Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:05-03-2016 01 Executado por Valemar4 (administrador) em VALEMAR4-HP (23-03-2016 13:19:21) Executando a partir de C:\Users\Valemar4\Downloads Perfis Carregados: Valemar4 (Perfis Disponíveis: Valemar4) Platform: Windows 7 Home Basic Service Pack 1 (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: FF) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe (arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATII2E.EXE (Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe (Easybits) C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (DotC United Inc) C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\CNYHKEY.exe () C:\ProgramData\WindowsMsg\osmsg.exe () C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\ModLEDKey.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (VLOME) C:\Users\Valemar4\AppData\Local\Temp\is-F9O6R.tmp\print.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\ccSvcHst.exe (CyberLink) C:\Program Files (x86)\Cyberlink\YouCam\YCMMirage.exe () C:\Users\Valemar4\AppData\Local\Temp\10813\Setup.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe () C:\Users\Valemar4\AppData\Local\Setup Wizard\e45aa884-b07e-4574-bbea-7a863fd22ff9\primarycolorsetup.exe () C:\Users\Valemar4\AppData\Local\Setup Wizard\999ab305-5b60-470a-85b7-bade092df235\mixvideoplayersetup.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE (Microsoft Corporation) C:\Windows\splwow64.exe (Bumalagoh ) C:\Users\Valemar4\AppData\Local\Temp\13216\MediaDownloaderSetup.exe () C:\Users\Valemar4\AppData\Local\Temp\13608\vlc.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPUIManager.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe () C:\Users\Valemar4\AppData\Local\Temp\13726\skype.exe () C:\Program Files (x86)\MixVideoPlayer\LTV2.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe () C:\Users\Valemar4\AppData\Local\Setup Wizard\9eccf438-a248-4335-83c0-ce706ce6cbaa\primarycolorsetup.exe (Skype Technologies S.A.) C:\Users\Valemar4\AppData\Local\Setup Wizard\95bccbca-29b3-407b-ae77-73e83979ad42\skypesetupfull.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6463592 2012-02-13] (Realtek Semiconductor) HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard) HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [BATINDICATOR] => C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\BATINDICATOR.exe HKLM-x32\...\Run: [LaunchHPOSIAPP] => C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\LaunchApp.exe [385024 2009-04-03] (Hewlett-Packard) HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation) HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-09-27] (EasyBits Software AS) HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-08-12] (PDF Complete Inc) HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1444880 2015-12-03] (Easybits) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\...\Run: [EPSON L200 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGUL.EXE [232448 2010-12-07] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATII2E.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\...\Run: [osmsg] => C:\ProgramData\WindowsMsg\osmsg.exe [2036736 2016-03-23] () HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\...\Run: [Pritc] => C:\Users\Valemar4\AppData\Local\Temp\is-F9O6R.tmp\print.exe [2955264 2016-03-03] (VLOME) <===== ATENÇÃO ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2012-10-18] (EasyBits Software Corp.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt Tcpip\Parameters: [DhcpNameServer] 201.6.2.168 201.6.2.68 Tcpip\..\Interfaces\{E35440B1-15FF-4753-96D2-4C7EB0B61A1D}: [DhcpNameServer] 201.6.2.168 201.6.2.68 Internet Explorer: ================== HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystart.com/?pr=vmn&id=mystarttb&v=5_5&ent=hp_5153&src=5153 HKU\S-1-5-21-1453265313-3233195297-3496308869-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPCON/17 SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://br.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://pt.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://br.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://pt.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://www.mystart.com/results.php?gen=ms&pr=vmn&id=mystarttb&v=5_5&ent=ch_5153&q={searchTerms} SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://br.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://pt.wikipedia.org/wiki/Special:Search?search={searchTerms} BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Symantec VIP Access Add-On -> {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} -> C:\Program Files (x86)\Symantec\VIP Access Client\64bit\VIPAddOnForIE64.dll [2011-12-05] (Symantec Corporation) BHO: MyStart Toolbar -> {ccb24e92-62c4-4c53-95d2-65f9eed476bc} -> C:\Program Files (x86)\mystarttb\mystartDx64.dll [2015-12-11] () BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-02-25] (HP) BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\coIEPlg.dll [2011-08-11] (Symantec Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\IPS\IPSBHO.DLL [2011-07-25] (Symantec Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: PriceFountain -> {b608cc98-54de-4775-96c9-097de398500c} -> C:\Users\Valemar4\AppData\Local\PriceFountain\PriceFountainIE.dll [2015-06-18] () BHO-x32: Symantec VIP Access Add-On -> {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} -> C:\Program Files (x86)\Symantec\VIP Access Client\VIPAddOnForIE.dll [2011-12-05] (Symantec Corporation) BHO-x32: MyStart Toolbar -> {ccb24e92-62c4-4c53-95d2-65f9eed476bc} -> C:\Program Files (x86)\mystarttb\mystartDx.dll [2015-12-11] () BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-08-01] (Microsoft Corporation.) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-02-25] (HP) Toolbar: HKLM - MyStart Toolbar - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - C:\Program Files (x86)\mystarttb\mystartDx64.dll [2015-12-11] () Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-08-01] (Microsoft Corporation.) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\coIEPlg.dll [2011-08-11] (Symantec Corporation) Toolbar: HKLM-x32 - MyStart Toolbar - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - C:\Program Files (x86)\mystarttb\mystartDx.dll [2015-12-11] () Toolbar: HKU\S-1-5-21-1453265313-3233195297-3496308869-1000 -> Sem Nome - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Nenhum Arquivo FireFox: ======== FF ProfilePath: C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1 FF NewTab: hxxp://www.yessearches.com/?ts=AHEpC3QoBHMqBE..