~ ZHPDiag v2016.2.11.28 Por Nicolas Coolman (2016/02/11) ~ iniciado por Cristiano (Administrator) (2016/02/12 11:37:38) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Status da versão: Version OK ~ Modo: Scanner ~ Relatório: C:\Users\Cristiano\Desktop\ZHPDiag.txt ~ Relatório: C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Inicialização do sistema: Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Navegadores Internet (4) - 0s GCIE: Google Chrome v48.0.2564.109 MFIE: Mozilla Firefox 44.0.1 (x86 pt-BR) OPIE: Opera 35.0.2066.37 MSIE: Internet Explorer v11.0.9600.17914 ---\\ Informações sobre os produtos Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Softwares de proteçao do sistema (3) - 8s AVG Protection v2016.31.7357 Malwarebytes Anti-Malware versão 2.2.0.1024 Windows Defender W7 (Deactivate) ---\\ Softwares de proteçao do sistema (Supérfluo) (1) - 8s ESET Online Scanner v3 ---\\ Softwares d'optimização do sistema (1) - 8s CCleaner v5.14 ---\\ Monitoramento dos softwares (2) - 8s Adobe Flash Player 20 NPAPI Adobe Acrobat Reader DC - Português ---\\ Informações sobre o sistema (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4140.912 MB (46% free) System Restore: Activé (Enable) System drive C: has 22 GB () free of 109 GB ---\\ Modo de conexão ao sistema (3) - 0s ~ Computer Name: CTV ~ User Name: Cristiano ~ Logged in as Administrator ---\\ Enumeração das unidades dos discos (2) - 0s ~ Drive C: has 22 GB free of 109 GB (System) ~ Drive D: has 86 GB free of 195 GB ---\\ Estado do Centro de Segurança do Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Pesquisa particular de ficheiros genéricos (25) - 1s [MD5.3B69712041F3D63605529BD66DC00C48] - 18/02/2012 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Processo de host do Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.E066FDC3A2074D926903B8C31EF3B347] - 20/06/2015 - (.Microsoft Corporation - Internet Extensions para Win32.) -- C:\Windows\System32\wininet.dll [2427392] =>.Microsoft Corporation [MD5.98AA0BFEE089C7E5DADB94190D93456C] - 16/07/2014 - (.Microsoft Corporation - Aplicativo de Logon do Windows.) -- C:\Windows\System32\Winlogon.exe [455680] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.3181572F66063C1B5F2B41BC277D281C] - 18/02/2012 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.C6B5760A176913B6D2791568686D546C] - 18/02/2012 - (.Microsoft Corporation - DLL da API de cliente DNS.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.BDF76C3CE993FFB6214287272708364F] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496640] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9FCDC4EEBCE39173122F9FEE53A054FC] - 18/02/2012 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102912] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Driver de porta i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.E9DD0E8829567362C1051E0905174DDE] - 01/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.48B6047F82D5A8D0AEC71593F4ACD79B] - 23/01/2014 - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Driver de porta paralela.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.9E53D41BD99BEB981180978C4AE0BDEB] - 18/02/2012 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.70988118145F5F10EF24720B97F35F65] - 10/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] =>.Microsoft Corporation [MD5.ABFECA99D72CE81E5C3612861F03B0CA] - 18/02/2012 - (.Microsoft Corporation - Driver de cópia de sombra de volume.) -- C:\Windows\System32\drivers\volsnap.sys [296816] =>.Microsoft Windows® ---\\ Serviços NT não Microsoft e não desativados (18) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Atheros Commnucations O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o. - AVG Service Process.) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe {305BA2DD88FE398D8CF90790C9D266BA} O23 - Service: Serviço do Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: VAIO Event Service (VAIO Event Service) . (.Sony Corporation - VAIO Event Service (Service Module).) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe =>.Sony Corporation® O23 - Service: VSNService (VSNService) . (.Sony Corporation - VAIO Smart Network Service.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe =>.Sony Corporation® O23 - Service: Warsaw Technology (Warsaw Technology) . (.GAS Tecnologia LTDA - GAS Tecnologia - Core.) - C:\Program Files\Diebold\Warsaw\core.exe {305BA2DD88FE398D8CF90790C9D266BA} O23 - Service: Wondershare Application Framework Service (WsAppService) . (...) - C:\Program Files (x86)\Wondershare\WAF\2.1.4.4\WsAppService.exe (.not file.) ---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (25) - 38s SS - Demand [18/03/2010] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe =>.ArcSoft, Inc.® SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [10/02/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [31/03/2011] [ 146592] Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros SR - Auto [31/03/2011] [ 75936] AtherosSvc (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Atheros Commnucations SS - Demand [08/01/2016] [ 627544] AvgAMPS (AvgAMPS) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgamps.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [08/01/2016] [ 3906568] AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [12/01/2016] [ 1048488] AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® SR - Auto [08/01/2016] [ 583936] AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.® SS - Demand [19/07/2011] [ 104096] DCDhcpService (DCDhcpService) . (.Atheros Communication Inc..) - C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe =>.Atheros Communication Inc. SR - Auto [22/09/2015] [ 593120] Gbp Service (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe {305BA2DD88FE398D8CF90790C9D266BA} SS - Auto [31/03/2015] [ 107848] Serviço do Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [31/03/2015] [ 107848] Serviço do Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [21/11/2013] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Auto [12/03/2012] [ 2429544] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp® SR - Auto [01/02/2011] [ 326168] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [08/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [12/09/2014] [ 4799760] TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe =>.TeamViewer® SR - Auto [01/02/2011] [ 2656280] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Auto [05/03/2011] [ 64704] VAIO Event Service (VAIO Event Service) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe =>.Sony Corporation® SR - Auto [27/08/2013] [ 961624] VSNService (VSNService) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe =>.Sony Corporation® SR - Demand [31/07/2015] [ 1653272] VUAgent (VUAgent) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Update\VUAgent.exe =>.Sony Corporation® SR - Auto [04/11/2015] [ 904928] Warsaw Technology (Warsaw Technology) . (.GAS Tecnologia LTDA.) - C:\Program Files\Diebold\Warsaw\core.exe {305BA2DD88FE398D8CF90790C9D266BA} ---\\ Tarefas planificadas automaticamente (17) - 4s [MD5.4EAF6F8F0B3BE33A0E3877EB7FFD48D4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] =>.Adobe Systems, Incorporated® [MD5.785FD0E36CA75D90DD50042E2594BC63] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd® [MD5.E1AAA901FDEA6117EEDB44FF98D2DF94] [APT] [doPDF Update] (.Copyright © 2014.) -- C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe [654336] [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc® [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc® [MD5.F72C9E2349DD7E855F7ABBB20F306395] [APT] [Opera scheduled Autoupdate 1431638293] (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [704120] =>.Opera Software ASA® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [902] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1064] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1068] =>.Google Inc® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3840] =>.Adobe Systems Incorporated® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2780] =>.Piriform Ltd® O39 - APT: doPDF Update - (.Copyright © 2014.) -- C:\Windows\System32\Tasks\doPDF Update [3562] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3812] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4064] =>.Google Inc® O39 - APT: Opera scheduled Autoupdate 1431638293 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1431638293 [3842] =>.Opera Software ASA® ---\\ Processos lançados (44) - 2s [MD5.272FF1C0F65D39E68618338C0DA47535] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- c:\Program Files (x86)\AVG\Av\avgrsa.exe [1230248] [PID.436] =>.AVG Technologies CZ, s.r.o.