cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 24.10.2018
Executado por Samsung (administrador) em LAPTOP-E5F12CN5 (03-11-2018 15:41:22)
Executando a partir de C:\Users\Samsung\Desktop
Perfis Carregados: Samsung & (Perfis Disponíveis: defaultuser0 & Samsung)
Platform: Windows 10 Home Single Language Versão 1803 17134.345 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\IntelCpHDCPSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Samsung Electronics Co., Ltd.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\IntelCpHeciSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlClient.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira) C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\igfxext.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\S Agent\CommonAgent.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.10827.20186.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_357e4fbecc1cec81\igfxext.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(Samsung Electronics) C:\Program Files\Samsung\Recovery\SRSMessages.exe
(Samsung) C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Corporation) C:\Windows\System32\Dism.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Google) C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\SwReporter\34.176.200\software_reporter_tool.exe
(Google) C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\SwReporter\34.176.200\software_reporter_tool.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\SamsungPCCleaner\SamsungPCCleanerService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.11001.20074\OfficeClickToRun.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.281_none_eada712a1d8142be\TiWorker.exe

==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-11] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776704 2016-12-15] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242200 2017-04-17] (ELAN Microelectronics Corp.)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [98024 2018-10-09] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [64096 2018-07-09] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244263\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244263\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244263\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655550\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655550\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655550\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081807871\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081807871\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081807871\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218270\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218270\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218270\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102217525\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102217525\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102217525\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448112\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448112\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448112\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253132\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253132\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253132\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124655912\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124655912\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124655912\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105510\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105510\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105510\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214141\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214141\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214141\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153717933\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153717933\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153717933\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244307\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655661\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081807934\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218302\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102218056\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448211\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253182\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656000\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105551\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214221\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153718679\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244399\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655743\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081807996\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218317\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102218869\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448342\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253346\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656366\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105653\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214254\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153719665\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205244474\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212655897\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808105\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218661\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102219806\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448414\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122253720\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656493\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125105721\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214302\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720472\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205245526\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212656225\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808324\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218817\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102223774\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448952\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122254256\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656734\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125106036\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214416\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720832\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\ColorEngine\ColorEngine.exe [4063536 2017-02-09] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)
HKU\S-1-5-18\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Samsung\Settings\CmdServer\WlanAniControl.exe [3380464 2018-04-05] (Samsung)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 192.168.15.1
Tcpip\..\Interfaces\{dda3ebc7-7569-48f4-8345-e2108c3ad0d7}: [DhcpNameServer] 192.168.15.1

Internet Explorer:
==================
HKU\S-1-5-21-1956448836-749255449-2331315014-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205245526\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205245526\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212656225\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212656225\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808324\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808324\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218817\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218817\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102223774\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102223774\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448952\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448952\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122254256\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122254256\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656734\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656734\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125106036\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125106036\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214416\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214416\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720832\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung17win10.msn.com/?pc=SMTE
HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720832\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung17win10.msn.com/?pc=SMTE
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205245526 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018205245526 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212656225 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10212018212656225 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808324 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018081808324 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218817 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018082218817 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102223774 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018102223774 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448952 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018121448952 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122254256 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018122254256 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656734 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018124656734 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125106036 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018125106036 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214416 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10222018132214416 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720832 -> DefaultScope {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
SearchScopes: HKU\S-1-5-21-1956448836-749255449-2331315014-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018153720832 -> {BD549D6D-1C2F-449B-B490-CF23E5243650} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-10-19] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Samsung\AppData\Roaming\Mozilla\Firefox\Profiles\YbDaVZmd.default [2018-06-01]
FF Extension: (Avira Browser Safety) - C:\Users\Samsung\AppData\Roaming\Mozilla\Firefox\Profiles\YbDaVZmd.default\Extensions\abs@avira.com [2018-06-01]
FF Extension: (Avira Password Manager) - C:\Users\Samsung\AppData\Roaming\Mozilla\Firefox\Profiles\YbDaVZmd.default\Extensions\passwordmanager@avira.com [2018-06-01]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.)

