cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 03-08-2016
Executado por David Samerson (administrador) em DAVIDSAMERSON (06-08-2016 23:19:16)
Executando a partir de C:\Users\David Samerson\Downloads
Perfis Carregados: David Samerson (Perfis Disponíveis: David Samerson)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
() C:\Program Files (x86)\Hotkey\PowerBiosServer.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Chicony) C:\Program Files (x86)\ChiconyCam\CECAPLF.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files (x86)\Hotkey\Hotkey.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11772520 2011-01-04] (Realtek Semiconductor)
HKLM\...\Run: [CECAPLF] => C:\Program Files (x86)\ChiconyCam\CECAPLF.exe [121456 2010-09-17] (Chicony)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-02-10] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-07-23] (AVAST Software)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2011-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2904984 2011-09-05] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKU\S-1-5-21-3554762980-2130059419-1407404388-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3554762980-2130059419-1407404388-1000\...\Run: [ApacheTomcatMonitor8.5_Tomcat8] => C:\Program Files\Apache Software Foundation\Tomcat 8.5\bin\Tomcat8w.exe [110208 2016-07-06] (Apache Software Foundation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-23] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hotkey.lnk [2016-07-23]
ShortcutTarget: Hotkey.lnk -> C:\Program Files (x86)\Hotkey\Hotkey.exe ()

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{6F0B71AF-6B6D-478D-B0E6-413E1391B03C}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-08-03] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-07-23] (AVAST Software)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-07-23] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-03] (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-23] (AVAST Software)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-07-23] (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-07-23] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-07-23] (Google Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-03] (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-03] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2011-09-05] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-23]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-23]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2016-08-03] [não assinado]

Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\ppGoogleNaClPluginChrome.dll => Nenhum Arquivo
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\pdf.dll => Nenhum Arquivo
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll => Nenhum Arquivo
CHR Profile: C:\Users\David Samerson\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\David Samerson\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-23]
CHR Extension: (Chrome Media Router) - C:\Users\David Samerson\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-03]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-07-07] (Advanced Micro Devices, Inc.) [Arquivo não assinado]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-23] (AVAST Software)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [647680 2016-07-23] (Macrovision Europe Ltd.) [Arquivo não assinado]
R3 FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1028096 2016-07-23] (Macrovision Europe Ltd.) [Arquivo não assinado]
R2 PowerBiosServer; C:\Program Files (x86)\Hotkey\PowerBiosServer.exe [33280 2011-01-17] () [Arquivo não assinado]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Arquivo não assinado]
S3 Tomcat8; C:\Program Files\Apache Software Foundation\Tomcat 8.5\bin\Tomcat8.exe [109696 2016-07-06] (Apache Software Foundation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-23] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-23] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108304 2016-07-23] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-23] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-23] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-07-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [473592 2016-07-23] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162904 2016-07-23] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-06] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-08-06 23:19 - 2016-08-06 23:20 - 00015642 _____ C:\Users\David Samerson\Downloads\FRST.txt
2016-08-06 23:19 - 2016-08-06 23:19 - 00000000 ____D C:\FRST
2016-08-06 23:17 - 2016-08-06 23:18 - 02393600 _____ (Farbar) C:\Users\David Samerson\Downloads\FRST64.exe
