66-99AC-9E5C6F41BFF2}" [In-None-P6-TRUE] .(.Koch Media GmbH - Saints Row IV.) -- G:\JOGOS\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe O87 - FAEL: "{D69A4C1A-54A1-4DE6-8A60-59CDD7C60F8E}" [In-None-P17-TRUE] .(.Koch Media GmbH - Saints Row IV.) -- G:\JOGOS\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe O87 - FAEL: "{BE9D4A38-FAE6-4894-AFFB-E96D55274608}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Sniper Elite\SniperElite.exe O87 - FAEL: "{0FFFBFD1-7BA3-4ABC-A2E0-A176DA3B99D7}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Sniper Elite\SniperElite.exe O87 - FAEL: "{C105B922-ED8E-42D4-A8D4-388E3C1C9F08}" [In-None-P6-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe O87 - FAEL: "{69C8DE67-C492-4376-B685-17594517617C}" [In-None-P17-TRUE] .(...) -- G:\JOGOS\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe O87 - FAEL: "{D972FE42-4586-46C5-8D4D-FCDC94ABA42B}" [In-None-P6-TRUE] .(.Copyright (C) 2012 - Hitman: Absolution.) -- G:\JOGOS\Steam\steamapps\common\Hitman Absolution\HMA.exe O87 - FAEL: "{2C832CD9-688C-418C-9325-D1C71950F30E}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - Hitman: Absolution.) -- G:\JOGOS\Steam\steamapps\common\Hitman Absolution\HMA.exe O87 - FAEL: "{577A3EA0-6AC8-4FC3-8A1E-68547CB2980C}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{915DDFC2-39D4-4071-AE4F-7CA474CA7F1F}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{302AB7D1-5233-4551-87BD-6F4EB3C85F43}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{613B3CDD-044A-44DD-92C8-D07A9DB5916C}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Wendling\AppData\Roaming\uTorrent\uTorrent.exe ---\\ Scâner Aditional (088) (1) - 0s ~ Nenhum ítem malicioso o desnecessários foi encontrado. ---\\ Resumo dos elementos encontrados na sua estação de trabalho (1) - 0s ~ Nenhum ítem malicioso o desnecessários foi encontrado. ~ End of the scan, 43269 items in 56 seconds (808)(0)()