Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 18-07-2016 Executado por PC (administrador) em PC-PC (19-07-2016 10:29:08) Executando a partir de C:\Users\PC\Desktop Perfis Carregados: PC (Perfis Disponíveis: PC & Geane) Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (PSafe Total) C:\Program Files (x86)\PSafe\Total\safemon\QHActiveDefense.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE () C:\Windows\SysWOW64\SecUPDUtilSvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe () C:\Program Files (x86)\CalendarTool\2.0.0.11380\CalendarServ.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Qihu Software Co. Limited) C:\Program Files (x86)\PSafe\Total\safemon\QHWatchdog.exe () C:\Program Files (x86)\CalendarTool\2.0.0.11380\calendar.exe () C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe (Tuto4PC) C:\Program Files (x86)\DailyPCClean\DPCCSchedule.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe () C:\Program Files\shopperz12082015\Tuejet64.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATILVE.EXE (PSafe Total) C:\Program Files (x86)\PSafe\Total\safemon\QHSafeTray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe (Tuto4PC) C:\Program Files (x86)\DailyPCClean\DailyPCClean.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [456704 2012-02-20] () HKLM\...\Run: [shopperz1208201564] => C:\Program Files\shopperz12082015\Tuejet64.exe [464760 2015-08-12] () HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\PSafe\Total\safemon\QHSafeTray.exe [1935168 2016-02-29] (PSafe Total) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-07-12] (AVAST Software) HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATILVE.EXE [298560 2013-09-12] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\...\MountPoints2: {7a87f0e3-4e24-11e4-b174-806e6f6e6963} - D:\SETUP.exe ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX64.dll Nenhum Arquivo ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX64.dll Nenhum Arquivo ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX64.dll Nenhum Arquivo ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-12] (AVAST Software) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX32.dll Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX32.dll Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\PC\AppData\Local\MEGAsync\ShellExtX32.dll Nenhum Arquivo GroupPolicy: Restrição - Chrome <======= ATENÇÃO CHR HKLM\SOFTWARE\Policies\Google: Restrição <======= ATENÇÃO ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Hosts: 127.0.0.1 d3oxij66pru1i3.cloudfront.net Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{846ee342-7039-11de-9d20-806e6f6e6963}: [NameServer] 52.17.204.69,8.8.8.8 Tcpip\..\Interfaces\{C4C52948-6AB7-4B01-A031-0BE08F365B54}: [NameServer] 52.17.204.69,8.8.8.8 Tcpip\..\Interfaces\{C4C52948-6AB7-4B01-A031-0BE08F365B54}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.psafe.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.psafe.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://br.search.yahoo.com/yhs/search?hspart=nzn&hsimp=yhs-bund1&p={searchTerms} HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.psafe.com HKU\S-1-5-21-1912685476-2689251740-2469959821-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxps://br.search.yahoo.com/yhs/web?hspart=nzn&hsimp=yhs-bund1 SearchScopes: HKLM -> DefaultScope valor está ausente SearchScopes: HKLM -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1413396984&from=epom2&uid=ST1000DM003-1CH162_S1DJZFDCXXXXS1DJZFDC&q={searchTerms} SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_clickconnect_14_43_ch&cd=2XzuyEtN2Y1L1QzutDtDyEtD0AyBtB0D0DtAtBtByCzz0EtCtN0D0Tzu0StCtDtByBtN1L2XzutAtFyDtFtCtFyEtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StDzyyDtB0FyCyDzytG0Ezz0EtCtGyCyD0DyBtG0F0CyCtAtGtDyC0F0B0DyE0C0FyDtDyE0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0EyCyC0E0BzyyBtGyCzy0F0AtGyEzzyC0FtGzzyB0EtAtGyB0BzzyB0A0CzyyCyDtDyE0B2Q&cr=1415563063&ir= SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = hxxp://www.default-search.net/search?sid=492&aid=293&itype=n&ver=13892&tm=523&src=ds&p={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope valor está ausente SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = hxxp://www.default-search.net/search?sid=492&aid=293&itype=n&ver=13892&tm=523&src=ds&p={searchTerms} SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> Web URL = hxxps://br.search.yahoo.com/yhs/search?hspart=nzn&hsimp=yhs-bund1&p={searchTerms} SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3324895&octid=EB_ORIGINAL_CTID&ISID=M0E55DD80-B275-4FEC-9DA4-F0D5C525316D&SearchSource=58&CUI=&UM=6&UP=SP1F162A9F-CD2C-4F39-AC5D-ED4356817BFC&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1413396984&from=epom2&uid=ST1000DM003-1CH162_S1DJZFDCXXXXS1DJZFDC&q={searchTerms} SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_clickconnect_14_43_ch&cd=2XzuyEtN2Y1L1QzutDtDyEtD0AyBtB0D0DtAtBtByCzz0EtCtN0D0Tzu0StCtDtByBtN1L2XzutAtFyDtFtCtFyEtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StDzyyDtB0FyCyDzytG0Ezz0EtCtGyCyD0DyBtG0F0CyCtAtGtDyC0F0B0DyE0C0FyDtDyE0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0EyCyC0E0BzyyBtGyCzy0F0AtGyEzzyC0FtGzzyB0EtAtGyB0BzzyB0A0CzyyCyDtDyE0B2Q&cr=1415563063&ir= SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> {36D5A534-0D94-40F9-B232-49DB39ABF020} URL = hxxp://trovi.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3329621&CUI=UN88319872202082904&UM=4 SearchScopes: HKU\S-1-5-21-1912685476-2689251740-2469959821-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-07-12] (AVAST Software) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\PSafe\Total\safemon\safemon64.dll [2016-02-29] (Qihu 360 Software Co., Ltd.) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-12] (AVAST Software) BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\PSafe\Total\safemon\safemon.dll [2016-02-02] (Qihu 360 Software Co., Ltd.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Nenhum Arquivo] FF Plugin: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo] FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1215155.dll [2014-12-10] (Adobe Systems, Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Nenhum Arquivo] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Nenhum Arquivo] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo] FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [Nenhum Arquivo] FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll [Nenhum Arquivo] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin HKU\S-1-5-21-1912685476-2689251740-2469959821-1000: gastecnologia.com.br/sf/abn -> C:\Users\PC\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll [2015-04-06] (GAS Tecnologia) FF user.js: detected! => C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\user.js [2015-08-12] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\searchplugins\default-search.xml [2014-11-06] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\default-search.xml [2014-11-06] FF Extension: Google Translator for Firefox - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\extensions\translator@zoli.bod.xpi [2014-10-31] [não assinado] FF Extension: Ex-Assistance-Pro - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\extensions\{0dbda103-5b1e-4059-ac8f-15aeb3862327} [2014-11-25] [não assinado] FF Extension: Ultimate Expert-W - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\extensions\{313fa342-7ae7-4858-b89a-537bec574baa} [2014-11-13] [não assinado] FF Extension: DownloadHelper - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-10-31] [não assinado] FF Extension: realdeal - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\Extensions\m34UU@tA.edu [2014-11-20] [não assinado] FF Extension: FineDealSoft - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\xslh4bi7.default\Extensions\rfiKm@Z.org [2014-11-21] [não assinado] FF Extension: Word Proser - C:\Program Files (x86)\Mozilla Firefox\extensions\{6e7f6f9f-8ce6-4611-add2-05f0f7049ee6} [2014-11-13] [não assinado] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14] [não assinado] FF HKLM\...\Firefox\Extensions: [{3ea54411-9f2a-4a18-a93a-84312350f7c1}] - C:\Program Files\shopperz12082015\Firefox FF Extension: shopperz12082015 - C:\Program Files\shopperz12082015\Firefox [2015-08-12] [não assinado] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-13] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-13] FF HKLM-x32\...\Firefox\Extensions: [{3ea54411-9f2a-4a18-a93a-84312350f7c1}] - C:\Program Files\shopperz12082015\Firefox FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF Chrome: ======= CHR HomePage: Default -> hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&fr=EUsc4l0yRP999idrAAps6xFMHedVIAm3Mg%3D%3D CHR StartupUrls: Default -> "hxxp://br.hao123.com/?tn=sdkc_inner_hp_09_hao123_br&fr=EUsc4l0yRP999idrAAps6xFMHedVIAm3Mg%3D%3D" CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Apresentações) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-19] CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-19] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Google Search) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28] CHR Extension: (Avast SafePrice) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-02-01] CHR Extension: (Planilhas do Google) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-19] CHR Extension: (Avast Online Security) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-18] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-29] CHR Extension: (Skype) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-05-28] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-07] CHR Extension: (Gmail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28] CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma.crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-09-09] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-09-09] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma.crx Opera: ======= OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh [2015-01-22] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\bokijhalndhhhikpnaniimagniglonke [2015-01-22] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\bongjkoajofkfpofginnhecihgaeldpe [2015-08-15] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk [2014-12-29] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\dolajcekhnohkpncmhgledbmndjpblei [2015-08-16] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\elmggllmmdmjlbkfnbpmmfaofkihmcag [2015-01-22] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\knlpigpfaognbholppaembpfphilacie [2015-01-22] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\ndekeigclpmnhmggjakhfmklhhibiokp [2015-08-15] OPR Extension: (Sem Nome) - C:\Users\PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\nhjehbmopbfbomhchfkhbghcehpeiijl [2015-01-22] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-12] (AVAST Software) S3 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) S3 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [676336 2015-06-25] (SEIKO EPSON CORPORATION) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation) R2 QHActiveDefense; C:\Program Files (x86)\PSafe\Total\safemon\QHActiveDefense.exe [858432 2016-02-29] (PSafe Total) R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [118576 2014-11-26] () S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Arquivo não assinado] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7184144 2016-07-06] (TeamViewer GmbH) R2 TheCalendarService; C:\Program Files (x86)\CalendarTool\2.0.0.11380\CalendarServ.exe [153200 2016-05-19] () S3 UGSVC; C:\Program Files (x86)\UPCleaner\0.8.45.10803\UGSvc.exe [656768 2015-07-27] () S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [671000 2014-11-04] (Wacom Technology, Corp.) S4 BrsHelper; C:\PROGRA~2\YTDOWN~1\BROWSE~2.EXE [X] S3 ClaraUpdater; C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe [X] S2 comyninu; C:\Program Files (x86)\03000200-1439307643-0500-0006-000700080009\hnsq7781.tmp [X] S4 csrcc; "C:\Program Files\shopperz12082015\csrcc.exe" [X] S2 DxICaptradF; "C:\ProgramData\MlaJJNcM\DxICaptradF.exe" [X] S2 ElejooLyunp; "C:\Program Files\shopperz12082015\LuacRouct.exe" -cmd [X] S2 fb34c88a-8ad6-4355-a5df-7f6d006d9cdb; "C:\Program Files\shopperz12082015\Kfcurobg.exe" [X] S3 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /svc [X] <==== ATENÇÃO S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /medsvc [X] <==== ATENÇÃO S2 gopibeko; C:\Users\PC\AppData\Local\03000200-1439296889-0500-0006-000700080009\snslCF13.tmp [X] S2 hyverumu; C:\Program Files (x86)\03000200-1439307643-0500-0006-000700080009\jnsg5F7D.tmp [X] S2 lumifyxo; C:\Program Files (x86)\03000200-1439307643-0500-0006-000700080009\knsyEAF.tmp [X] S3 NetHttpService; C:\Windows\SysWOW64\nethtsrv.exe [X] S3 ServiceUpdater; C:\Windows\SysWOW64\netupdsrv.exe [X] S2 shopperz12082015 Updater; C:\Program Files\shopperz12082015\Ideie.exe [X] S3 Uiviuuj; C:\Program Files\shopperz12082015\Uiviuuj.exe [X] S3 Update Framed Display; "C:\Program Files (x86)\Framed Display\updateFramedDisplay.exe" [X] S4 wsasvc_1.10.0.19; "C:\Program Files (x86)\WordSurfer_1.10.0.19\Service\wsasvc.exe" [X] ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [137808 2016-02-02] (360.cn) R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [77904 2016-02-29] (360.cn) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [319568 2016-02-29] (360.cn) R1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [40520 2015-08-04] (360.cn) R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [363088 2016-02-02] (360.cn) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-12] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-12] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108304 2016-07-12] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-12] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-12] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-07-12] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [473592 2016-07-13] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162904 2016-07-12] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [290088 2016-07-12] (AVAST Software) R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [178776 2016-02-02] (Qihu 360 Software Co., Ltd.) R1 bsdriver; C:\Windows\system32\drivers\bsdriver.sys [34712 2015-08-12] () R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [61336 2015-06-18] (Cherimoya Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [49264 2014-07-28] (Visicom Media Inc.