2016-08-06 23:03 - 2016-08-06 23:03 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2016-08-05 02:54 - 2016-08-05 02:54 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Corel
2016-08-05 02:53 - 2016-08-05 03:08 - 00002999 _____ C:\Users\Public\Desktop\CorelDRAW X8 (64-Bit).lnk
2016-08-05 02:53 - 2016-08-05 03:02 - 00003063 _____ C:\Users\Public\Desktop\Corel PHOTO-PAINT X8 (64-Bit).lnk
2016-08-05 02:53 - 2016-08-05 03:02 - 00003060 _____ C:\Users\Public\Desktop\Corel CAPTURE X8 (64-Bit).lnk
2016-08-05 02:53 - 2016-08-05 03:02 - 00002343 _____ C:\Users\Public\Desktop\Corel CONNECT X8 (64-Bit).lnk
2016-08-05 02:53 - 2016-08-05 03:02 - 00002256 _____ C:\Users\Public\Desktop\Corel Font Manager X8 (64-Bit).lnk
2016-08-05 02:53 - 2016-08-05 02:53 - 00000000 ____D C:\Program Files (x86)\gs
2016-08-05 02:51 - 2016-08-05 02:51 - 00000000 ____D C:\Users\Todos os Usuários\VsTelemetry
2016-08-05 02:51 - 2016-08-05 02:51 - 00000000 ____D C:\ProgramData\VsTelemetry
2016-08-05 02:50 - 2016-08-05 03:06 - 00003344 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore
2016-08-05 02:50 - 2016-08-05 02:50 - 00000000 ____D C:\Program Files (x86)\Corel
2016-08-05 02:49 - 2016-08-05 02:49 - 00000000 ____D C:\Program Files\Common Files\Corel
2016-08-05 02:46 - 2016-08-05 02:46 - 00001658 _____ C:\Users\Public\Desktop\Recuva.lnk
2016-08-05 02:46 - 2016-08-05 02:46 - 00000000 ____D C:\Users\Public\Documents\Corel
2016-08-05 02:46 - 2016-08-05 02:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2016-08-05 02:46 - 2016-08-05 02:46 - 00000000 ____D C:\Program Files\Recuva
2016-08-05 02:45 - 2016-08-05 03:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X8 (64-bit)
2016-08-05 02:43 - 2016-08-05 02:52 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-08-05 02:43 - 2016-08-05 02:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-08-05 02:42 - 2016-08-05 02:56 - 00000000 ____D C:\Users\Todos os Usuários\Corel
2016-08-05 02:42 - 2016-08-05 02:56 - 00000000 ____D C:\ProgramData\Corel
2016-08-05 02:42 - 2016-08-05 02:50 - 00000000 ____D C:\Program Files\Corel
2016-08-05 02:26 - 2016-08-05 02:26 - 01566486 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-08-04 22:57 - 2016-07-26 08:35 - 00000000 ____D C:\Users\David Samerson\Desktop\Recuva Professional 1.51.1063+Serial
2016-08-04 22:53 - 2016-08-04 00:05 - 00000000 ____D C:\Users\David Samerson\Desktop\CorelDRAW Graphics Suite X8 - WWW.DTORRENT.COM.BR
2016-08-03 21:57 - 2016-08-03 21:57 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Tomcat 8.5 Tomcat8
2016-08-03 21:56 - 2016-08-03 21:56 - 00000000 ____D C:\Program Files\Apache Software Foundation
2016-08-03 21:52 - 2016-08-03 21:52 - 00002021 _____ C:\Users\Public\Desktop\NetBeans IDE 8.1.lnk
2016-08-03 21:52 - 2016-08-03 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans
2016-08-03 21:49 - 2016-08-03 21:52 - 10895627 _____ C:\Users\David Samerson\Downloads\apache-tomcat-8.5.4-windows-x64.zip
2016-08-03 21:49 - 2016-08-03 21:52 - 09632240 _____ (Apache Software Foundation) C:\Users\David Samerson\Downloads\apache-tomcat-8.5.4.exe
2016-08-03 21:47 - 2016-08-03 22:24 - 289018133 _____ C:\Users\David Samerson\Downloads\eclipse-jee-mars-2-win32-x86_64.zip
2016-08-03 21:42 - 2016-08-03 22:01 - 00000000 ____D C:\Program Files\NetBeans 8.1
2016-08-03 21:41 - 2016-08-03 22:00 - 00000000 ____D C:\Users\David Samerson\.oracle_jre_usage
2016-08-03 21:41 - 2016-08-03 21:41 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Sun
2016-08-03 21:41 - 2016-08-03 21:41 - 00000000 ____D C:\Users\David Samerson\AppData\LocalLow\Sun
2016-08-03 21:41 - 2016-08-03 21:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-08-03 21:41 - 2016-08-03 21:40 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2016-08-03 21:39 - 2016-08-03 21:39 - 00000000 ____D C:\Users\Todos os Usuários\Oracle
2016-08-03 21:39 - 2016-08-03 21:39 - 00000000 ____D C:\ProgramData\Oracle
2016-08-03 21:36 - 2016-08-03 21:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-08-03 21:36 - 2016-08-03 21:36 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\WinRAR
2016-08-03 21:35 - 2016-08-03 21:35 - 00000000 ____D C:\Users\David Samerson\AppData\LocalLow\Oracle
2016-08-03 21:33 - 2016-08-03 21:37 - 00000000 ____D C:\Program Files\Java
2016-08-03 21:31 - 2016-08-03 22:05 - 00000000 ____D C:\Users\David Samerson\.nbi
2016-08-03 21:08 - 2016-08-03 21:08 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2016-08-03 20:58 - 2016-08-03 20:58 - 00000000 ____D C:\Windows\system32\Macromed
2016-08-03 20:58 - 2016-08-03 20:58 - 00000000 ____D C:\Users\Todos os Usuários\ALM
