Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 19-06-2016 01 Executado por Rafael (administrador) em RAFAEL-PC (19-06-2016 19:09:47) Executando a partir de C:\Users\Rafael\Downloads Perfis Carregados: Rafael (Perfis Disponíveis: Rafael) Platform: Windows 7 Ultimate (X64) Idioma: Português (Brasil) Internet Explorer Versão 8 (Navegador padrão: "C:\Program Files (x86)\Yestony\Application\chrome.exe" "%1") Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe (Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Qksee Pvt Ltd.) C:\Program Files (x86)\qksee\qkseeSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Winziper Pvt Ltd.) C:\Program Files (x86)\WinZipper\winzipersvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Beepa P/L) C:\Fraps\fraps.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe (WFini LIMITED) C:\ProgramData\1winp1\WFini.exe () C:\Program Files (x86)\WNet\WNet.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Bogdan Sharkov) C:\Program Files (x86)\Clownfish\Clownfish.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe () C:\Users\Rafael\Desktop\vegas.pro.13.0.(64-bit)-patch.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe (Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\vbc.exe (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe (Beepa P/L) C:\Fraps\fraps64.dat (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\ProgramData\Yestony\Yestony.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Yestony\Application\chrome.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-17] (Apple Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [595616 2016-04-21] (Razer Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-12-22] (Oracle Corporation) HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1599808 2015-08-14] (Razer Inc) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1980416 2013-12-18] (Wondershare) HKLM-x32\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\AllMyTube\DelayPluginI.exe [1960248 2015-12-24] () HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-06-08] (LogMeIn Inc.) HKU\S-1-5-21-2055956420-1354314951-594331773-1000\...\Run: [AudioDriver] => C:\Users\Rafael\Desktop\vegas.pro.13.0.(64-bit)-patch.exe [1234432 2015-06-16] () HKU\S-1-5-21-2055956420-1354314951-594331773-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.) HKU\S-1-5-21-2055956420-1354314951-594331773-1000\...\Run: [Clownfish] => C:\Program Files (x86)\Clownfish\Clownfish.exe [1362152 2015-12-23] (Bogdan Sharkov) HKU\S-1-5-21-2055956420-1354314951-594331773-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-29] (Valve Corporation) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{B1D318FE-0030-43D2-879F-495059AFC48C}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKU\S-1-5-21-2055956420-1354314951-594331773-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset SearchScopes: HKU\S-1-5-21-2055956420-1354314951-594331773-1000 -> {75E5A809-CE33-4585-A3F4-9786D4701DC5} URL = hxxps://br.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Wondershare AllMyTube 4.7.0 -> {067DF9EC-26B7-40DC-8DB8-CD8BE85AE367} -> C:\ProgramData\Wondershare\AllMyTube\WSBrowserAppMgr.dll [2015-12-24] () BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-01-24] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-24] (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - Nenhum Arquivo Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) FireFox: ======== FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] () FF Plugin-x32: @java.com/DTPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll [2016-01-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\plugin2\npjp2.dll [2016-01-24] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-13] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-13] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin HKU\S-1-5-21-2055956420-1354314951-594331773-1000: @nsroblox.roblox.com/launcher -> C:\Users\Rafael\AppData\Local\Roblox\Versions\version-ea1275ebfe8b4651\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation) FF Plugin HKU\S-1-5-21-2055956420-1354314951-594331773-1000: @nsroblox.roblox.com/launcher64 -> C:\Users\Rafael\AppData\Local\Roblox\Versions\version-ea1275ebfe8b4651\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation) FF HKLM-x32\...\Firefox\Extensions: [AllMyTube@Wondershare.com] - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com FF Extension: Wondershare AllMyTube - C:\ProgramData\Wondershare\AllMyTube\AllMyTube@Wondershare.com [2016-02-26] [não assinado] Chrome: ======= CHR HomePage: ChromeDefaultData -> hxxp://www.nicesearches.com?type=hp&ts=1464646619&from=0d580530&uid=st500lm012xhn-m500mbb_s2rsj9dd210908&z=2dfa61e957f649fe5099887g3z9q2z9q1zbqdq4g0b CHR StartupUrls: ChromeDefaultData -> "hxxp://www.nicesearches.com?type=hp&ts=1464646619&from=0d580530&uid=st500lm012xhn-m500mbb_s2rsj9dd210908&z=2dfa61e957f649fe5099887g3z9q2z9q1zbqdq4g0b" CHR DefaultSearchURL: ChromeDefaultData -> hxxp://www.nicesearches.com/search.php?type=ds&ts=1464646619&from=0d580530&uid=st500lm012xhn-m500mbb_s2rsj9dd210908&z=2dfa61e957f649fe5099887g3z9q2z9q1zbqdq4g0b&q={searchTerms} CHR DefaultSearchKeyword: ChromeDefaultData -> nice CHR DefaultSuggestURL: ChromeDefaultData -> hxxps://br.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Profile: C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData CHR Extension: (Google Docs) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-13] CHR Extension: (Google Drive) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-13] CHR Extension: (Adblock Plus) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-05-13] CHR Extension: (Google Search) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-31] CHR Extension: (Series Online HD) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\dpkilhgjnpoafdnalmbckmonmipbhbbj [2016-02-27] CHR Extension: (Planilhas do Google) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-13] CHR Extension: (Documentos Google off-line) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (Skype) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-05-26] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01] CHR Extension: (Gmail) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-13] CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25] CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2015-04-06] (Intel Corporation) R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [118048 2016-05-24] (Elex do Brasil Participações Ltda) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [419248 2016-06-07] (LogMeIn, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () R2 qkseeService; C:\Program Files (x86)\qksee\qkseeSvc.exe [760536 2016-05-05] (Qksee Pvt Ltd.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [65176 2016-04-28] (Razer Inc.) R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-04] () R2 RzSurroundVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe [4255232 2016-02-15] (A-Volute) [Arquivo não assinado] S2 thqControlssrv; C:\Program Files (x86)\Thquse\thqControlssrv.exe [993912 2016-05-03] () R2 WdMan; C:\ProgramData\1winp1\WFini.exe [534200 2016-05-06] (WFini LIMITED) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [1140792 2016-05-26] (Winziper Pvt Ltd.) <==== ATENÇÃO R2 WNet; C:\Program Files (x86)\WNet\WNet.exe [436736 2016-02-24] () [Arquivo não assinado] <==== ATENÇÃO R2 YestonyP; C:\ProgramData\Yestony\Yestony.exe [399768 2016-05-27] () S2 YestonyU; C:\Program Files (x86)\Yestony\Update\YestonyUpdate.exe [533400 2016-05-27] () R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 asfilterdrv; C:\Windows\System32\drivers\asfilterdrv.sys [57656 2016-02-24] (Windows (R) Win 7 DDK provider) R1 crfilterdrv; C:\Windows\System32\drivers\crfilterdrv.sys [57160 2016-02-24] (Windows (R) Win 7 DDK provider) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [262344 2016-05-24] (Elex do Brasil Participações Ltda) S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [55056 2016-05-24] (Elex do Brasil Participações Ltda) R1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2016-05-24] (Elex do Brasil Participações Ltda) R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [52440 2016-05-24] (Elex do Brasil Participações Ltda) R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2016-05-24] (Elex do Brasil Participações Ltda) R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [52392 2016-05-19] (Elex do Brasil Participações Ltda) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [51224 2016-04-07] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.) R1 ssfilterdrv; C:\Windows\System32\drivers\ssfilterdrv.sys [57152 2016-02-24] (Windows (R) Win 7 DDK provider) R3 WsAudio_Device; C:\Windows\System32\drivers\VirtualAudio.sys [31080 2013-09-03] (Wondershare) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três Meses Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-06-19 19:09 - 2016-06-19 19:10 - 00017801 _____ C:\Users\Rafael\Downloads\FRST.txt 2016-06-19 19:09 - 2016-06-19 19:09 - 00000000 ____D C:\FRST 2016-06-19 19:07 - 2016-06-19 19:07 - 02387456 _____ (Farbar) C:\Users\Rafael\Downloads\FRST64.exe 2016-06-19 17:56 - 2016-06-19 17:58 - 13582473 _____ C:\Users\Rafael\Downloads\Audio_Visualizer_1.11 (2).zip 2016-06-19 17:20 - 2016-06-19 17:20 - 00001552 _____ C:\Users\Rafael\Downloads\Dark&Light.