&v=20160315&uid=7F06DEB5992B1BED0C8F021C1A310590&ptid=wak&mode=ffseng FF DefaultSearchEngine: yessearches FF DefaultSearchEngine.US: data:text/plain,browser.search.defaultenginename.US=yessearches FF SelectedSearchEngine: yessearches FF Homepage: about:home FF Keyword.URL: hxxp://www.yessearches.com/chrome.php?uid=7F06DEB5992B1BED0C8F021C1A310590&ptid=wak&ts=AHEpC3QoBHMqBE..&v=20160315&mode=ffexttoolbar&q= FF SelectedSearchEngine: Search The Web FF Homepage: hxxp://www.mystart.com/?pr=vmn&id=mystarttb&v=5_5&ent=hp_5153&src=5153 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-11] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-11] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=1.2.22 -> C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIIPT.dll [2011-09-28] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIUpdater.dll [2011-09-28] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-07] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF user.js: detected! => C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\8lhgb1zf.default\user.js [2016-03-23] FF user.js: detected! => C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\user.js [2016-03-23] FF SearchPlugin: C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml [2016-03-23] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mystarttb.xml [2016-03-23] FF Extension: System.Runtime.Remoting.Metadata.W3cXsd2001.SoapNonPositiveInteger - C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{2BB50B33-6FFB-61DA-CBFF-8C8C8CDF063D} [2016-03-23] [não assinado] FF Extension: MyStart Toolbar - C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c}.xpi [2015-12-11] FF Extension: System.Runtime.Remoting.Metadata.W3cXsd2001.SoapNonPositiveInteger - C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\8lhgb1zf.default\Extensions\{2BB50B33-6FFB-61DA-CBFF-8C8C8CDF063D} [2015-12-07] [não assinado] FF Extension: MyStart Toolbar - C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\8lhgb1zf.default\Extensions\{607b689f-7600-45e4-b8e5-887f72dab15c}.xpi [2015-12-11] FF Extension: GsearchFinder - C:\Users\Valemar4\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi [2016-03-14] FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-19] [não assinado] FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\coFFPlgn FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\coFFPlgn [2016-03-23] [não assinado] FF HKLM-x32\...\Firefox\Extensions: [VIP4X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client [2015-12-03] [não assinado] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\Extensions\Chrome.crx [2012-10-18] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 CalendarSynchService; C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe [16384 2011-08-16] (Hewlett-Packard) [Arquivo não assinado] R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-11] (Seiko Epson Corporation) R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [Arquivo não assinado] S2 ggbugreport; C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [1592888 2016-03-15] () R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [26680 2016-02-18] (Hewlett-Packard Company) R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-23] (DotC United Inc) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\19.1.0.28\ccSvcHst.exe [138760 2011-08-10] (Symantec Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-08-12] (PDF Complete Inc) R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc) R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2011-12-05] (Symantec Corporation) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 Winsere; C:\Program Files (x86)\Winsere\Winsere\Winsere.exe [306736 2016-03-15] () ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\BASHDefs\20160125.001\BHDrvx64.sys [1665608 2015-11-13] (Symantec Corporation) R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1301000.01C\ccSetx64.sys [167048 2011-08-08] (Symantec Corporation) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-12-07] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [157520 2015-12-03] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\IPSDefs\20160201.001\IDSvia64.sys [767224 2015-12-04] (Symantec Corporation) R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-23] (DotC United Inc) S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20160201.056\ENG64.SYS [138488 2016-01-20] (Symantec Corporation) S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20160201.056\EX64.SYS [2148080 2016-01-20] (Symantec Corporation) S3 pmxdrv; C:\Windows\system32\drivers\pmxdrv.sys [31152 2012-10-18] () S3 SRTSP; C:\Windows\system32\drivers\NISx64\1301000.01C\SRTSP64.SYS [729720 2011-08-02] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1301000.01C\SRTSPX64.SYS [37496 2011-08-02] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NISx64\1301000.01C\SYMDS64.SYS [451192 2011-07-25] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NISx64\1301000.01C\SYMEFA64.SYS [1084536 2011-07-28] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [174200 2012-10-18] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NISx64\1301000.01C\Ironx64.SYS [189560 2011-07-25] (Symantec Corporation) R1 SymNetS; C:\Windows\system32\drivers\NISx64\1301000.01C\SYMNETS.SYS [401016 2011-07-25] (Symantec Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-03-23 13:08 - 2016-03-23 13:10 - 00000000 ____D C:\Users\Valemar4\AppData\LocalLow\mystarttb 2016-03-23 13:03 - 2016-03-23 13:15 - 00039002 _____ C:\Users\Valemar4\Downloads\Addition.txt 2016-03-23 13:00 - 2016-03-23 13:19 - 00024027 _____ C:\Users\Valemar4\Downloads\FRST.txt 2016-03-23 12:59 - 2016-03-23 13:19 - 00000000 ____D C:\FRST 2016-03-23 12:59 - 2016-03-23 12:59 - 02374144 _____ (Farbar) C:\Users\Valemar4\Downloads\FRST64.exe 2016-03-23 12:58 - 2016-03-23 12:58 - 01725440 _____ (Farbar) C:\Users\Valemar4\Downloads\FRST.exe 2016-03-23 12:56 - 2016-03-23 13:10 - 00000000 ____D C:\Program Files (x86)\mystarttb 2016-03-23 12:56 - 2016-03-23 13:08 - 00000000 ____D C:\Program Files (x86)\MixVideoPlayer 2016-03-23 12:53 - 2016-03-23 12:53 - 00001731 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk 2016-03-23 12:53 - 2016-03-23 12:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC 2016-03-23 12:34 - 2016-03-23 12:42 - 00000000 ____D C:\Users\Valemar4\AppData\Local\app 2016-03-23 12:21 - 2016-03-23 12:21 - 00000000 ____D C:\Users\Valemar4\AppData\Roaming\MCorp 2016-03-23 