Chrome:
=======
CHR NewTab: Default -> Not-active:"chrome-extension://ipmkfpcnmccejididiaagpgchgjfajgp/html/newtab.html"
CHR DefaultSearchURL: Default -> hxxps://search.avira.com/#web/result?source=omnibar&q={searchTerms}
CHR DefaultSearchKeyword: Default -> Avira
CHR DefaultSuggestURL: Default -> hxxps://search.avira.com/suggestions?q={searchTerms}&li=ff&hl=pt
CHR Profile: C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default [2018-11-03]
CHR Extension: (Apresentações) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-08]
CHR Extension: (Documentos) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-08]
CHR Extension: (Google Drive) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-05-08]
CHR Extension: (YouTube) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-08]
CHR Extension: (Avira Password Manager) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2018-10-13]
CHR Extension: (Adobe Acrobat) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-06-02]
CHR Extension: (Planilhas) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-08]
CHR Extension: (Segurança do navegador Avira) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2018-06-02]
CHR Extension: (Documentos Google off-line) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-18]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2018-07-20]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-08]
CHR Extension: (Gmail) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-05-08]
CHR Extension: (Chrome Media Router) - C:\Users\Samsung\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-20]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

==================== Serviços (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [895056 2018-09-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [226000 2018-09-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [226000 2018-09-05] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1148568 2018-09-05] (Avira Operations GmbH & Co. KG)
R2 AtherosSvc; C:\WINDOWS\system32\DRIVERS\AdminService.exe [357952 2017-07-27] (Windows (R) Win 7 DDK provider)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [431688 2018-10-09] (Avira Operations GmbH & Co. KG)
R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2981872 2018-09-18] (Avira Operations GmbH & Co. KG)
S2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [338888 2018-08-14] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102816 2018-10-11] (Avira Operations GmbH & Co. KG)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9683736 2018-10-14] (Microsoft Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [129752 2017-04-17] (ELAN Microelectronics Corp.)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [742704 2017-10-11] (Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [668472 2017-10-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [213648 2017-11-09] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 SecPowerCtrlService; C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe [1702112 2016-09-09] (Samsung Electronics Co., Ltd.)
R2 Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [2011888 2018-04-05] (Samsung Electronics Co., Ltd.)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3298600 2018-03-02] (Samsung Electronics Co., Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-11] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"

===================== Drivers (Whitelisted) ======================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (Apple Inc.)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [69656 2018-08-11] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [179376 2018-07-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [169864 2018-07-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2018-05-23] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2018-05-23] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2018-05-23] (Avira Operations GmbH & Co. KG)
R3 BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [614984 2017-07-27] (Qualcomm)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [152688 2018-09-11] (Malwarebytes)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [200232 2018-11-03] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [118584 2018-10-21] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [58400 2018-10-21] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260384 2018-10-21] (Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [110424 2018-11-03] (Malwarebytes)
S3 pmxdrv; C:\Windows\system32\drivers\pmxdrv.sys [31152 2018-05-10] ()
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2016-09-20] (Realtek )
R3 SamsungEventController; C:\WINDOWS\System32\drivers\SamsungEventController.sys [41656 2017-04-03] (Samsung)
R3 Shci; C:\WINDOWS\System32\drivers\Shci.sys [68096 2016-11-07] (Samsung Electronics Co., Ltd.)
R3 Snscr; C:\WINDOWS\System32\drivers\Snscr.sys [52224 2016-10-30] (Samsung Electronics Co., Ltd.)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [55904 2016-01-08] (QUALCOMM Incorporated)
S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [33376 2016-01-08] (DEVGURU Co., LTD.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-11] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-11] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-11] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2018-11-03 15:41 - 2018-11-03 15:43 - 000045060 _____ C:\Users\Samsung\Desktop\FRST.txt
2018-11-03 15:41 - 2018-11-03 15:41 - 000000000 ____D C:\Users\Samsung\Desktop\FRST-OlderVersion
2018-11-03 15:40 - 2018-11-03 15:41 - 000000000 ____D C:\FRST
2018-10-23 21:11 - 2018-11-03 15:41 - 002414592 _____ (Farbar) C:\Users\Samsung\Desktop\FRST64.exe
2018-10-23 20:57 - 2018-10-23 20:57 - 000000000 ____D C:\Users\Samsung\AppData\Local\ESET
2018-10-23 20:56 - 2018-10-23 20:56 - 006984312 _____ (ESET spol. s r.o.) C:\Users\Samsung\Downloads\esetonlinescanner_ptb.exe
2018-10-23 19:08 - 2018-10-23 19:08 - 000184750 _____ C:\Users\Samsung\Downloads\Aula7_Exercício de perspetiva isométrica II - 2018.pdf
2018-10-21 23:09 - 2018-10-21 23:09 - 002377776 _____ (Kaspersky Lab) C:\Users\Samsung\Downloads\kfa18.0.0.405abpt_13157.exe
2018-10-21 21:01 - 2018-10-21 21:01 - 000001193 _____ C:\Users\Public\Desktop\Avira.lnk
2018-10-21 20:53 - 2018-10-21 20:53 - 000118584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2018-10-21 20:52 - 2018-10-21 20:52 - 000058400 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2018-10-21 20:51 - 2018-11-03 15:40 - 000110424 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2018-10-21 20:47 - 2018-10-21 20:48 - 000000000 ____D C:\AdwCleaner
2018-10-21 20:46 - 2018-10-21 20:46 - 007592144 _____ (Malwarebytes) C:\Users\Samsung\Desktop\adwcleaner_7.2.4.0.exe
2018-10-20 22:53 - 2018-10-20 22:53 - 000000000 ____D C:\Users\Samsung\AppData\Local\mbam
2018-10-20 22:52 - 2018-11-03 15:39 - 000200232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2018-10-20 22:52 - 2018-10-21 20:51 - 000260384 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-10-20 22:52 - 2018-10-20 22:52 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-10-20 22:52 - 2018-10-20 22:52 - 000000000 ____D C:\Users\Todos os Usuários\Malwarebytes
2018-10-20 22:52 - 2018-10-20 22:52 - 000000000 ____D C:\Users\Samsung\AppData\Local\mbamtray
2018-10-20 22:52 - 2018-10-20 22:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-10-20 22:52 - 2018-10-20 22:52 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-10-20 22:52 - 2018-10-20 22:52 - 000000000 ____D C:\Program Files\Malwarebytes
2018-10-20 22:52 - 2018-09-11 13:18 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-10-20 22:50 - 2018-10-20 22:51 - 080707680 _____ (Malwarebytes ) C:\Users\Samsung\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.463-1.0.7438.exe
2018-10-19 23:16 - 2018-10-19 23:19 - 203085219 _____ C:\Users\Samsung\Downloads\Incidentals v01 - Powers, Lies, and Secrets (2018).cbr
2018-10-19 23:16 - 2018-10-19 23:19 - 197195516 _____ C:\Users\Samsung\Downloads\Incidentals v02 - Balance of Power (2018).cbr
2018-10-19 22:41 - 2018-10-19 22:54 - 685393288 _____ C:\Users\Samsung\Downloads\Incidentals (01-12) (2017-2018).zip
2018-10-19 22:06 - 2018-10-19 22:19 - 239194300 _____ C:\Users\Samsung\Downloads\Project Superpowers 000-007 (2008) GetComics.INFO.zip
2018-10-19 22:00 - 2018-10-19 22:07 - 350159296 _____ C:\Users\Samsung\Downloads\Project Superpowers - Chapter 2 (Prelude + 01 - 12) (2008-2010) GetComics.INFO.zip
2018-10-19 21:23 - 2018-10-19 21:30 - 311373824 _____ C:\Users\Samsung\Downloads\Project Superpowers - Blackcross v01 (2016) (digital) (Son of Ultron-Empire).cbr
2018-10-19 21:18 - 2018-10-19 21:25 - 314446627 _____ C:\Users\Samsung\Downloads\Project Superpowers - Blackcross 001-006 (2015) GetComics.INFO.zip
2018-10-19 20:38 - 2018-10-19 20:40 - 216144407 _____ C:\Users\Samsung\Downloads\Project Superpowers - Hero Killers (001-005) (2017) GetComics.INFO.zip
2018-10-19 20:34 - 2018-10-19 21:26 - 107287853 _____ C:\Users\Samsung\Downloads\Athena Voltaire and the Volcano Goddess v01 (2017) (Digital) (Shadowcat-Empire).cbz
2018-10-19 20:34 - 2018-10-19 21:03 - 058766590 _____ C:\Users\Samsung\Downloads\Athena Voltaire - Free Preview (2014) (digital) (Son of Ultron-Empire).cbr
2018-10-19 20:34 - 2018-10-19 20:51 - 037274393 _____ C:\Users\Samsung\Downloads\Flight of the Falcon (001-003)(2006-2007).zip
2018-10-19 20:34 - 2018-10-19 20:45 - 023067915 _____ C:\Users\Samsung\Downloads\The Black Coat & Athena Voltaire 01 (2009) (Minutemen-DarthXer).cbr
2018-10-19 20:34 - 2018-10-19 20:43 - 018119876 _____ C:\Users\Samsung\Downloads\Athena Voltaire - Collected Webcomics (2006) (online version).cbr
2018-10-19 20:34 - 2018-10-19 20:41 - 329774035 _____ C:\Users\Samsung\Downloads\Athena Voltaire Compendium (2014) GetComics.INFO.cbr
2018-10-19 14:40 - 2018-10-19 14:40 - 000002525 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002490 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002474 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002471 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002461 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-10-19 14:40 - 2018-10-19 14:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office
2018-10-18 17:17 - 2018-11-03 15:43 - 000000000 ____D C:\Users\Public\Speedup Sessions
2018-10-13 18:53 - 2018-10-13 18:53 - 002773401 _____ C:\Users\Samsung\Downloads\Espectrometria-UV-vis.pdf
2018-10-10 19:42 - 2018-09-21 06:18 - 021386888 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-10-10 19:42 - 2018-09-20 01:29 - 006569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-10-10 19:42 - 2018-09-20 01:21 - 022013440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-10-10 19:42 - 2018-09-20 01:09 - 007520096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-10-10 19:42 - 2018-09-20 01:08 - 004191232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-10-10 19:42 - 2018-09-20 00:53 - 025851392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-10-10 19:42 - 2018-09-20 00:46 - 022715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-10-10 19:42 - 2018-09-20 00:37 - 004615680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-10-10 19:41 - 2018-09-21 05:22 - 020381784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-10-10 19:41 - 2018-09-21 01:12 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-10-10 19:41 - 2018-09-21 01:09 - 004790160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-10-10 19:41 - 2018-09-21 01:09 - 002253696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-10-10 19:41 - 2018-09-21 01:08 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-10-10 19:41 - 2018-09-21 01:08 - 002765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-10-10 19:41 - 2018-09-21 00:58 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-10-10 19:41 - 2018-09-21 00:43 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2018-10-10 19:41 - 2018-09-21 00:41 - 003396096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-10-10 19:41 - 2018-09-21 00:40 - 002368000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-10-10 19:41 - 2018-09-21 00:39 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-10-10 19:41 - 2018-09-21 00:37 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-10-10 19:41 - 2018-09-21 00:37 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-10-10 19:41 - 2018-09-21 00:37 - 001211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2018-10-10 19:41 - 2018-09-21 00:36 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2018-10-10 19:41 - 2018-09-20 06:23 - 006602240 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-10-10 19:41 - 2018-09-20 06:22 - 013572096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-10-10 19:41 - 2018-09-20 06:18 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-10-10 19:41 - 2018-09-20 05:35 - 005669888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-10-10 19:41 - 2018-09-20 05:34 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-10-10 19:41 - 2018-09-20 05:29 - 002891776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-10-10 19:41 - 2018-09-20 01:29 - 006039368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-10-10 19:41 - 2018-09-20 01:29 - 001989232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-10-10 19:41 - 2018-09-20 01:17 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-10-10 19:41 - 2018-09-20 01:15 - 019404288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-10-10 19:41 - 2018-09-20 01:13 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-10-10 19:41 - 2018-09-20 01:11 - 005777920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-10-10 19:41 - 2018-09-20 01:10 - 001221128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-10-10 19:41 - 2018-09-20 01:10 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-10-10 19:41 - 2018-09-20 01:09 - 009089848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-10-10 19:41 - 2018-09-20 01:09 - 007432136 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-10-10 19:41 - 2018-09-20 01:09 - 002825232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-10-10 19:41 - 2018-09-20 01:09 - 002462888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-10-10 19:41 - 2018-09-20 01:09 - 002421248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-10-10 19:41 - 2018-09-20 01:08 - 001627648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-10-10 19:41 - 2018-09-20 00:44 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-10-10 19:41 - 2018-09-20 00:44 - 004383744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-10-10 19:41 - 2018-09-20 00:42 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-10-10 19:41 - 2018-09-20 00:41 - 007577088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-10-10 19:41 - 2018-09-20 00:40 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-10-10 19:41 - 2018-09-20 00:40 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-10-10 19:41 - 2018-09-20 00:37 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-10-10 19:41 - 2018-09-20 00:36 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-10-10 19:41 - 2018-09-08 05:12 - 000452112 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-10-10 19:41 - 2018-09-08 05:07 - 002868536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-10-10 19:41 - 2018-09-08 05:07 - 001610552 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-10-10 19:41 - 2018-09-08 05:07 - 000792376 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-10-10 19:41 - 2018-09-08 05:07 - 000689464 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-10-10 19:41 - 2018-09-08 05:07 - 000612360 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-10-10 19:41 - 2018-09-08 05:02 - 000540984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-10-10 19:41 - 2018-09-08 04:58 - 001520744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-10-10 19:41 - 2018-09-08 04:40 - 001724928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2018-10-10 19:41 - 2018-09-08 04:40 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2018-10-10 19:41 - 2018-09-08 04:39 - 002052096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2018-10-10 19:41 - 2018-09-08 04:39 - 001787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2018-10-10 19:41 - 2018-09-08 04:38 - 001288192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2018-10-10 19:41 - 2018-09-08 04:38 - 001004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2018-10-10 19:41 - 2018-09-08 04:38 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2018-10-10 19:41 - 2018-09-08 04:38 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2018-10-10 19:41 - 2018-09-08 04:14 - 001328056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-10-10 19:41 - 2018-09-08 03:59 - 001530368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2018-10-10 19:41 - 2018-09-08 03:59 - 001452544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2018-10-10 19:41 - 2018-09-08 03:58 - 001308672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2018-10-10 19:41 - 2018-09-08 03:57 - 000625664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2018-10-10 19:41 - 2018-09-08 01:08 - 000462880 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-10-10 19:41 - 2018-09-08 00:57 - 002571128 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-10-10 19:41 - 2018-09-08 00:57 - 001016984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2018-10-10 19:41 - 2018-09-08 00:57 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2018-10-10 19:41 - 2018-09-08 00:51 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-10-10 19:41 - 2018-09-08 00:44 - 001980984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-10-10 19:41 - 2018-09-08 00:44 - 000829752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2018-10-10 19:41 - 2018-09-08 00:43 - 001174448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2018-10-10 19:41 - 2018-09-08 00:30 - 003601920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2018-10-10 19:41 - 2018-09-08 00:29 - 004771840 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2018-10-10 19:41 - 2018-09-08 00:28 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2018-10-10 19:41 - 2018-09-08 00:27 - 003348992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2018-10-10 19:41 - 2018-09-08 00:27 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2018-10-10 19:41 - 2018-09-08 00:26 - 002328064 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2018-10-10 19:41 - 2018-09-08 00:26 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2018-10-10 19:41 - 2018-09-08 00:25 - 003553792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2018-10-10 19:41 - 2018-09-08 00:25 - 002789376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2018-10-10 19:41 - 2018-09-08 00:25 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2018-10-10 19:41 - 2018-09-08 00:24 - 001457664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2018-10-10 19:41 - 2018-09-08 00:24 - 001096704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-10-10 19:41 - 2018-09-08 00:24 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2018-10-10 19:41 - 2018-09-08 00:24 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2018-10-10 19:41 - 2018-09-08 00:23 - 001655296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2018-10-10 19:41 - 2018-09-08 00:23 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2018-10-10 19:41 - 2018-09-08 00:22 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2018-10-10 19:40 - 2018-09-21 06:01 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2018-10-10 19:40 - 2018-09-21 05:12 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2018-10-10 19:40 - 2018-09-21 01:14 - 000661056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2018-10-10 19:40 - 2018-09-21 01:13 - 000480568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-10-10 19:40 - 2018-09-21 01:11 - 000753056 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2018-10-10 19:40 - 2018-09-21 01:09 - 001427968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2018-10-10 19:40 - 2018-09-21 01:09 - 001062920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-10-10 19:40 - 2018-09-21 01:09 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-10-10 19:40 - 2018-09-21 01:08 - 001566720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2018-10-10 19:40 - 2018-09-21 01:08 - 001456720 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-10-10 19:40 - 2018-09-21 01:08 - 001257864 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-10-10 19:40 - 2018-09-21 01:08 - 001140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-10-10 19:40 - 2018-09-21 01:08 - 000982600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-10-10 19:40 - 2018-09-21 01:08 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-10-10 19:40 - 2018-09-21 01:08 - 000261008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-10-10 19:40 - 2018-09-21 01:08 - 000170808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-10-10 19:40 - 2018-09-21 01:07 - 000604664 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-10-10 19:40 - 2018-09-21 00:57 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-10-10 19:40 - 2018-09-21 00:56 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-10-10 19:40 - 2018-09-21 00:54 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-10-10 19:40 - 2018-09-21 00:53 - 001006080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2018-10-10 19:40 - 2018-09-21 00:42 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-10-10 19:40 - 2018-09-21 00:39 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-10-10 19:40 - 2018-09-21 00:39 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-10-10 19:40 - 2018-09-21 00:39 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-10-10 19:40 - 2018-09-21 00:38 - 002172928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-10-10 19:40 - 2018-09-21 00:38 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-10-10 19:40 - 2018-09-21 00:37 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-10-10 19:40 - 2018-09-21 00:36 - 001034240 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-10-10 19:40 - 2018-09-21 00:36 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-10-10 19:40 - 2018-09-21 00:36 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-10-10 19:40 - 2018-09-20 06:40 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-10-10 19:40 - 2018-09-20 06:37 - 001634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-10-10 19:40 - 2018-09-20 06:19 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2018-10-10 19:40 - 2018-09-20 06:18 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-10-10 19:40 - 2018-09-20 06:17 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2018-10-10 19:40 - 2018-09-20 06:17 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-10-10 19:40 - 2018-09-20 06:17 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-10-10 19:40 - 2018-09-20 06:16 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2018-10-10 19:40 - 2018-09-20 05:46 - 001454440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-10-10 19:40 - 2018-09-20 05:30 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-10-10 19:40 - 2018-09-20 05:29 - 002824704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2018-10-10 19:40 - 2018-09-20 05:29 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-10-10 19:40 - 2018-09-20 05:28 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2018-10-10 19:40 - 2018-09-20 03:43 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2018-10-10 19:40 - 2018-09-20 02:52 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-10-10 19:40 - 2018-09-20 01:29 - 001513032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2018-10-10 19:40 - 2018-09-20 01:29 - 000357056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2018-10-10 19:40 - 2018-09-20 01:28 - 001129544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-10-10 19:40 - 2018-09-20 01:28 - 000581792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-10-10 19:40 - 2018-09-20 01:28 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-10-10 19:40 - 2018-09-20 01:12 - 000272200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-10-10 19:40 - 2018-09-20 01:12 - 000269128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-10-10 19:40 - 2018-09-20 01:11 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-10-10 19:40 - 2018-09-20 01:11 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-10-10 19:40 - 2018-09-20 01:11 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-10-10 19:40 - 2018-09-20 01:10 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-10-10 19:40 - 2018-09-20 01:10 - 000566800 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-10-10 19:40 - 2018-09-20 01:10 - 000500536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2018-10-10 19:40 - 2018-09-20 01:10 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-10-10 19:40 - 2018-09-20 01:10 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-10-10 19:40 - 2018-09-20 01:09 - 001767096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2018-10-10 19:40 - 2018-09-20 01:09 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-10-10 19:40 - 2018-09-20 01:09 - 001097744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-10-10 19:40 - 2018-09-20 01:09 - 000885952 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-10-10 19:40 - 2018-09-20 01:09 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-10-10 19:40 - 2018-09-20 01:09 - 000713472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-10-10 19:40 - 2018-09-20 01:09 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-10-10 19:40 - 2018-09-20 00:42 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-10-10 19:40 - 2018-09-20 00:41 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-10-10 19:40 - 2018-09-20 00:41 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-10-10 19:40 - 2018-09-20 00:41 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-10-10 19:40 - 2018-09-20 00:40 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-10-10 19:40 - 2018-09-20 00:38 - 001724416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-10-10 19:40 - 2018-09-20 00:38 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2018-10-10 19:40 - 2018-09-08 05:07 - 000309560 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-10-10 19:40 - 2018-09-08 05:07 - 000144696 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-10-10 19:40 - 2018-09-08 05:07 - 000069944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-10-10 19:40 - 2018-09-08 05:02 - 000645112 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2018-10-10 19:40 - 2018-09-08 04:58 - 001639352 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2018-10-10 19:40 - 2018-09-08 04:57 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2018-10-10 19:40 - 2018-09-08 04:44 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll
2018-10-10 19:40 - 2018-09-08 04:43 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardBi.dll
2018-10-10 19:40 - 2018-09-08 04:42 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2018-10-10 19:40 - 2018-09-08 04:42 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2018-10-10 19:40 - 2018-09-08 04:40 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2018-10-10 19:40 - 2018-09-08 04:40 - 000522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2018-10-10 19:40 - 2018-09-08 04:40 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2018-10-10 19:40 - 2018-09-08 04:40 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2018-10-10 19:40 - 2018-09-08 04:39 - 005505024 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2018-10-10 19:40 - 2018-09-08 04:39 - 000615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2018-10-10 19:40 - 2018-09-08 04:38 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2018-10-10 19:40 - 2018-09-08 04:37 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2018-10-10 19:40 - 2018-09-08 04:16 - 000482080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2018-10-10 19:40 - 2018-09-08 04:13 - 001626656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2018-10-10 19:40 - 2018-09-08 04:13 - 000181288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
2018-10-10 19:40 - 2018-09-08 04:03 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll
2018-10-10 19:40 - 2018-09-08 04:02 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll
2018-10-10 19:40 - 2018-09-08 04:00 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2018-10-10 19:40 - 2018-09-08 03:59 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2018-10-10 19:40 - 2018-09-08 03:59 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2018-10-10 19:40 - 2018-09-08 03:58 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2018-10-10 19:40 - 2018-09-08 03:57 - 005391360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2018-10-10 19:40 - 2018-09-08 03:57 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2018-10-10 19:40 - 2018-09-08 03:57 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2018-10-10 19:40 - 2018-09-08 03:56 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2018-10-10 19:40 - 2018-09-08 00:59 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-10-10 19:40 - 2018-09-08 00:59 - 000361544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2018-10-10 19:40 - 2018-09-08 00:58 - 000744976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-10-10 19:40 - 2018-09-08 00:58 - 000376120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2018-10-10 19:40 - 2018-09-08 00:58 - 000368440 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2018-10-10 19:40 - 2018-09-08 00:57 - 000482384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-10-10 19:40 - 2018-09-08 00:57 - 000368448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2018-10-10 19:40 - 2018-09-08 00:57 - 000267576 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-10-10 19:40 - 2018-09-08 00:45 - 000295416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2018-10-10 19:40 - 2018-09-08 00:45 - 000286824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2018-10-10 19:40 - 2018-09-08 00:43 - 000269104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2018-10-10 19:40 - 2018-09-08 00:31 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2018-10-10 19:40 - 2018-09-08 00:31 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Proxy.dll
2018-10-10 19:40 - 2018-09-08 00:30 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2018-10-10 19:40 - 2018-09-08 00:30 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2018-10-10 19:40 - 2018-09-08 00:30 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2018-10-10 19:40 - 2018-09-08 00:29 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2018-10-10 19:40 - 2018-09-08 00:29 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2018-10-10 19:40 - 2018-09-08 00:29 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2018-10-10 19:40 - 2018-09-08 00:29 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2018-10-10 19:40 - 2018-09-08 00:28 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2018-10-10 19:40 - 2018-09-08 00:28 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2018-10-10 19:40 - 2018-09-08 00:28 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2018-10-10 19:40 - 2018-09-08 00:27 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2018-10-10 19:40 - 2018-09-08 00:27 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2018-10-10 19:40 - 2018-09-08 00:27 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2018-10-10 19:40 - 2018-09-08 00:27 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcfile.dll
2018-10-10 19:40 - 2018-09-08 00:26 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2018-10-10 19:40 - 2018-09-08 00:25 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2018-10-10 19:40 - 2018-09-08 00:25 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2018-10-10 19:40 - 2018-09-08 00:24 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2018-10-10 19:40 - 2018-09-08 00:23 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2018-10-10 19:40 - 2018-09-08 00:23 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Proximity.dll
2018-10-10 19:39 - 2018-09-21 00:57 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-10-10 19:39 - 2018-09-21 00:36 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2018-10-10 19:39 - 2018-09-20 01:11 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2018-10-10 19:39 - 2018-09-20 01:10 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2018-10-10 19:39 - 2018-09-20 00:43 - 000052736 _____ C:\WINDOWS\system32\runexehelper.exe
2018-10-10 19:39 - 2018-09-20 00:42 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2018-10-10 19:39 - 2018-09-20 00:41 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-10-10 19:39 - 2018-09-19 23:21 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
2018-10-10 19:39 - 2018-09-19 22:28 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2018-10-10 19:39 - 2018-09-08 04:43 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETRES.dll
2018-10-10 19:39 - 2018-09-08 04:42 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2018-10-10 19:39 - 2018-09-08 04:42 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthci.dll
2018-10-10 19:39 - 2018-09-08 04:41 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2018-10-10 19:39 - 2018-09-08 04:03 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETRES.dll
2018-10-10 19:39 - 2018-09-08 03:58 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2018-10-10 19:39 - 2018-09-08 00:32 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys
2018-10-10 19:39 - 2018-09-08 00:30 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2018-10-10 19:39 - 2018-09-08 00:28 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Proxy.dll
2018-10-10 19:39 - 2018-09-08 00:25 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2018-10-10 19:07 - 2018-10-21 20:55 - 000000000 ____D C:\Users\Samsung\Desktop\10-10-2018
2018-10-08 10:38 - 2018-10-08 10:38 - 002120374 _____ C:\Users\Samsung\Desktop\metodologia.pdf
2018-10-04 19:24 - 2018-10-04 19:24 - 000296009 _____ C:\Users\Samsung\Downloads\Aula6_Exercício de perspetica isométrica2018 - 1 corrigido.pdf

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2018-11-03 15:35 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-03 15:34 - 2018-04-11 20:38 - 000000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2018-11-03 15:34 - 2018-04-11 20:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-03 15:34 - 2017-12-08 13:40 - 000000000 __SHD C:\Users\Samsung\IntelGraphicsProfiles
2018-10-23 23:49 - 2018-07-11 22:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-10-23 19:37 - 2018-04-11 20:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-10-23 19:19 - 2018-08-02 19:50 - 000000000 ____D C:\Users\Todos os Usuários\Packages
2018-10-23 19:19 - 2018-08-02 19:50 - 000000000 ____D C:\ProgramData\Packages
2018-10-23 19:09 - 2018-07-11 22:46 - 000004186 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{76B4DA95-AB7F-4513-9F3B-3FC7E5C80F42}
2018-10-22 12:58 - 2018-07-11 22:49 - 000000000 ___RD C:\Users\Samsung\3D Objects
2018-10-22 08:18 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-10-21 21:01 - 2018-06-01 18:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2018-10-21 21:01 - 2017-03-08 03:17 - 000000000 ____D C:\Users\Todos os Usuários\Package Cache
2018-10-21 21:01 - 2017-03-08 03:17 - 000000000 ____D C:\ProgramData\Package Cache
2018-10-21 20:54 - 2018-06-10 10:53 - 000000000 ____D C:\Users\Samsung\Downloads\Unifesp
2018-10-21 20:50 - 2018-07-11 22:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-10-21 20:50 - 2017-03-08 03:21 - 000000000 ____D C:\Users\Todos os Usuários\NVIDIA
2018-10-21 20:50 - 2017-03-08 03:21 - 000000000 ____D C:\ProgramData\NVIDIA
2018-10-21 20:49 - 2018-04-11 18:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-10-19 20:30 - 2018-06-02 15:33 - 000000000 ____D C:\Users\Samsung\Downloads\hqs
2018-10-19 14:39 - 2017-03-08 03:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-10-18 17:17 - 2018-07-11 22:46 - 000003790 _____ C:\WINDOWS\System32\Tasks\AviraSystemSpeedupUpdate
2018-10-18 13:44 - 2018-07-11 22:46 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1956448836-749255449-2331315014-1001
2018-10-18 13:44 - 2018-07-11 22:30 - 000002375 _____ C:\Users\Samsung\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-18 13:44 - 2017-12-08 13:43 - 000000000 ___RD C:\Users\Samsung\OneDrive
2018-10-14 14:38 - 2017-12-08 13:40 - 000000000 ____D C:\Users\Samsung\AppData\Local\Packages
2018-10-12 18:59 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-10-12 18:59 - 2018-04-11 20:36 - 000000000 ____D C:\WINDOWS\INF
2018-10-11 20:55 - 2018-06-01 20:11 - 000000000 ____D C:\Users\Samsung\AppData\Local\Avira
2018-10-11 20:55 - 2018-06-01 18:06 - 000000000 ____D C:\Users\Todos os Usuários\Avira
2018-10-11 20:55 - 2018-06-01 18:06 - 000000000 ____D C:\ProgramData\Avira
2018-10-11 20:55 - 2018-06-01 18:06 - 000000000 ____D C:\Program Files (x86)\Avira
2018-10-11 20:50 - 2018-04-11 20:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-10-11 20:43 - 2018-07-11 22:41 - 002661914 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-10-11 20:43 - 2018-07-11 21:51 - 000772078 _____ C:\WINDOWS\system32\perfh00A.dat
2018-10-11 20:43 - 2018-07-11 21:51 - 000152088 _____ C:\WINDOWS\system32\perfc00A.dat
2018-10-11 20:43 - 2018-04-12 13:41 - 000750780 _____ C:\WINDOWS\system32\prfh0416.dat
2018-10-11 20:43 - 2018-04-12 13:41 - 000148114 _____ C:\WINDOWS\system32\prfc0416.dat
2018-10-11 20:39 - 2017-03-08 20:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-10-11 20:35 - 2018-07-11 22:24 - 000401984 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-10-10 23:03 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-10-10 23:03 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2018-10-10 23:02 - 2018-04-11 20:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-10-10 23:02 - 2018-04-11 20:38 - 000000000 ___RD C:\Program Files\Windows Defender
2018-10-10 23:02 - 2018-04-11 20:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-10-10 23:02 - 2018-04-11 20:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2018-10-10 22:07 - 2018-06-02 21:23 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-10-10 20:41 - 2018-05-08 09:30 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-10-10 20:10 - 2018-05-08 09:30 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Bamital & volsnap ======================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\WINDOWS\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\wininit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\services.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente

LastRegBack: 2018-07-11 22:24

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité