Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:22-05-2016 Executado por Diego (administrador) em DIEGO-PC (22-05-2016 09:14:47) Executando a partir de C:\Users\Diego\Downloads\Programs Perfis Carregados: Diego (Perfis Disponíveis: Diego) Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil) Internet Explorer Versão 8 (Navegador padrão: FF) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wusa.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1808168 2013-08-26] (Synaptics Incorporated) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152 2015-08-22] (Tonec Inc.) HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8698584 2016-04-15] (Piriform Ltd) HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\...\Run: [uTorrent] => C:\Users\Diego\AppData\Roaming\uTorrent\uTorrent.exe [2530304 2016-05-21] (BitTorrent Inc.) HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [241664 2010-11-21] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{D9A398B6-5850-4C86-86A6-ACE2C77C976F}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F7CE183E-6D56-4C4B-982C-009E17F6C906}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=5ab120abc3bf1e98ece99b2eab6d4b63 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=5ab120abc3bf1e98ece99b2eab6d4b63 HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=5ab120abc3bf1e98ece99b2eab6d4b63 BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-08-21] (Internet Download Manager, Tonec Inc.) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-08-21] (Internet Download Manager, Tonec Inc.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\7qmnrrvx.default FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-03] (Adobe Systems Inc.) FF HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: IDM integration - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2015-08-14] FF HKU\S-1-5-21-2121123350-3983229837-4234891696-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Diego\AppData\Roaming\IDM\idmmzcc5 FF Extension: IDM CC - C:\Users\Diego\AppData\Roaming\IDM\idmmzcc5 [2016-05-16] [não assinado] Chrome: ======= CHR HomePage: Default -> hxxps://www.facebook.com/ CHR StartupUrls: Default -> "hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&guid=5ab120abc3bf1e98ece99b2eab6d4b63" CHR Profile: C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Apresentações) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-15] CHR Extension: (Google Docs) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-15] CHR Extension: (Google Drive) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-15] CHR Extension: (YouTube) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-15] CHR Extension: (Video Downloader professional) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2016-05-15] CHR Extension: (Planilhas do Google) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-15] CHR Extension: (Documentos Google off-line) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-15] CHR Extension: (Desprotetor de Links) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\imcbnnnoghiihopefblgehihofbfbmei [2016-05-15] CHR Extension: (Little Alchemy) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2016-05-15] CHR Extension: (Google Play) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2016-05-15] CHR Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-05-15] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-15] CHR Extension: (Gmail) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-15] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-08-21] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-08-21] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2838760 2016-04-24] (Microsoft Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation) S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-05-22 09:14 - 2016-05-22 09:14 - 00000000 ____D C:\FRST 2016-05-22 09:08 - 2016-05-22 09:08 - 00000000 ___HT C:\Windows\wusa.lock 2016-05-22 09:08 - 2016-05-22 09:08 - 00000000 ____D C:\8f8c12a7116450f47d107a5b8451b645 2016-05-22 09:07 - 2016-05-22 09:07 - 01034556 _____ C:\Users\Diego\Downloads\Windows6.1-KB2999226-x64.msu 2016-05-21 23:15 - 2016-05-21 23:18 - 00000000 ____D C:\Users\Diego\Downloads\[PBN] desmume-0.9.11-win32 2016-05-21 21:48 - 2016-04-30 12:21 - 891513273 _____ C:\Users\Diego\Desktop\Pokemon 17.mkv 2016-05-21 16:19 - 2016-05-21 22:12 - 00000000 ____D C:\Users\Diego\Downloads\O Senhor Dos Anéis - Trilogia Estendida (2001 - 2003) 2016-05-21 11:27 - 2016-05-21 16:07 - 00000000 ____D C:\Users\Diego\Downloads\Kung.Fu.Panda.3.2016.720p.HC.WEBRip.XviD.MP3-STUTTERSHIT 2016-05-21 11:23 - 2016-05-21 11:23 - 83236733 _____ C:\Users\Diego\Downloads\744 - Uma Épica Força de Defesa!.rar 2016-05-21 11:22 - 2016-05-21 11:22 - 83225617 _____ C:\Users\Diego\Downloads\745 - Um Show de Batalha no Ginásio de Virbank! Parte 1.rar 2016-05-21 11:04 - 2016-05-21 