Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:05-05-2016 01 Executado por Casas Bahia (administrador) em EVANDROMATEUS (04-05-2016 19:29:40) Executando a partir de C:\Users\Casas Bahia\Downloads Perfis Carregados: Casas Bahia (Perfis Disponíveis: Casas Bahia) Platform: Windows 8.1 Single Language (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Samsung) C:\Program Files\Samsung\AllShare Framework DMS\1.3.20\AllShareFrameworkManagerDMS.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Samsung) C:\Program Files\Samsung\AllShare Framework DMS\1.3.20\AllShareFrameworkDMS.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Atheros Communications, Inc.) C:\Program Files (x86)\Jumpstart\jswpbapi.exe () C:\Users\Casas Bahia\AppData\Local\Apps\2.0\abril.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe (Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe () C:\Program Files (x86)\CalendarTool\2.0.0.11189\CalendarServ.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe () C:\Program Files (x86)\CalendarTool\2.0.0.11189\calendar.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TODO: ) C:\ProgramData\SAMSUNG\DisplaySwitch.exe (BitTorrent Inc.) C:\Users\Casas Bahia\AppData\Roaming\uTorrent\uTorrent.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe (BitTorrent Inc.) C:\Users\Casas Bahia\AppData\Roaming\uTorrent\updates\3.4.6_42094\utorrentie.exe (BitTorrent Inc.) C:\Users\Casas Bahia\AppData\Roaming\uTorrent\updates\3.4.6_42094\utorrentie.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe (The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Cortex\Cef\CefSharp.BrowserSubprocess.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\FPSRunner32.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\x64\FPSRunner64.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzFpsApplet\RzFpsApplet.exe (Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe (Razer, Inc.) C:\Users\Casas Bahia\AppData\Local\Razer\InGameEngine\cache\RzFpsApplet\rzcefrenderprocess.exe (Razer, Inc.) C:\Users\Casas Bahia\AppData\Local\Razer\InGameEngine\cache\RzFpsApplet\rzcefrenderprocess.exe (Razer, Inc.) C:\Users\Casas Bahia\AppData\Local\Razer\InGameEngine\cache\RzFpsApplet\rzcefrenderprocess.exe (Razer, Inc.) C:\Users\Casas Bahia\AppData\Local\Razer\InGameEngine\cache\RzFpsApplet\rzcefrenderprocess.exe () C:\ProgramData\WindowsMsg\osmsg.exe (Samsung Electronics CO., LTD.) C:\ProgramData\SAMSUNG\SW Update Service\SWMAgent.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe () C:\Program Files (x86)\DNS Unlocker\dnswilliston.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Support Center\GuaranaAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.4.9600.16384_x64__8wekyb3d8bbwe\livecomm.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [Samsung Link] => C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [597576 2013-10-10] (Copyright 2013 SAMSUNG) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [Bitcasa] => C:\Program Files\Bitcasa\Bitcasa.exe [3965904 2013-06-06] () HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2793200 2013-11-29] (Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-17] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation) HKLM-x32\...\Run: [jswtrayutil] => "C:\Program Files (x86)\Jumpstart\jswtrayutil.exe" HKLM-x32\...\Run: [BAV mini setup] => "C:\ProgramData\Baidu\Antivirus\BavPro_Setup_Mini_130.exe" /S /NOTRAY partner=RebootRun HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [222160 2016-04-29] (Razer Inc.) HKLM\...\RunOnce: [WINDOWS_SCREEN_MANAGER_UPDATER_1] => C:\Program Files\Windows Screen Manager\Windows screen manage updater.exe [16896 2016-04-19] (Wizzservices) Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-10-29] (Atheros Communications) HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0 HKLM\...\Policies\Explorer: [NoResolveSearch] 1 HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [DisplaySwitch] => C:\programdata\samsung\DisplaySwitch.exe [1758512 2013-12-10] (TODO: ) HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [uTorrent] => C:\Users\Casas Bahia\AppData\Roaming\uTorrent\uTorrent.exe [1959424 2016-04-10] (BitTorrent Inc.) HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3035968 2012-02-02] (DT Soft Ltd) HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [osmsg] => C:\ProgramData\WindowsMsg\osmsg.exe [2036224 2016-02-09] () HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\...\Run: [WindApp] => "C:\Users\Casas Bahia\AppData\Roaming\Store\WindApp\WindApp.exe" /winstartup SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\system32\CbFsMntNtf3.dll (EldoS Corporation) SSODL-x32: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\SysWow64\CbFsMntNtf3.dll (EldoS Corporation) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Nenhum Arquivo ShellIconOverlayIdentifiers: [1EldosIconOverlay] -> {639800D9-DCF0-44A0-A80B-DBFFDCDAABD3} => C:\windows\SYSTEM32\CbFsMntNtf3.dll [2013-02-11] (EldoS Corporation) ShellIconOverlayIdentifiers: [BitcasaIconOverlay] -> {A6975448-A999-49BB-B3E4-7730CF6A82C0} => C:\Program Files\Bitcasa\ExplorerMenu.dll [2013-06-06] () ShellIconOverlayIdentifiers: [BitcasaProgressOverlay] -> {6FB8D52A-0064-45B2-B687-F596FEAD09C2} => C:\Program Files\Bitcasa\ExplorerMenu.dll [2013-06-06] () ShellIconOverlayIdentifiers: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\windows\system32\CbFsMntNtf3.dll [2013-02-11] (EldoS Corporation) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Casas Bahia\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [1EldosIconOverlay] -> {639800D9-DCF0-44A0-A80B-DBFFDCDAABD3} => C:\windows\SysWOW64\CbFsMntNtf3.dll [2013-02-11] (EldoS Corporation) ShellIconOverlayIdentifiers-x32: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\windows\SysWow64\CbFsMntNtf3.dll [2013-02-11] (EldoS Corporation) Startup: C:\Users\Casas Bahia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-02-04] ShortcutTarget: MEGAsync.lnk -> C:\Users\Casas Bahia\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) ProxyServer: [S-1-5-21-4096679686-1002404829-1145887975-1001] => http=localhost:5050 Winsock: Catalog9 01 C:\windows\system32\LavasoftTcpService.dll Nenhum Arquivo Winsock: Catalog9 02 C:\windows\system32\LavasoftTcpService.dll Nenhum Arquivo Winsock: Catalog9 03 C:\windows\system32\LavasoftTcpService.dll Nenhum Arquivo Winsock: Catalog9 04 C:\windows\system32\LavasoftTcpService.dll Nenhum Arquivo Winsock: Catalog9 16 C:\windows\system32\LavasoftTcpService.dll Nenhum Arquivo Winsock: Catalog9-x64 01 C:\windows\system32\LavasoftTcpService64.dll [425744 2015-10-26] (Lavasoft Limited) Winsock: Catalog9-x64 02 C:\windows\system32\LavasoftTcpService64.dll [425744 2015-10-26] (Lavasoft Limited) Winsock: Catalog9-x64 03 C:\windows\system32\LavasoftTcpService64.dll [425744 2015-10-26] (Lavasoft Limited) Winsock: Catalog9-x64 04 C:\windows\system32\LavasoftTcpService64.dll [425744 2015-10-26] (Lavasoft Limited) Winsock: Catalog9-x64 16 C:\windows\system32\LavasoftTcpService64.dll [425744 2015-10-26] (Lavasoft Limited) Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{967FE1A1-106C-48EE-8BEA-1A41B73C8789}: [NameServer] 82.163.143.177,82.163.142.179 Tcpip\..\Interfaces\{C8816A4C-65A1-404F-993D-253A8313FAC3}: [NameServer] 82.163.143.177,82.163.142.179 Tcpip\..