12:12 - 2016-03-23 12:15 - 00000304 _____ C:\Windows\Tasks\Price Fountain.job 2016-03-23 12:12 - 2016-03-23 12:12 - 00003256 _____ C:\Windows\System32\Tasks\Price Fountain 2016-03-23 12:12 - 2016-03-23 12:11 - 00060136 _____ (DotC United Inc) C:\Windows\system32\Drivers\MPCKpt.sys 2016-03-23 12:11 - 2016-03-23 13:12 - 00000000 ____D C:\Users\Valemar4\AppData\Local\Setup Wizard 2016-03-23 12:11 - 2016-03-23 12:36 - 00000000 ____D C:\Program Files (x86)\AnyFlix 2016-03-23 12:11 - 2016-03-23 12:35 - 00000000 ____D C:\Users\Valemar4\AppData\Local\PriceFountain 2016-03-23 12:11 - 2016-03-23 12:16 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner 2016-03-23 12:11 - 2016-03-23 12:11 - 00003622 _____ C:\Windows\System32\Tasks\PFExe 2016-03-23 12:11 - 2016-03-23 12:11 - 00000000 ____D C:\Users\Valemar4\AppData\Roaming\PriceFountain 2016-03-23 12:11 - 2016-03-23 12:11 - 00000000 ____D C:\ProgramData\47be13b6-75e3-0 2016-03-23 12:11 - 2016-03-23 12:11 - 00000000 ____D C:\ProgramData\47be13b6-1863-1 2016-03-23 12:10 - 2016-03-23 12:10 - 00003030 _____ C:\Windows\System32\Tasks\ttwifi 2016-03-23 12:10 - 2016-03-23 12:10 - 00002974 _____ C:\Windows\System32\Tasks\Pritc 2016-03-23 12:10 - 2016-03-23 12:10 - 00002926 _____ C:\Windows\System32\Tasks\osTip 2016-03-23 12:09 - 2016-03-23 12:10 - 00000000 ____D C:\ProgramData\WindowsMsg 2016-03-23 12:08 - 2016-03-23 12:08 - 00015160 _____ C:\Windows\System32\Tasks\WinTaske 2016-03-23 12:08 - 2016-03-23 12:08 - 00000000 ____D C:\Users\Valemar4\AppData\Local\F727A298-4DB4-456A-AC54-A93EA5F8554D 2016-03-23 12:08 - 2016-03-23 12:08 - 00000000 ____D C:\Users\Valemar4\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 2016-03-23 12:08 - 2016-03-23 12:08 - 00000000 ____D C:\Program Files (x86)\WinTaske 2016-03-23 12:08 - 2016-03-23 12:08 - 00000000 ____D C:\Program Files (x86)\Winsere 2016-03-23 12:07 - 2016-03-23 12:52 - 00000000 ____D C:\Program Files (x86)\SearchesToYesbnd 2016-03-23 12:07 - 2016-03-23 12:07 - 00000000 ____D C:\Users\Public\Documents\dmp 2016-03-23 12:05 - 2016-03-23 12:06 - 00154816 _____ C:\Users\Valemar4\Downloads\Corel Draw X7 Serial Number And Keygen Full Free D.exe 2016-03-23 11:12 - 2016-03-23 11:13 - 00011924 _____ C:\Users\Valemar4\Downloads\Pasta1.xlsx 2016-03-22 17:03 - 2016-03-22 17:03 - 00289590 _____ C:\Users\Valemar4\Desktop\cbs_jesse.pdf 2016-03-22 16:31 - 2016-03-22 16:31 - 00194841 _____ C:\Users\Valemar4\Downloads\regulamento-protecao_service.pdf 2016-03-22 16:28 - 2016-03-22 16:28 - 00616907 _____ C:\Users\Valemar4\Downloads\insured-guidance-defense-guide.pdf 2016-03-22 16:21 - 2016-03-22 16:22 - 01435454 _____ C:\Users\Valemar4\Downloads\Enc_ CERTIFICADOS(2).zip 2016-03-22 15:44 - 2016-03-22 15:44 - 00209999 _____ C:\Users\Valemar4\Downloads\FICHA DE CBSN THIAGOMENESES.pdf 2016-03-22 15:32 - 2016-03-22 15:32 - 00259940 _____ C:\Users\Valemar4\Desktop\Patricia_pass.pdf 2016-03-22 15:29 - 2016-03-22 15:29 - 03392503 _____ C:\Users\Valemar4\Downloads\ENC_ Reembarque(1).zip 2016-03-22 15:28 - 2016-03-22 15:29 - 01435454 _____ C:\Users\Valemar4\Downloads\ENC_ CERTIFICADOS(1).zip 2016-03-21 18:13 - 2016-03-21 15:14 - 00164097 _____ C:\Users\Valemar4\Desktop\Clarissa Maria de Luccas Carvalho-Resume.pdf 2016-03-21 18:13 - 2016-03-21 15:14 - 00114974 _____ C:\Users\Valemar4\Desktop\Priscila de Lucas Carvalho-Resume.pdf 2016-03-21 15:13 - 2016-03-21 15:13 - 00265218 _____ C:\Users\Valemar4\Downloads\ENC_ Resume Clarissa e Priscila.zip 2016-03-21 14:54 - 2016-03-21 14:54 - 01435454 _____ C:\Users\Valemar4\Downloads\Enc_ CERTIFICADOS.zip 2016-03-21 12:31 - 2016-03-21 12:32 - 03392503 _____ C:\Users\Valemar4\Downloads\ENC_ Reembarque.zip 2016-03-21 12:10 - 2016-03-21 12:10 - 00364500 _____ C:\Users\Valemar4\Desktop\Foto de página inteira.pdf 2016-03-21 10:14 - 2016-03-21 10:14 - 03291106 _____ C:\Users\Valemar4\Downloads\RE_ Documentos de reembarque(5).zip 2016-03-21 09:08 - 2016-03-22 12:35 - 00000000 ____D C:\Users\Valemar4\Desktop\curso de rest 2016-03-19 11:28 - 2016-03-19 11:28 - 01634876 _____ C:\Users\Valemar4\Downloads\MANUAL DO GARÇOM 2.pdf 2016-03-19 11:26 - 2016-03-19 11:26 - 03658733 _____ C:\Users\Valemar4\Downloads\GARCOM1SITEV181013.pdf 2016-03-19 11:26 - 2016-03-19 11:26 - 00727797 _____ C:\Users\Valemar4\Downloads\Cartilha-GARCOM_DIGITAL_paginaA5_final.pdf 2016-03-19 09:20 - 2016-03-22 09:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-03-18 16:14 - 2016-03-18 16:14 - 00209508 _____ C:\Users\Valemar4\Downloads\FICHA DE CBSN - BEATRIZLIPPI.pdf 2016-03-17 17:02 - 2016-03-17 17:02 - 01417156 _____ C:\Users\Valemar4\Downloads\1- Medical Luiz Marcelo de Souza.pdf 2016-03-17 11:20 - 2016-03-17 11:21 - 00723949 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ Araujo Pires Djane(2).zip 2016-03-17 11:20 - 2016-03-17 11:20 - 00723949 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ Araujo Pires Djane.zip 2016-03-17 11:20 - 2016-03-17 11:20 - 00723949 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ Araujo Pires Djane(1).zip 2016-03-16 19:08 - 2016-03-16 19:08 - 06387639 _____ C:\Users\Valemar4\Downloads\cartilha_MEI_web.pdf 2016-03-16 16:09 - 2016-03-16 16:09 - 05289878 _____ C:\Users\Valemar4\Downloads\documentos djane.zip 2016-03-16 10:29 - 2016-03-16 10:29 - 00110770 _____ C:\Users\Valemar4\Downloads\022869c1e47383a928b2be72dfc982ed.pdf 2016-03-16 10:20 - 2016-03-16 10:20 - 07468752 _____ C:\Users\Valemar4\Downloads\Medical Djane e Augusto.zip 2016-03-16 09:06 - 2016-03-16 09:06 - 01907896 _____ C:\Users\Valemar4\Downloads\Documentos para Reembarque.zip 2016-03-16 09:05 - 2016-03-16 09:05 - 03314928 _____ C:\Users\Valemar4\Downloads\Medical Djane e rodrigo Augusto.zip 2016-03-16 09:05 - 2016-03-16 09:05 - 01414700 _____ C:\Users\Valemar4\Downloads\panama book de djane e rodrigo.zip 2016-03-15 17:23 - 2016-03-15 17:24 - 04267237 _____ C:\Users\Valemar4\Downloads\contrato e demais docs.zip 2016-03-15 15:05 - 2016-03-15 15:05 - 00949404 _____ C:\Users\Valemar4\Downloads\cad15f547cbbc2a3d0682609804798e2.pdf 2016-03-15 14:35 - 2016-03-15 14:35 - 01603399 _____ C:\Users\Valemar4\Downloads\Documentação para reembarque 2016.zip 2016-03-15 14:20 - 2016-03-16 16:10 - 00000000 ____D C:\Users\Valemar4\Documents\DJANE 2016-03-15 11:15 - 2016-03-15 11:15 - 00157159 _____ C:\Users\Valemar4\Downloads\6d1b974d1ed310ca62ceaf46ee8caf6f.pdf 2016-03-15 10:54 - 2016-03-15 10:54 - 00000000 ____D C:\Users\Valemar4\AppData\Roaming\Thunderbird 2016-03-15 10:54 - 2016-03-15 10:54 - 00000000 ____D C:\Users\Valemar4\AppData\Local\Thunderbird 2016-03-15 