Format du document : text/plain
Prévisualisation
Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 15-02-2017
Executado por Robson (administrador) em ARTE (15-02-2017 01:03:38)
Executando a partir de C:\Users\Robson\Downloads
Perfis Carregados: Robson (Perfis Disponíveis: Robson)
Platform: Windows 8.1 Pro (Update) (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: IE)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processos (Whitelisted) =================
(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\D-Link\DWA-123\RtlService.exe
(D-Link Corp.) C:\Program Files (x86)\D-Link\DWA-123\RtWlan.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
==================== Registro (Whitelisted) ====================
(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-18] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-02-13] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKU\S-1-5-21-354422575-759729991-2597353769-1002\...\Run: [Google Update] => C:\Users\Robson\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2017-02-13] (Google Inc.) <===== ATENÇÃO
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-02-13] (AVAST Software)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
GroupPolicy: Restrição <======= ATENÇÃO
==================== Internet (Whitelisted) ====================
(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)
Tcpip\Parameters: [DhcpNameServer] 177.221.96.8 177.221.96.2 0.0.0.0
Tcpip\..\Interfaces\{47275F51-A984-41F0-A2DB-B5190F4D2002}: [DhcpNameServer] 177.221.96.8 177.221.96.2 0.0.0.0
Tcpip\..\Interfaces\{812202DD-8443-4BC2-97AE-ADC2F2C1F360}: [DhcpNameServer] 187.123.29.56 187.123.29.51 201.6.4.116
Internet Explorer:
==================
HKU\S-1-5-21-354422575-759729991-2597353769-1002\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-02-13] (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-13] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-02-13] (AVAST Software)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-13] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
FireFox:
========
FF DefaultProfile: zdk5l2nk.default
FF ProfilePath: C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\zdk5l2nk.default [2017-02-15]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-02-13]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-02-13]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-13] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-02-15] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-354422575-759729991-2597353769-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Robson\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll [2017-02-13] (Google Inc.)
FF Plugin HKU\S-1-5-21-354422575-759729991-2597353769-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Robson\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll [2017-02-13] (Google Inc.)
Chrome:
=======
CHR DefaultProfile: Default
StartMenuInternet: Google Chrome - C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Serviços (Whitelisted) ====================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7142136 2017-02-13] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-02-13] (AVAST Software)
R2 RtlService; C:\Program Files (x86)\D-Link\DWA-123\RtlService.exe [36864 2012-05-10] (Realtek Semiconductor Corp.) [Arquivo não assinado]
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [Arquivo não assinado]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309784 2017-02-13] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-02-13] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-02-13] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-02-13] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-02-13] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-02-13] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126088 2017-02-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-02-13] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [74680 2017-02-13] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [991496 2017-02-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [547904 2017-02-13] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-02-13] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337080 2017-02-13] (AVAST Software)
R3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [3860224 2015-08-05] (Realtek Semiconductor Corporation )
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2014-03-23] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [257880 2014-03-23] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)
==================== Três Meses Criados arquivos e pastas ========
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
2017-02-15 01:00 - 2017-02-15 01:03 - 00012123 _____ C:\Users\Robson\Downloads\FRST.txt
2017-02-15 01:00 - 2017-02-15 01:00 - 00023981 _____ C:\Users\Robson\Downloads\Addition.txt
2017-02-15 00:58 - 2017-02-15 01:03 - 00000000 ____D C:\FRST
2017-02-15 00:58 - 2017-02-15 00:58 - 02729024 _____ (DLL-Files.com Client ) C:\Users\Robson\Downloads\clientsetup_d-0.exe
2017-02-15 00:58 - 2017-02-15 00:58 - 00001137 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Todos os Usuários\SWCUTemp
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DLL-files.com
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DFXCT
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client
2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client
2017-02-15 00:56 - 2017-02-15 00:57 - 02422784 _____ (Farbar) C:\Users\Robson\Downloads\FRST64.exe
2017-02-15 00:51 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll
2017-02-15 00:50 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Windows\system\vcruntime140.dll
2017-02-15 00:45 - 2017-02-15 00:47 - 15068056 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\vc_redist.x64.exe
2017-02-15 00:25 - 2015-06-10 19:10 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-02-15 00:24 - 2017-02-15 00:28 - 00000000 ____D C:\Users\Robson\Downloads\__64-api-ms-win-crt-heap-l1-1-0.dll10.0.10137.0
2017-02-15 00:23 - 2017-02-15 00:23 - 00007392 _____ C:\Users\Robson\Downloads\__64-api-ms-win-crt-heap-l1-1-0.dll10.0.10137.0.zip
2017-02-15 00:18 - 2017-02-15 00:18 - 00003310 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore
2017-02-15 00:18 - 2017-02-15 00:18 - 00000000 ____D C:\Program Files (x86)\Corel
2017-02-15 00:18 - 2017-02-15 00:17 - 00003079 _____ C:\Users\Public\Desktop\Corel PHOTO-PAINT X8 (64-Bit).lnk
2017-02-15 00:18 - 2017-02-15 00:17 - 00003072 _____ C:\Users\Public\Desktop\Corel CAPTURE X8 (64-Bit).lnk
2017-02-15 00:18 - 2017-02-15 00:17 - 00003031 _____ C:\Users\Public\Desktop\CorelDRAW X8 (64-Bit).lnk
2017-02-15 00:18 - 2017-02-15 00:17 - 00002363 _____ C:\Users\Public\Desktop\Corel CONNECT X8 (64-Bit).lnk
2017-02-15 00:18 - 2017-02-15 00:17 - 00002276 _____ C:\Users\Public\Desktop\Corel Font Manager X8 (64-Bit).lnk
2017-02-15 00:17 - 2017-02-15 00:18 - 00000000 ____D C:\Program Files\Corel
2017-02-15 00:17 - 2017-02-15 00:17 - 00000000 ____D C:\Users\Public\Documents\Corel
2017-02-15 00:17 - 2017-02-15 00:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X8 (64-bit)
2017-02-15 00:08 - 2017-02-15 00:08 - 00001991 _____ C:\Users\Robson\Downloads\__32-api-ms-win-crt-heap-l1-1-0.dll10.0.10046.0.zip
2017-02-15 00:08 - 2015-08-25 22:12 - 00003584 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\api-ms-win-crt-heap-l1-1-0.dll
2017-02-15 00:08 - 2012-02-05 13:26 - 00000937 _____ C:\Users\Robson\Downloads\readme.txt
2017-02-15 00:07 - 2017-02-15 00:07 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-02-15 00:04 - 2017-02-15 00:05 - 01005170 _____ C:\Users\Robson\Downloads\Windows8.1-KB2999226-x64.msu
2017-02-14 23:55 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\vcruntime140.dll
2017-02-14 23:51 - 2017-02-14 23:51 - 00047223 _____ C:\Users\Robson\Downloads\vcruntime140.zip
2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Macromedia
2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Corel
2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Program Files (x86)\gs
2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\Users\Todos os Usuários\VsTelemetry
2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\ProgramData\VsTelemetry
2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\Program Files\Common Files\Corel
2017-02-14 23:40 - 2017-02-15 00:47 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2017-02-14 23:40 - 2017-02-15 00:47 - 00000000 ____D C:\ProgramData\Package Cache
2017-02-14 23:40 - 2017-02-15 00:18 - 00000000 ____D C:\Users\Todos os Usuários\Corel
2017-02-14 23:40 - 2017-02-15 00:18 - 00000000 ____D C:\ProgramData\Corel
2017-02-14 23:35 - 2017-02-14 23:35 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2017-02-14 23:35 - 2017-02-14 23:35 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ____D C:\Program Files (x86)\D-Link
2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ____D C:\Program Files (x86)\Cisco
2017-02-14 23:00 - 2014-03-24 12:37 - 00422400 _____ (Realtek) C:\Windows\SwUSB.exe
2017-02-14 23:00 - 2013-10-18 16:42 - 00048856 _____ () C:\Windows\runSW.exe
2017-02-14 23:00 - 2013-04-01 23:19 - 00574464 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll
2017-02-14 23:00 - 2013-04-01 23:19 - 00516608 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll
2017-02-14 23:00 - 2012-10-20 10:26 - 02961408 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlUI2.exe
2017-02-14 23:00 - 2012-10-20 10:26 - 00000084 _____ C:\Windows\RtlUI2.ini
2017-02-14 23:00 - 2010-12-01 09:31 - 00451072 _____ C:\Windows\SysWOW64\ISSRemoveSP.exe
2017-02-14 23:00 - 2009-01-05 20:31 - 00000901 _____ C:\Windows\RtlUI2.exe.manifest
2017-02-14 22:59 - 2015-11-09 14:14 - 00000000 ____D C:\Users\Robson\Downloads\(151105)DWA-123_D1_FW_4.03
2017-02-14 22:58 - 2017-02-14 22:58 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-02-13 16:54 - 2017-02-13 16:54 - 00000000 ____D C:\Windows\Minidump
2017-02-13 15:55 - 2017-02-13 15:55 - 00000817 _____ C:\Users\Robson\Desktop\Robson - Atalho.lnk
2017-02-13 15:30 - 2017-02-13 15:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2017-02-13 15:30 - 2017-02-13 15:30 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2017-02-13 15:23 - 2017-02-13 15:23 - 00000000 ___HD C:\$AV_ASW
2017-02-13 14:17 - 2017-02-13 14:17 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-02-13 14:17 - 2017-02-13 14:17 - 00003912 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1487006274
2017-02-13 14:17 - 2017-02-13 14:17 - 00001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-02-13 14:17 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Robson\AppData\Roaming\AVAST Software
2017-02-13 14:17 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Robson\AppData\Local\CEF
2017-02-13 14:16 - 2017-02-15 00:36 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-02-13 14:16 - 2017-02-13 14:16 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2017-02-13 14:16 - 2017-02-13 14:16 - 00991496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2017-02-13 14:16 - 2017-02-13 14:16 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-02-13 14:16 - 2017-02-13 14:16 - 00337080 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00309784 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00126088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2017-02-13 14:16 - 2017-02-13 14:16 - 00074680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Todos os Usuários\Oracle
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Sun
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Sun
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Oracle
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Program Files\Common Files\AV
2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Program Files (x86)\Java
2017-02-13 14:15 - 2017-02-14 23:41 - 00003930 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A997C51F-8B6D-4B8E-9F21-8CC38CF80B96}
2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\ProgramData\AVAST Software
2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\Program Files\AVAST Software
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\LocalLow\EmieUserList
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\LocalLow\EmieSiteList
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\Local\EmieUserList
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\Local\EmieSiteList
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Adobe
2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\Local\Adobe
2017-02-13 14:14 - 2017-02-15 00:49 - 00002738 _____ C:\Windows\System32\Tasks\AutoKMSDaily
2017-02-13 14:14 - 2017-02-15 00:49 - 00000220 _____ C:\Windows\Tasks\AutoKMSDaily.job
2017-02-13 14:14 - 2017-02-15 00:49 - 00000212 _____ C:\Windows\Tasks\AutoKMS.job
2017-02-13 14:14 - 2017-02-15 00:01 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Mozilla
2017-02-13 14:14 - 2017-02-13 14:14 - 00650240 _____ C:\Windows\AutoKMS.exe
2017-02-13 14:14 - 2017-02-13 14:14 - 00003047 _____ C:\Users\Robson\Desktop\Microsoft Word 2010.lnk
2017-02-13 14:14 - 2017-02-13 14:14 - 00002927 _____ C:\Users\Robson\Desktop\Microsoft Excel 2010.lnk
2017-02-13 14:14 - 2017-02-13 14:14 - 00002424 _____ C:\Windows\System32\Tasks\AutoKMS
2017-02-13 14:14 - 2017-02-13 14:14 - 00000182 _____ C:\Windows\AutoKMS.ini
2017-02-13 14:13 - 2017-02-13 14:13 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA
2017-02-13 14:13 - 2017-02-13 14:13 - 00000000 ____D C:\ProgramData\NVIDIA
2017-02-13 14:13 - 2016-01-29 09:08 - 00082488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2017-02-13 14:13 - 2016-01-29 09:08 - 00067520 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2017-02-13 14:13 - 2016-01-29 07:49 - 06791736 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-02-13 14:13 - 2016-01-29 07:49 - 03529152 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-02-13 14:13 - 2016-01-29 07:49 - 02558328 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-02-13 14:13 - 2016-01-29 07:49 - 00932728 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2017-02-13 14:13 - 2016-01-29 07:49 - 00384888 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-02-13 14:13 - 2016-01-29 07:49 - 00062512 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-02-13 14:13 - 2016-01-28 13:29 - 06150607 _____ C:\Windows\system32\nvcoproc.bin
2017-02-13 14:12 - 2017-02-13 14:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA Corporation
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files\MSBuild
2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-02-13 14:12 - 2016-01-29 09:08 - 31523896 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 24207296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 18634264 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 17559240 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 13916600 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 12911160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-02-13 14:12 - 2016-01-29 09:08 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 04252608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 03996216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 00952256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 00915392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 00911928 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 00878648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-02-13 14:12 - 2016-01-29 09:08 - 00026157 _____ C:\Windows\system32\nvinfo.pb
2017-02-13 14:11 - 2016-03-29 02:01 - 00186424 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2017-02-13 14:11 - 2016-01-29 09:08 - 23000000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 15302712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 11209376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 03210784 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 02825016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 01908272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434195.dll
2017-02-13 14:11 - 2016-01-29 09:08 - 01557552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434195.dll
2017-02-13 14:11 - 2013-08-03 01:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2017-02-13 14:11 - 2013-08-03 01:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-02-13 14:11 - 2013-08-03 01:48 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-02-13 14:11 - 2013-08-03 01:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2017-02-13 14:11 - 2013-08-03 01:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-02-13 14:11 - 2013-08-03 01:41 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-02-13 14:10 - 2017-02-13 14:14 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Mozilla
2017-02-13 14:10 - 2017-02-13 14:10 - 00001171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-02-13 14:10 - 2017-02-13 14:10 - 00001159 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DRPSu
2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Users\Robson\AppData\Local\Mozilla
2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-02-13 14:09 - 2017-02-13 14:09 - 06654960 _____ (AVAST Software) C:\Users\Robson\Downloads\avast_free_antivirus_setup_online_cnet2.exe
2017-02-13 14:09 - 2017-02-13 14:09 - 00245584 _____ C:\Users\Robson\Downloads\Firefox Setup Stub 51.0.1.exe
2017-02-13 14:08 - 2017-02-13 14:08 - 00004426 __RSH C:\Users\Todos os Usuários\ntuser.pol
2017-02-13 14:08 - 2017-02-13 14:08 - 00004426 __RSH C:\ProgramData\ntuser.pol
2017-02-13 14:07 - 2017-02-15 00:48 - 00000000 ____D C:\Users\Robson\AppData\Roaming\ClassicShell
2017-02-13 13:04 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Windows\PCHEALTH
2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2017-02-13 13:03 - 2017-02-13 13:05 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2017-02-13 13:03 - 2017-02-13 13:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 __RHD C:\MSOCache
2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Users\Robson\AppData\Local\Microsoft Help
2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files\Microsoft Office
2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2017-02-13 13:02 - 2017-02-13 13:02 - 00003706 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\Users\Robson\AppData\Roaming\WinRAR
2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\Program Files\KMSpico
2017-02-13 13:01 - 2017-02-15 00:54 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-354422575-759729991-2597353769-1002
2017-02-13 13:01 - 2017-02-15 00:06 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002UA.job
2017-02-13 13:01 - 2017-02-13 13:06 - 00001040 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002Core.job
2017-02-13 13:01 - 2017-02-13 13:01 - 00003938 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002UA
2017-02-13 13:01 - 2017-02-13 13:01 - 00003558 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002Core
2017-02-13 13:01 - 2017-02-13 13:01 - 00002333 _____ C:\Users\Robson\Desktop\Google Chrome.lnk
2017-02-13 13:01 - 2017-02-13 13:01 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2017-02-13 13:01 - 2017-02-13 13:01 - 00000000 ____D C:\Users\Robson\AppData\Local\Google
2017-02-13 13:00 - 2017-02-13 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 7
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Softland
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files\Softland
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files\Classic Shell
2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files (x86)\WinRAR
2017-02-13 13:00 - 2010-12-14 09:51 - 00024392 _____ (Softland) C:\Windows\system32\dopdfmn7.dll
2017-02-13 13:00 - 2010-12-14 09:51 - 00020296 _____ (Softland) C:\Windows\system32\dopdfmi7.dll
2017-02-13 13:00 - 2010-11-25 10:17 - 00007549 _____ C:\Windows\system32\dopdf7.ctm
2017-02-13 12:59 - 2017-02-13 14:19 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2017-02-13 12:59 - 2017-02-13 14:19 - 00000000 ____D C:\ProgramData\Adobe
2017-02-13 12:59 - 2017-02-13 12:59 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2017-02-13 12:59 - 2017-02-13 12:59 - 00002039 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2017-02-13 12:59 - 2017-02-13 12:59 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-02-13 12:56 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Adobe
2017-02-13 12:56 - 2017-02-13 12:57 - 00000000 ____D C:\Users\Robson\AppData\Local\Packages
2017-02-13 12:56 - 2017-02-13 12:56 - 00001418 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-02-13 12:56 - 2017-02-13 12:56 - 00000020 ___SH C:\Users\Robson\ntuser.ini
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Modelos
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Meus Documentos
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Menu Iniciar
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Minhas Músicas
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Minhas Imagens
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Meus Vídeos
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Dados de Aplicativos
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Configurações Locais
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Local\Histórico
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Local\Dados de Aplicativos
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Ambiente de Rede
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Ambiente de Impressão
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Windows\CSC
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Users\Robson\AppData\Local\VirtualStore
2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Users\Robson
2017-02-13 12:56 - 2014-03-18 07:46 - 00000369 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2017-02-13 12:56 - 2014-03-18 07:46 - 00000369 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2017-02-13 12:55 - 2017-02-13 16:54 - 00081920 ____N C:\Windows\Minidump\021317-8312-01.dmp
2017-02-13 12:55 - 2017-02-13 12:55 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
==================== Três Meses Modificados arquivos e pastas ========
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
2017-02-15 01:03 - 2013-08-22 12:36 - 00000000 ___HD C:\Program Files\WindowsApps
2017-02-15 01:03 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\AppReadiness
2017-02-15 00:54 - 2014-03-18 07:33 - 01797166 _____ C:\Windows\system32\PerfStringBackup.INI
2017-02-15 00:54 - 2014-03-18 06:45 - 00774702 _____ C:\Windows\system32\prfh0416.dat
2017-02-15 00:54 - 2014-03-18 06:45 - 00158296 _____ C:\Windows\system32\prfc0416.dat
2017-02-15 00:54 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\Inf
2017-02-15 00:50 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\System
2017-02-15 00:49 - 2013-08-22 11:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-02-15 00:18 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-02-15 00:00 - 2013-08-22 11:44 - 00552296 _____ C:\Windows\system32\FNTCACHE.DAT
2017-02-14 23:36 - 2013-08-22 12:20 - 00000000 ____D C:\Windows\CbsTemp
2017-02-13 14:20 - 2013-08-22 10:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2017-02-13 14:13 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\Help
2017-02-13 14:12 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\SysWOW64\MUI
2017-02-13 14:12 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\system32\MUI
2017-02-13 14:07 - 2013-08-22 12:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2017-02-13 13:53 - 2013-08-22 12:36 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2017-02-13 13:04 - 2014-03-18 07:03 - 00000000 ____D C:\Windows\ShellNew
2017-02-13 13:03 - 2013-08-22 10:25 - 00000167 _____ C:\Windows\win.ini
2017-02-13 12:56 - 2014-06-14 23:24 - 00000000 ____D C:\Windows\Panther
Arquivos para serem movidos ou deletados:
====================
C:\Users\Robson\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Bamital & volsnap ======================
(Não há correção automática para arquivos que não passaram na verificação.)
C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente
LastRegBack: 2014-06-14 23:25
==================== Fim de FRST.txt ============================