® [MD5.97F1AA36759DAD3E97DB5602A7B1EE01] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files (x86)\AVG\Av\avgcsrva.exe [1021864] [PID.556] =>.AVG Technologies CZ, s.r.o.® [MD5.BBE2179C44B7D16F85DE1285DEAB71AF] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [593120] [PID.1220] {305BA2DD88FE398D8CF90790C9D266BA} [MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2112] =>.Adobe Systems, Incorporated® [MD5.650F111D5CDA64C10AE4B9D1BA9D4FFF] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592] [PID.2132] =>.Atheros [MD5.4D643CD9E892E559355B7A77D532BD38] - (.Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [75936] [PID.2164] =>.Atheros Commnucations [MD5.BE0A47857BAF9819DC7DAB73D758DEDC] - (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) -- C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3906568] [PID.2272] =>.AVG Technologies CZ, s.r.o.® [MD5.05927BED96CF7E1DA308870C6D5C5792] - (.AVG Technologies CZ, s.r.o. - AVG Service Process.) -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1048488] [PID.2296] =>.AVG Technologies CZ, s.r.o.® [MD5.B7C710DF4CE8063801421257F329D567] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [583936] [PID.2332] =>.AVG Technologies CZ, s.r.o.® [MD5.36CC8B2FD964C97BD2E2AB8BA7FFE384] - (.Microsoft - novaPDF Server.) -- C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [35616] [PID.2996] =>.Softland S.R.L.® [MD5.C777B221B4C2A429B1DDAA54F198FFE1] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint\Apoint.exe [226672] [PID.2836] =>.Alps Electric Co., LTD.® [MD5.8802D3239441C08BF1F8A20E3457AE25] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe [911576] [PID.2832] =>.Conexant Systems, Inc.® [MD5.6349A663F21A579A9E708A1EA138DEAD] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [167704] [PID.2824] =>.Intel Corporation® [MD5.3C6EDA4DB5DE13898A5F3FA1BA7A2B5E] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [392472] [PID.1972] =>.Intel Corporation® [MD5.F8C1B21E4CE3F1E19333E27771CB2FC5] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [416024] [PID.3088] =>.Intel Corporation® [MD5.B6B8B397608F2889F6BEC3B4EBE508BC] - (.Atheros Communications - Bluetooth Stack Server.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [790176] [PID.3104] =>.Atheros Communications [MD5.70FB1437E83E6EFFFE4D8A3871CE3FD8] - (.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\Av\avgnsa.exe [1696680] [PID.3272] =>.AVG Technologies CZ, s.r.o.® [MD5.B746104CE9595214734E2E3CE3A3D68D] - (.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\Av\avgemca.exe [917416] [PID.3280] =>.AVG Technologies CZ, s.r.o.® [MD5.4ACFC5853A3F0C6C2F54E537C23EE90F] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [4799760] [PID.3804] =>.TeamViewer® [MD5.28134B8E1660951DBD4D400A33D9ED85] - (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [657056] [PID.3828] =>.Atheros Commnucations [MD5.DCB1F83AD167D16D263CE57C94E9EEDF] - (.Sony Corporation - VAIO Event Service (Service Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe [64704] [PID.3552] =>.Sony Corporation® [MD5.3A8BEB885C3AC9E96BE055FA00DFBC73] - (.Sony Corporation - VAIO Event Service (Service Sub Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe [180928] [PID.3788] =>.Sony Corporation® [MD5.ECF45E3FC8C63E44ED45D38A8672E7F1] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [275768] [PID.3812] =>.Hewlett Packard® [MD5.34D296AFC913E302953C70463EF09A48] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [96056] [PID.4212] =>.Hewlett-Packard Company® [MD5.163E43BC69AE78F468024EC2133C94A8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992] [PID.4236] =>.Oracle America, Inc.® [MD5.E5712B814CFDC973D20F11A1678FA858] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Av\avgui.exe [3874216] [PID.4396] =>.AVG Technologies CZ, s.r.o.® [MD5.258787FCC959E3B04EF30F9876D31B6C] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1140648] [PID.4404] =>.AVG Technologies CZ, s.r.o.® [MD5.86958A24639B8E3A84F14307CE35650B] - (.Sony Corporation - VAIO Smart Network Service.) -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [961624] [PID.2096] =>.Sony Corporation® [MD5.BBE2179C44B7D16F85DE1285DEAB71AF] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [593120] [PID.5136] {305BA2DD88FE398D8CF90790C9D266BA} [MD5.B03F39264477EC8A979C67C789A7B62A] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint\ApMsgFwd.exe [66928] [PID.6140] =>.Alps Electric Co., LTD.® [MD5.D0D99257DDDCDDBE998AF7CA14E85BD0] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe [168960] [PID.5988] =>.Hewlett-Packard Co. [MD5.4738DC864215B00B886E27A8D18CC326] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592] [PID.6000] =>.Intel Corporation - Intel® Rapid Storage Technology® [MD5.8462BAA243547AE8E925F8F51C15419D] - (.ALPS - APVFB.) -- C:\Program Files\Apoint\Apvfb.exe [154480] [PID.4928] =>.Alps Electric Co., LTD.® [MD5.FD97807051658AE27799BE3A557D3776] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint\ApntEx.exe [29552] [PID.6112] =>.Alps Electric Co., LTD.® [MD5.9843F58DF3E2908D1FED4DF4B8747E51] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [559104] [PID.6188] =>.Hewlett-Packard Co. [MD5.883008A9B5BFF94A153D99DBA54CB5C1] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [362496] [PID.6308] =>.Hewlett-Packard [MD5.ABE12D60489C5E540F4AF09113D6ED4A] - (.Sony Corporation - VAIO Update.) -- C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [1216536] [PID.6948] =>.Sony Corporation® [MD5.24D6F6D7AE866A6875965EFE9D8EE3F3] - (.Sony Corporation - VUAgent.) -- C:\Program Files\Sony\VAIO Update\VUAgent.exe [1653272] [PID.6612] =>.Sony Corporation® [MD5.6241810294275CEA59EBA9733080E5EE] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720] [PID.4620] =>.Intel Corporation - Intel® Rapid Storage Technology® [MD5.3CC7B3BB1A9EA201A040883EDFAA67A0] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2429544] [PID.5068] =>.Realtek Semiconductor Corp® [MD5.98B16E756243BEA9410E32025B19C06F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [326168] [PID.5000] =>.Intel Corporation® [MD5.7A78ED1088890114DFDE2C4AB038D6B6] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.6416] =>.Intel Corporation® [MD5.0399D368D0B6A28221C163DB27CFC38E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Cristiano\Desktop\ZHPDiag3.exe [2118144] [PID.6472] =>.Nicolas Coolman [MD5.0399D368D0B6A28221C163DB27CFC38E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag3.exe [2118144] [PID.5808] =>.Nicolas Coolman ---\\ Google Chrome, Arranque,Pesquisa,Extensões (10) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [mkeabchhfifpaaoefpockjhaphjmoapp] GBBD Banco do Brasil G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (7) - 1s P2 - EXT FILE: (...) -- C:\Users\Cristiano\AppData\Roaming\Mozilla\Firefox\Profiles\f714aep6.default-1435240498475\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.NetVideoHunter - NetVideoHunter.) -- C:\Users\Cristiano\AppData\Roaming\Mozilla\Firefox\Profiles\f714aep6.default-1435240498475\extensions\netvideohunter@netvideohunter.com =>.NetVideoHunter P2 - FPN: [HKCU] [gastecnologia.com.br/sf/bb64] - (...) -- C:\Users\Cristiano\AppData\Local\GAS Tecnologia\GBBD\npsf_bb_64.dll P2 - FPN: [HKCU] [gastecnologia.com.br/sf/cef64] - (...) -- C:\Users\Cristiano\AppData\Local\GAS Tecnologia\GBBD\npsf_cef_64.dll P2 - FPN: [HKCU] [gastecnologia.com.br/sf/gas64] - (...) -- C:\Users\Cristiano\AppData\Local\GAS Tecnologia\GBBD\npsf_gas_64.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer, Arranque, Pesquisa, Phishing (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Gestão do Proxy (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Redireção do ficheiro Hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Objects do navegador (3) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Aplicações iniciadas por registo & pastas (21) - 1s O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint\Apoint.exe =>.Alps Electric Co., LTD.