2016-08-03 20:58 - 2016-08-03 20:58 - 00000000 ____D C:\ProgramData\ALM
2016-08-03 20:54 - 2016-08-03 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-08-03 20:54 - 2016-08-03 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-08-03 20:52 - 2016-08-03 20:52 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-08-03 20:48 - 2016-08-03 20:48 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2016-08-03 20:46 - 2016-08-03 20:46 - 00000000 ____D C:\Windows\PCHEALTH
2016-08-03 20:46 - 2016-08-03 20:46 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2016-08-03 20:46 - 2016-08-03 20:46 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2016-08-03 20:32 - 2016-08-03 20:32 - 00000000 ____D C:\Users\David Samerson\Adobe Flash Builder 4.6
2016-08-03 20:30 - 2016-08-03 20:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
2016-08-03 20:29 - 2016-08-03 20:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2016-08-03 20:26 - 2016-08-03 20:26 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2016-08-03 20:26 - 2016-08-03 20:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-08-03 20:25 - 2016-08-03 20:46 - 00000000 ____D C:\Program Files\Microsoft Office
2016-08-03 20:25 - 2016-08-03 20:25 - 00000000 ____D C:\Users\David Samerson\AppData\Local\Microsoft Help
2016-08-03 20:25 - 2016-08-03 20:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-08-03 20:24 - 2016-08-03 21:16 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2016-08-03 20:21 - 2016-08-03 20:21 - 00002465 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
2016-08-03 20:21 - 2016-08-03 20:21 - 00002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk
2016-08-03 20:21 - 2016-08-03 20:21 - 00002026 _____ C:\Users\Public\Desktop\Adobe Acrobat X Pro.lnk
2016-08-03 20:21 - 2016-08-03 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2
2016-08-03 20:15 - 2016-08-03 20:15 - 00000000 __RHD C:\MSOCache
2016-08-03 20:10 - 2016-08-03 20:10 - 00001097 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Widget Browser.lnk
2016-08-03 20:06 - 2011-11-03 03:01 - 00056208 ____N (Rovi Corporation) C:\Windows\system32\Drivers\PxHlpa64.sys
2016-08-03 20:06 - 2011-10-17 03:00 - 00010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdralw2k.sys
2016-08-03 20:06 - 2011-10-17 03:00 - 00010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdr4_xp.sys
2016-08-03 20:05 - 2016-08-03 20:05 - 00000000 ____D C:\Program Files (x86)\My Company Name
2016-08-03 19:54 - 2016-08-03 19:55 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\CodeBlocks
2016-08-03 19:53 - 2016-08-03 19:53 - 00001095 _____ C:\Users\David Samerson\Desktop\CodeBlocks.lnk
2016-08-03 19:53 - 2016-08-03 19:53 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks
2016-08-03 19:53 - 2016-08-03 19:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks
2016-08-03 19:53 - 2016-08-03 19:53 - 00000000 ____D C:\Program Files (x86)\CodeBlocks
2016-08-03 19:52 - 2016-08-03 21:27 - 364971854 _____ C:\Users\David Samerson\Downloads\mysql-5.7.14-winx64.zip
2016-08-03 19:52 - 2016-08-03 21:23 - 327244632 _____ C:\Users\David Samerson\Downloads\jdk-8u101-nb-8_1-windows-x64.exe
2016-08-03 19:52 - 2016-08-03 19:52 - 00000997 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2016-08-03 19:52 - 2016-08-03 19:52 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Roaming\Macromedia
2016-08-03 19:52 - 2016-08-03 19:52 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-08-03 19:52 - 2016-08-03 19:52 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-08-03 19:45 - 2016-08-03 19:50 - 34486727 _____ (The Code::Blocks Team) C:\Users\David Samerson\Downloads\codeblocks-16.01-setup.exe
2016-08-03 19:43 - 2016-08-03 19:43 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-08-03 19:42 - 2016-08-03 21:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6
2016-08-03 19:42 - 2016-08-03 21:20 - 00000000 ____D C:\Program Files\Adobe
2016-08-03 19:41 - 2016-08-03 19:47 - 29880701 _____ (Bitnami) C:\Users\David Samerson\Downloads\xampp-portable-win32-5.6.23-0-VC11-installer.exe
2016-08-03 19:40 - 2016-08-03 21:21 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-08-03 19:34 - 2016-08-03 19:34 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Macromedia
2016-07-26 08:44 - 2016-07-26 08:35 - 00000000 ____D C:\Users\David Samerson\Documents\Recuva Professional 1.51.1063+Serial
2016-07-26 08:44 - 2016-07-26 00:46 - 00000000 ____D C:\Users\David Samerson\Documents\Microsoft Office 2010 Language Pack PT-BR X64
2016-07-24 08:14 - 2016-07-24 08:14 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator
2016-07-24 08:14 - 2016-07-24 08:14 - 00000000 ____D C:\Program Files (x86)\LinuxLive USB Creator