11:04 - 83181482 _____ C:\Users\Diego\Downloads\743 - Crise na Pesquisa Ferroseed!.rar 2016-05-21 11:03 - 2016-05-21 11:03 - 83215379 _____ C:\Users\Diego\Downloads\742 - Os Especialistas se Enfrentam!.rar 2016-05-21 10:52 - 2016-05-21 10:52 - 01194684 _____ C:\Users\Diego\Downloads\[PBN] desmume-0.9.11-win32.zip 2016-05-21 10:00 - 2016-05-21 20:33 - 00000000 ____D C:\Users\Diego\Downloads\Zootopia.Essa.Cidade.e.o.Bicho.2016.HDRip.XViD-Dublado-WWW.FILMESETORRENT.COM 2016-05-21 09:57 - 2016-05-21 21:46 - 00000000 ___SD C:\Users\Diego\AppData\LocalLow\Temp 2016-05-21 09:56 - 2016-05-21 09:56 - 00002601 _____ C:\Users\Diego\Desktop\µTorrent.lnk 2016-05-21 09:56 - 2016-05-21 09:56 - 00002601 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2016-05-21 09:52 - 2016-05-22 09:11 - 00000000 ____D C:\Users\Diego\AppData\Roaming\uTorrent 2016-05-20 20:40 - 2016-05-20 20:40 - 00038645 _____ C:\Users\Diego\Downloads\legendas_tv_20160519154444000000.rar 2016-05-20 20:31 - 2016-05-20 20:31 - 142889314 _____ C:\Users\Diego\Downloads\TSC.1x03.Leg.[www.theseriesdubladas.com].rmvb 2016-05-20 20:18 - 2016-05-20 20:18 - 143540050 _____ C:\Users\Diego\Downloads\TSC.1x02.Leg.[www.theseriesdubladas.com].rmvb 2016-05-20 19:39 - 2016-05-20 19:39 - 143906880 _____ C:\Users\Diego\Downloads\TSC.1x01.Leg.[www.theseriesdubladas.com].rmvb 2016-05-20 18:10 - 2016-05-20 18:11 - 00000000 ____D C:\Users\Diego\AppData\LocalLow\KMPlayer 2016-05-20 17:53 - 2016-05-20 17:54 - 787793890 _____ C:\Users\Diego\Downloads\jhou_.therebels.Z00topia _2016_ 720p BluRay.mkv.rar 2016-05-18 19:52 - 2016-05-18 19:52 - 00000000 ____D C:\Users\Diego\AppData\Local\CEF 2016-05-18 19:51 - 2016-05-18 19:51 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Adobe 2016-05-18 19:51 - 2016-05-18 19:51 - 00000000 ____D C:\Users\Diego\AppData\LocalLow\Adobe 2016-05-16 16:46 - 2016-05-16 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2016-05-16 16:46 - 2016-05-16 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-05-16 16:44 - 2016-05-16 16:44 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2016-05-16 16:43 - 2016-05-16 16:43 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services 2016-05-16 16:42 - 2016-05-16 16:42 - 00000000 ____D C:\Windows\PCHEALTH 2016-05-16 16:42 - 2016-05-16 16:42 - 00000000 ____D C:\Program Files\Microsoft Sync Framework 2016-05-16 16:42 - 2016-05-16 16:42 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2016-05-16 16:36 - 2016-05-16 16:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2016-05-16 16:34 - 2016-05-16 16:34 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2016-05-16 16:34 - 2016-05-16 16:34 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2016-05-16 16:33 - 2016-05-16 16:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-05-16 16:32 - 2016-05-16 16:32 - 00000000 __RHD C:\MSOCache 2016-05-16 16:10 - 2016-05-16 16:10 - 697692622 _____ C:\Users\Diego\Downloads\MO2010PP-brx64BFIC.rar 2016-05-16 15:52 - 2016-05-16 15:52 - 00000000 ____D C:\28471dfc70417dd618 2016-05-16 15:15 - 2016-05-16 15:15 - 00000000 ____D C:\Users\Public\Documents\Baidu 2016-05-16 14:50 - 2016-05-16 15:33 - 00000000 ____D C:\Users\Diego\AppData\Local\Mozilla 2016-05-16 14:50 - 2016-05-16 15:18 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Mozilla 2016-05-16 14:48 - 2016-05-16 15:26 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-05-16 14:48 - 2016-05-16 15:26 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-05-16 14:47 - 2016-05-18 19:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-05-16 14:47 - 2016-05-18 19:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-05-15 18:00 - 2016-05-15 18:00 - 00002128 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-05-15 18:00 - 2016-05-15 18:00 - 00002110 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-05-15 18:00 - 2016-05-15 18:00 - 00002110 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-05-15 18:00 - 2016-05-15 18:00 - 00002110 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-05-15 18:00 - 2016-05-15 18:00 - 00000000 ___RD C:\Users\Diego\OneDrive 2016-05-15 18:00 - 2016-05-15 18:00 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive 2016-05-15 17:59 - 2016-05-15 17:59 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2016-05-15 17:59 - 2016-05-15 17:59 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-05-15 16:10 - 2016-05-16 15:25 - 00000000 ____D C:\Windows\Panther 2016-05-15 15:42 - 2016-05-15 15:42 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2016-05-15 15:42 - 2016-05-15 15:42 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-05-15 15:42 - 2016-05-15 15:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2016-05-15 15:42 - 2016-05-15 15:42 - 00000000 ____D C:\Program Files\CCleaner 2016-05-15 15:35 - 2016-05-15 15:35 - 00000000 ____D C:\Users\Public\Documents\Tools 2016-05-15 15:34 - 2016-05-15 