® O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.® O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Bluetooth Stack Server.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe =>.Atheros Communications O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe =>.Atheros Commnucations O4 - HKLM\..\Run: [Diebold - Warsaw] . (.GAS Tecnologia LTDA - GAS Tecnologia - Core.) -- C:\Program Files\Diebold\Warsaw\core.exe {305BA2DD88FE398D8CF90790C9D266BA} O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Company® O4 - HKLM\..\Wow6432Node\Run: [AvgUi] . (.AVG Technologies CZ, s.r.o. - AVG Ui (Re)Starter.) -- C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - None.) -- C:\Program Files (x86)\AVG\Av\avuirunnerx.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2916229193-2596999592-3945810575-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation ---\\ Atalhos globais Startup (73) - 8s O4 - GS\Desktop [Administrador]: Advanced PDF Password Recovery.lnk . (.ElcomSoft Co. Ltd. - Advanced PDF Password Recovery.) C:\Program Files (x86)\Elcomsoft Password Recovery\Advanced PDF Password Recovery\APDFPR.exe {1748F43D845D4B8E655BA399F2F7EF9F} =>.ElcomSoft Co. Ltd. O4 - GS\Desktop [Administrador]: CRISTIANO - Atalho.lnk . (...) D:\CRISTIANO O4 - GS\Desktop [Administrador]: Excel 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrador]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrador]: Foxit Advanced PDF Editor.lnk . (.Foxit Corporation - .) C:\Program Files (x86)\Foxit Software\Foxit Advanced PDF Editor\Foxit Advanced PDF Editor.exe =>.Foxit Corporation O4 - GS\Quicklaunch [Administrador]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\Quicklaunch [Administrador]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\sendTo [Administrador]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\sendTo [Administrador]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [Administrador]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\TaskBar [Administrador]: Dindin.lnk . (...) C:\Program Files (x86)\Dindin\Dindin.exe O4 - GS\TaskBar [Administrador]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\TaskBar [Administrador]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrador]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrador]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\TaskBar [Administrador]: Q-Dir.lnk . (.Nenad Hrg (SoftwareOK.com) - .) C:\Program Files (x86)\Q-Dir\Q-Dir.exe =>.Nenad Hrg (SoftwareOK.com) O4 - GS\Desktop [Convidado]: Advanced PDF Password Recovery.lnk . (.ElcomSoft Co. Ltd. - Advanced PDF Password Recovery.) C:\Program Files (x86)\Elcomsoft Password Recovery\Advanced PDF Password Recovery\APDFPR.exe {1748F43D845D4B8E655BA399F2F7EF9F} =>.ElcomSoft Co. Ltd. O4 - GS\Desktop [Convidado]: CRISTIANO - Atalho.lnk . (...) D:\CRISTIANO O4 - GS\Desktop [Convidado]: Excel 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Convidado]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Convidado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Convidado]: Foxit Advanced PDF Editor.lnk . (.Foxit Corporation - .) C:\Program Files (x86)\Foxit Software\Foxit Advanced PDF Editor\Foxit Advanced PDF Editor.exe =>.Foxit Corporation O4 - GS\Quicklaunch [Convidado]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\Quicklaunch [Convidado]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\sendTo [Convidado]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\sendTo [Convidado]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [Convidado]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\TaskBar [Convidado]: Dindin.lnk . (...) C:\Program Files (x86)\Dindin\Dindin.exe O4 - GS\TaskBar [Convidado]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\TaskBar [Convidado]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Convidado]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Convidado]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\TaskBar [Convidado]: Q-Dir.lnk . (.Nenad Hrg (SoftwareOK.com) - .) C:\Program Files (x86)\Q-Dir\Q-Dir.exe =>.Nenad Hrg (SoftwareOK.com) O4 - GS\Desktop [Cristiano]: Advanced PDF Password Recovery.lnk . (.ElcomSoft Co. Ltd. - Advanced PDF Password Recovery.) C:\Program Files (x86)\Elcomsoft Password Recovery\Advanced PDF Password Recovery\APDFPR.exe {1748F43D845D4B8E655BA399F2F7EF9F} =>.ElcomSoft Co. Ltd. O4 - GS\Desktop [Cristiano]: CRISTIANO - Atalho.lnk . (...) D:\CRISTIANO O4 - GS\Desktop [Cristiano]: Excel 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Cristiano]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Cristiano]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Cristiano]: Foxit Advanced PDF Editor.lnk . (.Foxit Corporation - .) C:\Program Files (x86)\Foxit Software\Foxit Advanced PDF Editor\Foxit Advanced PDF Editor.exe =>.Foxit Corporation O4 - GS\Quicklaunch [Cristiano]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\Quicklaunch [Cristiano]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\sendTo [Cristiano]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\sendTo [Cristiano]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [Cristiano]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\TaskBar [Cristiano]: Dindin.lnk . (...) C:\Program Files (x86)\Dindin\Dindin.exe O4 - GS\TaskBar [Cristiano]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\TaskBar [Cristiano]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Cristiano]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Cristiano]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\TaskBar [Cristiano]: Q-Dir.lnk . (.Nenad Hrg (SoftwareOK.com) - .) C:\Program Files (x86)\Q-Dir\Q-Dir.exe =>.Nenad Hrg (SoftwareOK.com) O4 - GS\Desktop [Outros]: Advanced PDF Password Recovery.lnk . (.ElcomSoft Co. Ltd. - Advanced PDF Password Recovery.) C:\Program Files (x86)\Elcomsoft Password Recovery\Advanced PDF Password Recovery\APDFPR.exe {1748F43D845D4B8E655BA399F2F7EF9F} =>.ElcomSoft Co. Ltd. O4 - GS\Desktop [Outros]: CRISTIANO - Atalho.lnk . (...) D:\CRISTIANO O4 - GS\Desktop [Outros]: Excel 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Outros]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Outros]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Cristiano\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Outros]: Foxit Advanced PDF Editor.lnk . (.Foxit Corporation - .) C:\Program Files (x86)\Foxit Software\Foxit Advanced PDF Editor\Foxit Advanced PDF Editor.exe =>.Foxit Corporation O4 - GS\Quicklaunch [Outros]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\Quicklaunch [Outros]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\sendTo [Outros]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\sendTo [Outros]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [Outros]: Wondershare MobileGo.lnk . (...) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe O4 - GS\TaskBar [Outros]: Dindin.lnk . (...) C:\Program Files (x86)\Dindin\Dindin.exe O4 - GS\TaskBar [Outros]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Users\Cristiano\AppData\Local\Apps\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION® O4 - GS\TaskBar [Outros]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Outros]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Outros]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\TaskBar [Outros]: Q-Dir.lnk . (.Nenad Hrg (SoftwareOK.com) - .) C:\Program Files (x86)\Q-Dir\Q-Dir.exe =>.Nenad Hrg (SoftwareOK.com) O4 - GS\CommonDesktop [Public]: AVG Protection.lnk . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) C:\Program Files (x86)\AVG\Av\avgui.exe =>.AVG Technologies CZ, s.r.o.® O4 - GS\CommonDesktop [Public]: Foxit Advanced PDF Editor.lnk . (.Foxit Corporation - .) C:\Program Files (x86)\Foxit Software\Foxit Advanced PDF Editor\Foxit Advanced PDF Editor.exe =>.Foxit Corporation O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Startup [Public]: HP Digital Imaging Monitor.lnk . (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe =>.Hewlett Packard® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Alteração Dominio/Clientes DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.25.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C5BE2224-CCD5-440C-A3F9-284283D8CD70}: DhcpNameServer = 192.168.25.