~ ZHPDiag v2016.1.27.21 Por Nicolas Coolman (2016/01/27) ~ iniciado por Master (Administrator) (2016/01/27 12:42:55) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: Version OK ~ Modo: Scanner ~ Relatório: C:\Users\Master\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Master\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Inicialização do sistema: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Navegadores Internet (3) - 0s GCIE: Google Chrome v47.0.2526.111 MFIE: Mozilla Firefox 43.0.4 (x86 pt-BR) MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informações sobre os produtos Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : KO Windows Activation Technologies : KO ---\\ Softwares de proteçao do sistema (6) - 5s AVG Protection v2016.31.7357 Panda Internet Security 2016 v8.04.00.0000 Panda Cloud Cleaner v1.0.107 Panda Devices Agent v1.06.00 Panda Internet Security 2016 v16.00.02.0000 Windows Defender W7 (Deactivate) ---\\ Softwares de proteçao do sistema (Supérfluo) (1) - 5s McAfee Security Scan Plus v3.11.266.3 ---\\ Monitoramento dos softwares (1) - 5s Adobe Flash Player 15 ActiveX ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4087.648 MB (58% free) System Restore: Activé (Enable) System drive C: has 4 GB () free of 159 GB =>Alerte espace disque inférieur à 20 Go ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: MASTER-PC ~ User Name: Master ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (2) - 1s ~ Drive C: has 4 GB free of 159 GB (System) ~ Drive D: has 269 GB free of 316 GB ---\\ Estado do Centro de Segurança do Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Pesquisa particular de ficheiros genéricos (25) - 1s [MD5.AC4C51EB24AA95B77F705AB159189E24] - 21/11/2010 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2872320] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.75F110F4005DAE430AECA787FDEA9CBB] - 27/09/2013 - (.Microsoft Corporation - Internet Extensions para Win32.) -- C:\Windows\System32\wininet.dll [1392128] =>.Microsoft Corporation [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - 21/11/2010 - (.Microsoft Corporation - Aplicativo de Logon do Windows.) -- C:\Windows\System32\Winlogon.exe [390656] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.1C7857B62DE5994A75B054A9FD4C3825] - 28/12/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [498688] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Driver de porta i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.A5D9106A73DC88564C825D317CAC68AC] - 27/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [158208] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - 05/09/2013 - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) -- C:\Windows\System32\drivers\ntfs.sys [1656680] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Driver de porta paralela.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 21/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Driver de cópia de sombra de volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Serviços NT não Microsoft e não desativados (24) - 1s O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o. - AVG Service Process.) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: Baidu MoboMarket Service (BASSVC) . (.Baidu, Inc. - Baidu MoboMarket Service.) - C:\Program Files (x86)\Baidu Security\MoboMarket\1.3.7.5967\bassvc.exe {3BDB1994B98BBB19AB55A42337FA4F5C} =>.Baidu, Inc. O23 - Service: CLHNServiceForPowerDVD (CLHNServiceForPowerDVD) . (.Copyright 2009 - CLHNServiceForPowerDVD Module.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe =>.CyberLink® O23 - Service: CyberLink PowerDVD 11.0 Monitor Service (CyberLink PowerDVD 11.0 Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe =>.CyberLink® O23 - Service: CyberLink PowerDVD 11.0 Service (CyberLink PowerDVD 11.0 Service) . (.CyberLink - CyberLink Media Server Service.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe =>.CyberLink® O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe =>.LogMeIn, Inc.® O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe =>.LogMeIn, Inc.® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: Panda Protection Service (NanoServiceMain) . (.Panda Security, S.L. - Application Host Service.) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe =>.Panda Security S.L® O23 - Service: Panda Devices Agent (PandaAgent) . (.Panda Security, S.L. - Agent Service.) - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe =>.Panda Security S.L® O23 - Service: panda_url_filtering Service (panda_url_filtering) . (.Visicom Media Inc. - Anti-phishing Domain Advisor (Powered by Pa.) - C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe =>PUP.Optional.StartSearch O23 - Service: Panda Product Service (PSUAService) . (.Panda Security, S.L. - PSUAService.) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe =>.Panda Security S.L® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Tor Win32 Service (tor) . (...) - C:\Program Files (x86)\Tor\tor.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: (vToolbarUpdater3.5.0) . (.AVG Secure Search - ToolbarU Application (Non Official).) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\3.5.0\ToolbarUpdater.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: Power Control [2013/03/15 10:09:49] ({329F96B6-DF1E-4328-BFDA-39EA953C1312}) . (.CyberLink Corp. - .) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl =>.CyberLink® ---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (33) - 19s SS - Demand [11/05/2013] [ 65640] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [08/01/2016] [ 627544] AvgAMPS (AvgAMPS) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgamps.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [08/01/2016] [ 3906568] AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [12/01/2016] [ 1048488] AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [08/01/2016] [ 583936] AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [22/04/2015] [ 208928] Baidu MoboMarket Service (BASSVC) . (.Baidu, Inc..) - C:\Program Files (x86)\Baidu Security\MoboMarket\1.3.7.5967\bassvc.exe {3BDB1994B98BBB19AB55A42337FA4F5C} =>.Baidu, Inc. SR - Auto [23/08/2011] [ 83240] CLHNServiceForPowerDVD (CLHNServiceForPowerDVD) . (.Copyright 2009.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe =>.CyberLink® SS - Demand [12/01/2012] [ 274200] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation® SR - Auto [02/09/2011] [ 75048] CyberLink PowerDVD 11.0 Monitor Service (CyberLink PowerDVD 11.0 Monitor Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe =>.CyberLink® SR - Auto [02/09/2011] [ 292136] CyberLink PowerDVD 11.0 Service (CyberLink PowerDVD 11.0 Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe =>.CyberLink® SR - Demand [31/03/2015] [ 1277680] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe =>.Disc Soft Ltd® SS - Auto [28/08/2015] [ 144200] Serviço do Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/08/2015] [ 144200] Serviço do Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [12/11/2015] [ 2546184] LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe =>.LogMeIn, Inc.® SPaused - Auto [15/12/2014] [ 9216] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios SR - Auto [20/05/2011] [ 13592] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® SR - Auto [08/12/2011] [ 607456] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SR - Auto [16/12/2011] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Auto [12/11/2015] [ 417552] LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe =>.LogMeIn, Inc.® SR - Auto [16/12/2011] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [02/12/2015] [ 289256] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe =>.McAfee, Inc.® SR - Auto [18/10/2015] [ 142072] Panda Protection Service (NanoServiceMain) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe =>.Panda Security S.L® SS - Demand [23/10/2007] [ 382248] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe =>.Nero AG® SR - Auto [28/10/2015] [ 73464] Panda Devices Agent (PandaAgent) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe =>.Panda Security S.L® SR - Auto [02/10/2015] [ 287752] panda_url_filtering Service (panda_url_filtering) . (.Visicom Media Inc..) - C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe =>PUP.Optional.StartSearch SR - Auto [22/10/2015] [ 38136] Panda Product Service (PSUAService) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe =>.Panda Security S.L® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Demand [14/12/2015] [ 836176] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SR - Auto [27/08/2013] [ 3233806] Tor Win32 Service (tor) . (...) - C:\Program Files (x86)\Tor\tor.exe SR - Auto [16/12/2011] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Auto [11/12/2015] [ 1829776] (vToolbarUpdater3.5.0) . (.AVG Secure Search.) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\3.5.0\ToolbarUpdater.exe =>.AVG Technologies CZ, s.r.o.® SS - Auto [02/09/2011] [ 148976] Power Control [2013/03/15 10:09:49] ({329F96B6-DF1E-4328-BFDA-39EA953C1312}) . (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl =>.CyberLink® ---\\ Tarefas planificadas automaticamente (6) - 3s [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. ---\\ Processos lançados (54) - 2s [MD5.272FF1C0F65D39E68618338C0DA47535] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- c:\Program Files (x86)\AVG\Av\avgrsa.exe [1230248] [PID.412] =>.AVG Technologies CZ, s.r.o.