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00005003 _____ C:\Users\Rafael\Downloads\Weird Rainbow.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00004526 _____ C:\Users\Rafael\Downloads\PoliceSiren.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00004182 _____ C:\Users\Rafael\Downloads\Epic Chroma.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00003193 _____ C:\Users\Rafael\Downloads\Orange Blue.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00002651 _____ C:\Users\Rafael\Downloads\The Flash.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00002446 _____ C:\Users\Rafael\Downloads\RedRippleBlueWave.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00001526 _____ C:\Users\Rafael\Downloads\BurstFire.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00001500 _____ C:\Users\Rafael\Downloads\Rainbow Ripple.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00000955 _____ C:\Users\Rafael\Downloads\RandomReactive.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00000949 _____ C:\Users\Rafael\Downloads\WaterRipple.razerchroma 2016-06-19 17:19 - 2016-06-19 17:19 - 00000642 _____ C:\Users\Rafael\Downloads\HeartbeatLine.razerchroma 2016-06-19 17:17 - 2016-06-19 17:17 - 00079977 _____ C:\Users\Rafael\Downloads\Pacman.zip 2016-06-19 17:12 - 2016-06-19 17:12 - 00001500 _____ C:\Users\Rafael\Downloads\#5 Rainbow Ripple.razerchroma 2016-06-18 21:26 - 2016-06-18 21:26 - 00002755 _____ C:\Users\Public\Desktop\Launch Remote Play PC.lnk 2016-06-18 21:26 - 2016-06-18 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remote Play PC 2016-06-18 21:26 - 2016-06-18 21:26 - 00000000 ____D C:\Program Files (x86)\tmacdev 2016-06-18 21:20 - 2016-01-25 11:47 - 00000000 ____D C:\Users\Rafael\Desktop\Remote_Play_PC_v0.105 Gabriel CBX 2016-06-18 20:14 - 2016-06-18 20:18 - 37991654 _____ C:\Users\Rafael\Downloads\Remote_Play_PC_v0.105 Gabriel CBX (1).rar 2016-06-18 20:10 - 2016-06-18 20:10 - 00000000 ____D C:\Windows\system32\appmgmt 2016-06-18 19:57 - 2016-06-19 16:55 - 00000000 ____D C:\Users\Todos os Usuários\remoteplay 2016-06-18 19:57 - 2016-06-19 16:55 - 00000000 ____D C:\ProgramData\remoteplay 2016-06-18 19:47 - 2016-06-18 19:47 - 00000000 ____D C:\Users\Rafael\AppData\Local\Downloaded Installations 2016-06-18 19:46 - 2016-06-18 19:04 - 37991654 _____ C:\Users\Rafael\Desktop\Remote_Play_PC_v0.105 Gabriel CBX.rar 2016-06-18 18:59 - 2016-06-18 19:04 - 37991654 _____ C:\Users\Rafael\Downloads\Remote_Play_PC_v0.105 Gabriel CBX.rar 2016-06-18 18:56 - 2016-06-18 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2016-06-18 18:56 - 2016-06-18 18:56 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2016-06-08 10:56 - 2016-06-08 10:56 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\Drivers\hamachi.sys 2016-05-31 00:24 - 2016-05-31 00:26 - 00009696 _____ C:\Users\Rafael\Downloads\Sound-Som- Broken Bone-Osso Quebrando.mp4.sfk 2016-05-31 00:24 - 2016-05-31 00:25 - 00302770 _____ C:\Users\Rafael\Downloads\Sound-Som- Broken Bone-Osso Quebrando (2).mp4 2016-05-31 00:24 - 2016-05-31 00:24 - 00302770 _____ C:\Users\Rafael\Downloads\Sound-Som- Broken Bone-Osso Quebrando.mp4 2016-05-31 00:24 - 2016-05-31 00:24 - 00302770 _____ C:\Users\Rafael\Downloads\Sound-Som- Broken Bone-Osso Quebrando (1).mp4 2016-05-31 00:18 - 2016-05-31 00:21 - 00013848 _____ C:\Users\Rafael\Documents\Dwm 2016-05-31 00-17-32-58.avi.sfk 2016-05-31 00:17 - 2016-05-31 00:17 - 16084880 _____ C:\Users\Rafael\Documents\Dwm 2016-05-31 00-17-32-58.avi 2016-05-31 00:03 - 2016-05-31 00:03 - 42477024 _____ C:\Users\Rafael\Documents\Dwm 2016-05-31 00-03-18-29.avi 2016-05-30 23:13 - 2016-05-30 23:17 - 00105112 _____ C:\Users\Rafael\Documents\trabalho ingles v2.0.MP4.sfk 2016-05-30 22:52 - 2016-05-30 22:52 - 00000046 _____ C:\Users\Rafael\Documents\trabalho ingles v2.0.MP4.sfl 2016-05-30 22:49 - 2016-05-30 22:52 - 242516394 _____ C:\Users\Rafael\Documents\trabalho ingles v2.0.MP4 2016-05-30 22:18 - 2016-05-30 22:18 - 00000000 _____ C:\report.dat 2016-05-30 22:15 - 2016-05-30 22:15 - 00467264 _____ C:\Users\Rafael\Downloads\Tema clássico de casamento - Marcha Nupcial.mp4.sfk 2016-05-30 22:14 - 2016-05-30 22:14 - 06827162 _____ C:\Users\Rafael\Downloads\Tema clássico de casamento - Marcha Nupcial.mp4 2016-05-30 18:08 - 2016-05-30 18:08 - 00000000 ____D C:\Users\Rafael\AppData\LocalLow\Smartly Dressed Games 2016-05-29 16:02 - 2016-05-29 16:06 - 00008640 _____ C:\Users\Rafael\Documents\tiro no teva.mp4.sfk 2016-05-29 15:58 - 2016-05-29 16:01 - 00133424 _____ C:\Users\Rafael\Downloads\HERMANOTEU NA TERRA DE GODAH (melhores do mundo).mp4.sfk 2016-05-29 15:57 - 2016-05-29 15:58 - 08159530 _____ C:\Users\Rafael\Downloads\HERMANOTEU NA TERRA DE GODAH (melhores do mundo).mp4 2016-05-28 12:16 - 2016-05-28 12:24 - 85816392 _____ C:\Users\Rafael\Documents\Skype 2016-05-28 12-16-18-11.avi 2016-05-28 12:16 - 2016-05-28 12:16 - 01752448 _____ C:\Users\Rafael\Documents\Skype 2016-05-28 12-16-13-03.avi 2016-05-28 12:09 - 2016-05-28 12:16 - 429415000 _____ C:\Users\Rafael\Documents\javaw 2016-05-28 12-09-21-55.avi 2016-05-27 18:42 - 2016-05-27 18:42 - 00052432 _____ C:\Users\Rafael\Downloads\Supernatural - Then and Now.mp3.sfk 2016-05-27 18:32 - 2016-05-27 18:31 - 00019185 _____ C:\Users\Rafael\Desktop\supernatural_knight (1).zip 2016-05-27 18:31 - 2016-05-27 18:31 - 00019185 _____ C:\Users\Rafael\Downloads\supernatural_knight.zip 2016-05-27 18:31 - 2016-05-27 18:31 - 00019185 _____ C:\Users\Rafael\Downloads\supernatural_knight (1).zip 2016-05-27 17:38 - 2016-05-27 17:38 - 00000000 ____D C:\Users\Public\Documents\chrome 2016-05-27 16:40 - 2016-05-27 16:40 - 00000000 ____D C:\Users\Todos os Usuários\Yestony 2016-05-27 16:40 - 2016-05-27 16:40 - 00000000 ____D C:\ProgramData\Yestony 2016-05-27 16:38 - 2016-05-27 16:38 - 00003552 _____ C:\Windows\System32\Tasks\YestonyUpdateTaskMachineCore 2016-05-27 16:38 - 2016-05-27 16:38 - 00003464 _____ C:\Windows\System32\Tasks\YestonyUpdateTaskMachineUA 2016-05-27 16:38 - 2016-05-27 16:38 - 00000000 ____D C:\Users\Rafael\AppData\Local\Yestony 2016-05-27 16:38 - 2016-05-27 16:38 - 00000000 ____D C:\Program Files (x86)\Yestony 2016-05-27 16:34 - 2016-05-27 16:34 - 00000000 ____D C:\Windows\system32\log 2016-05-27 16:34 - 2016-05-27 16:34 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Elex-tech 2016-05-27 16:34 - 2016-05-27 16:34 - 00000000 ____D C:\Program Files (x86)\Elex-tech 2016-05-27 16:34 - 2016-05-24 03:54 - 00055056 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys 2016-05-27 16:34 - 2016-05-19 03:42 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeNetFilter.sys 2016-05-27 16:30 - 2016-06-19 19:00 - 00000000 _____ C:\Users\Public\Documents\report.dat 2016-05-27 16:10 - 2016-05-27 16:12 - 00000000 ____D C:\Users\Rafael\Desktop\100D3100 2016-05-26 18:11 - 2016-05-26 18:11 - 116630712 _____ C:\Users\Rafael\Documents\Dwm 2016-05-26 18-11-38-47.avi 2016-05-26 17:30 - 2016-05-26 17:39 - 1926358256 _____ C:\Users\Rafael\Documents\Dwm 2016-05-26 17-30-58-52.avi 2016-05-26 17:30 - 2016-05-26 17:30 - 00012544 _____ C:\Users\Rafael\Documents\Dwm 2016-05-26 17-29-21-75.avi.sfk 2016-05-26 17:29 - 2016-05-26 17:29 - 68722276 _____ C:\Users\Rafael\Documents\Dwm 2016-05-26 17-29-21-75.avi 2016-05-26 16:38 - 2016-05-26 16:38 - 01139407 _____ C:\Users\Rafael\Documents\se fode.mp4 2016-05-23 21:59 - 2016-05-23 21:59 - 00000038 _____ C:\Users\Rafael\Documents\tiro no teva.MP4.sfl 2016-05-23 21:49 - 2016-05-23 21:59 - 14325260 _____ C:\Users\Rafael\Documents\tiro no teva.mp4 2016-05-23 21:15 - 2016-05-23 21:17 - 00026312 _____ C:\Users\Rafael\Downloads\Som de Tiros Efeitos Sonoros.mp3.sfk 2016-05-23 20:45 - 2016-05-23 20:45 - 00517568 _____ C:\Users\Rafael\Downloads\SKRILLEX - SUMMIT (FT. ELLIE GOULDING).mp3.sfk 2016-05-15 19:25 - 2016-05-15 19:27 - 99643776 _____ C:\Users\Rafael\Documents\csgo 2016-05-15 19-25-49-58.avi 2016-05-14 12:31 - 2016-05-14 12:31 - 14572000 _____ (Microsoft Corporation) C:\Users\Rafael\Downloads\vc_redist.x64.exe 2016-05-14 12:25 - 2016-06-19 12:40 - 00003112 _____ C:\Windows\System32\Tasks\RDReminder 2016-05-14 12:25 - 2016-05-20 15:14 - 00000278 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2016-05-14 12:25 - 2016-05-16 18:27 - 00000294 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job 