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EE8652D7-6E76-44A0-9D1A-D2926C54634A}: DhcpNameServer = 192.168.25.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C5BE2224-CCD5-440C-A3F9-284283D8CD70}: DhcpDomain = domain.name O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EE8652D7-6E76-44A0-9D1A-D2926C54634A}: DhcpDomain = domain.name ---\\ Protocolo adicional (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controle ActiveX para streaming de vídeo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software instalados (133) - 19s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} =>.Hewlett-Packard O42 - Logiciel: Adobe Acrobat Reader DC - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated O42 - Logiciel: Advanced PDF Password Recovery - (.Elcomsoft Co. Ltd..) [HKLM][64Bits] -- {A85CC7BA-760F-4B65-8E2F-640BE314F2F8} =>.ElcomSoft Co. Ltd. O42 - Logiciel: Alps Pointing-device for VAIO - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: ArcSoft WebCam Companion 4 - (.ArcSoft.) [HKLM][64Bits] -- {C793AD32-2BB8-4CC4-ABD3-A1469C21593C} =>.ArcSoft O42 - Logiciel: Ashampoo Burning Studio 16 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- {91B33C97-A730-69CE-7A4F-4ADF378BB993}_is1 =>.Ashampoo GmbH & Co. KG® O42 - Logiciel: Atheros WiFi Driver Installation - (.Atheros.) [HKLM][64Bits] -- {7D916FA5-DAE9-4A25-B089-655C70EAF607} =>.Atheros O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- {F9880989-072C-4520-B525-041F100E0B32} =>.AVG Technologies O42 - Logiciel: AVG 2016 - (.AVG Technologies.) [HKLM][64Bits] -- {C3506E0A-35BE-4AAF-BA41-62E9D9FD3B92} =>.AVG Technologies O42 - Logiciel: AVG Protection - (.AVG Technologies.) [HKLM][64Bits] -- AVG =>.AVG Technologies CZ, s.r.o.® O42 - Logiciel: Bluetooth Win7 Suite (64) - (.Atheros Communications.) [HKLM][64Bits] -- {230D1595-57DA-4933-8C4E-375797EBB7E1} =>.Atheros Communications O42 - Logiciel: BufferChm - (.Hewlett-Packard.) [HKLM][64Bits] -- {2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C} =>.Hewlett-Packard O42 - Logiciel: C4600 - (.Hewlett-Packard.) [HKLM][64Bits] -- {7CDD7C4C-5224-40E4-951F-51C12FEAB8AB} =>.Hewlett-Packard O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Conexant Audio Filter Agent - (.Conexant Systems.) [HKLM][64Bits] -- cAudioFilterAgent =>.Conexant Systems, Inc.® O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.® O42 - Logiciel: Destinations - (.Hewlett-Packard.) [HKLM][64Bits] -- {BD7204BA-DD64-499E-9B55-6A282CDF4FA4} =>.Hewlett-Packard O42 - Logiciel: DeviceDiscovery - (.Hewlett-Packard.) [HKLM][64Bits] -- {21A2F5EE-1DC5-488A-BE7E-E526F8C61488} =>.Hewlett-Packard O42 - Logiciel: Dindin Finanças Pessoais - (.Dindin Sistemas.) [HKLM][64Bits] -- {8C37F245-7EB4-44DC-BBAA-1CCEE6D31BA1}_is1 O42 - Logiciel: doPDF - (.Softland.) [HKLM][64Bits] -- {B920D92D-C988-4487-BA11-5C2E7AC936A3} =>.Softland O42 - Logiciel: doPDF 8 - (.Softland.) [HKLM][64Bits] -- {203db349-8f91-4d14-8a94-0966e8933881} =>.Softland O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM][64Bits] -- ESET Online Scanner =>.ESET, spol. s r.o.® O42 - Logiciel: Evernote v. 5.9.6 - (.Evernote Corp..) [HKLM][64Bits] -- {A542D366-9877-11E5-B101-005056951CAD} =>.Evernote Corp. O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {1F610B48-81E7-4A33-AFC9-1D7602C80732} =>.AVG Technologies O42 - Logiciel: Foxit Advanced PDF Editor 3 - (.Foxit Corporation.) [HKLM][64Bits] -- B521582C-6BE3-491D-BCC8-FFB8301298E9_is1 =>.Foxit Corporation® O42 - Logiciel: Free MP3 Cutter 1.01 - (.PolySoft Solutions.) [HKLM][64Bits] -- {847E0734-4457-4B48-BF49-998D1CF2CFA1}_is1 =>.PolySoft Solutions O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: GPBaseService2 - (.Hewlett-Packard.) [HKLM][64Bits] -- {63FF21C9-A810-464F-B60A-3111747B1A6D} =>.Hewlett-Packard O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities =>.Hewlett Packard® O42 - Logiciel: HP Deskjet 1000 J110 series Ajuda - (.Hewlett Packard.) [HKLM][64Bits] -- {DDDFCC77-7F9C-45E9-B38E-721BA599BA0C} =>.Hewlett Packard O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions =>.Hewlett Packard® O42 - Logiciel: HP Photosmart C4600 All-In-One Driver Software 13.0 Rel .5 - (.HP.) [HKLM][64Bits] -- {44C81D1A-0520-49BB-B510-98B8DD414EA1} =>.Hewlett Packard® O42 - Logiciel: HP Print Projects 1.0 - (.HP.) [HKLM][64Bits] -- HP Print Projects =>.Hewlett Packard® O42 - Logiciel: HP Smart Web Printing 4.5 - (.HP.) [HKLM][64Bits] -- HP Smart Web Printing =>.Hewlett Packard® O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools =>.Hewlett Packard® O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} =>.Microsoft O42 - Logiciel: HPPhotoGadget - (.Hewlett-Packard.) [HKLM][64Bits] -- {CAE4213F-F797-439D-BD9E-79B71D115BE3} =>.Hewlett-Packard O42 - Logiciel: hpPrintProjects - (.Hewlett-Packard.) [HKLM][64Bits] -- {C75CDBA2-3C86-481e-BD10-BDDA758F9DFF} =>.Hewlett-Packard O42 - Logiciel: HPProductAssistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {C43326F5-F135-4551-8270-7F7ABA0462E1} =>.Hewlett-Packard O42 - Logiciel: HPSSupply - (.Hewlett-Packard.) [HKLM][64Bits] -- {6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91} =>.Hewlett-Packard O42 - Logiciel: hpWLPGInstaller - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1} =>.Hewlett-Packard O42 - Logiciel: HWiNFO64 Version 4.46 - (.Martin Malík - REALiX.) [HKLM][64Bits] -- HWiNFO64_is1 =>.Martin Malík - REALiX O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {B7CC660E-F31D-490C-BD2A-2CB2EC5A5E3A} =>.Intel Corporation O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation® O42 - Logiciel: Intel(R) Driver Update Utility 2.0 - (.Intel.) [HKLM][64Bits] -- {59DB38EB-F864-4E10-841D-38CFBCF864B0} =>.Intel O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {27DEA29A-222C-45F8-B70D-0A7B303FC71B} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation O42 - Logiciel: Intel® Driver Update Utility - (.Intel.) [HKLM][64Bits] -- {8409c4f7-2340-4933-a304-5d37db4fb48b} =>.Intel O42 - Logiciel: IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva - (.Receita Federal do Brasil.) [HKLM][64Bits] -- IRPF2014 O42 - Logiciel: IRPF2015 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva - (.Receita Federal do Brasil.) [HKLM][64Bits] -- IRPF2015 O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: LibreOffice 4.4.7.2 - (.The Document Foundation.) [HKLM][64Bits] -- {94C42982-D118-45DE-B761-3D331428FAB9} =>.The Document Foundation O42 - Logiciel: Malwarebytes Anti-Malware versão 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: ManyCam 4.0.110 - (.Visicom Media Inc..) [HKLM][64Bits] -- ManyCam O42 - Logiciel: MarketResearch - (.Hewlett-Packard.) [HKLM][64Bits] -- {175F0111-2968-4935-8F70-33108C6A4DE3} =>.Hewlett-Packard O42 - Logiciel: Microsoft Access MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0416-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 44.0.1 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0.1 (x86 pt-BR) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mozilla Thunderbird 38.5.1 (x86 pt-BR) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 38.5.1 (x86 pt-BR) =>.Mozilla Corporation® O42 - Logiciel: MPC-HC 1.7.9 - (.MPC-HC Team.) [HKLM][64Bits] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 =>.Open Source Developer, Fotis ZAFIROPOULOS® O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: novaPDF 8 Printer Driver - (.Softland.) [HKLM][64Bits] -- {C2303980-9A29-4F1C-9B46-204FFD45A95C} =>.Softland O42 - Logiciel: Opera Stable 35.0.2066.37 - (.Opera Software.) [HKLM][64Bits] -- Opera 35.0.2066.37 =>.Opera Software ASA® O42 - Logiciel: PS_AIO_05_C4600_Software_Min - (.Hewlett-Packard.) [HKLM][64Bits] -- {00405945-70C1-4B1D-9A3C-45A2883366AF} =>.Hewlett-Packard O42 - Logiciel: Q-Dir - (...) [HKLM][64Bits] -- Q-Dir O42 - Logiciel: Qualcomm Atheros Direct Connect - (.Qualcomm Atheros.) [HKLM][64Bits] -- {21DD6041-7251-40FA-9D06-C5EB30268E0F} =>.Qualcomm Atheros O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Receitanet - (.Serpro - Serviço Federal de Processamento de Dados.) [HKLM][64Bits] -- ECC16E3C-16D1-4DC2-9D8A-6AC06B3005A5 O42 - Logiciel: Remote Keyboard - (.Sony Corporation.) [HKLM][64Bits] -- {25AF1025-095C-4AA9-A3FD-29710D3C3AE5} =>.Sony Corporation O42 - Logiciel: Scan - (.Hewlett-Packard.) [HKLM][64Bits] -- {0F367CA3-3B2F-43F9-A44A-25A8EE69E45D} =>.Hewlett-Packard