® [MD5.97F1AA36759DAD3E97DB5602A7B1EE01] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files (x86)\AVG\Av\avgcsrva.exe [1021864] [PID.512] =>.AVG Technologies CZ, s.r.o.® [MD5.17A682752217DC648D8E5B8CAB5A44C3] - (.Baidu, Inc. - Baidu MoboMarket Service.) -- C:\Program Files (x86)\Baidu Security\MoboMarket\1.3.7.5967\bassvc.exe [208928] [PID.1944] {3BDB1994B98BBB19AB55A42337FA4F5C} =>.Baidu, Inc. [MD5.BE0A47857BAF9819DC7DAB73D758DEDC] - (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) -- C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3906568] [PID.1584] =>.AVG Technologies CZ, s.r.o.® [MD5.05927BED96CF7E1DA308870C6D5C5792] - (.AVG Technologies CZ, s.r.o. - AVG Service Process.) -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1048488] [PID.2112] =>.AVG Technologies CZ, s.r.o.® [MD5.B7C710DF4CE8063801421257F329D567] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [583936] [PID.2216] =>.AVG Technologies CZ, s.r.o.® [MD5.DB26C2BA2AC0AB6BE1CFA59F61CE22DA] - (.Copyright 2009 - CLHNServiceForPowerDVD Module.) -- C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240] [PID.2336] =>.CyberLink® [MD5.E27D60E5A51EEDF9A57F5B69A9A6457D] - (.CyberLink - CyberLink Media Server Monitor Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048] [PID.2404] =>.CyberLink® [MD5.22A7C62798CA12548760123D1E4ED278] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216] [PID.2520] =>.Hi-Rez Studios [MD5.1F590BA022251AF63ED0CD0DAFD49052] - (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12445288] [PID.2816] =>.Realtek Semiconductor Corp® [MD5.5D3342A551557882AF07A4861C11C70E] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [398104] [PID.2832] =>.Intel Corporation® [MD5.2D66067C7A8A0112156BCD1C0BAA7042] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [607456] [PID.2948] =>.Intel® Upgrade Service® [MD5.FAE1F99BB09C4D3A6F914669C37FCB65] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [440600] [PID.2956] =>.Intel Corporation® [MD5.166FC0B36842135BC2D3C32DF70ED0D6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.3028] =>.Intel Corporation® [MD5.7DC16FAEA44C8D96A1C113305A4059A2] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe [245576] [PID.3056] =>.Google Inc® [MD5.73F542663FD48B49A798A56DAA18C136] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe [307016] [PID.2132] =>.Google Inc® [MD5.D6BF6FD055BD719F3D62E51B90857159] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552] [PID.2592] =>.LogMeIn, Inc.® [MD5.7AB06BB56EA5AAB7340CDCED56A0486F] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3013712] [PID.2916] =>.Valve® [MD5.4672AA80B5517E43927AFA46CB813708] - (.Panda Security, S.L. - Application Host Service.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [142072] [PID.3080] =>.Panda Security S.L® [MD5.3056C00B66E648C6A7BF873D42171BCC] - (.Panda Security, S.L. - Agent Service.) -- C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [73464] [PID.3136] =>.Panda Security S.L® [MD5.E0D3755B1B9CE2480C6757196D92725F] - (.Visicom Media Inc. - Anti-phishing Domain Advisor (Powered by Pa.) -- C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [287752] [PID.3176] =>PUP.Optional.StartSearch [MD5.F8F2096FB17C1219C81008671F0FADA5] - (.Panda Security, S.L. - PSUAService.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136] [PID.3264] =>.Panda Security S.L® [MD5.7D617E4D07D0F48D5B8A01FE676DDC67] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [50605184] [PID.3488] =>.Skype Software Sarl® [MD5.506B0B498216371D64ABB69145B70E4C] - (...) -- C:\Program Files (x86)\Tor\tor.exe [3233806] [PID.3572] [MD5.6BFD538788E468AE314173C6E7C0E7AC] - (.AVG Secure Search - ToolbarU Application (Non Official).) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\3.5.0\ToolbarUpdater.exe [1829776] [PID.3704] =>.AVG Technologies CZ, s.r.o.® [MD5.A7BFE47052F8A76AD739C31B8CF006E3] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe [330456] [PID.3768] =>.McAfee, Inc.® [MD5.357CABBF155AFD1D3926E62539D2A3A7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480] [PID.3796] =>.Microsoft Corporation® [MD5.01C2C6D12FF6638E3BD77E58CDD7D2FE] - (.Copyright (C) 2013 - loggings Application.) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\3.5.0\loggingserver.exe [168336] [PID.3868] =>.AVG Technologies CZ, s.r.o.® [MD5.70FB1437E83E6EFFFE4D8A3871CE3FD8] - (.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\Av\avgnsa.exe [1696680] [PID.1996] =>.AVG Technologies CZ, s.r.o.® [MD5.B746104CE9595214734E2E3CE3A3D68D] - (.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\Av\avgemca.exe [917416] [PID.1652] =>.AVG Technologies CZ, s.r.o.® [MD5.D790CAFEFF0291D0AF8C76F5A1EE2E4E] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223488] [PID.4560] =>.Microsoft Corporation® [MD5.208E7597A1E876BB50E7F07FB00D0F8F] - (.www.FreeTrafficBox.com - TrafficBox.) -- C:\Program Files (x86)\shreader\update.exe [831488] [PID.4608] [MD5.BCAEE3BE2AA87180E00279BC7689A9F2] - (.Copyright (C) 2012 - VProtect Application (Non Official).) -- C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2569104] [PID.4616] =>.AVG Technologies CZ, s.r.o.® [MD5.C0EF69A59C13D9204D1D70434AA3D00C] - (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2546184] [PID.4956] =>.LogMeIn, Inc.® [MD5.58C916D9285E96938EFF9F8471885BD9] - (.Baidu, Inc. - Baidu MoboMarket Tray.) -- C:\Program Files (x86)\Baidu Security\MoboMarket\1.3.7.5967\bastray.exe [2397216] [PID.5080] {3BDB1994B98BBB19AB55A42337FA4F5C} =>.Baidu, Inc. [MD5.0C9D4FDAEBD8A5A977F06EB5E70D8606] - (.Panda Security, S.L. - AV Console.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [54520] [PID.5276] =>.Panda Security S.L® [MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.5284] =>.Oracle America, Inc.® [MD5.258787FCC959E3B04EF30F9876D31B6C] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1140648] [PID.5320] =>.AVG Technologies CZ, s.r.o.® [MD5.0922451B8DD96D013945E4A9E4AA6607] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1277680] [PID.4452] =>.Disc Soft Ltd® [MD5.5C49B7196D670B3764CAD34B04744CF5] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1941072] [PID.6392] =>.Valve® [MD5.A831D5A4D2F5138E332AC1B98315EBB1] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [836176] [PID.6808] =>.Valve® [MD5.D41861E56E7552C13674D7F147A02464] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.2880] =>.Intel Corporation® [MD5.C56E64BA70DC822B84D100A6F8D690D3] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.5308] =>.Intel Corporation® [MD5.0F9E1BC7E2BEA1A4108EC9736CF0C2D9] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.6112] =>.Intel Corporation® [MD5.92327AB545BC7A5D9200EA112DB0E03E] - (.Copyright (C) 2013 - TFBHelper.) -- C:\Program Files (x86)\shreader\TFBHelper.exe [466944] [PID.6704] [MD5.857943A77B06AC056771A3B12CD318DD] - (.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136] [PID.3740] =>.CyberLink® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.3020] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.7724] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.7796] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.7052] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.7252] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.3836] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.6312] =>.Google Inc® [MD5.AD0F16DEF98337C3F11E69DCFDD9928E] - (.Nicolas Coolman - ZHPDiag.) -- D:\Meus Documentos\Downloads\ZHPDiag3.exe [2097152] [PID.1716] =>.Nicolas Coolman ---\\ Google Chrome, Arranque,Pesquisa,Extensões (9) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [fdhbkaahephniejapepaiggngjnedpci] Panda Security on MyStart G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (15) - 3s P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\extensions\avg@wtu3.xpi P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}.xpi P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\ask-web-search.xml P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\avg-secure-search.xml P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\clikseguro.xml P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\WebSearch.xml =>PUP.Optional.SimpleSearches P2 - EXT FILE: (...) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\yahoo_ff.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\McSiteAdvisor.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\pandasecuritytb.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wtu-secure-search.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.Mindspark - Allin1Convert.) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\extensions\_8hMembers_@download.allin1convert.com =>.Superfluous.MindSpark P2 - EXT: (. - Site Counselor.) -- C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\extensions\{e0352044-1439-48ba-99b6-b05ed1a4d2de} P2 - FPN: [HKLM] [@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] - (...) -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\3.5.0\\npsitesafety.dll =>Toolbar.AVGSearch P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll =>.Pando Networks Inc. ---\\ Internet Explorer, Arranque, Pesquisa, Phishing (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://br.search.yahoo.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.b1.org/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/ =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Gestão do Proxy (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Redireção do ficheiro Hosts (2) - 0s 0 ~ Le fichier hôte est sain (The hosts file is clean) (26) ---\\ Browser Helper Objects do navegador (4) - 0s O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® O2 - BHO: Panda Security Toolbar [64Bits] - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} . (.