15:34 - 00000000 ____D C:\Users\Public\Documents\Guid 2016-05-15 15:34 - 2016-05-15 15:34 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer 2016-05-15 15:33 - 2016-05-21 16:08 - 00000000 ____D C:\KMPlayer 2016-05-15 15:27 - 2016-05-15 18:02 - 00000000 ____D C:\Users\Diego\Desktop\YU YU HAKUSHO 2016-05-15 15:26 - 2016-05-16 14:40 - 00000000 ____D C:\Users\Diego\Desktop\pen drive 2016-05-15 15:10 - 2016-05-15 15:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2016-05-15 15:10 - 2016-05-15 15:10 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2016-05-15 15:10 - 2013-12-01 10:10 - 00257624 _____ C:\Windows\system32\unrar64.dll 2016-05-15 15:10 - 2013-12-01 10:10 - 00218200 _____ C:\Windows\SysWOW64\unrar.dll 2016-05-15 14:23 - 2016-05-16 16:11 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2016-05-15 14:21 - 2016-05-20 17:05 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-05-15 14:21 - 2016-05-15 18:08 - 00000000 ____D C:\Users\Todos os Usuários\Adobe 2016-05-15 14:21 - 2016-05-15 18:08 - 00000000 ____D C:\ProgramData\Adobe 2016-05-15 14:21 - 2016-05-15 14:21 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-05-15 14:06 - 2016-05-22 09:01 - 00000000 ____D C:\Users\Diego\Downloads\Compressed 2016-05-15 14:06 - 2016-05-22 08:55 - 00000000 ____D C:\Users\Diego\Downloads\Video 2016-05-15 14:06 - 2016-05-21 21:48 - 00000000 ____D C:\Users\Diego\AppData\Roaming\DMCache 2016-05-15 14:06 - 2016-05-20 17:23 - 00000000 ____D C:\Users\Diego\AppData\Roaming\IDM 2016-05-15 14:06 - 2016-05-15 14:07 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager 2016-05-15 14:06 - 2016-05-15 14:06 - 00000000 ____D C:\Users\Todos os Usuários\IDM 2016-05-15 14:06 - 2016-05-15 14:06 - 00000000 ____D C:\Users\Diego\AppData\Roaming\WinRAR 2016-05-15 14:06 - 2016-05-15 14:06 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager 2016-05-15 14:06 - 2016-05-15 14:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager 2016-05-15 14:06 - 2016-05-15 14:06 - 00000000 ____D C:\ProgramData\IDM 2016-05-15 14:05 - 2016-05-15 14:06 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Notepad++ 2016-05-15 14:05 - 2016-05-15 14:05 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-05-15 14:05 - 2016-05-15 14:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-05-15 14:05 - 2016-05-15 14:05 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2016-05-15 14:02 - 2016-05-15 14:02 - 00001945 _____ C:\Windows\epplauncher.mif 2016-05-15 14:00 - 2016-05-15 14:00 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk 2016-05-15 14:00 - 2016-05-15 14:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2016-05-15 13:59 - 2016-05-15 14:00 - 00000000 ____D C:\Program Files\Microsoft Security Client 2016-05-15 13:53 - 2016-05-22 08:37 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-05-15 13:53 - 2016-05-21 22:50 - 00000964 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job 2016-05-15 13:53 - 2016-05-15 13:53 - 00003958 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2016-05-15 13:53 - 2016-05-15 13:53 - 00003840 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-05-15 13:52 - 2016-05-15 13:52 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-05-15 13:52 - 2016-05-15 13:52 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-05-15 13:52 - 2016-05-15 13:52 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-05-15 13:52 - 2016-05-15 13:52 - 00000000 ____D C:\Windows\system32\Macromed 2016-05-15 13:52 - 2016-05-15 13:52 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-15 13:52 - 2016-05-15 13:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-15 13:52 - 2016-05-15 13:52 - 00000000 ____D C:\Program Files\WinRAR 2016-05-15 13:51 - 2016-05-18 19:52 - 00000000 ____D C:\Users\Diego\AppData\Local\Adobe 2016-05-15 13:38 - 2016-05-15 13:38 - 00000000 ____D C:\b84481b8908baee089 2016-05-15 13:12 - 2016-05-15 13:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2016 2016-05-15 13:05 - 2016-05-15 13:05 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2016-05-15 12:57 - 2016-05-16 16:42 - 00000000 ____D C:\Program Files\Microsoft Office 2016-05-15 12:57 - 2016-05-15 12:57 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-05-15 12:24 - 2016-05-15 12:24 - 06748160 _____ C:\Program Files (x86)\GUT34D7.tmp 2016-05-15 12:24 - 2016-05-15 12:24 - 00000000 ____D C:\Program Files (x86)\GUM34C6.tmp 2016-05-15 12:21 - 2016-05-15 12:21 - 00002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-15 12:21 - 2016-05-15 12:21 - 00002257 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-05-15 12:17 - 2016-05-22 08:28 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-05-15 12:17 - 2016-05-21 20:31 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-05-15 12:17 - 2016-05-15 17:22 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-05-15 12:17 - 2016-05-15 17:22 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-05-15 12:17 - 2016-05-15 13:40 - 00000000 ____D C:\Users\Diego\AppData\Local\Google 2016-05-15 12:17 - 2016-05-15 12:20 - 00000000 ____D C:\Program Files (x86)\Google 2016-05-15 12:16 - 2016-05-18 19:19 - 00111520 _____ C:\Users\Diego\AppData\Local\GDIPFONTCACHEV1.DAT 2016-05-15 12:16 - 2016-05-15 12:17 - 00000000 ____D C:\Users\Diego\AppData\Local\Deployment 2016-05-15 12:16 - 2016-05-15 12:16 - 00000000 ____D C:\Users\Diego\AppData\Local\Apps\2.0 2016-05-15 12:11 - 2014-05-14 13:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-05-15 12:11 - 2014-05-14 13:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-05-15 12:11 - 2014-05-14 13:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-05-15 12:11 - 2014-05-14 13:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-05-15 12:11 - 2014-05-14 13:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-05-15 12:11 - 2014-05-14 13:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-05-15 12:11 - 2014-05-14 13:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-05-15 12:11 - 2014-05-14 13:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-05-15 12:11 - 2014-05-14 13:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-05-15 12:11 - 2014-05-14 13:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-05-15 12:11 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-05-15 12:11 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-05-15 12:11 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-05-15 12:11 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-05-15 11:37 - 2016-05-16 16:50 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2016-05-15 11:37 - 2016-05-15 11:37 - 00000000 ____D C:\Users\Diego\AppData\Local\Microsoft Help 2016-05-15 11:28 - 2016-05-15 11:28 - 00000000 ____D C:\Windows\SysWOW64\Atheros_L1e 2016-05-15 11:27 - 2016-05-15 11:27 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf 2016-05-15 11:27 - 2016-05-15 11:27 - 00000000 ____D C:\Program Files\Synaptics 2016-05-15 11:26 - 2016-05-15 11:26 - 00015688 _____ C:\Windows\system32\results.xml 2016-05-15 11:24 - 2016-05-15 11:24 - 00000000 ____D C:\Windows\SysWOW64\x64 2016-05-15 11:24 - 2016-05-15 11:24 - 00000000 ____D C:\Windows\SysWOW64\Lang 2016-05-15 11:24 - 2016-05-15 11:24 - 00000000 ____D C:\Windows\Options 2016-05-15 11:24 - 2016-05-15 11:24 - 00000000 ____D C:\Program Files (x86)\Atheros 2016-05-15 11:24 - 2016-05-15 11:24 - 00000000 ____D C:\Intel 2016-05-15 11:24 - 2009-10-13 07:54 - 00049449 _____ C:\Windows\system32\athrextx.cat 2016-05-15 11:24 - 2009-10-05 09:34 - 01542656 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2016-05-15 11:24 - 2009-10-05 09:34 - 01542656 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys 2016-05-15 11:24 - 2009-09-08 17:29 - 01002008 _____ (Intel Corporation) C:\Windows\SysWOW64\igxpun.exe 2016-05-15 11:23 - 2016-05-15 11:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-05-15 11:23 - 2016-05-15 11:24 - 00000000 ____D C:\Users\Todos os Usuários\Atheros 2016-05-15 11:23 - 2016-05-15 11:24 - 00000000 ____D C:\ProgramData\Atheros 2016-05-15 11:22 - 2016-05-15 11:22 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2016-05-15 11:22 - 2013-08-26 20:54 - 01436920 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00395048 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00272432 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys 2016-05-15 11:22 - 2013-08-26 20:54 - 00260904 _____ (Synaptics Incorporated) C:\Windows\system32\SynCtrl.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00206120 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCtrl.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00203560 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00169256 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCOM.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00147752 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo4.dll 2016-05-15 11:22 - 2013-08-26 20:54 - 00107816 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCOM.dll 2016-05-15 11:22 - 2013-08-26 20:06 - 00058880 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1C62x64.sys 2016-05-15 11:22 - 2009-09-08 17:29 - 00845848 _____ (Intel Corporation) C:\Windows\system32\igfxcfg.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00491032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00387608 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00365592 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00215576 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00165912 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2016-05-15 11:22 - 2009-09-08 17:29 - 00106008 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2016-05-15 11:22 - 2009-09-02 13:07 - 00004440 _____ C:\Windows\system32\iglhxs64.vp 2016-05-15 11:22 - 2009-09-02 12:58 - 01312768 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v1892.dll 2016-05-15 11:22 - 2009-09-02 12:54 - 07369728 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2016-05-15 11:22 - 2009-09-02 12:54 - 05617664 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2016-05-15 11:22 - 2009-09-02 12:52 - 00982220 _____ C:\Windows\SysWOW64\igkrng500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00982220 _____ C:\Windows\system32\igkrng500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00439300 _____ C:\Windows\SysWOW64\igcompkrng500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00439300 _____ C:\Windows\system32\igcompkrng500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00134592 _____ C:\Windows\SysWOW64\igfcg500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00134592 _____ C:\Windows\system32\igfcg500.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00092216 _____ C:\Windows\SysWOW64\igfcg500m.bin 2016-05-15 11:22 - 2009-09-02 12:52 - 00092216 _____ C:\Windows\system32\igfcg500m.bin 2016-05-15 11:22 - 2009-09-02 12:48 - 04234240 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2016-05-15 11:22 - 2009-09-02 12:43 - 00549888 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll 2016-05-15 11:22 - 2009-09-02 12:40 - 03646976 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2016-05-15 11:22 - 2009-09-02 12:37 - 08095232 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2016-05-15 11:22 - 2009-09-02 12:37 - 05195776 _____ (Intel Corporation) C:\Windows\system32\ig4dev64.dll 2016-05-15 11:22 - 2009-09-02 12:30 - 06042112 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2016-05-15 11:22 - 2009-09-02 12:30 - 03839488 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4dev32.dll 2016-05-15 11:22 - 2009-09-02 12:25 - 00293376 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2016-05-15 11:22 - 2009-09-02 12:25 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2016-05-15 11:22 - 2009-09-02 12:25 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2016-05-15 11:22 - 2009-09-02 12:25 - 00281088 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2016-05-15 11:22 - 2009-09-02 12:25 - 00279552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2016-05-15 11:22 - 2009-09-02 12:25 - 00264704 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00312832 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00306688 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00305152 _____ (Intel Corporation) C:\Windows\system32\igfxresp.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00301568 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00296960 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00291328 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00290304 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00289792 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00283136 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00282112 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00254464 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00251904 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00208896 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00207360 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00181760 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2016-05-15 11:22 - 2009-09-02 12:24 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2016-05-15 11:22 - 2009-09-02 12:23 - 00125952 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2016-05-15 11:22 - 2009-09-02 12:22 - 00371712 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2016-05-15 11:22 - 2009-09-02 12:22 - 00246272 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2016-05-15 11:22 - 2009-09-02 12:22 - 00055808 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2016-05-15 11:22 - 2009-09-02 12:22 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2016-05-15 11:22 - 2009-09-02 12:21 - 05694976 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2016-05-15 11:22 - 2009-09-02 12:21 - 00278016 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2016-05-15 11:22 - 2009-09-02 12:21 - 00259584 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2016-05-15 11:22 - 2009-09-02 12:21 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2016-05-15 11:22 - 2009-09-02 12:21 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2016-05-15 11:22 - 2009-09-02 12:18 - 00059392 _____ (Intel Corporation) C:\Windows\SysWOW64\oemdspif.dll 2016-05-15 11:22 - 2009-09-02 12:17 - 00217088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2016-05-15 11:22 - 2009-09-02 12:13 - 01991936 _____ C:\Windows\system32\iglhxa64.cpa 2016-05-15 11:22 - 2009-09-02 12:13 - 00060254 _____ C:\Windows\system32\iglhxg64.vp 2016-05-15 11:22 - 2009-09-02 12:13 - 00060226 _____ C:\Windows\system32\iglhxc64.vp 2016-05-15 11:22 - 2009-09-02 12:13 - 00060015 _____ C:\Windows\system32\iglhxo64.vp 2016-05-15 11:22 - 2009-09-02 12:13 - 00001090 _____ C:\Windows\system32\iglhxa64.vp 2016-05-15 11:19 - 2016-05-15 11:19 - 00001423 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-05-15 11:19 - 2016-05-15 11:19 - 00001389 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2016-05-15 11:18 - 2016-05-15 18:00 - 00000000 ____D C:\Users\Diego 2016-05-15 11:18 - 2016-05-15 11:18 - 00000020 ___SH C:\Users\Diego\ntuser.ini 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Usuário Padrão 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Todos os Usuários 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Modelos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Meus documentos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Menu Iniciar 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Documents\Minhas músicas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Documents\Minhas imagens 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Documents\Meus vídeos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Configurações locais 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\AppData\Local\Histórico 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\AppData\Local\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Ambiente de rede 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Diego\Ambiente de impressão 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Modelos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Meus documentos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Configurações locais 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Ambiente de rede 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Modelos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Favoritos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Documentos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 _SHDL C:\Arquivos de Programas 2016-05-15 11:18 - 2016-05-15 11:18 - 00000000 ____D C:\Users\Diego\AppData\Local\VirtualStore 2016-05-15 11:18 - 2010-11-21 04:16 - 00000000 ____D C:\Users\Diego\AppData\Roaming\Media Center Programs 2016-05-15 11:14 - 2016-05-15 11:14 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2016-05-15 11:14 - 2016-05-15 11:14 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2016-05-15 09:51 - 2016-05-15 15:39 - 00012409 _____ C:\Users\Diego\Desktop\contas 2016.xlsx 2016-04-23 01:51 - 2016-04-23 01:51 - 00635040 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00439608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00390320 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00332968 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00266928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00243520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00088752 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll 2016-04-23 01:51 - 2016-04-23 01:51 - 00085328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-05-21 20:38 - 2009-07-14 01:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-05-21 20:38 - 2009-07-14 01:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-05-21 20:31 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-05-20 16:50 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf 2016-05-18 20:22 - 2016-04-12 23:53 - 00000000 ____D C:\Users\Diego\Desktop\help limpeza 2016-05-18 19:18 - 2009-07-14 01:45 - 00444768 _____ C:\Windows\system32\FNTCACHE.DAT 2016-05-16 16:44 - 2010-11-21 04:16 - 00000000 ____D C:\Windows\ShellNew 2016-05-16 16:44 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-05-16 16:43 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-05-16 16:35 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\System 2016-05-16 16:35 - 2009-07-13 23:34 - 00000478 _____ C:\Windows\win.ini 2016-05-16 15:22 - 2011-01-27 20:11 - 00654470 _____ C:\Windows\system32\prfh0416.dat 2016-05-16 15:22 - 2011-01-27 20:11 - 00124922 _____ C:\Windows\system32\prfc0416.dat 2016-05-16 15:22 - 2009-07-14 02:13 - 01491932 _____ C:\Windows\system32\PerfStringBackup.INI 2016-05-15 16:10 - 2009-07-14 02:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2016-05-15 12:43 - 2009-07-14 02:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2016-05-15 11:19 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache 2016-05-15 11:18 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Windows NT 2016-05-15 11:14 - 2009-07-14 02:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2016-05-15 11:14 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\sysprep 2016-05-15 11:11 - 2010-11-21 04:16 - 00000000 ____D C:\Windows\CSC ==================== Arquivos na raiz de alguns diretórios ======= 2016-05-15 12:24 - 2016-05-15 12:24 - 6748160 _____ () C:\Program Files (x86)\GUT34D7.tmp ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-05-15 11:54 ==================== Fim de FRST.txt ============================