\Interfaces\{C8816A4C-65A1-404F-993D-253A8313FAC3}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=536b41a02a2ecec5a7a4bd4522d83c05 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=536b41a02a2ecec5a7a4bd4522d83c05 HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=536b41a02a2ecec5a7a4bd4522d83c05 HKU\S-1-5-21-4096679686-1002404829-1145887975-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com/?pc=smjb SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4096679686-1002404829-1145887975-1001 -> DefaultScope {D6834483-DE37-4C79-AFCF-543C9D69C1A8} URL = SearchScopes: HKU\S-1-5-21-4096679686-1002404829-1145887975-1001 -> {03358A9A-31B5-4D71-86E4-06CB1E842EB7} URL = hxxps://br.search.yahoo.com/search?p={searchTerms}&fr=chr-yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-4096679686-1002404829-1145887975-1001 -> {29689D6D-FAEF-4E68-B6E6-B75439B84A39} URL = hxxps://br.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=435371&p={searchTerms} SearchScopes: HKU\S-1-5-21-4096679686-1002404829-1145887975-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://br.search.yahoo.com/search?fr=vmn&type=vmn__webcompa__1_0__ya__ch_WCYID10196_swoc_campaign_151026__yaie&p={searchTerms} SearchScopes: HKU\S-1-5-21-4096679686-1002404829-1145887975-1001 -> {D6834483-DE37-4C79-AFCF-543C9D69C1A8} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-24] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-24] (Oracle Corporation) FireFox: ======== FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-24] (Oracle Corporation) FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2014-08-29] (Nero AG) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-18] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.) FF Plugin-x32: samsung.com/SamsungLinkPCPlugin -> C:\Program Files\Samsung\Samsung Link\utils\npSamsungLinkPCPlugin.dll [2013-10-10] (Samsung) Chrome: ======= CHR HomePage: Default -> hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=536b41a02a2ecec5a7a4bd4522d83c05 CHR StartupUrls: Default -> "hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=536b41a02a2ecec5a7a4bd4522d83c05" CHR Profile: C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-18] CHR Extension: (YouTube) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18] CHR Extension: (Adblock Plus) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-25] CHR Extension: (AdBlock) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-25] CHR Extension: (Ad;Block Plus) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhiochlbndmakpjkoncbkplnkbbpbpdd [2016-04-25] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-19] CHR Extension: (AdBlock Pro) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2016-04-25] CHR Extension: (Gmail) - C:\Users\Casas Bahia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-18] CHR HKLM-x32\...\Chrome\Extension: [aaaaafeopjhkcolncjbedbhofpocmdbn] - hxxps://clients2.google.com/service/update2/crx ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 AdobeActiveFileMonitor11.0; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [172104 2013-01-26] (Adobe Systems Incorporated) R2 AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.20\AllShareFrameworkManagerDMS.exe [404360 2013-10-01] (Samsung) [Arquivo não assinado] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [317568 2013-10-29] (Windows (R) Win 7 DDK provider) [Arquivo não assinado] R2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] () R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Arquivo não assinado] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 jswpbapi; C:\Program Files (x86)\Jumpstart\jswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [Arquivo não assinado] R2 ProntSpooler; C:\Users\Casas Bahia\AppData\Local\Apps\2.0\abril.exe [130048 2016-04-23] () [Arquivo não assinado] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187824 2016-04-18] () R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [132864 2016-04-29] (Razer Inc.) R2 Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [605768 2013-10-10] (Copyright 2013 SAMSUNG) R2 Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [1595440 2013-10-31] (Samsung Electronics CO., LTD.) R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3018800 2013-10-30] (Samsung Electronics CO., LTD.) R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [118424 2016-03-09] () R2 TheCalendarService; C:\Program Files (x86)\CalendarTool\2.0.0.11189\CalendarServ.exe [141960 2015-12-25] () S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-10-29] (Atheros) [Arquivo não assinado] S2 eAHPeNhIUJ_download; "C:\Users\CASASB~1\AppData\Local\Temp\123.exe" [X] S3 jswpsapi; C:\Program Files (x86)\Jumpstart\jswpsapi.exe [X] ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-15] (Qualcomm Atheros Communications, Inc.) S3 BTATH_HID; C:\Windows\system32\DRIVERS\btath_hid.sys [223432 2013-10-29] (Qualcomm Atheros) S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-10-29] (Qualcomm Atheros) R1 cbfs3; C:\windows\system32\drivers\cbfs3.sys [352448 2013-02-11] (EldoS Corporation) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2015-12-07] (DT Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-08-09] (Corel Corporation) R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Windows (R) Win 7 DDK provider) R2 rzpmgrk; C:\windows\system32\drivers\rzpmgrk.sys [44144 2016-03-10] (Razer, Inc.) R2 rzpnk; C:\windows\system32\drivers\rzpnk.sys [137840 2016-04-17] (Razer, Inc.) R3 semav6msr64; C:\windows\system32\drivers\semav6msr64.sys [21984 2016-03-09] () S3 ssuddmgr; C:\Windows\System32\drivers\ssuddmgr.sys [203672 2013-06-20] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudobex; C:\Windows\System32\drivers\ssudobex.sys [203672 2013-06-20] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudrmnet; C:\Windows\System32\drivers\ssudrmnet.sys [67864 2013-06-20] (DEVGURU Co., LTD.) S3 ssudserd; C:\Windows\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) U4 Messenger; não ImagePath S3 SBIOSIO; \??\C:\Windows\Temp\SBIOSIO64.SYS [X] S3 TVICPORT; \??\C:\windows\system32\DRIVERS\TVICPORT.SYS [X] ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-05-04 19:29 - 2016-05-04 19:30 - 00024684 _____ C:\Users\Casas Bahia\Downloads\FRST.txt 2016-05-04 19:28 - 2016-05-04 19:29 - 00000000 ____D C:\FRST 2016-05-04 19:26 - 2016-05-04 19:28 - 02378240 _____ (Farbar) C:\Users\Casas Bahia\Downloads\FRST64.exe 2016-05-04 19:14 - 2016-05-04 19:14 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\BlueStacks 2016-05-04 13:13 - 2016-05-04 13:13 - 00017680 _____ C:\Users\Casas Bahia\Downloads\Resident.Evil.Zero - Wii (1).torrent 2016-05-04 12:15 - 2016-05-04 12:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery 2016-05-04 12:15 - 2016-05-04 12:23 - 00000000 ____D C:\Program Files (x86)\Elcomsoft Password Recovery 2016-05-04 12:15 - 2016-05-04 12:15 - 00000000 ____D C:\Users\Todos os Usuários\Elcomsoft Password Recovery 2016-05-04 12:15 - 2016-05-04 12:15 - 00000000 ____D C:\ProgramData\Elcomsoft Password Recovery 2016-05-04 12:15 - 2016-05-04 12:15 - 00000000 ____D C:\Program Files (x86)\Elcomsoft 2016-05-04 12:09 - 2016-05-04 12:11 - 00000000 ___HD C:\$WINDOWS.