© 2015 Panda Security and Visicom Media Inc. - Panda Security Toolbar Link Library.) -- C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll =>PUP.Optional.StartSearch O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Barras do Internet Explorer (1) - 0s O3 - Toolbar: Panda Security Toolbar - [HKLM]{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} . (.© 2015 Panda Security and Visicom Media Inc. - Panda Security Toolbar Link Library.) -- C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll =>PUP.Optional.StartSearch ---\\ Aplicações iniciadas por registo & pastas (27) - 1s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.Disc Soft Ltd® O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKCU\..\Run: [Clownfish] (Orphean) O4 - HKCU\..\Run: [MK LOL] . (.MKGame - .) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe =>.Beijing Stone Age Network Technology Limited Company® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - None.) -- C:\Program Files (x86)\AVG\Av\avuirunnerx.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKLM\..\Wow6432Node\Run: [LifeCam] . (.Microsoft Corporation - LifeExp.exe.) -- C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [MiniPdfHelper] . (.www.FreeTrafficBox.com - TrafficBox.) -- C:\Program Files (x86)\shreader\update.exe O4 - HKLM\..\Wow6432Node\Run: [vProt] . (.Copyright (C) 2012 - VProtect Application (Non Official).) -- C:\Program Files (x86)\AVG Web TuneUp\vprot.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [LogMeIn Hamachi Ui] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe =>.LogMeIn, Inc.® O4 - HKLM\..\Wow6432Node\Run: [PSUAMain] . (.Panda Security, S.L. - AV Console.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe =>.Panda Security S.L® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Wow6432Node\Run: [AvgUi] . (.AVG Technologies CZ, s.r.o. - AVG Ui (Re)Starter.) -- C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3638545241-1075731139-1636315270-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.Disc Soft Ltd® O4 - HKUS\S-1-5-21-3638545241-1075731139-1636315270-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKUS\S-1-5-21-3638545241-1075731139-1636315270-1000\..\Run: [Clownfish] (Orphean) O4 - HKUS\S-1-5-21-3638545241-1075731139-1636315270-1000\..\Run: [MK LOL] . (.MKGame - .) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe =>.Beijing Stone Age Network Technology Limited Company® O4 - HKUS\S-1-5-21-3638545241-1075731139-1636315270-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® ---\\ Atalhos globais Startup (31) - 5s O4 - GS\Desktop [Administrador]: Balabolka.lnk . (.Ilya Morozov - Balabolka.) C:\Program Files (x86)\Balabolka\balabolka.exe =>.Ilya Morozov O4 - GS\Desktop [Administrador]: Curse.lnk . (.Curse, Inc - Curse.) C:\Users\Master\AppData\Roaming\Curse Client\Bin\Curse.exe {7BEBB60BBC8785FB88DDF0E552D8FBD3} O4 - GS\Desktop [Administrador]: minecraft.lnk . (.Bogdan Sharkov - Clownfish for Skype.) C:\Program Files (x86)\Clownfish\Clownfish.exe =>.Bogdan Sharkov® O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Master\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrador]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrador]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrador]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\Desktop [Convidado]: Balabolka.lnk . (.Ilya Morozov - Balabolka.) C:\Program Files (x86)\Balabolka\balabolka.exe =>.Ilya Morozov O4 - GS\Desktop [Convidado]: Curse.lnk . (.Curse, Inc - Curse.) C:\Users\Master\AppData\Roaming\Curse Client\Bin\Curse.exe {7BEBB60BBC8785FB88DDF0E552D8FBD3} O4 - GS\Desktop [Convidado]: minecraft.lnk . (.Bogdan Sharkov - Clownfish for Skype.) C:\Program Files (x86)\Clownfish\Clownfish.exe =>.Bogdan Sharkov® O4 - GS\Desktop [Convidado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Master\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Convidado]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Convidado]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Convidado]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\Desktop [Master]: Balabolka.lnk . (.Ilya Morozov - Balabolka.) C:\Program Files (x86)\Balabolka\balabolka.exe =>.Ilya Morozov O4 - GS\Desktop [Master]: Curse.lnk . (.Curse, Inc - Curse.) C:\Users\Master\AppData\Roaming\Curse Client\Bin\Curse.exe {7BEBB60BBC8785FB88DDF0E552D8FBD3} O4 - GS\Desktop [Master]: minecraft.lnk . (.Bogdan Sharkov - Clownfish for Skype.) C:\Program Files (x86)\Clownfish\Clownfish.exe =>.Bogdan Sharkov® O4 - GS\Desktop [Master]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Master\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Master]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Master]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Master]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: AVG.lnk . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe =>.AVG Technologies CZ, s.r.o.® O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.Disc Soft Ltd® O4 - GS\CommonDesktop [Public]: League of Legends.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.exe =>.Riot Games, Inc.® O4 - GS\CommonDesktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) C:\Program Files\McAfee Security Scan\3.11.266\McUICnt.exe =>.McAfee, Inc.® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Panda Cloud Cleaner.lnk . (...) C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\PCloudCleaner.exe =>.Panda Security S.L® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe =>.McAfee, Inc.® O4 - GS\Programs [Public]: Curse.lnk . (.Curse, Inc - Curse.) C:\Users\Master\AppData\Roaming\Curse Client\Bin\Curse.exe {7BEBB60BBC8785FB88DDF0E552D8FBD3} O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Alteração Dominio/Clientes DNS (1) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4EE6072B-B651-4E17-BC9D-946000602F6B}: DhcpNameServer = 189.7.16.44 189.7.16.15 ---\\ Protocolo adicional (25) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: viprotocol [64Bits] - {B658800C-F66E-4EF3-AB85-6C0C227862A9} . (.AVG Secure Search - ViProtocol (Non Official).) -- C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\3.5.0\ViProtocol.dll =>.AVG Technologies CZ, s.r.o.® O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software instalados (89) - 15s O42 - Logiciel: Adobe Flash Player 15 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- {F9880989-072C-4520-B525-041F100E0B32} =>.AVG Technologies O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- AvgZen =>.AVG Technologies CZ, s.r.o.® O42 - Logiciel: AVG 2016 - (.AVG Technologies.) [HKLM][64Bits] -- {C3506E0A-35BE-4AAF-BA41-62E9D9FD3B92} =>.AVG Technologies O42 - Logiciel: AVG Protection - (.AVG Technologies.) [HKLM][64Bits] -- AVG =>.AVG Technologies CZ, s.r.o.® O42 - Logiciel: AVG Web TuneUp - (.AVG Technologies.) [HKLM][64Bits] -- AVG Web TuneUp =>.AVG Technologies CZ, s.r.o.® O42 - Logiciel: AVG Zen - (.AVG Technologies.) [HKLM][64Bits] -- {5ED53AC5-2BEA-4B9D-8AA2-41AF9565F75A} =>.AVG Technologies O42 - Logiciel: Balabolka - (.Ilya Morozov.) [HKLM][64Bits] -- Balabolka =>.Ilya Morozov O42 - Logiciel: Browosse2save - (.BrowseToSave.) [HKLM][64Bits] -- {C3F3165C-74D3-6FDB-3274-14FDA8698CFA} =>PUP.Optional.Browse2Save O42 - Logiciel: Creativerse - (.Playful Corporation.) [HKLM][64Bits] -- Steam App 280790 =>.Valve® O42 - Logiciel: Curse - (.Curse.) [HKLM][64Bits] -- {A20BFF62-AE3C-42BD-9C52-841CAB96BC49} =>.Curse O42 - Logiciel: CyberLink PowerDVD 11 - (.CyberLink Corp..) [HKLM][64Bits] -- {F232C87C-6E92-4775-8210-DFE90B7777D9} =>.CyberLink® O42 - Logiciel: CyberLink PowerDVD 11 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9} =>.CyberLink® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd® O42 - Logiciel: Dying Light Demo - (.Techland.) [HKLM][64Bits] -- Steam App 381570 =>.Valve® O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {1F610B48-81E7-4A33-AFC9-1D7602C80732} =>.AVG Technologies O42 - Logiciel: GameSpy Arcade - (...) [HKLM][64Bits] -- GameSpy Arcade O42 - Logiciel: Garry's Mod - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 4000 =>.Valve® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} =>.Hi-Rez Studios, Inc.® O42 - Logiciel: HP Deskjet 2050 J510 series Ajuda - (.Hewlett Packard.) [HKLM][64Bits] -- {7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F} =>.Hewlett Packard O42 - Logiciel: HP Deskjet 2050 J510 series Estudo de aprimoramento de produtos - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {8D71EFB0-B1EF-4478-92D2-A65DB23AC460} =>.Hewlett-Packard Co. O42 - Logiciel: HP Deskjet 2050 J510 series Software básico do dispositivo - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {2DCBB45E-AA03-4089-87E7-EC17E606D738} =>.Hewlett-Packard Co. O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {6199B534-A1B6-46ED-873B-97B0ECF8F81E} =>.Intel Corporation O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {400C31E4-796F-4E86-8FDC-C3C4FACC6847} =>.Microsoft Corporation O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {BCCDE721-9F4D-4396-9592-92DD865D965E} =>.Riot Games O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 =>.Riot Games O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {D31AA60E-A9E5-47CF-AE3C-C980C5A1FF51} =>.LogMeIn, Inc. O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi =>.LogMeIn, Inc. O42 - Logiciel: Loquendo TTS 7 Engine Full Distribution - (.Loquendo.) [HKLM][64Bits] -- {16096EE7-3343-4835-B9AF-C63492BD89B3} O42 - Logiciel: Loquendo TTS 7 Felipe Multimedia High Quality - (.Loquendo.) [HKLM][64Bits] -- {A1614B8B-E966-4512-BEA9-13A4779983FF} O42 - Logiciel: Loquendo TTS 7 Fernanda Multimedia High Quality - (.Loquendo.) [HKLM][64Bits] -- {975D7450-C0A7-4AD7-8903-3957B0F92B42} O42 - Logiciel: Loquendo TTS 7 Portuguese - (.Loquendo.) [HKLM][64Bits] -- {C278A74A-707D-49B5-B847-651B4B80EDED} O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan =>.McAfee, Inc.® O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C5A08BF-BB99-4998-81BD-F6CC32483B34} =>.Microsoft Corporation O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM][64Bits] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800} =>.Microsoft Corporation O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM][64Bits] -- {5CE7E3F5-9803-4F32-AA89-2D8848A80109} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mitos.is: The Game - (.Freakinware Studios.) [HKLM][64Bits] -- Steam App 389570 =>.Valve® O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL O42 - Logiciel: Mozilla Firefox 43.0.4 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 43.0.4 (x86 pt-BR) =>.Mozilla Corporation® O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: MyPC Backup - (.MyPC Backup.) [HKLM][64Bits] -- MyPC Backup =>PUP.Optional.MyPCBackup O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.NVIDIA Corporation O42 - Logiciel: Panda Cloud Cleaner - (.Panda Security.) [HKLM][64Bits] -- {92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1 =>.Panda Security O42 - Logiciel: Panda Devices Agent - (.Panda Security.) [HKLM][64Bits] -- {DDE3DECA-9139-4A39-9276-143ECA1DB75E} =>.Panda Security O42 - Logiciel: Panda Devices Agent - (.Panda Security.) [HKLM][64Bits] -- Panda Devices Agent =>.Panda Security O42 - Logiciel: Panda Internet Security 2016 - (.Panda Security.) [HKLM][64Bits] -- {293AA48A-DFC2-4F7D-9ED7-1A0F25CB5368} =>.Panda Security O42 - Logiciel: Panda Internet Security 2016 - (.Panda Security.) [HKLM][64Bits] -- Panda Universal Agent Endpoint =>.Panda Security S.L® O42 - Logiciel: Panda Security Toolbar - (.Panda Security and Visicom Media Inc..) [HKLM][64Bits] -- pandasecuritytb =>PUP.Optional.StartSearch O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: ROBLOX Player - (.ROBLOX Corporation.) [HKLM][64Bits] -- {373B1718-8CC5-4567-8EE2-9033AD08A680} =>.ROBLOX Corporation® O42 - Logiciel: ROBLOX Player for Master - (.ROBLOX Corporation.) [HKCU][64Bits] -- {373B1718-8CC5-4567-8EE2-9033AD08A680} {1B8159FAF8228B39ABC00E31BBAD4309} =>.ROBLOX Corporation O42 - Logiciel: ROBLOX Studio for Master - (.ROBLOX Corporation.) [HKCU][64Bits] -- {2922D6F1-2865-4EFA-97A9-94EEAB3AFA14} =>.ROBLOX Corporation® O42 - Logiciel: Search Assistant SimpleSpeedy 1.74 - (...) [HKLM][64Bits] -- SP_ccfde35c O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} =>.Valve Corporation O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440 =>.Valve® O42 - Logiciel: Transformice - (.Atelier 801.) [HKLM][64Bits] -- Steam App 335240 =>.Valve® O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS O42 - Logiciel: Unturned - (.Nelson Sexton.) [HKLM][64Bits] -- Steam App 304930 =>.Valve® O42 - Logiciel: VCRedistSetup - (.Nero AG.) [HKLM][64Bits] -- {3921A67A-5AB1-4E48-9444-C71814CF3027} =>.Nero AG O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o. O42 - Logiciel: Warframe - (.Digital Extremes.) [HKLM][64Bits] -- Steam App 230410 =>.Valve® O42 - Logiciel: WEBZEN Browser Extension - (.WEBZEN.) [HKLM][64Bits] -- {95723791-2C44-454B-9220-C65D47D70E9C} =>.Webzen O42 - Logiciel: Who's You Daddy Alpha version V0.2.0 - (.Joe Williams.) [HKLM][64Bits] -- {94FDA70B-B651-40E2-8703-308F448A6A0D}_is1 O42 - Logiciel: WinRAR 5.00 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (183) - 15s HKLM\SOFTWARE\Wow6432Node\360Safe HKLM\SOFTWARE\Wow6432Node\Ada2 HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdobeFlashPlayerUpdate HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Ahead HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Audible HKLM\SOFTWARE\Wow6432Node\Avg HKLM\SOFTWARE\Wow6432Node\AVG Nation toolbar =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Avg Secure Update HKLM\SOFTWARE\Wow6432Node\AVG Security Toolbar =>Toolbar.AVGSearch HKLM\SOFTWARE\Wow6432Node\AVG Tuneup HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\babylontoolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\baidu HKLM\SOFTWARE\Wow6432Node\Baidu Security HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos HKLM\SOFTWARE\Wow6432Node\bethesda softworks HKLM\SOFTWARE\Wow6432Node\BlueStacks HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr HKLM\SOFTWARE\Wow6432Node\DivXNetworks HKLM\SOFTWARE\Wow6432Node\ej-technologies HKLM\SOFTWARE\Wow6432Node\Enterbrain HKLM\SOFTWARE\Wow6432Node\Fraps HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios HKLM\SOFTWARE\Wow6432Node\HiRez Studios HKLM\SOFTWARE\Wow6432Node\hosts HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\IN Wallpaper ProjectTool HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Kingsoft HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LiveUpdate360 HKLM\SOFTWARE\Wow6432Node\LogMeIn Hamachi HKLM\SOFTWARE\Wow6432Node\Loquendo HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OfferBox =>PUP.Optional.OfferBox HKLM\SOFTWARE\Wow6432Node\Panda Security HKLM\SOFTWARE\Wow6432Node\Panda Software HKLM\SOFTWARE\Wow6432Node\pandasecuritytb HKLM\SOFTWARE\Wow6432Node\Pando Networks HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Riot Games HKLM\SOFTWARE\Wow6432Node\ROBLOX Corporation HKLM\SOFTWARE\Wow6432Node\RobloxReg HKLM\SOFTWARE\Wow6432Node\RocketLife HKLM\SOFTWARE\Wow6432Node\S2 Games HKLM\SOFTWARE\Wow6432Node\SiteSee =>PUP.Optional.SiteSee HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix HKLM\SOFTWARE\Wow6432Node\StudioQTRobloxReg HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\Visan HKLM\SOFTWARE\Wow6432Node\Voice HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WEBZEN HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\Z8Games HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\5a6d78abc3eef44 =>PUP.Optional.Heuristic HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\AhnLab HKCU\SOFTWARE\AI_RecycleBin HKCU\SOFTWARE\AMPLITUDE Studios HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Avg HKCU\SOFTWARE\AVG Nation toolbar =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\Avg Secure Update HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Baixaki HKCU\SOFTWARE\Balabolka HKCU\SOFTWARE\Bugsplat HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Clownfish HKCU\SOFTWARE\Curse HKCU\SOFTWARE\Cyberlink HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr HKCU\SOFTWARE\DataMngr_Toolbar =>PUP.Optional.Datamngr HKCU\SOFTWARE\DefaultCompany HKCU\SOFTWARE\delta LTD =>Toolbar.DeltaSearch HKCU\SOFTWARE\Digital Extremes HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DownLite HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Enterbrain HKCU\SOFTWARE\Epic Games HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\Facepunch Studios HKCU\SOFTWARE\FileScout =>PUP.Optional.FileScout HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo HKCU\SOFTWARE\GameSpy HKCU\SOFTWARE\GoldenGate HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JoeWillgames HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\Kingsoft HKCU\SOFTWARE\Lake HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\MountAndBladeWarbandKeys HKCU\SOFTWARE\mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Notsega HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox HKCU\SOFTWARE\Pando Networks HKCU\SOFTWARE\PC App Store HKCU\SOFTWARE\PCTuneUp HKCU\SOFTWARE\PlayfulCorp HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Roblox HKCU\SOFTWARE\ROBLOX Corporation HKCU\SOFTWARE\RobloxReg HKCU\SOFTWARE\S2 Games HKCU\SOFTWARE\SAMP HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Smartly Dressed Games HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic HKCU\SOFTWARE\StudioQTRobloxReg HKCU\SOFTWARE\Systweak =>.Superfluous.Systweak HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Visan HKCU\SOFTWARE\Webzen HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\ZeoWorks HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Conteúdo das pastas Programs (315) - 53s O43 - CFD: 29/08/2015 - [0] D -- C:\Program Files (x86)\Activision O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 04/09/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 17/12/2015 - [] D -- C:\Program Files (x86)\AVG =>.AVG Technologies CZ, s.r.o.® O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\AVG Web TuneUp =>.AVG Technologies CZ, s.r.o.® =>Toolbar.AVGSafeGuard O43 - CFD: 31/10/2014 - [] D -- C:\Program Files (x86)\Baidu Security O43 - CFD: 26/09/2014 - [] D -- C:\Program Files (x86)\Baidu-Security-2014-4.4.4.83884 O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\Balabolka O43 - CFD: 24/02/2015 - [] D -- C:\Program Files (x86)\Clownfish =>.Bogdan Sharkov® O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 23/10/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corp.® O43 - CFD: 28/04/2015 - [0] D -- C:\Program Files (x86)\Fiddler2 O43 - CFD: 22/01/2015 - [] D -- C:\Program Files (x86)\GameSpy Arcade O43 - CFD: 03/06/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\Hi-Rez Studios =>.Khrona LLC® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard Company® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries® O43 - CFD: 01/01/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 28/09/2013 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 21/12/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\LogMeIn Hamachi =>.LogMeIn, Inc.