~ ZHPDiag v2015.8.11.117 Por Nicolas Coolman (2015/08/11) ~ iniciado por Realeno (Administrator) (2015/08/12 23:31:59) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: Version OK ~ Modo: Scanner ~ Relatório: C:\Users\Realeno\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Realeno\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Inicialização do sistema: Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Navegadores Internet (3) - 0s GCIE: Google Chrome v44.0.2403.130 MFIE: Mozilla Firefox 39.0.3 (x86 pt-BR) v39.0.3 MSIE: Internet Explorer v11.0.9600.16476 ---\\ Informações sobre os produtos Windows (4) - 2s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Softwares de proteçao do sistema (1) - 0s Avast Free Antivirus v10.3.2223 ---\\ Monitoramento dos softwares (2) - 0s Adobe Flash Player 18 NPAPI Adobe Reader 8.1.2 - Português ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8073.212 MB (73% free) ~ System Restore: Activé (Enable) ~ System drive C: has 710 GB free of 1907 GB ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: REALENO-PC ~ User Name: Realeno ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (1) - 0s ~ Drive C: has 710 GB free of 1907 GB (System) ---\\ Estado do Centro de Segurança do Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Pesquisa particular de ficheiros genéricos (23) - 0s [MD5.223A17B7D0A57330540984872EA51315] - (.Microsoft Corporation - Windows Explorer.) () -- C:\Windows\Explorer.exe [2288128] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) () -- C:\Windows\System32\Wininit.exe [129024] [MD5.9B6678DB9C6A232C5A84D2FDFFF8B0E1] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\Windows\System32\wininet.dll [2334208] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) () -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) () -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.50AB05903CBEF298D135A943D4432E3C] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [496128] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] [MD5.A61E76AA38582730CEFA51B78B3184B2] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102912] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] [MD5.631EC673CD9115AA5A3570E7C092A410] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] [MD5.A6AE4551BF8EED09FA3B6FCDF472F3E1] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1686888] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) () -- C:\Windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] [MD5.DF83AA1C4278E2C0E36C0479C1555A9C] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) () -- C:\Windows\System32\drivers\volsnap.sys [296808] ---\\ Processos lançados (30) - 1s [MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [146600] [PID.1300] [MD5.070DA2C5DFB8ADD3DDA699CAB0509101] - (...) -- C:\Program Files (x86)\Common Files\Nokia\ADUService\ADUService.exe [100984] [PID.1752] [MD5.8DDB6A485303B7B139587F19053F1FAA] - (.Greenwichers - Virtual Time Service.) -- C:\Program Files\Common Files\Clocker\Clocker.exe [58368] [PID.1824] [MD5.7016A5D74459577060366F7D1E44F495] - (.FileProperties_CompanyName - FileProperties_FileDescription.) -- C:\Program Files (x86)\24Seven savings\24seven_savings_notification_service.exe [1417216] [PID.2040] =>PUP.Optional.CrossRider [MD5.832CE330DD987227B7DEA8C03F22AEFA] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [628448] [PID.1976] [MD5.709C8623721A1F1EF388EA75A07EC33B] - (...) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [121344] [PID.1884] [MD5.C44B44E24B929631D9D7368F5B2B40CF] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.2012] [MD5.A8FD4605AACF006BBA3B2B90AC9565B2] - (.Copyright (C) 2010-2012 - MotoHelper Service.) -- C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [116632] [PID.2068] [MD5.875E4E0661F3A5994DF9E5E3A0A4F96B] - (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) -- C:\Windows\SysWOW64\IoctlSvc.exe [81920] [PID.2116] [MD5.EA735BF6DF13A857A83C99BF27A422AD] - (.Motorola - ForwardDemon.) -- C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657] [PID.2136] [MD5.8050F39244D3BF7651D142E0C901A974] - (.Copyright 2010-2012 - MotoHelperAgent.) -- C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe [776088] [PID.2148] [MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.2200] [MD5.E5C796B621F6FBA8616511063D7F0FFE] - (.StarWind Software - StarWind iSCSI Target (Alcohol Edition).) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688] [PID.2236] [MD5.C3A783DD30EAC4D327B316E2ACCF736D] - (.The Security Team - Windows Watchdog Service.) -- C:\Program Files\Common Files\WWS\Watchdog.exe [35328] [PID.2288] [MD5.20ECD0A490A121CB34F553FAD1DBBD39] - (.Seiko Epson Corporation - Epson Scanner Service (64bit).) -- C:\Windows\system32\EscSvc64.exe [135824] [PID.2472] [MD5.B7826A4D54C39019D8BC19A484D5D5EC] - (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7560296] [PID.3320] [MD5.E800FE44562B1872F617C87AD8F20225] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [170264] [PID.3468] [MD5.5D3342A551557882AF07A4861C11C70E] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [398104] [PID.3516] [MD5.FAE1F99BB09C4D3A6F914669C37FCB65] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [440600] [PID.3564] [MD5.28FACED3466AD363A57F53F867202191] - (.The Cargo Team - Cargo WebClient.) -- C:\Program Files\Cargo\Cargo.exe [79360] [PID.3588] [MD5.435F79D364B796A4EA0B5CAF24CA78BD] - (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [369200] [PID.3672] [MD5.7DFCCC67990B6DE7F30F553A4E4612A4] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [495616] [PID.3764] [MD5.16AFB34618E1286FF856DC600AC49C79] - (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968] [PID.3208] [MD5.799450710D1B09FAF0D220B4DA3BF431] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [6109776] [PID.3708] [MD5.6364FA7D825B600251A4D1DE7D6FF695] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.3740] [MD5.5DBC85C723E421198FD35C3355EBA996] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [310280] [PID.3716] [MD5.75F29D77B0540FCF47EE3BE000BBABDA] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.4192] [MD5.193AD338F2A64D17300AD640ADFA5D0A] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.1920] [MD5.F7CEB1E5F0000FDEEE04B046BBDE1D4E] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.5088] [MD5.0ECDED87539685FF86B0D21B2C46C087] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Realeno\Desktop\ZHPDiag3.exe [1901568] [PID.240] ---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2 (18) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://api.skytip.com.br/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com.br/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients4.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://id.google.com.br/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gkafonojmhjaephmjlkolafnbiodnolh] SKY Tip G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) (11) - 0s M0 - MFSP: prefs.js [Realeno - 7i89394h.default] http://www.google.com.br/ P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\buscape.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mercadolivre.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-br.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-br.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll ---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4) (20) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Gestão do Proxy (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Redireção do ficheiro Hosts (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Objects do navegador (O2) (4) - 0s O2 - BHO: (no name) [64Bits] - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Orphean) O2 - BHO: CrossriderApp0027793 [64Bits] - {11111111-1111-1111-1111-110211771193} (Orphean) =>PUP.Optional.CrossRider O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean) O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean) ---\\ Aplicações iniciadas por registo & pastas (O4) (29) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [Cargo] . (.The Cargo Team - Cargo WebClient.) -- C:\Program Files\Cargo\Cargo.exe O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKCU\..\Run: [SoftonicAssistant] C:\Users\Realeno\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe (.not file.) =>PUP.Optional.Softonic O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe O4 - HKCU\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKCU\..\Run: [Yeaplayer] C:\Program Files (x86)\Yeaplayer\Yeaplayermd.exe (.not file.) O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [mbot_br_105] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [DivXMediaServer] . (.DivX, LLC - DivX Media Server Launcher.) -- C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe O4 - HKLM\..\Wow6432Node\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [SoftonicAssistant] C:\Users\Realeno\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe (.not file.) =>PUP.Optional.Softonic O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Notas Autoadesivas.) -- C:\Windows\System32\StikyNot.exe O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [Yeaplayer] C:\Program Files (x86)\Yeaplayer\Yeaplayermd.exe (.not file.) O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O4 - HKUS\S-1-5-21-412762988-2162326371-2942994391-1000\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.) ---\\ Alteração Dominio/Clientes DNS (017) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 179.106.85.245 179.106.85.246 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 179.106.85.245 179.106.85.246 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 179.106.85.245 179.106.85.246 ---\\ Lista dos serviços NT não Microsoft e não desativados (023) (18) - 0s O23 - Service: ArcSoft Exchange Service (ADExchange) . (...) - C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe (.not file.) O23 - Service: ADU Service (Nokia Software Recovery Tool) (ADUServiceNSRT) . (...) - C:\Program Files (x86)\Common Files\Nokia\ADUService\ADUService.exe O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) . (.Alcohol Soft Development Team - Alcohol Virtual Drive Auto-mount Service.) - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe O23 - Service: Virtual Time Service (ClockerService) . (.Greenwichers - Virtual Time Service.) - C:\Program Files\Common Files\Clocker\Clocker.exe O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\Windows\system32\EscSvc64.exe O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: Motorola Device Manager Service (Motorola Device Manager) . (.Copyright (C) 2010-2012 - MotoHelper Service.) - C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\SysWOW64\IoctlSvc.exe O23 - Service: PST Service (PST Service) . (.Motorola - ForwardDemon.) - C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe O23 - Service: StarWind AE Service (StarWindServiceAE) . (.StarWind Software - StarWind iSCSI Target (Alcohol Edition).) - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: Windows Watchdog Service (WatchdogService) . (.The Security Team - Windows Watchdog Service.) - C:\Program Files\Common Files\WWS\Watchdog.exe ---\\ Tarefas planificadas automaticamente (039) (24) - 4s [MD5.7016A5D74459577060366F7D1E44F495] [APT] [24seven_savings_notification_service] (.FileProperties_CompanyName.) -- C:\Program Files (x86)\24Seven savings\24seven_savings_notification_service.exe [1417216] =>PUP.Optional.CrossRider [MD5.00000000000000000000000000000000] [APT] [24seven_savings_updating_service] (...) -- C:\Program Files (x86)\24Seven savings\24seven_savings_updating_service.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] [MD5.B3B87E58466CE9B6662819820010106C] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [1373872] [MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107912] [MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107912] [MD5.BAE87ABB2399C4F4F4AADF0061AA03ED] [APT] [Motorola Device Manager Engine] (.Copyright 2012.) -- C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [221592] [MD5.BAE87ABB2399C4F4F4AADF0061AA03ED] [APT] [Motorola Device Manager Initial Update] (.Copyright 2012.) -- C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [221592] [MD5.BAE87ABB2399C4F4F4AADF0061AA03ED] [APT] [Motorola Device Manager Update] (.Copyright 2012.) -- C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [221592] O39 - APT: 24seven_savings_notification_service - (.FileProperties_CompanyName.) -- C:\Windows\Tasks\24seven_savings_notification_service.job [1348] =>PUP.Optional.CrossRider O39 - APT: 24seven_savings_updating_service - (...) -- C:\Windows\Tasks\24seven_savings_updating_service.job [710] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [902] =>.Adobe Systems Incorporated O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: 24seven_savings_notification_service - (.FileProperties_CompanyName.) -- C:\Windows\System32\Tasks\24seven_savings_notification_service [4378] =>PUP.Optional.CrossRider O39 - APT: 24seven_savings_updating_service - (...) -- C:\Windows\System32\Tasks\24seven_savings_updating_service [3742] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3840] =>.Adobe Systems Incorporated O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4184] =>.AVAST Software O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. O39 - APT: Motorola Device Manager Engine - (.Copyright 2012.) -- C:\Windows\System32\Tasks\Motorola Device Manager Engine [3472] O39 - APT: Motorola Device Manager Initial Update - (.Copyright 2012.) -- C:\Windows\System32\Tasks\Motorola Device Manager Initial Update [3298] O39 - APT: Motorola Device Manager Update - (.Copyright 2012.) -- C:\Windows\System32\Tasks\Motorola Device Manager Update [3490] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3160] ---\\ Software instalados (042) (75) - 5s O42 - Logiciel: Pacote de Driver do Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1. - (.Nokia.) [HKLM][64Bits] -- 62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F O42 - Logiciel: Cargo WebClient - (.Supper Group.) [HKLM][64Bits] -- Cargo O42 - Logiciel: EPSON L355 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON L355 Series O42 - Logiciel: Windows SuperBargain Application - (.PopDeals.) [HKLM][64Bits] -- PopDeals O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva O42 - Logiciel: WinRAR 5.00 beta 5 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {09536BA1-E498-4CC3-B834-D884A67D7E34} O42 - Logiciel: Suporte para Aplicativos Apple Apple (64-bit) - (.Apple Inc..) [HKLM][64Bits] -- {0DF7096B-715A-4233-8633-C7A16ED6D616} O42 - Logiciel: Motorola Mobile Drivers Installation 5.9.0 - (.Motorola Inc..) [HKLM][64Bits] -- {4E7CCB76-687B-4C53-9A5E-08780AF3A551} O42 - Logiciel: Paint.NET v3.5.10 - (.dotPDN LLC.) [HKLM][64Bits] -- {529125EF-E3AC-4B74-97E6-F688A7C0F1C0} O42 - Logiciel: Revo Uninstaller Pro 3.0.8 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM][64Bits] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B} O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI O42 - Logiciel: Ashampoo Burning Studio 2010 Advanced - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Burning Studio 2010 Advanced_is1 O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM][64Bits] -- Audacity_is1 O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: Instalação do DivX - (.DivX, LLC.) [HKLM][64Bits] -- DivX Setup O42 - Logiciel: DVD Shrink 3.2 - (.DVD Shrink.) [HKLM][64Bits] -- DVD Shrink_is1 O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner O42 - Logiciel: ffdshow v1.1.4399 [2012-03-22] - (...) [HKLM][64Bits] -- ffdshow_is1 O42 - Logiciel: FormatFactory 2.60 - (.Free Time.) [HKLM][64Bits] -- FormatFactory O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM][64Bits] -- GOM Player O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: MiPony 2.2.2 - (...) [HKLM][64Bits] -- MiPony O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0.3 (x86 pt-BR) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: MPEG2 Codec(libmpeg2/mad) - (...) [HKLM][64Bits] -- MPEG2 Codec(libmpeg2/mad) O42 - Logiciel: PCSX2 - Playstation 2 Emulator - (...) [HKLM][64Bits] -- pcsx2-r3113 O42 - Logiciel: PhotoScape - (...) [HKLM][64Bits] -- PhotoScape O42 - Logiciel: Quantum - (.Quantum LLC.) [HKLM][64Bits] -- Quantum O42 - Logiciel: Real Alternative 2.0.2 - (...) [HKLM][64Bits] -- RealAlt_is1 O42 - Logiciel: RocketDock 1.3.5 - (.Punk Software.) [HKLM][64Bits] -- RocketDock_is1 O42 - Logiciel: UltraISO Premium V9.52 - (...) [HKLM][64Bits] -- UltraISO_is1 O42 - Logiciel: DirectVobSub 2.40.4209 - (.MPC-HC Team.) [HKLM][64Bits] -- vsfilter_is1 O42 - Logiciel: Xvid Video Codec - (.Xvid Team.) [HKLM][64Bits] -- Xvid Video Codec 1.3.2 O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} O42 - Logiciel: Java 7 Update 67 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217067FF} O42 - Logiciel: USB Serial Port Driver - (.Nokia.) [HKLM][64Bits] -- {281A7FBF-9E98-4639-AC73-D205BBF979AA} O42 - Logiciel: Motorola Device Manager - (.Motorola Mobility.) [HKLM][64Bits] -- {28DB8373-C1BB-444F-A427-A55585A12ED7} O42 - Logiciel: Motorola Device Software Update - (.Motorola Mobility.) [HKLM][64Bits] -- {2AADC4EE-94C8-422B-977B-547774C4A463} O42 - Logiciel: Suporte para Aplicativos Apple (32-bit) - (.Apple Inc..) [HKLM][64Bits] -- {447CDCE5-F555-429B-BFA6-642C3C6D684F} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} O42 - Logiciel: Game Graphic Studio - (.Obocaman.) [HKLM][64Bits] -- {5AEDCB07-25E3-4136-BE1E-BB2A2944355D} O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM][64Bits] -- {5DB849D6-9392-4FB7-9ABB-87ED433152E5} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: WinUSB Compatible ID Drivers - (.Nokia.) [HKLM][64Bits] -- {8ADD5526-3DEC-4151-AC39-DEE5CADBCFDC} O42 - Logiciel: Nokia Software Recovery Tool 1.5.0 - (.Nokia.) [HKLM][64Bits] -- {8CB03283-D26B-4DDC-A8E6-1E3E472ED99F} O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8DBC5A0A-31C4-46C7-B252-6B593EA11A87} O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F} O42 - Logiciel: WinUSB Drivers ext - (.Nokia.) [HKLM][64Bits] -- {A0B1E1BF-BEF5-4748-800B-E54ED9CDF8CE} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Reader 8.1.2 - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-A81200000003} O42 - Logiciel: Product API Installer - (.Nokia.) [HKLM][64Bits] -- {B1118B25-E580-4916-A1E3-01967AA7D9BE} O42 - Logiciel: WinUsb CoInstallers - (.Nokia.) [HKLM][64Bits] -- {B7D4B08A-9D89-4369-B51C-92CF8C03D2F8} O42 - Logiciel: Nokia Software Recovery Tool 1.5.0 - (.Nokia.) [HKLM][64Bits] -- {c19d81de-9c3e-4550-ac22-38a0575397ee} O42 - Logiciel: Flash Update Installer - (.Nokia.) [HKLM][64Bits] -- {C4561502-390D-4223-88CA-6B0AA366A3C0} O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM][64Bits] -- {C6115A28-F277-4E82-B067-84D28BF21046} O42 - Logiciel: Fuse Installer - (.Nokia.) [HKLM][64Bits] -- {D35369C4-90F8-41B2-A293-3BC0AECDF87C} O42 - Logiciel: aTube Catcher versão 3.8 - (.DsNET Corp.) [HKLM][64Bits] -- {D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1 O42 - Logiciel: Logon Application Seven 1.1.3 - (.k-rlitos.com.) [HKLM][64Bits] -- {D5254543-6F0D-419C-A69B-AD260215C814}_is1 O42 - Logiciel: ConvertXtoDVD 4.0.9.322 - (...) [HKLM][64Bits] -- {DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1 O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (...) [HKLM][64Bits] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1 O42 - Logiciel: DkZ Studio - (.abScroll (c) 2005.) [HKLM][64Bits] -- {F656DC79-013A-4683-8692-B938FC00B941} O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec O42 - Logiciel: Ultimate Codecs Setup Wizard Packages - (...) [HKCU][64Bits] -- Ultimate Codecs Setup Wizard Packages =>PUP.Optional.InstallCore ---\\ HKCU & HKLM Software Keys (134) - 5s HKLM\SOFTWARE\Wow6432Node\abScroll (c) 2005 HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Ahead HKLM\SOFTWARE\Wow6432Node\Alcohol Soft HKLM\SOFTWARE\Wow6432Node\ALWIL Software HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Ashampoo HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Audible HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Baidu Security HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos HKLM\SOFTWARE\Wow6432Node\DivX HKLM\SOFTWARE\Wow6432Node\DT Soft HKLM\SOFTWARE\Wow6432Node\EasyBoot Systems HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\GRETECH HKLM\SOFTWARE\Wow6432Node\HD01Plus-V9.4V29.09-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LG Electronics HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Mooii HKLM\SOFTWARE\Wow6432Node\Motorola HKLM\SOFTWARE\Wow6432Node\Motorola Mobility HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Myfree Codec HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Nokia HKLM\SOFTWARE\Wow6432Node\Nokia Mobile Phones HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PC Connectivity Solution HKLM\SOFTWARE\Wow6432Node\PCSuite HKLM\SOFTWARE\Wow6432Node\PCSX2 HKLM\SOFTWARE\Wow6432Node\Quantum HKLM\SOFTWARE\Wow6432Node\RealAlternative HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Reg HKLM\SOFTWARE\Wow6432Node\SSC Service Utility HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\VSO HKLM\SOFTWARE\Wow6432Node\Xvid Team HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\1Uiv6oQm0A0 HKCU\SOFTWARE\24Seven savings =>PUP.Optional.CrossRider HKCU\SOFTWARE\24Sevensavings HKCU\SOFTWARE\abScroll (c) 2005 HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\Alcohol Soft HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\Ashampoo HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Baixaki HKCU\SOFTWARE\DefaultCompany HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DT Soft HKCU\SOFTWARE\DVD Shrink HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\EPSON Software Updater HKCU\SOFTWARE\epsxe HKCU\SOFTWARE\FLT HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\FTDVD HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRETECH HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\LAV HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Mooii HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Myfree Codec HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nokia HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Paint.NET HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Quantum HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reg HKCU\SOFTWARE\RocketDock HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SDVDC HKCU\SOFTWARE\SEIKO EPSON CORPORATION HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\SoftPerfect HKCU\SOFTWARE\SoftVTU HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VirtualDJ HKCU\SOFTWARE\Vision Thing HKCU\SOFTWARE\vlxit91CtVlDH HKCU\SOFTWARE\VS Revo Group HKCU\SOFTWARE\VSO HKCU\SOFTWARE\WicReset HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\HD01Plus-V9.4V29.09 HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\MarkAny ---\\ Conteúdo das pastas Programs (O43) (207) - 4s O43 - CFD: 2015/04/01 12:59:44 - [] D -- C:\Program Files (x86)\24Seven savings =>PUP.Optional.CrossRider O43 - CFD: 2014/09/28 23:25:26 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2014/09/28 23:05:28 - [] D -- C:\Program Files (x86)\Alcohol Soft O43 - CFD: 2014/10/26 15:09:35 - [] D -- C:\Program Files (x86)\Ashampoo O43 - CFD: 2014/10/29 19:07:02 - [] D -- C:\Program Files (x86)\Audacity O43 - CFD: 2015/04/27 12:15:04 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/09/29 12:26:47 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 2014/09/29 10:11:26 - [0] D -- C:\Program Files (x86)\Digiarty O43 - CFD: 2014/09/29 10:27:11 - [] D -- C:\Program Files (x86)\DirectVobSub O43 - CFD: 2014/09/29 10:30:13 - [] D -- C:\Program Files (x86)\DivX O43 - CFD: 2014/11/21 11:39:50 - [] D -- C:\Program Files (x86)\DkZ Studio O43 - CFD: 2015/04/01 12:55:20 - [] D -- C:\Program Files (x86)\DsNET Corp O43 - CFD: 2014/09/29 10:31:33 - [0] D -- C:\Program Files (x86)\DSP-worx O43 - CFD: 2015/02/19 22:22:19 - [] D -- C:\Program Files (x86)\DVD Shrink O43 - CFD: 2014/10/01 00:33:24 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 2015/04/25 23:44:46 - [] D -- C:\Program Files (x86)\EPSON Software O43 - CFD: 2014/09/29 10:27:14 - [] D -- C:\Program Files (x86)\ffdshow O43 - CFD: 2014/10/20 16:34:12 - [] D -- C:\Program Files (x86)\Freemake O43 - CFD: 2014/09/28 23:18:40 - [] D -- C:\Program Files (x86)\FreeTime O43 - CFD: 2014/11/14 12:27:20 - [] D -- C:\Program Files (x86)\Game Graphic Studio O43 - CFD: 2014/09/28 23:09:26 - [] D -- C:\Program Files (x86)\GNU O43 - CFD: 2014/09/28 22:34:53 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2014/09/28 23:08:52 - [] D -- C:\Program Files (x86)\GRETECH O43 - CFD: 2015/08/12 23:17:23 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/03/25 20:34:12 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2013/12/12 10:34:09 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2014/09/28 23:37:29 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2014/09/29 11:15:52 - [] D -- C:\Program Files (x86)\k-rlitos.com O43 - CFD: 2015/02/24 20:32:37 - [] D -- C:\Program Files (x86)\LG Electronics O43 - CFD: 2014/09/28 23:16:42 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2014/09/28 23:20:00 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2014/09/28 23:19:59 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2014/09/28 23:19:59 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 2014/09/28 23:20:16 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services O43 - CFD: 2014/09/28 23:17:43 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2014/10/22 20:07:14 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2014/09/28 23:21:17 - [] D -- C:\Program Files (x86)\MiPony