cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x86) Versão: 22-01-2017
Executado por admin (administrador) em XTREME-17 (24-01-2017 16:52:27)
Executando a partir de C:\Users\admin\Downloads
Perfis Carregados: admin (Perfis Disponíveis: admin)
Platform: Microsoft Windows 7 Home Basic (X86) Idioma: Português (Brasil)
Internet Explorer Versão 8 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Faronics Corporation) C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Nexcafe\wguard.exe
() C:\Nexcafe\guardis.exe
() C:\Program Files\WeatherTool\2.0.1.11389\WeatherService.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ShenZhen Enode Techology co,.Ltd) C:\Program Files\WeatherTool\2.0.1.11389\weather.exe
(Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe
(Raptr, Inc) C:\Program Files\Raptr Inc\Raptr\raptr.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(Faronics Corporation) C:\Program Files\Faronics\Deep Freeze\Install C-0\_$Df\FrzState2k.exe
(Raptr, Inc) C:\Program Files\Raptr Inc\Raptr\raptr_im.exe
(Copyright (c) 2016 Plays.tv, LLC) C:\Program Files\Raptr Inc\PlaysTV\playstv_launcher.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Registro (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [StartCCC] => C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Raptr] => C:\Program Files\Raptr Inc\Raptr\raptrstub.exe [58584 2016-09-28] (Raptr, Inc)
HKLM\...\Run: [nexguard] => C:\Nexcafe\nexguard.exe [18797056 2015-04-02] (Nextar)
Winlogon\Notify\DfLogon: LogonDll.dll [X]
HKLM\...\Policies\Explorer: [NoDesktop] 0
HKLM\...\Policies\Explorer: [NoFind] 0
HKLM\...\Policies\Explorer: [NoLogoff] 0
HKLM\...\Policies\Explorer: [NoToolbarCustomize] 0
HKLM\...\Policies\Explorer: [NoBandCustomize] 0
HKLM\...\Policies\Explorer: [NoWinKeys] 0
HKLM\...\Policies\Explorer: [NoSetFolders] 0
HKLM\...\Policies\Explorer: [NoSetTaskbar] 0
HKLM\...\Policies\Explorer: [NoPrinters] 0
HKLM\...\Policies\Explorer: [NoUserNameInStartMenu] 0
HKLM\...\Policies\Explorer: [NoManageMyComputerVerb] 0
HKLM\...\Policies\Explorer: [NoFileUrl] 0
HKLM\...\Policies\Explorer: [NoSMMyDocs] 0
HKLM\...\Policies\Explorer: [NoSMMyPictures] 0
HKLM\...\Policies\Explorer: [NoStartMenuMyMusic] 0
HKLM\...\Policies\Explorer: [NoNetHood] 0
HKLM\...\Policies\Explorer: [NoNetConnectDisconnect] 0
HKLM\...\Policies\Explorer: [NoWorkgroupContentes] 0
HKLM\...\Policies\Explorer: [NoComputersNearMe] 0
HKLM\...\Policies\Explorer: [NoEntireNetwork] 0
HKLM\...\Policies\Explorer: [NoStartMenuNetworkPlaces] 0
HKLM\...\Policies\Explorer: [NoNetworkConnections] 0
HKLM\...\Policies\Explorer: [NoViewContextMenu] 0
HKLM\...\Policies\Explorer: [NoToolbarsOnTaskbar] 0
HKLM\...\Policies\Explorer: [NoSimpleStartMenu] 0
HKLM\...\Policies\Explorer: [NoViewOnDrive] 0
HKLM\...\Policies\Explorer: [NoStartMenuMorePrograms] 0
HKLM\...\Policies\Explorer: [NoStartMenuPinnedList] 0
HKLM\...\Policies\Explorer: [ForceStartMenuLogoff] 1
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [3376832 2016-06-22] (Disc Soft Ltd)
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Run: [nexguard] => C:\Nexcafe\nexguard.exe [18797056 2015-04-02] (Nextar)
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\system: [HideFastUserSwitching] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\system: [NoDispCPL] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoLogoff] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoToolbarCustomize] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoBandCustomize] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoWinKeys] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoSetFolders] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoSetTaskbar] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoPrinters] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoUserNameInStartMenu] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoManageMyComputerVerb] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoFileUrl] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoSMMyDocs] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoSMMyPictures] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoStartMenuMyMusic] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoNetHood] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoNetConnectDisconnect] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoWorkgroupContentes] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoComputersNearMe] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoEntireNetwork] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoStartMenuNetworkPlaces] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoNetworkConnections] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoViewContextMenu] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoToolbarsOnTaskbar] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoSimpleStartMenu] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoViewOnDrive] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoStartMenuMorePrograms] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [NoStartMenuPinnedList] 0
HKU\S-1-5-21-380822538-1658504906-69672772-1000\...\Policies\Explorer: [ForceStartMenuLogoff] 1
BootExecute: autocheck autochk /k:C *

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 189.7.72.49 189.7.72.33
Tcpip\..\Interfaces\{9021B52F-8E1D-4E36-A747-AB9ABFAFCD70}: [DhcpNameServer] 189.7.72.49 189.7.72.33

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKU\S-1-5-21-380822538-1658504906-69672772-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com.br
HKU\S-1-5-21-380822538-1658504906-69672772-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com.br
HKU\S-1-5-21-380822538-1658504906-69672772-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp

FireFox:
========
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-24] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-24] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://br.hao123.com/?tn=sdkw_inner_hp_09_hao123_br&guid=4d6da378f1aae3d839a0d4dd6a85b045
CHR StartupUrls: Default -> "hxxp://br.hao123.com/?tn=sdkw_inner_hp_09_hao123_br&guid=4d6da378f1aae3d839a0d4dd6a85b045"
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default [2017-01-24]
CHR Extension: (Google Apresentações) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-07-30]
CHR Extension: (Google Docs) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-07-30]
CHR Extension: (Google Drive) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-30]
CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-30]
CHR Extension: (Planilhas do Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-07-30]
CHR Extension: (Documentos Google off-line) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-07-31]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-24]
CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-30]
CHR Extension: (Chrome Media Router) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-01-24]

==================== Serviços (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [276992 2015-08-04] (Advanced Micro Devices, Inc.) [Arquivo não assinado]
R2 DFServ; C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe [1056256 2009-08-05] (Faronics Corporation) [Arquivo não assinado]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1138368 2016-06-22] (Disc Soft Ltd)
R2 Guard Watch; C:\Nexcafe\wguard.exe [146832 2016-08-02] ()
R2 NexGuardIS; C:\Nexcafe\guardis.exe [144272 2016-08-02] ()
R2 TheDesktopWeatherService; C:\Program Files\WeatherTool\2.0.1.11389\WeatherService.exe [150640 2016-05-30] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-13] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\i386\AODDriver2.sys [50400 2014-02-11] (Advanced Micro Devices)
R0 DeepFrz; C:\Windows\system32\Drivers\DeepFrz.sys [152472 2009-08-05] (Faronics Corporation)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [26168 2016-07-31] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [40504 2016-07-31] (Disc Soft Ltd)
R1 mchInjDrv; C:\Windows\system32\Drivers\mchInjDrv.sys [2240 2016-08-02] () [Arquivo não assinado]
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
S3 xspirit; \??\C:\Windows\xspirit.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-01-24 16:50 - 2017-01-24 16:52 - 00012690 _____ C:\Users\admin\Downloads\FRST.txt
2017-01-24 16:50 - 2017-01-24 16:52 - 00000000 ____D C:\FRST
2017-01-24 16:50 - 2017-01-24 16:51 - 00019800 _____ C:\Users\admin\Downloads\Addition.txt
2017-01-24 16:49 - 2017-01-24 16:49 - 01762816 _____ (Farbar) C:\Users\admin\Downloads\FRST.exe
2017-01-24 16:30 - 2017-01-24 16:31 - 00000000 ____D C:\Windows\system32\MRT
2017-01-24 16:30 - 2017-01-24 16:30 - 133456224 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-01-24 16:29 - 2016-06-25 13:43 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe
2017-01-24 16:29 - 2011-06-11 00:37 - 02332672 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-24 16:29 - 2011-04-09 04:13 - 03957632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2017-01-24 16:29 - 2011-04-09 04:13 - 03901824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-24 16:29 - 2011-04-09 03:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-01-24 16:29 - 2010-12-18 03:29 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-24 16:29 - 2009-12-08 06:05 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-01-24 16:29 - 2009-12-08 06:05 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-01-24 16:27 - 2012-06-02 20:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-01-24 16:27 - 2012-06-02 20:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-01-24 16:27 - 2012-06-02 20:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-01-24 16:27 - 2012-06-02 20:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-01-24 16:27 - 2012-06-02 20:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-01-24 16:27 - 2012-06-02 20:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-01-24 16:27 - 2012-06-02 20:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-01-24 16:27 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-01-24 16:27 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-01-24 16:25 - 2017-01-24 16:25 - 13969576 _____ (Microsoft Corporation) C:\Users\admin\Downloads\vc_redist.x86.exe
2017-01-24 16:20 - 2017-01-24 16:20 - 250355754 _____ C:\Windows\MEMORY.DMP
2017-01-24 16:20 - 2017-01-24 16:20 - 00000000 ____D C:\Windows\Minidump