O42 - Logiciel: Shark007 Advanced Codecs - (.Shark007.) [HKLM][64Bits] -- {8C0CAA7A-3272-4991-A808-2C7559DE3409} =>.Shark007 O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies =>.Hewlett Packard® O42 - Logiciel: SmartWebPrinting - (.Hewlett-Packard.) [HKLM][64Bits] -- {68A10D12-0D0F-4212-BDE6-D87FAD32A8FA} =>.Hewlett-Packard O42 - Logiciel: SMPlayer 14.9.0 - (.Ricardo Villalba.) [HKLM][64Bits] -- SMPlayer O42 - Logiciel: Software básico do dispositivo HP Deskjet 1000 J110 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {5CD4705D-8EED-4C6B-9B52-6A1FFC39332B} =>.Hewlett-Packard Co. O42 - Logiciel: Software de dispositivo do Chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {e48a2f61-851a-4155-82f9-af1b04db8c3b} =>.Intel(R) Corporation O42 - Logiciel: SolutionCenter - (.Hewlett-Packard.) [HKLM][64Bits] -- {4A70EF07-7F88-4434-BB61-D1DE8AE93DD4} =>.Hewlett-Packard O42 - Logiciel: Status - (.Hewlett-Packard.) [HKLM][64Bits] -- {AE8705FB-E13C-40A9-8A2D-68D6733FBFC2} =>.Hewlett-Packard O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 9 =>.TeamViewer® O42 - Logiciel: Toolbox - (.Hewlett-Packard.) [HKLM][64Bits] -- {6BBA26E9-AB03-4FE7-831A-3535584CA002} =>.Hewlett-Packard O42 - Logiciel: TrayApp - (.Hewlett-Packard.) [HKLM][64Bits] -- {DC0A5F99-FD66-433F-9D3A-05DCBA64BE42} =>.Hewlett-Packard O42 - Logiciel: UltraISO Premium V9.61 - (...) [HKLM][64Bits] -- UltraISO_is1 O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0416-1000-0000000FF1CE}_Office15.PROPLUS_{45AD9785-5503-4B26-981A-AF62A355ADF2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0416-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: VAIO - Teclado Remoto - (.Sony Corporation.) [HKLM][64Bits] -- {7396FB15-9AB4-4B78-BDD8-24A9C15D2C65} =>.Sony Corporation® O42 - Logiciel: VAIO - Xperia Link - (.Sony Corporation.) [HKLM][64Bits] -- {D91558BF-D1F3-411F-AEFE-8774CB406512} =>.Sony Corporation® O42 - Logiciel: VAIO Control Center - (.Sony Corporation.) [HKLM][64Bits] -- {72042FA6-5609-489F-A8EA-3C2DD650F667} =>.Sony Corporation® O42 - Logiciel: VAIO Event Service - (.Sony Corporation.) [HKLM][64Bits] -- {73D8886A-D416-4687-B609-0D3836BA410C} =>.Sony Corporation® O42 - Logiciel: VAIO Smart Network - (.Sony Corporation.) [HKLM][64Bits] -- {0899D75A-C2FC-42EA-A702-5B9A5F24EAD5} =>.Sony Corporation® O42 - Logiciel: VAIO Update - (.Sony Corporation.) [HKLM][64Bits] -- {9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2} =>.Sony Corporation® O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F} =>.DivX, Inc O42 - Logiciel: VCCx86 - (.Sony Corporation.) [HKLM][64Bits] -- {9B088046-8A01-4355-99DD-8530C022F682} =>.Sony Corporation O42 - Logiciel: VESx64 - (.Sony Corporation.) [HKLM][64Bits] -- {F1DC5C16-9B1F-467B-85E3-CB48C27AC50D} =>.Sony Corporation O42 - Logiciel: VESx86 - (.Sony Corporation.) [HKLM][64Bits] -- {3A94F54D-A8A4-4B82-B346-92B4D56A2708} =>.Sony Corporation O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o. O42 - Logiciel: VSNx64 - (.Sony Corporation.) [HKLM][64Bits] -- {F2611404-06BF-4E67-A5B7-8DB2FFC1CBF6} =>.Sony Corporation O42 - Logiciel: VSNx86 - (.Sony Corporation.) [HKLM][64Bits] -- {A49A517F-5332-4665-922C-6D9AD31ADD4F} =>.Sony Corporation O42 - Logiciel: VU5x64 - (.Sony Corporation .) [HKLM][64Bits] -- {6B7DE186-374B-4873-AEC1-7464DA337DD6} =>.Sony Corporation O42 - Logiciel: VU5x86 - (.Sony Corporation .) [HKLM][64Bits] -- {9D12A8B5-9D41-4465-BF11-70719EB0CD02} =>.Sony Corporation O42 - Logiciel: Warsaw 1.11.0.42826 64 bits - (.GAS Tecnologia.) [HKLM][64Bits] -- {20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1 O42 - Logiciel: WebReg - (.Hewlett-Packard.) [HKLM][64Bits] -- {43CDF946-F5D9-4292-B006-BA0D92013021} =>.Hewlett-Packard O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wise Program Uninstaller 1.91 - (.WiseCleaner.com, Inc..) [HKLM][64Bits] -- Wise Program Uninstaller_is1 {52CCA8A5127FC14C6BE7074964FC480E} =>.WiseCleaner.com, Inc. O42 - Logiciel: x64 Components v4.8.7 - (.Shark007.) [HKLM][64Bits] -- Advanced x64Components_is1 =>.Shark007 O42 - Logiciel: XperiaLinkx86 - (.Sony Corporation.) [HKLM][64Bits] -- {EE402ACB-8269-4E44-9CA1-D81FDC4B4545} =>.Sony Corporation ---\\ HKCU & HKLM Software Keys (126) - 19s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\ArcSoft HKLM\SOFTWARE\Wow6432Node\Ashampoo HKLM\SOFTWARE\Wow6432Node\Atheros WiFi Driver Installation HKLM\SOFTWARE\Wow6432Node\Avg HKLM\SOFTWARE\Wow6432Node\AVG Tuneup HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Debug HKLM\SOFTWARE\Wow6432Node\DivX HKLM\SOFTWARE\Wow6432Node\EasyBoot Systems HKLM\SOFTWARE\Wow6432Node\ElcomSoft HKLM\SOFTWARE\Wow6432Node\Eset HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\ICE HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\LibreOffice HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Direct Connect HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\SMPlayer HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\Sony Corporation HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\TechSmith HKLM\SOFTWARE\Wow6432Node\The Document Foundation HKLM\SOFTWARE\Wow6432Node\TrendMicro HKLM\SOFTWARE\Wow6432Node\Trusteer HKLM\SOFTWARE\Wow6432Node\Visagesoft HKLM\SOFTWARE\Wow6432Node\Visicom Media HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\wtu HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AC3filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Alps HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\Ashampoo HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\AutoHelpDesk HKCU\SOFTWARE\Avg HKCU\SOFTWARE\Avg Secure Update HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Conexant HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Dindin HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\ElcomSoft HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Evernote HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GbAs HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\LAV HKCU\SOFTWARE\LAV64 HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-BE HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PDFEdit HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Softland HKCU\SOFTWARE\SoftwareOK.de HKCU\SOFTWARE\Sony Corporation HKCU\SOFTWARE\Suamusica HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\The Document Foundation HKCU\SOFTWARE\Thunderbird HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Trusteer HKCU\SOFTWARE\Visicom Media HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\LastScanTime HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Conteúdo das pastas Programs (256) - 29s O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\ArcSoft =>.ArcSoft, Inc.® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Ashampoo =>.Ashampoo GmbH & Co. KG® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Atheros WiFi Driver Installation O43 - CFD: 29/09/2015 - [] D -- C:\Program Files (x86)\AVG =>.AVG Technologies CZ, s.r.o.® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Bluetooth Suite O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 11/01/2016 - [] HD -- C:\Program Files (x86)\Diebold {58C005F9811C3FD333668072A04E0D1B} O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Dindin O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Elcomsoft O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Elcomsoft Password Recovery {1748F43D845D4B8E655BA399F2F7EF9F} O43 - CFD: 04/02/2016 - [] D -- C:\Program Files (x86)\ESET =>.ESET, spol. s r.o.