® O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\Loquendo O43 - CFD: 29/08/2013 - [0] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft LifeCam =>.Microsoft Corporation® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 05/09/2013 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 14/12/2015 - [] D -- C:\Program Files (x86)\MKJogo =>.Beijing Stone Age Network Technology Limited Company® O43 - CFD: 08/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 22/01/2015 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 12/07/2015 - [] D -- C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Nero =>.Nero AG® O43 - CFD: 23/10/2014 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information O43 - CFD: 04/09/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\Panda Security =>.Panda Security S.L® O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\pandasecuritytb =>PUP.Optional.StartSearch O43 - CFD: 25/10/2014 - [] D -- C:\Program Files (x86)\Pando Networks O43 - CFD: 11/11/2014 - [0] D -- C:\Program Files (x86)\PC App Store O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\PSafe {07F79AA9335B794D70779F719061AFF2} O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\RegClean Pro {59F8D19475E75F9338DF32A94183402F} =>PUP.Optional.RegistryPowerCleaner O43 - CFD: 26/11/2013 - [] D -- C:\Program Files (x86)\Roblox =>.ROBLOX Corporation® O43 - CFD: 05/10/2013 - [] D -- C:\Program Files (x86)\shreader O43 - CFD: 12/05/2013 - [] D -- C:\Program Files (x86)\SimpleSpeedy =>PUP.Optional.Multiplug O43 - CFD: 26/12/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 30/04/2015 - [0] D -- C:\Program Files (x86)\SmartComp Safe Network O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve® O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\TeamViewer O43 - CFD: 29/08/2013 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\The Elder Scrolls V Skyrim O43 - CFD: 13/08/2014 - [] D -- C:\Program Files (x86)\Tibia O43 - CFD: 27/08/2013 - [] D -- C:\Program Files (x86)\Tor O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Tribo Gamer O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\TSEV Skyrim LE O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 05/10/2013 - [0] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 17/10/2013 - [] D -- C:\Program Files (x86)\WEBZEN O43 - CFD: 16/12/2015 - [] D -- C:\Program Files (x86)\Who's You Daddy Alpha O43 - CFD: 05/09/2013 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 12/07/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 01/10/2013 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 19/02/2015 - [] D -- C:\Program Files (x86)\Z8Games O43 - CFD: 07/05/2013 - [] D -- C:\Program Files (x86)\ZeoWorks O43 - CFD: 08/02/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen O43 - CFD: 07/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browosse2save =>PUP.Optional.Browse2Save O43 - CFD: 15/03/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 11 O43 - CFD: 25/10/2014 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14 O43 - CFD: 27/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 24/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 22/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade O43 - CFD: 29/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 15/03/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Level Up O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 05/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2016 O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security O43 - CFD: 29/08/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSafe O43 - CFD: 24/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =>PUP.Optional.RegistryPowerCleaner O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roblox O43 - CFD: 18/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 20/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 28/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 19/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Strife O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 23/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tribo Gamer O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Who's You Daddy Alpha O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\.mono O43 - CFD: 08/08/2013 - [] D -- C:\ProgramData\360safe O43 - CFD: 07/04/2013 - [0] D -- C:\ProgramData\4shared Desktop O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Adobe O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\APN =>Toolbar.Ask O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 12/11/2014 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\AVG O43 - CFD: 29/08/2014 - [] D -- C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 29/08/2014 - [] D -- C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch O43 - CFD: 29/08/2014 - [] D -- C:\ProgramData\AVG Web TuneUp =>Toolbar.AVGSafeGuard O43 - CFD: 17/12/2015 - [] D -- C:\ProgramData\AVG2013 O43 - CFD: 15/03/2013 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 31/10/2014 - [] D -- C:\ProgramData\Baidu O43 - CFD: 10/11/2014 - [] D -- C:\ProgramData\Baidu Security O43 - CFD: 15/06/2015 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 03/10/2014 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 12/07/2015 - [] D -- C:\ProgramData\Browosse2save =>PUP.Optional.Browse2Save O43 - CFD: 15/03/2013 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 25/10/2014 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 15/03/2013 - [0] SHD -- C:\ProgramData\Dados de aplicativos O43 - CFD: 27/04/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 15/03/2013 - [0] SHD -- C:\ProgramData\Documentos O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 15/03/2013 - [0] SHD -- C:\ProgramData\Favoritos O43 - CFD: 04/10/2013 - [] D -- C:\ProgramData\Free Download Manager O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Hi-Rez Studios O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\HP O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\HP Photo Creations O43 - CFD: 28/08/2013 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\install_clap O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Intel O43 - CFD: 04/10/2013 - [] D -- C:\ProgramData\Kingsoft O43 - CFD: 08/11/2013 - [] D -- C:\ProgramData\LogMeIn O43 - CFD: 02/12/2013 - [] D -- C:\ProgramData\McAfee O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 15/03/2013 - [0] SHD -- C:\ProgramData\Menu Iniciar O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\MFAData O43 - CFD: 17/04/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 08/08/2013 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 15/03/2013 - [0] SHD -- C:\ProgramData\Modelos O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Nero O43 - CFD: 03/12/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 22/12/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Panda Security O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\panda_url_filtering O43 - CFD: 23/10/2014 - [] D -- C:\ProgramData\PDVD O43 - CFD: 29/08/2013 - [] D -- C:\ProgramData\PSafe O43 - CFD: 13/08/2014 - [] D -- C:\ProgramData\Riot Games O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\Roblox O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 07/04/2013 - [] D -- C:\ProgramData\SoftSafe O43 - CFD: 12/06/2013 - [] D -- C:\ProgramData\StarApp =>PUP.Optional.StarApp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 28/08/2013 - [] D -- C:\ProgramData\SummerSoft O43 - CFD: 25/10/2014 - [] D -- C:\ProgramData\SUPPORTDIR O43 - CFD: 12/11/2014 - [0] D -- C:\ProgramData\Systweak =>.Superfluous.Systweak O43 - CFD: 01/10/2013 - [] D -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 03/07/2014 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Visan O43 - CFD: 17/10/2013 - [] D -- C:\ProgramData\WEBZEN O43 - CFD: 07/11/2013 - [0] SHD -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} O43 - CFD: 04/07/2014 - [0] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 22/11/2015 - [] D -- C:\Program Files (x86)\Common Files\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 21/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 16/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 09/08/2013 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 15/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 01/11/2013 - [] D -- C:\Users\Master\AppData\Roaming\,minecraft O43 - CFD: 21/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\.minecraft O43 - CFD: 04/01/2016 - [] D -- C:\Users\Master\AppData\Roaming\.mono O43 - CFD: 29/08/2015 - [] D -- C:\Users\Master\AppData\Roaming\.technic O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Adobe O43 - CFD: 16/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\AVG O43 - CFD: 07/04/2013 - [] D -- C:\Users\Master\AppData\Roaming\B1Toolbar =>PUP.Optional.SearchB1org O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 01/12/2013 - [] D -- C:\Users\Master\AppData\Roaming\Baidu O43 - CFD: 10/11/2014 - [] D -- C:\Users\Master\AppData\Roaming\Baidu Security O43 - CFD: 18/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Balabolka O43 - CFD: 17/10/2015 - [] D -- C:\Users\Master\AppData\Roaming\com.freakinware.mitosis O43 - CFD: 21/09/2015 - [] D -- C:\Users\Master\AppData\Roaming\Curse O43 - CFD: 09/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Curse Client O43 - CFD: 22/07/2013 - [] D -- C:\Users\Master\AppData\Roaming\CyberLink O43 - CFD: 