~BT 2016-05-02 12:11 - 2016-05-02 12:11 - 00003184 _____ C:\windows\System32\Tasks\{405DB74C-CF26-4503-BADA-D7BEF6179B82} 2016-05-02 11:04 - 2016-05-04 13:25 - 00000000 ____D C:\Users\Casas Bahia\Downloads\Resident.Evil.Zero - Wii 2016-05-02 11:02 - 2016-05-02 11:02 - 00017680 _____ C:\Users\Casas Bahia\Downloads\Resident.Evil.Zero - Wii.torrent 2016-05-02 10:45 - 2016-05-02 10:45 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Intel 2016-05-01 21:03 - 2016-02-08 22:31 - 22365472 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2016-05-01 21:02 - 2016-02-08 22:31 - 19794896 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2016-05-01 21:02 - 2016-02-08 22:31 - 02757616 _____ (Microsoft Corporation) C:\windows\explorer.exe 2016-05-01 21:02 - 2016-02-08 22:31 - 02412576 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe 2016-05-01 21:02 - 2016-02-08 22:31 - 00273264 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsAdminFlows.exe 2016-05-01 21:02 - 2016-02-08 17:55 - 02712576 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll 2016-05-01 21:02 - 2016-02-08 17:15 - 02551808 _____ (Microsoft Corporation) C:\windows\SysWOW64\themecpl.dll 2016-05-01 21:02 - 2016-02-08 17:02 - 01197056 _____ (Microsoft Corporation) C:\windows\SysWOW64\usercpl.dll 2016-05-01 21:02 - 2016-02-08 16:48 - 12879360 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll 2016-05-01 21:02 - 2016-02-08 16:43 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncHost.exe 2016-05-01 21:02 - 2016-02-08 16:40 - 00539648 _____ (Microsoft Corporation) C:\windows\SysWOW64\hgcpl.dll 2016-05-01 21:02 - 2016-02-08 16:39 - 00305152 _____ (Microsoft Corporation) C:\windows\SysWOW64\stobject.dll 2016-05-01 21:02 - 2016-02-08 16:37 - 00141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingMonitor.dll 2016-05-01 21:02 - 2016-02-08 16:35 - 00954880 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll 2016-05-01 21:02 - 2016-02-08 16:34 - 00667648 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncCore.dll 2016-05-01 21:02 - 2016-02-08 16:33 - 00520192 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSync.dll 2016-05-01 21:02 - 2016-02-08 15:50 - 03120640 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll 2016-05-01 21:02 - 2016-02-08 14:55 - 02592256 _____ (Microsoft Corporation) C:\windows\system32\themecpl.dll 2016-05-01 21:02 - 2016-02-08 14:33 - 01278464 _____ (Microsoft Corporation) C:\windows\system32\usercpl.dll 2016-05-01 21:02 - 2016-02-08 14:12 - 14466560 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll 2016-05-01 21:02 - 2016-02-08 14:02 - 00653824 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncHost.exe 2016-05-01 21:02 - 2016-02-08 14:00 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\hgcpl.dll 2016-05-01 21:02 - 2016-02-08 13:58 - 00336384 _____ (Microsoft Corporation) C:\windows\system32\stobject.dll 2016-05-01 21:02 - 2016-02-08 13:55 - 00173056 _____ (Microsoft Corporation) C:\windows\system32\SettingMonitor.dll 2016-05-01 21:02 - 2016-02-08 13:53 - 02171904 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsAdminFlowUI.dll 2016-05-01 21:02 - 2016-02-08 13:53 - 01348096 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll 2016-05-01 21:02 - 2016-02-08 13:50 - 01220096 _____ (Microsoft Corporation) C:\windows\system32\twinui.appcore.dll 2016-05-01 21:02 - 2016-02-08 13:50 - 00841728 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncCore.dll 2016-05-01 21:02 - 2016-02-08 13:48 - 00655872 _____ (Microsoft Corporation) C:\windows\system32\SettingSync.dll 2016-05-01 21:02 - 2016-02-08 13:47 - 02819584 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers.dll 2016-05-01 21:02 - 2016-02-08 13:44 - 00955392 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.dll 2016-05-01 21:02 - 2014-11-07 23:38 - 00166912 _____ (Microsoft Corporation) C:\windows\system32\AppxAllUserStore.dll 2016-05-01 21:02 - 2014-11-07 23:17 - 00143360 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppxAllUserStore.dll 2016-05-01 19:50 - 2016-04-04 03:35 - 00046768 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe 2016-05-01 19:50 - 2016-04-02 10:26 - 01386496 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll 2016-05-01 19:50 - 2016-04-02 10:26 - 01169408 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll 2016-05-01 19:50 - 2016-03-28 10:21 - 00698368 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll 2016-05-01 19:50 - 2016-03-28 10:21 - 00499200 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll 2016-05-01 19:50 - 2016-03-28 10:21 - 00279040 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll 2016-05-01 19:50 - 2016-03-28 10:21 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll 2016-05-01 19:50 - 2016-03-28 10:21 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll 2016-05-01 19:44 - 2016-03-10 16:19 - 07452512 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2016-05-01 19:44 - 2016-03-10 16:17 - 01663192 _____ (Microsoft Corporation) C:\windows\system32\winload.efi 2016-05-01 19:44 - 2016-03-10 16:17 - 01523216 _____ (Microsoft Corporation) C:\windows\system32\winload.exe 2016-05-01 19:44 - 2016-03-10 16:17 - 01490128 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi 2016-05-01 19:44 - 2016-03-10 16:17 - 01358960 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe 2016-05-01 19:44 - 2016-03-10 16:17 - 01133752 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2016-05-01 19:44 - 2016-03-10 14:48 - 00862720 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2016-05-01 19:44 - 2016-03-10 14:43 - 00161280 _____ (Microsoft Corporation) C:\windows\SysWOW64\msorcl32.dll 2016-05-01 19:44 - 2016-03-10 13:55 - 00166400 _____ (Microsoft Corporation) C:\windows\system32\mtxoci.dll 2016-05-01 19:44 - 2016-03-10 13:42 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\mtxoci.dll 2016-05-01 19:42 - 2016-02-02 15:16 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rasl2tp.sys 2016-05-01 19:42 - 2016-01-21 16:35 - 00952928 _____ (Microsoft Corporation) C:\windows\system32\mfmp4srcsnk.dll 2016-05-01 19:42 - 2016-01-21 15:42 - 00786152 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmp4srcsnk.dll 2016-05-01 19:32 - 2016-02-05 11:46 - 01455104 _____ (Microsoft Corporation) C:\windows\system32\VSSVC.exe 2016-05-01 19:31 - 2016-01-27 12:18 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll 2016-05-01 19:30 - 2016-02-03 12:14 - 00080896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\IPMIDrv.sys 2016-05-01 19:30 - 2016-02-02 14:51 - 00162304 _____ (Microsoft Corporation) C:\windows\system32\WsmAuto.dll 2016-05-01 19:30 - 2016-02-02 14:19 - 00144384 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAuto.dll 2016-05-01 19:30 - 2016-02-02 14:01 - 00031744 _____ (Microsoft Corporation) C:\windows\system32\WsmAgent.dll 2016-05-01 19:30 - 2016-02-02 13:51 - 02609152 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll 2016-05-01 19:30 - 2016-02-02 13:48 - 00285184 _____ (Microsoft Corporation) C:\windows\system32\WsmWmiPl.dll 2016-05-01 19:30 - 2016-02-02 13:46 - 00026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAgent.dll 2016-05-01 19:30 - 2016-02-02 13:41 - 02170880 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll 2016-05-01 19:30 - 2016-02-02 13:39 - 00236032 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmWmiPl.dll 2016-05-01 19:14 - 2016-05-01 19:14 - 00047614 _____ C:\Users\Casas Bahia\Downloads\Obscure.2.English.PCDVD.torrent 2016-05-01 19:05 - 2016-05-01 19:49 - 156146762 _____ C:\Users\Casas Bahia\Downloads\[Wii]Resident_Evil_The_Umbrella_Chronicles[PAL][ESPALWii.com].rar 2016-05-01 19:04 - 2016-05-01 19:04 - 00021514 _____ C:\Users\Casas Bahia\Downloads\Resident.Evil.Umbrella.Chronicles-Nintendo-Wii-www.gamestorrent.biz.torrent 2016-05-01 17:28 - 2016-05-01 17:28 - 00003036 _____ C:\windows\System32\Tasks\USER_ESRV_SVC_WILLAMETTE 2016-05-01 17:28 - 2016-05-01 17:28 - 00001189 _____ C:\Users\Public\Desktop\Intel(R) Driver Update Utility 2.4.lnk 2016-05-01 17:28 - 2016-05-01 17:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility 2016-05-01 17:28 - 2016-03-09 20:43 - 00021984 _____ C:\windows\system32\Drivers\semav6msr64.sys 2016-05-01 17:27 - 2016-05-01 17:27 - 00000000 ____D C:\windows\System32\Tasks\Intel 2016-05-01 17:27 - 2016-05-01 17:27 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility 2016-05-01 17:24 - 2016-05-01 17:26 - 05940136 _____ (Intel) C:\Users\Casas Bahia\Downloads\Intel Driver Update Utility Installer.exe 2016-05-01 13:57 - 2016-05-01 13:57 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\CEF 2016-05-01 13:47 - 2016-05-01 13:57 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Razer 2016-05-01 13:47 - 2016-05-01 13:47 - 00001308 _____ C:\Users\Public\Desktop\Razer Cortex.lnk 2016-05-01 13:47 - 2016-05-01 13:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2016-05-01 13:46 - 2016-04-17 12:21 - 00137840 _____ (Razer, Inc.) C:\windows\system32\Drivers\rzpnk.sys 2016-05-01 13:45 - 2016-05-01 13:46 - 00000000 ____D C:\Users\Todos os Usuários\Razer 2016-05-01 13:45 - 2016-05-01 13:46 - 00000000 ____D C:\ProgramData\Razer 2016-05-01 13:45 - 2016-05-01 13:46 - 00000000 ____D C:\Program Files (x86)\Razer 2016-05-01 13:45 - 2016-03-10 16:17 - 00044144 _____ (Razer, Inc.) C:\windows\system32\Drivers\rzpmgrk.sys 2016-05-01 12:27 - 2016-05-01 13:41 - 122034184 _____ (Razer Inc. ) C:\Users\Casas Bahia\Downloads\RazerCortexSetup_7.2.16.12597.exe 2016-04-30 20:54 - 2016-04-30 20:54 - 3270246400 _____ C:\Users\Casas Bahia\Downloads\10x64 - PHDowns.iso 2016-04-30 20:48 - 2016-04-30 20:48 - 00001167 _____ C:\Users\Public\Desktop\GameGain.lnk 2016-04-30 20:48 - 2016-04-30 20:48 - 00000000 ____D C:\Program Files (x86)\PGWARE 2016-04-30 20:46 - 2013-11-08 00:54 - 00000000 ____D C:\Users\Casas Bahia\Downloads\Game Gain 3 + Crack (PHOTO HCS) 2016-04-30 20:40 - 2016-04-30 20:41 - 03810143 _____ C:\Users\Casas Bahia\Downloads\Game Gain 3 + Crack (PHOTO HCS).rar 2016-04-30 20:22 - 2016-04-30 20:22 - 00000000 ____D C:\Program Files (x86)\RelevantKnowledge 2016-04-30 20:20 - 2016-04-30 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameGain 2016-04-30 20:18 - 2016-04-30 20:19 - 03913552 _____ (PGWARE LLC ) C:\Users\Casas Bahia\Downloads\gamegain-4-8-30-2015-en-win.exe 2016-04-30 19:28 - 2016-04-30 19:28 - 00000868 _____ C:\Users\Casas Bahia\Desktop\Resident Evil 4.lnk 2016-04-30 18:53 - 2016-04-30 18:53 - 00000000 ____D C:\Users\Casas Bahia\Documents\Dolphin Emulator 2016-04-28 11:29 - 2016-04-28 11:32 - 00000000 ____D C:\FFOutput 2016-04-28 01:14 - 2016-04-28 01:14 - 00001921 _____ C:\Users\Casas Bahia\Desktop\AfterFX - Atalho.lnk 2016-04-28 01:10 - 2016-04-28 01:10 - 00001221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CS6.lnk 2016-04-28 01:07 - 2016-04-28 01:07 - 00001060 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk 2016-04-28 01:05 - 2016-04-28 01:05 - 00001550 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk 2016-04-28 01:05 - 2016-04-28 01:05 - 00001113 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CS6.lnk 2016-04-28 00:45 - 2016-04-28 00:45 - 00000000 ____D C:\Adobe After Effects CS6 [Full] 2016-04-27 16:51 - 2016-04-27 16:51 - 00000000 ____D C:\Users\Public\Documents\Baidu 2016-04-26 09:36 - 2016-04-05 18:53 - 00829944 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2016-04-26 09:36 - 2016-04-05 18:53 - 00176632 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-04-25 17:30 - 2016-04-25 17:30 - 00001144 _____ C:\Users\Casas Bahia\Desktop\ePSXe - Atalho.lnk 2016-04-25 16:48 - 2016-04-25 16:49 - 00000000 ____D C:\Users\Casas Bahia\Documents\ePSXE 2016-04-25 14:26 - 2016-04-25 14:26 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome 2016-04-24 21:23 - 2016-04-24 21:38 - 3240886272 _____ C:\Users\Casas Bahia\Documents\SLUS_20013.iso 2016-04-24 21:22 - 2016-04-24 21:22 - 00001225 _____ C:\Users\Casas Bahia\Desktop\Format Factory.lnk 2016-04-24 21:22 - 2016-04-24 21:22 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2016-04-24 21:21 - 2016-04-24 21:21 - 00000000 ____D C:\Program Files (x86)\FreeTime 2016-04-24 16:52 - 2016-04-24 16:52 - 00001172 _____ C:\Users\Casas Bahia\Desktop\Slender The Arrival.lnk 2016-04-24 16:52 - 2016-04-24 16:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Slender The Arrival 2016-04-24 16:51 - 2016-04-24 16:51 - 00000000 ____D C:\Program Files (x86)\w 2016-04-24 16:51 - 2016-04-24 16:51 - 00000000 ____D C:\Program Files (x86)\Slender The Arrival 2016-04-24 16:47 - 2016-04-24 16:49 - 00000000 ____D C:\Slender The Arrival [English][PCDVD][WaLMaRT][WwW.GamesTorrents.CoM] 2016-04-23 23:13 - 2016-04-23 23:14 - 00916643 _____ C:\Users\Casas Bahia\Downloads\Point_Blank_PC_.zip 2016-04-23 18:39 - 2016-04-30 19:51 - 00000504 _____ C:\Users\Casas Bahia\Downloads\cpuz.ini 2016-04-23 18:39 - 2016-01-22 11:18 - 03370040 _____ (CPUID) C:\Users\Casas Bahia\Downloads\cpuz_x64.exe 2016-04-23 18:39 - 2016-01-22 11:18 - 02861624 _____ (CPUID) C:\Users\Casas Bahia\Downloads\cpuz_x32.exe 2016-04-23 18:39 - 2016-01-21 15:13 - 00024335 _____ C:\Users\Casas Bahia\Downloads\cpuz_readme.txt 2016-04-23 18:26 - 2016-04-23 18:39 - 02457458 _____ C:\Users\Casas Bahia\Downloads\cpu-z_1.75-en (1).zip 2016-04-23 18:19 - 2016-02-05 16:07 - 00378712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys 2016-04-23 18:19 - 2016-02-05 12:11 - 00845312 _____ (Microsoft Corporation) C:\windows\system32\BFE.DLL 2016-04-23 18:19 - 2016-02-05 12:11 - 00422400 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL 2016-04-23 18:19 - 2016-02-05 12:07 - 00272384 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL 2016-04-23 18:19 - 2016-02-05 12:02 - 01083904 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL 2016-04-23 18:19 - 2016-02-04 15:07 - 00222720 _____ (Microsoft Corporation) C:\windows\system32\dhcpsapi.dll 2016-04-23 18:19 - 2016-02-04 14:35 - 00142848 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpsapi.dll 2016-04-23 18:19 - 2016-02-04 13:23 - 00713216 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll 2016-04-23 18:19 - 2016-02-04 13:22 - 00561664 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll 2016-04-23 18:19 - 2016-01-22 02:22 - 02487296 _____ (Microsoft Corporation) C:\windows\system32\storagewmi.dll 2016-04-23 18:19 - 2016-01-22 02:11 - 01482240 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi.dll 2016-04-23 18:18 - 2016-02-06 19:41 - 00316760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\volsnap.sys 2016-04-23 17:53 - 2016-04-23 17:57 - 00290614 _____ C:\Users\Casas Bahia\Downloads\cpu-z_1.75-en.zip 2016-04-23 17:04 - 2016-02-03 12:11 - 01673728 _____ (Microsoft Corporation) C:\windows\system32\workfolderssvc.dll 2016-04-23 17:04 - 2016-02-02 14:18 - 01574912 _____ (Microsoft Corporation) C:\windows\system32\wbengine.exe 2016-04-23 17:04 - 2016-02-02 14:15 - 00787456 _____ (Microsoft Corporation) C:\windows\system32\WorkfoldersControl.dll 2016-04-23 17:04 - 2016-01-31 14:17 - 00779264 _____ (Microsoft Corporation) C:\windows\system32\WindowsAnytimeUpgradeui.exe 2016-04-23 17:04 - 2016-01-26 16:15 - 00072024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vpci.sys 2016-04-23 17:04 - 2016-01-20 19:40 - 00099672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\disk.sys 2016-04-23 17:00 - 2016-04-23 17:04 - 04280320 _____ C:\Users\Casas Bahia\Downloads\Japan_V02.00_Ps2_Bios.iso 2016-04-23 16:55 - 2016-02-06 20:05 - 00551256 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vhdmp.sys 2016-04-23 16:51 - 2016-04-23 17:19 - 00000000 ____D C:\Users\Casas Bahia\Documents\DrXd Gamerpaulo BIOS 1.4.0 2016-04-23 16:50 - 2016-04-23 16:50 - 00000000 ____D C:\Users\Casas Bahia\Downloads\Musicas 2016-04-23 16:46 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_7.dll 2016-04-23 16:46 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_7.dll 2016-04-23 16:44 - 2016-04-23 16:44 - 00001962 _____ C:\Users\Public\Desktop\PCSX2 1.4.0.lnk 2016-04-23 16:26 - 2016-02-17 14:19 - 00000000 ____D C:\Users\Casas Bahia\Desktop\Dll 2016-04-23 16:25 - 2016-04-23 16:25 - 00001111 _____ C:\Users\Public\Desktop\Dll-Files Fixer.lnk 2016-04-23 16:17 - 2016-04-23 16:21 - 05443584 _____ (Dll-Files.com ) C:\Users\Casas Bahia\Desktop\dffsetup.exe 2016-04-23 16:14 - 2016-04-23 16:14 - 01670624 _____ C:\Users\Casas Bahia\Desktop\Dll.rar 2016-04-23 15:55 - 2016-04-23 15:58 - 05444000 _____ (Dll-Files.com ) C:\Users\Casas Bahia\Downloads\dffsetup-vcruntime140.exe 2016-04-23 15:47 - 2016-05-04 17:47 - 00000324 _____ C:\windows\Tasks\DLL-Files FixerASKUSER.job 2016-04-23 15:47 - 2016-04-23 15:47 - 00002920 _____ C:\windows\System32\Tasks\DLL-Files FixerASKUSER 2016-04-23 15:46 - 2016-04-23 15:46 - 00635040 _____ (Microsoft Corporation) C:\windows\system32\msvcp140.dll 2016-04-23 15:39 - 2016-04-27 16:04 - 00000316 _____ C:\windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2016-04-23 15:39 - 2016-04-23 21:22 - 00000332 _____ C:\windows\Tasks\DLL-Files.Com Fixer_Updates.job 2016-04-23 15:39 - 2016-04-23 16:02 - 00003074 _____ C:\windows\System32\Tasks\DLL-Files.Com Fixer_Updates 2016-04-23 15:39 - 2016-04-23 16:02 - 00003060 _____ C:\windows\System32\Tasks\DLL-Files.Com Fixer_MONTHLY 2016-04-23 15:38 - 2016-05-04 17:47 - 00003112 _____ C:\windows\System32\Tasks\RDReminder 2016-04-23 15:38 - 2016-04-23 15:38 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\dll-files.com 2016-04-23 15:37 - 2016-04-23 16:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer 2016-04-23 15:37 - 2016-04-23 16:25 - 00000000 ____D C:\Program Files (x86)\Dll-Files.com Fixer 2016-04-23 15:24 - 2016-04-23 15:30 - 04945484 _____ C:\Users\Casas Bahia\Downloads\DiFix3.1.81.rar 2016-04-23 15:07 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\windows\system32\d3dcsx_43.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_6.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_6.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_6.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_6.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_4.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_4.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_7.dll 2016-04-23 15:07 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_7.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_5.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_5.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_5.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_5.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_3.dll 2016-04-23 15:07 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_3.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\windows\system32\d3dcsx_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dcsx_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\windows\system32\d3dx11_42.dll 2016-04-23 15:07 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx11_42.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_4.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_4.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_4.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_4.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_6.dll 2016-04-23 15:07 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_6.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_41.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_41.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_41.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_41.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_41.dll 2016-04-23 15:07 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_41.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_40.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_40.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_40.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_40.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_40.dll 2016-04-23 15:07 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_40.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_3.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_3.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_3.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_3.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_2.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_2.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_5.dll 2016-04-23 15:06 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_5.dll 2016-04-23 15:06 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_2.dll 2016-04-23 15:06 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_2.dll 2016-04-23 15:06 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_1.dll 2016-04-23 15:06 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_1.dll 2016-04-23 15:06 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_2.dll 2016-04-23 15:06 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_2.dll 2016-04-23 15:06 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_39.dll 2016-04-23 15:06 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_39.dll 2016-04-23 15:06 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_39.dll 2016-04-23 15:06 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_39.dll 2016-04-23 15:06 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_39.dll 2016-04-23 15:06 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_39.dll 2016-04-23 15:06 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_1.dll 2016-04-23 15:06 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_1.dll 2016-04-23 15:06 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_1.dll 2016-04-23 15:06 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_1.dll 2016-04-23 15:06 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\windows\system32\XAPOFX1_0.dll 2016-04-23 15:06 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAPOFX1_0.dll 2016-04-23 15:06 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_4.dll 2016-04-23 15:06 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_4.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_38.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_38.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_38.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_38.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_38.dll 2016-04-23 15:06 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_38.dll 2016-04-23 15:06 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\windows\system32\XAudio2_0.dll 2016-04-23 15:06 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\windows\SysWOW64\XAudio2_0.dll 2016-04-23 15:06 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine3_0.dll 2016-04-23 15:06 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\windows\system32\xactengine3_0.dll 2016-04-23 15:06 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_3.dll 2016-04-23 15:06 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_3.dll 2016-04-23 15:06 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_37.dll 2016-04-23 15:06 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DX9_37.dll 2016-04-23 15:06 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_37.dll 2016-04-23 15:06 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_37.dll 2016-04-23 15:06 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_37.dll 2016-04-23 15:06 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_37.dll 2016-04-23 15:06 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\windows\system32\xactengine2_10.dll 2016-04-23 15:06 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine2_10.dll 2016-04-23 15:06 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\windows\system32\X3DAudio1_2.dll 2016-04-23 15:06 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\windows\SysWOW64\X3DAudio1_2.dll 2016-04-23 15:06 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\windows\system32\d3dx9_36.dll 2016-04-23 15:06 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_36.dll 2016-04-23 15:06 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_36.dll 2016-04-23 15:06 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_36.dll 2016-04-23 15:06 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_36.dll 2016-04-23 15:06 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_36.dll 2016-04-23 15:06 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\windows\system32\xactengine2_9.dll 2016-04-23 15:06 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\windows\SysWOW64\xactengine2_9.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\windows\system32\d3dx9_35.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_35.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_35.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_35.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_35.dll 2016-04-23 15:06 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_35.dll 2016-04-23 15:06 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_34.dll 2016-04-23 15:06 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_34.dll 2016-04-23 15:06 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_34.dll 2016-04-23 15:06 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\windows\system32\xinput1_3.dll 2016-04-23 15:06 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\windows\SysWOW64\xinput1_3.dll 2016-04-23 15:06 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_33.dll 2016-04-23 15:06 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_33.dll 2016-04-23 15:06 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_33.dll 2016-04-23 15:06 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_32.dll 2016-04-23 15:06 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\windows\system32\d3dx10.dll 2016-04-23 15:06 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10.dll 2016-04-23 15:06 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_31.dll 2016-04-23 15:06 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\windows\system32\xinput1_2.dll 2016-04-23 15:06 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\windows\SysWOW64\xinput1_2.dll 2016-04-23 15:06 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_30.dll 2016-04-23 15:06 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\windows\system32\xinput1_1.dll 2016-04-23 15:06 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\windows\SysWOW64\xinput1_1.dll 2016-04-23 15:06 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_29.dll 2016-04-23 15:06 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_28.dll 2016-04-23 15:06 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_27.dll 2016-04-23 15:06 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_26.dll 2016-04-23 15:06 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_25.dll 2016-04-23 15:06 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx9_24.dll 2016-04-23 14:02 - 2016-04-23 16:47 - 00000000 ____D C:\Program Files (x86)\PCSX2 1.4.0 2016-04-23 14:02 - 2016-04-23 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2 2016-04-23 14:00 - 2016-04-23 14:00 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\rec_en_265 2016-04-23 13:59 - 2016-04-23 13:24 - 02511137 _____ C:\Users\Casas Bahia\Documents\DrXd Gamerpaulo PCSX2 Bios 1.4.0.rar 2016-04-22 20:56 - 2016-04-29 12:14 - 3317553796 _____ C:\Users\Casas Bahia\Downloads\REO1.rar 2016-04-22 20:35 - 2016-04-22 20:35 - 00000920 _____ C:\windows\SysWOW64\${LOGFILE} 2016-04-20 21:21 - 2016-04-20 21:21 - 00000000 ____D C:\Users\Public\Documents\Tools 2016-04-19 10:00 - 2016-04-19 10:00 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Store 2016-04-19 09:49 - 2016-04-22 20:35 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Nosibay 2016-04-19 09:47 - 2016-04-19 09:47 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage 2016-04-19 09:46 - 2016-04-19 09:47 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\ASPackage 2016-04-19 09:46 - 2016-04-19 09:47 - 00000000 ____D C:\Program Files (x86)\650A1D4C-1461070019-12F1-AF53-45A1B7749BD1 2016-04-19 09:45 - 2016-05-04 19:17 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\CalendarTool 2016-04-19 09:45 - 2016-04-19 09:45 - 00000000 ____D C:\Users\Public\Documents\Guid 2016-04-19 09:45 - 2016-04-19 09:45 - 00000000 ____D C:\Program Files (x86)\CalendarTool 2016-04-19 09:44 - 2016-04-19 09:44 - 00003040 _____ C:\windows\System32\Tasks\ttwifi 2016-04-19 09:44 - 2016-04-19 09:44 - 00002936 _____ C:\windows\System32\Tasks\osTip 2016-04-19 09:43 - 2016-04-19 09:44 - 00000000 ____D C:\Users\Todos os Usuários\WindowsMsg 2016-04-19 09:43 - 2016-04-19 09:44 - 00000000 ____D C:\ProgramData\WindowsMsg 2016-04-19 09:41 - 2016-04-19 10:15 - 00000000 ____D C:\Program Files (x86)\Hostify 2016-04-19 09:41 - 2016-04-19 09:42 - 00000000 ____D C:\Program Files\Windows Screen Manager 2016-04-16 17:51 - 2016-03-30 21:54 - 25817600 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2016-04-16 17:51 - 2016-03-30 21:31 - 02892800 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2016-04-16 17:51 - 2016-03-30 21:28 - 00571904 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2016-04-16 17:51 - 2016-03-30 21:25 - 06052352 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2016-04-16 17:51 - 2016-03-30 21:17 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2016-04-16 17:51 - 2016-03-30 21:03 - 20352512 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2016-04-16 17:51 - 2016-03-30 20:56 - 00145408 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2016-04-16 17:51 - 2016-03-30 20:56 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2016-04-16 17:51 - 2016-03-30 20:55 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2016-04-16 17:51 - 2016-03-30 20:53 - 00496640 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2016-04-16 17:51 - 2016-03-30 20:51 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2016-04-16 17:51 - 2016-03-30 20:50 - 01032704 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll 2016-04-16 17:51 - 2016-03-30 20:45 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2016-04-16 17:51 - 2016-03-30 20:45 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2016-04-16 17:51 - 2016-03-30 20:43 - 00806400 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2016-04-16 17:51 - 2016-03-30 20:43 - 00725504 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2016-04-16 17:51 - 2016-03-30 20:43 - 00379392 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2016-04-16 17:51 - 2016-03-30 20:42 - 02131968 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2016-04-16 17:51 - 2016-03-30 20:39 - 15415808 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2016-04-16 17:51 - 2016-03-30 20:30 - 04611072 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2016-04-16 17:51 - 2016-03-30 20:30 - 02596864 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2016-04-16 17:51 - 2016-03-30 20:30 - 00279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2016-04-16 17:51 - 2016-03-30 20:30 - 00128000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2016-04-16 17:51 - 2016-03-30 20:27 - 00880128 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll 2016-04-16 17:51 - 2016-03-30 20:24 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2016-04-16 17:51 - 2016-03-30 20:23 - 02056192 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2016-04-16 17:51 - 2016-03-30 20:23 - 00693248 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2016-04-16 17:51 - 2016-03-30 20:23 - 00330752 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2016-04-16 17:51 - 2016-03-30 20:21 - 13811712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2016-04-16 17:51 - 2016-03-30 20:18 - 01547264 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2016-04-16 17:51 - 2016-03-30 20:06 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2016-04-16 17:51 - 2016-03-30 20:05 - 02121216 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2016-04-16 17:51 - 2016-03-30 20:02 - 01311744 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2016-04-16 17:51 - 2016-03-30 20:00 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2016-04-15 14:31 - 2016-03-15 20:00 - 00561952 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys 2016-04-15 14:31 - 2016-03-15 11:14 - 01441792 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2016-04-15 14:31 - 2016-03-11 11:48 - 00833024 _____ (Microsoft Corporation) C:\windows\system32\samsrv.dll 2016-04-15 14:31 - 2016-03-10 15:22 - 00201728 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys 2016-04-15 14:31 - 2016-03-10 15:21 - 00401920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys 2016-04-15 14:31 - 2016-03-10 15:20 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys 2016-04-15 14:31 - 2016-03-10 14:44 - 00445440 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll 2016-04-15 14:31 - 2016-03-10 14:16 - 00324096 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll 2016-04-15 14:31 - 2016-03-10 14:03 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\samlib.dll 2016-04-15 14:31 - 2016-03-10 13:48 - 00064512 _____ (Microsoft Corporation) C:\windows\SysWOW64\samlib.dll 2016-04-15 14:31 - 2016-03-02 22:39 - 01661576 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll 2016-04-15 14:31 - 2016-03-02 22:39 - 01212248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll 2016-04-15 14:30 - 2016-03-03 13:47 - 02345472 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2016-04-15 14:30 - 2016-03-03 13:33 - 01556992 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll 2016-04-14 13:39 - 2016-03-03 13:13 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\basesrv.dll 2016-04-14 13:28 - 2016-03-29 11:05 - 04175872 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2016-04-14 10:19 - 2016-04-14 10:19 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\rec_en_252 2016-04-10 17:29 - 2016-04-10 20:46 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Apple Computer 2016-04-10 17:29 - 2016-04-10 17:29 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Apple Computer 2016-04-10 17:28 - 2016-04-10 17:28 - 00001772 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\Users\Todos os Usuários\Apple Computer 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\ProgramData\Apple Computer 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\Program Files\iTunes 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\Program Files\iPod 2016-04-10 17:28 - 2016-04-10 17:28 - 00000000 ____D C:\Program Files (x86)\iTunes 2016-04-10 17:26 - 2016-04-10 17:26 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-04-10 17:26 - 2016-04-10 17:26 - 00000000 ____D C:\windows\System32\Tasks\Apple 2016-04-10 17:26 - 2016-04-10 17:26 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Apple 2016-04-10 17:26 - 2016-04-10 17:26 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2016-04-10 17:25 - 2016-04-10 17:28 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-04-10 17:25 - 2016-04-10 17:26 - 00000000 ____D C:\Users\Todos os Usuários\Apple 2016-04-10 17:25 - 2016-04-10 17:26 - 00000000 ____D C:\ProgramData\Apple 2016-04-10 17:25 - 2016-04-10 17:26 - 00000000 ____D C:\Program Files\Bonjour 2016-04-10 17:25 - 2016-04-10 17:26 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-04-05 17:45 - 2016-04-05 17:45 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Macromedia 2016-04-05 10:42 - 2016-04-23 16:47 - 00000000 ____D C:\Program Files (x86)\rec_en_245 2016-04-05 10:42 - 2016-04-23 14:00 - 00000000 ____D C:\Program Files (x86)\Games-desktop 2016-04-05 10:42 - 2016-04-05 10:42 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\rec_en_245 ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-05-04 19:27 - 2015-10-26 13:18 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\uTorrent 2016-05-04 19:19 - 2014-09-28 14:51 - 00003598 _____ C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4096679686-1002404829-1145887975-1001 2016-05-04 19:15 - 2013-12-12 04:04 - 00000000 ____D C:\Users\Todos os Usuários\WinClon 2016-05-04 19:15 - 2013-12-12 04:04 - 00000000 ____D C:\ProgramData\WinClon 2016-05-04 19:14 - 2013-08-22 12:36 - 00000000 __RHD C:\Users\Public\Libraries 2016-05-04 19:10 - 2013-12-13 03:07 - 00774900 _____ C:\windows\system32\prfh0416.dat 2016-05-04 19:10 - 2013-12-13 03:07 - 00158494 _____ C:\windows\system32\prfc0416.dat 2016-05-04 19:10 - 2013-08-27 01:56 - 01797166 _____ C:\windows\system32\PerfStringBackup.INI 2016-05-04 19:10 - 2013-08-22 10:36 - 00000000 ____D C:\windows\Inf 2016-05-04 19:09 - 2016-03-17 17:13 - 00000000 ___DO C:\Users\Casas Bahia\OneDrive 2016-05-04 19:09 - 2015-10-20 19:47 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\CrashDumps 2016-05-04 19:07 - 2016-03-16 14:44 - 00000000 ____D C:\Users\Casas Bahia\AppData\LocalLow\uTorrent 2016-05-04 19:06 - 2016-03-18 11:53 - 00001102 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-05-04 19:04 - 2013-08-22 11:45 - 00000006 ____H C:\windows\Tasks\SA.DAT 2016-05-04 16:59 - 2016-03-18 11:53 - 00001106 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-05-04 12:18 - 2013-08-27 02:50 - 00000000 ____D C:\windows\Panther 2016-05-04 12:10 - 2013-08-22 12:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-05-04 12:10 - 2013-08-22 12:36 - 00000000 ____D C:\windows\AppReadiness 2016-05-03 15:02 - 2016-03-31 14:35 - 00000314 _____ C:\windows\Tasks\WinThruster_DEFAULT.job 2016-05-03 15:01 - 2016-03-31 14:35 - 00003106 _____ C:\windows\System32\Tasks\WinThruster 2016-05-03 13:29 - 2013-08-22 12:20 - 00000000 ____D C:\windows\CbsTemp 2016-05-03 13:07 - 2014-09-28 14:46 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Adobe 2016-05-03 11:46 - 2015-12-10 13:51 - 00000000 ____D C:\Program Files (x86)\Jumpstart 2016-05-03 10:39 - 2013-08-22 12:36 - 00000000 ____D C:\windows\rescache 2016-05-03 10:34 - 2013-08-22 10:25 - 00524288 ___SH C:\windows\system32\config\BBI 2016-05-03 10:30 - 2016-03-23 14:09 - 00000000 ____D C:\windows\system32\appraiser 2016-05-03 10:30 - 2013-08-22 12:36 - 00000000 ___RD C:\windows\ToastData 2016-05-02 18:04 - 2016-03-18 12:00 - 00002220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-02 18:04 - 2016-03-18 12:00 - 00002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-05-02 13:16 - 2016-03-28 10:35 - 00000000 ____D C:\windows\system32\MRT 2016-05-02 13:12 - 2016-03-28 10:35 - 135176864 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2016-05-02 10:29 - 2013-08-22 16:12 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\windows\WinStore 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files\Windows Defender 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files\Common Files\System 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-05-02 10:29 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2016-05-02 10:29 - 2013-08-22 10:36 - 00000000 ____D C:\windows\servicing 2016-05-02 10:28 - 2013-12-13 02:57 - 00000000 ____D C:\windows\SysWOW64\XPSViewer 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\SysWOW64\winrm 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\SysWOW64\WCN 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\SysWOW64\slmgr 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\system32\winrm 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\system32\WCN 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\system32\slmgr 2016-05-02 10:28 - 2013-08-22 16:10 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ___SD C:\windows\system32\dsc 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ___RD C:\windows\ImmersiveControlPanel 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\SysWOW64\MUI 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\SysWOW64\Com 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\SystemResetPlatform 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\MUI 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\migwiz 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\Com 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\PolicyDefinitions 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\IME 2016-05-02 10:28 - 2013-08-22 12:36 - 00000000 ____D C:\windows\Help 2016-05-02 10:28 - 2013-08-22 10:36 - 00000000 ____D C:\windows\SysWOW64\oobe 2016-05-02 10:28 - 2013-08-22 10:36 - 00000000 ____D C:\windows\SysWOW64\Dism 2016-05-02 10:28 - 2013-08-22 10:36 - 00000000 ____D C:\windows\system32\Sysprep 2016-05-02 10:28 - 2013-08-22 10:36 - 00000000 ____D C:\windows\system32\oobe 2016-05-02 10:28 - 2013-08-22 10:36 - 00000000 ____D C:\windows\system32\Dism 2016-05-02 10:27 - 2013-08-22 12:36 - 00000000 ____D C:\windows\SysWOW64\en-GB 2016-05-02 10:27 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\en-GB 2016-05-01 18:02 - 2016-01-03 15:54 - 00000000 ____D C:\img 2016-05-01 17:28 - 2013-12-12 03:26 - 00000000 ____D C:\Users\Todos os Usuários\Intel 2016-05-01 17:28 - 2013-12-12 03:26 - 00000000 ____D C:\ProgramData\Intel 2016-05-01 17:28 - 2013-12-12 03:26 - 00000000 ____D C:\Program Files\Intel 2016-05-01 17:27 - 2015-10-23 13:38 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2016-05-01 17:27 - 2015-10-23 13:38 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-01 17:27 - 2013-12-12 03:24 - 00000000 ____D C:\Program Files (x86)\Intel 2016-04-30 18:49 - 2015-11-18 14:12 - 00000000 ____D C:\Users\Todos os Usuários\TEMP 2016-04-30 18:49 - 2015-11-18 14:12 - 00000000 ____D C:\ProgramData\TEMP 2016-04-30 18:11 - 2015-12-06 20:03 - 00000000 ____D C:\Jogos e Apps 2016-04-28 14:55 - 2016-02-03 08:31 - 00000000 ____D C:\Tutoriais 2016-04-28 11:10 - 2013-08-22 11:44 - 04967648 _____ C:\windows\system32\FNTCACHE.DAT 2016-04-28 01:16 - 2014-09-28 14:45 - 00000000 ____D C:\Users\Casas Bahia\AppData\Roaming\Adobe 2016-04-28 01:10 - 2016-02-08 19:08 - 00000000 ____D C:\Program Files\Adobe 2016-04-28 01:10 - 2015-10-20 19:43 - 00000000 ____D C:\Users\Todos os Usuários\regid.1986-12.com.adobe 2016-04-28 01:10 - 2015-10-20 19:43 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2016-04-28 01:07 - 2013-12-12 04:16 - 00000000 ____D C:\Program Files\Common Files\Adobe 2016-04-28 01:05 - 2013-12-12 03:37 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-04-28 00:42 - 2013-08-22 12:36 - 00000000 ____D C:\windows\system32\NDF 2016-04-27 15:31 - 2015-12-26 11:11 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Nero 2016-04-27 14:35 - 2016-03-31 14:35 - 00000322 _____ C:\windows\Tasks\WinThruster_UPDATES.job 2016-04-24 09:50 - 2015-10-23 14:22 - 00000000 ____D C:\Users\Casas Bahia\Documents\PCSX2 2016-04-23 21:22 - 2015-11-30 11:51 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\Apps\2.0 2016-04-23 16:47 - 2016-04-01 21:19 - 00000000 ____D C:\Program Files (x86)\gmsd_br_021010285 2016-04-23 16:46 - 2016-04-01 21:19 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\gmsd_br_021010285 2016-04-23 16:46 - 2015-10-23 13:38 - 00000000 ___HD C:\windows\msdownld.tmp 2016-04-23 16:46 - 2015-10-23 13:38 - 00000000 ____D C:\windows\SysWOW64\directx 2016-04-23 16:03 - 2016-02-04 12:36 - 00000000 ____D C:\Users\Casas Bahia\AppData\Local\MEGAsync 2016-04-23 14:38 - 2014-12-06 20:37 - 00000000 ____D C:\Users\Casas Bahia\Documents\Bluetooth Folder 2016-04-23 14:33 - 2015-10-21 20:45 - 00000000 ___RD C:\Musicas 1 2016-04-23 14:29 - 2016-02-04 19:41 - 00000000 ____D C:\C4D-After Effects 2016-04-22 04:57 - 2015-10-20 23:53 - 00453288 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe 2016-04-21 22:50 - 2016-04-01 12:28 - 00000000 ____D C:\Fairy Tail 2016-04-20 21:03 - 2014-09-28 14:45 - 00000000 ____D C:\Users\Casas Bahia 2016-04-19 10:25 - 2016-03-18 11:48 - 00000000 __SHD C:\Users\Casas Bahia\AppData\LocalLow\EmieUserList 2016-04-19 10:25 - 2016-03-18 11:48 - 00000000 __SHD C:\Users\Casas Bahia\AppData\Local\EmieUserList 2016-04-19 10:25 - 2016-03-18 11:48 - 00000000 __SHD C:\Users\Casas Bahia\AppData\Local\EmieSiteList 2016-04-19 10:25 - 2016-03-18 11:47 - 00000000 __SHD C:\Users\Casas Bahia\AppData\LocalLow\EmieSiteList 2016-04-19 10:24 - 2016-02-11 18:10 - 00000000 ____D C:\Backups 2016-04-11 15:28 - 2015-12-10 14:45 - 570749538 _____ C:\windows\MEMORY.DMP 2016-04-11 15:28 - 2015-12-10 14:45 - 00000000 ____D C:\windows\Minidump ==================== Arquivos na raiz de alguns diretórios ======= 2016-04-19 09:40 - 2016-04-19 09:41 - 0001246 _____ () C:\Users\Casas Bahia\AppData\Roaming\Bubble Dock.boostrap.log 2016-04-19 09:49 - 2016-04-19 09:55 - 0005661 _____ () C:\Users\Casas Bahia\AppData\Roaming\Bubble Dock.installation.log 2016-04-01 21:25 - 2016-04-01 21:25 - 0204706 _____ () C:\Users\Casas Bahia\AppData\Roaming\inst.lat 2016-04-01 21:25 - 2016-04-01 21:25 - 0011568 _____ () C:\Users\Casas Bahia\AppData\Roaming\InstallationConfiguration.xml 2016-04-01 21:25 - 2016-04-01 21:25 - 0127488 _____ () C:\Users\Casas Bahia\AppData\Roaming\Installer.dat 2016-04-19 09:42 - 2016-04-19 09:42 - 0000097 _____ () C:\Users\Casas Bahia\AppData\Roaming\WindApp.boostrap.log 2016-04-19 09:58 - 2016-04-19 09:59 - 0000078 _____ () C:\Users\Casas Bahia\AppData\Roaming\WindApp.installation.log 2016-01-07 15:46 - 2016-01-07 15:46 - 0007605 _____ () C:\Users\Casas Bahia\AppData\Local\Resmon.ResmonCfg 2013-12-12 03:31 - 2013-12-12 03:31 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2013-12-12 03:41 - 2013-02-19 04:34 - 2064264 _____ (Samsung Electronics) C:\ProgramData\MakeMarkerFile.exe 2013-12-12 03:41 - 2013-01-12 11:51 - 0003004 _____ () C:\ProgramData\MakeMarkerFile.xml Arquivos para serem movidos ou deletados: ==================== C:\Users\Casas Bahia\Resident_Evil_5_PC__English_ISO.exe ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\windows\explorer.exe => O arquivo é assinado digitalmente C:\windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\windows\system32\services.exe => O arquivo é assinado digitalmente C:\windows\system32\User32.dll => O arquivo é assinado digitalmente C:\windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-04-25 15:57 ==================== Fim de FRST.txt ============================