2016-05-14 12:25 - 2016-05-15 14:38 - 00003038 _____ C:\Windows\System32\Tasks\DLL-Files.Com Fixer_Updates 2016-05-14 12:25 - 2016-05-15 14:38 - 00003024 _____ C:\Windows\System32\Tasks\DLL-Files.Com Fixer_MONTHLY 2016-05-14 12:25 - 2016-05-14 12:25 - 00001088 _____ C:\Users\Public\Desktop\Dll-Files Fixer.lnk 2016-05-14 12:25 - 2016-05-14 12:25 - 00000000 ____D C:\Users\Todos os Usuários\TEMP 2016-05-14 12:25 - 2016-05-14 12:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\dll-files.com 2016-05-14 12:25 - 2016-05-14 12:25 - 00000000 ____D C:\ProgramData\TEMP 2016-05-14 12:25 - 2016-05-14 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer 2016-05-14 12:25 - 2016-05-14 12:25 - 00000000 ____D C:\Program Files (x86)\Dll-Files.com Fixer 2016-05-14 12:24 - 2016-05-14 12:25 - 05444000 _____ (Dll-Files.com ) C:\Users\Rafael\Downloads\dffsetup-api-ms-win-crt-runtime-l1-1-0.exe 2016-05-14 00:08 - 2016-05-14 00:08 - 00000000 ____D C:\Program Files (x86)\yesbnd 2016-05-13 23:50 - 2016-05-13 23:50 - 00001297 _____ C:\Users\Public\Desktop\Snake for Chroma.lnk 2016-05-13 23:50 - 2016-05-13 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snake for Chroma 2016-05-13 23:50 - 2016-05-13 23:50 - 00000000 ____D C:\Program Files (x86)\Razer Chroma Apps 2016-05-13 23:26 - 2016-05-13 23:28 - 13584316 _____ C:\Users\Rafael\Downloads\Audio_Visualizer.zip 2016-05-13 23:26 - 2016-05-13 23:26 - 01230233 _____ C:\Users\Rafael\Downloads\SnakeForChroma.zip 2016-05-13 23:21 - 2016-05-14 12:32 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2016-05-13 23:21 - 2016-05-14 12:32 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-13 23:11 - 2016-05-13 23:11 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Mozilla 2016-05-13 23:00 - 2016-05-13 23:00 - 13582473 _____ C:\Users\Rafael\Downloads\Audio_Visualizer_1.11 (1).zip 2016-05-13 23:00 - 2016-05-13 23:00 - 13582473 _____ C:\Users\Rafael\Desktop\Audio_Visualizer_1.11 (1).zip 2016-05-13 22:59 - 2016-05-13 22:59 - 00003226 _____ C:\Windows\System32\Tasks\{1A202360-75B2-4C1C-9900-269D1FBB5443} 2016-05-13 22:42 - 2016-05-13 22:48 - 13582473 _____ C:\Users\Rafael\Downloads\Audio_Visualizer_1.11.zip 2016-05-13 18:29 - 2016-05-13 18:29 - 00000000 ____D C:\Users\Rafael\AppData\Local\AdvancedChromaConfigurato 2016-05-10 15:43 - 2016-06-19 12:44 - 00003142 _____ C:\Windows\System32\Tasks\FRAPS 2016-05-10 15:43 - 2016-05-10 15:52 - 1839862508 _____ C:\Users\Rafael\Documents\javaw 2016-05-10 15-43-40-55.avi 2016-05-10 15:29 - 2016-06-19 19:03 - 00000000 ____D C:\Program Files (x86)\WinZipper 2016-05-10 15:29 - 2016-05-27 16:29 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\WinZiper 2016-05-10 15:29 - 2016-05-13 22:55 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\eCyber 2016-05-10 15:29 - 2016-05-10 15:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2016-05-10 00:20 - 2016-06-19 19:03 - 00000000 ____D C:\Program Files (x86)\qksee 2016-05-10 00:20 - 2016-05-10 15:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee 2016-05-10 00:20 - 2016-05-10 00:20 - 00009426 _____ C:\Windows\System32\Tasks\Browser Updater Task(Core) 2016-05-10 00:20 - 2016-05-10 00:20 - 00000000 ____D C:\Users\Todos os Usuários\1winp1 2016-05-10 00:20 - 2016-05-10 00:20 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\qksee 2016-05-10 00:20 - 2016-05-10 00:20 - 00000000 ____D C:\ProgramData\1winp1 2016-05-10 00:20 - 2016-05-10 00:20 - 00000000 ____D C:\Program Files (x86)\QQBrowser 2016-05-07 22:17 - 2016-05-07 22:17 - 00281592 _____ C:\Windows\Minidump\050716-25381-01.dmp 2016-05-07 22:11 - 2016-05-07 22:11 - 00000000 ____D C:\Users\Rafael\Desktop\X-MAN 2016-05-04 22:34 - 2016-05-04 22:37 - 201560901 _____ C:\Users\Rafael\Downloads\[PSP] Toy Story 3.cso 2016-05-04 22:34 - 2016-05-04 22:35 - 00000000 ____D C:\Users\Rafael\Desktop\game 2016-05-04 22:33 - 2016-05-04 22:33 - 00016574 _____ C:\Users\Rafael\Downloads\Toy.Story.3.torrent 2016-05-04 22:27 - 2016-05-04 22:27 - 00014513 _____ C:\Users\Rafael\Downloads\[www.gamestorrent.biz]psp.spiderman.3.eur.multi5.rar.torrent.torrent 2016-05-04 22:22 - 2016-05-04 22:22 - 00018502 _____ C:\Users\Rafael\Downloads\marvel-ultimate-alliance.v2usa-psp[www.gamestorrent.biz].torrent 2016-05-04 22:21 - 2016-05-04 22:21 - 00022959 _____ C:\Users\Rafael\Downloads\PSP.Game_.MiamiVice.Multi5_.www_.gamestorrent.biz_.rar 2016-05-04 22:16 - 2016-05-04 22:28 - 117109393 ____R C:\Users\Rafael\Downloads\PSP.Game.SpongeBobSPYA.Multilanguaje6.UMDFULL.ISO107MB.ByCombateMortal.rar 2016-05-04 22:15 - 2016-05-04 22:35 - 00000000 ____D C:\Users\Rafael\Downloads\Marvel Ultimate Alliance 2 [English][PSP][USA][WwW.GamesTorrents.CoM] 2016-05-04 22:14 - 2016-05-04 22:14 - 00028566 _____ C:\Users\Rafael\Downloads\Marvel.Ultimate.Alliance.2.English.psp_.rar 2016-05-04 22:13 - 2016-05-04 22:13 - 00019079 _____ C:\Users\Rafael\Downloads\PSP.Game.SpongeBobSPYA.torrent 2016-05-04 22:12 - 2016-05-04 22:19 - 00000000 ____D C:\Users\Rafael\Downloads\FlatOut Head On [MULTI5][PSP][WwW.GamesTorrents.CoM] 2016-05-04 22:11 - 2016-05-04 22:11 - 00027874 _____ C:\Users\Rafael\Downloads\FlatOut.Head.On.PSP.torrent 2016-05-04 22:08 - 2016-05-04 22:08 - 00008982 _____ C:\Windows\System32\Tasks\Thquse Controls 2016-05-04 22:07 - 2016-05-04 22:08 - 00000000 ____D C:\Users\Rafael\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 2016-05-04 22:07 - 2016-05-04 22:07 - 00000000 ____D C:\extensions 2016-05-04 22:07 - 2016-02-24 19:11 - 00057160 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\crfilterdrv.sys 2016-05-04 22:07 - 2016-02-24 19:10 - 00057656 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\asfilterdrv.sys 2016-05-04 22:06 - 2016-05-04 22:08 - 00000000 ____D C:\Users\Public\Documents\dmp 2016-05-04 22:06 - 2016-05-04 22:08 - 00000000 ____D C:\Program Files (x86)\Thquse 2016-05-04 22:06 - 2016-05-04 22:06 - 00000000 ____D C:\Users\Rafael\AppData\LocalLow\uTorrent 2016-05-04 22:06 - 2016-05-04 22:06 - 00000000 ____D C:\Program Files (x86)\WNet 2016-05-04 22:06 - 2016-02-24 19:11 - 00057152 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\ssfilterdrv.sys 2016-05-02 18:13 - 2016-05-02 18:13 - 00000040 _____ C:\Users\Rafael\Documents\propaganda loja.MP4.sfl 2016-05-02 18:02 - 2016-05-02 18:13 - 726628516 _____ C:\Users\Rafael\Documents\propaganda loja.MP4 2016-04-30 22:20 - 2016-04-30 23:06 - 618138052 _____ C:\Users\Rafael\Documents\javaw 2016-04-30 22-20-14-19.avi 2016-04-25 07:27 - 2016-04-25 07:27 - 01400792 _____ (Razer Inc) C:\Windows\SysWOW64\rzdevicedll.dll 2016-04-23 10:53 - 2016-06-19 19:10 - 00000000 _____ C:\Windows\system32\RzSurroundVADAudioDeviceManager_log.txt 2016-04-23 10:53 - 2016-04-23 10:53 - 00000000 ____D C:\Users\Todos os Usuários\RzSurroundVAD_1.1.61.0 2016-04-23 10:53 - 2016-04-23 10:53 - 00000000 ____D C:\ProgramData\RzSurroundVAD_1.1.61.0 2016-04-23 10:53 - 2016-04-23 10:53 - 00000000 _____ C:\Windows\SysWOW64\RzSurroundVADAudioDeviceManager_log.txt 2016-04-23 10:51 - 2016-04-23 10:54 - 01487016 _____ C:\Users\Rafael\Documents\chrome 2016-04-11 18-26-51-32.avi.sfk 2016-04-23 10:42 - 2016-04-23 10:43 - 01424328 _____ (Microsoft Corporation) C:\Users\Rafael\Downloads\NDP461-KB3102438-Web.exe 2016-04-11 18:26 - 2016-04-11 18:44 - 766662952 _____ C:\Users\Rafael\Documents\chrome 2016-04-11 18-26-51-32.avi 2016-04-11 05:14 - 2016-04-11 05:14 - 00516056 _____ (Razer Inc) C:\Windows\SysWOW64\rzaudiodll.dll 2016-04-11 05:14 - 2016-04-11 05:14 - 00161752 _____ (Razer Inc) C:\Windows\SysWOW64\rztouchdll.dll 2016-04-11 05:14 - 2016-04-11 05:14 - 00123352 _____ (Razer Inc) C:\Windows\SysWOW64\rzdisplaydll.dll 2016-04-11 05:14 - 2016-04-11 05:14 - 00110040 _____ (Razer Inc) C:\Windows\SysWOW64\rzvirtualdev.dll 2016-04-11 05:14 - 2016-04-11 05:14 - 00099288 _____ (Razer Inc) C:\Windows\SysWOW64\RzBTLE.dll 2016-04-11 05:14 - 2016-04-11 05:14 - 00097752 _____ (Razer Inc) C:\Windows\SysWOW64\rzdevinfo.dll 2016-04-10 20:33 - 2016-04-10 20:37 - 58702296 _____ C:\Users\Rafael\Documents\chrome 2016-04-10 20-33-01-61.avi 2016-04-10 20:30 - 2016-04-10 20:31 - 19005960 _____ C:\Users\Rafael\Documents\chrome 2016-04-10 20-30-14-94.avi 2016-04-10 12:16 - 2016-05-04 22:07 - 00000000 ____D C:\Users\Rafael\Downloads\Xmen.Origins.Wolverine - PSP 2016-04-10 12:13 - 2016-04-10 12:13 - 00000000 ____D C:\Users\Rafael\Desktop\psy-codrtv 2016-04-10 11:50 - 2016-04-10 11:50 - 00083487 _____ C:\Users\Rafael\Downloads\Lucky-Block-Mod-1.7.10.jar 2016-04-10 00:12 - 2016-04-10 00:13 - 00000000 ____D C:\Users\Rafael\Desktop\psp 6.60 destrava e atualizacao 2016-04-09 23:59 - 2016-04-09 23:58 - 01071149 _____ C:\Users\Rafael\Desktop\660PRO-B10 ithinktutorials.rar 2016-04-09 23:58 - 2016-04-09 23:58 - 01071149 _____ C:\Users\Rafael\Downloads\660PRO-B10 ithinktutorials.rar 2016-04-09 23:55 - 2008-01-03 12:38 - 640974848 _____ C:\Users\Rafael\Desktop\psy-codrtv.iso 2016-04-09 23:45 - 2016-04-10 00:46 - 00000000 ____D C:\Users\Rafael\Desktop\cod 2016-04-09 23:29 - 2016-04-09 23:44 - 00000000 ____D C:\Users\Rafael\Downloads\Call Of Duty Roads To Victory [English][PSP][WwW.GamesTorrents.CoM] 2016-04-09 23:28 - 2016-04-09 23:28 - 00020019 _____ C:\Users\Rafael\Downloads\Xmen-Origens-Wolverine-PSP-www.jogoscompletostorrent.com_.rar 2016-04-09 23:27 - 2016-04-09 23:27 - 00136815 _____ C:\Users\Rafael\Downloads\Call-of-Duty-Roads-to-Victory-PC-www.jogoscompletostorrent.com_.rar 2016-04-09 23:25 - 2016-04-09 23:25 - 00002645 _____ C:\Users\Rafael\Desktop\µTorrent.lnk 2016-04-09 23:25 - 2016-04-09 23:25 - 00002645 _____ C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2016-04-09 23:23 - 2016-05-04 22:37 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\uTorrent 2016-04-09 23:21 - 2016-04-09 23:22 - 01959424 _____ (BitTorrent Inc.) C:\Users\Rafael\Downloads\uTorrent.exe 2016-04-09 18:58 - 2016-05-04 22:37 - 00000000 ____D C:\Users\Rafael\AppData\LocalLow\Temp 2016-04-07 23:52 - 2016-04-07 23:52 - 00099992 _____ (Razer Inc.) C:\Windows\system32\RzChromaSDK64.dll 2016-04-07 23:51 - 2016-04-07 23:51 - 00088728 _____ (Razer Inc.) C:\Windows\SysWOW64\RzChromaSDK.dll 2016-04-07 23:51 - 2016-04-07 23:51 - 00042144 _____ (Razer Inc.) C:\Windows\SysWOW64\RzAPIChromaSDK.dll 2016-04-07 08:56 - 2016-04-07 08:56 - 01730328 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2016-04-07 08:56 - 2016-04-07 08:56 - 00203800 _____ (Razer Inc) C:\Windows\system32\Drivers\rzudd.sys 2016-04-07 08:55 - 2016-04-07 08:55 - 00051224 _____ (Razer Inc) C:\Windows\system32\Drivers\rzendpt.sys 2016-04-02 17:16 - 2016-04-02 17:32 - 03096872 _____ C:\Users\Rafael\Documents\Skype 2016-04-02 16-28-55-40.avi.sfk 2016-04-02 16:28 - 2016-04-02 17:06 - 861368788 _____ C:\Users\Rafael\Documents\Skype 2016-04-02 16-28-55-40.avi 2016-04-02 16:27 - 2016-04-02 16:27 - 25671172 _____ C:\Users\Rafael\Documents\Skype 2016-04-02 16-27-42-86.avi 2016-04-02 16:27 - 2016-04-02 16:27 - 03184540 _____ C:\Users\Rafael\Documents\Skype 2016-04-02 16-27-05-03.avi 2016-04-02 16:24 - 2016-04-02 16:24 - 03126272 _____ C:\Users\Rafael\Documents\Skype 2016-04-02 16-24-35-60.avi 2016-04-01 14:03 - 2016-04-01 15:01 - 01522160 _____ C:\Users\Rafael\Documents\chrome 2016-04-01 13-14-16-76.avi.sfk 2016-04-01 13:14 - 2016-04-01 13:32 - 803546232 _____ C:\Users\Rafael\Documents\chrome 2016-04-01 13-14-16-76.avi 2016-03-31 12:57 - 2016-05-26 17:45 - 46637918 _____ C:\Users\Rafael\Documents\Untitled.mp4 2016-03-30 15:07 - 2016-03-30 15:10 - 01686616 _____ C:\Users\Rafael\Documents\chrome 2016-03-30 14-42-46-62.avi.sfk 2016-03-30 14:18 - 2016-03-30 14:18 - 00001845 _____ C:\Users\Public\Desktop\QuickTime Player.lnk 2016-03-30 14:18 - 2016-03-30 14:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2016-03-30 14:18 - 2016-03-30 14:18 - 00000000 ____D C:\Program Files (x86)\QuickTime 2016-03-30 14:10 - 2016-03-30 14:10 - 00000000 ____D C:\Users\Rafael\AppData\LocalLow\Apple Computer 2016-03-30 14:03 - 2016-03-30 14:08 - 41896256 _____ (Apple Inc.) C:\Users\Rafael\Downloads\QuickTimeInstaller.exe 2016-03-30 13:42 - 2016-03-30 13:42 - 01009120 _____ (Adobe Systems Incorporated) C:\Users\Rafael\Downloads\PremierePro_6_LS7.exe 2016-03-30 13:41 - 2016-03-30 13:41 - 01228640 _____ (Adobe Systems Incorporated) C:\Users\Rafael\Downloads\PremierePro_6_Content_LS7.exe 2016-03-29 17:42 - 2016-03-29 17:45 - 00010376 _____ C:\Users\Rafael\Documents\intro v o.2.MP4.sfk 2016-03-29 17:36 - 2016-03-29 17:42 - 02482992 _____ C:\Users\Rafael\Documents\javaw 2016-03-28 19-50-13-98.avi.sfk 2016-03-28 19:50 - 2016-03-28 20:20 - 3113554016 _____ C:\Users\Rafael\Documents\javaw 2016-03-28 19-50-13-98.avi 2016-03-27 14:21 - 2016-03-27 14:21 - 55995076 _____ C:\Users\Rafael\Documents\javaw 2016-03-27 14-21-10-11.avi 2016-03-27 14:21 - 2016-03-27 14:21 - 23391116 _____ C:\Users\Rafael\Documents\javaw 2016-03-27 14-21-06-69.avi 2016-03-27 14:20 - 2016-03-27 14:21 - 62203796 _____ C:\Users\Rafael\Documents\javaw 2016-03-27 14-20-53-93.avi 2016-03-26 15:26 - 2016-03-26 15:26 - 03405669 _____ C:\Users\Rafael\Downloads\forge-1.7.10-10.13.4.1614-1.7.10-installer-win (1).exe 2016-03-26 15:25 - 2016-03-26 15:26 - 03405669 _____ C:\Users\Rafael\Downloads\forge-1.7.10-10.13.4.1614-1.7.10-installer-win.exe 2016-03-26 15:23 - 2016-03-26 15:24 - 05389421 _____ C:\Users\Rafael\Downloads\Arkif - The Hunt [1.7.10] [v0.3].zip 2016-03-23 13:39 - 2016-03-23 13:40 - 00194816 _____ C:\Users\Rafael\Downloads\Pescaria - Mar Aberto - Salvador Bahia.mp4.sfk 2016-03-23 13:38 - 2016-03-23 13:39 - 41942748 _____ C:\Users\Rafael\Downloads\Pescaria - Mar Aberto - Salvador Bahia.mp4 2016-03-23 13:29 - 2016-03-23 13:34 - 00090944 _____ C:\Users\Rafael\Downloads\TSUNAMI GORDO FIN DEL MUNDO -).mp4.sfk 2016-03-23 13:27 - 2016-03-23 13:28 - 00325432 _____ C:\Users\Rafael\Downloads\DVBBS & Borgeous - TSUNAMI (Original Mix).mp3.sfk 2016-03-23 13:22 - 2016-03-23 13:22 - 10697544 _____ C:\Users\Rafael\Downloads\TSUNAMI GORDO FIN DEL MUNDO -).mp4 2016-03-22 14:33 - 2016-03-22 14:42 - 1677195348 _____ C:\Users\Rafael\Documents\javaw 2016-03-22 14-33-44-06.avi 2016-03-21 20:30 - 2016-03-21 20:30 - 109371432 _____ C:\Users\Rafael\Documents\javaw 2016-03-21 20-30-42-33.avi 2016-03-21 18:13 - 2016-03-21 18:14 - 221412516 _____ C:\Users\Rafael\Documents\javaw 2016-03-21 18-13-56-31.avi ==================== Três Meses Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-06-19 19:07 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\tracing 2016-06-19 19:01 - 2015-10-13 22:00 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Skype 2016-06-19 19:00 - 2015-10-19 21:17 - 00000000 ____D C:\Users\Rafael\AppData\Local\LogMeIn Hamachi 2016-06-19 19:00 - 2015-10-13 16:16 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-19 18:05 - 2009-07-14 01:45 - 00009776 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-06-19 18:05 - 2009-07-14 01:45 - 00009776 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-06-19 17:57 - 2015-10-13 16:16 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-19 12:44 - 2015-12-16 14:14 - 00000000 ____D C:\Fraps 2016-06-19 12:44 - 2015-10-13 22:00 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-06-19 12:44 - 2015-10-13 22:00 - 00000000 ____D C:\Users\Todos os Usuários\Skype 2016-06-19 12:44 - 2015-10-13 22:00 - 00000000 ____D C:\ProgramData\Skype 2016-06-19 12:42 - 2015-10-31 11:30 - 00000000 ____D C:\Program Files (x86)\Steam 2016-06-19 12:41 - 2015-10-15 21:58 - 00000000 __SHD C:\Users\Rafael\IntelGraphicsProfiles 2016-06-19 12:39 - 2016-02-02 13:44 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-06-19 12:39 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-06-18 18:58 - 2015-10-13 16:19 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-18 18:58 - 2015-10-13 16:19 - 00002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-06-18 18:56 - 2016-02-19 22:58 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2016-06-08 10:56 - 2015-10-19 21:18 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys 2016-05-31 11:05 - 2015-10-15 09:05 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\vlc 2016-05-31 11:00 - 2016-01-15 20:48 - 00000000 ____D C:\Users\Rafael\Documents\Clownfish Avatars 2016-05-31 09:10 - 2009-07-14 02:08 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-05-30 17:46 - 2016-01-16 19:44 - 236823812 _____ C:\Users\Rafael\Desktop\Photoshop.rar 2016-05-30 17:37 - 2015-10-13 23:47 - 00000943 _____ C:\Users\Rafael\Desktop\nativelog.txt 2016-05-30 17:36 - 2015-10-13 23:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\.minecraft 2016-05-28 12:53 - 2009-07-14 01:45 - 00286472 _____ C:\Windows\system32\FNTCACHE.DAT 2016-05-27 19:32 - 2015-10-13 16:15 - 00063920 _____ C:\Users\Rafael\AppData\Local\GDIPFONTCACHEV1.DAT ==================== Arquivos na raiz de alguns diretórios ======= 2016-02-28 19:17 - 2016-02-28 19:17 - 0000132 _____ () C:\Users\Rafael\AppData\Roaming\Preferências do Formato PNG do Adobe CS6 2016-01-08 15:48 - 2016-01-08 15:48 - 0000000 ___SH () C:\Users\Rafael\AppData\Local\LumaEmu 2015-11-29 23:21 - 2015-11-29 23:21 - 0009503 _____ () C:\ProgramData\regid.2015-11.com.tmacdev,dev_95D5118B-D43F-4229-A9DD-6242B211CBDF.swidtag Alguns arquivos em TEMP: ==================== C:\Users\Rafael\AppData\Local\Temp\0Kraken0502DevProps.dll C:\Users\Rafael\AppData\Local\Temp\jre-8u71-windows-au.exe C:\Users\Rafael\AppData\Local\Temp\jre-8u91-windows-au.exe C:\Users\Rafael\AppData\Local\Temp\msvcr80.dll C:\Users\Rafael\AppData\Local\Temp\SimPack.exe C:\Users\Rafael\AppData\Local\Temp\ytb.exe C:\Users\Rafael\AppData\Local\Temp\zlib1.dll ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-04-24 01:18 ==================== Fim de FRST.txt ============================