27/04/2015 - [] D -- C:\Users\Master\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\DealPly =>PUP.Optional.Dealply O43 - CFD: 22/12/2014 - [] D -- C:\Users\Master\AppData\Roaming\DownLite O43 - CFD: 15/10/2014 - [] D -- C:\Users\Master\AppData\Roaming\File Scout =>PUP.Optional.FileScout O43 - CFD: 26/09/2014 - [] D -- C:\Users\Master\AppData\Roaming\Gameo =>PUP.Optional.Gameo O43 - CFD: 26/09/2014 - [] HD -- C:\Users\Master\AppData\Roaming\GoldenGate O43 - CFD: 04/07/2014 - [0] D -- C:\Users\Master\AppData\Roaming\HpUpdate O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Identities O43 - CFD: 07/11/2013 - [] D -- C:\Users\Master\AppData\Roaming\InstallShield O43 - CFD: 05/11/2013 - [] D -- C:\Users\Master\AppData\Roaming\Intel Corporation O43 - CFD: 29/06/2015 - [] D -- C:\Users\Master\AppData\Roaming\java O43 - CFD: 05/12/2013 - [] D -- C:\Users\Master\AppData\Roaming\Kingsoft O43 - CFD: 01/10/2014 - [] D -- C:\Users\Master\AppData\Roaming\libraries O43 - CFD: 30/09/2015 - [] D -- C:\Users\Master\AppData\Roaming\LolClient O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Macromedia O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Master\AppData\Roaming\Media Center Programs O43 - CFD: 27/09/2014 - [] SD -- C:\Users\Master\AppData\Roaming\Microsoft O43 - CFD: 10/02/2015 - [] D -- C:\Users\Master\AppData\Roaming\Minecraft 1.6.4 O43 - CFD: 25/10/2013 - [] D -- C:\Users\Master\AppData\Roaming\Minecraft 1.7.2 O43 - CFD: 18/06/2015 - [] D -- C:\Users\Master\AppData\Roaming\MoboMarket O43 - CFD: 18/06/2015 - [0] D -- C:\Users\Master\AppData\Roaming\MoboMarketUsbDriver O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Mozilla O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\Nero O43 - CFD: 04/10/2013 - [] D -- C:\Users\Master\AppData\Roaming\Obvious Idea O43 - CFD: 04/10/2013 - [] D -- C:\Users\Master\AppData\Roaming\OfferBox =>PUP.Optional.OfferBox O43 - CFD: 02/07/2014 - [] D -- C:\Users\Master\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy O43 - CFD: 11/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Panda Security O43 - CFD: 17/11/2014 - [] D -- C:\Users\Master\AppData\Roaming\PC App Store O43 - CFD: 17/07/2013 - [] D -- C:\Users\Master\AppData\Roaming\PSafe O43 - CFD: 21/12/2013 - [] D -- C:\Users\Master\AppData\Roaming\Riot Games O43 - CFD: 11/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Search The Web O43 - CFD: 27/01/2016 - [] D -- C:\Users\Master\AppData\Roaming\Skype O43 - CFD: 16/11/2015 - [] D -- C:\Users\Master\AppData\Roaming\steam.transformice.com O43 - CFD: 29/08/2015 - [] D -- C:\Users\Master\AppData\Roaming\Sun O43 - CFD: 12/11/2014 - [] D -- C:\Users\Master\AppData\Roaming\systweak =>.Superfluous.Systweak O43 - CFD: 02/07/2014 - [] D -- C:\Users\Master\AppData\Roaming\TuneUp Software O43 - CFD: 04/07/2013 - [] D -- C:\Users\Master\AppData\Roaming\Unity O43 - CFD: 04/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\uTorrent O43 - CFD: 01/10/2014 - [] D -- C:\Users\Master\AppData\Roaming\versions O43 - CFD: 26/09/2014 - [0] D -- C:\Users\Master\AppData\Roaming\WebExtend O43 - CFD: 01/04/2013 - [0] D -- C:\Users\Master\AppData\Roaming\Windows Live Writer O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Roaming\WinRAR O43 - CFD: 27/01/2016 - [] D -- C:\Users\Master\AppData\Roaming\ZHP O43 - CFD: 11/07/2015 - [] D -- C:\Users\Master\AppData\Local\Adobe O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\Ahead O43 - CFD: 22/01/2016 - [] D -- C:\Users\Master\AppData\Local\Avg O43 - CFD: 29/08/2014 - [] D -- C:\Users\Master\AppData\Local\AVG Web TuneUp =>Toolbar.AVGSafeGuard O43 - CFD: 07/11/2013 - [] D -- C:\Users\Master\AppData\Local\Avg2014 O43 - CFD: 21/10/2014 - [] D -- C:\Users\Master\AppData\Local\Avg2015 O43 - CFD: 07/04/2013 - [] D -- C:\Users\Master\AppData\Local\B1E O43 - CFD: 29/08/2015 - [] D -- C:\Users\Master\AppData\Local\Bluestacks O43 - CFD: 26/11/2013 - [] D -- C:\Users\Master\AppData\Local\cache O43 - CFD: 22/07/2015 - [] D -- C:\Users\Master\AppData\Local\CEF O43 - CFD: 02/09/2013 - [] D -- C:\Users\Master\AppData\Local\CyberLink O43 - CFD: 15/03/2013 - [0] SHD -- C:\Users\Master\AppData\Local\Dados de aplicativos O43 - CFD: 24/03/2015 - [0] D -- C:\Users\Master\AppData\Local\Diagnostics O43 - CFD: 13/01/2014 - [0] D -- C:\Users\Master\AppData\Local\ElevatedDiagnostics O43 - CFD: 11/04/2013 - [] D -- C:\Users\Master\AppData\Local\Facebook O43 - CFD: 27/09/2014 - [] D -- C:\Users\Master\AppData\Local\Gameo =>PUP.Optional.Gameo O43 - CFD: 11/09/2015 - [] D -- C:\Users\Master\AppData\Local\Google O43 - CFD: 15/03/2013 - [0] SHD -- C:\Users\Master\AppData\Local\Histórico O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\HP O43 - CFD: 01/01/2015 - [] D -- C:\Users\Master\AppData\Local\Level Up! O43 - CFD: 08/11/2013 - [] D -- C:\Users\Master\AppData\Local\LogMeIn O43 - CFD: 13/01/2016 - [] D -- C:\Users\Master\AppData\Local\LogMeIn Hamachi O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\Macromedia O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\MediaServer O43 - CFD: 29/08/2015 - [] D -- C:\Users\Master\AppData\Local\Mega Limited O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\MFAData O43 - CFD: 28/12/2014 - [] D -- C:\Users\Master\AppData\Local\Microsoft O43 - CFD: 13/10/2014 - [] D -- C:\Users\Master\AppData\Local\Microsoft Help O43 - CFD: 10/12/2013 - [] D -- C:\Users\Master\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie O43 - CFD: 05/11/2013 - [] D -- C:\Users\Master\AppData\Local\Mozilla O43 - CFD: 17/10/2014 - [0] D -- C:\Users\Master\AppData\Local\PointBlank O43 - CFD: 15/03/2013 - [] D -- C:\Users\Master\AppData\Local\Programs O43 - CFD: 11/08/2013 - [] D -- C:\Users\Master\AppData\Local\PSafe O43 - CFD: 27/09/2014 - [] D -- C:\Users\Master\AppData\Local\Roblox O43 - CFD: 26/12/2015 - [0] D -- C:\Users\Master\AppData\Local\Skype O43 - CFD: 24/04/2015 - [] D -- C:\Users\Master\AppData\Local\Skyrim O43 - CFD: 17/01/2016 - [] D -- C:\Users\Master\AppData\Local\Steam O43 - CFD: 27/01/2016 - [] D -- C:\Users\Master\AppData\Local\Temp O43 - CFD: 15/03/2013 - [0] SHD -- C:\Users\Master\AppData\Local\Temporary Internet Files O43 - CFD: 02/07/2014 - [] D -- C:\Users\Master\AppData\Local\TuneUp Software O43 - CFD: 15/10/2014 - [0] D -- C:\Users\Master\AppData\Local\Unity O43 - CFD: 30/04/2015 - [0] D -- C:\Users\Master\AppData\Local\Updater O43 - CFD: 08/11/2013 - [] D -- C:\Users\Master\AppData\Local\VirtualStore O43 - CFD: 05/11/2015 - [] D -- C:\Users\Master\AppData\Local\Warframe O43 - CFD: 14/03/2014 - [] D -- C:\Users\Master\AppData\Local\Windows Live O43 - CFD: 01/04/2013 - [] D -- C:\Users\Master\AppData\Local\Windows Live Writer O43 - CFD: 24/06/2014 - [] RD -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 05/09/2013 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Balabolka O43 - CFD: 22/01/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 22/01/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade O43 - CFD: 18/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Loquendo O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 14/12/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo O43 - CFD: 04/07/2014 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup =>PUP.Optional.MyPCBackup O43 - CFD: 25/01/2016 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox O43 - CFD: 17/12/2015 - [0] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 29/09/2015 - [] RD -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/10/2015 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 19/02/2015 - [0] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Strife O43 - CFD: 15/10/2014 - [] D -- C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL de Extensão do Shell do Armazenamento A.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensões do Shell para compartilhamento.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumeração das chaves StartupReg (4) - 1s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} [Key] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe =>.Nero AG O53 - SMSR:HKLM\...\startupreg\GrooveMonitor [Key] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\RemoteControl11 [Key] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe =>.CyberLink Corp. ---\\ Lista dos drivers do sistema (80) - 12s O58 - SDL:2013/06/19 20:51:44 RA . (.360.cn - 360HipsOEM.) -- C:\Windows\System32\drivers\360FltOEM.sys [288688] {11218C18F955B2B586579276E3D94B0D68F9} =>.360.cn O58 - SDL:2013/07/31 23:26:38 RA . (.360.cn - 360netmonOEM.) -- C:\Windows\System32\drivers\360netmonOEM.sys [51120] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2009/07/13 23:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2010/11/21 01:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2010/11/21 01:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2015/11/06 15:50:34 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\Windows\System32\drivers\avgdiska.sys [184240] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:35:38 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\Windows\System32\drivers\avgidsdrivera.sys [315312] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/08/20 12:58:04 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\Windows\System32\drivers\avgidsha.sys [298416] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/10/21 16:16:48 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\Windows\System32\drivers\avgldx64.sys [284080] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/08/14 13:24:40 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\Windows\System32\drivers\avgloga.sys [398256] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:36:34 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\Windows\System32\drivers\avgmfx64.sys [258480] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:27:46 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\System32\drivers\avgrkx64.sys [42416] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/10/08 07:46:44 A . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\Windows\System32\drivers\avgtdia.sys [302000] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2009/06/10 18:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 18:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 18:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 18:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 18:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 18:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 18:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/07/13 23:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2015/04/27 15:21:45 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30352] =>.Disc Soft Ltd® O58 - SDL:2009/07/13 23:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 18:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2009/03/18 18:35:42 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [33856] =>.LogMeIn, Inc.® O58 - SDL:2009/06/10 18:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2011/11/10 02:04:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [60184] =>.Intel Corporation® O58 - SDL:2010/11/21 01:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2011/05/20 10:53:44 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [557848] =>.Intel Corporation® O58 - SDL:2010/11/21 01:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2012/01/06 01:36:55 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [14652768] =>.Intel Corporation O58 - SDL:2009/07/13 23:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2011/12/06 09:23:08 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [331264] =>.Intel(R) Corporation O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2015/07/09 13:37:28 A . (.Panda Security, S.L. - Application Layer Protocol Colorizer.) -- C:\Windows\System32\drivers\NNSAlpc.sys [94456] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:29 A . (.Panda Security, S.L. - Http Parser.) -- C:\Windows\System32\drivers\NNSHttp.sys [201976] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:29 A . (.Panda Security, S.L. - Https Parser.) -- C:\Windows\System32\drivers\NNSHttps.sys [110840] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:30 A . (.Panda Security, S.L. - Intrusion Detection System.) -- C:\Windows\System32\drivers\NNSIds.sys [110840] =>.Panda Security S.L.® O58 - SDL:2015/05/20 14:21:37 A . (.Panda Security, S.L. - Network Activity Hook Server LWF.) -- C:\Windows\System32\drivers\NNSNAHSL.sys [57648] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:30 A . (.Panda Security, S.L. - Process Info Colorizer Client.) -- C:\Windows\System32\drivers\NNSpicc.sys [103160] =>.Panda Security S.L.® O58 - SDL:2015/08/31 08:01:46 A . (.Panda Security, S.L. - Process Info Hook Server WFP.) -- C:\Windows\System32\drivers\NNSPihsw.sys [73464] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:31 A . (.Panda Security, S.L. - Pop3 Parser.) -- C:\Windows\System32\drivers\NNSPop3.sys [124152] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:31 A . (.Panda Security, S.L. - Network Protector.) -- C:\Windows\System32\drivers\NNSProt.sys [300280] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:32 A . (.Panda Security, S.L. - Network Provider.) -- C:\Windows\System32\drivers\NNSPrv.sys [170232] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:32 A . (.Panda Security, S.L. - Smtp Parser.) -- C:\Windows\System32\drivers\NNSSmtp.sys [113400] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:33 A . (.Panda Security, S.L. - Streamer.) -- C:\Windows\System32\drivers\NNSStrm.sys [257784] =>.Panda Security S.L.® O58 - SDL:2015/07/09 13:37:33 A . (.Panda Security, S.L. - Transport Layer Session Colorizer.) -- C:\Windows\System32\drivers\NNStlsc.sys [106232] =>.Panda Security S.L.® O58 - SDL:2010/11/21 01:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2010/11/21 01:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2015/07/19 14:45:45 A . (.Panda Security, S.L. - PSINAflt Filter Driver for Vista64.) -- C:\Windows\System32\drivers\PSINAflt.sys [164088] =>.Panda Security S.L.® O58 - SDL:2015/07/19 14:45:46 A . (.Panda Security, S.L. - PSINFile Filter Driver for Vista64.) -- C:\Windows\System32\drivers\PSINFile.sys [121592] =>.Panda Security S.L.® O58 - SDL:2015/07/19 14:45:46 A . (.Panda Security, S.L. - PSINKNC Kernel Controller for Vista64.) -- C:\Windows\System32\drivers\PSINKNC.sys [197880] =>.Panda Security S.L.® O58 - SDL:2015/07/19 14:45:47 A . (.Panda Security, S.L. - PSINProc Filter Driver for Vista64.) -- C:\Windows\System32\drivers\PSINProc.sys [124152] =>.Panda Security S.L.® O58 - SDL:2015/07/19 14:45:47 A . (.Panda Security, S.L. - PSINProt for Vista64.) -- C:\Windows\System32\drivers\PSINProt.sys [134392] =>.Panda Security S.L.® O58 - SDL:2015/07/19 14:45:48 A . (.Panda Security, S.L. - PSINReg Filter Driver for Vista64.) -- C:\Windows\System32\drivers\PSINReg.sys [107768] =>.Panda Security S.L.® O58 - SDL:2015/05/22 06:45:59 A . (.Panda Security, S.L. - Panda Kernel Memory Access Driver (x64).) -- C:\Windows\System32\drivers\PSKMAD.sys [61712] =>.Panda Security S.L.® O58 - SDL:2009/07/13 23:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2011/02/16 18:11:08 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [428136] =>.Realtek Semiconductor Corp® O58 - SDL:2012/01/17 09:19:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4734440] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/10 18:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/13 23:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2015/11/12 11:51:00 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [34720] =>.LogMeIn, Inc.® ---\\ Associações Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor do Registro.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de inicialização Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Internet Explorer\iexplore.ex http://www.sweet-page.com/ =>PUP.Optional.SweetPage O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Pesquisa de infeção nos navegadores da Internet (7) - 1s O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Delta Search) - http://www.delta-search.com/ =>Toolbar.DeltaSearch O69 - SBI: SearchScopes [HKCU] {2C5BB186-A6BF-4F70-8637-413FDC615E6E} - (Yahoo) - http://br.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {92001F8A-C36B-473A-91E7-5BE0C81CF2B3} - (PSafe ClikSeguro) - http://clikseguro.com/ O69 - SBI: SearchScopes [HKCU] {B72B87D9-AEDB-4213-B0E9-4DFB8F646128} - (Pesquisa Segura) - http://br.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} - (WebSearch) - http://websearch.greatresults.info/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} - (WebSearch) - http://websearch.greatresults.info/ ---\\ Listagem dos serviços iniciados pelo Svchost (33) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [853504] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2428952] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Lista das exceções do FireWall (FirewallRules) (49) - 8s O87 - FAEL: "{0985CD61-2283-4F1B-BFBC-B9D4A6AC0B1C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe (.not file.) O87 - FAEL: "{58DE6B09-9913-4D7B-BA00-5DB6D985B2AE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgmfapx.exe (.not file.) O87 - FAEL: "TCP Query User{49ADB8E9-EE5E-4BA3-B232-C3BF9C350126}C:\windows\syswow64\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{9A70D4C1-6746-4FE2-BA5C-4E2F9D5968C6}C:\windows\syswow64\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.) O87 - FAEL: "{56758ED9-DF62-47CD-9A75-6375AA584FF8}" [In-None-P17-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.) O87 - FAEL: "{15457CF0-F5C1-4790-B178-5708AF73F764}" [In-None-P6-TRUE] .(...) -- C:\windows\syswow64\javaw.exe (.not file.) O87 - FAEL: "{EE3503BF-71E6-4C3C-94F7-217726007D5C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (.not file.) O87 - FAEL: "{1A2569C5-11D1-4CE6-A432-D4CA44F60C04}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (.not file.) O87 - FAEL: "{8C31627F-D008-4ED5-8C69-47D58D8498C0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe (.not file.) O87 - FAEL: "{5FF5AB7F-F73B-4C47-A2C4-2A44710C8617}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgdiagex.exe (.not file.) O87 - FAEL: "{6BE436D0-7C64-4CF0-B46E-01C49442C829}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (.not file.) O87 - FAEL: "{CC5B7265-EDDF-47B6-8E11-6EA857D4EBF4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (.not file.) O87 - FAEL: "{FB5A7073-0C0C-4DEB-9193-EB4DCED9F19B}" [In-None-P6-TRUE] .(...) -- C:\ongame\Pointblank\PointBlank.exe (.not file.) O87 - FAEL: "{D233E7A2-58BC-4993-B1E3-F59187461F23}" [In-None-P17-TRUE] .(...) -- C:\ongame\Pointblank\PointBlank.exe (.not file.) O87 - FAEL: "{C508393A-33D1-488E-B337-584DC1B30C5E}" [In-None-P6-TRUE] .(...) -- C:\ongame\Pointblank\PointBlank.exe (.not file.) O87 - FAEL: "{194E07A6-E315-4235-AA1E-022121FCC9FA}" [In-None-P17-TRUE] .