Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-09-2015 Ran by Gustavo (administrator) on GUSTAVO-NOTE2 (20-09-2015 16:16:06) Running from C:\Users\Gustavo\Downloads Loaded Profiles: Gustavo (Available Profiles: Gustavo) Platform: Windows 10 Home (X64) Language: Português (Brasil) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe (IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Spotify Ltd) C:\Users\Gustavo\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Dropbox, Inc.) C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\Dropbox.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe Failed to access process -> WinStore.Mobile.exe (Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.9.9.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe (Microsoft Corporation) C:\Windows\DevicesFlow\DevicesFlow.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.580.0.0_x86__kgqvnymyfvs32\candycrushsaga.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-09-02] (ELAN Microelectronics Corp.) HKLM\...\Run: [VDownloader] => C:\Program Files\VDownloader\VDownloader4.exe [1621504 2015-03-19] (Vitzo) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe [2620728 2015-07-22] (Malwarebytes Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\ GbPluginBb-x32: C:\Program Files (x86)\GbPlugin\gbieh.dll [X] Winlogon\Notify\ GbPluginCef-x32: C:\Program Files (x86)\GbPlugin\gbiehCef.dll [X] HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [DAEMON Tools Lite] => C:\daemon\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22344224 2015-07-29] (Google) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2895552 2015-07-21] (Valve Corporation) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [Spotify Web Helper] => C:\Users\Gustavo\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-08-19] (Spotify Ltd) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [VDownloader] => C:\Program Files\VDownloader\VDownloader4.exe [1621504 2015-03-19] (Vitzo) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [Dropbox Update] => C:\Users\Gustavo\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-06] (Dropbox, Inc.) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [457088 2015-07-24] (Sony) HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\RunOnce: [Uninstall C:\Users\Gustavo\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gustavo\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\RunOnce: [Uninstall C:\Users\Gustavo\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gustavo\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" ShellExecuteHooks-x32: - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - No File [ ] ShellExecuteHooks-x32: - {E37CB5F0-51F5-4395-A808-5FA49E399003} - No File [ ] ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ExplorerEx] -> {E056AFDD-03E9-4D73-8D33-8FCCBCA73438} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\DropboxExt.26.dll No File Startup: C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-12] ShortcutTarget: Dropbox.lnk -> C:\Users\Gustavo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 189.6.0.72 189.6.0.71 Tcpip\..\Interfaces\{32bd5c2d-f218-4a1f-b170-3dde941446ce}: [DhcpNameServer] 189.6.0.72 189.6.0.71 Tcpip\..\Interfaces\{c164d1bc-80ab-4272-bc21-bd0247615029}: [DhcpNameServer] 10.2.0.97 10.2.0.93 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3336594925-1444484530-2665733283-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-27] (Oracle Corporation) BHO-x32: No Name -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> No File BHO-x32: No Name -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> No File BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-27] (Oracle Corporation) FireFox: ======== FF ProfilePath: C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-02-27] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-02-27] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-20] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-20] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3336594925-1444484530-2665733283-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Gustavo\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-3336594925-1444484530-2665733283-1001: gastecnologia.com.br/sf/bb -> C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll [2014-05-24] (GAS Tecnologia) FF Plugin HKU\S-1-5-21-3336594925-1444484530-2665733283-1001: gastecnologia.com.br/sf/cef -> C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\npsf_cef.dll [2014-09-20] (GAS Tecnologia) FF Extension: ColorZilla - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2015-09-04] FF Extension: Live HTTP headers - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2015-06-02] FF Extension: Firebug - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\firebug@software.joehewitt.com.xpi [2015-01-06] FF Extension: YouTube mp3 - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\info@youtube-mp3.org.xpi [2014-11-28] FF Extension: Lightbeam - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi [2015-01-22] FF Extension: MeasureIt - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\{75CEEE46-9B64-46f8-94BF-54012DE155F0}.xpi [2015-01-12] FF Extension: Download YouTube Videos as MP4 - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2015-06-29] FF Extension: Express Find - C:\Users\Gustavo\AppData\Roaming\Mozilla\Firefox\Profiles\mtobp5xo.default\Extensions\{c1c2292b-1e63-4789-80ef-a6c78d8308b6}.xpi [2015-03-27] FF HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Firefox\Extensions: [{87F8774F-B485-47E2-A755-A40A8A5E886C}] - C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\bb\xpi FF Extension: GBBD Banco do Brasil - C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\bb\xpi [2014-05-24] FF HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\...\Firefox\Extensions: [{87F8774F-B485-47E2-A755-A40A8A5E886D}] - C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\cef\xpi FF Extension: GBBD Caixa Economica Federal - C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\cef\xpi [2014-09-20] Chrome: ======= CHR dev: Chrome dev build detected! <======= ATTENTION CHR Profile: C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Apresentações) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-24] CHR Extension: (Google Docs) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-07] CHR Extension: (Google Drive) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-07] CHR Extension: (Rapport) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof [2015-07-06] CHR Extension: (YouTube) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-07] CHR Extension: (Google Search) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-07] CHR Extension: (Planilhas do Google) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-24] CHR Extension: (Documentos Google off-line) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-14] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-23] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-09-14] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-09] CHR Extension: (GBBD Banco do Brasil) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh [2013-07-29] CHR Extension: (Gmail) - C:\Users\Gustavo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-07] CHR HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-3336594925-1444484530-2665733283-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pgacfjdigcddmmncljpflgcfpfahebkh] - C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\bb\sf.crx [2013-07-29] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-09-02] (ELAN Microelectronics Corp.) R2 MbaeSvc; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [713016 2015-07-22] (Malwarebytes Corporation) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] R2 RapportMgmtService; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2255128 2015-08-12] (IBM Corp.) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed] R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2014-09-24] (DT Soft Ltd) R1 ESProtectionDriver; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [63064 2015-07-22] () R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-28] (REALiX(tm)) S3 pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [82816 2014-07-28] (VSO Software) [File not signed] R1 RapportCerberus_1507067; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1507067.sys [958744 2015-09-09] (IBM Corp.) R1 RapportEI64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [500184 2015-08-12] (IBM Corp.) R0 RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [139896 2015-08-12] (IBM Corp.) R0 RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [394584 2015-08-12] (IBM Corp.) R1 RapportPG64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [489240 2015-08-12] (IBM Corp.) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-20 16:16 - 2015-09-20 16:17 - 00021571 _____ C:\Users\Gustavo\Downloads\FRST.txt 2015-09-20 16:14 - 2015-09-20 16:14 - 02191360 _____ (Farbar) C:\Users\Gustavo\Downloads\FRST64.exe 2015-09-20 16:04 - 2015-09-20 16:04 - 00016148 _____ C:\WINDOWS\system32\GUSTAVO-NOTE2_Gustavo_HistoryPrediction.bin 2015-09-14 17:18 - 2015-09-14 17:19 - 00043520 _____ C:\Users\Gustavo\Downloads\ASA NORTE 14.09 - 20.09.xls 2015-09-14 15:25 - 2015-09-14 15:25 - 00001051 _____ C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recursos Opcionais.lnk 2015-09-14 15:19 - 2015-09-20 16:06 - 00002393 _____ C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-09-14 15:17 - 2015-09-14 15:17 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2015-09-14 15:17 - 2015-09-14 15:17 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-09-14 15:15 - 2015-09-14 15:15 - 00000000 ____D C:\Users\Gustavo\AppData\Local\Publishers 2015-09-14 15:13 - 2015-09-14 15:13 - 00000000 ____D C:\Users\Gustavo\AppData\Local\NetworkTiles 2015-09-14 15:12 - 2015-09-14 15:14 - 00000000 ____D C:\Users\Gustavo\AppData\Local\Comms 2015-09-14 15:12 - 2015-09-14 15:12 - 00000000 ____D C:\Users\Gustavo\AppData\Local\TileDataLayer 2015-09-14 15:11 - 2015-09-14 15:11 - 00000020 ___SH C:\Users\Gustavo\ntuser.ini 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Músicas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Imagens 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus Vídeos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de Aplicativos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Modelos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Meus Documentos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Músicas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Imagens 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Documents\Meus Vídeos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Dados de Aplicativos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Configurações Locais 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Ambiente de Rede 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default\Ambiente de Impressão 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Músicas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Imagens 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\Documents\Meus Vídeos 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2015-09-14 14:35 - 2015-09-14 14:35 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de Aplicativos 2015-09-14 14:23 - 2015-09-17 03:12 - 01810446 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-09-14 14:18 - 2015-07-10 07:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Roaming\IObit 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local\Trusteer 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local\Microsoft Help 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local\Google 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default\AppData\Local\Trusteer 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default\AppData\Local\Google 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Trusteer 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-09-14 14:11 - 2015-09-14 14:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Google 2015-09-14 14:10 - 2015-09-14 14:10 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-09-14 14:04 - 2015-09-14 14:04 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-09-14 14:02 - 2015-09-14 15:17 - 00000000 ____D C:\Users\Gustavo 2015-09-14 14:02 - 2015-09-14 15:12 - 00000000 ___RD C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-14 14:02 - 2015-09-14 14:03 - 00000000 ___RD C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-14 14:02 - 2015-09-14 14:03 - 00000000 ___RD C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Modelos 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Meus Documentos 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Menu Iniciar 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Documents\Minhas Músicas 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Documents\Minhas Imagens 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Documents\Meus Vídeos 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Dados de Aplicativos 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Configurações Locais 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\AppData\Local\Histórico 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\AppData\Local\Dados de Aplicativos 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Ambiente de Rede 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 _SHDL C:\Users\Gustavo\Ambiente de Impressão 2015-09-14 14:02 - 2015-07-10 08:04 - 00000000 __RSD C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-09-14 14:02 - 2015-07-10 08:04 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-14 13:57 - 2015-09-14 13:57 - 00000000 ____D C:\Program Files\Elantech 2015-09-14 13:53 - 2015-09-14 13:54 - 00033193 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-09-14 13:52 - 2015-09-14 14:15 - 00002746 _____ C:\WINDOWS\PFRO.log 2015-09-14 13:51 - 2015-09-14 15:11 - 00000000 ___DC C:\WINDOWS\Panther 2015-09-14 13:51 - 2015-09-14 14:00 - 00000000 __SHD C:\Recovery 2015-09-14 13:47 - 2015-09-14 13:47 - 00000000 ____D C:\Windows.old 2015-09-14 13:45 - 2015-09-14 13:45 - 24594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 21874688 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 19324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02446336 _____ C:\WINDOWS\system32\InputService.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-09-14 13:45 - 2015-09-14 13:45 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-09-14 13:45 - 2015-09-14 13:45 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-09-14 13:45 - 2015-09-14 13:45 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-09-14 13:45 - 2015-09-14 13:45 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-09-14 13:45 - 2015-09-14 13:45 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2015-09-14 13:45 - 2015-09-14 13:45 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll 2015-09-14 13:45 - 2015-09-14 13:45 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-09-14 13:45 - 2015-09-14 13:45 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList 2015-09-14 13:39 - 2015-07-09 20:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-09-14 13:39 - 2015-07-09 20:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-09-14 13:39 - 2015-07-09 20:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-09-14 13:39 - 2015-07-09 20:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-09-14 13:39 - 2015-07-09 20:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-09-14 13:38 - 2015-09-14 13:38 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-09-14 13:36 - 2015-09-14 14:14 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-09-14 13:36 - 2015-09-14 13:36 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-09-14 13:36 - 2015-09-14 13:36 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-09-14 13:36 - 2015-09-14 13:36 - 00000000 ____D C:\Program Files\MSBuild 2015-09-14 13:36 - 2015-09-14 13:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-09-14 13:36 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-09-14 13:36 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-09-14 13:36 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-09-14 13:35 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-09-14 13:35 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-09-14 13:35 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-09-14 12:47 - 2015-09-14 14:30 - 00007237 _____ C:\WINDOWS\comsetup.log 2015-09-14 12:27 - 2015-09-14 12:30 - 00000000 ____D C:\Users\Gustavo\Desktop\bkpMae 2015-09-13 11:43 - 2015-09-13 11:46 - 483198175 _____ C:\Users\Gustavo\Downloads\DBS_-_E10_HD.mkv 2015-09-09 18:07 - 2015-09-09 17:35 - 00024064 _____ C:\WINDOWS\zoek-delete.exe 2015-09-09 17:39 - 2015-07-21 15:56 - 00002774 _____ C:\zoek-results2015-07-21-185626.log 2015-09-09 15:02 - 2015-09-09 15:03 - 27619574 _____ C:\Users\Gustavo\Downloads\Legend of Zelda, The - Majora's Mask (U) [!].zip 2015-09-09 14:58 - 2015-09-09 14:59 - 00841583 _____ C:\Users\Gustavo\Downloads\[N64] Legend of Zelda, The - Majora's Mask (E) (M4) (V1.0) [!] [T-BR] [T-Danilo, Vinicius e grande elenco G-Projeto BR] [V-1.1c A-2008].zip 2015-09-09 14:02 - 2015-07-22 11:19 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-09-07 19:05 - 2015-09-14 14:14 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-09-07 19:04 - 2015-09-07 19:07 - 489703640 _____ C:\Users\Gustavo\Downloads\DBS_-_E09_HD.mkv 2015-09-03 20:40 - 2015-09-03 20:51 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E09.HDTV.x264-DEFiNE[ettv] 2015-09-03 20:36 - 2015-09-03 20:40 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E08.HDTV.x264-KILLERS[ettv] 2015-09-03 20:33 - 2015-09-03 20:34 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E07.HDTV.x264-DEFiNE[ettv] 2015-09-03 20:31 - 2015-09-03 20:31 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E06.HDTV.x264-ASAP[ettv] 2015-09-03 20:25 - 2015-09-03 20:39 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E05.HDTV.x264-KILLERS[ettv] 2015-09-03 20:16 - 2015-08-22 00:38 - 00047645 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E09.HDTV.x264-DEFiNE.srt 2015-09-03 20:16 - 2015-08-14 21:28 - 00045853 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E08.HDTV.x264-KILLERS.srt 2015-09-03 20:15 - 2015-08-07 00:59 - 00044293 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E07.HDTV.x264-DEFiNE.srt 2015-09-03 20:15 - 2015-07-31 00:31 - 00042144 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E06.HDTV.x264-ASAP.srt 2015-09-03 20:14 - 2015-09-03 20:19 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E04.HDTV.x264-KILLERS[ettv] 2015-09-03 20:14 - 2015-09-03 20:15 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E03.HDTV.x264-ASAP[rarbg] 2015-09-03 20:14 - 2015-07-25 19:09 - 00048319 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E05.HDTV.x264-KILLERS.srt 2015-09-03 20:14 - 2015-07-17 01:39 - 00040760 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E04.HDTV.x264-KILLERS.srt 2015-09-03 20:14 - 2015-07-09 23:28 - 00048289 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E03.HDTV.x264-ASAP.srt 2015-09-03 20:13 - 2015-09-03 20:16 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E02.HDTV.x264-KILLERS[ettv] 2015-09-03 20:13 - 2015-07-03 15:52 - 00055507 _____ C:\Users\Gustavo\Downloads\Mr.Robot.S01E02.HDTV.x264-KILLERS.srt 2015-09-03 20:12 - 2015-09-03 20:12 - 00000000 ____D C:\Users\Gustavo\Downloads\Mr.Robot.S01E01.HDTV.x264.PROPER-LOL[ettv] 2015-09-03 20:12 - 2015-05-30 12:42 - 00067600 _____ C:\Users\Gustavo\Downloads\mr.robot.101.hdtv-lol.srt 2015-09-02 21:22 - 2015-09-02 21:22 - 00525000 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys 2015-09-02 21:22 - 2015-09-02 21:22 - 00056008 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller01000.dll 2015-08-31 11:51 - 2015-08-31 11:52 - 487865023 _____ C:\Users\Gustavo\Downloads\[HyuugaDownloads]DBS_-_E08_HD.mkv 2015-08-26 15:33 - 2015-08-26 15:36 - 94435493 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 04.mp4 2015-08-26 15:27 - 2015-08-26 15:29 - 70132109 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 12 FINAL.mp4 2015-08-26 15:25 - 2015-08-26 15:28 - 81567541 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 08.mp4 2015-08-26 15:24 - 2015-08-26 15:26 - 82182642 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 11.mp4 2015-08-26 15:24 - 2015-08-26 15:26 - 81779827 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 10.mp4 2015-08-26 15:23 - 2015-08-26 15:26 - 81812419 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 09.mp4 2015-08-26 15:23 - 2015-08-26 15:26 - 81765730 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 07.mp4 2015-08-26 15:19 - 2015-08-26 15:22 - 92805496 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 02.mp4 2015-08-26 15:19 - 2015-08-26 15:22 - 85860565 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 05.mp4 2015-08-26 15:19 - 2015-08-26 15:22 - 83297378 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 06.mp4 2015-08-26 15:19 - 2015-08-26 15:22 - 82042911 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 03.mp4 2015-08-26 15:18 - 2015-08-26 15:21 - 81809702 _____ C:\Users\Gustavo\Downloads\Medaka Box Abnormal 01.mp4 2015-08-26 15:16 - 2015-08-26 15:16 - 83067589 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_12_Final.mp4 2015-08-26 15:16 - 2015-08-26 15:16 - 82929845 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_09.mp4 2015-08-26 15:15 - 2015-08-26 15:15 - 81950857 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_10.mp4 2015-08-26 15:13 - 2015-08-26 15:14 - 82754536 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_08.mp4 2015-08-26 15:13 - 2015-08-26 15:13 - 83175998 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_05.mp4 2015-08-26 15:12 - 2015-08-26 15:12 - 82618769 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_07.mp4 2015-08-26 15:12 - 2015-08-26 15:12 - 82331715 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_06.mp4 2015-08-26 15:11 - 2015-08-26 15:11 - 83084357 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_04.mp4 2015-08-26 15:03 - 2015-08-26 15:03 - 83021156 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_03.mp4 2015-08-26 15:00 - 2015-08-26 15:00 - 83971199 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_02.mp4 2015-08-24 22:37 - 2015-08-24 22:37 - 83543285 _____ C:\Users\Gustavo\Downloads\[Hyuuga]_[BakaSub]_Medaka_Box_Epi_01.mp4 ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-20 16:20 - 2015-07-09 15:10 - 00000646 _____ C:\WINDOWS\Tasks\{3B7FD029-D932-411b-AF15-C96CF8EF0C18}{19F8DB95-4D78-4ddb-AC71-C610654FE37F}.job 2015-09-20 16:18 - 2015-07-06 11:07 - 00001066 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3336594925-1444484530-2665733283-1001UA.job 2015-09-20 16:16 - 2014-10-26 14:28 - 00000000 ____D C:\FRST 2015-09-20 16:15 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-20 16:14 - 2013-05-15 14:42 - 00004162 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-09-20 16:14 - 2013-05-15 14:42 - 00003930 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-09-20 16:14 - 2013-05-15 14:42 - 00001104 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-20 16:14 - 2013-05-15 14:42 - 00001100 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-20 16:12 - 2013-05-15 14:27 - 00000000 ____D C:\Users\Gustavo\AppData\Local\Packages 2015-09-20 16:09 - 2014-10-26 14:13 - 00004184 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F42F920F-CDFD-48F0-A2B1-02729992C9BE} 2015-09-20 16:08 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\appcompat 2015-09-20 16:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-20 16:06 - 2014-09-24 22:58 - 00000000 ___RD C:\Users\Gustavo\OneDrive 2015-09-20 16:04 - 2015-07-10 13:36 - 00782022 _____ C:\WINDOWS\system32\prfh0416.dat 2015-09-20 16:04 - 2015-07-10 13:36 - 00153010 _____ C:\WINDOWS\system32\prfc0416.dat 2015-09-20 16:04 - 2015-07-10 09:20 - 00013837 _____ C:\WINDOWS\setupact.log 2015-09-17 00:08 - 2015-07-09 15:10 - 00000694 _____ C:\WINDOWS\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job 2015-09-15 03:29 - 2015-07-10 09:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-09-14 18:53 - 2013-05-15 17:02 - 00000902 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-09-14 18:18 - 2015-07-06 11:07 - 00001014 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3336594925-1444484530-2665733283-1001Core.job 2015-09-14 17:23 - 2015-07-10 07:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-09-14 17:20 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\restore 2015-09-14 15:27 - 2015-01-23 14:50 - 00000000 ____D C:\Program Files (x86)\Steam 2015-09-14 15:26 - 2015-07-10 13:37 - 00000000 ____D C:\WINDOWS\OCR 2015-09-14 15:18 - 2015-01-07 16:50 - 00000000 ___RD C:\Users\Gustavo\Dropbox 2015-09-14 15:18 - 2015-01-07 16:46 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Dropbox 2015-09-14 15:18 - 2015-01-07 12:49 - 00000000 ___RD C:\Users\Gustavo\Google Drive 2015-09-14 15:14 - 2015-07-10 08:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-09-14 15:14 - 2015-07-10 08:04 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-09-14 15:14 - 2015-07-10 08:04 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-09-14 15:13 - 2015-07-10 08:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-09-14 14:35 - 2015-07-10 08:04 - 00000000 ____D C:\Program Files\Windows NT 2015-09-14 14:35 - 2015-07-10 06:05 - 00000000 __RHD C:\Users\Default 2015-09-14 14:35 - 2014-09-23 23:50 - 00036198 _____ C:\WINDOWS\diagwrn.xml 2015-09-14 14:35 - 2014-09-23 23:50 - 00036198 _____ C:\WINDOWS\diagerr.xml 2015-09-14 14:33 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\rescache 2015-09-14 14:30 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\Registration 2015-09-14 14:29 - 2015-07-20 14:37 - 00003726 _____ C:\WINDOWS\System32\Tasks\PFExe 2015-09-14 14:29 - 2015-07-10 11:12 - 00003996 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-09-14 14:29 - 2015-07-10 09:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-14 14:29 - 2015-07-09 15:10 - 00003726 _____ C:\WINDOWS\System32\Tasks\{3B7FD029-D932-411b-AF15-C96CF8EF0C18}{19F8DB95-4D78-4ddb-AC71-C610654FE37F} 2015-09-14 14:29 - 2015-07-09 15:10 - 00003474 _____ C:\WINDOWS\System32\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935} 2015-09-14 14:29 - 2015-07-06 11:07 - 00004126 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3336594925-1444484530-2665733283-1001UA 2015-09-14 14:29 - 2015-07-06 11:07 - 00003746 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3336594925-1444484530-2665733283-1001Core 2015-09-14 14:29 - 2015-05-08 17:33 - 00003710 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3336594925-1444484530-2665733283-1001 2015-09-14 14:29 - 2014-09-24 00:13 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-09-14 14:29 - 2013-07-22 19:44 - 00003268 _____ C:\WINDOWS\System32\Tasks\{51A60A61-9F08-4C3D-8CA4-2E3B37B9412E} 2015-09-14 14:29 - 2013-06-05 00:09 - 00002886 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-09-14 14:29 - 2013-05-15 17:02 - 00003900 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-09-14 14:25 - 2015-07-10 08:04 - 00000000 __RHD C:\Users\Public\Libraries 2015-09-14 14:15 - 2015-07-10 09:20 - 04969136 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-09-14 14:14 - 2015-08-07 17:50 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intel XDK 2015-09-14 14:14 - 2015-07-10 13:48 - 00000000 ____D C:\WINDOWS\ShellNew 2015-09-14 14:14 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-09-14 14:14 - 2015-07-10 06:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-09-14 14:14 - 2015-07-10 06:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-09-14 14:14 - 2015-07-09 15:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2015-09-14 14:14 - 2015-06-29 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8 2015-09-14 14:14 - 2015-06-29 13:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter 2015-09-14 14:14 - 2015-04-29 00:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 2015-09-14 14:14 - 2015-03-05 10:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snappersoft USB Healer 2015-09-14 14:14 - 2015-02-23 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mouse Recorder Pro 2 2015-09-14 14:14 - 2015-01-23 14:59 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-09-14 14:14 - 2015-01-23 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-09-14 14:14 - 2015-01-21 14:52 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flashtool 2015-09-14 14:14 - 2015-01-07 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-09-14 14:14 - 2015-01-05 19:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP 2015-09-14 14:14 - 2014-10-29 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Exploit 2015-09-14 14:14 - 2014-10-28 12:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster 2015-09-14 14:14 - 2014-10-26 20:37 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-09-14 14:14 - 2014-09-29 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proteção de Terminal Trusteer 2015-09-14 14:14 - 2014-02-27 12:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-09-14 14:14 - 2014-02-19 23:29 - 00000000 ____D C:\Users\Todos os Usuários\regid.1986-12.com.adobe 2015-09-14 14:14 - 2014-02-19 23:29 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2015-09-14 14:14 - 2013-12-09 23:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-09-14 14:14 - 2013-12-09 20:50 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis 2015-09-14 14:14 - 2013-10-31 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek USB 2.0 Card Reader Software 2015-09-14 14:14 - 2013-10-17 00:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-09-14 14:14 - 2013-07-31 14:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VDownloader 2015-09-14 14:14 - 2013-07-22 22:56 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III 2015-09-14 14:14 - 2013-07-22 22:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III 2015-09-14 14:14 - 2013-06-20 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-09-14 14:14 - 2013-06-20 11:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-09-14 14:14 - 2013-06-05 00:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-09-14 14:14 - 2013-05-21 15:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player 2015-09-14 14:14 - 2013-05-15 16:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2015-09-14 14:14 - 2013-05-15 15:58 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-14 14:14 - 2013-05-15 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-14 14:14 - 2013-05-15 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-09-14 14:11 - 2015-07-10 08:05 - 00004362 _____ C:\WINDOWS\DtcInstall.log 2015-09-14 14:11 - 2013-08-22 10:36 - 00000000 ____D C:\Users\Default.migrated 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\uk-UA 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\th-TH 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\spool 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\sl-SI 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\sk-SK 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\ro-RO 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\IME 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\hr-HR 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\he-IL 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\et-EE 2015-09-14 14:07 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-09-14 14:07 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2015-09-14 14:07 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2015-09-14 14:05 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\bg-BG 2015-09-14 14:05 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\ar-SA 2015-09-14 14:05 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-09-14 14:05 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2015-09-14 14:04 - 2015-07-30 16:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2015-09-14 14:04 - 2015-07-20 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft 2015-09-14 14:04 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-09-14 14:04 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\InputMethod 2015-09-14 14:04 - 2015-07-10 08:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-09-14 14:04 - 2015-02-06 10:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codelobster Software 2015-09-14 14:04 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\ADFS 2015-09-14 14:04 - 2013-07-22 23:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameVicio 2015-09-14 14:04 - 2013-06-20 11:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2015-09-14 14:04 - 2013-05-15 14:27 - 00000000 ____D C:\Users\Todos os Usuários\PRICache 2015-09-14 14:04 - 2013-05-15 14:27 - 00000000 ____D C:\ProgramData\PRICache 2015-09-14 14:03 - 2015-06-16 18:13 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\X25 Informática 2015-09-14 14:03 - 2013-07-22 23:59 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio 2015-09-14 14:00 - 2015-07-10 06:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-09-14 13:51 - 2015-07-10 08:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-09-14 13:46 - 2015-07-10 13:48 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ___RD C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-09-14 13:46 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\Provisioning 2015-09-14 13:46 - 2015-07-10 06:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-09-14 13:46 - 2015-07-10 06:05 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-09-14 13:45 - 2015-07-10 08:06 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-09-14 13:45 - 2015-07-10 08:06 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-09-14 13:36 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-09-14 13:36 - 2015-07-10 08:04 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-09-14 13:22 - 2014-10-26 14:36 - 01722755 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-09-14 12:46 - 2015-07-10 14:35 - 00000000 ___HD C:\$Windows.~BT 2015-09-14 08:25 - 2013-05-19 13:27 - 00760832 ___SH C:\Users\Gustavo\Downloads\Thumbs.db 2015-09-13 11:49 - 2013-08-14 14:17 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-09-09 18:19 - 2015-01-21 23:15 - 00009868 _____ C:\zoek-results.log 2015-09-09 17:56 - 2015-01-21 22:36 - 00000000 ____D C:\zoek_backup 2015-09-09 17:17 - 2015-01-05 18:19 - 00000000 ____D C:\AdwCleaner 2015-09-09 17:15 - 2015-05-27 14:02 - 00000000 ____D C:\Users\Gustavo\AppData\Roaming\uTorrent 2015-09-09 14:19 - 2013-06-20 11:27 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2015-09-09 14:19 - 2013-06-20 11:27 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-09-07 22:30 - 2015-07-21 14:57 - 00000000 ____D C:\Users\Gustavo\AppData\Local\CrashDumps 2015-09-04 06:59 - 2013-06-03 17:34 - 01280512 ___SH C:\Users\Gustavo\Desktop\Thumbs.db 2015-08-29 11:58 - 2014-07-25 18:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-29 11:39 - 2013-11-13 18:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-26 18:37 - 2013-05-17 12:19 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-24 23:11 - 2014-10-29 20:54 - 00000000 ____D C:\Users\Todos os Usuários\Malwarebytes Anti-Exploit 2015-08-24 23:11 - 2014-10-29 20:54 - 00000000 ____D C:\ProgramData\Malwarebytes Anti-Exploit 2015-08-24 20:47 - 2015-08-16 12:11 - 00000000 ____D C:\Users\Gustavo\Downloads\Medaka Box Legendado Mkv 2015-08-21 09:44 - 2015-07-30 16:06 - 00002042 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2015-08-21 09:44 - 2015-07-30 13:38 - 00164414 _____ C:\WINDOWS\DPINST.LOG 2015-08-21 09:44 - 2013-05-26 17:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information ==================== Files in the root of some directories ======= 2013-07-31 14:07 - 2010-01-26 11:11 - 0444283 _____ () C:\Program Files\Common Files\WinPcapNmap.exe 2015-03-26 08:48 - 2015-03-26 08:48 - 2174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2014-07-28 16:15 - 2014-07-28 16:45 - 0099384 _____ () C:\Users\Gustavo\AppData\Roaming\inst.exe 2014-07-28 16:15 - 2014-07-28 16:45 - 0007859 _____ () C:\Users\Gustavo\AppData\Roaming\pcouffin.cat 2014-07-28 16:15 - 2014-07-28 16:45 - 0001167 _____ () C:\Users\Gustavo\AppData\Roaming\pcouffin.inf 2014-07-28 16:15 - 2014-07-28 16:45 - 0082816 _____ (VSO Software) C:\Users\Gustavo\AppData\Roaming\pcouffin.sys 2013-07-29 11:09 - 2014-02-06 07:44 - 0031942 _____ () C:\Users\Gustavo\AppData\Roaming\unins000.dat 2014-07-02 18:02 - 2014-07-02 18:02 - 0017380 _____ () C:\Users\Gustavo\AppData\Roaming\unins001.dat 2014-07-28 16:16 - 2014-07-28 16:43 - 0001041 _____ () C:\Users\Gustavo\AppData\Roaming\vso_ts_preview.xml 2014-10-26 22:01 - 2014-10-26 22:01 - 0001456 _____ () C:\Users\Gustavo\AppData\Local\Adobe Salvar para Web 13.0 Prefs 2013-06-20 11:29 - 2013-06-20 11:35 - 0000479 _____ () C:\ProgramData\hpzinstall.log Files to move or delete: ==================== C:\Windows\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job Some files in TEMP: ==================== C:\Users\Gustavo\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpbp2kmc.dll ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-09-14 13:52 ==================== End of FRST.txt ============================