10:53 - 2016-03-15 10:53 - 00001215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2016-03-15 10:53 - 2016-03-15 10:53 - 00001203 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2016-03-15 10:53 - 2016-03-15 10:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2016-03-15 10:49 - 2016-03-15 10:50 - 34118560 _____ (Mozilla) C:\Users\Valemar4\Downloads\Thunderbird Setup 38.7.0.exe 2016-03-15 10:35 - 2016-03-15 10:30 - 00306090 _____ C:\Users\Valemar4\Desktop\VISTO_NATALIA.pdf 2016-03-15 09:41 - 2016-03-15 09:41 - 00549456 _____ C:\Users\Valemar4\Downloads\897691a980dc7a366059834773714aed.pdf 2016-03-14 12:10 - 2016-03-18 17:45 - 00014336 ____H C:\Users\Valemar4\Documents\photothumb.db 2016-03-14 11:27 - 2016-03-14 11:27 - 01045280 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ RES_ RES_ RES_ RES_ RES_ Documents.zip 2016-03-14 11:24 - 2016-03-14 11:24 - 04602769 _____ C:\Users\Valemar4\Downloads\RE_ ENC_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ Documents.zip 2016-03-14 10:39 - 2016-03-14 10:39 - 00005988 _____ C:\Users\Valemar4\Downloads\contract_mscea7bfcd1e1ebc61ca175532463158076.pdf 2016-03-14 09:37 - 2016-03-14 09:37 - 00523994 _____ C:\Users\Valemar4\Downloads\evaluation_preview(3).pdf 2016-03-11 16:39 - 2016-03-11 16:39 - 00012162 _____ C:\Users\Valemar4\Downloads\CREW T RECIFE 2.xlsx 2016-03-11 15:51 - 2016-03-11 15:53 - 09550071 _____ C:\Users\Valemar4\Downloads\Fw_Bom dia(1).zip 2016-03-11 15:09 - 2016-03-11 16:09 - 11035328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2016-03-11 14:49 - 2016-03-11 14:49 - 01410211 _____ C:\Users\Valemar4\Downloads\1 - Medical Luiz Marcelo de Souza.pdf 2016-03-11 14:36 - 2016-03-11 14:37 - 09550071 _____ C:\Users\Valemar4\Downloads\Fw_Bom dia.zip 2016-03-11 14:36 - 2016-03-11 14:36 - 04809382 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ Documents(1).zip 2016-03-11 13:11 - 2016-03-11 13:12 - 04809382 _____ C:\Users\Valemar4\Downloads\ENC_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ RES_ Documents.zip 2016-03-11 13:02 - 2016-03-11 13:03 - 06485066 _____ C:\Users\Valemar4\Downloads\Re_ documentos para primeiro embarque(2).zip 2016-03-11 09:53 - 2016-03-11 09:53 - 00520479 _____ C:\Users\Valemar4\Downloads\manual_marisa_odonto_site.pdf 2016-03-10 17:42 - 2016-03-10 17:42 - 00061343 _____ C:\Users\Valemar4\Downloads\ENC_ Thaís de Araujo Figueira Xavier(1).zip 2016-03-10 17:42 - 2016-03-10 17:42 - 00006536 _____ C:\Users\Valemar4\Downloads\De Araujo Figueira Xavier Thais.pdf 2016-03-10 16:29 - 2016-03-10 16:29 - 00139996 _____ C:\Users\Valemar4\Downloads\convstcw_2016.pdf 2016-03-10 15:44 - 2016-03-10 15:44 - 00061343 _____ C:\Users\Valemar4\Downloads\ENC_ Thaís de Araujo Figueira Xavier.zip 2016-03-10 11:27 - 2016-03-10 11:27 - 00009053 _____ C:\Users\Valemar4\Downloads\Benvenutti Zen Heloisa Raquel - Ticket(1).pdf 2016-03-09 14:45 - 2016-03-09 14:45 - 00010006 _____ C:\Users\Valemar4\Downloads\Quadro de Comissões agencias.xlsx 2016-03-09 14:17 - 2016-03-09 14:17 - 00009053 _____ C:\Users\Valemar4\Downloads\Benvenutti Zen Heloisa Raquel - Ticket.pdf 2016-03-09 11:39 - 2016-03-09 11:39 - 00142801 _____ C:\Users\Valemar4\Downloads\CV - Leandro Candido Peixoto - GSO.pdf 2016-03-09 09:52 - 2016-03-09 09:53 - 08438118 _____ C:\Users\Valemar4\Downloads\Medical Form.zip 2016-03-09 09:21 - 2016-02-12 15:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-03-09 09:21 - 2016-02-12 15:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-03-09 09:21 - 2016-02-12 15:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-03-09 09:21 - 2016-02-12 15:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-03-09 09:21 - 2016-02-12 15:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-03-09 09:21 - 2016-02-12 15:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-03-09 09:21 - 2016-02-12 15:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-03-09 09:21 - 2016-02-12 15:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-03-09 09:21 - 2016-02-12 15:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-03-09 09:21 - 2016-02-12 15:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-03-09 09:21 - 2016-02-12 15:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-03-09 09:21 - 2016-02-12 15:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-03-09 09:21 - 2016-02-12 15:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-03-09 09:21 - 2016-02-12 15:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-03-09 09:21 - 2016-02-12 15:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-03-09 09:21 - 2016-02-12 15:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-03-09 09:21 - 2016-02-09 03:53 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-03-09 09:21 - 2016-02-09 03:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-03-09 09:21 - 2016-02-08 18:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-03-09 09:21 - 2016-02-08 17:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-03-09 09:21 - 2016-02-08 17:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-03-09 09:21 - 2016-02-08 17:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-03-09 09:21 - 2016-02-08 17:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-03-09 09:21 - 2016-02-08 17:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-03-09 09:21 - 2016-02-08 17:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-03-09 09:21 - 2016-02-08 17:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-03-09 09:21 - 2016-02-08 17:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-03-09 09:21 - 2016-02-08 17:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-03-09 09:21 - 2016-02-08 17:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-03-09 09:21 - 2016-02-08 17:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-03-09 09:21 - 2016-02-08 17:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-03-09 09:21 - 2016-02-08 17:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-03-09 09:21 - 2016-02-08 17:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-03-09 09:21 - 2016-02-08 17:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-03-09 09:21 - 2016-02-08 17:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-03-09 09:21 - 2016-02-08 17:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-03-09 09:21 - 2016-02-08 17:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-03-09 09:21 - 2016-02-08 17:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-03-09 09:21 - 2016-02-08 17:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-03-09 09:21 - 2016-02-08 17:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-03-09 09:21 - 2016-02-08 17:05 - 25816576 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-03-09 09:21 - 2016-02-08 17:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-03-09 09:21 - 2016-02-08 17:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-03-09 09:21 - 2016-02-08 17:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-03-09 09:21 - 2016-02-08 17:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-03-09 09:21 - 2016-02-08 17:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-03-09 09:21 - 2016-02-08 16:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-03-09 09:21 - 2016-02-08 16:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-03-09 09:21 - 2016-02-08 16:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-03-09 09:21 - 2016-02-08 15:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-03-09 09:21 - 2016-02-08 15:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-03-09 09:21 - 2016-02-08 15:27 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-03-09 09:21 - 2016-02-08 15:27 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-03-09 09:21 - 2016-02-08 15:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-03-09 09:21 - 2016-02-08 15:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-03-09 09:21 - 2016-02-08 15:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-03-09 09:21 - 2016-02-08 15:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-03-09 09:21 - 2016-02-08 15:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-03-09 09:21 - 2016-02-08 15:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-03-09 09:21 - 2016-02-08 15:16 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-03-09 09:21 - 2016-02-08 15:15 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-03-09 09:21 - 2016-02-08 15:14 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-03-09 09:21 - 2016-02-08 15:14 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-03-09 09:21 - 2016-02-08 15:13 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-03-09 09:21 - 2016-02-08 15:13 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-03-09 09:21 - 2016-02-08 15:06 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-03-09 09:21 - 2016-02-08 15:03 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-03-09 09:21 - 2016-02-08 14:55 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-03-09 09:21 - 2016-02-08 14:54 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-03-09 09:21 - 2016-02-08 14:52 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-03-09 09:21 - 2016-02-08 14:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-03-09 09:21 - 2016-02-08 14:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-03-09 09:21 - 2016-02-08 14:47 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-03-09 09:21 - 2016-02-08 14:37 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-03-09 09:21 - 2016-02-08 14:35 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-03-09 09:21 - 2016-02-08 14:34 - 00798720 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-03-09 09:21 - 2016-02-08 14:33 - 14613504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-03-09 09:21 - 2016-02-08 14:33 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-03-09 09:21 - 2016-02-08 14:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-03-09 09:21 - 2016-02-08 14:19 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-03-09 09:21 - 2016-02-08 14:07 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-03-09 09:21 - 2016-02-08 13:55 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-03-09 09:21 - 2016-02-04 14:52 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-03-09 09:21 - 2016-02-03 15:58 - 00862208 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-03-09 09:21 - 2016-02-03 15:52 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-03-09 09:21 - 2016-02-03 15:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-03-09 09:21 - 2016-02-03 15:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-03-09 09:21 - 2016-02-03 15:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2016-03-09 09:21 - 2016-01-11 16:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2016-03-09 09:21 - 2015-11-19 11:07 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2016-03-09 09:21 - 2015-11-19 11:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2016-03-09 09:20 - 2016-02-11 15:56 - 05572032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-03-09 09:20 - 2016-02-11 15:56 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-03-09 09:20 - 2016-02-11 15:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-03-09 09:20 - 2016-02-11 15:52 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-03-09 09:20 - 2016-02-11 15:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-03-09 09:20 - 2016-02-11 15:48 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-03-09 09:20 - 2016-02-11 15:48 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-03-09 09:20 - 2016-02-11 15:48 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-03-09 09:20 - 2016-02-11 15:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-03-09 09:20 - 2016-02-11 15:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-03-09 09:20 - 2016-02-11 15:47 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-03-09 09:20 - 2016-02-11 15:45 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-03-09 09:20 - 2016-02-11 15:45 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-03-09 09:20 - 2016-02-11 15:45 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-03-09 09:20 - 2016-02-11 15:45 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-03-09 09:20 - 2016-02-11 15:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-03-09 09:20 - 2016-02-11 15:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-03-09 09:20 - 2016-02-11 15:44 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-03-09 09:20 - 2016-02-11 15:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-03-09 09:20 - 2016-02-11 15:44 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-03-09 09:20 - 2016-02-11 15:44 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-03-09 09:20 - 2016-02-11 15:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-03-09 09:20 - 2016-02-11 15:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-03-09 09:20 - 2016-02-11 15:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-03-09 09:20 - 2016-02-11 15:38 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-03-09 09:20 - 2016-02-11 15:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-03-09 09:20 - 2016-02-11 15:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-03-09 09:20 - 2016-02-11 15:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-03-09 09:20 - 2016-02-11 15:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-03-09 09:20 - 2016-02-11 15:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-03-09 09:20 - 2016-02-11 15:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-03-09 09:20 - 2016-02-11 15:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-03-09 09:20 - 2016-02-11 15:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-03-09 09:20 - 2016-02-11 15:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 15:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 14:48 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-03-09 09:20 - 2016-02-11 14:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-03-09 09:20 - 2016-02-11 14:41 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-03-09 09:20 - 2016-02-11 14:40 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-03-09 09:20 - 2016-02-11 14:34 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-03-09 09:20 - 2016-02-11 14:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-03-09 09:20 - 2016-02-11 14:33 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-03-09 09:20 - 2016-02-11 14:32 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-03-09 09:20 - 2016-02-11 14:32 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-03-09 09:20 - 2016-02-11 14:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-03-09 09:20 - 2016-02-11 14:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-03-09 09:20 - 2016-02-11 14:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-03-09 09:20 - 2016-02-11 14:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-03-09 09:20 - 2016-02-11 14:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-03-09 09:20 - 2016-02-11 14:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 14:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 14:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-03-09 09:20 - 2016-02-11 14:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-03-09 09:20 - 2016-02-09 06:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2016-03-09 09:20 - 2016-02-09 06:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2016-03-09 09:20 - 2016-02-09 06:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2016-03-09 09:20 - 2016-02-09 06:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2016-03-09 09:20 - 2016-02-09 06:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2016-03-09 09:20 - 2016-02-09 06:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2016-03-09 09:20 - 2016-02-09 06:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2016-03-09 09:20 - 2016-02-09 06:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2016-03-09 09:20 - 2016-02-09 06:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2016-03-09 09:20 - 2016-02-09 06:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2016-03-09 09:20 - 2016-02-09 06:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2016-03-09 09:20 - 2016-02-05 15:54 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-03-09 09:20 - 2016-02-05 15:54 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-03-09 09:20 - 2016-02-05 15:53 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-03-09 09:20 - 2016-02-05 15:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-03-09 09:20 - 2016-02-05 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-03-09 09:20 - 2016-02-05 15:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-03-09 09:20 - 2016-02-05 15:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-03-09 09:20 - 2016-02-05 14:48 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-03-09 09:20 - 2016-02-05 14:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-03-09 09:20 - 2016-02-05 14:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-03-09 09:20 - 2016-02-04 22:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2016-03-09 09:20 - 2016-02-04 15:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2016-03-09 09:19 - 2016-02-19 16:02 - 00038336 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-03-09 09:19 - 2016-02-19 15:54 - 01168896 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-03-09 09:19 - 2016-02-19 11:07 - 01373184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-03-09 09:19 - 2016-02-11 11:07 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-03-09 09:19 - 2016-02-05 11:07 - 00696832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-03-09 09:19 - 2016-02-05 11:07 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-03-09 09:19 - 2016-02-05 11:07 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-03-08 11:48 - 2016-03-08 11:48 - 00062761 _____ C:\Users\Valemar4\Downloads\ENC_ Embarkation MSC Preziosa - Benvenutti Zen Heloisa Raquel.zip 2016-03-08 11:06 - 2016-03-08 11:06 - 04436112 _____ C:\Users\Valemar4\Downloads\Re_Reembarque.zip 2016-03-07 17:20 - 2016-03-07 17:20 - 03177871 _____ C:\Users\Valemar4\Downloads\STCW Maysa!.zip 2016-03-07 17:11 - 2016-03-07 17:11 - 01224150 _____ C:\Users\Valemar4\Downloads\CFPN - Tiago Pedroza.zip 2016-03-07 14:38 - 2016-03-23 10:20 - 00003204 _____ C:\Windows\System32\Tasks\HPCeeScheduleForValemar4 2016-03-07 14:38 - 2016-03-23 10:20 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForValemar4.job 2016-03-07 14:26 - 2016-03-07 14:26 - 01634374 _____ C:\Users\Valemar4\Downloads\Re_ Documentos para primeiro embarque(1).zip 2016-03-07 12:05 - 2016-03-07 12:05 - 00005991 _____ C:\Users\Valemar4\Downloads\contract_msc336e9ffb0a5a5cd25c5fdc1143c50cac.pdf 2016-03-07 11:45 - 2016-03-07 11:46 - 00862467 _____ C:\Users\Valemar4\Downloads\a33ec30c4bc7a32a43a6e6193e26e678.pdf 2016-03-07 11:13 - 2016-03-07 11:13 - 02670568 _____ C:\Users\Valemar4\Downloads\Documentos para embarque Leandro C. Peixoto GSO.zip 2016-03-04 16:38 - 2016-03-04 16:38 - 00337281 _____ C:\Users\Valemar4\Downloads\pop3.pdf 2016-03-04 15:52 - 2016-03-04 15:52 - 00575004 _____ C:\Users\Valemar4\Downloads\Nilton - Digitalização.zip 2016-03-04 15:42 - 2016-03-04 15:42 - 03752813 _____ C:\Users\Valemar4\Downloads\Documents.rar 2016-03-04 15:34 - 2016-03-04 15:35 - 00243890 _____ C:\Users\Valemar4\Downloads\b7157a1f56c37149483221126a82d93c.pdf 2016-03-04 15:30 - 2016-03-04 15:30 - 12471804 _____ C:\Users\Valemar4\Downloads\Crislayne.zip 2016-03-04 15:18 - 2016-03-04 15:18 - 01674059 _____ C:\Users\Valemar4\Downloads\RE_ Contrato_Docs.zip 2016-03-04 14:52 - 2016-03-04 14:52 - 00006010 _____ C:\Users\Valemar4\Downloads\contract_msc792bb50d101782d726d38be8f81f145b.pdf 2016-03-03 13:00 - 2016-03-03 13:00 - 00862611 _____ C:\Users\Valemar4\Downloads\Re_ Documentos para primeiro embarque.zip 2016-03-03 12:59 - 2016-03-03 12:59 - 00035849 _____ C:\Users\Valemar4\Desktop\image-03-03-16-12-20.jpeg 2016-03-03 12:37 - 2016-03-03 12:37 - 08818014 _____ C:\Users\Valemar4\Downloads\Fw_Medical(1).zip 2016-03-02 15:22 - 2016-03-02 15:22 - 00193419 _____ C:\Users\Valemar4\Downloads\fatura_91554370_001923452-AA_20160310.pdf 2016-03-02 13:09 - 2016-03-02 13:09 - 00006003 _____ C:\Users\Valemar4\Downloads\contract_msc757da740684ed456c1e47cbd0806cb58.pdf 2016-03-02 13:02 - 2016-03-02 13:02 - 00006131 _____ C:\Users\Valemar4\Downloads\96060.pdf 2016-03-02 11:38 - 2016-03-02 11:38 - 06076980 _____ C:\Users\Valemar4\Downloads\Medical(1).zip 2016-03-02 11:20 - 2016-03-02 11:20 - 00369451 _____ C:\Users\Valemar4\Downloads\CONTRATO E EBOLA ERIKA(1).zip 2016-03-02 11:08 - 2016-03-02 11:08 - 04392037 _____ C:\Users\Valemar4\Downloads\documentos embarque(1).zip 2016-03-02 10:29 - 2016-03-02 10:29 - 04392037 _____ C:\Users\Valemar4\Downloads\documentos embarque.zip 2016-03-01 15:22 - 2016-03-01 15:22 - 00000000 ____D C:\Users\Valemar4\Downloads\Originals 2016-03-01 12:44 - 2016-03-01 12:45 - 14335029 _____ C:\Users\Valemar4\Downloads\RE_ DOCUMENTOS.zip 2016-03-01 11:36 - 2016-03-01 11:36 - 00000165 ____H C:\Users\Valemar4\Desktop\~$Apresentação1.pptx 2016-03-01 10:02 - 2016-03-01 10:02 - 06076980 _____ C:\Users\Valemar4\Downloads\Medical.zip 2016-02-29 17:43 - 2016-02-29 17:43 - 03013779 _____ C:\Users\Valemar4\Downloads\Fw_Ref Ex. Mé dicos.zip 2016-02-29 16:20 - 2016-02-29 16:20 - 00369451 _____ C:\Users\Valemar4\Downloads\CONTRATO E EBOLA ERIKA.zip 2016-02-29 15:26 - 2016-02-29 15:26 - 00250584 _____ C:\Users\Valemar4\Downloads\SKM_C284e16022915170.pdf 2016-02-29 13:02 - 2016-02-29 13:02 - 00899918 _____ C:\Users\Valemar4\Downloads\Re_ Dcumentos para primeiro embarque.zip 2016-02-29 12:39 - 2016-02-29 12:40 - 13829595 _____ C:\Users\Valemar4\Downloads\ENC_ SEGUE MEDICAL REPORT.zip 2016-02-29 12:26 - 2016-02-29 12:26 - 01523435 _____ C:\Users\Valemar4\Downloads\RE_ Documentos de reembarque(4).zip 2016-02-29 12:18 - 2016-02-29 12:18 - 00840947 _____ C:\Users\Valemar4\Downloads\4aa7fb25a25d718c0a1caf701eabfd84.pdf 2016-02-29 12:09 - 2016-02-29 12:09 - 03802914 _____ C:\Users\Valemar4\Downloads\Re_ Documentos de reembarque(3).zip 2016-02-29 10:52 - 2016-02-29 10:52 - 00006122 _____ C:\Users\Valemar4\Downloads\99396.pdf 2016-02-29 10:29 - 2016-02-29 10:29 - 09996396 _____ C:\Users\Valemar4\Downloads\MEDICAL REPORT ATUALIZADO.zip 2016-02-29 09:43 - 2016-02-29 09:43 - 01887761 _____ C:\Users\Valemar4\Downloads\Eu Reginaldo Pontes dos Prazeres; declaro concordar com todas as clausulas do contrato enviado para mim, confirmando o embarque!.zip 2016-02-26 17:50 - 2016-03-07 16:26 - 00021252 _____ C:\Users\Valemar4\Desktop\Base de Dados Seaman Náutica(1).xlsx 2016-02-26 17:18 - 2016-02-26 17:49 - 00013687 _____ C:\Users\Valemar4\Downloads\Base de Dados Seaman Náutica(1).xlsx 2016-02-26 11:12 - 2016-02-26 11:12 - 00370200 _____ C:\Users\Valemar4\Downloads\c68051af0ba8fde9cb5c62c9d0266129.pdf 2016-02-26 11:12 - 2016-02-26 11:12 - 00101956 _____ C:\Users\Valemar4\Downloads\4108a342fb68dd8d8422bd94ab65d2c9.pdf 2016-02-26 11:10 - 2016-02-26 11:10 - 00465911 _____ C:\Users\Valemar4\Downloads\7c87d3973c4d53d6f5e45e67c8c561e9.pdf 2016-02-26 11:10 - 2016-02-26 11:10 - 00354455 _____ C:\Users\Valemar4\Downloads\276bdd5db3d8c6cc1ce919818bdf19d5.pdf 2016-02-26 11:03 - 2016-02-26 11:04 - 00790340 _____ C:\Users\Valemar4\Downloads\81187469b8a912d98d418777ae7ef1bb(1).pdf 2016-02-26 11:03 - 2016-02-26 11:03 - 00790340 _____ C:\Users\Valemar4\Downloads\81187469b8a912d98d418777ae7ef1bb.pdf 2016-02-26 11:03 - 2016-02-26 11:03 - 00718297 _____ C:\Users\Valemar4\Downloads\c784f77b9fbdba6e31008677083de24c.pdf 2016-02-26 11:03 - 2016-02-26 11:03 - 00284066 _____ C:\Users\Valemar4\Downloads\ab11238b4b3bededd43b2599664b5fde.pdf 2016-02-26 11:03 - 2016-02-26 11:03 - 00203758 _____ C:\Users\Valemar4\Downloads\13584905fb578b2daea3cf80008cfa98.pdf 2016-02-26 11:02 - 2016-02-26 11:02 - 00233117 _____ C:\Users\Valemar4\Downloads\aa5e12214873a2540d1902e11a4dae58.pdf 2016-02-26 11:02 - 2016-02-26 11:02 - 00231843 _____ C:\Users\Valemar4\Downloads\1c2e3f0cff38eabc48e31dc31782f97b.pdf 2016-02-26 09:19 - 2016-02-26 09:19 - 00213746 _____ C:\Users\Valemar4\Downloads\wetransfer-c9704b.zip 2016-02-25 15:40 - 2016-02-25 15:40 - 08939138 _____ C:\Users\Valemar4\Downloads\Exame médico.zip 2016-02-25 14:25 - 2016-02-25 14:25 - 00099973 _____ C:\Users\Valemar4\Downloads\MIRIAM MARIA TORLAI (1).pdf 2016-02-25 11:17 - 2016-02-25 11:17 - 07809809 _____ C:\Users\Valemar4\Downloads\Re_ Documentos de reembarque(2).zip 2016-02-25 11:09 - 2016-02-25 11:09 - 00331085 _____ C:\Users\Valemar4\Downloads\normam24_0.pdf 2016-02-25 09:05 - 2016-02-25 09:05 - 00728571 _____ C:\Users\Valemar4\Downloads\Contrato _ Questionário Ebola _ Johnny Limia .zip 2016-02-25 09:00 - 2016-02-25 09:00 - 00206215 _____ C:\Users\Valemar4\Downloads\9c36cd533bd189aacab1e346731784fd.pdf 2016-02-25 08:57 - 2016-02-25 08:57 - 01428902 _____ C:\Users\Valemar4\Downloads\Fwd_ scanner certificados _ Johnny Limia .zip 2016-02-24 17:44 - 2016-02-24 17:44 - 03539608 _____ C:\Users\Valemar4\Downloads\RE_ Documentos de reembarque(1).zip 2016-02-24 17:15 - 2016-02-24 17:15 - 04848045 _____ C:\Users\Valemar4\Downloads\Passaporte novo Heloisa Zen.zip 2016-02-24 16:45 - 2016-02-24 16:45 - 03362385 _____ C:\Users\Valemar4\Downloads\ValeMar Renato Laurindo Matos da Silva(correções).rar 2016-02-24 16:32 - 2016-02-24 16:32 - 06273508 _____ C:\Users\Valemar4\Downloads\MEDICAL CORRIGIDO.zip 2016-02-24 16:24 - 2016-02-24 16:24 - 08188071 _____ C:\Users\Valemar4\Downloads\Enc_ Documentação de Embarque MSC.zip 2016-02-23 18:02 - 2016-02-23 18:02 - 00059004 _____ C:\Users\Valemar4\Downloads\Restante do pagamento 440,00.pdf 2016-02-23 18:02 - 2016-02-23 18:02 - 00051529 _____ C:\Users\Valemar4\Downloads\Matrícula 300,00.pdf 2016-02-23 17:39 - 2016-02-23 17:39 - 02440629 _____ C:\Users\Valemar4\Downloads\RE_ Documentos de reembarque.zip 2016-02-23 17:38 - 2016-02-23 17:38 - 00135852 _____ C:\Users\Valemar4\Downloads\3044 - SEAMAN.pdf 2016-02-23 16:40 - 2016-02-23 16:40 - 00099973 _____ C:\Users\Valemar4\Downloads\MIRIAM MARIA TORLAI .pdf 2016-02-23 15:34 - 2016-02-23 15:34 - 01869648 _____ C:\Users\Valemar4\Downloads\_____SPAM_____ ENC_ _____SPAM_____ Re_ RE_ Embarque MSC Magnifica - Miriam Torlai.zip 2016-02-23 10:51 - 2016-02-23 10:51 - 00012006 _____ C:\Users\Valemar4\Downloads\97536.pdf 2016-02-23 10:49 - 2016-02-23 10:50 - 02082051 _____ C:\Users\Valemar4\Downloads\Documentos de embarque.zip 2016-02-23 10:18 - 2016-02-23 10:18 - 00534649 _____ C:\Users\Valemar4\Downloads\evaluation_preview(2).pdf 2016-02-22 15:35 - 2016-02-22 15:35 - 04259477 _____ C:\Users\Valemar4\Downloads\Documentos LUCIANA CUBA(1).zip 2016-02-22 15:33 - 2016-02-22 15:33 - 06490758 _____ C:\Users\Valemar4\Downloads\Documentos Robson Carrião(1).zip 2016-02-22 13:56 - 2016-02-22 13:56 - 00051529 _____ C:\Users\Valemar4\Downloads\comprovante de pagamento (1).pdf 2016-02-22 13:37 - 2016-02-22 13:37 - 01606909 _____ C:\Users\Valemar4\Downloads\School Transcript.pdf 2016-02-22 13:37 - 2016-02-22 13:37 - 00901846 _____ C:\Users\Valemar4\Downloads\School Transcript_1.pdf 2016-02-22 13:37 - 2016-02-22 13:37 - 00901846 _____ C:\Users\Valemar4\Downloads\School Transcript_1(1).pdf 2016-02-22 11:34 - 2016-02-22 11:35 - 04259477 _____ C:\Users\Valemar4\Downloads\Documentos LUCIANA CUBA.zip 2016-02-22 11:33 - 2016-02-22 11:40 - 00049664 _____ C:\Users\Valemar4\Downloads\Cópia de TERMO DE RESERVA Dez_2015.xls 2016-02-22 10:42 - 2016-02-22 10:42 - 00089495 _____ C:\Users\Valemar4\Downloads\FICHA DE CBSN.pdf 2016-02-22 10:15 - 2016-02-22 10:15 - 00124963 _____ C:\Users\Valemar4\Downloads\Scan0001.pdf 2016-02-22 10:09 - 2016-02-22 10:09 - 01803639 _____ C:\Users\Valemar4\Downloads\FICHAS BARBARA.pdf 2016-02-22 10:09 - 2016-02-22 10:09 - 01787048 _____ C:\Users\Valemar4\Downloads\FICHAS_EDUARDO.pdf 2016-02-22 10:03 - 2016-02-22 10:03 - 00321233 _____ C:\Users\Valemar4\Downloads\ficha cbsn.pdf 2016-02-22 10:03 - 2016-02-22 10:03 - 00158660 _____ C:\Users\Valemar4\Downloads\ficha cfpn.pdf 2016-02-22 10:03 - 2016-02-22 10:03 - 00066480 _____ C:\Users\Valemar4\Downloads\Banco Itaú S_A.pdf 2016-02-22 09:59 - 2016-02-22 09:59 - 00553098 _____ C:\Users\Valemar4\Downloads\01.pdf 2016-02-22 09:57 - 2016-02-22 09:57 - 01291861 _____ C:\Users\Valemar4\Downloads\scan (2).pdf 2016-02-22 09:57 - 2016-02-22 09:57 - 01013166 _____ C:\Users\Valemar4\Downloads\scan.pdf 2016-02-22 09:49 - 2016-02-22 09:49 - 00889802 _____ C:\Users\Valemar4\Downloads\Scan_20160203_153759.pdf 2016-02-22 09:49 - 2016-02-22 09:49 - 00256385 _____ C:\Users\Valemar4\Downloads\Scan_20160203_153951.pdf 2016-02-22 09:39 - 2016-03-22 12:35 - 00000000 ____D C:\Users\Valemar4\Desktop\VER Depois ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-03-23 13:16 - 2015-12-03 13:03 - 00000000 ____D C:\Users\Valemar4\AppData\LocalLow\VeriSign 2016-03-23 13:09 - 2015-12-30 13:35 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-23 13:01 - 2009-07-14 01:45 - 00022624 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-23 13:01 - 2009-07-14 01:45 - 00022624 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-23 12:58 - 2015-12-03 13:02 - 00000000 ____D C:\Windows\System32\Tasks\Norton Internet Security 2016-03-23 12:54 - 2016-02-11 12:31 - 00000206 _____ C:\Windows\Tasks\AutoKMS.job 2016-03-23 12:53 - 2012-10-18 19:45 - 00000000 ____D C:\ProgramData\PDFC 2016-03-23 12:53 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-23 12:28 - 2015-12-03 14:17 - 00001879 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-03-23 12:22 - 2012-10-18 19:08 - 00711008 _____ C:\Windows\system32\prfh0416.dat 2016-03-23 12:22 - 2012-10-18 19:08 - 00148862 _____ C:\Windows\system32\prfc0416.dat 2016-03-23 12:22 - 2009-07-14 02:13 - 01642260 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-23 12:22 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf 2016-03-23 12:13 - 2015-12-22 10:22 - 00000000 ____D C:\Users\Valemar4\AppData\Roaming\Skype 2016-03-23 12:10 - 2009-07-14 02:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2016-03-22 17:29 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF 2016-03-22 17:03 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Valemar4\AppData\Local\CutePDF Writer 2016-03-22 16:15 - 2015-12-07 15:40 - 00000000 ____D C:\Users\Valemar4\Documents\DOCUMENTAÇÃO 2016-03-22 15:07 - 2016-01-18 12:48 - 00000000 ____D C:\Users\Valemar4\Documents\Youcam 2016-03-22 14:47 - 2015-12-03 13:03 - 00003966 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{9B8403C0-AFA1-422A-8FAB-9BBBF097282B} 2016-03-22 14:20 - 2009-07-14 02:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2016-03-22 12:35 - 2015-12-04 10:11 - 00032768 ____H C:\Users\Valemar4\Desktop\photothumb.db 2016-03-22 12:35 - 2015-12-03 13:05 - 00000000 ____D C:\Users\Valemar4\Documents\LISTAS 2016-03-22 09:22 - 2015-12-03 14:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-03-21 18:04 - 2015-12-04 10:07 - 00000000 ____D C:\Users\Valemar4\AppData\Local\CrashDumps 2016-03-17 11:54 - 2015-12-03 13:39 - 00000000 ____D C:\Users\Valemar4\Documents\2016 2016-03-17 11:54 - 2015-12-03 13:00 - 00000000 ____D C:\Users\Valemar4 2016-03-11 16:09 - 2015-12-30 13:35 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-03-11 16:09 - 2015-12-30 13:35 - 00003840 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-03-11 16:09 - 2012-10-18 19:38 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-03-11 10:26 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache 2016-03-10 10:31 - 2015-12-08 10:29 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-03-10 10:15 - 2009-07-14 01:45 - 00492456 _____ C:\Windows\system32\FNTCACHE.DAT 2016-03-09 21:13 - 2015-12-07 08:26 - 00000000 ____D C:\Windows\system32\appraiser 2016-03-01 10:18 - 2016-02-01 08:58 - 00011939 _____ C:\Users\Valemar4\Documents\CONTAS MÊS.xlsx 2016-02-29 09:46 - 2012-10-18 19:37 - 00000000 ____D C:\ProgramData\Skype 2016-02-26 17:58 - 2015-12-07 08:26 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-26 17:58 - 2015-12-07 08:26 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-26 16:16 - 2015-12-03 13:00 - 00000000 ____D C:\Users\Valemar4\AppData\Local\Hewlett-Packard Arquivos para serem movidos ou deletados: ==================== C:\Users\Valemar4\AppData\Local\Temp\is-F9O6R.tmp\print.exe Alguns arquivos em TEMP: ==================== C:\Users\Valemar4\AppData\Local\Temp\converter.exe C:\Users\Valemar4\AppData\Local\Temp\HPSFUpdater.exe C:\Users\Valemar4\AppData\Local\Temp\sp64126.exe C:\Users\Valemar4\AppData\Local\Temp\UninstallHPSA.exe ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-03-19 16:12 ==================== Fim de FRST.txt ============================