(...) -- C:\ongame\Pointblank\PointBlank.exe (.not file.) O87 - FAEL: "TCP Query User{48A28C14-B8E1-4B4C-A369-AA1F79CB46A6}C:\program files (x86)\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{2E74B8FB-EC6D-428A-929D-38432C4F7A4C}C:\program files (x86)\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "TCP Query User{C94762C5-4639-41B3-8A5D-08E3F0CAF33B}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.) O87 - FAEL: "UDP Query User{323B8789-65BE-4047-BD4A-4C8F4B36ED4F}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.) O87 - FAEL: "TCP Query User{2C688193-0515-4874-AB29-5464B4B43446}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.) O87 - FAEL: "UDP Query User{62FA1B60-5F7A-4E75-A96C-D45C88851131}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.) O87 - FAEL: "TCP Query User{00353AAA-C390-4589-A5A7-E8954106D080}C:\users\master\desktop\sanicball_v0.6_win\sanicball_v0.6.exe" [In-None-P6-TRUE] .(...) -- C:\users\master\desktop\sanicball_v0.6_win\sanicball_v0.6.exe (.not file.) O87 - FAEL: "UDP Query User{0DFB31BB-A80E-450C-B909-7E48B082B55D}C:\users\master\desktop\sanicball_v0.6_win\sanicball_v0.6.exe" [In-None-P17-TRUE] .(...) -- C:\users\master\desktop\sanicball_v0.6_win\sanicball_v0.6.exe (.not file.) O87 - FAEL: "TCP Query User{7BF0B76D-052A-4484-941A-6A8E4D1B32A6}C:\level up\smite\binaries\win32\smite.exe" [In-None-P6-TRUE] .(...) -- C:\level up\smite\binaries\win32\smite.exe O87 - FAEL: "UDP Query User{1077B743-653A-4AEB-82FD-E2326F920CBB}C:\level up\smite\binaries\win32\smite.exe" [In-None-P17-TRUE] .(...) -- C:\level up\smite\binaries\win32\smite.exe O87 - FAEL: "{6E252CB0-077D-486A-972D-4B2214F2D074}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe (.not file.) O87 - FAEL: "{3D356684-5B83-400C-9752-99B6D7212C0B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe (.not file.) O87 - FAEL: "{C2BFB5F0-52F8-4485-83B3-DC283952F294}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe O87 - FAEL: "{B9F700CA-7005-4FC7-9834-E0D221337A42}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe O87 - FAEL: "{0014334E-0B66-4BFE-BF35-7BAAC36D7FEA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Fiddler2\Fiddler.exe (.not file.) O87 - FAEL: "{860A065F-00E7-4EA7-A076-1E1500F017CD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe (.not file.) O87 - FAEL: "{6FE05018-96C1-4E17-AA80-9009952E180D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe (.not file.) O87 - FAEL: "TCP Query User{8836C9B6-0E4B-4B44-9646-99451715D3D5}C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe (.not file.) O87 - FAEL: "UDP Query User{D559B0A5-C3EA-4D2D-8A37-20E3E397170B}C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe (.not file.) O87 - FAEL: "TCP Query User{E6B16A2C-CFFF-4D0B-A74F-2F1A5B4CBD8E}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{78A75F92-D410-4D70-AED3-05A17D48ABCF}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe (.not file.) O87 - FAEL: "{07440932-5C2E-41E2-88F3-D253DBB9CE0E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe O87 - FAEL: "{A5EF2DDB-A009-49D2-82DF-8EC7489D1699}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe O87 - FAEL: "TCP Query User{D3CEC67E-835E-4410-9A31-B6EDD1D0A465}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{09D13B9A-D2EC-431E-85A0-C734FF2595A7}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe (.not file.) O87 - FAEL: "TCP Query User{CE6F20BA-AE9C-4E6B-9A7D-339415B5058F}C:\users\master\appdata\roaming\utorrent\utorrent.exe" [In-None-P6-TRUE] .(...) -- C:\users\master\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "UDP Query User{02099079-9BD0-4F48-93EE-900870C2A8B6}C:\users\master\appdata\roaming\utorrent\utorrent.exe" [In-None-P17-TRUE] .(...) -- C:\users\master\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "{C83BB26A-A3C1-4250-928F-6D24BF8ED40E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Mitos.is The Game\Mitosis.exe O87 - FAEL: "{E7B81472-0809-413C-9C4D-A684FDEEDBB8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Mitos.is The Game\Mitosis.exe O87 - FAEL: "{705AB53F-49FD-46D2-8141-B0ED072DBB4E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Transformice\Transformice.exe O87 - FAEL: "{0CE0069E-C505-4FED-BADC-0D48C82FE0DA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Transformice\Transformice.exe O87 - FAEL: "{83C74BE7-EC79-43D6-AA18-5A7B4DA12ACB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe O87 - FAEL: "{2D43412A-C6A8-44D1-8036-247654E93574}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe ---\\ Claves Tracing (8) - 3s HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\cor_sweet-page_RASAPI32 =>PUP.Optional.SweetPage HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\cor_sweet-page_RASMANCS =>PUP.Optional.SweetPage ---\\ Scâner Aditional (70) - 0s C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\searchplugins\WebSearch.xml =>PUP.Optional.SimpleSearches C:\Users\Master\AppData\Roaming\Mozilla\Firefox\Profiles\jofuqxlj.default\extensions\_8hMembers_@download.allin1convert.com =>.Superfluous.MindSpark HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA} =>PUP.Optional.Browse2Save HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA} =>PUP.Optional.Browse2Save HKLM\SOFTWARE\Wow6432Node\AVG Nation toolbar =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\AVG Security Toolbar =>Toolbar.AVGSearch HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\babylontoolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\OfferBox =>PUP.Optional.OfferBox HKLM\SOFTWARE\Wow6432Node\SiteSee =>PUP.Optional.SiteSee HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak HKCU\SOFTWARE\5a6d78abc3eef44 =>PUP.Optional.Heuristic HKCU\SOFTWARE\AVG Nation toolbar =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr HKCU\SOFTWARE\DataMngr_Toolbar =>PUP.Optional.Datamngr HKCU\SOFTWARE\delta LTD =>Toolbar.DeltaSearch HKCU\SOFTWARE\FileScout =>PUP.Optional.FileScout HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic HKCU\SOFTWARE\Systweak =>.Superfluous.Systweak HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\Program Files (x86)\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup C:\Program Files (x86)\RegClean Pro =>PUP.Optional.RegistryPowerCleaner C:\Program Files (x86)\SimpleSpeedy =>PUP.Optional.Multiplug C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browosse2save =>PUP.Optional.Browse2Save C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =>PUP.Optional.RegistryPowerCleaner C:\ProgramData\APN =>Toolbar.Ask C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch C:\ProgramData\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\Browosse2save =>PUP.Optional.Browse2Save C:\ProgramData\InstallMate =>.Superfluous.Tarma C:\ProgramData\StarApp =>PUP.Optional.StarApp C:\ProgramData\Systweak =>.Superfluous.Systweak C:\Program Files (x86)\Common Files\AVG Secure Search =>Toolbar.AVGSearch C:\Users\Master\AppData\Roaming\B1Toolbar =>PUP.Optional.SearchB1org C:\Users\Master\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\Master\AppData\Roaming\DealPly =>PUP.Optional.Dealply C:\Users\Master\AppData\Roaming\File Scout =>PUP.Optional.FileScout C:\Users\Master\AppData\Roaming\Gameo =>PUP.Optional.Gameo C:\Users\Master\AppData\Roaming\OfferBox =>PUP.Optional.OfferBox C:\Users\Master\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy C:\Users\Master\AppData\Roaming\systweak =>.Superfluous.Systweak C:\Users\Master\AppData\Local\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\Users\Master\AppData\Local\Gameo =>PUP.Optional.Gameo C:\Users\Master\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup =>PUP.Optional.MyPCBackup HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} =>Toolbar.DeltaSearch HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\cor_sweet-page_RASAPI32 =>PUP.Optional.SweetPage HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\cor_sweet-page_RASMANCS =>PUP.Optional.SweetPage ---\\ Resumo dos elementos encontrados na sua estação de trabalho (32) - 0s http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SimpleSearches http://www.nicolascoolman.fr/?p=142 =>.Superfluous.MindSpark http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AVGSearch http://www.nicolascoolman.fr/?p=596 =>PUP.Optional.SweetPage http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup http://www.nicolascoolman.fr/?p=423 =>PUP.Optional.Browse2Save http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AVGSafeGuard http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon http://www.nicolascoolman.fr/?p=270 =>PUP.Optional.Datamngr http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/?p=345 =>PUP.Optional.OfferBox http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SiteSee http://www.nicolascoolman.fr/?p=336 =>PUP.Optional.AdvancedSystemProtector http://www.nicolascoolman.fr/?p=1344 =>PUP.Optional.MocaFlix http://www.nicolascoolman.fr/pup-systweak/ =>.Superfluous.Systweak http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Heuristic http://www.nicolascoolman.fr/?p=440 =>PUP.Optional.BabSolution http://www.nicolascoolman.fr/?p=273 =>Toolbar.DeltaSearch http://www.nicolascoolman.fr/?p=799 =>PUP.Optional.FileScout http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Gameo http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/?p=558 =>PUP.Optional.RegistryPowerCleaner http://www.nicolascoolman.fr/?p=1402 =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask http://www.nicolascoolman.fr/?p=259 =>.Superfluous.Tarma http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.StarApp http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SearchB1org http://www.nicolascoolman.fr/?p=203 =>PUP.Optional.Dealply http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie ~ End of the scan, 26786 items in 00h24mn41s (1258)(0)