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation) R2 NPF; C:\Program Files (x86)\UPCleaner\0.8.45.10803\npf64.sys [36600 2015-07-27] (Riverbed Technology, Inc.) R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58528 2015-08-11] (YTDownloader) R3 Serenum; C:\Windows\System32\DRIVERS\nuvserenum.sys [23552 2014-01-12] (Windows (R) Win 7 DDK provider) R3 Serial; C:\Windows\System32\DRIVERS\nuvserial.sys [86016 2014-01-12] (Nuvoton Technology Corp.) R1 UGBroMon; C:\Program Files (x86)\UPCleaner\0.8.45.10803\UGBroMon64.sys [62808 2015-07-27] () R1 UGKrnlDrv; C:\Program Files (x86)\UPCleaner\0.8.45.10803\UGKrnlDrv64.sys [76632 2015-07-27] () R1 UGProtect; C:\Program Files (x86)\UPCleaner\0.8.45.10803\UGProtect64.sys [40280 2015-07-27] () R2 UPKernel; C:\Program Files (x86)\UPCleaner\0.8.45.10803\UPKernel64.sys [21848 2015-07-27] () S3 BprotectEx; \??\C:\Windows\System32\drivers\BprotectEx.sys [X] S3 cpuz134; \??\C:\Users\PC\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X] S1 MpKsl380cb199; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9A6D4E08-5E6F-4053-947D-2010F9A19566}\MpKsl380cb199.sys [X] S3 PCFApiUtil; \??\C:\Program Files (x86)\Baidu Security\PC Faster\4.0.0.0\PCFApiUtil64.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 X6va029; \??\C:\Windows\SysWOW64\Drivers\X6va029 [X] S3 X6va031; \??\C:\Windows\SysWOW64\Drivers\X6va031 [X] S1 {10e3e2da-8f7b-42cc-9f00-90007ce494b8}w64; system32\drivers\{10e3e2da-8f7b-42cc-9f00-90007ce494b8}w64.sys [X] S1 {38c95e98-da81-4038-a23a-50d0e098cff8}Gw64; system32\drivers\{38c95e98-da81-4038-a23a-50d0e098cff8}Gw64.sys [X] S1 {4622aef0-e33e-4e1f-9b62-ca3f18b46b25}w64; system32\drivers\{4622aef0-e33e-4e1f-9b62-ca3f18b46b25}w64.sys [X] S1 {e4f32bfd-c9a2-4627-85b7-df3b59f3a367}w64; system32\drivers\{e4f32bfd-c9a2-4627-85b7-df3b59f3a367}w64.sys [X] ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três Meses Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-07-19 10:29 - 2016-07-19 10:29 - 00030326 _____ C:\Users\PC\Desktop\FRST.txt 2016-07-19 10:26 - 2016-07-19 10:29 - 00000000 ____D C:\FRST 2016-07-19 10:25 - 2016-07-19 10:26 - 02391552 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2016-07-19 10:20 - 2016-07-19 10:21 - 00000000 ____D C:\Users\PC\AppData\Roaming\DFXCT 2016-07-19 10:20 - 2016-07-19 10:20 - 03785560 _____ (DLL-Files.com Client ) C:\Users\PC\Downloads\clientsetup_d-0.exe 2016-07-19 10:20 - 2016-07-19 10:20 - 00001129 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk 2016-07-19 10:20 - 2016-07-19 10:20 - 00000000 ____D C:\Users\PC\AppData\Roaming\DLL-files.com 2016-07-19 10:20 - 2016-07-19 10:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client 2016-07-19 10:20 - 2016-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client 2016-07-19 10:16 - 2016-07-19 10:16 - 00003143 _____ C:\Users\PC\Downloads\api-ms-win-crt-runtime-l1-1-0.zip 2016-07-19 09:59 - 2016-07-19 09:53 - 00002343 _____ C:\Users\Public\Desktop\Corel CONNECT X8 (64-Bit).lnk 2016-07-19 09:59 - 2016-07-19 09:52 - 00003060 _____ C:\Users\Public\Desktop\Corel CAPTURE X8 (64-Bit).lnk 2016-07-19 09:59 - 2016-07-19 09:52 - 00002256 _____ C:\Users\Public\Desktop\Corel Font Manager X8 (64-Bit).lnk 2016-07-19 09:59 - 2016-07-19 09:51 - 00003063 _____ C:\Users\Public\Desktop\Corel PHOTO-PAINT X8 (64-Bit).lnk 2016-07-19 09:59 - 2016-07-19 09:50 - 00003015 _____ C:\Users\Public\Desktop\CorelDRAW X8 (64-Bit).lnk 2016-07-19 09:58 - 2016-07-19 10:00 - 00003304 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore 2016-07-19 09:58 - 2016-07-19 09:58 - 00000000 ____D C:\Program Files (x86)\Corel 2016-07-19 09:50 - 2016-07-19 09:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X8 (64-bit) 2016-07-19 09:40 - 2016-07-19 09:58 - 00000000 ____D C:\Program Files\Corel 2016-07-19 09:31 - 2016-07-19 10:11 - 541530515 _____ C:\Users\PC\Downloads\CDRX8_ClubeDoCorel.rar 2016-07-18 19:42 - 2016-07-18 19:43 - 00000000 ____D C:\Users\Todos os Usuários\CorelDRAW Graphics Suite X7 2016-07-18 19:42 - 2016-07-18 19:43 - 00000000 ____D C:\ProgramData\CorelDRAW Graphics Suite X7 2016-07-18 17:43 - 2016-07-18 17:43 - 00006392 _____ C:\Windows\system32\PerfStringBackup.TMP 2016-07-18 17:30 - 2016-07-11 16:26 - 00109110 _____ C:\Users\PC\Desktop\cartão ok.bmp 2016-07-18 14:59 - 2016-07-18 15:01 - 00015094 _____ C:\Users\PC\Downloads\Bandeira_Estados_Unidos.cdr 2016-07-18 14:59 - 2016-07-18 15:01 - 00015094 _____ C:\Users\PC\Downloads\Bandeira_Estados_Unidos (1).cdr 2016-07-18 14:43 - 2016-07-18 14:44 - 05056911 _____ C:\Users\PC\Downloads\United-States-Great-Birtain-flags.zip 2016-07-18 14:37 - 2016-07-18 14:37 - 00322791 _____ C:\Users\PC\Downloads\23881 - 100 Blocos - 100x1 - 1x0 - 9x5 cm - cia atletica.cdr 2016-07-18 13:49 - 2016-07-18 13:49 - 00420627 _____ C:\Users\PC\Documents\Nota Fiscal173ARTEEDUCACAO.pdf 2016-07-18 13:43 - 2016-07-18 13:43 - 07815107 _____ C:\Users\PC\Downloads\banner danca intercambio.zip 2016-07-15 18:35 - 2016-07-15 18:35 - 00420520 _____ C:\Users\PC\Desktop\suiteverniz.cdr 2016-07-14 17:42 - 2016-07-15 09:45 - 00771030 _____ C:\Users\PC\Desktop\cinta LEITE DE ROSAS.cdr 2016-07-14 17:21 - 2016-07-14 17:21 - 02186480 _____ C:\Users\PC\Downloads\CINTA 27x6cm.zip 2016-07-14 11:40 - 2016-07-14 11:40 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk 2016-07-14 11:37 - 2016-07-14 11:37 - 09795248 _____ (TeamViewer GmbH) C:\Users\PC\Downloads\TeamViewer_Setup_pt-tkc.exe 2016-07-14 11:28 - 2016-07-14 11:35 - 00000000 ____D C:\Users\PC\Desktop\Boletos e Notas 2016-07-14 09:19 - 2016-07-14 09:19 - 00426972 _____ C:\Users\PC\Documents\Nota Fiscal172olharbrasileiro.pdf 2016-07-13 18:55 - 2016-07-13 18:55 - 00393409 _____ C:\Users\PC\Desktop\CARTAZ CURVAS.cdr 2016-07-13 18:54 - 2016-07-13 18:54 - 00575061 _____ C:\Users\PC\Desktop\CARTAZ.cdr 2016-07-13 15:56 - 2016-07-13 15:56 - 01541253 _____ C:\Users\PC\Downloads\Anexos_2016713.zip 2016-07-13 15:53 - 2016-07-13 15:53 - 00855770 _____ C:\Users\PC\Downloads\LR_ENVELOPE_OFICIO.PDF 2016-07-13 15:53 - 2016-07-13 15:53 - 00855770 _____ C:\Users\PC\Downloads\LR_ENVELOPE_OFICIO (1).PDF 2016-07-13 15:30 - 2016-07-13 15:30 - 00000000 ____D C:\Program Files (x86)\ToolsUpdatePlatform 2016-07-13 12:33 - 2016-06-11 03:57 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-07-13 12:33 - 2016-06-11 01:48 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-07-13 12:33 - 2016-06-10 18:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-07-13 12:33 - 2016-06-10 18:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-07-13 12:33 - 2016-06-10 18:20 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-07-13 12:33 - 2016-06-10 18:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-07-13 12:33 - 2016-06-10 18:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-07-13 12:33 - 2016-06-10 18:18 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-07-13 12:33 - 2016-06-10 18:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-07-13 12:33 - 2016-06-10 18:17 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-07-13 12:33 - 2016-06-10 18:10 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-07-13 12:33 - 2016-06-10 18:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-07-13 12:33 - 2016-06-10 18:05 - 25814016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-07-13 12:33 - 2016-06-10 18:04 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-07-13 12:33 - 2016-06-10 18:03 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-07-13 12:33 - 2016-06-10 18:03 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-07-13 12:33 - 2016-06-10 18:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-07-13 12:33 - 2016-06-10 18:02 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-07-13 12:33 - 2016-06-10 17:53 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-07-13 12:33 - 2016-06-10 17:50 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-07-13 12:33 - 2016-06-10 17:49 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-07-13 12:33 - 2016-06-10 17:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-07-13 12:33 - 2016-06-10 17:38 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-07-13 12:33 - 2016-06-10 17:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-07-13 12:33 - 2016-06-10 17:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-07-13 12:33 - 2016-06-10 17:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-07-13 12:33 - 2016-06-10 17:28 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-07-13 12:33 - 2016-06-10 17:15 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-07-13 12:33 - 2016-06-10 17:13 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-07-13 12:33 - 2016-06-10 17:12 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-07-13 12:33 - 2016-06-10 17:11 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-07-13 12:33 - 2016-06-10 17:10 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-07-13 12:33 - 2016-06-10 16:45 - 15409664 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-07-13 12:33 - 2016-06-10 16:44 - 02869248 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-07-13 12:33 - 2016-06-10 16:30 - 01550848 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-07-13 12:33 - 2016-06-10 16:21 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-07-13 12:33 - 2016-06-10 16:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-07-13 12:33 - 2016-06-10 15:54 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-07-13 12:33 - 2016-06-10 15:53 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-07-13 12:33 - 2016-06-10 15:53 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-07-13 12:33 - 2016-06-10 15:53 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-07-13 12:33 - 2016-06-10 15:52 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-07-13 12:33 - 2016-06-10 15:47 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-07-13 12:33 - 2016-06-10 15:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-07-13 12:33 - 2016-06-10 15:45 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-07-13 12:33 - 2016-06-10 15:42 - 20348928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-07-13 12:33 - 2016-06-10 15:42 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-07-13 12:33 - 2016-06-10 15:41 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-07-13 12:33 - 2016-06-10 15:41 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-07-13 12:33 - 2016-06-10 15:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-07-13 12:33 - 2016-06-10 15:32 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-07-13 12:33 - 2016-06-10 15:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-07-13 12:33 - 2016-06-10 15:26 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-07-13 12:33 - 2016-06-10 15:24 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-07-13 12:33 - 2016-06-10 15:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-07-13 12:33 - 2016-06-10 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-07-13 12:33 - 2016-06-10 15:19 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-07-13 12:33 - 2016-06-10 15:14 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-07-13 12:33 - 2016-06-10 15:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-07-13 12:33 - 2016-06-10 15:10 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-07-13 12:33 - 2016-06-10 15:09 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-07-13 12:33 - 2016-06-10 15:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-07-13 12:33 - 2016-06-10 14:58 - 13806080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-07-13 12:33 - 2016-06-10 14:45 - 02392576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-07-13 12:33 - 2016-06-10 14:42 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-07-13 12:33 - 2016-06-10 14:41 - 01315840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-07-13 12:32 - 2016-06-25 21:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2016-07-13 12:32 - 2016-06-25 21:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-07-13 12:32 - 2016-06-25 21:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2016-07-13 12:32 - 2016-06-25 21:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2016-07-13 12:32 - 2016-06-25 21:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2016-07-13 12:32 - 2016-06-25 16:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-07-13 12:32 - 2016-06-25 16:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2016-07-13 12:32 - 2016-06-25 16:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2016-07-13 12:32 - 2016-06-25 16:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2016-07-13 12:32 - 2016-06-25 16:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe 2016-07-13 12:32 - 2016-06-14 12:03 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-07-13 11:56 - 2016-07-13 11:56 - 00000000 ____D C:\Users\Todos os Usuários\360SD 2016-07-13 11:56 - 2016-07-13 11:56 - 00000000 ____D C:\Users\PC\AppData\Roaming\360TotalSecurity 2016-07-13 11:56 - 2016-07-13 11:56 - 00000000 ____D C:\ProgramData\360SD 2016-07-13 11:23 - 2016-07-13 11:23 - 00000000 ____D C:\Program Files (x86)\gs 2016-07-13 11:22 - 2016-07-13 11:22 - 00000000 ____D C:\Users\Todos os Usuários\VsTelemetry 2016-07-13 11:22 - 2016-07-13 11:22 - 00000000 ____D C:\ProgramData\VsTelemetry 2016-07-13 11:05 - 2016-07-13 11:06 - 00385024 _____ C:\Users\PC\Desktop\CrackCorelDRAWX8_TutoDRAW.exe 2016-07-13 11:01 - 2016-07-13 11:06 - 534612834 _____ C:\Users\PC\Downloads\CorelDRAWGraphicsSuiteX8Installer_pt64Bit.zip 2016-07-13 11:01 - 2016-07-13 11:01 - 00000000 ____D C:\Users\Todos os Usuários\UniqueId 2016-07-13 11:01 - 2016-07-13 11:01 - 00000000 ____D C:\ProgramData\UniqueId 2016-07-13 09:02 - 2016-07-13 09:02 - 12505160 _____ (Corel Corporation) C:\Users\PC\Downloads\cdgsx8seo.exe 2016-07-13 08:58 - 2016-07-13 08:58 - 00917128 _____ C:\Users\PC\Downloads\CorelDRAW_X8_32_64_Bits_Ativador_e_Serial.zip 2016-07-13 08:17 - 2016-07-12 09:44 - 00390984 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-07-13 08:16 - 2016-07-13 08:16 - 00000000 ____D C:\Users\PC\AppData\Local\CEF 2016-07-13 08:14 - 2016-07-13 08:19 - 00003890 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1468408482 2016-07-13 08:14 - 2016-07-13 08:14 - 00001037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2016-07-12 18:20 - 2016-07-12 18:20 - 00596090 _____ C:\Users\PC\Downloads\Cartão 9x5cm.zip 2016-07-12 14:29 - 2016-07-12 14:29 - 00141060 _____ C:\Users\PC\Desktop\Certificado da Condicao de Microempreendedor Individual - Impressão.pdf 2016-07-12 14:23 - 2016-07-18 14:02 - 00314575 _____ C:\Users\PC\Documents\bannerBOSCH.pdf 2016-07-12 14:21 - 2016-07-12 14:21 - 00364807 _____ C:\Users\PC\Documents\banner21preto.pdf 2016-07-12 14:12 - 2016-07-12 14:12 - 00449707 _____ C:\Users\PC\Documents\Nota Fiscal171astralnorte.pdf 2016-07-12 14:04 - 2016-07-12 14:04 - 00443341 _____ C:\Users\PC\Documents\Nota Fiscal170sunmedcare.pdf 2016-07-12 11:47 - 2016-07-12 18:46 - 00000000 ____D C:\Users\PC\Documents\ingresso 2016-07-12 11:47 - 2016-07-12 11:47 - 01179480 _____ C:\Users\PC\Documents\INGRESSOS-12,5x5cm.cdr 2016-07-12 11:08 - 2016-07-12 11:08 - 01211758 _____ C:\Users\PC\Documents\INGRESSOS-12,5x5cm.pdf 2016-07-12 11:07 - 2016-07-12 11:07 - 01371662 _____ C:\Users\PC\Downloads\INGRESSOS-12,5x5cm.pdf 2016-07-12 09:45 - 2016-07-12 09:43 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2016-07-12 09:44 - 2016-07-12 09:44 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2016-07-12 09:44 - 2016-07-12 09:44 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2016-07-12 09:44 - 2016-07-12 09:44 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-07-11 15:53 - 2016-07-11 15:53 - 00009867 _____ C:\Users\PC\Downloads\AGENDA RESOFAP 2016-2017-3.xlsx 2016-07-11 15:52 - 2016-07-11 15:52 - 00010051 _____ C:\Users\PC\Downloads\IMPRESSÃO CRACHÁS.xlsx 2016-07-11 15:03 - 2016-07-11 15:03 - 00045562 _____ C:\Users\PC\Downloads\NFSe_00000094_04591739.pdf 2016-07-11 14:56 - 2016-07-11 14:56 - 00046431 _____ C:\Users\PC\Downloads\NFSe_00000093_04591739.pdf 2016-07-11 14:56 - 2016-07-11 14:56 - 00046431 _____ C:\Users\PC\Downloads\NFSe_00000093_04591739 (1).pdf 2016-07-11 12:30 - 2016-07-11 12:30 - 00611165 _____ C:\Users\PC\Downloads\MODELO DE MEI DE SERVI--OS_.cdr 2016-07-11 10:55 - 2016-07-11 10:55 - 00000043 _____ C:\Windows\L1300.ini 2016-07-11 10:55 - 2016-07-11 10:55 - 00000000 ____D C:\Users\PC\AppData\Roaming\Leadertech 2016-07-11 10:51 - 2016-07-19 09:51 - 00000913 _____ C:\Windows\Tasks\EPSON L1300 Series Update {40985D56-2250-4BF8-A62D-C418967EDAC1}.job 2016-07-11 10:51 - 2016-07-19 09:51 - 00000727 _____ C:\Windows\Tasks\EPSON L1300 Series Invitation {40985D56-2250-4BF8-A62D-C418967EDAC1}.job 2016-07-11 10:51 - 2016-07-11 10:51 - 00003980 _____ C:\Windows\System32\Tasks\EPSON L1300 Series Update {40985D56-2250-4BF8-A62D-C418967EDAC1} 2016-07-11 10:51 - 2016-07-11 10:51 - 00003794 _____ C:\Windows\System32\Tasks\EPSON L1300 Series Invitation {40985D56-2250-4BF8-A62D-C418967EDAC1} 2016-07-11 10:49 - 2016-07-11 10:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2016-07-11 10:49 - 2016-07-11 10:49 - 00000000 ____D C:\Program Files\EPSON 2016-07-11 10:49 - 2016-07-11 10:49 - 00000000 ____D C:\Program Files (x86)\EPSON Software 2016-07-11 10:38 - 2013-10-22 04:04 - 00179712 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YLMBLVE.DLL 2016-07-11 10:38 - 2011-03-15 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YD4BLVE.DLL 2016-07-11 10:38 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2016-07-08 19:26 - 2016-07-08 19:26 - 00537219 _____ C:\Users\PC\Downloads\Convite.pdf 2016-07-08 15:13 - 2016-07-08 15:13 - 00987728 _____ (Google Inc.) C:\Users\PC\Downloads\ChromeSetup.exe 2016-07-07 17:22 - 2016-07-07 17:22 - 00491199 _____ C:\Users\PC\Downloads\enclogotipofesofapevariaesdecoresarquivoeps.zip 2016-06-29 08:50 - 2016-06-29 08:50 - 01838175 _____ C:\Users\PC\Downloads\Romantic-restaurant-with-waiter.zip 2016-06-28 18:07 - 2016-06-28 18:07 - 00000000 ____D C:\Users\Geane\Documents\Minhas paletas 2016-06-28 18:06 - 2016-06-28 18:06 - 00000000 ____D C:\Users\Geane\Documents\Corel 2016-06-28 18:00 - 2016-06-28 18:00 - 00000000 ____D C:\Program Files\Common Files\Protexis 2016-06-28 17:41 - 2016-06-28 17:41 - 00000000 ____D C:\Users\Geane\AppData\Roaming\WinRAR 2016-06-28 17:40 - 2016-06-28 17:40 - 55085642 _____ C:\Users\Geane\Downloads\Ativador CorelDraw X7 e tutorial em video.rar 2016-06-28 17:22 - 2016-07-08 11:12 - 00000000 ____D C:\Users\Geane\AppData\Roaming\Corel 2016-06-19 06:47 - 2016-06-19 06:47 - 00085076 _____ C:\Users\PC\Downloads\bloco_receituario_10x100_cola_1via_branco_15x21.cdr 2016-06-17 05:57 - 2016-05-13 19:15 - 00382184 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-06-17 05:57 - 2016-05-13 19:09 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-06-17 05:57 - 2016-05-13 19:09 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-06-17 05:57 - 2016-05-13 19:09 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-06-17 05:57 - 2016-05-13 19:09 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-06-17 05:57 - 2016-05-13 18:54 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-06-17 05:57 - 2016-05-13 18:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-06-17 05:57 - 2016-05-13 18:49 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-06-17 05:57 - 2016-05-13 18:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-06-17 05:57 - 2016-05-13 18:27 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-06-17 05:57 - 2016-05-12 14:20 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-06-17 05:57 - 2016-05-12 14:20 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-06-17 05:57 - 2016-05-12 14:15 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-06-17 05:57 - 2016-05-12 14:15 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-06-17 05:57 - 2016-05-12 14:15 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-06-17 05:57 - 2016-05-12 14:15 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-06-17 05:57 - 2016-05-12 14:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-06-17 05:57 - 2016-05-12 14:14 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-06-17 05:57 - 2016-05-12 12:18 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-06-17 05:57 - 2016-05-12 12:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-06-17 05:57 - 2016-05-12 11:58 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2016-06-17 05:57 - 2016-05-12 11:58 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2016-06-17 05:57 - 2016-05-12 11:58 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-06-17 05:57 - 2016-05-12 11:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2016-06-17 05:57 - 2016-05-12 11:58 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-06-17 05:57 - 2016-05-12 11:58 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-06-17 05:57 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-06-17 05:57 - 2016-05-12 11:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-06-17 05:57 - 2016-05-12 11:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-06-17 05:57 - 2016-05-12 10:05 - 00459640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2016-06-17 05:57 - 2016-05-12 10:05 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2016-06-17 05:57 - 2016-05-12 10:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2016-06-17 05:56 - 2016-05-11 14:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2016-06-17 05:56 - 2016-05-11 14:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2016-06-17 05:56 - 2016-05-11 14:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2016-06-17 05:56 - 2016-05-11 14:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2016-06-17 05:56 - 2016-05-11 12:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2016-06-17 05:56 - 2016-05-11 12:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2016-06-17 05:56 - 2016-05-11 12:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2016-06-17 05:56 - 2016-05-11 12:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2016-06-17 05:56 - 2016-05-11 12:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2016-06-17 05:56 - 2016-05-11 12:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2016-06-17 05:56 - 2016-05-11 11:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2016-06-17 05:55 - 2016-05-12 14:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2016-06-17 05:55 - 2016-05-12 14:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2016-06-17 05:55 - 2016-05-12 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll 2016-06-17 05:55 - 2016-05-12 12:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2016-06-17 05:55 - 2016-05-12 12:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll 2016-06-17 05:55 - 2016-05-12 12:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2016-06-17 05:55 - 2016-05-12 12:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll 2016-06-17 05:55 - 2016-05-12 12:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll 2016-06-17 05:55 - 2016-05-12 12:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe 2016-06-17 05:55 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll 2016-06-17 05:55 - 2016-05-12 11:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe 2016-06-17 05:53 - 2016-05-18 13:10 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2016-06-17 05:53 - 2016-05-18 13:09 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2016-06-14 17:34 - 2016-06-14 17:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-06-09 16:54 - 2016-06-09 16:54 - 00154302 _____ C:\Users\PC\Downloads\Print cartão escolhido br.pdf 2016-06-09 05:04 - 2016-06-09 05:04 - 00395166 _____ C:\Users\PC\Downloads\filipeta-crono-2.pdf 2016-06-07 14:44 - 2016-06-07 14:45 - 05426420 _____ C:\Users\PC\Downloads\QUARTA_unisuam_solange.cdr 2016-06-07 05:33 - 2016-06-07 05:33 - 02991399 _____ C:\Users\PC\Downloads\q_Rotulo_peq_12x10cm_5mil_uni (1).cdr 2016-06-06 19:01 - 2016-06-06 19:01 - 01064513 _____ C:\Users\PC\Downloads\22440 - 10 Blocos - 50x2 - 21,6 x 35,6 cm + serrilha - becaup.cdr 2016-06-06 06:57 - 2016-06-06 06:57 - 02971426 _____ C:\Users\PC\Downloads\q_Rotulo_peq_12x10cm_5mil_uni.cdr 2016-06-05 16:57 - 2016-06-05 16:57 - 00026712 _____ C:\Users\PC\Downloads\__ Bradesco Pessoa Física __.html 2016-06-05 16:57 - 2016-06-05 16:57 - 00000000 ____D C:\Users\PC\Downloads\__ Bradesco Pessoa Física ___files 2016-06-02 19:15 - 2016-06-02 19:16 - 01075386 _____ C:\Users\PC\Downloads\Panfleto.cdr 2016-05-30 18:34 - 2016-05-30 18:34 - 00443740 _____ C:\Users\PC\Downloads\22192 - 20 blocos - 50x2 - 14x10 cm - 90g - 1x0 - numerados - MORITZ.cdr 2016-05-30 18:31 - 2016-05-30 18:32 - 01175304 _____ C:\Users\PC\Downloads\comanda imperio das massas-curvas.cdr 2016-05-21 05:37 - 2016-05-21 05:37 - 00067752 _____ C:\Users\PC\Downloads\DAS-PGMEI-19460825000117 (2).pdf 2016-05-18 14:41 - 2016-05-18 14:54 - 92754639 _____ C:\Users\PC\Downloads\banner_caldinho.zip 2016-05-18 14:10 - 2016-05-18 14:12 - 03573401 _____ C:\Users\PC\Downloads\FlyerSaboresDoDia.pdf 2016-05-17 17:50 - 2016-05-17 17:50 - 00292864 _____ C:\Windows\Minidump\051716-23790-01.dmp 2016-05-17 17:19 - 2016-05-17 17:20 - 00557636 _____ C:\Users\PC\Downloads\21847 - bloco 100x1 - 1x0 - 15x21 cm - 20 unidades - sonoshow.cdr 2016-05-10 17:27 - 2016-04-09 04:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2016-05-10 17:27 - 2016-04-09 04:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2016-05-10 17:27 - 2016-04-09 03:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2016-05-10 17:26 - 2016-04-14 10:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2016-05-10 17:26 - 2016-04-14 10:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2016-05-10 17:25 - 2016-04-06 12:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-05-10 17:20 - 2016-04-09 04:02 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-05-10 17:20 - 2016-04-09 04:01 - 05546216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-05-10 17:20 - 2016-04-09 04:01 - 00706280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-05-10 17:20 - 2016-04-09 03:59 - 03998952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-05-10 17:20 - 2016-04-09 03:59 - 03943144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-05-10 17:20 - 2016-04-09 03:59 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-05-10 17:20 - 2016-04-09 03:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 02:52 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-05-10 17:20 - 2016-04-09 02:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-05-10 17:20 - 2016-04-09 02:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-05-10 17:20 - 2016-04-09 02:48 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-05-10 17:20 - 2016-04-09 02:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-05-10 17:20 - 2016-04-09 02:43 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-05-10 17:20 - 2016-04-09 02:38 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-05-10 17:20 - 2016-04-09 02:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-05-10 17:20 - 2016-04-09 02:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-05-10 17:20 - 2016-04-09 02:38 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-05-10 17:20 - 2016-04-09 02:37 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 02:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 02:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-05-10 17:20 - 2016-04-09 02:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-05-10 17:14 - 2016-04-09 01:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2016-05-10 17:14 - 2016-04-09 00:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2016-05-01 11:18 - 2016-05-01 11:28 - 01116981 _____ C:\Users\PC\Downloads\GBS CARD BACK C LOGO.psd 2016-05-01 11:18 - 2016-05-01 11:25 - 00928356 _____ C:\Users\PC\Downloads\GBS CARD FRONT.psd 2016-04-28 07:24 - 2016-04-28 07:24 - 00405256 _____ C:\Users\PC\Documents\DGNOKcard.pdf 2016-04-28 07:16 - 2016-04-28 07:16 - 00599299 _____ C:\Users\PC\Downloads\Business-card-in-dark-blue-color.zip 2016-04-28 07:01 - 2016-04-28 07:19 - 00085047 _____ C:\Users\PC\Downloads\DGNOK (3).cdr 2016-04-28 07:01 - 2016-04-28 07:18 - 00085023 _____ C:\Users\PC\Downloads\Cópia_de_segurança_de_DGNOK (3).cdr 2016-04-28 06:52 - 2016-04-30 09:35 - 00387632 _____ C:\Users\PC\Documents\armario.pdf 2016-04-28 06:51 - 2016-04-28 06:51 - 00025626 _____ C:\Users\PC\Downloads\Cópia_de_segurança_de_Painel_Parede_LAF_230416.cdr 2016-04-28 06:51 - 2016-04-28 06:51 - 00025122 _____ C:\Users\PC\Downloads\Painel_Parede_LAF_230416.cdr 2016-04-28 06:33 - 2016-04-23 14:20 - 00007702 _____ C:\Users\PC\Documents\Painel_Parede_LAF_230416.ai 2016-04-28 06:32 - 2016-04-28 06:32 - 00002255 _____ C:\Users\PC\Downloads\Painel_Parede_LAF_230416.ai.zip 2016-04-28 06:30 - 2016-04-28 06:30 - 00001211 _____ C:\Users\PC\Downloads\Painel_Parede_LAF_230416.pdf 2016-04-27 18:06 - 2016-04-27 18:06 - 00667923 _____ C:\Users\PC\Downloads\DGNOK (3).pdf 2016-04-27 06:52 - 2016-04-27 06:52 - 00092925 _____ C:\Users\PC\Documents\CONTRATO DE SERVICOS.pdf 2016-04-27 05:56 - 2016-04-27 05:56 - 00484822 _____ C:\Users\PC\Documents\cartao_visitaautoconsultor.pdf 2016-04-27 05:54 - 2016-04-27 05:54 - 00947298 _____ C:\Users\PC\Downloads\MissionGothic_Personal_License.zip 2016-04-27 05:54 - 2013-03-01 18:02 - 00034612 _____ C:\Users\PC\Downloads\Mission Gothic Thin Italic.otf 2016-04-27 05:54 - 2013-03-01 17:42 - 00034164 _____ C:\Users\PC\Downloads\Mission Gothic Light Italic.otf 2016-04-27 05:54 - 2013-03-01 17:42 - 00034032 _____ C:\Users\PC\Downloads\Mission Gothic Regular Italic.otf 2016-04-27 05:54 - 2013-03-01 17:42 - 00028852 _____ C:\Users\PC\Downloads\Mission Gothic Regular.otf 2016-04-27 05:54 - 2013-03-01 17:42 - 00028716 _____ C:\Users\PC\Downloads\Mission Gothic Thin.otf 2016-04-27 05:54 - 2013-03-01 17:41 - 00035052 _____ C:\Users\PC\Downloads\Mission Gothic Black Italic.otf 2016-04-27 05:54 - 2013-03-01 17:41 - 00034756 _____ C:\Users\PC\Downloads\Mission Gothic Bold Italic.otf 2016-04-27 05:54 - 2013-03-01 17:41 - 00032656 _____ C:\Users\PC\Downloads\Mission Gothic Black.otf 2016-04-27 05:54 - 2013-03-01 17:41 - 00029768 _____ C:\Users\PC\Downloads\Mission Gothic Bold.otf 2016-04-27 05:54 - 2013-03-01 17:41 - 00029028 _____ C:\Users\PC\Downloads\Mission Gothic Light.otf 2016-04-27 05:49 - 2016-04-30 06:48 - 00134536 _____ C:\Users\PC\Documents\cartao_visitaautoconsultor.cdr 2016-04-27 05:49 - 2016-04-27 05:56 - 00186309 _____ C:\Users\PC\Documents\Cópia_de_segurança_de_cartao_visitaautoconsultor.cdr 2016-04-27 05:40 - 2016-04-27 05:40 - 01511852 _____ C:\Users\PC\Documents\cartao_visita_9x5_Fabio_4.pdf 2016-04-27 05:39 - 2016-04-27 05:39 - 01516301 _____ C:\Users\PC\Downloads\cartao_visita_9x5_Fabio_4.pdf 2016-04-26 05:28 - 2016-04-26 05:28 - 00227219 _____ C:\Users\PC\Downloads\4 Artes TAGS Sensória.cdr 2016-04-21 04:11 - 2016-04-21 04:11 - 00446069 _____ C:\Users\PC\Documents\diploma5.pdf 2016-04-20 17:41 - 2016-04-20 17:42 - 00509213 _____ C:\Users\PC\Downloads\BLOCO PEDIDO nacional grafica x6.cdr ==================== Três Meses Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-07-19 10:11 - 2014-10-08 09:17 - 00000000 ____D C:\Users\Todos os Usuários\Corel 2016-07-19 10:11 - 2014-10-08 09:17 - 00000000 ____D C:\ProgramData\Corel 2016-07-19 09:57 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-07-19 09:54 - 2014-10-01 18:11 - 00000000 ____D C:\Users\Public\Documents\Corel 2016-07-19 09:52 - 2015-08-11 12:51 - 00001050 _____ C:\Windows\Tasks\Crossbrowse.job 2016-07-19 09:51 - 2009-07-14 02:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2016-07-19 09:47 - 2015-08-12 22:34 - 00003220 _____ C:\Windows\System32\Tasks\DailyPCClean Schedule 2016-07-19 09:47 - 2015-08-11 18:58 - 00000000 ____D C:\Users\PC\AppData\Roaming\CalendarTool 2016-07-19 09:37 - 2015-08-16 15:16 - 00000000 ____D C:\Users\PC\AppData\LocalLow\360WD 2016-07-19 09:33 - 2009-07-14 01:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-07-19 09:33 - 2009-07-14 01:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-07-19 09:27 - 2016-04-16 12:37 - 00003076 _____ C:\Windows\System32\Tasks\Advanced System~Protector_startup 2016-07-19 09:26 - 2015-08-11 13:00 - 00000342 _____ C:\Windows\Tasks\AmiUpdXp.job 2016-07-19 09:25 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-07-18 19:39 - 2014-10-08 09:11 - 00000000 ____D C:\Users\Todos os Usuários\CorelDRAW Graphics Suite X7 x64 2016-07-18 19:39 - 2014-10-08 09:11 - 00000000 ____D C:\ProgramData\CorelDRAW Graphics Suite X7 x64 2016-07-18 18:08 - 2014-10-08 09:21 - 00000000 ____D C:\Users\PC\AppData\Roaming\Corel 2016-07-18 17:43 - 2009-07-14 14:55 - 00712668 _____ C:\Windows\system32\prfh0416.dat 2016-07-18 17:43 - 2009-07-14 14:55 - 00152256 _____ C:\Windows\system32\prfc0416.dat 2016-07-18 17:31 - 2009-07-14 02:13 - 01642550 _____ C:\Windows\system32\PerfStringBackup.INI 2016-07-18 17:31 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf 2016-07-18 17:26 - 2016-03-10 05:39 - 669421857 _____ C:\Windows\MEMORY.DMP 2016-07-18 17:26 - 2015-01-23 21:28 - 00000000 ____D C:\Windows\Minidump 2016-07-18 13:11 - 2015-08-16 17:03 - 00000000 _RSHD C:\360SANDBOX 2016-07-15 09:29 - 2015-09-09 11:30 - 00004180 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-07-15 09:09 - 2015-12-12 12:27 - 07382288 _____ C:\Windows\system32\FNTCACHE.DAT 2016-07-14 18:36 - 2014-10-13 09:23 - 01606936 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-07-14 17:36 - 2014-10-13 17:03 - 00000000 ____D C:\Users\PC\AppData\Roaming\TeamViewer 2016-07-14 13:30 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache 2016-07-14 11:53 - 2015-12-11 23:13 - 01070336 _____ C:\Users\PC\AppData\Local\GDIPFONTCACHEV1.DAT 2016-07-14 11:41 - 2014-10-13 17:03 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-07-13 19:38 - 2014-10-07 10:30 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2016-07-13 19:36 - 2015-08-16 15:17 - 00000000 ____D C:\Windows\Tasks\360Disabled 2016-07-13 19:36 - 2015-08-11 18:58 - 00003530 _____ C:\Windows\System32\Tasks\toolsupdateplatform_scheduledtask 2016-07-13 19:30 - 2015-08-11 18:58 - 00000000 ____D C:\Users\Todos os Usuários\ToolsUpdatePlatform 2016-07-13 19:30 - 2015-08-11 18:58 - 00000000 ____D C:\ProgramData\ToolsUpdatePlatform 2016-07-13 11:56 - 2016-02-04 04:56 - 00000000 ____D C:\Users\Todos os Usuários\360TotalSecurity 2016-07-13 11:56 - 2016-02-04 04:56 - 00000000 ____D C:\ProgramData\360TotalSecurity 2016-07-13 11:22 - 2014-10-08 09:19 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2016-07-13 11:22 - 2014-10-08 09:19 - 00000000 ____D C:\ProgramData\Package Cache 2016-07-13 08:18 - 2015-09-09 11:30 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2016-07-12 09:45 - 2015-09-09 11:30 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.146840872257005 2016-07-12 09:44 - 2015-09-09 11:30 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.146832753977002 2016-07-12 09:44 - 2015-09-09 11:30 - 00290088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2016-07-12 09:44 - 2015-09-09 11:30 - 00162904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-07-12 09:44 - 2015-09-09 11:30 - 00108304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-07-12 09:44 - 2015-09-09 11:30 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-07-12 09:44 - 2015-09-09 11:30 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-07-12 09:44 - 2015-09-09 11:30 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-07-12 09:44 - 2015-02-11 09:26 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software 2016-07-12 09:44 - 2015-02-11 09:26 - 00000000 ____D C:\ProgramData\AVAST Software 2016-07-12 09:43 - 2015-09-09 11:30 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2016-07-12 09:43 - 2015-02-11 09:27 - 00000000 ____D C:\Program Files\AVAST Software 2016-07-11 10:51 - 2015-05-28 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2016-07-11 10:51 - 2015-05-28 19:00 - 00000000 ____D C:\Users\Todos os Usuários\EPSON 2016-07-11 10:51 - 2015-05-28 19:00 - 00000000 ____D C:\ProgramData\EPSON 2016-07-08 09:35 - 2015-08-12 17:57 - 00001393 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-07-07 12:46 - 2016-01-22 17:28 - 00003656 _____ C:\Windows\System32\Tasks\Advanced System~Protector 2016-07-07 12:46 - 2015-09-24 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System~Protector 2016-07-07 12:46 - 2015-08-11 15:41 - 00000000 ____D C:\Program Files (x86)\ASP 2016-07-07 12:46 - 2015-01-22 10:01 - 00000000 ____D C:\Users\PC\AppData\Roaming\systweak 2016-07-07 11:29 - 2015-09-27 12:56 - 00000000 ____D C:\Program Files (x86)\QSocial 2016-07-07 11:28 - 2015-03-10 17:59 - 00000000 ____D C:\Mu-Sky Online 2016-07-07 11:07 - 2015-08-16 15:16 - 00000000 __SHD C:\Users\Todos os Usuários\360Quarant 2016-07-07 11:07 - 2015-08-16 15:16 - 00000000 __SHD C:\ProgramData\360Quarant 2016-07-07 11:07 - 2015-08-16 15:16 - 00000000 __SHD C:\$360Section 2016-07-07 11:07 - 2015-08-11 12:41 - 00000000 ____D C:\Users\PC\AppData\Local\03000200-1439296889-0500-0006-000700080009 2016-07-07 11:06 - 2015-11-06 21:54 - 00000000 ___RD C:\Users\PC\Documents\MEGA 2016-07-07 11:06 - 2014-10-15 22:43 - 00000000 ____D C:\Users\PC\AppData\Roaming\BSplayer 2016-07-07 11:06 - 2014-10-15 22:43 - 00000000 ____D C:\Program Files (x86)\Webteh 2016-07-07 09:05 - 2014-10-22 16:57 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2016-07-07 08:55 - 2014-10-22 16:57 - 00000000 ____D C:\Users\Todos os Usuários\Skype 2016-07-07 08:55 - 2014-10-22 16:57 - 00000000 ____D C:\ProgramData\Skype 2016-07-06 21:39 - 2011-01-20 20:57 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-07-04 12:54 - 2015-08-11 15:41 - 00023016 _____ C:\Windows\system32\sasnative64.exe 2016-06-28 22:10 - 2016-02-26 17:08 - 00000000 ____D C:\Users\Geane\AppData\LocalLow\360WD 2016-06-28 19:11 - 2015-08-11 18:59 - 00000000 ____D C:\Program Files (x86)\CalendarTool 2016-06-28 18:06 - 2014-10-13 09:32 - 00000000 ____D C:\Users\Todos os Usuários\Protexis64 2016-06-28 18:06 - 2014-10-13 09:32 - 00000000 ____D C:\ProgramData\Protexis64 2016-06-28 17:51 - 2014-10-21 18:14 - 00000000 ____D C:\Users\Convidado\AppData\Roaming\Corel 2016-06-28 17:37 - 2009-07-14 00:20 - 00000000 __RHD C:\Users\Public\Libraries 2016-06-28 17:19 - 2015-12-17 18:59 - 01063192 _____ C:\Users\Geane\AppData\Local\GDIPFONTCACHEV1.DAT ==================== Arquivos na raiz de alguns diretórios ======= 2014-10-08 10:46 - 2015-06-26 09:55 - 0000132 _____ () C:\Users\PC\AppData\Roaming\Adobe BMP Format CS6 Prefs 2014-10-09 15:30 - 2015-10-21 14:33 - 0000132 _____ () C:\Users\PC\AppData\Roaming\Adobe PNG Format CS6 Prefs 2014-09-01 05:18 - 2014-09-01 05:18 - 0001248 _____ () C:\Users\PC\AppData\Roaming\DGUYAJA 2014-09-01 05:18 - 2014-09-01 05:18 - 0002086 _____ () C:\Users\PC\AppData\Roaming\DM 2014-09-01 05:18 - 2014-09-01 05:18 - 0001248 _____ () C:\Users\PC\AppData\Roaming\FNJD 2014-09-01 05:18 - 2014-09-01 05:18 - 0002086 _____ () C:\Users\PC\AppData\Roaming\HYWJ 2015-04-19 09:20 - 2015-04-19 09:20 - 0005872 _____ () C:\Users\PC\AppData\Roaming\l07ubCrqRyG 2014-10-30 11:04 - 2014-11-14 11:27 - 0000366 _____ () C:\Users\PC\AppData\Roaming\LiveSupport.exe_log.txt 2014-09-01 05:18 - 2014-09-01 05:18 - 0001248 _____ () C:\Users\PC\AppData\Roaming\NEEYW 2014-10-30 11:04 - 2014-11-14 11:27 - 0000092 _____ () C:\Users\PC\AppData\Roaming\regsvr32.exe_log.txt 2014-09-01 05:18 - 2014-09-01 05:18 - 0001248 _____ () C:\Users\PC\AppData\Roaming\SROATVC 2014-09-01 05:18 - 2014-09-01 05:18 - 0002086 _____ () C:\Users\PC\AppData\Roaming\TP 2015-01-08 11:16 - 2015-01-08 11:16 - 0016808 _____ () C:\Users\PC\AppData\Roaming\unins000.dat 2015-01-08 11:16 - 2015-01-08 11:16 - 0811218 _____ () C:\Users\PC\AppData\Roaming\unins000.exe 2014-10-15 15:46 - 2015-01-05 01:58 - 0000236 _____ () C:\Users\PC\AppData\Roaming\WB.CFG 2014-09-01 05:18 - 2014-09-01 05:18 - 0002086 _____ () C:\Users\PC\AppData\Roaming\XOTUV 2014-11-15 06:11 - 2014-11-15 06:11 - 0643948 _____ () C:\Users\PC\AppData\Local\1438516extsq.dll 2016-03-04 05:33 - 2016-03-04 05:33 - 0001456 _____ () C:\Users\PC\AppData\Local\Adobe Save for Web 13.0 Prefs 2014-10-17 05:15 - 2014-11-22 08:11 - 0000001 _____ () C:\Users\PC\AppData\Local\DSI.DAT 2014-11-22 08:11 - 2014-11-22 08:11 - 0022528 _____ () C:\Users\PC\AppData\Local\dsisetup34216162.exe 2014-11-15 06:11 - 2014-11-15 06:11 - 0000008 _____ () C:\Users\PC\AppData\Local\ext2.dat 2014-10-28 08:45 - 2014-10-28 08:45 - 0612252 _____ (CMI Limited) C:\Users\PC\AppData\Local\nsrB5D9.tmp 2014-10-22 10:51 - 2014-10-22 10:51 - 0612346 _____ (CMI Limited) C:\Users\PC\AppData\Local\nsrC68B.tmp 2014-10-18 01:36 - 2014-10-18 01:36 - 0627504 _____ (CMI Limited) C:\Users\PC\AppData\Local\nsvE4F5.tmp 2014-10-18 00:38 - 2014-10-18 00:38 - 0612065 _____ (CMI Limited) C:\Users\PC\AppData\Local\nszBCFB.tmp 2014-10-15 15:16 - 2014-10-16 08:42 - 0000003 _____ () C:\Users\PC\AppData\Local\proxy.log 2014-10-15 18:00 - 2014-11-14 11:26 - 0000020 _____ () C:\ProgramData\bc.ini 2014-12-24 21:31 - 2014-12-24 21:31 - 0005045 _____ () C:\ProgramData\wmzddnmb.cix Alguns arquivos em TEMP: ==================== C:\Users\PC\AppData\Local\Temp\1467901807.exe C:\Users\PC\AppData\Local\Temp\ICReinstall_CorelDRAW_X8_32_64_Bits_Ativador_e_Serial.exe C:\Users\PC\AppData\Local\Temp\Uninstall.exe ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-07-18 08:59 ==================== Fim de FRST.txt ============================