O43 - CFD: 2015/04/27 12:15:04 - [] D -- C:\Program Files (x86)\Motorola O43 - CFD: 2015/04/27 12:16:18 - [] D -- C:\Program Files (x86)\Motorola Mobility O43 - CFD: 2015/08/07 15:27:28 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/08/07 15:27:28 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2014/09/28 23:20:43 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/04/27 12:14:48 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2014/09/29 23:47:53 - [] D -- C:\Program Files (x86)\MyFree Codec O43 - CFD: 2014/09/28 23:13:45 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 2015/02/24 10:44:39 - [] D -- C:\Program Files (x86)\Nokia O43 - CFD: 2015/02/24 10:35:50 - [] D -- C:\Program Files (x86)\PC Connectivity Solution O43 - CFD: 2014/10/20 13:57:19 - [] D -- C:\Program Files (x86)\PCSX2 0.9.7 O43 - CFD: 2014/09/28 23:16:27 - [] D -- C:\Program Files (x86)\PhotoScape O43 - CFD: 2015/01/24 12:19:06 - [] D -- C:\Program Files (x86)\Photoshop CS5 O43 - CFD: 2014/09/28 23:23:52 - [] D -- C:\Program Files (x86)\Quantum O43 - CFD: 2014/09/28 23:09:43 - [] D -- C:\Program Files (x86)\Real Alternative O43 - CFD: 2015/03/25 20:33:20 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/06/08 17:40:02 - [] D -- C:\Program Files (x86)\RocketDock O43 - CFD: 2015/07/25 17:41:39 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/05/23 12:39:49 - [] D -- C:\Program Files (x86)\SSC Service Utility O43 - CFD: 2015/03/25 20:32:08 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2014/11/14 12:32:07 - [] D -- C:\Program Files (x86)\UltraISO O43 - CFD: 2009/07/14 01:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2014/10/08 22:57:03 - [] D -- C:\Program Files (x86)\VSO O43 - CFD: 2014/01/11 16:24:27 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2014/01/11 16:24:27 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2014/01/11 16:24:27 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 02:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2014/01/11 16:24:27 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 00:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2014/01/11 16:24:27 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2014/09/29 10:27:29 - [] D -- C:\Program Files (x86)\Xvid O43 - CFD: 2015/06/26 10:14:08 - [] D -- C:\Program Files (x86)\Yeaplayer O43 - CFD: 2014/09/28 22:06:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2014/09/28 22:06:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/09/28 23:05:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120% O43 - CFD: 2014/10/26 18:44:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo O43 - CFD: 2015/08/01 11:20:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher O43 - CFD: 2014/09/29 12:26:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 2014/09/29 10:27:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectVobSub O43 - CFD: 2014/09/29 10:29:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX O43 - CFD: 2015/02/19 22:22:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink O43 - CFD: 2014/10/01 00:33:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2015/04/25 23:44:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software O43 - CFD: 2014/09/29 10:27:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow O43 - CFD: 2014/11/14 12:27:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Graphic Studio O43 - CFD: 2014/09/28 22:06:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/09/28 23:08:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player O43 - CFD: 2015/04/02 00:02:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/09/28 23:37:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2014/09/29 11:15:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\k-rlitos Software O43 - CFD: 2009/07/14 01:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/09/28 23:34:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2014/09/28 23:21:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 2014/09/29 23:47:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec O43 - CFD: 2014/09/28 23:14:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition O43 - CFD: 2014/10/22 20:24:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia O43 - CFD: 2014/10/20 13:55:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2 O43 - CFD: 2014/09/28 23:16:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape O43 - CFD: 2014/09/28 23:24:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quantum O43 - CFD: 2014/09/28 23:09:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative O43 - CFD: 2015/02/24 20:23:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva O43 - CFD: 2014/09/28 23:22:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro O43 - CFD: 2015/06/08 17:40:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock O43 - CFD: 2015/07/25 17:42:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 2014/09/28 23:34:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2015/08/12 23:20:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2011/04/12 05:28:08 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/11/14 12:32:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO O43 - CFD: 2015/04/26 00:07:17 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ O43 - CFD: 2014/10/08 22:57:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO O43 - CFD: 2014/09/28 23:17:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2014/09/29 10:27:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid O43 - CFD: 2014/09/28 23:25:51 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/09/28 23:14:02 - [] D -- C:\ProgramData\Ahead O43 - CFD: 2014/09/28 23:26:43 - [] D -- C:\ProgramData\Alwil Software O43 - CFD: 2015/04/08 13:56:37 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/04/26 00:03:24 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/01/24 12:26:19 - [0] D -- C:\ProgramData\ArcSoft O43 - CFD: 2014/10/26 15:09:42 - [] D -- C:\ProgramData\ashampoo O43 - CFD: 2015/07/01 21:38:50 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2014/09/29 00:31:02 - [] D -- C:\ProgramData\Baidu Security O43 - CFD: 2015/04/17 00:06:59 - [] D -- C:\ProgramData\ClubSanDisk O43 - CFD: 2014/10/20 16:35:04 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2014/09/28 22:25:57 - [0] SHD -- C:\ProgramData\Dados de aplicativos O43 - CFD: 2014/09/29 12:25:52 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2014/09/29 10:30:15 - [] D -- C:\ProgramData\DivX O43 - CFD: 2014/09/28 22:25:57 - [0] SHD -- C:\ProgramData\Documentos O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/07/19 17:54:51 - [] D -- C:\ProgramData\DVD Shrink O43 - CFD: 2015/04/26 00:02:52 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/05/12 13:26:49 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2014/09/28 22:25:57 - [0] SHD -- C:\ProgramData\Favoritos O43 - CFD: 2014/09/29 10:16:50 - [] D -- C:\ProgramData\GRETECH O43 - CFD: 2015/02/24 10:45:10 - [0] D -- C:\ProgramData\Installations O43 - CFD: 2015/03/25 20:34:10 - [] D -- C:\ProgramData\InstallShield O43 - CFD: 2014/09/28 22:44:55 - [] D -- C:\ProgramData\Intel O43 - CFD: 2014/09/29 15:47:44 - [] D -- C:\ProgramData\LogMeIn O43 - CFD: 2014/09/28 22:25:57 - [0] SHD -- C:\ProgramData\Menu Iniciar O43 - CFD: 2015/03/25 20:10:01 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2014/09/28 23:34:29 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/09/28 22:25:57 - [0] SHD -- C:\ProgramData\Modelos O43 - CFD: 2015/04/27 12:17:01 - [] D -- C:\ProgramData\Motorola O43 - CFD: 2014/09/28 23:21:45 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2014/09/28 23:13:45 - [] D -- C:\ProgramData\Nero O43 - CFD: 2014/10/22 20:24:55 - [] D -- C:\ProgramData\Nokia O43 - CFD: 2014/09/28 23:38:09 - [0] D -- C:\ProgramData\Oracle O43 - CFD: 2014/10/22 20:11:25 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2014/10/22 20:43:10 - [] D -- C:\ProgramData\PC Suite O43 - CFD: 2015/07/25 17:41:44 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/09/28 23:37:58 - [] D -- C:\ProgramData\Sun O43 - CFD: 2009/07/14 02:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2014/10/20 16:35:09 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2014/09/28 23:22:29 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 2014/10/08 23:19:18 - [] D -- C:\ProgramData\vsosdk O43 - CFD: 2014/10/20 16:35:06 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2015/01/24 12:22:13 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2014/09/28 23:13:50 - [] D -- C:\Program Files (x86)\Common Files\Ahead O43 - CFD: 2015/04/25 23:56:38 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2014/09/28 23:20:15 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2014/09/29 10:29:49 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared O43 - CFD: 2014/11/14 12:32:07 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems O43 - CFD: 2014/09/28 22:39:25 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2014/09/28 22:41:39 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2014/09/28 23:37:57 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2014/11/14 12:42:39 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2015/04/27 12:15:04 - [] D -- C:\Program Files (x86)\Common Files\MSSoap O43 - CFD: 2015/02/24 10:44:39 - [] D -- C:\Program Files (x86)\Common Files\Nokia O43 - CFD: 2014/09/28 22:43:40 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2009/07/14 00:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2014/09/28 23:17:00 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/08/09 14:05:59 - [] D -- C:\Users\Realeno\AppData\Roaming\Adobe O43 - CFD: 2015/06/07 23:43:37 - [] D -- C:\Users\Realeno\AppData\Roaming\Ahead O43 - CFD: 2014/10/03 14:07:08 - [] D -- C:\Users\Realeno\AppData\Roaming\AVAST Software O43 - CFD: 2015/05/01 17:06:23 - [] D -- C:\Users\Realeno\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 2015/05/01 16:59:06 - [] D -- C:\Users\Realeno\AppData\Roaming\Dropbox O43 - CFD: 2015/05/01 23:56:10 - [] D -- C:\Users\Realeno\AppData\Roaming\GRETECH O43 - CFD: 2015/05/02 00:03:46 - [] D -- C:\Users\Realeno\AppData\Roaming\Macromedia O43 - CFD: 2015/05/30 21:56:30 - [] SD -- C:\Users\Realeno\AppData\Roaming\Microsoft O43 - CFD: 2015/08/12 23:08:26 - [] D -- C:\Users\Realeno\AppData\Roaming\Milestone O43 - CFD: 2015/08/11 16:19:14 - [] D -- C:\Users\Realeno\AppData\Roaming\Mipony O43 - CFD: 2015/05/01 23:51:51 - [] D -- C:\Users\Realeno\AppData\Roaming\Motorola Mobility O43 - CFD: 2015/05/02 00:02:19 - [] D -- C:\Users\Realeno\AppData\Roaming\Mozilla O43 - CFD: 2015/08/09 08:54:36 - [] D -- C:\Users\Realeno\AppData\Roaming\Quantum O43 - CFD: 2015/07/25 17:46:19 - [] D -- C:\Users\Realeno\AppData\Roaming\Samsung O43 - CFD: 2015/08/09 09:02:15 - [] D -- C:\Users\Realeno\AppData\Roaming\Vso O43 - CFD: 2015/05/07 18:14:43 - [] D -- C:\Users\Realeno\AppData\Roaming\WicReset O43 - CFD: 2015/05/02 00:04:18 - [] D -- C:\Users\Realeno\AppData\Roaming\WinRAR O43 - CFD: 2015/08/12 23:32:07 - [] D -- C:\Users\Realeno\AppData\Roaming\ZHP O43 - CFD: 2015/08/09 09:51:07 - [] D -- C:\Users\Realeno\AppData\Local\Adobe O43 - CFD: 2015/05/08 12:37:28 - [] D -- C:\Users\Realeno\AppData\Local\Ahead O43 - CFD: 2015/07/12 22:00:37 - [] D -- C:\Users\Realeno\AppData\Local\Diagnostics O43 - CFD: 2015/07/25 17:40:39 - [] D -- C:\Users\Realeno\AppData\Local\Downloaded Installations O43 - CFD: 2015/05/06 01:30:29 - [] D -- C:\Users\Realeno\AppData\Local\Google O43 - CFD: 2015/05/02 00:03:46 - [] D -- C:\Users\Realeno\AppData\Local\Macromedia O43 - CFD: 2015/08/11 23:19:55 - [] D -- C:\Users\Realeno\AppData\Local\Microsoft O43 - CFD: 2015/06/12 00:19:22 - [] D -- C:\Users\Realeno\AppData\Local\Microsoft Games O43 - CFD: 2015/05/02 00:02:20 - [] D -- C:\Users\Realeno\AppData\Local\Mozilla O43 - CFD: 2015/08/09 13:58:46 - [] D -- C:\Users\Realeno\AppData\Local\Paint.NET O43 - CFD: 2015/05/07 18:14:39 - [] D -- C:\Users\Realeno\AppData\Local\Programs O43 - CFD: 2015/07/25 17:46:15 - [] D -- C:\Users\Realeno\AppData\Local\Samsung O43 - CFD: 2015/08/12 23:31:33 - [] D -- C:\Users\Realeno\AppData\Local\Temp O43 - CFD: 2015/05/01 23:51:51 - [] D -- C:\Users\Realeno\AppData\Local\VirtualStore O43 - CFD: 2015/08/12 22:47:25 - [] D -- C:\Users\Realeno\AppData\Local\VS Revo Group O43 - CFD: 2015/06/26 10:12:59 - [] D -- C:\Users\Realeno\AppData\Local\Yeaplayer ---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53) (12) - 0s O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe O53 - SMSR:HKLM\...\startupreg\AlcoholAutomount [Key] . (.Alcohol Soft Development Team - Alcohol Virtual Drive Auto-mount Service.) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe O53 - SMSR:HKLM\...\startupreg\avast5 [Key] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe O53 - SMSR:HKLM\...\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} [Key] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe O53 - SMSR:HKLM\...\startupreg\Browser Infrastructure Helper [Key] . (...) -- C:\Users\Realeno\AppData\Local\Smartbar\Application\ShowPass.exe (.not file.) =>PUP.Optional.SmartBar O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O53 - SMSR:HKLM\...\startupreg\RTHDVCPL [Key] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\USB3MON [Key] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe ---\\ Lista dos drivers do sistema (SDL) (O58) (81) - 7s O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/13 22:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] O58 - SDL:2013/11/22 14:09:04 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/13 22:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2013/11/22 14:09:04 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968] O58 - SDL:2010/02/11 16:39:04 A . (.ALWIL Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [28752] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] O58 - SDL:2015/07/20 10:02:14 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1048856] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [447944] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [150160] O58 - SDL:2015/07/20 10:02:58 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808] O58 - SDL:2009/06/10 17:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/13 22:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2009/06/10 17:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2009/07/13 22:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2009/07/13 22:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 17:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2009/03/18 18:35:42 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [33856] O58 - SDL:2009/06/10 17:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2011/11/10 01:04:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [60184] O58 - SDL:2010/11/21 00:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2013/11/22 14:09:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2012/01/05 08:36:54 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [14652768] O58 - SDL:2009/07/13 22:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2011/12/05 16:23:08 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [331264] O58 - SDL:2012/01/04 16:58:50 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [16152] O58 - SDL:2012/01/04 16:58:50 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [355096] O58 - SDL:2012/01/04 16:58:50 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [786200] O58 - SDL:2012/07/03 11:50:00 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\Windows\System32\drivers\lgandnetdiag64.sys [29184] O58 - SDL:2012/07/03 11:50:00 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\Windows\System32\drivers\lgandnetmodem64.sys [36352] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2012/06/11 11:56:34 A . (.Motorola Mobility Inc - Motorola USB Composite Device Driver.) -- C:\Windows\System32\drivers\motccgp.sys [22016] O58 - SDL:2012/01/25 14:57:46 A . (.Motorola Mobility Inc - Motorola USB Composite Filter Driver.) -- C:\Windows\System32\drivers\motccgpfl.sys [9728] O58 - SDL:2009/01/29 18:11:38 A . (.Motorola Inc - Motorola Unsafe Removal Filter Driver.) -- C:\Windows\System32\drivers\motfilt.sys [6144] O58 - SDL:2012/06/08 16:09:12 A . (.Motorola Mobility Inc - Motorola USB Networking Driver.) -- C:\Windows\System32\drivers\Motousbnet.sys [27136] O58 - SDL:2012/06/08 16:08:54 A . (.Motorola - .) -- C:\Windows\System32\drivers\motswch.sys [8832] O58 - SDL:2011/11/08 13:59:12 A . (.Motorola Inc - Motorola USB Device Driver (SVC).) -- C:\Windows\System32\drivers\motusbdevice.sys [11776] O58 - SDL:2009/07/13 22:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2012/01/09 17:28:20 A . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\drivers\nmwcdnsucx64.sys [12800] O58 - SDL:2012/01/09 17:28:20 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\nmwcdnsux64.sys [171008] O58 - SDL:2013/11/22 14:09:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2013/11/22 14:09:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2012/06/11 11:33:46 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfdx64.sys [26112] O58 - SDL:2009/07/13 22:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/13 22:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2009/12/30 10:21:26 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [31800] O58 - SDL:2011/09/29 06:30:34 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [646248] O58 - SDL:2011/12/13 07:27:30 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4718952] O58 - SDL:2009/06/10 17:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/13 21:00:40 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] O58 - SDL:2009/07/13 22:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/13 22:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2014/09/28 23:00:00 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [560184] O58 - SDL:2014/06/16 03:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [17224] O58 - SDL:2014/06/16 03:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [17736] O58 - SDL:2014/06/16 03:01:38 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdcm.sys [17224] O58 - SDL:2014/06/16 03:01:38 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdwh.sys [17736] O58 - SDL:2014/06/16 03:01:34 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cm.sys [15360] O58 - SDL:2014/06/16 03:01:34 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_wh.sys [15872] O58 - SDL:2009/07/13 22:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2014/08/15 22:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] O58 - SDL:2009/03/18 16:35:42 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [33856] ---\\ Associações Shell Spawning (O67) (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor do Registro.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ---\\ Menu de inicialização Internet (068) (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe ---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) (1) - 3s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Listagem dos ficheiros Crack & Keygen (CKF) (O82) (2) - 63s O82 - LFC: 2008/09/07 23:43:49 A . (...) -- C:\Users\Realeno\Desktop\,\Programas\CorelDraw X4\CorelDraw X4 Keygen\CorelDraw X4 Keygen.exe [137728] =>.Crack,Keygen O82 - LFC: 2009/09/22 11:06:27 A . (...) -- C:\Users\Realeno\Desktop\,\Programas\CorelDraw X4\CorelDraw X4 Keygen\CorelDraw X4 Keygen.rar [134393] =>.Crack,Keygen ---\\ Listagem dos serviços iniciados pelo Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\system32\srvsvc.dll [235520] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777216] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [861184] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2420736] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [127488] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [223744] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536] ---\\ Lista das exceções do FireWall (FirewallRules) (O87) (6) - 10s O87 - FAEL: "TCP Query User{88B80032-F7D4-4024-ADC2-301E37A58B51}C:\program files (x86)\quantum\quantum.exe" [In-None-P6-TRUE] .(.Copyright (C) Quantum Torrents LLC - Quantum.) -- C:\program files (x86)\quantum\quantum.exe O87 - FAEL: "UDP Query User{B86A297C-8C62-4164-9E16-78D4BE3CF5A2}C:\program files (x86)\quantum\quantum.exe" [In-None-P17-TRUE] .(.Copyright (C) Quantum Torrents LLC - Quantum.) -- C:\program files (x86)\quantum\quantum.exe O87 - FAEL: "{38978473-17CF-4D60-B6B0-4E21C986A907}" [In-None-P6-TRUE] .(...) -- C:\Users\Realeno\AppData\Roaming\Dropbox\bin\Dropbox.exe (.not file.) O87 - FAEL: "{56F20783-8290-4F53-B533-E9FCBE54617D}" [In-None-P17-TRUE] .(...) -- C:\Users\Realeno\AppData\Roaming\Dropbox\bin\Dropbox.exe (.not file.) O87 - FAEL: "TCP Query User{0AFC048B-341A-4A2D-AA85-2C53CBD43F04}D:\easysetupassistant\easysetupassistant.exe" [In-None-P6-TRUE] .(...) -- D:\easysetupassistant\easysetupassistant.exe (.not file.) O87 - FAEL: "UDP Query User{470765D4-B12C-4B17-B1A6-6FC41076B011}D:\easysetupassistant\easysetupassistant.exe" [In-None-P17-TRUE] .(...) -- D:\easysetupassistant\easysetupassistant.exe (.not file.) ---\\ Listagem dos códigos dos software (PUC) (090) (1) - 1s O90 - PUC: "2051654CD093322488ACB6A03A663A0C" . (.Flash Update Installer.) =>PUP.Optional.FlashUpdate ---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados) (24) - 12s SS - Demand [2015/08/11 13:50:53] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - Auto [2014/08/22 14:52:18] [ 100984] ADU Service (Nokia Software Recovery Tool) (ADUServiceNSRT) . (...) - C:\Program Files (x86)\Common Files\Nokia\ADUService\ADUService.exe SR - Auto [2015/07/20 10:02:37] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SS - Auto [2012/01/05 12:42:34] [ 75624] Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) . (.Alcohol Soft Development Team.) - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe SR - Auto [2015/05/16 14:03:54] [ 58368] Virtual Time Service (ClockerService) . (.Greenwichers.) - C:\Program Files\Common Files\Clocker\Clocker.exe SS - Demand [2012/01/12 03:24:26] [ 274200] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe SR - Auto [2011/12/12 00:00:00] [ 135824] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\system32\EscSvc64.exe SS - Auto [2014/10/23 13:46:02] [ 107912] Serviço do Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2014/10/23 13:46:02] [ 107912] Serviço do Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - Auto [2012/02/02 22:29:52] [ 628448] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe SR - Auto [2012/02/07 17:27:24] [ 121344] Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe SR - Auto [2012/02/07 17:52:04] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe SR - Auto [2012/02/07 17:53:32] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SR - Auto [2012/07/17 17:31:18] [ 116632] Motorola Device Manager Service (Motorola Device Manager) . (.Copyright (C) 2010-2012.) - C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe SS - Demand [2015/08/07 12:07:23] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - Demand [2008/04/08 08:56:30] [ 800040] NBService (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe SS - Demand [2008/01/22 10:13:26] [ 275752] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe SR - Auto [2006/12/19 09:30:26] [ 81920] PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc..) - C:\Windows\SysWOW64\IoctlSvc.exe SR - Auto [2011/09/02 16:06:38] [ 65657] PST Service (PST Service) . (.Motorola.) - C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe SS - Demand [2012/06/11 11:33:26] [ 724376] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe SR - Auto [2014/10/13 02:57:46] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe SR - Auto [2009/12/23 18:34:20] [ 370688] StarWind AE Service (StarWindServiceAE) . (.StarWind Software.) - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe SR - Auto [2012/02/07 17:53:34] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SR - Auto [2015/07/09 21:35:20] [ 35328] Windows Watchdog Service (WatchdogService) . (.The Security Team.) - C:\Program Files\Common Files\WWS\Watchdog.exe ---\\ Scâner Aditional (088) (14) - 0s C:\Program Files (x86)\24Seven savings\24seven_savings_notification_service.exe =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110211771193} =>PUP.Optional.CrossRider C:\Windows\Tasks\24seven_savings_notification_service.job =>PUP.Optional.CrossRider C:\Windows\Tasks\24seven_savings_updating_service.job =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\24seven_savings_notification_service =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\24seven_savings_updating_service =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C4561502-390D-4223-88CA-6B0AA366A3C0} =>PUP.Optional.FlashUpdate HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ultimate Codecs Setup Wizard Packages =>PUP.Optional.InstallCore HKLM\SOFTWARE\Wow6432Node\HD01Plus-V9.4V29.09-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\24Seven savings =>PUP.Optional.CrossRider HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar C:\Program Files (x86)\24Seven savings =>PUP.Optional.CrossRider HKLM\Software\Classes\Installer\Products\2051654CD093322488ACB6A03A663A0C =>PUP.Optional.FlashUpdate HKLM\Software\Classes\Installer\Features\2051654CD093322488ACB6A03A663A0C =>PUP.Optional.FlashUpdate ---\\ Resumo dos elementos encontrados na sua estação de trabalho (5) - 0s http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic http://www.nicolascoolman.fr/blog =>PUP.Optional.FlashUpdate http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar ~ End of the scan, 21501 items in 150 seconds (871)(2)()