Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 31-08-2016 Executado por Pedro (administrador) em PEDRO-PC (12-09-2016 11:19:49) Executando a partir de C:\Users\Pedro\Downloads Perfis Carregados: Pedro (Perfis Disponíveis: Pedro) Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe () F:\Program Files\MSUser.Default\Help_3\CfHelp33.exe () F:\Program Files\MSUser.Default\Help_4\CfHelp44.exe () F:\Program Files\MSUser.Default\Help_5\CfHelp55.exe () F:\Program Files\MSUser.Default\Help_6\CfHelp66.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe () C:\Program Files (x86)\SoSoIm_3\SoSoIm3.exe () C:\Program Files (x86)\SoSoIm_4\SoSoIm4.exe () C:\Program Files (x86)\SoSoIm_5\SoSoIm5.exe () C:\Program Files (x86)\SoSoIm_6\SoSoIm6.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wusa.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13513288 2013-03-29] (Realtek Semiconductor) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1841088 2016-09-01] (NVIDIA Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9107616 2016-09-12] (AVAST Software) HKU\S-1-5-21-1520822564-1649714813-1416854-1000\...\Run: [ASRockOCTuner] => [X] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-09-12] (AVAST Software) GroupPolicy: Restrição - Chrome <======= ATENÇÃO ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.15.1 Tcpip\..\Interfaces\{80EB110B-887B-4F8D-8F97-35E840BA81BF}: [DhcpNameServer] 192.168.15.1 Internet Explorer: ================== BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-09-12] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-08-25] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-25] (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-09-12] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2016-08-25] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-25] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-25] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-25] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-25] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-25] (Microsoft Corporation) FireFox: ======== FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-09-12] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-25] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-25] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-25] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-12] (Google Inc.) Chrome: ======= CHR HomePage: ChromeDefaultData -> hxxp://www.google.com.br/ CHR StartupUrls: ChromeDefaultData -> "hxxp://www.google.com.br/","hxxp://facebook.com/","hxxp://mail.google.com/" CHR Profile: C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData CHR Extension: (Google Apresentações) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-12] CHR Extension: (Google Docs) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-12] CHR Extension: (Google Drive) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-12] CHR Extension: (YouTube) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-12] CHR Extension: (Adblock Plus) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-09-12] CHR Extension: (Planilhas do Google) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-12] CHR Extension: (Documentos Google off-line) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-12] CHR Extension: (Uma Jornada pela Terra-média) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gjgkjeheegjnnmheaflhdocglkiegoni [2016-09-12] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-12] CHR Extension: (Gmail) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-12] CHR Extension: (Chrome Media Router) - C:\Users\Pedro\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-12] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-09-12] (AVAST Software) R2 CfHelper33; F:\Program Files\MSUser.Default\Help_3\CfHelp33.exe [190980 2016-09-12] () [Arquivo não assinado] R2 CfHelper44; F:\Program Files\MSUser.Default\Help_4\CfHelp44.exe [190980 2016-09-12] () [Arquivo não assinado] R2 CfHelper55; F:\Program Files\MSUser.Default\Help_5\CfHelp55.exe [190980 2016-09-12] () [Arquivo não assinado] R2 CfHelper66; F:\Program Files\MSUser.Default\Help_6\CfHelp66.exe [190980 2016-09-12] () [Arquivo não assinado] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2980040 2016-09-01] (Microsoft Corporation) R2 JoropygrosakDebuger; C:\Program Files (x86)\Chwuward\clhBuilder.dll [301568 2016-09-12] () [Arquivo não assinado] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [457152 2016-09-01] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [457152 2016-09-01] (NVIDIA Corporation) R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-09-01] (NVIDIA Corporation) R2 SoSoIm3; C:\Program Files (x86)\SoSoIm_3\SoSoIm3.exe [190980 2016-09-12] () [Arquivo não assinado] R2 SoSoIm4; C:\Program Files (x86)\SoSoIm_4\SoSoIm4.exe [190980 2016-09-12] () [Arquivo não assinado] R2 SoSoIm5; C:\Program Files (x86)\SoSoIm_5\SoSoIm5.exe [190980 2016-09-12] () [Arquivo não assinado] R2 SoSoIm6; C:\Program Files (x86)\SoSoIm_6\SoSoIm6.exe [190980 2016-09-12] () [Arquivo não assinado] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2016-06-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 AsrVDrive; C:\Windows\System32\DRIVERS\AsrVDrive.sys [23048 2015-02-03] (ASRock Inc.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-12] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-12] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-12] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-12] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-09-12] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-09-12] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-12] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-09-12] (AVAST Software) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [129224 2013-07-18] (Qualcomm Atheros Co., Ltd.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46016 2016-09-01] (NVIDIA Corporation) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16056 2016-09-12] (SlimWare Utilities, Inc.) S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-09-12 11:19 - 2016-09-12 11:20 - 00013073 _____ C:\Users\Pedro\Downloads\FRST.txt 2016-09-12 11:19 - 2016-09-12 11:19 - 02397696 _____ (Farbar) C:\Users\Pedro\Downloads\FRST64.exe 2016-09-12 11:19 - 2016-09-12 11:19 - 01747968 _____ (Farbar) C:\Users\Pedro\Downloads\FRST.exe 2016-09-12 11:19 - 2016-09-12 11:19 - 00000000 ____D C:\FRST 2016-09-12 11:17 - 2016-09-12 11:17 - 01034556 _____ C:\Users\Pedro\Downloads\Windows6.1-KB2999226-x64.msu 2016-09-12 11:17 - 2016-09-12 11:17 - 00000000 ____D C:\4cf71531b195a49eee2bcf8d92 2016-09-12 11:07 - 2016-09-12 11:08 - 13969576 _____ (Microsoft Corporation) C:\Users\Pedro\Downloads\vc_redist.x86.exe 2016-09-12 11:05 - 2016-09-12 11:06 - 14749120 _____ (Microsoft Corporation) C:\Users\Pedro\Downloads\vc_redist.x64 (1).exe 2016-09-12 11:04 - 2016-09-12 11:17 - 00000000 ___HT C:\Windows\wusa.lock 2016-09-12 11:04 - 2016-09-12 11:04 - 00000000 ____D C:\c4491043a76710a6ee055e199a 2016-09-12 10:54 - 2016-09-12 10:54 - 00000000 ____D C:\Windows\system32\appmgmt 2016-09-12 10:38 - 2016-08-25 16:50 - 00133056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2016-09-12 10:34 - 2016-09-12 10:34 - 14572000 _____ (Microsoft Corporation) C:\Users\Pedro\Downloads\vc_redist.x64.exe 2016-09-12 10:33 - 2016-09-12 10:33 - 07194312 _____ (Microsoft Corporation) C:\Users\Pedro\Downloads\vcredist_x64.exe 2016-09-12 10:25 - 2016-09-12 10:35 - 00000000 ____D C:\e6c384d04d8773fc8d0ba23a25d353 2016-09-12 10:25 - 2016-08-25 19:28 - 40070200 _____ C:\Windows\system32\nvcompiler.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 35182648 _____ C:\Windows\SysWOW64\nvcompiler.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 34801088 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 28207672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 17463088 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 17263792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 14352816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 14093368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2016-09-12 10:25 - 2016-08-25 19:28 - 10865704 _____ C:\Windows\system32\nvptxJitCompiler.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 10737632 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 10278080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 09086856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 08875408 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 08680696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 03594808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 03160512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 01920960 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437270.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437270.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 01019960 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00956352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00941504 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00892864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00686896 _____ C:\Windows\system32\nvfatbinaryLoader.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00575984 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00493608 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00408784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00223304 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2016-09-12 10:25 - 2016-08-25 19:28 - 00181488 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00159352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00153368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00131536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00054728 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2016-09-12 10:25 - 2016-08-25 19:28 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json 2016-09-12 10:25 - 2016-08-25 19:28 - 00000669 _____ C:\Windows\system32\nv-vk64.json 2016-09-12 10:24 - 2016-09-12 10:24 - 00995880 _____ (Microsoft Corporation) C:\Users\Pedro\Downloads\vs2015.3.exe 2016-09-12 10:18 - 2016-09-12 10:23 - 363556792 _____ (NVIDIA Corporation) C:\Users\Pedro\Downloads\372.70-desktop-win8-win7-64bit-international-whql.exe 2016-09-12 10:14 - 2016-09-12 10:52 - 00000000 ____D C:\Users\Pedro\AppData\Local\NVIDIA Corporation 2016-09-12 10:14 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2016-09-12 10:14 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2016-09-12 10:14 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2016-09-12 10:14 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2016-09-12 10:14 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2016-09-12 10:14 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2016-09-12 10:13 - 2016-09-12 10:13 - 00003832 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-09-12 10:13 - 2016-09-12 10:13 - 00003832 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-09-12 10:13 - 2016-09-12 10:13 - 00003782 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-09-12 10:13 - 2016-09-12 10:13 - 00003770 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-09-12 10:13 - 2016-09-12 10:13 - 00003534 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-09-12 10:13 - 2016-09-01 04:26 - 01841088 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 01448384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 00104384 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 00094144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2016-09-12 10:13 - 2016-09-01 04:26 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2016-09-12 10:13 - 2016-09-01 03:15 - 00001951 _____ C:\Windows\NvContainerRecovery.bat 2016-09-12 10:12 - 2016-09-12 10:12 - 68843560 _____ (NVIDIA Corporation) C:\Users\Pedro\Downloads\GeForce_Experience_v3.0.5.18.exe 2016-09-12 10:00 - 2016-09-12 10:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-09-12 09:58 - 2016-09-12 09:58 - 00000000 _____ C:\Windows\SysWOW64\last.dump 2016-09-12 09:56 - 2016-09-12 09:56 - 02538963 _____ C:\Users\Pedro\Downloads\Ativador Windows 7 - Spike Tutoriais.rar 2016-09-12 09:53 - 2016-09-12 09:53 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\AVAST Software 2016-09-12 09:53 - 2016-09-12 09:53 - 00000000 ____D C:\Users\Pedro\AppData\Local\CEF 2016-09-12 09:53 - 2016-09-12 09:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2016-09-12 09:52 - 2016-09-12 09:52 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2016-09-12 09:52 - 2016-09-12 09:52 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2016-09-12 09:52 - 2016-09-12 09:52 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-09-12 09:52 - 2016-09-12 09:52 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-09-12 09:52 - 2016-09-12 09:52 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-09-12 09:52 - 2016-09-12 09:52 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-09-12 09:51 - 2016-09-12 09:51 - 00000000 ____D C:\Program Files\AVAST Software 2016-09-12 09:50 - 2016-09-12 09:50 - 06334848 _____ (AVAST Software) C:\Users\Pedro\Downloads\avast_free_antivirus_setup_online.exe 2016-09-12 09:50 - 2016-09-12 09:50 - 00002158 _____ C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-09-12 09:50 - 2016-09-12 09:50 - 00002102 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-09-12 09:50 - 2016-09-12 09:50 - 00002102 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-09-12 09:50 - 2016-09-12 09:50 - 00002102 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2016-09-12 09:50 - 2016-09-12 09:50 - 00001205 _____ C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ___RD C:\Users\Pedro\OneDrive 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\GRETECH 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive 2016-09-12 09:50 - 2016-09-12 09:50 - 00000000 ____D C:\c680c7cf84c647920c61b47b7e8535 2016-09-12 09:49 - 2016-09-12 09:49 - 00000000 ____D C:\Program Files (x86)\GRETECH 2016-09-12 09:48 - 2016-09-12 09:48 - 28492864 _____ (Gretech Corporation) C:\Users\Pedro\Downloads\GOMPLAYERGLOBALSETUP.EXE 2016-09-12 09:46 - 2016-09-12 10:39 - 00000000 ____D C:\Users\Pedro\AppData\Local\NVIDIA 2016-09-12 09:42 - 2016-09-12 11:10 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA 2016-09-12 09:42 - 2016-09-12 11:10 - 00000000 ____D C:\ProgramData\NVIDIA 2016-09-12 09:38 - 2016-09-12 09:38 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-09-12 09:37 - 2016-09-12 09:37 - 00002501 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002397 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002394 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002384 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002380 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2016-09-12 09:37 - 2016-09-12 09:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2016 2016-09-12 09:37 - 2016-06-29 18:44 - 00213952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2016-09-12 09:37 - 2016-06-29 18:44 - 00203320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2016-09-12 09:35 - 2016-09-12 11:08 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2016-09-12 09:35 - 2016-09-12 11:08 - 00000000 ____D C:\ProgramData\Package Cache 2016-09-12 09:35 - 2016-09-12 11:04 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft 2016-09-12 09:35 - 2016-09-12 11:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-09-12 09:35 - 2016-09-12 09:35 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2016-09-12 09:35 - 2016-08-25 19:28 - 19848080 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2016-09-12 09:35 - 2016-08-25 19:28 - 01588688 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2016-09-12 09:34 - 2016-08-25 19:28 - 03917512 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2016-09-12 09:34 - 2016-08-25 19:28 - 03456888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2016-09-12 09:34 - 2016-06-29 18:44 - 01922616 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436869.dll 2016-09-12 09:34 - 2016-06-29 18:44 - 01571776 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436869.dll 2016-09-12 09:32 - 2016-09-12 11:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-09-12 09:32 - 2016-09-12 09:32 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-09-12 05:32 - 2016-09-12 05:32 - 00000286 __RSH C:\Users\Pedro\ntuser.pol 2016-09-12 04:30 - 2016-09-12 10:00 - 00001844 __RSH C:\Users\Todos os Usuários\ntuser.pol 2016-09-12 04:30 - 2016-09-12 10:00 - 00001844 __RSH C:\ProgramData\ntuser.pol 2016-09-12 04:30 - 1999-12-31 20:00 - 00403560 _____ (NVIDIA Corporation) C:\Windows\system32\nvraiins.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00403560 _____ (NVIDIA Corporation) C:\Windows\system32\nvraidco.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00244328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor64.sys 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoPtb.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoIt.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoFr.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoEsm.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoEs.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00019048 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoDe.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoSv.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoRu.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoNo.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoNl.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoFi.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018536 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoDa.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018024 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoENU.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00018024 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoEng.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00016488 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoKo.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00016488 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoJa.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00015976 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoZht.dll 2016-09-12 04:30 - 1999-12-31 20:00 - 00015976 _____ (NVIDIA Corporation) C:\Windows\system32\NvRCoZhc.dll 2016-09-12 04:28 - 2016-09-12 11:10 - 00000046 _____ C:\Windows\Joberphlusisp 2016-09-12 04:28 - 2016-09-12 10:51 - 00000000 ____D C:\Program Files (x86)\Chwuward 2016-09-12 04:28 - 2016-09-12 10:48 - 00000000 ____D C:\Users\Pedro\AppData\Local\Drfege 2016-09-12 04:28 - 2016-09-12 09:50 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software 2016-09-12 04:28 - 2016-09-12 09:50 - 00000000 ____D C:\ProgramData\AVAST Software 2016-09-12 04:28 - 2016-09-12 04:29 - 00000000 ___HD C:\Program Files (x86)\SoSoIm_3 2016-09-12 04:28 - 2016-09-12 04:28 - 00008920 _____ C:\Windows\System32\Tasks\Joropygrosak Debuger 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ___HD C:\Program Files (x86)\SoSoIm_6 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ___HD C:\Program Files (x86)\SoSoIm_5 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ___HD C:\Program Files (x86)\SoSoIm_4 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ___HD C:\Program Files (x86)\7nna4r5v 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ___HD C:\Program Files (x86)\4w2e40w7 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ____D C:\Users\Todos os Usuários\Avira 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ____D C:\Users\Todos os Usuários\Avg 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ____D C:\ProgramData\Avira 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ____D C:\ProgramData\Avg 2016-09-12 04:28 - 2016-09-12 04:28 - 00000000 ____D C:\9bc66e1209d25a8661b08b9f 2016-09-12 04:27 - 2016-09-12 04:27 - 00000000 ____D C:\11331a37ba67a9fee7ee 2016-09-12 04:26 - 2016-09-12 04:26 - 03733552 _____ C:\Users\Pedro\Downloads\winrar-x64-54br.exe 2016-09-12 04:26 - 2016-09-12 04:26 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\WinRAR 2016-09-12 04:26 - 2016-09-12 04:26 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-09-12 04:26 - 2016-09-12 04:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-09-12 04:26 - 2016-09-12 04:26 - 00000000 ____D C:\Program Files\WinRAR 2016-09-12 04:25 - 2016-09-12 04:25 - 00000000 ____D C:\NVIDIA 2016-09-12 04:24 - 2016-09-12 04:24 - 03012444 _____ C:\Users\Pedro\Downloads\SlimDrivers 2.rar 2016-09-12 04:22 - 2016-09-12 10:52 - 00016056 _____ (SlimWare Utilities, Inc.) C:\Windows\system32\Drivers\SWDUMon.sys 2016-09-12 04:22 - 2016-09-12 04:22 - 00000000 ____D C:\Users\Todos os Usuários\SlimWare Utilities, Inc 2016-09-12 04:22 - 2016-09-12 04:22 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2016-09-12 04:22 - 2016-09-12 04:22 - 00000000 ____D C:\Users\Pedro\AppData\Local\SlimWare Utilities Inc 2016-09-12 04:22 - 2016-09-12 04:22 - 00000000 ____D C:\ProgramData\SlimWare Utilities, Inc 2016-09-12 04:21 - 2016-09-12 04:21 - 01609960 _____ (File ) C:\Users\Pedro\Downloads\Baixaki_slim-drivers.exe 2016-09-12 04:21 - 2016-09-12 04:21 - 01076776 _____ (Slimware Utilities Holdings, Inc.) C:\Users\Pedro\Downloads\Baixaki_slim-drivers [1].exe 2016-09-12 04:19 - 2008-08-21 08:15 - 00002306 _____ C:\Windows\system32\nvsmb.nvu 2016-09-12 04:19 - 2008-08-20 11:35 - 00501280 _____ (NVIDIA Corporation) C:\Windows\system32\nvusmb.exe 2016-09-12 04:19 - 2008-08-20 11:35 - 00135680 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMB.DLL 2016-09-12 04:18 - 2016-09-12 10:39 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA Corporation 2016-09-12 04:18 - 2016-09-12 10:39 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-09-12 04:18 - 2016-09-12 10:39 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-09-12 04:18 - 2016-09-12 10:37 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2016-09-12 04:18 - 2016-08-25 17:10 - 06385720 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 02475064 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 01362368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2016-09-12 04:18 - 2016-08-25 17:10 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 00393784 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2016-09-12 04:18 - 2016-08-25 17:10 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2016-09-12 04:18 - 2016-08-22 11:18 - 07320235 _____ C:\Windows\system32\nvcoproc.bin 2016-09-12 04:17 - 2016-08-25 19:28 - 00039731 _____ C:\Windows\system32\nvinfo.pb 2016-09-12 04:17 - 2016-05-20 09:01 - 01922496 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436822.dll 2016-09-12 04:17 - 2016-05-20 09:01 - 01573432 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436822.dll 2016-09-12 04:09 - 2016-09-12 04:09 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\Innovative Solutions 2016-09-12 04:09 - 2016-09-12 04:09 - 00000000 ____D C:\Users\Pedro\AppData\Local\Innovative Solutions 2016-09-12 04:08 - 2016-09-12 04:08 - 05742600 _____ (Innovative Solutions ) C:\Users\Pedro\Downloads\drivermax.exe 2016-09-12 04:05 - 2016-09-12 10:10 - 00002297 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-09-12 04:05 - 2016-09-12 04:05 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-09-12 04:05 - 2016-09-12 04:05 - 00000000 ____D C:\Users\Pedro\AppData\Local\Google 2016-09-12 04:05 - 2016-09-12 04:05 - 00000000 ____D C:\Program Files\Realtek 2016-09-12 04:05 - 2013-03-29 21:42 - 03379272 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-09-12 04:05 - 2013-03-29 17:10 - 00449481 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-09-12 04:05 - 2013-03-27 16:57 - 00135240 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-09-12 04:05 - 2013-03-26 17:06 - 02797128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-09-12 04:05 - 2013-03-26 15:40 - 03693128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2016-09-12 04:05 - 2013-03-26 14:38 - 01659464 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-09-12 04:05 - 2013-03-25 17:32 - 03180264 _____ C:\Windows\system32\Drivers\rtvienna.dat 2016-09-12 04:05 - 2013-03-20 13:16 - 02102040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2016-09-12 04:05 - 2013-03-12 18:16 - 00613448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2016-09-12 04:05 - 2013-02-20 18:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-09-12 04:05 - 2013-02-19 18:52 - 00991816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-09-12 04:05 - 2013-01-11 16:27 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2016-09-12 04:05 - 2013-01-11 16:27 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2016-09-12 04:05 - 2012-06-08 16:23 - 00083072 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2016-09-12 04:05 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-09-12 04:05 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-09-12 04:05 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-09-12 04:05 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-09-12 04:05 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-09-12 04:05 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-09-12 04:05 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-09-12 04:05 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-09-12 04:05 - 2009-11-18 07:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2016-09-12 04:04 - 2016-09-12 11:11 - 00001062 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-09-12 04:04 - 2016-09-12 11:09 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-09-12 04:04 - 2016-09-12 04:06 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-09-12 04:04 - 2016-09-12 04:04 - 00004062 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-09-12 04:04 - 2016-09-12 04:04 - 00003810 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-09-12 04:04 - 2016-09-12 04:04 - 00000000 ____D C:\Users\Pedro\AppData\Local\Deployment 2016-09-12 04:04 - 2016-09-12 04:04 - 00000000 ____D C:\Users\Pedro\AppData\Local\Apps\2.0 2016-09-12 04:04 - 2016-09-12 04:04 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-09-12 04:04 - 2016-09-12 04:04 - 00000000 ____D C:\Program Files (x86)\Google 2016-09-12 04:04 - 2013-03-26 17:04 - 02734624 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-09-12 04:04 - 2013-03-23 03:43 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-09-12 04:04 - 2013-03-20 13:16 - 00910104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2016-09-12 04:04 - 2013-02-28 13:10 - 02032408 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2016-09-12 04:04 - 2013-01-16 16:02 - 02079816 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2016-09-12 04:04 - 2012-06-20 17:26 - 00110592 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2016-09-12 04:04 - 2012-06-08 16:21 - 00897152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll 2016-09-12 04:04 - 2012-06-08 16:21 - 00753280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll 2016-09-12 04:04 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-09-12 04:04 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-09-12 04:02 - 2016-09-12 09:50 - 00110176 _____ C:\Users\Pedro\AppData\Local\GDIPFONTCACHEV1.DAT 2016-09-12 04:01 - 2016-09-12 10:49 - 00051073 _____ C:\Windows\cFosSpeed_Setup_Log.txt 2016-09-12 04:01 - 2016-09-12 04:01 - 00000000 ____D C:\Program Files\ASRock 2016-09-12 03:57 - 2016-09-12 10:50 - 00000000 ____D C:\Program Files (x86)\ASRock Utility 2016-09-12 03:57 - 2015-02-03 20:28 - 00023048 _____ (ASRock Inc.) C:\Windows\system32\Drivers\AsrVDrive.sys 2016-09-12 03:54 - 2016-09-12 10:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility 2016-09-12 03:54 - 2016-09-12 10:53 - 00000000 ____D C:\Program Files\ASRock Utility 2016-09-12 03:53 - 2010-03-03 16:36 - 00657512 _____ (NVIDIA Corporation) C:\Windows\system32\NVUNINST.EXE 2016-09-12 03:49 - 2016-09-12 04:04 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-09-12 03:49 - 2016-09-12 03:49 - 00000000 ____D C:\Windows\SysWOW64\Atheros_L1e 2016-09-12 03:48 - 2016-09-12 03:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2016-09-12 03:37 - 2016-09-12 03:37 - 00001385 _____ C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-09-12 03:37 - 2016-09-12 03:37 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\Adobe 2016-09-12 03:36 - 2016-09-12 09:50 - 00000000 ____D C:\Users\Pedro 2016-09-12 03:36 - 2016-09-12 03:36 - 00000020 ___SH C:\Users\Pedro\ntuser.ini 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Modelos 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Meus documentos 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Menu Iniciar 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Documents\Minhas músicas 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Documents\Minhas imagens 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Documents\Meus vídeos 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Dados de aplicativos 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Configurações locais 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\AppData\Local\Histórico 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\AppData\Local\Dados de aplicativos 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Ambiente de rede 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 _SHDL C:\Users\Pedro\Ambiente de impressão 2016-09-12 03:36 - 2016-09-12 03:36 - 00000000 ____D C:\Users\Pedro\AppData\Local\VirtualStore 2016-09-12 03:36 - 2011-04-12 10:20 - 00000000 ____D C:\Users\Pedro\AppData\Roaming\Media Center Programs 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Usuário Padrão 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Todos os Usuários 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Modelos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Meus documentos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Configurações locais 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Ambiente de rede 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Modelos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Favoritos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Documentos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2016-09-12 03:18 - 2016-09-12 03:18 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2016-09-12 02:16 - 2016-09-12 02:18 - 00000000 ____D C:\Users\Todos os Usuários\TEMP 2016-09-12 02:16 - 2016-09-12 02:18 - 00000000 ____D C:\ProgramData\TEMP 2016-09-12 02:07 - 2016-09-12 02:07 - 00000000 ____D C:\Windows\CSC 2016-09-12 01:58 - 2016-09-12 01:58 - 00000000 ____D C:\Windows.old 2016-09-07 12:07 - 2016-09-07 12:27 - 00000000 ____D C:\Games 2016-09-06 16:18 - 2016-09-12 10:39 - 00000000 ____D C:\temp 2016-09-05 16:03 - 2016-09-05 16:03 - 00000000 ____D C:\inetpub 2016-09-05 01:04 - 2016-09-05 01:48 - 00000000 ____D C:\ESD 2016-09-05 01:03 - 2016-09-05 01:03 - 00000000 ___HD C:\$Windows.~WS 2016-09-04 23:18 - 2016-09-05 00:01 - 00000000 _____ C:\hsrv.txt 2016-09-04 20:27 - 2016-09-04 20:27 - 00000000 ____D C:\2b7d8bc6cb19a8a35ed09778 2016-09-03 03:01 - 2016-09-03 03:01 - 00000000 __RHD C:\MSOCache 2016-09-03 02:36 - 2016-09-03 02:36 - 00000000 _SHDL C:\Arquivos de Programas 2016-09-02 19:47 - 2016-09-02 19:47 - 00000000 ____D C:\2-click run 2016-09-02 18:58 - 2016-09-02 18:58 - 00000000 ____D C:\Riot Games ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-09-12 11:18 - 2009-07-14 00:45 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-09-12 11:18 - 2009-07-14 00:45 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-09-12 11:16 - 2011-04-12 09:40 - 00654272 _____ C:\Windows\system32\prfh0416.dat 2016-09-12 11:16 - 2011-04-12 09:40 - 00124724 _____ C:\Windows\system32\prfc0416.dat 2016-09-12 11:16 - 2009-07-14 01:13 - 01491932 _____ C:\Windows\system32\PerfStringBackup.INI 2016-09-12 11:16 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\inf 2016-09-12 11:10 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-09-12 09:59 - 2009-07-14 00:45 - 00433104 _____ C:\Windows\system32\FNTCACHE.DAT 2016-09-12 09:35 - 2009-07-13 23:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-09-12 04:30 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\GroupPolicy 2016-09-12 04:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\Help 2016-09-12 03:52 - 2009-07-13 23:20 - 00000000 __RHD C:\Users\Public\Libraries 2016-09-12 03:36 - 2009-07-14 00:45 - 00000000 ____D C:\Windows\Setup 2016-09-12 03:18 - 2009-07-13 23:20 - 00000000 ____D C:\Program Files\Windows NT 2016-09-12 02:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache 2016-09-12 02:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\oobe 2016-09-12 02:15 - 2016-06-13 22:46 - 00000000 ____D C:\Windows\Panther 2016-09-12 02:05 - 2009-07-14 01:32 - 00032768 _____ C:\Windows\system32\config\BCD-Template Alguns arquivos em TEMP: ==================== C:\Users\Pedro\AppData\Local\Temp\ICReinstall_chrome.exe C:\Users\Pedro\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Pedro\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2016-06-13 22:47 ==================== Fim de FRST.txt ============================