® O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Foxit Software O43 - CFD: 22/11/2014 - [] D -- C:\Program Files (x86)\Free MP3 Cutter O43 - CFD: 11/01/2016 - [] HD -- C:\Program Files (x86)\GAS Tecnologia O43 - CFD: 12/02/2016 - [] AD -- C:\Program Files (x86)\GbPlugin {305BA2DD88FE398D8CF90790C9D266BA} O43 - CFD: 24/12/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 26/06/2015 - [] D -- C:\Program Files (x86)\HP =>.Hewlett Packard® O43 - CFD: 05/03/2015 - [] HD -- C:\Program Files (x86)\InstallJammer Registry O43 - CFD: 24/09/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Sony Corporation® O43 - CFD: 01/02/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Intel Driver Update Utility =>.Intel(R) Driver Update Utility® O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 06/02/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\LibreOffice 4 =>.The Document Foundation® O43 - CFD: 07/02/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\ManyCam {266F9E30991B0C3EFC03DA9B8CDDB68D} O43 - CFD: 24/12/2015 - [0] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 25/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation® O43 - CFD: 22/07/2015 - [] D -- C:\Program Files (x86)\MPC-HC =>.Open Source Developer, Fotis ZAFIROPOULOS® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software ASA® O43 - CFD: 10/11/2014 - [] D -- C:\Program Files (x86)\Programas RFB O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Shark007 O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\SMPlayer O43 - CFD: 16/01/2015 - [] D -- C:\Program Files (x86)\Softland O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Sony =>.Sony Corporation® O43 - CFD: 12/11/2014 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\UltraISO {11211B6C1D7687D789B2B9118C0D9622C42F} O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 11/06/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Wise {52CCA8A5127FC14C6BE7074964FC480E} O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 07/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Webcam Suite O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo O43 - CFD: 20/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dindin O43 - CFD: 16/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 8 O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Advanced PDF Editor O43 - CFD: 22/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free MP3 Cutter O43 - CFD: 07/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 26/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64 O43 - CFD: 01/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.4 O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Main O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam O43 - CFD: 24/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 25/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 22/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Editor 4.5 O43 - CFD: 10/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shark007 Codecs O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMPlayer O43 - CFD: 24/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Program Uninstaller O43 - CFD: 25/06/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Advanced O43 - CFD: 07/11/2014 - [0] SHD -- C:\ProgramData\Ambiente de trabalho O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 18/07/2015 - [] HD -- C:\ProgramData\ArcSoft O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Ashampoo O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Aspell O43 - CFD: 22/11/2014 - [] D -- C:\ProgramData\Atheros O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\Avg O43 - CFD: 03/07/2015 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 29/09/2015 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Conexant O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 07/11/2014 - [0] SHD -- C:\ProgramData\Documentos O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 07/11/2014 - [0] SHD -- C:\ProgramData\Favoritos O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Foxit Advanced PDF Editor O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\GAS Tecnologia O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\GbPlugin O43 - CFD: 26/06/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 10/11/2014 - [] D -- C:\ProgramData\HP Product Assistant O43 - CFD: 01/02/2016 - [] D -- C:\ProgramData\Intel O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\IntelDLM O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 01/12/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\ManyCam O43 - CFD: 07/11/2014 - [0] SHD -- C:\ProgramData\Menu Iniciar O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\MFAData O43 - CFD: 08/12/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 07/11/2014 - [0] SHD -- C:\ProgramData\Modelos O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Nero O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 16/01/2015 - [] D -- C:\ProgramData\regid.2008-09.org.wixtoolset O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Shark007 O43 - CFD: 16/01/2015 - [] D -- C:\ProgramData\Softland O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Sony Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 11/12/2014 - [] D -- C:\ProgramData\Trusteer O43 - CFD: 10/11/2014 - [] D -- C:\ProgramData\WEBREG O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\wondershare O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 01/02/2016 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems O43 - CFD: 10/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 10/11/2014 - [] D -- C:\Program Files (x86)\Common Files\HP O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 01/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 06/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 25/06/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Adobe O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Advanced O43 - CFD: 18/07/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\ArcSoft O43 - CFD: 24/01/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\Ashampoo O43 - CFD: 16/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Aspell O43 - CFD: 21/12/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Atheros O43 - CFD: 29/09/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\AVG O43 - CFD: 14/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\CAD-KAS O43 - CFD: 01/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\DivX O43 - CFD: 14/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\eXPert PDF 9 O43 - CFD: 22/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\foobar2000 O43 - CFD: 16/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Foxit Advanced PDF Editor O43 - CFD: 14/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Foxit Software O43 - CFD: 23/12/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\HMYGSetting O43 - CFD: 10/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\HP O43 - CFD: 24/12/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\HpUpdate O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Identities O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\InstallShield O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Intel Corporation O43 - CFD: 27/01/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\LibreOffice O43 - CFD: 10/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Macromedia O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\ManyCam O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Cristiano\AppData\Roaming\Media Center Programs O43 - CFD: 11/02/2016 - [] SD -- C:\Users\Cristiano\AppData\Roaming\Microsoft O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Mozilla O43 - CFD: 03/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\MPC-HC O43 - CFD: 08/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Nero O43 - CFD: 12/09/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Notepad++ O43 - CFD: 14/05/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Opera Software O43 - CFD: 31/07/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Oracle O43 - CFD: 16/03/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\PCToolsFirewallPlus O43 - CFD: 21/01/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\Q-Dir O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Shark007 O43 - CFD: 16/01/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Softland O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Sony Corporation O43 - CFD: 31/08/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Sun O43 - CFD: 29/12/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\TeamViewer O43 - CFD: 08/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\TechSmith O43 - CFD: 02/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\Thunderbird O43 - CFD: 29/09/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\TuneUp Software O43 - CFD: 03/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\uTorrent O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\WinRAR O43 - CFD: 05/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\Wise Uninstaller O43 - CFD: 12/02/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\ZHP O43 - CFD: 10/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\A3 Labs O43 - CFD: 13/08/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Adobe O43 - CFD: 07/11/2014 - [0] SHD -- C:\Users\Cristiano\AppData\Local\Application Data O43 - CFD: 25/01/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Apps O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\ArcSoft O43 - CFD: 24/01/2016 - [] D -- C:\Users\Cristiano\AppData\Local\ashampoo O43 - CFD: 16/05/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Aspell O43 - CFD: 30/09/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Avg O43 - CFD: 29/09/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Avg2015 O43 - CFD: 29/09/2015 - [] D -- C:\Users\Cristiano\AppData\Local\AvgSetupLog O43 - CFD: 08/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\BMExplorer O43 - CFD: 20/07/2015 - [] D -- C:\Users\Cristiano\AppData\Local\CEF O43 - CFD: 10/02/2016 - [0] D -- C:\Users\Cristiano\AppData\Local\Comodo O43 - CFD: 11/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\CrashDumps O43 - CFD: 07/11/2014 - [0] D -- C:\Users\Cristiano\AppData\Local\Deployment O43 - CFD: 10/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Diagnostics O43 - CFD: 04/10/2015 - [0] D -- C:\Users\Cristiano\AppData\Local\ElevatedDiagnostics O43 - CFD: 25/01/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Evernote O43 - CFD: 29/01/2016 - [] D -- C:\Users\Cristiano\AppData\Local\EvernoteNW O43 - CFD: 22/07/2015 - [] D -- C:\Users\Cristiano\AppData\Local\fontconfig O43 - CFD: 16/05/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Foxit Advanced PDF Editor O43 - CFD: 03/07/2015 - [] D -- C:\Users\Cristiano\AppData\Local\GAS Tecnologia O43 - CFD: 10/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Google O43 - CFD: 02/06/2015 - [] D -- C:\Users\Cristiano\AppData\Local\GWX O43 - CFD: 07/11/2014 - [0] SHD -- C:\Users\Cristiano\AppData\Local\Histórico O43 - CFD: 10/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\HP O43 - CFD: 08/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\Intel O43 - CFD: 10/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\Macromedia O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\ManyCam O43 - CFD: 29/09/2015 - [] D -- C:\Users\Cristiano\AppData\Local\MFAData O43 - CFD: 11/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Microsoft O43 - CFD: 14/08/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Microsoft Help O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\Mozilla O43 - CFD: 14/05/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Opera Software O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\Programs O43 - CFD: 16/01/2015 - [] D -- C:\Users\Cristiano\AppData\Local\Startup O43 - CFD: 08/11/2014 - [] D -- C:\Users\Cristiano\AppData\Local\TechSmith O43 - CFD: 12/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Temp O43 - CFD: 07/11/2014 - [0] SHD -- C:\Users\Cristiano\AppData\Local\Temporary Internet Files O43 - CFD: 02/02/2016 - [] D -- C:\Users\Cristiano\AppData\Local\Thunderbird O43 - CFD: 11/12/2014 - [] D -- C:\Users\Cristiano\AppData\Local\Trusteer O43 - CFD: 16/05/2015 - [] D -- C:\Users\Cristiano\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 13/03/2015 - [] RD -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 12/02/2016 - [] RD -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices O43 - CFD: 25/01/2016 - [] D -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Evernote O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 08/11/2014 - [0] D -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 10/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014 O43 - CFD: 05/03/2015 - [] D -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2015 O43 - CFD: 31/01/2016 - [] RD -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 07/11/2014 - [] D -- C:\Users\Cristiano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL de Extensão do Shell do Armazenamento A.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensões do Shell para compartilhamento.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumeração das chaves StartupReg (4) - 0s O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\GerenciadorDindin [Key] . (...) -- C:\Program Files (x86)\Dindin\Dindin.exe O53 - SMSR:HKLM\...\startupreg\ISBMgr.exe [Key] . (.Sony Corporation - .) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe =>.Sony Corporation O53 - SMSR:HKLM\...\startupreg\ManyCam [Key] . (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files (x86)\ManyCam\ManyCam.exe ---\\ Lista dos drivers do sistema (83) - 7s O58 - SDL:2015/05/14 17:50:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0BC33707.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2015/05/14 17:51:37 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\19293794.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2015/05/14 17:55:57 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3D823AE5.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2012/02/18 18:16:39 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2012/02/18 18:16:39 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2011/09/20 12:23:40 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [317776] =>.Alps Electric Co., LTD.® O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2011/06/21 01:03:42 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2753536] =>.Atheros Communications, Inc. O58 - SDL:2015/11/06 15:50:34 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\Windows\System32\drivers\avgdiska.sys [184240] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:35:38 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\Windows\System32\drivers\avgidsdrivera.sys [315312] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/08/20 13:58:04 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\Windows\System32\drivers\avgidsha.sys [298416] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/10/21 16:16:48 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\Windows\System32\drivers\avgldx64.sys [284080] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/08/14 14:24:40 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\Windows\System32\drivers\avgloga.sys [398256] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:36:34 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\Windows\System32\drivers\avgmfx64.sys [258480] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/12/04 14:27:46 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\System32\drivers\avgrkx64.sys [42416] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2015/10/08 07:46:44 A . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\Windows\System32\drivers\avgtdia.sys [302000] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2009/06/10 17:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 17:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 22:19:07 A . (.Brother Industries Ltd. - Brother Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 17:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2011/03/31 15:36:56 A . (.Atheros - Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [259232] =>.Atheros O58 - SDL:2011/03/31 15:36:56 A . (.Atheros - Atheros Bluetooth AVDT driver.) -- C:\Windows\System32\drivers\btath_avdt.sys [109216] =>.Atheros O58 - SDL:2011/03/31 15:36:56 A . (.Atheros - Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [29344] =>.Atheros O58 - SDL:2011/03/31 15:36:56 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [36000] =>.Atheros O58 - SDL:2011/03/31 15:36:56 A . (.Atheros - Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [166048] =>.Atheros O58 - SDL:2011/03/31 15:36:58 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [59040] =>.Atheros O58 - SDL:2011/03/31 15:36:58 A . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [283296] =>.Atheros O58 - SDL:2011/03/31 15:36:58 A . (.Atheros - BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [287392] =>.Atheros O58 - SDL:2009/06/10 17:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2011/08/08 06:30:08 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\Windows\System32\drivers\CHDRT64.sys [1591936] =>.Conexant Systems, Inc.® O58 - SDL:2009/07/13 22:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 17:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2016/02/12 11:39:36 A . (.GAS Tecnologia - GAS Tecnologia - FAC.) -- C:\Windows\System32\drivers\gbpddfac64.sys [28888] {58C005F9811C3FD333668072A04E0D1B} O58 - SDL:2009/06/10 17:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2010/10/19 16:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2010/11/21 00:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2014/11/08 09:49:44 A . (.REALiX(tm) - HWiNFO AMD64 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO64A.SYS [27552] =>.Martin Malik - REALiX® O58 - SDL:2010/09/13 18:24:26 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [437272] =>.Intel Corporation® O58 - SDL:2013/11/21 08:31:28 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [632168] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/11/21 08:31:28 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [28008] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2012/02/18 18:16:39 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2011/07/19 03:39:56 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12287456] =>.Intel Corporation O58 - SDL:2009/07/13 22:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2011/03/23 11:46:40 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [317440] =>.Intel(R) Corporation O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation® O58 - SDL:2016/02/07 09:21:18 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:18 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] =>.Malwarebytes Corporation® O58 - SDL:2009/07/13 22:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2012/02/18 18:16:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2012/02/18 18:16:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2014/07/16 00:06:16 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [941784] =>.Realtek Semiconductor Corp® O58 - SDL:2012/03/12 01:08:08 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [340072] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/10 17:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2007/08/03 05:35:54 A . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\Windows\System32\drivers\SFEP.sys [11392] =>.Sony Corporation O58 - SDL:2009/07/13 22:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2015/07/07 21:08:48 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [35064] =>.Adlice® O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2016/02/12 11:19:35 A . (.GAS Tecnologia - GAS Tecnologia - FAC.) -- C:\Windows\System32\drivers\wsddfac.sys [101080] {58C005F9811C3FD333668072A04E0D1B} O58 - SDL:2015/11/24 10:04:26 A . (.GAS Tecnologia - Warsaw Device Driver 64 bits.) -- C:\Windows\System32\drivers\wsddin64.sys [148088] {305BA2DD88FE398D8CF90790C9D266BA} O58 - SDL:2015/03/18 11:23:04 N . (.GAS Tecnologia - GAS Tecnologia - PP.) -- C:\Windows\System32\drivers\wsddpp.sys [103640] {58C005F9811C3FD333668072A04E0D1B} O58 - SDL:2011/06/21 01:03:42 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\athrx.sys [2753536] =>.Atheros Communications, Inc. ---\\ Últimos ficheiros alterados ou criados (Utilizador) (1) - 15s O61 - LFC: 2016/02/10 13:13:44 A . (..) -- C:\Users\Cristiano\Desktop\zoek.exe [1309184] ---\\ Associações Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do snap-in de 'Visualizar eventos.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor do Registro.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de inicialização Internet (16) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software ASA® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por Usuário do.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ---\\ Pesquisa de infeção nos navegadores da Internet (3) - 18s O69 - SBI: SearchScopes [HKCU] {012E1000-F331-11DB-8314-0800200C9A66} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Listagem dos serviços iniciados pelo Svchost (33) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Serviço de Experiência com Aplicativo.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificado de Car.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL de Serviço do Servidor.) -- C:\Windows\system32\srvsvc.dll [236544] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente da Diretiva de Grupo.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\Windows\System32\ikeext.dll [861184] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Serviço de Áudio do Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gerenciador de Discagem Automática de Acess.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gerenciador de conexão de acesso remoto.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gerenciador de Interface Dinâmica.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia do Microsoft(R) Windo.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gerenciador de Conexões Remotas do Servidor.) -- C:\Windows\System32\termsrv.dll [686592] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2603008] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente de pla.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços do Shell do Windows.) -- C:\Windows\System32\shsvcs.dll [372736] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 em u.) -- C:\Windows\System32\iphlpsvc.dll [570368] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de serviço de logon secundário.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações de Aplicativos.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Descoberta iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Serviço Agendador de Classes de Multimídia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração da Área de Trabalho.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL de Serviço Pesquisador de Computadores.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Agendador de Tarefas.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Serviço de Gerenciamento de Chaves.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios de Problemas e Soluções.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [225792] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL do Serviço de Tema do Shell do Windows.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação do software.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Lista das exceções do FireWall (FirewallRules) (11) - 3s O87 - FAEL: "TCP Query User{76F41271-C430-411B-BBAD-68CBF5A92F54}C:\program files\microsoft office\office15\microsoft toolkit.exe" [In-None-P6-TRUE] .(...) -- C:\program files\microsoft office\office15\microsoft toolkit.exe (.not file.) O87 - FAEL: "UDP Query User{A4625FE7-F322-4BAE-A026-9B2AFD042F95}C:\program files\microsoft office\office15\microsoft toolkit.exe" [In-None-P17-TRUE] .(...) -- C:\program files\microsoft office\office15\microsoft toolkit.exe (.not file.) O87 - FAEL: "{25CE7849-453F-4062-87A0-513358350428}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dindin\Dindin.exe O87 - FAEL: "{83180342-3929-4607-A00D-5892A778E1B7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Dindin\Dindin.exe O87 - FAEL: "{E2A1C634-65CB-4A6D-A361-437DB27AF819}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dindin\Dindin.exe O87 - FAEL: "{31030003-F234-4A73-B0FB-681F34D9DEA1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Dindin\Dindin.exe O87 - FAEL: "{A072AF22-DEDF-4548-9812-2FF4ECB571E5}" [In-None-P17-TRUE] .(.GAS Tecnologia LTDA - GAS Tecnologia - Core.) -- C:\Program Files\Diebold\Warsaw\core.exe {305BA2DD88FE398D8CF90790C9D266BA} O87 - FAEL: "{3847B844-0931-490D-86B1-D768C404ECAD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{8297513D-7F22-4F7F-9E84-6897DB08E867}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{EE716790-3DB9-467B-96F9-6A97E8D365D3}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{C85C1F84-2585-4B0B-BECA-CEA8857BE06B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico ---\\ Scâner Aditional (3) - 0s HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS ---\\ Resumo dos elementos encontrados na sua estação de trabalho (3) - 0s http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AVGSafeGuard http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=989 =>HackTool.KMSpico ~ End of the scan, 43657 items in 00h07mn20s (1060)(0)