2016-07-24 08:12 - 2016-07-24 08:13 - 06160320 _____ (LinuxLive USB Creator) C:\Users\David Samerson\Downloads\LinuxLive USB Creator 2.9.4.exe
2016-07-23 23:36 - 2016-07-24 02:11 - 1697906688 _____ C:\Users\David Samerson\Downloads\linuxmint-18-cinnamon-64bit.iso
2016-07-23 23:13 - 2016-07-23 23:13 - 00000000 ____D C:\Program Files\WinRAR
2016-07-23 23:11 - 2016-07-23 23:12 - 03524856 _____ C:\Users\David Samerson\Downloads\winrar-x64-531br.exe
2016-07-23 23:08 - 2016-07-23 23:13 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-07-23 23:08 - 2016-07-23 23:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-07-23 23:08 - 2016-07-23 23:08 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-07-23 23:05 - 2016-07-23 23:05 - 01808528 _____ C:\Users\David Samerson\Downloads\wrar531.exe
2016-07-23 21:59 - 2016-08-05 02:19 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Adobe
2016-07-23 21:59 - 2016-07-23 21:59 - 00000000 ____D C:\Users\David Samerson\AppData\LocalLow\Adobe
2016-07-23 21:55 - 2016-07-24 00:59 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-07-23 21:54 - 2016-08-03 21:24 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-07-23 21:54 - 2016-08-03 21:24 - 00000000 ____D C:\ProgramData\Adobe
2016-07-23 21:54 - 2016-08-03 21:19 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-07-23 21:54 - 2016-08-03 21:19 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-07-23 21:54 - 2016-07-23 21:54 - 00002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-07-23 21:47 - 2016-08-05 02:18 - 00000000 ____D C:\Users\David Samerson\AppData\Local\Adobe
2016-07-23 21:17 - 2016-07-23 21:17 - 00000000 ____D C:\Users\David Samerson\AppData\Local\CEF
2016-07-23 21:16 - 2016-07-23 21:16 - 00003906 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1469319392
2016-07-23 21:16 - 2016-07-23 21:16 - 00001037 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-07-23 21:16 - 2016-07-23 21:16 - 00001037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-07-23 21:15 - 2016-07-23 21:15 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-07-23 20:48 - 2016-07-23 20:48 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-07-23 20:48 - 2016-07-23 20:48 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\AVAST Software
2016-07-23 20:48 - 2016-07-23 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-07-23 20:47 - 2016-08-06 22:28 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2016-07-23 20:47 - 2016-08-03 20:49 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys.147053330624501
2016-07-23 20:47 - 2016-07-23 20:47 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2016-07-23 20:47 - 2016-07-23 20:47 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-07-23 20:47 - 2016-07-23 20:47 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-07-23 20:47 - 2016-07-23 20:47 - 00000000 ____D C:\Program Files\Common Files\AV
2016-07-23 20:47 - 2016-07-23 20:46 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-07-23 20:47 - 2016-07-23 20:46 - 00162904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-07-23 20:47 - 2016-07-23 20:46 - 00108304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-07-23 20:47 - 2016-07-23 20:46 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-07-23 20:47 - 2016-07-23 20:46 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-07-23 20:47 - 2016-07-23 20:46 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-07-23 20:46 - 2016-07-23 20:46 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2016-07-23 20:46 - 2016-07-23 20:46 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2016-07-23 20:46 - 2016-07-23 20:46 - 00390984 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-07-23 20:46 - 2016-07-23 20:46 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-07-23 20:35 - 2016-07-23 21:15 - 00000000 ____D C:\Program Files\AVAST Software
2016-07-23 20:34 - 2016-07-23 21:15 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2016-07-23 20:34 - 2016-07-23 21:15 - 00000000 ____D C:\ProgramData\AVAST Software
2016-07-23 20:33 - 2016-07-23 20:34 - 06253800 _____ (AVAST Software) C:\Users\David Samerson\Downloads\avast_free_antivirus_setup_online.exe
2016-07-23 20:25 - 2016-07-23 20:25 - 00006576 ____N C:\bootsqm.dat
2016-07-23 16:19 - 2016-07-23 16:19 - 06748160 _____ C:\Program Files (x86)\GUTF3F0.tmp
2016-07-23 16:19 - 2016-07-23 16:19 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2016-07-23 16:19 - 2016-07-23 16:19 - 00000000 ____D C:\Program Files (x86)\GUMF3EF.tmp
2016-07-23 16:11 - 2016-07-23 16:11 - 00987728 _____ (Google Inc.) C:\Users\David Samerson\Downloads\ChromeSetup.exe
2016-07-23 16:11 - 2016-07-23 16:11 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2016-07-23 16:11 - 2016-07-23 16:11 - 00000000 ____D C:\Users\David Samerson\AppData\Local\AMD
2016-07-23 16:10 - 2016-07-23 16:10 - 00000000 ____D C:\Users\Todos os Usuários\ATI
2016-07-23 16:10 - 2016-07-23 16:10 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\ATI
2016-07-23 16:10 - 2016-07-23 16:10 - 00000000 ____D C:\Users\David Samerson\AppData\Local\ATI
2016-07-23 16:10 - 2016-07-23 16:10 - 00000000 ____D C:\ProgramData\ATI
2016-07-23 16:08 - 2016-08-06 22:28 - 00133848 _____ C:\Users\David Samerson\AppData\Local\GDIPFONTCACHEV1.DAT
2016-07-23 16:07 - 2016-07-23 16:07 - 00000000 _____ C:\Windows\ativpsrm.bin
2016-07-23 16:04 - 2016-07-23 16:18 - 00002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-07-23 16:04 - 2016-07-23 16:18 - 00002257 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-07-23 16:04 - 2016-07-23 16:04 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2016-07-23 16:03 - 2016-08-06 23:05 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-23 16:03 - 2016-08-06 22:28 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-23 16:03 - 2016-08-03 20:59 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-07-23 16:03 - 2016-08-03 20:59 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-23 16:03 - 2016-07-23 22:19 - 00000000 ____D C:\Users\David Samerson\AppData\Local\Google
2016-07-23 16:03 - 2016-07-23 16:04 - 00000000 ____D C:\Program Files (x86)\Google
2016-07-23 16:03 - 2016-07-23 16:03 - 00000000 ____D C:\Users\Todos os Usuários\Google
2016-07-23 16:03 - 2016-07-23 16:03 - 00000000 ____D C:\ProgramData\Google
2016-07-23 16:03 - 2016-07-23 16:03 - 00000000 ____D C:\Program Files\Google
2016-07-23 16:02 - 2016-07-30 18:41 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\HpUpdate
2016-07-23 16:02 - 2016-07-23 16:02 - 00003660 _____ C:\Windows\System32\Tasks\HPCustParticipation HP Deskjet 2540 series
2016-07-23 16:02 - 2016-07-23 16:02 - 00002212 _____ C:\Users\Public\Desktop\HP Deskjet 2540 series.lnk
2016-07-23 16:02 - 2016-07-23 16:02 - 00001995 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk
2016-07-23 16:02 - 2016-07-23 16:02 - 00001159 _____ C:\Users\Public\Desktop\Comprar suprimentos - HP Deskjet 2540 series.lnk
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\Users\Todos os Usuários\Visan
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\Users\Todos os Usuários\HP Photo Creations
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\ProgramData\Visan
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\ProgramData\HP Photo Creations
2016-07-23 16:02 - 2016-07-23 16:02 - 00000000 ____D C:\Program Files (x86)\HP Photo Creations
2016-07-23 16:02 - 2014-03-06 12:51 - 00763912 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPMC211.dll
2016-07-23 16:01 - 2016-07-23 16:02 - 00000000 ____D C:\Program Files (x86)\HP
2016-07-23 16:01 - 2016-07-23 16:01 - 00000000 ____D C:\Users\Todos os Usuários\HP
2016-07-23 16:01 - 2016-07-23 16:01 - 00000000 ____D C:\ProgramData\HP
2016-07-23 16:01 - 2016-07-23 16:01 - 00000000 ____D C:\Program Files\HP
2016-07-23 16:00 - 2016-07-23 16:04 - 00000000 ____D C:\Users\David Samerson\AppData\Local\HP
2016-07-23 16:00 - 2016-07-23 16:00 - 00000057 _____ C:\Users\Todos os Usuários\Ament.ini
2016-07-23 16:00 - 2016-07-23 16:00 - 00000057 _____ C:\ProgramData\Ament.ini
2016-07-23 16:00 - 2014-05-14 13:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-07-23 16:00 - 2014-05-14 13:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-07-23 16:00 - 2014-05-14 13:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-07-23 16:00 - 2014-05-14 13:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-07-23 16:00 - 2014-05-14 13:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-07-23 16:00 - 2014-05-14 13:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-07-23 16:00 - 2014-05-14 13:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-07-23 16:00 - 2014-05-14 13:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-07-23 16:00 - 2014-05-14 13:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-07-23 16:00 - 2014-05-14 13:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-07-23 16:00 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-07-23 16:00 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-07-23 16:00 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-07-23 16:00 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-07-23 15:58 - 2016-07-23 15:58 - 00000000 ____D C:\Users\Todos os Usuários\FLEXnet
2016-07-23 15:58 - 2016-07-23 15:58 - 00000000 ____D C:\Users\David Samerson\Documents\Meus Arquivos Recebidos
2016-07-23 15:58 - 2016-07-23 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth
2016-07-23 15:58 - 2016-07-23 15:58 - 00000000 ____D C:\ProgramData\FLEXnet
2016-07-23 15:58 - 2011-04-15 20:14 - 00009048 _____ (Motorola Solutions, Inc.) C:\Windows\system32\btmsstverschk.dll
2016-07-23 15:58 - 2011-02-22 18:33 - 00052736 _____ (Motorola Solutions, Inc.) C:\Windows\system32\Drivers\btmcom.sys
2016-07-23 15:57 - 2016-07-23 15:57 - 00000000 ____D C:\Program Files\Motorola
2016-07-23 15:57 - 2016-07-23 15:57 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared
2016-07-23 15:57 - 2016-07-23 15:57 - 00000000 ____D C:\Program Files (x86)\AMD APP
2016-07-23 15:56 - 2016-07-23 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2016-07-23 15:56 - 2016-07-23 15:56 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-07-23 15:55 - 2016-07-23 15:55 - 00000000 ____D C:\Users\Todos os Usuários\AMD
2016-07-23 15:55 - 2016-07-23 15:55 - 00000000 ____D C:\ProgramData\AMD
2016-07-23 15:55 - 2010-02-18 09:18 - 00046136 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox64.sys
2016-07-23 15:54 - 2016-07-23 15:55 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-07-23 15:54 - 2011-07-07 12:30 - 00172040 _____ C:\Windows\system32\atiapfxx.blb
2016-07-23 15:54 - 2011-07-07 12:25 - 00462848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2016-07-23 15:54 - 2011-07-07 11:54 - 00058880 _____ (AMD) C:\Windows\system32\coinst.dll
2016-07-23 15:54 - 2011-06-06 07:07 - 00231440 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW76.sys
2016-07-23 15:54 - 2011-05-26 16:41 - 00033342 _____ C:\Windows\atiogl.xml
2016-07-23 15:54 - 2011-04-15 03:37 - 00079488 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys
2016-07-23 15:54 - 2011-04-15 03:37 - 00040064 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys
2016-07-23 15:54 - 2011-03-17 02:51 - 00003929 _____ C:\Windows\SysWOW64\atipblag.dat
2016-07-23 15:54 - 2011-03-17 02:51 - 00003929 _____ C:\Windows\system32\atipblag.dat
2016-07-23 15:53 - 2016-07-23 15:54 - 00000000 ____D C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver
2016-07-23 15:53 - 2016-07-23 15:53 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-07-23 15:53 - 2010-12-03 19:29 - 01105000 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys
2016-07-23 15:53 - 2009-02-05 02:49 - 00451072 _____ C:\Windows\SysWOW64\ISSRemoveSP.exe
2016-07-23 15:52 - 2016-07-23 15:56 - 00000000 ____D C:\Program Files\ATI Technologies
2016-07-23 15:52 - 2016-07-23 15:52 - 00000000 ____D C:\Program Files\ATI
2016-07-23 15:51 - 2016-07-23 15:51 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2016-07-23 15:50 - 2016-07-23 15:50 - 00000000 ____D C:\Program Files\Synaptics
2016-07-23 15:50 - 2010-02-10 16:32 - 00316464 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2016-07-23 15:50 - 2010-02-10 16:29 - 00396584 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00264488 _____ (Synaptics Incorporated) C:\Windows\system32\SynCtrl.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00210216 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCtrl.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00207144 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00173352 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCOM.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00147752 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo4.dll
2016-07-23 15:50 - 2010-02-10 16:29 - 00107816 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCOM.dll
2016-07-23 15:50 - 2009-08-06 07:49 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2016-07-23 15:49 - 2016-07-23 15:49 - 00000000 ____D C:\Program Files (x86)\Hotkey
2016-07-23 15:49 - 2011-01-14 18:24 - 00132624 _____ (JMicron Technology Corp.) C:\Windows\system32\Drivers\JME.sys
2016-07-23 15:48 - 2016-07-23 15:49 - 00000000 ____D C:\Program Files (x86)\JMicron
2016-07-23 15:48 - 2016-07-23 15:48 - 00000847 _____ C:\Users\Public\Desktop\WebCam Installer 4.00.lnk
2016-07-23 15:48 - 2016-07-23 15:48 - 00000000 ____D C:\Windows\SysWOW64\SDA
2016-07-23 15:48 - 2016-07-23 15:48 - 00000000 ____D C:\Windows\Snapshot
2016-07-23 15:48 - 2016-07-23 15:48 - 00000000 ____D C:\Program Files (x86)\ChiconyCam
2016-07-23 15:48 - 2016-07-23 15:48 - 00000000 ____D C:\Program Files (x86)\BisonCam
2016-07-23 15:48 - 2011-06-23 00:26 - 00174680 _____ (JMicron Technology Corporation) C:\Windows\system32\Drivers\jmcr.sys
2016-07-23 15:48 - 2011-01-03 03:40 - 00000101 ____R C:\Windows\OEM.ini
2016-07-23 15:48 - 2010-07-26 23:08 - 00203352 _____ (JMicron Technology Corporation) C:\Windows\SysWOW64\jmcricon.dll
2016-07-23 15:48 - 2010-07-26 23:08 - 00203352 _____ (JMicron Technology Corporation) C:\Windows\system32\jmcricon.dll
2016-07-23 15:48 - 2009-11-19 00:07 - 00000020 ____R C:\Windows\Bison.ini
2016-07-23 15:46 - 2016-07-23 15:46 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-07-23 15:46 - 2016-07-23 15:46 - 00000000 ____D C:\Program Files\Realtek
2016-07-23 15:45 - 2016-07-23 15:53 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-07-23 15:45 - 2016-07-23 15:48 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-07-23 15:45 - 2016-07-23 15:45 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-07-23 15:45 - 2011-01-05 00:57 - 00608768 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-07-23 15:45 - 2011-01-05 00:51 - 02697448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-07-23 15:45 - 2011-01-05 00:25 - 00083560 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2016-07-23 15:45 - 2011-01-04 19:58 - 02358376 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-07-23 15:45 - 2011-01-03 23:15 - 02835048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2016-07-23 15:45 - 2010-11-29 23:47 - 02578576 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2016-07-23 15:45 - 2010-11-29 23:47 - 01868944 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll
2016-07-23 15:45 - 2010-11-23 23:45 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-07-23 15:45 - 2010-11-22 16:39 - 00626792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-07-23 15:45 - 2010-11-18 16:49 - 00121744 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-07-23 15:45 - 2010-11-08 12:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-07-23 15:45 - 2010-11-03 23:31 - 01146984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-07-23 15:45 - 2010-11-03 23:31 - 00332392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-07-23 15:45 - 2010-11-03 23:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 01327208 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 01179752 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 01111656 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00504936 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00491112 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00475752 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00317032 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00269928 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00266856 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00126056 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00125544 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-07-23 15:45 - 2010-11-03 23:29 - 00125032 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-07-23 15:45 - 2010-11-02 14:35 - 01718616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-07-23 15:45 - 2010-11-02 14:35 - 00127832 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-07-23 15:45 - 2010-11-02 14:34 - 00421720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-07-23 15:45 - 2010-11-02 14:34 - 00108888 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-07-23 15:45 - 2010-11-02 14:34 - 00074584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-07-23 15:45 - 2010-10-29 15:29 - 01937312 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-07-23 15:45 - 2010-10-28 15:46 - 01251944 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-07-23 15:45 - 2010-10-03 18:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-07-23 15:45 - 2010-09-27 14:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-07-23 15:45 - 2010-07-22 21:48 - 00220496 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\system32\SFNHK64.dll
2016-07-23 15:45 - 2010-07-22 21:48 - 00081232 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\system32\SFCOM64.dll
2016-07-23 15:45 - 2010-07-22 21:48 - 00078160 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\system32\SFAPO64.dll
2016-07-23 15:45 - 2010-07-22 21:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-07-23 15:45 - 2010-07-22 21:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-07-23 15:45 - 2010-05-06 22:34 - 00334680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-07-23 15:45 - 2009-11-24 14:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-07-23 15:45 - 2009-11-24 14:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-07-23 15:45 - 2009-11-24 14:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-07-23 15:45 - 2009-11-24 14:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-07-23 15:45 - 2009-11-18 23:42 - 02197264 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2016-07-23 15:45 - 2009-11-17 23:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-07-23 15:43 - 2016-08-03 21:41 - 00000000 ____D C:\Users\David Samerson
2016-07-23 15:43 - 2016-07-23 15:43 - 00001423 _____ C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-07-23 15:43 - 2016-07-23 15:43 - 00001389 _____ C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-07-23 15:43 - 2016-07-23 15:43 - 00000020 ___SH C:\Users\David Samerson\ntuser.ini
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Modelos
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Meus documentos
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Menu Iniciar
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Documents\Minhas músicas
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Documents\Minhas imagens
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Documents\Meus vídeos
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Dados de aplicativos
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Configurações locais
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\AppData\Local\Histórico
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\AppData\Local\Dados de aplicativos
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Ambiente de rede
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 _SHDL C:\Users\David Samerson\Ambiente de impressão
2016-07-23 15:43 - 2016-07-23 15:43 - 00000000 ____D C:\Users\David Samerson\AppData\Local\VirtualStore
2016-07-23 15:43 - 2011-02-05 11:41 - 00000000 ____D C:\Users\David Samerson\AppData\Roaming\Media Center Programs
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Usuário Padrão
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Todos os Usuários
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Modelos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Meus documentos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Menu Iniciar
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Configurações locais
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Ambiente de rede
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Modelos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Menu Iniciar
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Favoritos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Documentos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Program Files\Common Files\Sistema
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Program Files\Arquivos Comuns
2016-07-23 15:40 - 2016-07-23 15:40 - 00000000 _SHDL C:\Arquivos de Programas
2016-07-23 15:33 - 2016-07-23 15:33 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-07-23 15:32 - 2016-07-23 15:32 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-08-06 22:42 - 2009-07-14 14:55 - 00705268 _____ C:\Windows\system32\prfh0416.dat
2016-08-06 22:42 - 2009-07-14 14:55 - 00147108 _____ C:\Windows\system32\prfc0416.dat
2016-08-06 22:42 - 2009-07-14 02:13 - 01633534 _____ C:\Windows\system32\PerfStringBackup.INI
2016-08-06 22:42 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-08-06 22:34 - 2009-07-14 01:45 - 00017920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-08-06 22:34 - 2009-07-14 01:45 - 00017920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-08-06 22:26 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-06 22:26 - 2009-07-14 01:45 - 05111504 _____ C:\Windows\system32\FNTCACHE.DAT
2016-08-05 02:52 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-08-03 20:52 - 2011-02-05 11:41 - 00000000 ____D C:\Windows\ShellNew
2016-08-03 20:47 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-08-03 20:27 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\System
2016-08-03 20:27 - 2009-07-13 23:34 - 00000478 _____ C:\Windows\win.ini
2016-07-23 23:38 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF
2016-07-23 15:48 - 2009-07-14 00:20 - 00000000 __RSD C:\Windows\Media
2016-07-23 15:41 - 2011-02-07 01:53 - 00000000 ____D C:\Windows\Panther
2016-07-23 15:41 - 2009-07-14 01:45 - 00000000 ____D C:\Windows\Setup
2016-07-23 15:40 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Windows NT
2016-07-23 15:39 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
2016-07-23 15:35 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\oobe
2016-07-23 15:32 - 2009-07-14 02:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-07-23 15:28 - 2009-07-14 02:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template

==================== Arquivos na raiz de alguns diretórios =======

2016-07-23 16:19 - 2016-07-23 16:19 - 6748160 _____ () C:\Program Files (x86)\GUTF3F0.tmp
2016-07-23 16:00 - 2016-07-23 16:00 - 0000057 _____ () C:\ProgramData\Ament.ini

Alguns arquivos em TEMP:
====================
C:\Users\David Samerson\AppData\Local\Temp\DIFxAPI.dll


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2011-02-07 00:54

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité