cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 05-03-2017
Executado por USER (administrador) em USER-PC (07-03-2017 23:59:44)
Executando a partir de C:\Users\USER\Downloads
Perfis Carregados: USER (Perfis Disponíveis: USER)
Platform: Windows 8 Single Language (X64) Idioma: Português (Brasil)
Internet Explorer Versão 10 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Lenovo.) C:\Windows\System32\LPlatSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Lenovo.) C:\Windows\System32\LPlatSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Filseclab Corporation Limited) C:\Program Files (x86)\ScreenShot\SSSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

==================== Registro (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [373760 2012-07-20] (Alcor Micro Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-05] (AVAST Software)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2013-03-12] (Vimicro)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [27308304 2017-03-06] (Dropbox, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\Run: [Chromium] => c:\users\user\appdata\local\chromium\application\chrome.exe [828416 2017-01-20] (The Chromium Authors)
HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545056 2017-02-14] (Skype Technologies S.A.)
HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\MountPoints2: {0570204c-ff54-11e6-be65-806e6f6e6963} - "G:\SETUP.EXE"
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-05] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-05] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
Startup: C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar para o OneNote.lnk [2017-03-03]
ShortcutTarget: Enviar para o OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
GroupPolicy: Restrição <======= ATENÇÃO

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{27E68934-C235-4233-826B-9417E41B29DF}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage
HKU\S-1-5-21-110062565-2361055857-3464527491-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com.br/
HKU\S-1-5-21-110062565-2361055857-3464527491-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
SearchScopes: HKU\S-1-5-21-110062565-2361055857-3464527491-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
SearchScopes: HKU\S-1-5-21-110062565-2361055857-3464527491-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-03-03] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-03-05] (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-03] (Oracle Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-03-05] (AVAST Software)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Nenhum Arquivo
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Nenhum Arquivo
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF DefaultProfile: pgor8wai.default
FF ProfilePath: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default [2017-03-06]
FF NewTab: Mozilla\Firefox\Profiles\pgor8wai.default -> about:newtab
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\pgor8wai.default -> Yahoo! Powered
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\pgor8wai.default -> Yahoo! Powered
FF Homepage: Mozilla\Firefox\Profiles\pgor8wai.default -> hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage
FF Keyword.URL: Mozilla\Firefox\Profiles\pgor8wai.default -> user_pref("keyword.URL", true);
FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default\features\{a257fe29-3f85-494e-b576-da7338ddceeb}\disableSHA1rollout@mozilla.org.xpi [2017-03-06]
FF SearchPlugin: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default\searchplugins\yahoo! powered.xml [2017-03-05]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-03-05]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-03-05]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-03-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-03-03] (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-09-30] (Adobe Systems Inc.)
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR HomePage: Default -> mysearch.avg.com/?rvt=1
CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?hl=pt-BR"
CHR Profile: C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default [2017-03-07]
CHR Extension: (Google Apresentações) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-03-02]
CHR Extension: (Duolingo na Web) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2017-03-03]
CHR Extension: (Google Docs) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-03-02]
CHR Extension: (Google Drive) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-03-02]
CHR Extension: (Turn Off the Lights) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2017-03-07]
CHR Extension: (YouTube) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-02]
CHR Extension: (Mogicons) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2017-03-07]
CHR Extension: (Freecell Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cabpjbpfakfhcfidnjahmdophhihafkh [2017-03-03]
CHR Extension: (Advanced Font Settings) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\caclkomlalccbpcdllchkeecicepbmbm [2017-03-03]
CHR Extension: (Webmail Ad Blocker) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp [2017-03-03]
CHR Extension: (Adblock Plus) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-03]
CHR Extension: (AVG Secure Search) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2017-03-03]
CHR Extension: (Seen On Screen) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpfkbbikafoolgiblpbmdbajlnehicem [2017-03-03]
CHR Extension: (Facebook Icon Pack) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgjnigeodbhfkikngfpbpaponldpnajj [2017-03-03]
CHR Extension: (Christmas Solitiare) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhcbjomfajlnldboplncbdhmdaagcpln [2017-03-03]
CHR Extension: (Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkelcbhdkpcdiiancfjhjcpdinbbfolp [2017-03-03]
CHR Extension: (Legenda Fácil) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecmalcfodhbdonabbncapihcejmhaipp [2017-03-03]
CHR Extension: (Solitaire games online ) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\efhllapldbojolojmbcmanmiiccfenmc [2017-03-03]
CHR Extension: (Video Downloader professional) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2017-03-03]
CHR Extension: (Avast SafePrice) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-05]
CHR Extension: (Mahjong Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogmadihniohlnmipdhchaoagjhfnohc [2017-03-03]
CHR Extension: (Planilhas do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-03-02]
CHR Extension: (Word Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2017-03-03]
CHR Extension: (Picditor Photo Editor) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggdplhaiiohpkafnlhlfikiomnboacoi [2017-03-03]
CHR Extension: (Documentos Google off-line) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-03]
CHR Extension: (AdBlock) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-03-03]
CHR Extension: (MyPlayCity Games) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjmohbdbnfkkjolmdfbhhdfjgjclomkd [2017-03-03]
CHR Extension: (Mogicons.com) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2017-03-03]
CHR Extension: (Tempo Agora) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmoienakigcjfnapajfcphlndjcjnjmd [2017-03-03]
CHR Extension: (Vagalume) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipgcdnbeeiajinajlafjcdfhckglcopd [2017-03-03]
CHR Extension: (Motitags) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jimekcmjahalpgniahhigkfichaihfkp [2017-03-03]
CHR Extension: (Video Downloader All) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpaglkhbmbmhlnpnehlffkgaaapoicnk [2017-03-03]
CHR Extension: (Search Manager) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmbmobjbcmjjfmempplcnojmgekgpalk [2017-03-05]
CHR Extension: (MovixHub) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\knmaplknmljolhemkdmfahdfgddflgcd [2017-03-03]
CHR Extension: (Pixeffect - Efeitos fotográficos) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\koekplodmdaalggcclajcecoomipnpca [2017-03-03]
CHR Extension: (JDownloader Integration for Google Chrome™) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\laeghehalempfenbefbjbhccjcoakpmm [2017-03-03]
CHR Extension: (Google Maps) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2017-03-03]
CHR Extension: (Conversor de vídeo) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcjjnhgakghmggnimjkldjmmpabhnhne [2017-03-03]
CHR Extension: (Ferramentas de inserção de texto do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2017-03-03]
CHR Extension: (PowerPoint Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2017-03-03]
CHR Extension: (Messenger (Unofficial)) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdapmeleikeppmfgadilffngabfpibok [2017-03-07]
CHR Extension: (Banrisul Internet Banking) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgapcljibnhkigclmbmdhgehflhljbdd [2017-03-03]
CHR Extension: (Verificador de mensagens do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2017-03-03]
CHR Extension: (Office Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2017-03-03]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-02]
CHR Extension: (piZap Photo Editor) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\occpjibghkbopohbefbejkklnfdkdmok [2017-03-03]
CHR Extension: (Rolagem rápida do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2017-03-03]
CHR Extension: (Synology Download Station) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\onhbegdkgonhlokobjefolhpoidcnida [2017-03-03]
CHR Extension: (OpenSubtitles) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfbdkpjnibjpkebckajcinnjlkdeilej [2017-03-03]
CHR Extension: (Gmail) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-03-02]
CHR Extension: (Páginas semelhantes do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjnfggphgdjblhfjaphkjhfpiiekbbej [2017-03-03]
CHR Extension: (Chrome Media Router) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-02]
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-110062565-2361055857-3464527491-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx

==================== Serviços (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-05] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-05] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [278784 2017-03-05] (AVAST Software)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-05] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [46408 2017-01-20] (Dropbox, Inc.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.)
R2 LPlatSvc; C:\Windows\system32\LPlatSvc.exe [711256 2016-11-01] (Lenovo.)
R2 SSSvc; C:\Program Files (x86)\ScreenShot\SSSvc.exe [139744 2016-11-02] (Filseclab Corporation Limited)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-28] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-05] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-05] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-03-05] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-05] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-05] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-03-05] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126600 2017-03-05] (AVAST Software)
R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [461640 2017-03-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-03-05] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-05] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [993608 2017-03-05] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [547904 2017-03-05] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-03-05] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337592 2017-03-05] (AVAST Software)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6957744 2017-03-02] (Broadcom Corporation)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1049984 2013-04-17] (Vimicro Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35232 2013-01-28] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [230904 2013-01-28] (Microsoft Corporation)
S3 dbx; system32\DRIVERS\dbx.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-03-07 23:59 - 2017-03-08 00:00 - 00033613 _____ C:\Users\USER\Downloads\FRST.txt
2017-03-07 23:59 - 2017-03-07 23:59 - 00000000 ____D C:\FRST
2017-03-07 23:58 - 2017-03-07 23:58 - 02423808 _____ (Farbar) C:\Users\USER\Downloads\FRST64.exe
2017-03-07 23:56 - 2017-03-07 23:57 - 01765888 _____ (Farbar) C:\Users\USER\Downloads\FRST.exe
2017-03-07 23:53 - 2017-03-07 23:53 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-03-07 23:53 - 2017-03-07 23:53 - 00002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2017-03-07 23:53 - 2017-03-07 23:53 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-03-07 23:50 - 2017-03-07 23:50 - 00001125 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk
2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\DLL-files.com
2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\DFXCT
2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client
2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client
2017-03-07 23:49 - 2017-03-07 23:50 - 02729024 _____ (DLL-Files.com Client ) C:\Users\USER\Downloads\clientsetup_fde-0.exe
2017-03-07 23:15 - 2017-03-07 23:15 - 00066110 _____ C:\Users\USER\Desktop\DxDiag.txt
2017-03-07 22:40 - 2017-03-07 23:30 - 00003790 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-03-07 22:40 - 2017-03-07 23:30 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-03-07 22:40 - 2017-03-07 23:29 - 00003924 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-03-07 22:40 - 2017-03-07 23:29 - 00000964 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2017-03-07 21:10 - 2017-03-07 21:10 - 00000000 ____D C:\Users\Todos os Usuários\SWCUTemp
2017-03-07 21:10 - 2017-03-07 21:10 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-03-07 21:08 - 2017-03-07 21:08 - 00000117 _____ C:\Windows\system32\netcfg-32968.txt
2017-03-07 20:58 - 2017-03-07 20:58 - 00000117 _____ C:\Windows\system32\netcfg-271906.txt
2017-03-07 20:37 - 2017-03-07 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-03-07 20:23 - 2017-03-07 20:23 - 00003102 _____ C:\Windows\System32\Tasks\{2FBF557C-919E-4649-AA6E-CE3F19725568}
2017-03-07 20:17 - 2017-03-07 20:17 - 00000117 _____ C:\Windows\system32\netcfg-127046.txt
2017-03-07 20:16 - 2017-03-07 20:16 - 00435376 _____ C:\Windows\system32\FNTCACHE.DAT
2017-03-07 20:15 - 2017-03-07 20:15 - 00000117 _____ C:\Windows\system32\netcfg-119875.txt
2017-03-07 20:15 - 2017-03-07 20:15 - 00000117 _____ C:\Windows\system32\netcfg-100828.txt
2017-03-07 20:15 - 2017-03-07 20:15 - 00000039 _____ C:\Windows\SysWOW64\Stats.ini
2017-03-07 20:13 - 2017-03-07 20:13 - 00000117 _____ C:\Windows\system32\netcfg-299109.txt
2017-03-07 12:33 - 2015-10-01 10:10 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2017-03-07 12:33 - 2015-10-01 10:09 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2017-03-07 11:12 - 2015-09-12 10:09 - 00414559 _____ C:\Windows\system32\ApnDatabase.xml
2017-03-07 11:00 - 2015-10-27 11:46 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-03-07 11:00 - 2015-10-27 11:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-03-07 11:00 - 2015-10-27 11:46 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2017-03-07 11:00 - 2015-10-27 10:55 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-03-07 11:00 - 2015-10-27 10:54 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-03-07 11:00 - 2015-10-27 10:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2017-03-07 11:00 - 2015-09-23 10:10 - 00377552 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2017-03-07 11:00 - 2015-09-23 10:10 - 00332576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2017-03-07 10:54 - 2015-10-13 10:16 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2017-03-07 10:54 - 2015-10-13 10:16 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-03-07 10:54 - 2013-07-01 22:41 - 00447320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2017-03-07 10:54 - 2013-07-01 22:41 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2017-03-07 10:54 - 2013-07-01 22:41 - 00213336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2017-03-07 10:54 - 2012-11-03 02:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2017-03-07 10:54 - 2012-11-03 02:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2017-03-07 10:54 - 2012-11-03 02:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2017-03-07 10:54 - 2012-11-03 02:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2017-03-07 10:54 - 2012-11-03 02:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2017-03-07 10:54 - 2012-11-03 02:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2017-03-07 10:54 - 2012-11-03 02:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2017-03-07 10:54 - 2012-11-03 02:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2017-03-07 10:53 - 2014-01-12 20:30 - 02238976 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2017-03-07 10:53 - 2014-01-12 20:30 - 02032640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2017-03-07 10:53 - 2013-11-19 21:15 - 03842560 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-03-07 10:53 - 2013-11-19 20:57 - 03288576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-03-07 10:47 - 2015-03-12 02:31 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2017-03-07 10:47 - 2015-03-12 02:31 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2017-03-07 10:47 - 2015-03-12 00:52 - 01933312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2017-03-07 10:36 - 2013-08-23 04:22 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2017-03-07 10:36 - 2013-08-22 22:44 - 01711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2017-03-07 10:29 - 2015-11-07 09:46 - 01341952 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2017-03-07 10:29 - 2015-11-07 09:44 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-03-07 10:29 - 2015-11-07 09:44 - 01280000 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-03-07 10:29 - 2015-11-07 06:32 - 01412608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-03-07 10:29 - 2015-11-07 04:52 - 04063232 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-03-07 10:29 - 2015-11-07 02:53 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2017-03-07 10:29 - 2015-11-07 02:52 - 01680384 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2017-03-07 10:29 - 2015-11-07 02:46 - 01426944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2017-03-07 10:29 - 2015-07-15 13:09 - 00095064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2017-03-07 10:29 - 2015-07-15 13:06 - 01824296 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-03-07 10:29 - 2015-07-15 10:49 - 01410000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-03-07 10:29 - 2015-07-15 10:29 - 01333248 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2017-03-07 10:29 - 2013-03-22 00:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2017-03-07 10:29 - 2013-03-21 19:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2017-03-07 10:16 - 2014-12-19 01:35 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2017-03-07 10:00 - 2015-07-09 18:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2017-03-07 10:00 - 2015-07-09 18:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2017-03-07 10:00 - 2015-07-09 17:18 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2017-03-07 10:00 - 2015-01-24 03:43 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2017-03-07 10:00 - 2015-01-24 02:00 - 00368640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2017-03-07 10:00 - 2013-04-02 20:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2017-03-07 10:00 - 2013-04-02 20:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2017-03-07 09:54 - 2014-04-03 08:22 - 02233176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-03-07 09:54 - 2013-03-02 06:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-03-07 09:53 - 2012-12-13 01:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-03-07 09:53 - 2012-12-13 00:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-03-07 09:50 - 2014-11-08 08:22 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2017-03-07 09:50 - 2014-11-08 03:57 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2017-03-07 09:49 - 2015-04-25 00:41 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2017-03-07 09:49 - 2015-04-24 20:13 - 00652288 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2017-03-07 09:48 - 2014-10-23 09:47 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2017-03-07 09:48 - 2014-10-23 08:04 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2017-03-07 09:39 - 2015-09-12 10:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-03-07 09:39 - 2015-09-12 10:29 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll
2017-03-07 09:39 - 2015-09-12 10:29 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll
2017-03-07 09:39 - 2015-09-12 10:29 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll
2017-03-07 09:39 - 2015-09-12 10:29 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll
2017-03-07 09:39 - 2013-01-28 22:57 - 00035232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2017-03-07 09:39 - 2013-01-28 20:08 - 00230904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2017-03-07 09:39 - 2012-11-10 01:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2017-03-07 09:36 - 2015-12-08 12:43 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-03-07 09:36 - 2015-12-08 12:16 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-03-07 09:23 - 2015-12-30 20:29 - 06972760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-03-07 09:23 - 2015-11-16 11:29 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2017-03-07 09:23 - 2015-11-16 11:28 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-03-07 09:23 - 2015-11-16 11:27 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-03-07 09:23 - 2015-11-16 11:26 - 01282560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-03-07 09:23 - 2015-11-16 11:26 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-03-07 09:23 - 2015-11-16 11:26 - 00588800 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2017-03-07 09:23 - 2015-11-16 11:26 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-03-07 09:23 - 2015-09-23 10:10 - 00570256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-03-07 09:23 - 2015-09-22 14:53 - 01405408 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-03-07 09:23 - 2015-09-22 14:53 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2017-03-07 09:23 - 2015-06-25 15:29 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-03-07 09:23 - 2015-06-25 15:27 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-03-07 09:23 - 2015-01-07 01:25 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-03-07 09:23 - 2013-05-24 19:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-03-07 09:23 - 2013-05-24 19:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2017-03-07 09:22 - 2015-11-16 11:42 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-03-07 09:22 - 2015-11-16 11:29 - 00961536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2017-03-07 09:22 - 2015-11-16 11:29 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-03-07 09:22 - 2015-11-16 11:29 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-03-07 09:22 - 2015-11-16 11:29 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-03-07 09:22 - 2015-11-16 11:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 01043968 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-03-07 09:22 - 2015-11-16 11:26 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-03-07 09:22 - 2015-05-02 03:28 - 00100184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-03-07 09:22 - 2015-01-15 06:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-03-07 09:22 - 2015-01-15 06:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-03-07 09:22 - 2014-10-11 02:41 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-03-07 09:22 - 2014-10-11 02:05 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-03-07 09:22 - 2014-04-12 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll
2017-03-07 09:22 - 2014-03-10 21:39 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-03-07 09:22 - 2014-03-10 21:38 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-03-07 09:22 - 2014-03-09 22:27 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-03-07 09:21 - 2015-04-06 02:36 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2017-03-07 09:21 - 2015-04-06 01:08 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2017-03-07 09:07 - 2015-12-03 21:55 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2017-03-07 09:07 - 2015-12-03 18:47 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2017-03-07 09:01 - 2014-06-02 19:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2017-03-07 09:01 - 2013-11-01 02:38 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2017-03-07 09:01 - 2013-11-01 00:49 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2017-03-07 08:49 - 2014-10-30 04:20 - 01890816 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-03-07 08:49 - 2014-10-30 02:22 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-03-07 08:41 - 2017-03-07 08:41 - 00000117 _____ C:\Windows\system32\netcfg-102953.txt
2017-03-07 00:23 - 2017-03-07 00:23 - 00000117 _____ C:\Windows\system32\netcfg-17918828.txt
2017-03-06 19:38 - 2017-03-07 23:54 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2017-03-06 19:26 - 2017-03-06 19:26 - 00000117 _____ C:\Windows\system32\netcfg-80281.txt
2017-03-06 17:50 - 2017-03-06 17:50 - 00046184 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-03-05 23:48 - 2017-03-05 23:48 - 00000117 _____ C:\Windows\system32\netcfg-8208437.txt
2017-03-05 23:46 - 2017-03-05 23:47 - 00000000 ____D C:\Users\USER\Documents\Picosmos
2017-03-05 23:42 - 2017-03-05 23:42 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-03-05 23:42 - 2017-03-05 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-03-05 23:30 - 2017-03-05 23:30 - 01631200 _____ (Skype Technologies S.A.) C:\Users\USER\Desktop\SkypeSetup.exe
2017-03-05 23:12 - 2017-03-05 23:12 - 00000000 ____D C:\Users\USER\AppData\Local\WMTools Downloaded Files
2017-03-05 23:04 - 2017-03-05 23:42 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk
2017-03-05 23:04 - 2017-03-05 23:42 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2017-03-05 23:04 - 2017-03-05 23:42 - 00000000 ____D C:\ProgramData\Skype
2017-03-05 23:04 - 2017-03-05 23:41 - 00000000 ____D C:\Users\USER\AppData\Roaming\Skype
2017-03-05 23:00 - 2017-03-05 23:00 - 00000000 ____D C:\Users\USER\Tracing
2017-03-05 22:55 - 2014-05-19 23:33 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-03-05 22:55 - 2014-05-19 20:45 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-03-05 22:55 - 2014-05-19 20:45 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 03286528 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 01623040 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 00773632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2017-03-05 22:55 - 2014-05-19 20:24 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-03-05 22:55 - 2014-05-14 19:43 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-03-05 22:55 - 2014-05-14 19:43 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-03-05 22:55 - 2014-05-14 19:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2017-03-05 22:55 - 2014-05-14 19:42 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2017-03-05 22:55 - 2013-08-16 02:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-03-05 22:55 - 2013-08-16 02:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-03-05 22:55 - 2013-08-15 19:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2017-03-05 22:55 - 2012-11-06 01:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2017-03-05 22:55 - 2012-11-06 01:00 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wushareduxresources.dll
2017-03-05 22:53 - 2017-03-05 22:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2017-03-05 22:52 - 2017-03-05 22:52 - 00001374 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2017-03-05 22:52 - 2017-03-05 22:52 - 00001305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2017-03-05 22:51 - 2017-03-05 22:51 - 00001458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2017-03-05 22:51 - 2017-03-05 22:51 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2017-03-05 22:45 - 2017-03-05 23:04 - 00000000 ____D C:\Program Files (x86)\Windows Live
2017-03-05 22:45 - 2017-03-05 22:45 - 00000000 ____D C:\Program Files\Windows Live
2017-03-05 22:45 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2017-03-05 22:45 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2017-03-05 22:45 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2017-03-05 22:45 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2017-03-05 22:45 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2017-03-05 22:45 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2017-03-05 22:45 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2017-03-05 22:45 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2017-03-05 22:45 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2017-03-05 22:45 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2017-03-05 22:44 - 2017-03-05 22:44 - 00002240 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ___RD C:\Users\USER\OneDrive
2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive
2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2017-03-05 22:44 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2017-03-05 22:44 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2017-03-05 22:41 - 2017-03-05 22:53 - 00000000 ____D C:\Users\USER\AppData\Local\Windows Live
2017-03-05 22:40 - 2017-03-05 22:40 - 00000000 ____D C:\Program Files (x86)\MSECache
2017-03-05 22:38 - 2017-03-05 22:38 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-03-05 22:38 - 2017-03-05 22:38 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Program Files\MSBuild
2017-03-05 22:28 - 2012-07-05 23:02 - 01166440 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2017-03-05 22:28 - 2012-07-05 23:02 - 00778856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2017-03-05 22:28 - 2012-07-05 23:02 - 00124040 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-03-05 22:28 - 2012-07-05 23:02 - 00102528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-03-05 22:28 - 2012-07-05 23:02 - 00035400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-03-05 22:28 - 2012-07-05 23:02 - 00035400 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-03-05 22:16 - 2017-03-05 22:35 - 39035640 _____ (Microsoft Corporation) C:\Users\USER\Desktop\FileFormatConverters.exe
2017-03-05 22:16 - 2017-03-05 22:17 - 02959376 _____ (Microsoft Corporation) C:\Users\USER\Desktop\dotnetfx35setup.exe
2017-03-05 22:06 - 2017-03-05 22:07 - 01543528 _____ (Microsoft Corporation) C:\Users\USER\Desktop\WindowsMovieMaker2.6-KB2424434.exe
2017-03-05 22:04 - 2017-03-05 22:08 - 12633944 _____ (Microsoft Corporation) C:\Users\USER\Desktop\mm20esn.exe
2017-03-05 21:56 - 2017-03-05 21:56 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker 2.6.lnk
2017-03-05 21:56 - 2017-03-05 21:56 - 00000000 ____D C:\Program Files (x86)\Movie Maker 2.6
2017-03-05 21:54 - 2017-03-05 21:56 - 07362048 _____ C:\Users\USER\Desktop\MM26_BR.msi
2017-03-05 21:33 - 2017-03-05 21:33 - 00003896 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1488760417
2017-03-05 21:33 - 2017-03-05 21:33 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2017-03-05 21:33 - 2017-03-05 21:33 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-03-05 20:24 - 2017-03-05 20:24 - 00002214 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium.lnk
2017-03-05 20:23 - 2017-03-05 20:24 - 00000000 ____D C:\Users\USER\AppData\Local\chromium
2017-03-05 20:11 - 2017-03-05 20:11 - 00001441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HowToRemove.html.lnk
2017-03-05 20:09 - 2017-03-05 20:09 - 00001067 _____ C:\Users\USER\Desktop\Picosmos Tools.lnk
2017-03-05 20:09 - 2017-03-05 20:09 - 00001067 _____ C:\Users\USER\Desktop\Picosmos Shows.lnk
2017-03-05 20:09 - 2017-03-05 20:09 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools
2017-03-05 20:08 - 2017-03-05 20:08 - 00000000 ____D C:\Users\USER\AppData\Roaming\Picosmos
2017-03-05 20:07 - 2017-03-05 20:07 - 00000000 ____D C:\Users\USER\AppData\Local\ElevatedDiagnostics
2017-03-05 18:58 - 2017-03-05 18:58 - 00000000 ____D C:\Users\USER\AppData\Local\Hewlett-Packard
2017-03-05 18:48 - 2017-03-05 20:12 - 00000000 ____D C:\Users\USER\AppData\Roaming\Wise Disk Cleaner
2017-03-05 18:48 - 2017-03-05 18:48 - 00001204 _____ C:\Users\Public\Desktop\Wise Disk Cleaner.lnk
2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Windows\System32\Tasks\WiseCleaner
2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Users\USER\AppData\Roaming\Wise Euask
2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner
2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Program Files (x86)\Wise
2017-03-05 18:43 - 2017-03-05 20:09 - 00000000 ____D C:\Program Files (x86)\PicosmosTools
2017-03-05 18:31 - 2017-03-05 18:38 - 04060720 _____ (WiseCleaner.com ) C:\Users\USER\Desktop\WDC9Setup.exe
2017-03-05 18:28 - 2017-03-05 18:36 - 02040904 _____ (Free Time Co., Ltd.) C:\Users\USER\Desktop\PTInstOnline.exe
2017-03-05 18:14 - 2017-03-07 23:11 - 00000996 _____ C:\Windows\Tasks\Yahoo! Powered lonif.job
2017-03-05 18:14 - 2017-03-06 23:11 - 00000000 ____D C:\Users\Todos os Usuários\{3EA3FBC0-B4E1-7106-3227-EF44A865648A}
2017-03-05 18:14 - 2017-03-06 23:11 - 00000000 ____D C:\ProgramData\{3EA3FBC0-B4E1-7106-3227-EF44A865648A}
2017-03-05 18:14 - 2017-03-05 20:11 - 00003996 _____ C:\Windows\System32\Tasks\Yahoo! Powered lonif
2017-03-05 18:12 - 2017-03-05 21:32 - 00000000 ____D C:\Users\USER\AppData\Local\{57E161BD-7349-0D05-1ED1-28ED3AB9D475}
2017-03-05 18:12 - 2017-03-05 20:10 - 00000286 __RSH C:\Users\Todos os Usuários\ntuser.pol
2017-03-05 18:12 - 2017-03-05 20:10 - 00000286 __RSH C:\ProgramData\ntuser.pol
2017-03-05 18:08 - 2017-03-05 18:08 - 00001855 _____ C:\ProgramData\Microsoft\Windows\Start Menu\ScreenShot.lnk
2017-03-05 18:08 - 2017-03-05 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenShot
2017-03-05 18:08 - 2017-03-05 18:08 - 00000000 ____D C:\Program Files (x86)\ScreenShot
2017-03-05 18:07 - 2017-03-05 21:32 - 00000000 ____D C:\Users\USER\AppData\Roaming\ScreenShot
2017-03-05 18:05 - 2017-03-05 18:05 - 00001067 _____ C:\Users\USER\Desktop\Format Factory.lnk
2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\Program Files (x86)\FormatFactory
2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\FFOutput
2017-03-05 18:02 - 2017-03-05 17:29 - 00000030 _____ C:\AVScanner.ini
2017-03-05 18:00 - 2017-03-05 18:00 - 00000000 ____D C:\Users\USER\AppData\Roaming\Hewlett-Packard
2017-03-05 17:51 - 2017-03-05 17:51 - 00002227 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk
2017-03-05 17:51 - 2017-03-05 17:51 - 00000000 ____D C:\System.sav
2017-03-05 17:51 - 2017-03-05 17:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2017-03-05 17:50 - 2017-03-05 17:51 - 00000000 ____D C:\Users\Todos os Usuários\Hewlett-Packard
2017-03-05 17:50 - 2017-03-05 17:51 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2017-03-05 17:50 - 2017-03-05 17:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\hpqLog
2017-03-05 17:39 - 2017-03-04 18:28 - 25077548 _____ C:\Users\USER\Desktop\VID_20170304_182725386.mp4
2017-03-05 17:29 - 2017-03-05 17:38 - 36337710 _____ C:\Users\USER\Desktop\Photos.zip
2017-03-05 17:19 - 2017-03-05 17:19 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard
2017-03-05 17:18 - 2017-03-05 17:51 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2017-03-05 16:59 - 2017-03-07 21:42 - 00000000 ___RD C:\Users\USER\Dropbox
2017-03-05 16:59 - 2017-03-05 16:59 - 00001226 _____ C:\Users\USER\Desktop\Dropbox.lnk
2017-03-05 16:52 - 2017-03-05 16:52 - 00000000 ____D C:\Users\USER\AppData\Roaming\Dropbox
2017-03-05 16:44 - 2017-03-05 17:55 - 47616432 _____ (Free Time Co., Ltd) C:\Users\USER\Desktop\FFSetup4.0.0.0.exe
2017-03-05 16:39 - 2017-03-05 16:39 - 00000000 ____D C:\Users\USER\AppData\Local\CEF
2017-03-05 16:36 - 2017-03-05 23:34 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2017-03-05 16:36 - 2017-03-05 23:34 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-05 16:35 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files\Common Files\McAfee
2017-03-05 16:35 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files (x86)\McAfee
2017-03-05 16:25 - 2017-03-07 23:30 - 00001032 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-03-05 16:25 - 2017-03-07 21:40 - 00001028 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2017-03-05 16:25 - 2017-03-07 20:38 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-03-05 16:25 - 2017-03-05 16:59 - 00000000 ____D C:\Users\USER\AppData\Local\Dropbox
2017-03-05 16:25 - 2017-03-05 16:25 - 00004004 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2017-03-05 16:25 - 2017-03-05 16:25 - 00003768 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2017-03-05 16:25 - 2017-03-05 16:25 - 00000000 ____D C:\Users\Todos os Usuários\Dropbox
2017-03-05 16:25 - 2017-03-05 16:25 - 00000000 ____D C:\ProgramData\Dropbox
2017-03-05 16:14 - 2017-03-05 16:14 - 00001922 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2017-03-05 16:14 - 2017-03-05 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-03-05 16:13 - 2017-03-05 16:13 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2017-03-05 16:13 - 2017-03-05 16:13 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-03-05 16:13 - 2017-03-05 16:13 - 00003914 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-03-05 16:13 - 2017-03-05 16:12 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2017-03-05 16:13 - 2017-03-05 16:12 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-03-05 16:13 - 2017-03-05 16:11 - 00461640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2017-03-05 16:13 - 2017-03-05 16:11 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-03-05 16:13 - 2017-03-05 16:11 - 00309272 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-03-05 16:13 - 2017-03-05 16:11 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-03-05 16:13 - 2017-03-05 16:11 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-03-05 15:42 - 2017-03-05 20:14 - 00000000 ____D C:\Users\Todos os Usuários\McAfee
2017-03-05 15:42 - 2017-03-05 20:14 - 00000000 ____D C:\ProgramData\McAfee
2017-03-05 15:08 - 2017-03-05 15:08 - 00000117 _____ C:\Windows\system32\netcfg-35546.txt
2017-03-05 14:30 - 2017-03-05 14:30 - 00000117 _____ C:\Windows\system32\netcfg-11162296.txt
2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-42953.txt
2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-39890.txt
2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-38656.txt
2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-37515.txt
2017-03-04 22:43 - 2017-03-04 22:43 - 00000117 _____ C:\Windows\system32\netcfg-14634296.txt
2017-03-04 22:43 - 2017-03-04 22:43 - 00000117 _____ C:\Windows\system32\netcfg-14633562.txt
2017-03-04 18:40 - 2017-03-04 18:40 - 00000117 _____ C:\Windows\system32\netcfg-48203.txt
2017-03-04 18:40 - 2017-03-04 18:40 - 00000117 _____ C:\Windows\system32\netcfg-48062.txt
2017-03-04 10:10 - 2017-03-04 10:10 - 00000117 _____ C:\Windows\system32\netcfg-6775250.txt
2017-03-04 10:10 - 2017-03-04 10:10 - 00000117 _____ C:\Windows\system32\netcfg-6775109.txt
2017-03-03 22:53 - 2017-03-03 22:53 - 00000117 _____ C:\Windows\system32\netcfg-33328.txt
2017-03-03 21:56 - 2017-03-03 21:56 - 00000117 _____ C:\Windows\system32\netcfg-7851671.txt
2017-03-03 21:23 - 2017-03-03 21:23 - 00001935 _____ C:\Users\USER\Desktop\HP DeskJet 2130 series SIMONE - Atalho.lnk
2017-03-03 21:16 - 2017-03-03 21:16 - 00000117 _____ C:\Windows\system32\netcfg-5458437.txt
2017-03-03 21:11 - 2017-03-03 21:11 - 00000117 _____ C:\Windows\system32\netcfg-5158515.txt
2017-03-03 21:00 - 2017-03-03 21:00 - 00001139 _____ C:\Windows\system32\netcfg-4485250.txt
2017-03-03 21:00 - 2017-03-03 21:00 - 00000117 _____ C:\Windows\system32\netcfg-4526562.txt
2017-03-03 21:00 - 2017-03-03 21:00 - 00000117 _____ C:\Windows\system32\netcfg-4486421.txt
2017-03-03 20:55 - 2017-03-03 20:55 - 00000000 ____D C:\Users\Todos os Usuários\HP
2017-03-03 20:55 - 2017-03-03 20:55 - 00000000 ____D C:\ProgramData\HP
2017-03-03 19:53 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files\Common Files\AV
2017-03-03 19:53 - 2017-03-03 19:53 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2017-03-03 19:46 - 2017-03-03 19:46 - 00000117 _____ C:\Windows\system32\netcfg-47890.txt
2017-03-03 19:46 - 2017-03-03 19:46 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-03-03 13:13 - 2017-03-03 13:13 - 00000117 _____ C:\Windows\system32\netcfg-70034953.txt
2017-03-03 12:51 - 2017-03-03 12:51 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome
2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498718.txt
2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498640.txt
2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498515.txt
2017-03-03 12:36 - 2017-03-03 12:36 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-03-03 12:34 - 2017-03-03 12:34 - 00000117 _____ C:\Windows\system32\netcfg-67705156.txt
2017-03-03 10:31 - 2017-03-03 10:31 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\USER\AppData\Roaming\Sun
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Sun
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\Todos os Usuários\Oracle
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\ProgramData\Oracle
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Program Files\Java
2017-03-03 10:21 - 2017-03-03 10:26 - 64153152 _____ (Oracle Corporation) C:\Users\USER\Downloads\jre-8u121-windows-x64.exe
2017-03-03 10:16 - 2017-03-03 10:16 - 00000117 _____ C:\Windows\system32\netcfg-59426062.txt
2017-03-03 10:16 - 2017-03-03 10:16 - 00000117 _____ C:\Windows\system32\netcfg-59425968.txt
2017-03-03 10:15 - 2017-03-03 10:15 - 00001704 _____ C:\Users\USER\Desktop\MPC-HC x64.lnk
2017-03-03 10:15 - 2017-03-03 10:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
2017-03-03 10:15 - 2017-03-03 10:15 - 00000000 ____D C:\Program Files\MPC-HC
2017-03-03 10:13 - 2017-03-03 10:13 - 00000117 _____ C:\Windows\system32\netcfg-59222281.txt
2017-03-03 10:13 - 2017-03-03 10:13 - 00000117 _____ C:\Windows\system32\netcfg-59222046.txt
2017-03-03 09:40 - 2017-03-07 23:57 - 00000000 ____D C:\Users\USER\AppData\Local\Adobe
2017-03-03 09:40 - 2017-03-03 09:40 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Adobe
2017-03-03 09:39 - 2017-03-06 21:48 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Mozilla
2017-03-03 09:38 - 2017-03-06 21:38 - 00000000 ____D C:\Users\USER\AppData\Local\Mozilla
2017-03-03 09:38 - 2017-03-03 09:39 - 00000000 ____D C:\Users\USER\AppData\Roaming\Mozilla
2017-03-03 09:38 - 2017-03-03 09:38 - 00000117 _____ C:\Windows\system32\netcfg-57128421.txt
2017-03-03 09:38 - 2017-03-03 09:38 - 00000117 _____ C:\Windows\system32\netcfg-57128296.txt
2017-03-03 08:22 - 2017-03-03 08:22 - 00000117 _____ C:\Windows\system32\netcfg-52573187.txt
2017-03-03 08:22 - 2017-03-03 08:22 - 00000117 _____ C:\Windows\system32\netcfg-52573078.txt
2017-03-02 22:13 - 2017-03-02 22:13 - 00000117 _____ C:\Windows\system32\netcfg-16068656.txt
2017-03-02 22:13 - 2017-03-02 22:13 - 00000117 _____ C:\Windows\system32\netcfg-16068203.txt
2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_tcwbf_01_09_00.Wdf
2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUSB_01009.Wdf
2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____D C:\Program Files\AuthenTec
2017-03-02 18:10 - 2017-03-02 18:10 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-03-02 18:10 - 2017-03-02 18:10 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-03-02 18:00 - 2017-03-02 18:00 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-03-02 18:00 - 2017-03-02 18:00 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-03-02 17:59 - 2017-03-02 18:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-03-02 17:50 - 2017-03-02 18:02 - 00000000 ____D C:\Program Files (x86)\Google
2017-03-02 17:50 - 2017-03-02 17:50 - 00003500 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-03-02 17:50 - 2017-03-02 17:50 - 00003372 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-03-02 17:49 - 2017-03-02 18:19 - 00000000 ____D C:\Users\USER\AppData\Local\Google
2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-146703.txt
2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-143656.txt
2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-141484.txt
2017-03-02 17:46 - 2017-03-02 17:46 - 00015846 _____ C:\Windows\system32\results.xml
2017-03-02 17:44 - 2017-03-02 17:44 - 00001235 _____ C:\Windows\system32\netcfg-336203.txt
2017-03-02 17:44 - 2017-03-02 17:44 - 00001139 _____ C:\Windows\system32\netcfg-340031.txt
2017-03-02 17:44 - 2017-03-02 17:44 - 00000296 _____ C:\Windows\system32\netcfg-337781.txt
2017-03-02 17:43 - 2017-03-02 17:43 - 06957744 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2017-03-02 17:43 - 2017-03-02 17:43 - 04395008 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2017-03-02 17:43 - 2017-03-02 17:43 - 03659264 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2017-03-02 17:43 - 2017-03-02 17:43 - 00000000 ____D C:\Program Files\Broadcom
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Users\Todos os Usuários\Intel
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Users\Todos os Usuários\AmUStor
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\ProgramData\Intel
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\ProgramData\AmUStor
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\USB Camera
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\Intel
2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\AmIcoSingLun
2017-03-02 17:42 - 2013-06-27 07:56 - 00056832 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2017-03-02 17:42 - 2013-06-27 07:56 - 00056320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2017-03-02 17:41 - 2017-03-05 17:51 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-03-02 17:41 - 2017-03-02 17:41 - 00000000 ____D C:\Intel
2017-03-02 17:41 - 2013-08-27 04:50 - 00515568 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2017-03-02 17:41 - 2013-08-27 04:50 - 00442352 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2017-03-02 17:41 - 2013-08-27 04:50 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2017-03-02 17:41 - 2013-08-27 04:50 - 00254960 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2017-03-02 17:41 - 2013-08-27 04:50 - 00172016 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2017-03-02 17:41 - 2013-07-01 13:51 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3223.dll
2017-03-02 17:41 - 2013-06-27 08:12 - 00017090 _____ C:\Windows\system32\iglhxs64.vp
2017-03-02 17:41 - 2013-06-27 08:09 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2017-03-02 17:41 - 2013-06-27 08:09 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2017-03-02 17:41 - 2013-06-27 08:07 - 12615680 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2017-03-02 17:41 - 2013-06-27 08:07 - 11049472 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2017-03-02 17:41 - 2013-06-27 08:07 - 05361920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2017-03-02 17:41 - 2013-06-27 08:07 - 00098304 _____ C:\Windows\system32\igdde64.dll
2017-03-02 17:41 - 2013-06-27 08:07 - 00077312 _____ C:\Windows\SysWOW64\igdde32.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00384512 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2017-03-02 17:41 - 2013-06-27 08:06 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2017-03-02 17:41 - 2013-06-27 08:06 - 00064000 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2017-03-02 17:41 - 2013-06-27 08:06 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2017-03-02 17:41 - 2013-06-27 08:05 - 29591552 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2017-03-02 17:41 - 2013-06-27 08:05 - 11175936 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2017-03-02 17:41 - 2013-06-27 08:05 - 03581440 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2017-03-02 17:41 - 2013-06-27 08:05 - 00241664 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2017-03-02 17:41 - 2013-06-27 08:04 - 29574144 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2017-03-02 17:41 - 2013-06-27 08:04 - 02898944 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2017-03-02 17:41 - 2013-06-27 08:04 - 00195584 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2017-03-02 17:41 - 2013-06-27 08:03 - 27457024 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2017-03-02 17:41 - 2013-06-27 08:01 - 21850112 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00754652 _____ C:\Windows\SysWOW64\igcodeckrng700.bin
2017-03-02 17:41 - 2013-06-27 07:56 - 00754652 _____ C:\Windows\system32\igcodeckrng700.bin
2017-03-02 17:41 - 2013-06-27 07:56 - 00598384 _____ C:\Windows\SysWOW64\igvpkrng700.bin
2017-03-02 17:41 - 2013-06-27 07:56 - 00598384 _____ C:\Windows\system32\igvpkrng700.bin
2017-03-02 17:41 - 2013-06-27 07:56 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00216064 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00180224 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00056832 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2017-03-02 17:41 - 2013-06-27 07:56 - 00056320 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2017-03-02 17:41 - 2013-04-17 11:01 - 01049984 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys
2017-03-02 17:41 - 2013-04-17 10:33 - 00001704 _____ C:\Windows\vm331Rmv.ini
2017-03-02 17:41 - 2013-04-17 10:33 - 00001704 _____ C:\Windows\SysWOW64\vm331Rmv.ini
2017-03-02 17:41 - 2013-04-15 16:24 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll
2017-03-02 17:41 - 2012-01-11 11:12 - 01073152 _____ C:\Windows\system32\331prx64.ax
2017-03-02 17:41 - 2012-01-11 11:12 - 00663552 _____ C:\Windows\SysWOW64\vmprp331.ax
2017-03-02 17:41 - 2010-06-30 17:38 - 00000356 _____ C:\Windows\system\vm331avs.rsf
2017-03-02 17:40 - 2013-08-27 04:50 - 05905904 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2017-03-02 17:40 - 2013-08-27 04:50 - 00399856 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2017-03-02 17:40 - 2013-08-27 04:50 - 00185840 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2017-03-02 17:40 - 2013-07-01 13:51 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2017-03-02 17:40 - 2013-07-01 13:51 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll
2017-03-02 17:40 - 2013-06-27 08:06 - 00223664 _____ C:\Windows\system32\Gfxres.th-TH.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00210106 _____ C:\Windows\system32\Gfxres.el-GR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00194245 _____ C:\Windows\system32\Gfxres.ru-RU.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2017-03-02 17:40 - 2013-06-27 08:06 - 00166170 _____ C:\Windows\system32\Gfxres.ar-SA.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00163421 _____ C:\Windows\system32\Gfxres.ja-JP.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00159008 _____ C:\Windows\system32\Gfxres.he-IL.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00149682 _____ C:\Windows\system32\Gfxres.it-IT.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00148042 _____ C:\Windows\system32\Gfxres.ko-KR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00147393 _____ C:\Windows\system32\Gfxres.de-DE.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00147288 _____ C:\Windows\system32\Gfxres.es-ES.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00146004 _____ C:\Windows\system32\Gfxres.ro-RO.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00145491 _____ C:\Windows\system32\Gfxres.fr-FR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00144645 _____ C:\Windows\system32\Gfxres.tr-TR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00144260 _____ C:\Windows\system32\Gfxres.pt-BR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00144020 _____ C:\Windows\system32\Gfxres.nl-NL.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00143932 _____ C:\Windows\system32\Gfxres.hu-HU.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00142882 _____ C:\Windows\system32\Gfxres.sv-SE.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00142877 _____ C:\Windows\system32\Gfxres.pt-PT.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00142717 _____ C:\Windows\system32\Gfxres.pl-PL.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00142289 _____ C:\Windows\system32\Gfxres.cs-CZ.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00142008 _____ C:\Windows\system32\Gfxres.fi-FI.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00141838 _____ C:\Windows\system32\Gfxres.sk-SK.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00141049 _____ C:\Windows\system32\Gfxres.hr-HR.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00137889 _____ C:\Windows\system32\Gfxres.sl-SI.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00137784 _____ C:\Windows\system32\Gfxres.nb-NO.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00137141 _____ C:\Windows\system32\Gfxres.da-DK.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00132623 _____ C:\Windows\system32\Gfxres.en-US.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00126300 _____ C:\Windows\system32\Gfxres.zh-TW.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00124650 _____ C:\Windows\system32\Gfxres.zh-CN.resources
2017-03-02 17:40 - 2013-06-27 08:06 - 00110592 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2017-03-02 17:40 - 2013-06-27 08:06 - 00000268 _____ C:\Windows\system32\GfxUI.exe.config
2017-03-02 17:40 - 2013-06-27 07:58 - 11633664 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll
2017-03-02 17:40 - 2013-06-27 07:58 - 08621568 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll
2017-03-02 17:40 - 2013-06-27 07:56 - 00094208 _____ C:\Windows\system32\IccLibDll_x64.dll
2017-03-02 16:12 - 2017-03-05 17:55 - 00000000 ____D C:\Users\USER\Downloads\PROGRAMAS DO DESKTOP
2017-03-02 16:12 - 2017-03-02 18:21 - 00000000 ___RD C:\Users\USER\Downloads\AttractorMobileSoftware.STARchiver_1a2j9j160p2gw!App
2017-03-02 16:12 - 2017-03-02 18:16 - 00000000 ____D C:\Users\USER\Downloads\runtime
2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\OpenOffice 4.1.2 Language Pack (Portuguese (Brazil)) Installation Files
2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Legendas35
2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Legendas.3.5.0
2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Java
2017-03-02 16:12 - 2017-03-02 18:09 - 00000000 ____D C:\Users\USER\Downloads\HP Downloads
2017-03-02 16:12 - 2017-03-02 18:04 - 00000000 ____D C:\Users\USER\Downloads\50.tons.mais.escuro.HDCAM.XviD.DUBLADO-TOM
2017-03-02 16:12 - 2017-03-02 17:56 - 00000000 ____D C:\Users\USER\Downloads\[TorrentCounter.com]-Fifty.Shades.Darker.2017.HD-TS
2017-03-02 16:12 - 2017-02-19 11:17 - 01689469 _____ (LegendasBrasil.org ) C:\Users\USER\Downloads\Legendas.3.5.5.exe
2017-03-02 16:12 - 2017-02-18 17:34 - 07987644 ____R C:\Users\USER\Downloads\Legendas35.zip
2017-03-02 16:12 - 2017-02-11 21:36 - 00039275 _____ C:\Users\USER\Downloads\plpbtrom.exe
2017-03-02 16:12 - 2017-02-11 21:36 - 00037332 _____ C:\Users\USER\Downloads\plpcfgbt.exe
2017-03-02 16:12 - 2017-02-11 21:36 - 00032638 _____ C:\Users\USER\Downloads\plpmkboot.exe
2017-03-02 16:12 - 2017-02-11 21:35 - 00055436 _____ C:\Users\USER\Downloads\plpbt4win.exe
2017-03-02 16:12 - 2017-02-11 20:42 - 00137619 _____ C:\Users\USER\Downloads\Instalador.zip
2017-03-02 16:12 - 2017-02-07 23:02 - 00483824 _____ (IBM Corp.) C:\Users\USER\Downloads\RapportSetup (1).exe
2017-03-02 16:12 - 2017-02-07 22:55 - 00483824 _____ (IBM Corp.) C:\Users\USER\Downloads\RapportSetup.exe
2017-03-02 16:12 - 2017-02-06 17:12 - 00016264 _____ () C:\Users\USER\Downloads\TryMicrosoftEdge_MK12CD.exe
2017-03-02 16:12 - 2017-02-03 13:42 - 00043575 _____ C:\Users\USER\Downloads\plpbt.bin
2017-03-02 16:12 - 2017-02-03 13:42 - 00043447 _____ C:\Users\USER\Downloads\plpbtrom.bin
2017-03-02 16:12 - 2017-02-03 13:42 - 00039801 _____ C:\Users\USER\Downloads\plpinstc.bin
2017-03-02 16:12 - 2016-12-10 12:09 - 222531584 _____ C:\Users\USER\Downloads\LibreOffice_5.1.6_Win_x86.msi
2017-03-02 16:12 - 2016-12-02 21:19 - 00617475 _____ C:\Users\USER\Downloads\voucher(1).pdf
2017-03-02 16:12 - 2016-12-02 21:08 - 00617480 _____ C:\Users\USER\Downloads\voucher.pdf
2017-03-02 16:12 - 2016-10-16 21:27 - 00639945 _____ C:\Users\USER\Downloads\ingresso(4).pdf
2017-03-02 16:12 - 2016-10-16 21:27 - 00639929 _____ C:\Users\USER\Downloads\ingresso(2).pdf
2017-03-02 16:12 - 2016-10-16 21:27 - 00639888 _____ C:\Users\USER\Downloads\ingresso(3).pdf
2017-03-02 16:12 - 2016-10-16 21:26 - 00639968 _____ C:\Users\USER\Downloads\ingresso(1).pdf
2017-03-02 16:12 - 2016-10-09 10:49 - 03589050 _____ () C:\Users\USER\Downloads\Shiginima Launcher SE v3.000.exe
2017-03-02 16:12 - 2016-10-09 10:40 - 12903336 _____ (MEGA Limited) C:\Users\USER\Downloads\MEGAsyncSetup.exe
2017-03-02 16:12 - 2016-10-07 23:51 - 44082096 _____ C:\Users\USER\Downloads\sjtsetup_x86_gcc.exe
2017-03-02 16:12 - 2016-09-13 23:39 - 00603640 _____ (Visicom Media inc.) C:\Users\USER\Downloads\ManyCamWebInstaller.exe
2017-03-02 16:12 - 2016-07-30 01:57 - 92529544 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-ENU.exe
2017-03-02 16:12 - 2016-07-30 01:43 - 14254240 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-PTB.exe
2017-03-02 16:12 - 2016-07-30 01:19 - 49325376 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-ENU.exe.ybujf3b.partial
2017-03-02 16:12 - 2016-07-30 00:12 - 49301036 _____ C:\Users\USER\Downloads\SurfaceBook_Win10_161000_0.zip.3qyhx5d.partial
2017-03-02 16:12 - 2016-07-30 00:05 - 03342040 _____ C:\Users\USER\Downloads\wrar531br.exe
2017-03-02 16:12 - 2016-07-22 02:21 - 00639957 _____ C:\Users\USER\Downloads\ingresso.pdf
2017-03-02 16:12 - 2016-07-22 02:21 - 00639916 _____ C:\Users\USER\Downloads\ingresso (1).pdf
2017-03-02 16:12 - 2016-07-11 23:31 - 221675520 _____ C:\Users\USER\Downloads\LibreOffice_5.1.4_Win_x86.msi
2017-03-02 16:12 - 2016-07-06 00:50 - 07147520 _____ C:\Users\USER\Downloads\LibreOffice_5.1.4_Win_x86_helppack_pt-BR.msi
2017-03-02 16:12 - 2016-07-06 00:31 - 224260096 _____ C:\Users\USER\Downloads\LibreOffice_5.0.6_Win_x86.msi
2017-03-02 16:12 - 2016-07-05 17:11 - 28413775 _____ C:\Users\USER\Downloads\tse-executavel-candex-2012-v-1-0-1.zip
2017-03-02 16:12 - 2016-07-04 22:39 - 15673133 _____ C:\Users\USER\Downloads\steampunk theme.zip
2017-03-02 16:12 - 2016-07-04 12:29 - 01877027 _____ C:\Users\USER\Downloads\Photos (2).zip
2017-03-02 16:12 - 2016-06-20 20:49 - 22224014 _____ C:\Users\USER\Downloads\Photos (1).zip
2017-03-02 16:12 - 2016-06-18 17:11 - 00049976 _____ C:\Users\USER\Downloads\legendas_tv_20160618084654000000.rar
2017-03-02 16:12 - 2016-06-03 23:52 - 24245913 _____ C:\Users\USER\Downloads\world-flags-icons-by-studiotwentyeight.zip
2017-03-02 16:12 - 2016-06-03 22:14 - 09566093 _____ C:\Users\USER\Downloads\vector_country_flag_shields_146684.zip
2017-03-02 16:12 - 2016-06-03 22:12 - 11618225 _____ C:\Users\USER\Downloads\world_countries_flags_vector_288823.zip
2017-03-02 16:12 - 2016-06-03 22:12 - 03818693 _____ C:\Users\USER\Downloads\world_national_flag_vectors_147727 (1).zip
2017-03-02 16:12 - 2016-06-03 22:10 - 03818693 _____ C:\Users\USER\Downloads\world_national_flag_vectors_147727.zip
2017-03-02 16:12 - 2016-06-03 22:02 - 00053021 _____ C:\Users\USER\Downloads\world_flag_emotes_by_boffinbrain.zip
2017-03-02 16:12 - 2016-06-03 22:01 - 01784799 _____ C:\Users\USER\Downloads\world_cup_flag_balls_by_creativegeekdesigns.zip
2017-03-02 16:12 - 2016-05-08 14:37 - 43853022 _____ C:\Users\USER\Downloads\Photos.zip
2017-03-02 16:12 - 2016-05-06 00:03 - 01032576 _____ ( ) C:\Users\USER\Downloads\md5_hash.exe
2017-03-02 16:12 - 2016-05-05 23:25 - 02173104 _____ C:\Users\USER\Downloads\Setup_FileViewPro_2016.exe
2017-03-02 16:12 - 2016-04-17 15:59 - 01772544 _____ C:\Users\USER\Downloads\vagalume-letras-mediaplayer-plugin-v1-3.exe
2017-03-02 16:12 - 2016-04-13 12:29 - 47389312 _____ (Skype Technologies S.A.) C:\Users\USER\Downloads\SkypeSetupFull.exe
2017-03-02 16:12 - 2016-04-10 02:38 - 14596608 _____ C:\Users\USER\Downloads\uniconvertor-1.1.5-win32.msi
2017-03-02 16:12 - 2016-01-27 00:06 - 28690931 _____ (APOWERSOFT LIMITED ) C:\Users\USER\Downloads\video-converter-studio.exe
2017-03-02 16:12 - 2016-01-23 11:53 - 01504384 _____ (Skype Technologies S.A.) C:\Users\USER\Downloads\SkypeSetup.exe
2017-03-02 16:12 - 2016-01-06 22:24 - 11161105 _____ C:\Users\USER\Downloads\pfsx-setup-en-10.10.1.exe
2017-03-02 16:12 - 2016-01-03 18:47 - 20233712 _____ (APOWERSOFT LIMITED ) C:\Users\USER\Downloads\streaming-audio-recorder.exe
2017-03-02 16:11 - 2017-03-02 18:51 - 00000000 ____D C:\Users\USER\Documents\xwidget
2017-03-02 16:11 - 2017-03-02 18:51 - 00000000 ____D C:\Users\USER\Documents\Wondershare Video Editor
2017-03-02 16:11 - 2017-02-28 21:15 - 00107981 _____ C:\Users\USER\Downloads\fifty-shades-darker-pob-6900090.zip
2017-03-02 16:11 - 2017-02-18 20:18 - 00091922 _____ C:\Users\USER\Downloads\Fifty Shades Darker 2017 HD-TS x264-CPG.srt
2017-03-02 16:11 - 2017-02-18 17:12 - 3749445632 _____ C:\Users\USER\Downloads\CSGO v1.34.8.0.iso
2017-03-02 16:11 - 2017-02-11 20:49 - 00002045 _____ C:\Users\USER\Downloads\Abrir como Administrador.bat
2017-03-02 16:11 - 2017-02-09 14:39 - 08251904 _____ C:\Users\USER\Downloads\ComplementoChromeBanrisul_vrs001.msi
2017-03-02 16:11 - 2016-09-20 21:55 - 01065376 _____ (Google Inc.) C:\Users\USER\Downloads\ChromeSetup.exe
2017-03-02 16:11 - 2016-08-17 16:02 - 00690584 _____ (Dropbox, Inc.) C:\Users\USER\Downloads\DropboxInstaller (1).exe
2017-03-02 16:11 - 2016-08-16 15:29 - 22525224 _____ (Lenovo Group ) C:\Users\USER\Downloads\ID1CAM23WW5.exe
2017-03-02 16:11 - 2016-07-30 01:40 - 01005568 _____ (Microsoft Corporation) C:\Users\USER\Downloads\dotNetFx45_Full_setup.exe
2017-03-02 16:11 - 2016-07-22 01:10 - 00242320 _____ C:\Users\USER\Downloads\Firefox Setup Stub 47.0.1.exe
2017-03-02 16:11 - 2016-07-08 18:44 - 00066416 _____ C:\Users\USER\Downloads\data (3).pdf
2017-03-02 16:11 - 2016-07-06 02:19 - 140783556 _____ C:\Users\USER\Downloads\Apache_OpenOffice_4.1.2_Win_x86_install_en-US.exe
2017-03-02 16:11 - 2016-07-06 01:53 - 128620512 _____ C:\Users\USER\Downloads\Apache_OpenOffice_4.1.2_Win_x86_install_pt-BR.exe
2017-03-02 16:11 - 2016-07-04 22:28 - 00053391 _____ C:\Users\USER\Downloads\forma.ZIP
2017-03-02 16:11 - 2016-06-15 22:36 - 01986992 _____ C:\Users\USER\Downloads\hellas3_setup.exe
2017-03-02 16:11 - 2016-06-15 22:10 - 01986992 _____ C:\Users\USER\Downloads\callofatlantis_setup.exe
2017-03-02 16:11 - 2016-06-15 21:38 - 01986992 _____ C:\Users\USER\Downloads\cradleofrome_setup.exe
2017-03-02 16:11 - 2016-05-09 23:11 - 00165819 _____ C:\Users\USER\Downloads\041_PM910T3_0011827836_2015.10.05.PDF
2017-03-02 16:11 - 2016-05-05 23:43 - 01032576 _____ ( ) C:\Users\USER\Downloads\fsum.exe
2017-03-02 16:11 - 2016-05-05 23:43 - 00092359 _____ C:\Users\USER\Downloads\fsum.exe.ZIP
2017-03-02 16:11 - 2016-04-18 21:26 - 00054199 _____ C:\Users\USER\Downloads\data (2).pdf
2017-03-02 16:11 - 2016-04-18 21:25 - 00054199 _____ C:\Users\USER\Downloads\data (1).pdf
2017-03-02 16:11 - 2016-04-18 21:16 - 00054199 _____ C:\Users\USER\Downloads\data.pdf
2017-03-02 16:11 - 2016-04-17 00:34 - 03468053 _____ C:\Users\USER\Downloads\Herobrinemod1.7.10.21.jar
2017-03-02 16:11 - 2016-01-07 01:36 - 14039568 _____ C:\Users\USER\Downloads\CursorFX_free.exe
2017-03-02 16:11 - 2015-12-31 21:57 - 02045864 _____ C:\Users\USER\Downloads\Bundesliga1213Logo_Crystal_heru87.rar
2017-03-02 16:11 - 2012-10-17 14:08 - 00000000 ____D C:\Users\USER\Documents\Youtube Videos
2017-03-02 16:10 - 2017-03-02 18:48 - 00000000 ____D C:\Users\USER\Documents\Wondershare Video Converter Ultimate
2017-03-02 16:10 - 2017-03-02 18:48 - 00000000 ____D C:\Users\USER\Documents\Wondershare Filmora
2017-03-02 16:10 - 2014-06-29 13:35 - 00000000 ____D C:\Users\USER\Documents\Vuze Downloads
2017-03-02 16:09 - 2017-03-02 18:47 - 00000000 ____D C:\Users\USER\Documents\VSO Downloader
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ___RD C:\Users\USER\Documents\RocketLifeNetwork
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Video Download Capture
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\The KMPlayer
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Stardock
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Solitaire Kingdom Supreme Documents
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\SoftMaker
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Readon Player
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\RAD
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\PointBlank
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\PcSetup
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Ovogame
2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\NeroVision
2017-03-02 16:09 - 2017-03-02 18:24 - 00000000 ____D C:\Users\USER\Documents\Need for Speed World
2017-03-02 16:09 - 2017-03-02 18:24 - 00000000 ____D C:\Users\USER\Documents\My Games
2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\Meus arquivos recebidos
2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\League of Legends
2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\Incomplete
2017-03-02 16:09 - 2017-03-02 18:22 - 00000000 ____D C:\Users\USER\Documents\HpReg_Backup
2017-03-02 16:09 - 2017-03-02 18:22 - 00000000 ____D C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense_files
2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense pgto_files
2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Funny Photo Maker
2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Freemake
2017-03-02 16:09 - 2017-03-02 18:20 - 00000000 ____D C:\Users\USER\Documents\Free YouTube Download Manager
2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\Foto-Mosaik-Edda
2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FormatFactory
2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FlashIntegro
2017-03-02 16:09 - 2017-03-02 17:51 - 00000000 ___RD C:\Users\USER\Documents\Scanned Documents
2017-03-02 16:09 - 2016-07-27 23:30 - 00000000 ____D C:\Users\USER\Documents\My Photo Collage
2017-03-02 16:08 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FFOutput
2017-03-02 16:08 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Fax
2017-03-02 16:08 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\DESPERTAR DO AMOR
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\CyberLink
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\cheque._files
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Blocos de Anotações do OneNote
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Begeweled 4 Elements_files
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Arquivos do Outlook
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Add-in Express
2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\.android_secure
2017-03-02 16:07 - 2017-02-19 21:38 - 00012781 _____ C:\Users\USER\Documents\starburn.txt
2017-03-02 16:07 - 2017-02-14 16:59 - 00041895 _____ C:\Users\USER\Documents\PROCESSO.pdf
2017-03-02 16:07 - 2017-01-06 20:01 - 00067374 _____ C:\Users\USER\Documents\SKY.pdf
2017-03-02 16:07 - 2017-01-02 21:43 - 00489033 _____ C:\Users\USER\Documents\VIAGEM VIVI.odt
2017-03-02 16:07 - 2016-10-06 22:21 - 00026418 _____ C:\Users\USER\Documents\Sem título 1.odt
2017-03-02 16:07 - 2016-09-26 13:35 - 00012937 _____ C:\Users\USER\Documents\REQUERIMENTO DE RETORNO AO TRABALHO.odt
2017-03-02 16:07 - 2016-09-22 20:40 - 00972745 _____ C:\Users\USER\Documents\Trabalho Diego.odt
2017-03-02 16:07 - 2016-05-05 22:56 - 577734288 _____ C:\Users\USER\Documents\S5310BVJANA1_S5310BZTOANA1_ZTO.zip
2017-03-02 16:07 - 2016-05-05 20:28 - 26551126 _____ C:\Users\USER\Documents\SAMSUNG_USB_Driver_for_Mobile_Phones.zip
2017-03-02 16:07 - 2014-08-22 21:39 - 00067875 _____ C:\Users\USER\Documents\simonehilgert_ficha-financeira_2014082208470028.pdf
2017-03-02 16:07 - 2014-06-03 22:35 - 00152576 _____ C:\Users\USER\Documents\sócios alma tricolor12.xls
2017-03-02 16:07 - 2014-05-28 12:44 - 00000382 _____ C:\Users\USER\Documents\resume.xlw
2017-03-02 16:07 - 2014-05-28 12:43 - 00080925 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xlsx
2017-03-02 16:07 - 2014-05-28 12:36 - 00109056 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xls
2017-03-02 16:07 - 2014-05-28 12:28 - 00080708 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xlsm
2017-03-02 16:07 - 2014-04-25 19:56 - 08879093 _____ C:\Users\USER\Documents\Recomendacoes DESPERTAR DO AMOR.pdf
2017-03-02 16:07 - 2014-04-25 19:51 - 08879093 _____ C:\Users\USER\Documents\Recomendacoes.pdf
2017-03-02 16:07 - 2014-02-24 15:47 - 993938515 _____ C:\Users\USER\Documents\S5310BVJANA1_S5310BZTOANA1_S5310BVJANA1_HOME.tar.md5
2017-03-02 16:07 - 2012-11-14 22:28 - 00001487 _____ C:\Users\USER\Documents\VG140,D715 VG130,D710 VG120,D705 Manual de Instruções.lnk
2017-03-02 16:07 - 2012-10-13 12:52 - 01785951 _____ (P2PHood LLC) C:\Users\USER\Documents\update195.exe
2017-03-02 16:07 - 2011-07-13 21:43 - 00000134 _____ C:\Users\USER\Documents\Solução de Problemas do Internet Explorer.url
2017-03-02 16:07 - 2011-06-01 19:23 - 00318904 _____ (Microsoft Corporation) C:\Users\USER\Documents\wmpfirefoxplugin.exe
2017-03-02 16:06 - 2017-02-24 14:32 - 00636088 _____ C:\Users\USER\Desktop\ingresso naty.pdf
2017-03-02 16:06 - 2017-02-24 14:28 - 00636093 _____ C:\Users\USER\Desktop\meu ingresso.pdf
2017-03-02 16:06 - 2017-02-22 23:40 - 00044437 _____ C:\Users\USER\Documents\Autorização-para-Menores-1.docx.pdf
2017-03-02 16:06 - 2017-02-04 18:25 - 00030631 _____ C:\Users\USER\Documents\ALIEXPRESS.pdf
2017-03-02 16:06 - 2017-01-11 23:39 - 00257047 _____ C:\Users\USER\Desktop\Gols Do Fantástico - 11ª RODADA BRASILEIRÃO - 26-06-16 (1).mp4
2017-03-02 16:06 - 2016-10-01 18:54 - 00012482 _____ C:\Users\USER\Documents\LISTA DE VOTOS.odt
2017-03-02 16:06 - 2016-09-10 15:45 - 00001016 _____ C:\Users\USER\Documents\Bonus1_meditacao_shaking.mp4.lvix
2017-03-02 16:06 - 2016-08-31 14:54 - 00082284 _____ C:\Users\USER\Documents\NOTA FISCAL ADEMIRdanfe.pdf
2017-03-02 16:06 - 2016-08-30 16:25 - 00011264 _____ C:\Users\USER\Documents\Extrato Cartão.xls
2017-03-02 16:06 - 2016-08-24 22:06 - 00138388 _____ C:\Users\USER\Documents\''PROJETOS DE LEI''.odt
2017-03-02 16:06 - 2016-08-20 02:03 - 13395440 _____ (MPC-HC Team ) C:\Users\USER\Desktop\MPC-HC.1.7.10.x64.exe
2017-03-02 16:06 - 2016-08-02 16:01 - 00374864 ____T C:\Users\USER\Documents\DOCUMENTOS ADEMIR.pdf
2017-03-02 16:06 - 2016-07-26 13:31 - 00014965 _____ C:\Users\USER\Documents\Declaração de Bens.odt
2017-03-02 16:06 - 2016-04-06 21:22 - 00066526 _____ C:\Users\USER\Documents\data.pdf
2017-03-02 16:06 - 2016-03-22 12:51 - 00001811 _____ C:\Users\USER\Documents\boleto_54D5C967-3B00-487B-8F3C-5E11C13066C6.pdf - Atalho.lnk
2017-03-02 16:06 - 2016-03-19 18:26 - 00031703 _____ C:\Users\USER\Documents\fevereiro - março, 2016.wlmp
2017-03-02 16:06 - 2016-02-09 20:26 - 00038144 _____ C:\Users\USER\Documents\FATURA SKY data.pdf
2017-03-02 16:06 - 2015-10-23 23:53 - 00018633 _____ C:\Users\USER\Documents\DOCUMENTOS_2.pdf
2017-03-02 16:06 - 2015-10-23 18:57 - 00096492 _____ C:\Users\USER\Documents\Materiais-Proibidos-Arena.pdf
2017-03-02 16:06 - 2015-10-17 20:37 - 00039246 _____ C:\Users\USER\Desktop\Aplicativos Removidos.html
2017-03-02 16:06 - 2015-08-17 20:48 - 00189527 _____ C:\Users\USER\Documents\Autorização de troca (aquariustore.com.br) (1).pdf
2017-03-02 16:06 - 2015-01-26 10:59 - 00045574 _____ C:\Users\USER\Documents\NF Note Igor.pdf
2017-03-02 16:06 - 2015-01-17 15:49 - 184963016 _____ C:\Users\USER\Documents\PowerDVD_14.0.3917.58_DVD140415-03.exe
2017-03-02 16:06 - 2014-08-02 13:45 - 00157168 _____ C:\Users\USER\Documents\https___mup.comercioeletronico.com.br_paymethods_boleto_model5_prepara_pagto.pdf
2017-03-02 16:06 - 2014-05-28 12:29 - 00010274 _____ C:\Users\USER\Documents\alma tri.dotx
2017-03-02 16:06 - 2014-05-28 12:25 - 00160885 _____ C:\Users\USER\Documents\ALMA TRICOLOR.zip
2017-03-02 16:06 - 2014-04-25 20:14 - 111932951 _____ C:\Users\USER\Documents\Bonus1_meditacao_shaking.mp4
2017-03-02 16:06 - 2014-04-25 20:00 - 01678470 _____ C:\Users\USER\Documents\Bonus4_100_Crencas_Possibilitadoras DESPERTAR DO AMOR.pdf
2017-03-02 16:06 - 2014-04-25 19:59 - 02658757 _____ C:\Users\USER\Documents\Bonus3_Como_Criar_Mensagens_Subliminares DESPERTAR DO AMOR.pdf
2017-03-02 16:06 - 2014-04-25 19:57 - 02166406 _____ C:\Users\USER\Documents\Bonus2_14_Dicas_Para_Acabar_Ansiedade_Depressao DESPERTAR DO AMOR.pdf
2017-03-02 16:06 - 2014-04-25 19:49 - 01678470 _____ C:\Users\USER\Documents\Bonus4_100_Crencas_Possibilitadoras.pdf
2017-03-02 16:06 - 2014-04-25 19:47 - 02658757 _____ C:\Users\USER\Documents\Bonus3_Como_Criar_Mensagens_Subliminares.pdf
2017-03-02 16:06 - 2014-04-25 19:39 - 02166406 _____ C:\Users\USER\Documents\Bonus2_14_Dicas_Para_Acabar_Ansiedade_Depressao.pdf
2017-03-02 16:06 - 2014-03-02 14:34 - 00139223 _____ C:\Users\USER\Documents\Documento sem título.pdf
2017-03-02 16:06 - 2013-10-04 18:50 - 00509872 _____ (Ask Partner Network) C:\Users\USER\Documents\APNSetup1.exe
2017-03-02 16:06 - 2013-10-04 18:50 - 00509872 _____ (Ask Partner Network) C:\Users\USER\Documents\APNSetup.exe
2017-03-02 16:06 - 2012-11-23 23:01 - 00240292 _____ C:\Users\USER\Documents\cc_20121124_000106.reg
2017-03-02 16:06 - 2012-11-16 13:09 - 00001919 _____ C:\Users\USER\Documents\ib.lnk
2017-03-02 16:06 - 2012-11-14 22:06 - 00001113 _____ C:\Users\USER\Documents\Atualizador de Câmera Digital OLYMPUS.lnk
2017-03-02 16:06 - 2012-10-29 22:53 - 22529422 _____ C:\Users\USER\Documents\firefox-16.0.1.complete.mar
2017-03-02 16:06 - 2012-09-24 21:34 - 00083351 _____ C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense.htm
2017-03-02 16:06 - 2012-09-24 21:26 - 00084547 _____ C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense pgto.htm
2017-03-02 16:06 - 2012-09-17 21:01 - 00000000 _____ C:\Users\USER\Documents\dujtktut.flv
2017-03-02 16:06 - 2012-09-16 18:02 - 00006226 _____ C:\Users\USER\Documents\135120526657710.xml
2017-03-02 16:06 - 2012-08-11 14:40 - 00122475 _____ C:\Users\USER\Documents\Manual Câmera Olympus.txt
2017-03-02 16:06 - 2011-07-15 00:44 - 00015873 _____ C:\Users\USER\Documents\Begeweled 4 Elements.htm
2017-03-02 16:06 - 2011-07-12 21:51 - 00030619 _____ C:\Users\USER\Documents\cheque..htm
2017-03-02 16:06 - 2011-07-12 21:48 - 00018020 _____ C:\Users\USER\Documents\cheque!!.aspx
2017-03-02 16:06 - 2011-07-12 21:45 - 00029589 _____ C:\Users\USER\Documents\cheque!.aspx
2017-03-02 16:06 - 2011-07-11 21:02 - 02141504 _____ C:\Users\USER\Documents\Papel de Parede Abelha,animado!.zip
2017-03-02 16:06 - 2011-07-11 21:00 - 04832649 _____ C:\Users\USER\Documents\101_Dalmatians.exe
2017-03-02 16:06 - 2011-07-11 20:33 - 05241307 _____ (7Screensavers.com ) C:\Users\USER\Documents\papel de Parede Relógio das Estações!.exe
2017-03-02 16:06 - 2011-07-09 19:06 - 00000309 _____ C:\Users\USER\Documents\Bem-Vindo(a) Revendedor(a).url
2017-03-02 16:06 - 2011-05-29 21:31 - 00823808 _____ C:\Users\USER\Documents\71967-Aosamigosestressados-1.pps
2017-03-02 16:06 - 2010-12-24 11:19 - 02790607 _____ C:\Users\USER\Documents\Camera Olympus.pdf
2017-03-02 16:02 - 2017-03-07 21:42 - 00003758 _____ C:\Windows\System32\Tasks\AutoKMS
2017-03-02 16:02 - 2017-03-02 17:40 - 00000000 ____D C:\Windows\AutoKMS
2017-03-02 16:02 - 2017-03-02 16:02 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Toolkit
2017-03-02 16:02 - 2017-03-02 16:02 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2017-03-02 16:01 - 2017-03-05 16:13 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00337592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00126600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-03-02 16:01 - 2017-03-05 16:13 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-03-02 16:01 - 2017-03-05 16:12 - 00993608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-03-02 16:01 - 2017-03-05 16:12 - 00000000 ____D C:\Program Files\AVAST Software
2017-03-02 16:01 - 2017-03-02 16:01 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2017-03-02 16:01 - 2017-03-02 16:01 - 00000000 ____D C:\Users\USER\AppData\Roaming\AVAST Software
2017-03-02 16:00 - 2017-03-05 22:26 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2017-03-02 16:00 - 2017-03-05 22:26 - 00000000 ____D C:\ProgramData\AVAST Software
2017-03-02 16:00 - 2017-03-02 16:00 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-03-02 15:40 - 2017-03-07 23:53 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2017-03-02 15:40 - 2017-03-07 23:53 - 00000000 ____D C:\ProgramData\Adobe
2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\Program Files\WinRAR
2017-03-02 15:38 - 2017-03-02 16:01 - 00000000 ____D C:\Users\USER\AppData\Roaming\WinRAR
2017-03-02 15:38 - 2017-03-02 15:38 - 00002901 _____ C:\Users\USER\Desktop\Word 2013.lnk
2017-03-02 15:38 - 2017-03-02 15:38 - 00002821 _____ C:\Users\USER\Desktop\Excel 2013.lnk
2017-03-02 15:38 - 2017-03-02 15:38 - 00002769 _____ C:\Users\USER\Desktop\PowerPoint 2013.lnk
2017-03-02 11:54 - 2017-03-02 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2017-03-02 11:53 - 2017-03-02 18:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Windows\PCHEALTH
2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2017-03-02 11:49 - 2017-03-07 12:32 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2017-03-02 11:49 - 2017-03-05 22:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-03-02 11:49 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Microsoft Office
2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Users\USER\AppData\Local\Microsoft Help
2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2017-03-02 11:48 - 2017-03-02 11:48 - 00000000 __RHD C:\MSOCache
2017-03-02 11:36 - 2017-03-06 21:30 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-110062565-2361055857-3464527491-1001
2017-03-02 11:30 - 2017-03-03 09:40 - 00000000 ____D C:\Users\USER\AppData\Roaming\Adobe
2017-03-02 11:30 - 2017-03-02 11:30 - 00001406 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\USER\AppData\Local\VirtualStore
2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\USER\AppData\Local\Packages
2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\Todos os Usuários\PRICache
2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\ProgramData\PRICache
2017-03-02 11:29 - 2017-03-02 11:29 - 00000020 ___SH C:\Users\USER\ntuser.ini
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Modelos
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Meus Documentos
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Menu Iniciar
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Minhas Músicas
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Minhas Imagens
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Meus Vídeos
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Dados de Aplicativos
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Configurações Locais
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Local\Histórico
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Local\Dados de Aplicativos
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Ambiente de Rede
2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Ambiente de Impressão
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Músicas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Imagens
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus Vídeos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas Músicas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas Imagens
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Meus Vídeos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Modelos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Meus Documentos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Menu Iniciar
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Músicas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Imagens
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Meus Vídeos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Configurações Locais
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Ambiente de Rede
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Ambiente de Impressão
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Músicas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Imagens
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Meus Vídeos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Modelos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Menu Iniciar
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Documentos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Dados de Aplicativos
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Program Files\Common Files\Sistema
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Program Files\Arquivos Comuns
2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Arquivos de Programas
2017-03-02 11:26 - 2017-03-02 11:26 - 00001136 _____ C:\Windows\system32\netcfg-60968.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000185 _____ C:\Windows\system32\netcfg-52265.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000164 _____ C:\Windows\system32\netcfg-48421.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000161 _____ C:\Windows\system32\netcfg-51921.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-51625.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-50953.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-48781.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000159 _____ C:\Windows\system32\netcfg-50734.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000157 _____ C:\Windows\system32\netcfg-51375.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000157 _____ C:\Windows\system32\netcfg-49203.txt
2017-03-02 11:25 - 2017-03-02 11:25 - 00000150 _____ C:\Windows\system32\netcfg-50484.txt
2017-03-02 07:24 - 2017-03-02 11:29 - 00000000 ____D C:\Windows\Panther
2017-03-02 07:24 - 2012-08-08 16:06 - 00000013 ____R C:\Windows\csup.txt
2017-03-02 07:23 - 2017-03-07 21:13 - 00762816 _____ C:\Windows\system32\prfh0416.dat
2017-03-02 07:23 - 2017-03-07 21:13 - 00154608 _____ C:\Windows\system32\prfc0416.dat
2017-03-02 07:23 - 2017-03-02 07:23 - 00328358 _____ C:\Windows\system32\prfi0416.dat
2017-03-02 07:23 - 2017-03-02 07:23 - 00040752 _____ C:\Windows\system32\prfd0416.dat
2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\Windows\SysWOW64\0409
2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\Windows\system32\0409
2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\sources
2017-02-10 15:42 - 2017-02-10 15:42 - 00045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2017-02-10 15:42 - 2017-02-10 15:42 - 00045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-03-07 23:55 - 2012-07-26 04:59 - 00000000 ____D C:\Windows\CbsTemp
2017-03-07 23:29 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-03-07 23:29 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\Macromed
2017-03-07 21:40 - 2012-07-26 04:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-07 21:13 - 2012-07-26 04:28 - 01765682 _____ C:\Windows\system32\PerfStringBackup.INI
2017-03-07 21:13 - 2012-07-26 02:37 - 00000000 ____D C:\Windows\Inf
2017-03-07 20:15 - 2012-07-26 02:37 - 00000000 ____D C:\Windows\servicing
2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\WinStore
2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows Defender
2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-03-07 20:10 - 2012-07-26 08:22 - 00000000 ____D C:\Program Files\Windows Journal
2017-03-07 20:10 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\oobe
2017-03-07 10:42 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\rescache
2017-03-05 22:37 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\MUI
2017-03-05 22:37 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\MUI
2017-03-05 21:00 - 2012-07-26 05:12 - 00000000 ___HD C:\Program Files\WindowsApps
2017-03-05 21:00 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\AUInstallAgent
2017-03-05 19:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\NDF
2017-03-05 18:12 - 2012-07-26 05:12 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2017-03-05 18:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2017-03-03 21:34 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2017-03-02 19:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2017-03-02 17:45 - 2012-07-26 02:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2017-03-02 17:42 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\System
2017-03-02 12:15 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-03-02 12:15 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\winrm
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\WCN
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\slmgr
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\winrm
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\WCN
2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\slmgr
2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\Com
2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\migwiz
2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\SysWOW64\oobe
2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\SysWOW64\Dism
2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\Sysprep
2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\Dism
2017-03-02 12:13 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2017-03-02 12:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2017-03-02 12:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\Com
2017-03-02 11:54 - 2012-07-26 08:22 - 00000000 ____D C:\Windows\ShellNew
2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-03-02 11:50 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Common Files\System
2017-03-02 11:50 - 2012-07-26 02:26 - 00000167 _____ C:\Windows\win.ini
2017-03-02 11:28 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows NT
2017-03-02 07:24 - 2012-07-26 05:13 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2017-03-02 07:23 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\PolicyDefinitions

Alguns arquivos em TEMP:
====================
2017-03-02 11:48 - 2012-10-01 21:44 - 0178824 ____R (Microsoft Corporation) C:\Users\USER\AppData\Local\Temp\ose00000.exe
2017-03-05 23:32 - 2017-03-05 23:34 - 14456872 _____ (Microsoft Corporation) C:\Users\USER\AppData\Local\Temp\vc_redist.x86.exe
2017-03-07 20:52 - 2017-03-07 20:52 - 4037721 _____ (Dropbox, Inc.) C:\Users\USER\AppData\Local\Temp\{9BE17F6F-798B-4792-BFBC-2752873D6FA6}-DropboxClient_21.4.25.exe

==================== Bamital & volsnap ======================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente

LastRegBack: 2017-03-02 11:25

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité