~ ZHPDiag v2015.11.6.162 Por Nicolas Coolman (2015/11/06) ~ iniciado por Daniel (Administrator) (2015/11/08 00:39:55) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: Version OK ~ Modo: Scanner ~ Relatório: C:\Users\Daniel\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Daniel\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Inicialização do sistema: Normal (Normal boot) Windows 10 Home Single Language, 64-bit (Build 10240) ---\\ Navegadores Internet (2) - 0s MFIE: Mozilla Firefox 42.0 (x86 pt-BR) v42.0 MSIE: Internet Explorer v11.0.10240.16431 ---\\ Informações sobre os produtos Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Softwares de proteçao do sistema (2) - 1s ESET Smart Security v8.0.312.3 Windows Defender (Deactivate) ---\\ Monitoramento dos softwares (1) - 1s Adobe Reader XI - Português ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: Intel64 Family 6 Model 61 Stepping 4, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8300.88 MB (62% free) System Restore: Activé (Enable) System drive C: has 427 GB (45%) free of 933 GB ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: PC-DANIEL ~ User Name: Daniel ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (1) - 0s ~ Drive C: has 427 GB free of 933 GB (System) ---\\ Estado do Centro de Segurança do Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Pesquisa particular de ficheiros genéricos (24) - 1s [MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - 11/08/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4532304] © [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] © [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 13/08/2015 - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) -- C:\WINDOWS\System32\Wininit.exe [290312] © [MD5.E5D86250453B33900666D92ED1A92ABE] - 17/09/2015 - (.Microsoft Corporation - Internet Extensions para Win32.) -- C:\WINDOWS\System32\wininet.dll [2740224] © [MD5.C527C9231D39BF69611F5F8C80C36140] - 21/10/2015 - (.Microsoft Corporation - Aplicativo de Logon do Windows.) -- C:\WINDOWS\System32\Winlogon.exe [579072] © [MD5.ECB1943967424DFB96E03F6A098434EF] - 13/08/2015 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] © [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\WINDOWS\System32\dnsapi.dll [680256] © [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] © [MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - 10/07/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] © [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] © [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] © [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] © [MD5.25435407D97419627F4B10653433BF2B] - 10/07/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] © [MD5.C277A49F8A8295840DEBC9240B75A282] - 10/07/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] © [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - Driver de porta i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] © [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] © [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB do Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] © [MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] © [MD5.466EC5659C02ED53DBD47DC1BC2B8086] - 30/07/2015 - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] © [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Driver de porta paralela.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] © [MD5.CA60F6C03611AF1710BC903ED9F566FB] - 10/07/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] © [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Redirecionador do Dispositivo RDP da Micros.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] © [MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - 10/07/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116576] © [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Driver de cópia de sombra de volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] © ---\\ Processos lançados (55) - 2s [MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\Windows\System32\nvvsvc.exe [937616] [PID.1136] © [MD5.DB1EC96C28212D0EAE597317EEFF6D67] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253008] [PID.1252] © [MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\Windows\System32\nvvsvc.exe [937616] [PID.1260] © [MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [587576] [PID.1308] [MD5.AAD8F3D9BECAD296F3182C5DA4E6DB9B] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [361368] [PID.1332] © [MD5.B1EA9681502EE57F87DB71D726288A5B] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.2056] © [MD5.85E63F9C45CFC44CC1F43AC07610B79F] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1721800] [PID.2184] © [MD5.EFDBDA6D4B3AAB6A8F8070F4DFFB907F] - (.SEIKO EPSON CORPORATION - Epson USB Display Ver.1.63.) -- C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UDSA.exe [166504] [PID.2244] © [MD5.FB51E8E39E3FDB6757874653B743BE72] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576] [PID.2288] © [MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2352] © [MD5.9FE061CEBE2478FABC37BBA9557C6DAA] - (.Razer Inc. - RzKLService.exe.) -- C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [129168] [PID.2452] © [MD5.D308D719FEB75CAE29694A38B3559E9E] - (...) -- C:\Program Files (x86)\Vono\Vono\Vono Manager.exe [102400] [PID.2480] [MD5.BD93D1A0E0A7A96BEA4585F17C9B3307] - (.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe [339968] [PID.2536] © [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2624] © [MD5.1674B4E9FE3D3890E3842ABFC461C1C3] - (.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4327632] [PID.2676] [MD5.78CC42364F47A889CBC4E66E8BA4DB9D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [587576] [PID.3852] [MD5.98956E410F4C6BCCD65EDE9F95E5B6C7] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [337824] [PID.4712] © [MD5.FC2320094FDDB100DA192D4A8704A193] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [259480] [PID.4720] © [MD5.0A55F1F049141687E93D9F72A2615138] - (...) -- C:\Windows\System32\igfxTray.exe [406432] [PID.4728] [MD5.3244E954707B649F16ECB3D94CE56600] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447688] [PID.5276] © [MD5.65E8545F1297CD83534C354A7BED1848] - (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696] [PID.6036] © [MD5.E14A09758B8709CB4BE4B9BF6D10B6F6] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2404296] [PID.6052] © [MD5.C6CF3BBD590309E9C01FAA79C1B8A1E2] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5595848] [PID.3828] © [MD5.1BF113E377E570DB915EE7D228E594D6] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [170256] [PID.5772] © [MD5.1674B4E9FE3D3890E3842ABFC461C1C3] - (.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4327632] [PID.3348] [MD5.DCEED703FC3B958B18A690A79D94E43A] - (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\BitTorrent.exe [1977192] [PID.3472] [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\Daniel\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.4932] © [MD5.71BFE311D02423D5E3C4535237DD3A60] - (.Vono - Vono.) -- C:\Program Files (x86)\Vono\Vono\Vono.exe [6783488] [PID.4008] [MD5.0F4EB379ADB2A200EA18B2E7D515EE34] - (...) -- C:\Program Files (x86)\Arcoid Server\ArcoidServer.exe [1036288] [PID.612] [MD5.043A93A498B3C4A88CACA3BCBC9B54C7] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [644880] [PID.6320] © [MD5.249B39859BD6EDD3F102BD442199769F] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\updates\7.9.5_41203\utorrentie.exe [336896] [PID.6192] [MD5.249B39859BD6EDD3F102BD442199769F] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\updates\7.9.5_41203\utorrentie.exe [336896] [PID.4764] [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\Daniel\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.4420] © [MD5.D5C5F16A4E3E008951410D402658E7C0] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3011152] [PID.7456] © [MD5.9D0D72B696B8CDF9AE368E542FD042CE] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Daniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912] [PID.7592] © [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\Daniel\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.7680] © [MD5.3CF61F0BF7F9272D97E018D372222DF9] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1939536] [PID.7808] © [MD5.B78D0CF215EF1553D5CC44F11EB360B0] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [836176] [PID.7984] © [MD5.4A336C92A790A3F7C2D9952C73FCFA16] - (.WildTangent - WildTangent Games App Integration Service.) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904] [PID.1180] © [MD5.9BF27BE5D9F87E556BF4269025703E4D] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584] [PID.4784] © [MD5.E4267604E975EF4BBB1A39A1B4F5B3CB] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [405976] [PID.2588] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.7952] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.1772] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.7836] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.7848] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.6844] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.6916] © [MD5.B4D3E367720567CE289CD491B745D7E5] - (.LG Electronics Inc. - SmartShare Tray.) -- C:\Program Files (x86)\LG Software\LG Smart Share\Update\SmartShareTray.exe [496208] [PID.884] © [MD5.AC6E07432BD9FFEA8C8E74A831E75CD0] - (.LG Electronics Inc. - SmartShareDMS.) -- C:\Program Files (x86)\LG Software\LG Smart Share\DMS\SmartShareDMS.exe [613912] [PID.6852] © [MD5.0E1E5455285E24DE0C25385607C8815F] - (.Copyright © 2014 - SmartShareDMR.) -- C:\Program Files (x86)\LG Software\LG Smart Share\DMR\SmartShareDMR.exe [1265688] [PID.3296] [MD5.582EB6D7B855B8B138D81C4DED89E52C] - (.LG Electronics Inc. - Aggregation.) -- C:\Program Files (x86)\LG Software\LG Smart Share\DMC\Aggregation.exe [282192] [PID.3364] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.3052] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.556] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.5784] © [MD5.B437739349B759C313F4203D611CBE57] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Daniel\Downloads\ZHPDiag3.exe [1965568] [PID.7916] © ---\\ Google Chrome, Arranque,Pesquisa,Extensões (12) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/ =>PUP.Optional.StartSearch G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] [] __MSG_name__ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ffdcfjdljhbehggjdkdioajnknjcpbjb] [] Download Accelerator Plus (DAP) G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] [] AdBlock G2 - GCE: Preference [User Data\Default] [knipolnnllmklapflnccelgolnpehhpl] [] __MSG_CHROME_HANGOUTS_SHORT_NAME__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pbcaplhfkihhldmlbjhgajdeghjdbffi] [] GBBD Caixa Economica Federal G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] [] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (5) - 0s P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll © ---\\ Opera, Plugins,Arranque,Pesquisa (1) - 1s B2 - EXT: [On Stage] C:\Users\Daniel\AppData\Roaming\Opera Software\Opera Stable\Extensions\pfgjkiamaakjjjaalggclbfapojejene ---\\ Internet Explorer, Arranque, Pesquisa, Phishing (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer, Gestão do Proxy (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet= ---\\ Redireção do ficheiro Hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Objects do navegador (3) - 0s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL © O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © ---\\ Aplicações iniciadas por registo & pastas (30) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe © O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe © O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Google Installer.) -- C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] . (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe © O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe © O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Daniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe © O4 - HKCU\..\Run: [Unified Remote V3] . (.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe O4 - HKCU\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\BitTorrent.exe O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\OneDrive.exe © O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe © O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\Daniel\AppData\Roaming\Spotify\Spotify.exe © O4 - HKLM\..\Wow6432Node\Run: [.IAP{0000.0000.0000.0001}] . (.Vono - Vono.) -- C:\Program Files (x86)\Vono\Vono\Vono.exe O4 - HKLM\..\Wow6432Node\Run: [ArcoidServer] . (...) -- C:\Program Files (x86)\Arcoid Server\ArcoidServer.exe O4 - HKLM\..\Wow6432Node\Run: [AdvancedTouchpadServer] . (...) -- C:\Program Files (x86)\Arcoid Server\ArcoidServer.exe O4 - HKLM\..\policies\Explorer\Run: [BtvStack] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [Google Update] . (.Google Inc. - Google Installer.) -- C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] . (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Daniel\AppData\Roaming\Spotify\SpotifyWebHelper.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [Unified Remote V3] . (.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\BitTorrent.exe O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\OneDrive.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe © O4 - HKUS\S-1-5-21-3726726702-970421780-4148770423-1001\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\Daniel\AppData\Roaming\Spotify\Spotify.exe © ---\\ Alteração Dominio/Clientes DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.25.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.25.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 ---\\ Protocolo adicional (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL © ---\\ Serviços NT não Microsoft e não desativados (18) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: Serviço do Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe © O23 - Service: EMP_UDSA (EMP_UDSA) . (.SEIKO EPSON CORPORATION - Epson USB Display Ver.1.63.) - C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UDSA.exe © O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe © O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe © O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) - C:\Windows\System32\nvvsvc.exe © O23 - Service: Razer Game Scanner (Razer Game Scanner Service) . (.Copyright © 2013-2015 - GameScannerService.) - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe O23 - Service: RemoteServerWin (RemoteServerWin) . (.Unified Intents AB - Unified Remote.) - C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe O23 - Service: RzKLService (RzKLService) . (.Razer Inc. - RzKLService.exe.) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe © O23 - Service: Service KMSELDI (Service KMSELDI) . (. - Service_KMS.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O23 - Service: (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe © O23 - Service: Vono Manager (Vono_Manager) . (...) - C:\Program Files (x86)\Vono\Vono\Vono Manager.exe ---\\ Tarefas planificadas automaticamente (37) - 4s [MD5.00000000000000000000000000000000] [APT] [3y2b9qOjUKE6VA3E] (...) -- C:\Users\Daniel\AppData\Roaming\3y2b9qOjUKE6VA3E.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.14739B9810A47332D81AE72A29ECCAAE] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3334144] =>HackTool.AutoKMS [MD5.10B201CC8EBFC96C0F20BC2BF3BF2144] [APT] [AutoPico Daily Restart] (...) -- C:\Program Files\KMSpico\AutoPico.exe [977600] =>HackTool.KMSpico [MD5.00000000000000000000000000000000] [APT] [FUB] (...) -- C:\Program Files (x86)\Acer\Care Center\FUB.bat (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [globalUpdateUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (.not file.) [0] =>PUP.Optional.GlobalUpdate [MD5.00000000000000000000000000000000] [APT] [globalUpdateUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (.not file.) [0] =>PUP.Optional.GlobalUpdate [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core] (.Google Inc..) -- C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core1d0b2d3ac030363] (.Google Inc..) -- C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001UA] (.Google Inc..) -- C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [107848] © [MD5.00000000000000000000000000000000] [APT] [QBFVEVEA1] (...) -- C:\ProgramData\EpsanDrive\EpsanDrive.exe (.not file.) [0] =>PUP.Optional.EpsanDrive [MD5.90E92ABBEA7706C0B13C487CAF90F4C1] [APT] [SmartShare] (.LG Electronics Inc..) -- C:\Program Files (x86)\LG Software\LG Smart Share\SmartShareStart.exe [495136] © [MD5.896E37BE296D7A4061355453F4AE6949] [APT] [Software Update Application] (.Acer Incorporated.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474344] © [MD5.00000000000000000000000000000000] [APT] [YTDownloader] (...) -- C:\Program Files (x86)\YTDownloader\YTDownloader.exe (.not file.) [0] =>PUP.Optional.YTDownloader [MD5.00000000000000000000000000000000] [APT] [YTDownloaderUpd] (...) -- C:\Program Files (x86)\YTDownloader\updater.exe (.not file.) [0] =>PUP.Optional.YTDownloader [MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{F80D3F3F-C6AD-4C0D-892B-B459C504919E}] (.Google Inc..) -- c:\Users\Daniel\AppData\Local\Google\Chrome\application\chrome.exe [811848] © [MD5.BC41666FF68C364CD3EAA486E50C9270] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [563000] © O39 - APT: 3y2b9qOjUKE6VA3E - (...) -- C:\WINDOWS\Tasks\3y2b9qOjUKE6VA3E.job [1028] =>PUP.Optional.CrossRider O39 - APT: globalUpdateUpdateTaskMachineCore - (...) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job [992] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (...) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job [996] =>PUP.Optional.GlobalUpdate O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core.job [1050] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core1d0b2d3ac030363 - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core1d0b2d3ac030363.job [1050] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001UA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001UA.job [1102] © O39 - APT: QBFVEVEA1 - (...) -- C:\WINDOWS\Tasks\QBFVEVEA1.job [358] =>PUP.Optional.EpsanDrive O39 - APT: 3y2b9qOjUKE6VA3E - (...) -- C:\WINDOWS\System32\Tasks\3y2b9qOjUKE6VA3E [4150] =>PUP.Optional.CrossRider O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3538] =>HackTool.AutoKMS O39 - APT: AutoPico Daily Restart - (...) -- C:\WINDOWS\System32\Tasks\AutoPico Daily Restart [3816] =>HackTool.KMSpico O39 - APT: FUB - (...) -- C:\WINDOWS\System32\Tasks\FUB [3072] O39 - APT: globalUpdateUpdateTaskMachineCore - (...) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore [3842] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (...) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA [4078] =>PUP.Optional.GlobalUpdate O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core [3780] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core1d0b2d3ac030363 - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001Core1d0b2d3ac030363 [3874] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001UA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3726726702-970421780-4148770423-1001UA [4220] © O39 - APT: QBFVEVEA1 - (...) -- C:\WINDOWS\System32\Tasks\QBFVEVEA1 [2982] =>PUP.Optional.EpsanDrive O39 - APT: SmartShare - (.LG Electronics Inc..) -- C:\WINDOWS\System32\Tasks\SmartShare [3528] © O39 - APT: Software Update Application - (.Acer Incorporated.) -- C:\WINDOWS\System32\Tasks\Software Update Application [5424] © O39 - APT: YTDownloader - (...) -- C:\WINDOWS\System32\Tasks\YTDownloader [3738] =>PUP.Optional.YTDownloader O39 - APT: YTDownloaderUpd - (...) -- C:\WINDOWS\System32\Tasks\YTDownloaderUpd [4060] =>PUP.Optional.YTDownloader ---\\ Software instalados (140) - 10s O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite © O42 - Logiciel: KMSpico v9.2.3 - (...) [HKLM][64Bits] -- KMSpico_is1 =>HackTool.KMSpico O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client © O42 - Logiciel: My Game Long Name - (.Epic Games, Inc..) [HKLM][64Bits] -- UDK-bffc04e5-822b-4ba6-a772-7d17f4590899 © O42 - Logiciel: Suporte para Aplicativos Apple Apple (64-bit) - (.Apple Inc..) [HKLM][64Bits] -- {0DE0A178-AC7B-4650-806C-CF226DE03766} © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} © O42 - Logiciel: MotioninJoy DS3 driver version 0.6.0005 - (.www.motioninjoy.com.) [HKLM][64Bits] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1 © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {4034E489-D0E9-41C4-A0DA-865D3881FE3F} © O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {4A7EE59E-C97F-4EC6-A607-7E2CDEC24092} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} © O42 - Logiciel: HP Deskjet 2540 series Software básico do dispositivo - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {8FE64247-D749-4F8C-8F06-6FAEA96A4A27} © O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {9FD91C5C-44AE-4D9D-85BE-AE52816B0294} © O42 - Logiciel: NVIDIA Driver de gráficos 333.57 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA Software do sistema PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX © O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {B7368FC9-A295-4A95-A9EB-AFD659BA7B71} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {BACDF5CE-C53E-43FD-ADB8-CFBEC19FF50E} © O42 - Logiciel: Blender - (.Blender Foundation.) [HKLM][64Bits] -- {BBE9D9F0-3F77-4E26-9E10-1AFB56D41363} © O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {BD667C75-0EDD-4073-A406-A6DD9C3016EB} © O42 - Logiciel: ESET Smart Security - (.ESET, spol s r. o..) [HKLM][64Bits] -- {CD39F1E2-EC1A-41E7-8253-967A556A0CF0} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {E690A491-702F-4DEC-9977-C015D1DBB57C} © O42 - Logiciel: Vono - (.Vono.) [HKLM][64Bits] -- .IAP{0000.0000.0005.0001} O42 - Logiciel: Game of Thrones version 1.0.0.0 - (.Cyanide.) [HKLM][64Bits] -- AGOT_is1 © O42 - Logiciel: Arcoid Server - (...) [HKLM][64Bits] -- Arcoid Server O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net © O42 - Logiciel: Download Accelerator Plus (DAP) - (.Speedbit Ltd..) [HKLM][64Bits] -- Download Accelerator Plus (DAP) © O42 - Logiciel: Dragonball Xenoverse - (...) [HKLM][64Bits] -- Dragonball Xenoverse_is1 O42 - Logiciel: Ether One - (...) [HKLM][64Bits] -- Ether One_is1 O42 - Logiciel: Freemake Video Converter versão 4.1.7 - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Converter_is1 © O42 - Logiciel: Game of Thrones - A Telltale Games Series - (.Telltale Games.) [HKLM][64Bits] -- Game of Thrones - A Telltale Games Series_is1 © O42 - Logiciel: Game of Thrones A Telltale Games Series - (...) [HKLM][64Bits] -- Game of Thrones A Telltale Games Series_is1 O42 - Logiciel: Dark Souls Prepare to Die Edition - (.NAMCO BANDAI Games Europe S.A.S..) [HKLM][64Bits] -- GFWL_{4E4D0FA1-F880-4CCB-999A-501000008200} © O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} © O42 - Logiciel: K-Lite Mega Codec Pack 9.9.5 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Megacubo 11 - (.www.megacubo.net.) [HKLM][64Bits] -- Megacubo_is1 O42 - Logiciel: Minecraft1.8.4 - (...) [HKLM][64Bits] -- Minecraft1.8.4 O42 - Logiciel: Mozilla Firefox 42.0 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 pt-BR) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: PCSX2 - Playstation 2 Emulator - (...) [HKLM][64Bits] -- pcsx2-r5875 O42 - Logiciel: Pillars of Eternity - (...) [HKLM][64Bits] -- Pillars of Eternity_is1 O42 - Logiciel: Popcorn Time - (.Popcorn Time.) [HKLM][64Bits] -- Popcorn Time_is1 © O42 - Logiciel: PORTAL 2 [Lossless Repack by R.G. Catalyst] - (...) [HKLM][64Bits] -- portal_2_catalyst_skymmer O42 - Logiciel: BRAWL - (...) [HKLM][64Bits] -- QlJBV0w=_is1 O42 - Logiciel: Rake - (...) [HKLM][64Bits] -- Rake_is1 O42 - Logiciel: Razer Cortex - (.Razer Inc..) [HKLM][64Bits] -- Razer Cortex_is1 © O42 - Logiciel: Real Alternative 2.0.2 - (...) [HKLM][64Bits] -- RealAlt_is1 O42 - Logiciel: Roller Coaster Tycoon 3 Platinum - CarlesNeo ! - (...) [HKLM][64Bits] -- Roller Coaster Tycoon 3 Platinum - CarlesNeo ! O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] -- Spotify © O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam © O42 - Logiciel: Botanicula - (.Amanita Design.) [HKLM][64Bits] -- Steam App 207690 © O42 - Logiciel: Divinity II: Developer's Cut - (.Larian Studios.) [HKLM][64Bits] -- Steam App 219780 O42 - Logiciel: Brütal Legend - (.Double Fine Productions.) [HKLM][64Bits] -- Steam App 225260 © O42 - Logiciel: Warframe - (.Digital Extremes.) [HKLM][64Bits] -- Steam App 230410 © O42 - Logiciel: Castlevania: Lords of Shadow - Ultimate Edition - (.MercurySteam - Climax Studios.) [HKLM][64Bits] -- Steam App 234080 O42 - Logiciel: Bionic Dues - (.Arcen Games, LLC.) [HKLM][64Bits] -- Steam App 238910 O42 - Logiciel: Injustice: Gods Among Us Ultimate Edition - (.NetherRealm Studios.) [HKLM][64Bits] -- Steam App 242700 O42 - Logiciel: Volgarr the Viking - (.Crazy Viking Studios.) [HKLM][64Bits] -- Steam App 247240 O42 - Logiciel: Vampire: The Masquerade - Bloodlines - (.Troika Games.) [HKLM][64Bits] -- Steam App 2600 © O42 - Logiciel: Magic Duels - (.Stainless Games Ltd..) [HKLM][64Bits] -- Steam App 316010 O42 - Logiciel: Star Wars: The Force Unleashed II - (.Aspyr Studios.) [HKLM][64Bits] -- Steam App 32500 O42 - Logiciel: Viridi - (.Ice Water Games.) [HKLM][64Bits] -- Steam App 375950 O42 - Logiciel: Close Your Eyes - (.Yai Gameworks.) [HKLM][64Bits] -- Steam App 377330 © O42 - Logiciel: Fishing Planet - (.Fishing Planet LLC.) [HKLM][64Bits] -- Steam App 380600 O42 - Logiciel: Darksiders II - (.Vigil Games.) [HKLM][64Bits] -- Steam App 50650 O42 - Logiciel: Dota 2 - (.Valve.) [HKLM][64Bits] -- Steam App 570 © O42 - Logiciel: Amnesia: The Dark Descent - (.Frictional Games.) [HKLM][64Bits] -- Steam App 57300 O42 - Logiciel: Dead Island - (.Techland.) [HKLM][64Bits] -- Steam App 91310 © O42 - Logiciel: The Stanley Parable - (.PLAZA.) [HKLM][64Bits] -- The Stanley Parable_is1 O42 - Logiciel: The Witcher 2 - Assassins of Kings Enhanced Edition - (.GOG.com.) [HKLM][64Bits] -- The Witcher 2 - Assassins of Kings Enhanced Edition_is1 © O42 - Logiciel: The Witcher 3 - Wild Hunt - (...) [HKLM][64Bits] -- The Witcher 3 - Wild Hunt_is1 O42 - Logiciel: Southpark Stick of Truth - (...) [HKLM][64Bits] -- U291dGhwYXJrU3RpY2tvZlRydXRo_is1 O42 - Logiciel: Red Goddess: Inner World - (...) [HKLM][64Bits] -- UmVkR29kZGVzc0lubmVyV29ybGQ=_is1 O42 - Logiciel: Unity - (.Unity Technologies ApS.) [HKLM][64Bits] -- Unity © O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall © =>.WildTangent O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM][64Bits] -- World of Warcraft © O42 - Logiciel: King Oddball - (.WildTangent.) [HKLM][64Bits] -- WTA-18258606-7877-4c20-8a16-3d6b22e03e7d © =>.WildTangent O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-23444393-b19f-4516-b2b0-57c42570f8e6 © =>.WildTangent O42 - Logiciel: Peggle Nights - (.WildTangent.) [HKLM][64Bits] -- WTA-241616ac-230e-4127-b9c6-2c1cb0fb7a18 © =>.WildTangent O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-4f5cbed0-1930-4ae3-a00b-64fe9a274e19 © =>.WildTangent O42 - Logiciel: LUXOR Evolved - (.WildTangent.) [HKLM][64Bits] -- WTA-59867f72-5b47-4e7f-a761-155a19dafade © =>.WildTangent O42 - Logiciel: Farm to Fork Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-69cb9aa7-fa9d-495c-abf2-83d4302c1a98 © =>.WildTangent O42 - Logiciel: The Chronicles of Emerland Solitaire - (.WildTangent.) [HKLM][64Bits] -- WTA-84cdc595-de41-4c6b-9848-84cbe20fdf28 © =>.WildTangent O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-8ccdc07a-52a1-43a5-bd7b-9d62ab17bae6 © =>.WildTangent O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-8db49e6b-3349-4ddc-8831-408cbcbd62ed © =>.WildTangent O42 - Logiciel: Polar Bowler 1st Frame - (.WildTangent.) [HKLM][64Bits] -- WTA-aadfb5f1-51a7-4048-b0a3-247bfd2903c9 © =>.WildTangent O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-e9c526a4-3182-43b7-9fe1-197cb1ae7b97 © =>.WildTangent O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-ec2721ee-217a-47f1-9590-cf8866229e0d © =>.WildTangent O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-eedf605b-dde3-429a-9e90-3c6889d0fbd1 © =>.WildTangent O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-f55a8d2a-d5c6-4aee-930b-9f5a3a471ed3 © =>.WildTangent O42 - Logiciel: Guitar Hero III - (.Aspyr.) [HKLM][64Bits] -- {0CE1A6C0-F3F7-49E6-8F9D-2431F9827441} O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM][64Bits] -- {2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F} © O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} © O42 - Logiciel: Nero Multimedia Suite 10 - (.Nero AG.) [HKLM][64Bits] -- {277C1559-4CF7-44FF-8D07-98AA9C13AABD} © O42 - Logiciel: Qualcomm Atheros WLAN and Bluetooth Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} © O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App © =>.WildTangent O42 - Logiciel: Unified Remote - (.Unified Intents AB.) [HKLM][64Bits] -- {415B4714-4F8C-49C6-B310-881EAF892CFB}_is1 O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C} © O42 - Logiciel: Dark Souls Prepare to Die Edition - (.NAMCO BANDAI Games Europe S.A.S..) [HKLM][64Bits] -- {4E4D0FA1-F880-4CCB-999A-501000008200} © O42 - Logiciel: High-Definition Video Playback - (.Nero AG.) [HKLM][64Bits] -- {58CB9A9A-1EFB-4EA8-B50C-3097E754AC21} © O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} © O42 - Logiciel: Nero 10 Menu TemplatePack Basic - (.Nero AG.) [HKLM][64Bits] -- {63AA3EAB-23BB-48B2-9AD0-44F878075604} © O42 - Logiciel: Suporte para Aplicativos Apple (32-bit) - (.Apple Inc..) [HKLM][64Bits] -- {649A1FD9-5892-46AD-8DF0-C4A43FF61CB7} © O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM][64Bits] -- {6DFB899F-17A2-48F0-A533-ED8D6866CF38} © O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer © =>.WildTangent O42 - Logiciel: Epson USB Display - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {7650F538-6274-44EA-8F50-843479073333} © O42 - Logiciel: Nero Burning ROM 10 - (.Nero AG.) [HKLM][64Bits] -- {7A5D731D-B4B3-490E-B339-75685712BAAB} © O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Microsoft Access MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft InfoPath MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0416-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Lync MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0416-0000-0000000FF1CE} © O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: Adobe Reader XI - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-AB0000000001} © O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} © O42 - Logiciel: SmartShare - (.LG Electronics Inc..) [HKLM][64Bits] -- {BAB337AE-DD9E-45C3-BED6-0EE4732AEC60} © O42 - Logiciel: Nero Dolby Files 10 - (.Nero AG.) [HKLM][64Bits] -- {C3580AC4-C827-4332-B935-9A282ED5BB97} © O42 - Logiciel: Air Keyboard - (.SkyGears.) [HKLM][64Bits] -- {DBEBC979-5914-4DD2-A2CD-923BDC23A819} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2508213-9989-4E85-A078-72BE483917EF} © O42 - Logiciel: Nero 10 Movie ThemePack Basic - (.Nero AG.) [HKLM][64Bits] -- {F5CB822F-B365-43D1-BCC0-4FDA1A2017A7} © O42 - Logiciel: Software de dispositivo do Chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {f5d71765-7cd1-4e68-998f-5b379e725da3} © O42 - Logiciel: Nero StartSmart 10 - (.Nero AG.) [HKLM][64Bits] -- {F61D489E-6C44-49AC-AD02-7DA8ACA73A65} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} © O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent O42 - Logiciel: CodeBlocks - (.The Code::Blocks Team.) [HKCU][64Bits] -- CodeBlocks © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome © O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time © O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer © O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ Ponto de restauro do sistema (192) - 10s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AIM Toolbar HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\Aspyr HKLM\SOFTWARE\Wow6432Node\ATHEROS HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment HKLM\SOFTWARE\Wow6432Node\CD Projekt RED HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Wow6432Node\Cyanide HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\ESET HKLM\SOFTWARE\Wow6432Node\EVP HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\GameVicio HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\LG Electronics Inc. HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\lucasarts HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\Megacubo HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\NAMCO BANDAI Games HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OEM HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Overwolf HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WLAN and Bluetooth Client Installation Program HKLM\SOFTWARE\Wow6432Node\Razer HKLM\SOFTWARE\Wow6432Node\RealAlternative HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\SEIKO EPSON CORPORATION HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SpeedBit HKLM\SOFTWARE\Wow6432Node\SRS Labs HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Wow6432Node\techland HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Vono HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wizards of the Coast HKLM\SOFTWARE\Wow6432Node\WombatUpdater HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\YTDownloader =>PUP.Optional.YTDownloader HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\3y2b9qOjUKE6VA3E HKCU\SOFTWARE\Acer HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AOL HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Arcen Games, LLC HKCU\SOFTWARE\Arcoid Server HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\AutoHelpDesk HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Blender Foundation HKCU\SOFTWARE\Blizzard Entertainment HKCU\SOFTWARE\BlooberTeam S.A. HKCU\SOFTWARE\CD Projekt RED HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Cinema-Plus-5.1tV07.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CodeBlocks HKCU\SOFTWARE\Crazy Viking Studios HKCU\SOFTWARE\Cyanide HKCU\SOFTWARE\DefaultCompany HKCU\SOFTWARE\Digital Extremes HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\EMU HKCU\SOFTWARE\Epic Games HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Fishing Planet LLC HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GbPlugin HKCU\SOFTWARE\Ge-Force-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\HP HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\Ice Water Games HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\InWise HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Konsordo HKCU\SOFTWARE\Kromtech HKCU\SOFTWARE\larian studios HKCU\SOFTWARE\LGE HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\LucasArts HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Megacubo HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\OB HKCU\SOFTWARE\Obsidian Entertainment HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OEM HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PCSX2 HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Rockstar Games HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Sense-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\SkyGears HKCU\SOFTWARE\SpeedBit HKCU\SOFTWARE\Spotify HKCU\SOFTWARE\SyncEngines HKCU\SOFTWARE\Telltale Games HKCU\SOFTWARE\TNT2 =>PUP.Optional.Freshy HKCU\SOFTWARE\Tribo Gamer HKCU\SOFTWARE\Troika HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Unity Technologies HKCU\SOFTWARE\Valve HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wizards of the Coast HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Conteúdo das pastas Programs (347) - 11s O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Acer O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 22/05/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\Air Keyboard O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\Arcoid Server O43 - CFD: 11/07/2015 - [] D -- C:\Program Files (x86)\Aspyr O43 - CFD: 09/09/2015 - [] D -- C:\Program Files (x86)\Battle.net O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 02/09/2015 - [] D -- C:\Program Files (x86)\BRAWL O43 - CFD: 27/08/2015 - [] D -- C:\Program Files (x86)\CodeBlocks O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 06/07/2015 - [] D -- C:\Program Files (x86)\Cyanide O43 - CFD: 29/06/2015 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 09/07/2015 - [] D -- C:\Program Files (x86)\DAP O43 - CFD: 23/07/2015 - [] D -- C:\Program Files (x86)\Diablo III O43 - CFD: 29/06/2015 - [] D -- C:\Program Files (x86)\Disc Soft O43 - CFD: 27/07/2015 - [] D -- C:\Program Files (x86)\DragonballXenoverse O43 - CFD: 01/10/2015 - [] D -- C:\Program Files (x86)\EPSON Projector O43 - CFD: 09/07/2015 - [] D -- C:\Program Files (x86)\Ether One O43 - CFD: 01/08/2015 - [] D -- C:\Program Files (x86)\Freemake O43 - CFD: 06/07/2015 - [] D -- C:\Program Files (x86)\Game of Thrones - A Telltale Games Series O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\GameVicio O43 - CFD: 08/11/2015 - [] AD -- C:\Program Files (x86)\GbPlugin O43 - CFD: 02/09/2015 - [] D -- C:\Program Files (x86)\GOG.com O43 - CFD: 27/07/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 27/07/2015 - [] D -- C:\Program Files (x86)\HP O43 - CFD: 20/08/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 11/07/2015 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 20/08/2015 - [] D -- C:\Program Files (x86)\LG Software O43 - CFD: 05/07/2015 - [0] D -- C:\Program Files (x86)\McAfee O43 - CFD: 24/08/2015 - [] D -- C:\Program Files (x86)\Megacubo O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 06/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Chart Controls O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\NAMCO BANDAI Games O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 05/09/2015 - [] D -- C:\Program Files (x86)\Paradox Interactive O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\PC Blast O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\PCSX2 1.2.1 O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Popcorn Time O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Qualcomm Atheros O43 - CFD: 20/07/2015 - [] D -- C:\Program Files (x86)\Rake O43 - CFD: 01/09/2015 - [] D -- C:\Program Files (x86)\Razer O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Real Alternative O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 05/09/2015 - [] D -- C:\Program Files (x86)\Red Goddess Inner World O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\Roller Coaster Tycoon 3 Platinum - CarlesNeo ! O43 - CFD: 13/07/2015 - [] D -- C:\Program Files (x86)\Saints Row The Third O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Southpark Stick of Truth O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Spotify O43 - CFD: 08/11/2015 - [] D -- C:\Program Files (x86)\Steam O43 - CFD: 22/05/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\The Elder Scrolls V Skyrim O43 - CFD: 12/07/2015 - [] D -- C:\Program Files (x86)\The Stanley Parable O43 - CFD: 28/07/2015 - [] D -- C:\Program Files (x86)\The Witcher 3 Wild Hunt O43 - CFD: 09/07/2015 - [] D -- C:\Program Files (x86)\Tribo Gamer O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\Unified Remote 3 O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Unity O43 - CFD: 06/08/2015 - [0] D -- C:\Program Files (x86)\UPCleaner O43 - CFD: 28/10/2015 - [] D -- C:\Program Files (x86)\Vono O43 - CFD: 14/01/2015 - [] D -- C:\Program Files (x86)\WildGames O43 - CFD: 29/06/2015 - [] D -- C:\Program Files (x86)\WildTangent Games O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 09/09/2015 - [] D -- C:\Program Files (x86)\World of Warcraft O43 - CFD: 03/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 13/08/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Air Keyboard O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net O43 - CFD: 27/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyanide O43 - CFD: 13/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12 O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Accelerator Plus (DAP) O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragonball Xenoverse O43 - CFD: 01/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Projector O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ether One O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game of Thrones - A Telltale Games Series O43 - CFD: 02/07/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game of Thrones A Telltale Games Series O43 - CFD: 13/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico O43 - CFD: 20/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Software O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 24/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Megacubo O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 28/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 05/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paradox Interactive O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Blast O43 - CFD: 24/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2 O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PORTAL 2 [Lossless R.G. Catalyst] O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rake O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razor 1911 O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative O43 - CFD: 24/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roller Coaster Tycoon 3 Platinum - CarlesNeo ! O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 14/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Stanley Parable O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 3 Wild Hunt O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tribo Gamer O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3 O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity 5.1.2f1 (64-bit) O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vono O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\Acer O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\Atheros O43 - CFD: 23/07/2015 - [] D -- C:\ProgramData\Battle.net O43 - CFD: 23/07/2015 - [] D -- C:\ProgramData\Blizzard Entertainment O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\CLSK O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 29/06/2015 - [0] SHD -- C:\ProgramData\Dados de Aplicativos O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\Divinity 2 O43 - CFD: 29/06/2015 - [0] SHD -- C:\ProgramData\Documentos O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\EpsanDrive =>PUP.Optional.EpsanDrive O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\ESET O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Freemake O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\GAS Tecnologia O43 - CFD: 20/10/2015 - [] D -- C:\ProgramData\GbPlugin O43 - CFD: 27/07/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\install_clap O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\Intel O43 - CFD: 20/08/2015 - [] D -- C:\ProgramData\LG Software O43 - CFD: 30/06/2015 - [] D -- C:\ProgramData\McAfee O43 - CFD: 29/06/2015 - [0] SHD -- C:\ProgramData\Menu Iniciar O43 - CFD: 13/08/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 29/06/2015 - [0] SHD -- C:\ProgramData\Modelos O43 - CFD: 30/06/2015 - [] D -- C:\ProgramData\Nero O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\OEM O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\OEM_YAHOO O43 - CFD: 11/07/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Pokki O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Razer O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\REVOLT O43 - CFD: 14/07/2015 - [] D -- C:\ProgramData\Riot Games O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Service1198 O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\SpeedBit O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 11/07/2015 - [] D -- C:\ProgramData\Sun O43 - CFD: 30/08/2015 - [] AD -- C:\ProgramData\Temp O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\ToolsUpdatePlatform O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\Unified Remote O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Unity O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Vono O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager O43 - CFD: 22/05/2015 - [] D -- C:\ProgramData\{EB5F5A55-037A-4E47-806B-2C8AA9374701} O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 01/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 11/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Common Files\mcafee O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 30/06/2015 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 14/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Nikon O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 05/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 15/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 12/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\.minecraft O43 - CFD: 01/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\.mono O43 - CFD: 09/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\060E1A23-1436310841-E411-85C7-F0761C7890B2 O43 - CFD: 27/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Adobe O43 - CFD: 25/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Apple Computer O43 - CFD: 24/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Atari O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Atheros O43 - CFD: 23/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Battle.net O43 - CFD: 08/11/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\BitTorrent O43 - CFD: 27/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Blender Foundation O43 - CFD: 06/11/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\CodeBlocks O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Doublefine O43 - CFD: 09/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\ESET O43 - CFD: 05/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Identities O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Injustice O43 - CFD: 11/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\java O43 - CFD: 14/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\LolClient O43 - CFD: 27/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Macromedia O43 - CFD: 30/06/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Media Player Classic O43 - CFD: 27/09/2015 - [] SD -- C:\Users\Daniel\AppData\Roaming\Microsoft O43 - CFD: 26/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\MonoDevelop-Unity-4.0 O43 - CFD: 28/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\MotioninJoy O43 - CFD: 03/11/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Mozilla O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\NVIDIA O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Opera Software O43 - CFD: 11/07/2015 - [] RHD -- C:\Users\Daniel\AppData\Roaming\SecuROM O43 - CFD: 09/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\SpeedBit O43 - CFD: 08/11/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Spotify O43 - CFD: 02/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Steam O43 - CFD: 26/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\stetic O43 - CFD: 14/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\TS3Client O43 - CFD: 16/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Unified Remote O43 - CFD: 27/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Unity O43 - CFD: 28/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\uTorrent O43 - CFD: 28/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Vono O43 - CFD: 30/06/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\WinRAR O43 - CFD: 08/11/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\ZHP O43 - CFD: 09/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\060E1A23-1436300225-E411-85C7-F0761C7890B2 O43 - CFD: 30/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\Adobe O43 - CFD: 25/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Apple O43 - CFD: 25/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Apple Computer O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\Apps O43 - CFD: 11/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\Aspyr O43 - CFD: 27/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\BANDAI NAMCO Games O43 - CFD: 10/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Battle.net O43 - CFD: 23/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\Blizzard Entertainment O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\BMExplorer O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\BrowserHelper =>PUP.Optional.BrowserHelper O43 - CFD: 01/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\CEF O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\clear.fi O43 - CFD: 20/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\Comms O43 - CFD: 30/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\CrashDumps O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 13/08/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\Dados de Aplicativos O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Darksiders2 O43 - CFD: 27/09/2015 - [0] D -- C:\Users\Daniel\AppData\Local\Diagnostics O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\Disc_Soft_Ltd O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Divinity 2 O43 - CFD: 29/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\ElevatedDiagnostics O43 - CFD: 07/07/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\EmieBrowserModeList O43 - CFD: 07/07/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\EmieSiteList O43 - CFD: 07/07/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\EmieUserList O43 - CFD: 09/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\ESET O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 13/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Google O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\GWX O43 - CFD: 13/08/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\Histórico O43 - CFD: 27/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\HP O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\iGware O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\LucasArts O43 - CFD: 02/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Microsoft O43 - CFD: 24/07/2015 - [0] D -- C:\Users\Daniel\AppData\Local\Microsoft Help O43 - CFD: 30/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 28/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\MicrosoftEdge O43 - CFD: 26/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\MonoDevelop-Unity-4.0 O43 - CFD: 03/11/2015 - [] D -- C:\Users\Daniel\AppData\Local\Mozilla O43 - CFD: 30/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\NBGI O43 - CFD: 13/08/2015 - [0] D -- C:\Users\Daniel\AppData\Local\NetworkTiles O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\NVIDIA O43 - CFD: 17/07/2015 - [0] D -- C:\Users\Daniel\AppData\Local\Oblivion O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\OEM O43 - CFD: 07/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\Opera Software O43 - CFD: 28/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Packages O43 - CFD: 29/06/2015 - [0] D -- C:\Users\Daniel\AppData\Local\PackageStaging O43 - CFD: 17/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Popcorn Time O43 - CFD: 23/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Popcorn-Time O43 - CFD: 03/11/2015 - [] D -- C:\Users\Daniel\AppData\Local\PopcornTimeDesktop O43 - CFD: 30/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\Programs O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\Publishers O43 - CFD: 01/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Razer O43 - CFD: 01/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Razer_Inc O43 - CFD: 05/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\RG O43 - CFD: 13/07/2015 - [] D -- C:\Users\Daniel\AppData\Local\SKIDROW O43 - CFD: 29/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\SkyGears O43 - CFD: 29/06/2015 - [] D -- C:\Users\Daniel\AppData\Local\Skyrim O43 - CFD: 08/11/2015 - [] D -- C:\Users\Daniel\AppData\Local\Spotify O43 - CFD: 08/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Steam O43 - CFD: 08/11/2015 - [] D -- C:\Users\Daniel\AppData\Local\Temp O43 - CFD: 13/08/2015 - [0] SHD -- C:\Users\Daniel\AppData\Local\Temporary Internet Files O43 - CFD: 02/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\The Witcher 2 O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\TileDataLayer O43 - CFD: 03/10/2015 - [] D -- C:\Users\Daniel\AppData\Local\Unity O43 - CFD: 30/08/2015 - [] D -- C:\Users\Daniel\AppData\Local\VirtualStore O43 - CFD: 02/09/2015 - [] D -- C:\Users\Daniel\AppData\Local\Warframe O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 13/08/2015 - [] RD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 20/10/2015 - [] RD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 15/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome O43 - CFD: 29/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arcoid O43 - CFD: 27/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender O43 - CFD: 27/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 14/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 10/07/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft O43 - CFD: 17/09/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 20/10/2015 - [] RD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 14/10/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 13/08/2015 - [] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 07/07/2015 - [0] D -- C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader ---\\ Softwares de proteçao do sistema (Supérfluo) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Daniel\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © ---\\ Lista dos drivers do sistema (68) - 2s O58 - SDL:2015/07/10 08:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] © O58 - SDL:2015/07/10 08:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] © O58 - SDL:2015/07/10 08:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] © O58 - SDL:2015/07/10 08:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2015/07/10 08:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] © O58 - SDL:2015/07/10 08:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] © O58 - SDL:2014/02/14 03:35:20 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [3888640] © O58 - SDL:2015/07/10 08:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2014/02/25 22:53:02 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\WINDOWS\System32\drivers\btath_bus.sys [35016] © O58 - SDL:2015/03/09 10:48:34 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] © O58 - SDL:2015/07/10 08:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2015/06/29 23:41:49 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [246000] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - Devmon monitor.) -- C:\WINDOWS\System32\drivers\edevmon.sys [241880] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [169792] © O58 - SDL:2014/04/23 15:21:30 A . (.SEIKO EPSON CORPORATION - EPSON Projector Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\EMP_UDAU.sys [23040] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [222280] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\EpfwLWF.sys [44632] © O58 - SDL:2015/03/10 18:24:42 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [64208] © O58 - SDL:2015/07/10 08:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] © O58 - SDL:2015/09/08 02:58:20 A . (...) -- C:\WINDOWS\System32\drivers\gbpddfac64.sys [0] O58 - SDL:2015/10/01 11:52:18 A . (.Windows (R) Win 7 DDK provider - Filter Driver for HID-KMDF Interface.) -- C:\WINDOWS\System32\drivers\hidkmdf.sys [7680] © O58 - SDL:2015/07/10 08:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2015/07/10 08:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] © O58 - SDL:2015/07/10 08:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] © O58 - SDL:2015/07/10 08:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] © O58 - SDL:2015/07/10 08:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2015/07/10 08:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] © O58 - SDL:2015/10/01 01:26:31 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [6269696] © O58 - SDL:2015/04/10 17:56:56 A . (.Infonaut - Infonaut Driver x64.) -- C:\WINDOWS\System32\drivers\innfd_1_10_0_14.sys [58224] =>PUP.Optional.Infonaut O58 - SDL:2014/12/22 02:47:36 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [455440] © O58 - SDL:2014/12/10 22:13:50 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [42288] © O58 - SDL:2014/12/10 22:13:50 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [30512] © O58 - SDL:2013/07/17 18:59:00 A . (.Acer Incorporated - LMDriver.) -- C:\WINDOWS\System32\drivers\LMDriver.sys [21360] © O58 - SDL:2015/07/10 08:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] © O58 - SDL:2015/07/10 08:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] © O58 - SDL:2015/07/10 08:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] © O58 - SDL:2015/07/10 08:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2015/07/10 08:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] © O58 - SDL:2015/07/10 08:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2011/09/22 11:58:59 A . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\WINDOWS\System32\drivers\MijXfilt.sys [117520] © O58 - SDL:2015/07/10 08:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] © O58 - SDL:2015/07/10 08:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2015/07/10 08:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] © O58 - SDL:2014/08/15 23:13:34 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl64.sys [23040] © O58 - SDL:2015/07/13 21:45:08 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11139216] © O58 - SDL:2015/07/10 08:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2015/07/10 08:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] © O58 - SDL:2015/07/10 08:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] © O58 - SDL:2015/07/10 08:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] © O58 - SDL:2013/07/17 18:59:00 A . (.Acer Incorporated - RadioShim.) -- C:\WINDOWS\System32\drivers\RadioShim.sys [14680] © O58 - SDL:2015/06/29 03:14:40 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [895256] © O58 - SDL:2015/06/24 23:57:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4504320] © O58 - SDL:2015/06/24 03:17:22 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [761600] © O58 - SDL:2015/06/12 13:51:56 A . (.Razer, Inc. - Razer Overlay Support.) -- C:\WINDOWS\System32\drivers\rzpmgrk.sys [37184] © O58 - SDL:2013/05/05 19:32:47 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\ScpVBus.sys [39168] O58 - SDL:2015/07/10 08:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2015/07/10 08:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2015/07/10 08:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2014/02/19 09:20:30 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID.sys [42224] © O58 - SDL:2014/09/30 18:47:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [129312] © O58 - SDL:2015/07/10 08:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/06/17 17:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2015/10/01 11:52:22 A . (.Windows (R) Win 7 DDK provider - HID mini driver for Unified Virtual HID.) -- C:\WINDOWS\System32\drivers\uvhid.sys [25592] © O58 - SDL:2015/07/10 08:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] © O58 - SDL:2015/07/10 08:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2015/07/10 08:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] © O58 - SDL:2015/07/10 08:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] © ---\\ Últimos ficheiros alterados ou criados (Utilizador) (6) - 145s O61 - LFC: 2015/11/03 14:52:28 A . (..) -- C:\Users\Daniel\Downloads\Firefox Setup Stub 42.0.exe [243976] O61 - LFC: 2015/11/08 00:39:44 A . (..) -- C:\Users\Daniel\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/11/05 14:33:21 A . (.GAS Tecnologia.) -- C:\Users\Daniel\AppData\Local\Microsoft\Windows\INetCache\Low\IE\YNK50TVE\GBPCEFwr[2].exe [822320] O61 - LFC: 2015/11/05 17:22:31 A . (.GAS Tecnologia.) -- C:\Users\Daniel\AppData\Local\Microsoft\Windows\INetCache\IE\4AD3NNHZ\GBPCEFwr[1].exe [822320] O61 - LFC: 2015/11/05 17:22:12 A . (..) -- C:\Users\Daniel\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635823424157533146.bin [22276] O61 - LFC: 2015/11/08 00:24:29 A . (..) -- C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associações Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor do Registro.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe © ---\\ Menu de inicialização Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Pesquisa de infeção nos navegadores da Internet (6) - 2s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (mystartsearch) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {40902B9C-9E28-4F75-817A-0D1554BE859E} - () - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {AA9A4890-4262-4441-8977-E2FFCBFB706C} - (Yahoo!) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch ---\\ Listagem dos ficheiros Crack & Keygen (2) - 88s O82 - LFC: 2013/01/29 14:33:00 A . (...) -- C:\Users\Daniel\Desktop\Stuff\INSTALA TUDOO W7\ATIVADOR\Windows_Loader_v2.2.1\Windows Loader\Windows Loader.exe [3945501] =>.Crack,Keygen O82 - LFC: 2013/01/29 14:33:00 A . (...) -- C:\Users\Daniel\Desktop\Stuff\INSTALA TUDOO W7\ATIVADOR\Windows Loader\Windows Loader.exe [3945501] =>.Crack,Keygen ---\\ Listagem dos serviços iniciados pelo Svchost (41) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [192000] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\System32\srvsvc.dll [283136] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Política de Grupo.) -- C:\Windows\System32\gpsvc.dll [1335296] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\IKEEXT.DLL [954368] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [954880] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\System32\seclogon.dll [31232] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [93696] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [106496] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\System32\schedsvc.dll [1008640] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [226304] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [133120] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [324608] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [371200] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [95744] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Serviço Conta da Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2093056] © O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [196096] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Serviço Assistente de Conectividade de Rede.) -- C:\Windows\System32\NcaSvc.dll [167424] © O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Serviço de Configuração de Rede.) -- C:\Windows\System32\NetSetupSvc.dll [187392] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [106496] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [679936] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [497152] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [72192] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [311808] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2236416] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de tel.) -- C:\Windows\System32\qmgr.dll [1168896] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [593920] © O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [63488] © O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1149440] © O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1019392] © O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Atualizar Sessão do Orchestrator Core.) -- C:\Windows\System32\usocore.dll [343040] © O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [713216] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Serviço de Geolocalização.) -- C:\Windows\System32\lfsvc.dll [27136] © O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL do Serviço de Gerenciamento do Windows.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] © O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [918016] © O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [1010176] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [359936] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gerenciador de Instalação de Dispositivo.) -- C:\Windows\System32\DeviceSetupManager.dll [237568] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\System32\themeservice.dll [58368] © ---\\ Lista das exceções do FireWall (FirewallRules) (52) - 3s O87 - FAEL: "{F8F0FD44-C564-454E-9631-469811C6E899}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{88A574BB-3AA6-464C-9B8F-AA8F5EB70ED6}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{83210385-A2D0-4819-AD05-1EB903F30579}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{CA1D6055-E875-4C9A-A777-713963878CD0}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{04D36304-ABBA-415B-9C6F-B2313B011EB8}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico O87 - FAEL: "{B079B9CF-B406-447F-B5EF-1673ED9C9EDA}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico O87 - FAEL: "{41B4B8FE-E23F-4021-9E36-DF6CB623DA50}" [In-None-P17-TRUE] .(...) -- C:\Users\Daniel\AppData\Local\Temp\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS O87 - FAEL: "{F55638D2-EE77-4240-A5FC-92E7466146CE}" [In-None-P6-TRUE] .(...) -- C:\Users\Daniel\AppData\Local\Temp\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS O87 - FAEL: "{F2238783-DEBA-46E5-92D1-56714F29218E}" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\BitTorrent.exe O87 - FAEL: "{C12BF762-9E5C-4853-AC12-87173E99C3D6}" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Daniel\AppData\Roaming\BitTorrent\BitTorrent.exe O87 - FAEL: "{A173ACAB-3829-4B76-8F55-B09D1CCD2F4E}" [Out-None-P6-TRUE] .(.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe O87 - FAEL: "{9A055A1B-3791-42F8-B4C1-4B41E9902BF9}" [In-None-P6-TRUE] .(.Unified Intents AB - Unified Remote.) -- C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe O87 - FAEL: "{E4779F83-9965-46B1-9AAA-F64DDB6E61C5}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\SareJun\ymiacy.EXE (.not file.) O87 - FAEL: "{DBBEE11B-DE17-455B-A53C-2BDA0C6FE2E7}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\SareJun\ymiacy.EXE (.not file.) O87 - FAEL: "{74142F75-0284-4BB4-9738-F37951C1AE62}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\SareJun\ymiacy.EXE (.not file.) O87 - FAEL: "{5112279D-4E5E-4B44-A1A6-271E4034FEE1}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\SareJun\ymiacy.EXE (.not file.) O87 - FAEL: "UDP Query User{3B47C08A-43D2-47DB-B70A-5CDCE1D1E6A6}C:\games\portal2\portal2.exe" [In-None-P17-TRUE] .(...) -- C:\games\portal2\portal2.exe O87 - FAEL: "TCP Query User{9DA1111F-6C9E-4127-9329-08F74FC1A25C}C:\games\portal2\portal2.exe" [In-None-P6-TRUE] .(...) -- C:\games\portal2\portal2.exe O87 - FAEL: "{B724A4FB-7769-4993-90F0-E4E554581D8C}" [Out-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{7799E296-F300-4032-ABE3-182712B1A866}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{A768AE87-BB7D-4290-B9F2-70664D1A3995}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{CBC66FB6-2FFB-48B1-BA80-8EF86D93E982}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{2D2AB6B7-CEB3-4833-B8A3-7A866494AD66}" [Out-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{9550C232-1702-4016-A2B3-719B1A194347}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Daniel\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{E919741D-CA82-4491-A98D-B02556EA9AD4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{F9476182-29A2-4516-BED9-DF10615C84DF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{A6886C26-9DB0-4A35-9AE3-D53C78EF1FAC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{D435FAE0-97F4-40F5-91B0-E2BB1BEA96C4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{5E34974E-B26C-47B3-AE8F-D51C2AEE9240}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{58E61E42-81F9-46AC-BECA-6FEEB2275C8E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{E9B77BCD-D5D9-495D-8EE8-7887F51E61C0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{2BA146F6-44C9-475B-8207-D87EF9B815DA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{4BC67D80-8116-487B-BB6E-948EEC12BFCE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (.not file.) O87 - FAEL: "{276FF826-E210-457B-91FB-6F3E13528F93}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (.not file.) O87 - FAEL: "{A54B6F31-F174-40E3-BF20-CDA4429B4084}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (.not file.) O87 - FAEL: "{B6F8B49C-1142-45B2-AD8E-F236551CD893}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (.not file.) O87 - FAEL: "{ABAE365C-407F-45DB-BD89-3BC6CAB4CA39}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{5379E9EA-F3A5-466E-BC73-C0BD6B4F18A7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{1D52DB4F-6C8A-41B9-81E5-1C191814F304}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{842CCE0D-9D6E-4AC8-8E9A-6FBF1C384495}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{D67281FC-C555-49F0-BCF1-C0CCA537BC6A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{7569824D-D5DB-41A7-A145-407BA0B0C2E9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{4B72C356-0480-4DDA-A767-F414C9FDB4C0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{2444A11C-73C6-41C2-9F19-3060C6A53FC0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{9143EEEF-A0D6-46E1-8809-07887F78A223}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.) O87 - FAEL: "{83680B3E-F10C-4551-8595-C42A1D4EA8CC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (.not file.) O87 - FAEL: "{5D503794-D0CF-44D4-98E4-1294CBA156B5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.) O87 - FAEL: "{236CC34F-C02A-4B30-A061-402037E0AB78}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{51F584FF-D5C9-4C5C-9748-858715B3122A}" [In-None-P17-TRUE] .(.Copyright © 2014 - SmartShareDMR.) -- C:\Program Files (x86)\LG Software\LG Smart Share\DMR\SmartShareDMR.exe O87 - FAEL: "{98A215D2-8597-4C14-A5AC-51951E44B85C}" [In-None-P6-TRUE] .(.Copyright © 2014 - SmartShareDMR.) -- C:\Program Files (x86)\LG Software\LG Smart Share\DMR\SmartShareDMR.exe O87 - FAEL: "{9DD6DFB4-28FD-4DDA-B1C0-D3DB7C9D881D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{A4A8CCCA-C654-447E-8E61-06EB822A8922}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico ---\\ Listagem dos códigos dos software (1) - 1s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (27) - 16s SR - Auto [23/09/2012] [ 65192] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [12/08/2015] [ 462096] Serviço do Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Demand [01/10/2015] [ 293280] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Demand [18/06/2015] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe © SR - Auto [28/01/2015] [ 1349576] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe © SR - Auto [23/04/2014] [ 166504] EMP_UDSA (EMP_UDSA) . (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UDSA.exe © SR - Auto [24/04/2014] [ 227904] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe © SS - Demand [24/04/2014] [ 203344] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe © SR - Auto [13/08/2015] [ 587576] Gbp Service (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe © SR - Auto [01/10/2015] [ 361368] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe © SS - Demand [13/05/2014] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe © SR - Demand [16/10/2015] [ 644880] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SR - Auto [03/09/2014] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [03/09/2014] [ 405976] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Demand [30/10/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [08/08/2014] [ 1721800] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © SR - Auto [13/07/2015] [ 937616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe © SS - Auto [14/08/2015] [ 188072] Razer Game Scanner (Razer Game Scanner Service) . (.Copyright © 2013-2015.) - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe SR - Auto [01/10/2015] [ 4327632] RemoteServerWin (RemoteServerWin) . (.Unified Intents AB.) - C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe SR - Auto [21/08/2015] [ 129168] RzKLService (RzKLService) . (.Razer Inc..) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe © SS - Auto [02/03/2014] [ 977088] Service KMSELDI (Service KMSELDI) . (...) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico SR - Demand [07/11/2015] [ 836176] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe © SR - Auto [19/10/2015] [ 339968] (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe © SR - Auto [28/10/2015] [ 102400] Vono Manager (Vono_Manager) . (...) - C:\Program Files (x86)\Vono\Vono\Vono Manager.exe ---\\ Scâner Aditional (67) - 0s HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI =>HackTool.KMSpico C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico HKCU\SOFTWARE\3y2b9qOjUKE6VA3E =>PUP.Optional.CrossRider C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico C:\WINDOWS\Tasks\3y2b9qOjUKE6VA3E.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\WINDOWS\Tasks\QBFVEVEA1.job =>PUP.Optional.EpsanDrive C:\WINDOWS\System32\Tasks\3y2b9qOjUKE6VA3E =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\WINDOWS\System32\Tasks\AutoPico Daily Restart =>HackTool.KMSpico C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate C:\WINDOWS\System32\Tasks\QBFVEVEA1 =>PUP.Optional.EpsanDrive C:\WINDOWS\System32\Tasks\YTDownloader =>PUP.Optional.YTDownloader C:\WINDOWS\System32\Tasks\YTDownloaderUpd =>PUP.Optional.YTDownloader HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 =>HackTool.KMSpico HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\YTDownloader =>PUP.Optional.YTDownloader HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKCU\SOFTWARE\Cinema-Plus-5.1tV07.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Ge-Force-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\Sense-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\TNT2 =>PUP.Optional.Freshy HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico C:\ProgramData\EpsanDrive =>PUP.Optional.EpsanDrive C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager C:\Users\Daniel\AppData\Local\BrowserHelper =>PUP.Optional.BrowserHelper C:\Users\Daniel\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\Daniel\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\Daniel\AppData\Local\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader C:\WINDOWS\System32\drivers\innfd_1_10_0_14.sys =>PUP.Optional.Infonaut C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate ---\\ Informações complémentaires do módulos (23) - 0s http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/blog =>PUP.Optional.EpsanDrive http://www.nicolascoolman.fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader http://www.nicolascoolman.fr/blog =>Toolbar.AskBar http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/blog =>PUP.Optional.Infonaut http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech http://www.nicolascoolman.fr/blog =>PUP.Optional.Freshy http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserHelper http://www.nicolascoolman.fr/blog =>.Superfluous.CrashReports ~ End of the scan, 42414 items in 305 seconds (1305)(2)