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-01-24 16:52 - 2016-07-30 20:32 - 01633534 _____ C:\Windows\system32\PerfStringBackup.INI
2017-01-24 16:52 - 2009-07-29 16:24 - 00705070 _____ C:\Windows\system32\prfh0416.dat
2017-01-24 16:52 - 2009-07-29 16:24 - 00146910 _____ C:\Windows\system32\prfc0416.dat
2017-01-24 16:52 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\inf
2017-01-24 16:48 - 2016-08-02 16:15 - 00001950 _____ C:\Windows\system32cmu.dat
2017-01-24 16:48 - 2016-08-02 16:15 - 00000000 ____D C:\Nexcafe
2017-01-24 16:48 - 2016-07-31 20:11 - 00000000 ____D C:\Users\admin\AppData\Roaming\Raptr
2017-01-24 16:47 - 2009-07-14 02:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-24 16:47 - 2009-07-14 02:34 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-24 16:47 - 2009-07-14 02:34 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-24 16:47 - 2009-07-14 02:33 - 00285000 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-24 16:32 - 2016-08-02 16:24 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2017-01-24 16:32 - 2016-08-02 16:24 - 00000000 ____D C:\ProgramData\Adobe
2017-01-24 16:32 - 2016-07-30 20:32 - 00002139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-01-24 16:32 - 2016-07-30 20:32 - 00002127 _____ C:\Users\Public\Desktop\Google Chrome.lnk

Alguns arquivos em TEMP:
====================
2016-07-31 20:51 - 2016-07-31 20:51 - 0000512 _____ () C:\Users\admin\AppData\Local\Temp\287c499808bcff52a39d16f78044882a.dll
2016-07-31 20:52 - 2016-07-31 20:59 - 0000081 _____ () C:\Users\admin\AppData\Local\Temp\31966c18703089afb643f5ab3634016d.dll
2016-07-30 20:34 - 2016-07-30 20:34 - 0060000 _____ () C:\Users\admin\AppData\Local\Temp\amd-catalyst-15.7.1-with-dotnet45-win7-32bit.exe
2016-07-31 20:12 - 2016-07-31 20:12 - 59755888 _____ () C:\Users\admin\AppData\Local\Temp\playstv_patch.exe
2016-07-31 20:11 - 2016-07-31 20:11 - 59383200 _____ () C:\Users\admin\AppData\Local\Temp\raptrpatch.exe
2016-07-31 20:11 - 2016-07-31 20:11 - 0221632 _____ () C:\Users\admin\AppData\Local\Temp\raptr_stub.exe
2016-08-02 16:15 - 2016-08-02 16:15 - 32030975 _____ ( ) C:\Users\admin\AppData\Local\Temp\setup_nexcafe_.exe

==================== Bamital & volsnap ======================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente

LastRegBack: 2016-07-30 21:30

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité