Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 17-12-2016 Executado por User (administrador) em USER-PC (17-12-2016 21:35:50) Executando a partir de C:\Users\User\Desktop Perfis Carregados: User (Perfis Disponíveis: User) Platform: Windows 7 Home Basic Service Pack 1 (X64) Idioma: Português (Brasil) Internet Explorer Versão 9 (Navegador padrão: IE) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Atheros) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Ath_CoexAgent.exe (Atheros Commnucations) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Dell, Inc.) C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe (SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe (Intel Corporation) C:\WINDOWS\System32\igfxtray.exe (Intel Corporation) C:\WINDOWS\System32\hkcmd.exe (Intel Corporation) C:\WINDOWS\System32\igfxpers.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe () C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe (Atheros Communications) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AthBtTray.exe () C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe (Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe (Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe (CyberLink Corp.) C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe (Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe () C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe () C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_228_ActiveX.exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\BingBar.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\BingApp.exe ==================== Registro (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [608112 2011-03-29] (Alps Electric Co., Ltd.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2011-05-27] (IDT, Inc.) HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3668336 2011-03-24] (Dell Inc.) HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [627360 2011-05-20] (Atheros Communications) HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AthBtTray.exe [379552 2011-05-20] (Atheros Commnucations) HKLM\...\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2190704 2011-11-03] () HKLM-x32\...\Run: [RemoteControl9] => C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2010-10-01] (CyberLink Corp.) HKLM-x32\...\Run: [PDVD9LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe [50472 2010-09-17] (CyberLink Corp.) HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [503942 2011-04-13] (Creative Technology Ltd) HKLM-x32\...\Run: [Dell DataSafe Online] => C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe [1117528 2010-08-25] (Dell, Inc.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions) HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] () HKLM-x32\...\Run: [AccuWeatherWidget] => C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe [957440 2011-11-03] () HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 201.21.192.166 201.21.192.161 Tcpip\..\Interfaces\{4F4B78FB-5EF2-4E22-B92F-811128805AFE}: [DhcpNameServer] 201.21.192.166 201.21.192.161 Tcpip\..\Interfaces\{EEEA3748-54F7-4CC1-8192-F5A2D1CBAA0E}: [DhcpNameServer] 10.42.0.251 10.42.0.252 Internet Explorer: ================== HKU\S-1-5-21-2276017935-1421356319-97937187-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com.br/ HKU\S-1-5-21-2276017935-1421356319-97937187-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/USCON/5 SearchScopes: HKLM -> DefaultScope {F08ED291-C0FB-45AC-96E6-7B19D440C44B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM -> {F08ED291-C0FB-45AC-96E6-7B19D440C44B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {F08ED291-C0FB-45AC-96E6-7B19D440C44B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {F08ED291-C0FB-45AC-96E6-7B19D440C44B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2276017935-1421356319-97937187-1000 -> DefaultScope {F08ED291-C0FB-45AC-96E6-7B19D440C44B} URL = BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15] (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2011-05-20] (Atheros Commnucations) BHO-x32: Auxiliar de Conexão do Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-05-20] (Atheros) [Arquivo não assinado] R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [80032 2011-05-20] (Atheros Commnucations) [Arquivo não assinado] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-12-17 21:35 - 2016-12-17 21:36 - 00011170 _____ C:\Users\User\Desktop\FRST.txt 2016-12-17 21:35 - 2016-12-17 21:35 - 02420224 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2016-12-17 21:35 - 2016-12-17 21:35 - 00000000 ____D C:\FRST 2016-12-17 21:34 - 2016-12-17 21:34 - 01762304 _____ (Farbar) C:\Users\User\Desktop\FRST.exe 2016-12-17 21:09 - 2016-12-17 21:09 - 03319424 _____ C:\Users\User\Desktop\Windows6.1-KB3138612-x64.msu 2016-12-17 21:09 - 2016-12-17 21:09 - 00000000 ___HT C:\Windows\wusa.lock 2016-12-17 21:09 - 2016-12-17 21:09 - 00000000 ____D C:\ac2d6d286b6ef84f4b6b35e3b6 2016-12-17 21:06 - 2016-12-17 21:06 - 00614400 _____ C:\Windows\AutoKMS.exe 2016-12-17 21:06 - 2016-12-17 21:06 - 00002430 _____ C:\Windows\System32\Tasks\AutoKMS 2016-12-17 21:06 - 2016-12-17 21:06 - 00000198 _____ C:\Windows\Tasks\AutoKMS.job 2016-12-17 21:06 - 2016-12-17 21:06 - 00000135 _____ C:\Windows\AutoKMS.ini 2016-12-17 21:02 - 2016-12-17 21:02 - 00000000 ____D C:\Users\User\AppData\LocalLow\Adobe 2016-12-17 21:02 - 2016-12-17 21:02 - 00000000 ____D C:\Users\User\AppData\Local\Adobe 2016-12-17 20:54 - 2016-12-17 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2016-12-17 20:54 - 2016-12-17 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-12-17 20:53 - 2016-12-17 20:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2016-12-17 20:53 - 2016-12-17 20:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework 2016-12-17 20:52 - 2016-12-17 20:52 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2016-12-17 20:51 - 2016-12-17 20:51 - 00000000 ____D C:\Program Files\Microsoft Office 2016-12-17 20:51 - 2016-12-17 20:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2016-12-17 20:49 - 2016-12-17 20:56 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2016-12-17 20:49 - 2016-12-17 20:53 - 00000000 ____D C:\Windows\SHELLNEW 2016-12-17 20:49 - 2016-12-17 20:49 - 00000000 __RHD C:\MSOCache 2016-12-17 20:49 - 2016-12-17 20:49 - 00000000 ____D C:\Users\User\AppData\Local\Microsoft Help 2016-12-17 20:49 - 2016-12-17 20:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2016-12-17 20:46 - 2016-12-17 20:46 - 00000000 ___RD C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2016-12-17 20:39 - 2016-12-17 20:41 - 15083200 _____ (Microsoft Corporation) C:\Users\User\Downloads\MSEInstall.exe 2016-12-17 20:38 - 2016-12-17 21:02 - 00000000 ____D C:\Users\User\AppData\Roaming\Adobe 2016-12-17 20:33 - 2016-12-17 20:33 - 00000000 ____D C:\Users\User\AppData\Roaming\WinRAR 2016-12-17 20:33 - 2016-12-17 20:33 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-12-17 20:33 - 2016-12-17 20:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-12-17 20:33 - 2016-12-17 20:33 - 00000000 ____D C:\Program Files (x86)\WinRAR 2016-12-17 20:28 - 2012-09-09 20:01 - 00022928 _____ C:\Users\User\Downloads\27186.torrent 2016-12-17 20:26 - 2016-12-17 20:28 - 00000000 ____D C:\Users\User\Downloads\MOHAA 2016-12-17 20:23 - 2016-12-17 20:26 - 00000000 ____D C:\Users\User\Downloads\Call of duty 4 [PC-DVD] [English] 2016-12-17 20:23 - 2014-07-08 01:14 - 155846056 _____ C:\Users\User\Downloads\Vedio_Intel_W84_X00_A01_Setup-5PFY2_ZPE.exe 2016-12-17 20:23 - 2014-07-08 00:51 - 115545176 _____ C:\Users\User\Downloads\Vedio_Intel_W82_X00_A01_Setup-9PK3F_ZPE.exe 2016-12-17 20:23 - 2014-04-11 00:33 - 00903288 _____ C:\Users\User\Downloads\yet_another_cleaner_mat (3).exe 2016-12-17 20:23 - 2014-04-11 00:21 - 00903288 _____ C:\Users\User\Downloads\yet_another_cleaner_mat (2).exe 2016-12-17 20:23 - 2014-04-11 00:21 - 00903288 _____ C:\Users\User\Downloads\yet_another_cleaner_mat (1).exe 2016-12-17 20:23 - 2014-04-10 23:29 - 00903288 _____ C:\Users\User\Downloads\yet_another_cleaner_mat.exe 2016-12-17 20:23 - 2013-02-15 21:18 - 03012475 _____ C:\Users\User\Downloads\Vou gozar ddd (1).wmv 2016-12-17 20:23 - 2012-08-28 21:18 - 06225920 _____ C:\Users\User\Downloads\Vídeo0037 (1).3gp 2016-12-17 20:23 - 2012-08-28 21:16 - 06225920 _____ C:\Users\User\Downloads\Vídeo0037.3gp 2016-12-17 20:23 - 2012-07-26 23:32 - 01517376 _____ C:\Users\User\Downloads\WinRAR-Baixaki-32bit.exe 2016-12-17 20:23 - 2012-06-20 08:38 - 03012475 _____ C:\Users\User\Downloads\Vou gozar ddd.wmv 2016-12-17 20:23 - 2012-06-19 23:55 - 01021840 _____ (BitTorrent, Inc.) C:\Users\User\Downloads\uTorrent.exe 2016-12-17 20:23 - 2012-06-19 22:39 - 01289576 _____ (Microsoft Corporation) C:\Users\User\Downloads\wlsetup-web.exe 2016-12-17 20:22 - 2015-01-12 21:44 - 00013725 _____ C:\Users\User\Downloads\tabela de preu00E7os Maru00E7o.xlsx 2016-12-17 20:22 - 2015-01-06 20:29 - 01109213 _____ C:\Users\User\Downloads\atualizaonoprojetodoclosetedormitrio.zip 2016-12-17 20:22 - 2014-10-25 17:43 - 00436504 _____ (IBM Corp.) C:\Users\User\Downloads\RapportSetup (4).exe 2016-12-17 20:22 - 2014-10-25 17:42 - 00436504 _____ (IBM Corp.) C:\Users\User\Downloads\RapportSetup (3).exe 2016-12-17 20:22 - 2014-10-02 20:36 - 00013725 _____ C:\Users\User\Downloads\tabela de preços Março (7).xlsx 2016-12-17 20:22 - 2014-09-16 21:06 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (6).xlsx 2016-12-17 20:22 - 2014-07-25 15:59 - 00918952 _____ (Oracle Corporation) C:\Users\User\Downloads\chromeinstall-7u65.exe 2016-12-17 20:22 - 2014-07-08 20:27 - 02306095 _____ C:\Users\User\Downloads\gldirect5_opensource (2).zip 2016-12-17 20:22 - 2014-07-08 02:07 - 04812672 _____ (Piriform Ltd) C:\Users\User\Downloads\ccsetup415.exe 2016-12-17 20:22 - 2014-07-08 01:58 - 07995392 _____ C:\Users\User\Downloads\glview417.exe 2016-12-17 20:22 - 2014-07-08 01:52 - 02306095 _____ C:\Users\User\Downloads\gldirect5_opensource (1).zip 2016-12-17 20:22 - 2014-07-08 00:48 - 01496480 _____ ( ) C:\Users\User\Downloads\cpu-z_1.69-setup-en.exe 2016-12-17 20:22 - 2014-07-08 00:46 - 00417824 _____ () C:\Users\User\Downloads\DellSystemDetect.exe 2016-12-17 20:22 - 2014-07-08 00:32 - 02306095 _____ C:\Users\User\Downloads\gldirect5_opensource.zip 2016-12-17 20:22 - 2014-07-05 00:18 - 00202638 _____ C:\Users\User\Downloads\Forno-Eletrico-44-Litros-Inox-Embutir-Fit-Line-1839-Fischer[1] 2016-12-17 20:22 - 2014-07-05 00:17 - 00087629 _____ C:\Users\User\Downloads\p[2] 2016-12-17 20:22 - 2014-07-04 00:32 - 00087629 _____ C:\Users\User\Downloads\p[1] 2016-12-17 20:22 - 2014-06-27 22:41 - 00297240 _____ (Trusteer Ltd.) C:\Users\User\Downloads\RapportSetup (2).exe 2016-12-17 20:22 - 2014-06-27 22:34 - 00297240 _____ (Trusteer Ltd.) C:\Users\User\Downloads\RapportSetup.exe 2016-12-17 20:22 - 2014-06-27 22:34 - 00297240 _____ (Trusteer Ltd.) C:\Users\User\Downloads\RapportSetup (1).exe 2016-12-17 20:22 - 2014-06-22 23:15 - 04487240 _____ (AVG Technologies) C:\Users\User\Downloads\avg_isct_stb_all_2014_4592.exe 2016-12-17 20:22 - 2014-06-16 19:14 - 00918952 _____ (Oracle Corporation) C:\Users\User\Downloads\chromeinstall-7u60.exe 2016-12-17 20:22 - 2014-06-12 22:18 - 00578401 _____ C:\Users\User\Downloads\Minha_Fatura_MC_Gold_20-06-2014.pdf 2016-12-17 20:22 - 2014-06-12 22:15 - 00402679 _____ C:\Users\User\Downloads\digitalizar0054.pdf 2016-12-17 20:22 - 2014-06-02 22:44 - 00155497 _____ C:\Users\User\Downloads\ESAAL Esquadrias de Alumínio - Orçamento nº 2425.pdf 2016-12-17 20:22 - 2014-06-02 22:44 - 00155497 _____ C:\Users\User\Downloads\ESAAL Esquadrias de Alumínio - Orçamento nº 2425 (1).pdf 2016-12-17 20:22 - 2014-05-10 13:00 - 00521609 _____ C:\Users\User\Downloads\Minha_Fatura_MC_Gold_20-05-2014.pdf 2016-12-17 20:22 - 2014-05-07 18:12 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (5).xlsx 2016-12-17 20:22 - 2014-05-07 18:11 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (4).xlsx 2016-12-17 20:22 - 2014-05-07 18:04 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (3).xlsx 2016-12-17 20:22 - 2014-04-07 22:37 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março.xlsx 2016-12-17 20:22 - 2014-04-07 22:37 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (2).xlsx 2016-12-17 20:22 - 2014-04-07 22:37 - 00013941 _____ C:\Users\User\Downloads\tabela de preços Março (1).xlsx 2016-12-17 20:22 - 2014-04-05 13:44 - 00013897 _____ C:\Users\User\Downloads\tabela de preços (1).xlsx 2016-12-17 20:22 - 2014-03-19 21:55 - 00053646 _____ C:\Users\User\Downloads\Boleto_Março_2014_1216.pdf 2016-12-17 20:22 - 2014-02-13 15:23 - 01659552 _____ (Skype Technologies S.A.) C:\Users\User\Downloads\SkypeSetup.exe 2016-12-17 20:22 - 2014-01-08 20:01 - 00013897 _____ C:\Users\User\Downloads\tabela de preços.xlsx 2016-12-17 20:22 - 2013-11-16 11:26 - 00667656 _____ C:\Users\User\Downloads\Fotinhos (1).zip 2016-12-17 20:22 - 2013-11-16 11:24 - 00667656 _____ C:\Users\User\Downloads\Fotinhos.zip 2016-12-17 20:22 - 2013-10-20 22:39 - 00053828 _____ C:\Users\User\Downloads\Boleto_Outubro_2013_1216.pdf 2016-12-17 20:22 - 2013-07-23 22:58 - 11798672 _____ (DsNET Corp) C:\Users\User\Downloads\aTubeCatcher.exe 2016-12-17 20:22 - 2013-07-14 21:16 - 00236366 _____ C:\Users\User\Downloads\complemento_direito_constitucional.pdf 2016-12-17 20:22 - 2013-07-14 21:15 - 07589226 _____ C:\Users\User\Downloads\complemento_direito_penal.pdf 2016-12-17 20:22 - 2013-05-22 21:05 - 00041804 _____ C:\Users\User\Downloads\INICIAL MÁICON LOPES ALVES.pdf 2016-12-17 20:22 - 2013-05-06 23:52 - 05044224 _____ C:\Users\User\Downloads\FollowUp_MTZ_ABRIL (2).xls 2016-12-17 20:22 - 2013-04-16 22:09 - 00049152 _____ C:\Users\User\Downloads\Orç.Sr. Maicon Obra Rua Central, 315 Alvorada ( GARAGEM ) 16.04.13.wiz 2016-12-17 20:22 - 2013-04-15 22:58 - 04793344 _____ C:\Users\User\Downloads\FollowUp_MTZ_ABRIL (1).xls 2016-12-17 20:22 - 2013-04-11 22:55 - 04765696 _____ C:\Users\User\Downloads\FollowUp_MTZ_ABRIL.xls 2016-12-17 20:22 - 2013-03-27 19:43 - 04225536 _____ C:\Users\User\Downloads\FollowUp_MTZ_MARÇO.xlt 2016-12-17 20:22 - 2013-03-26 21:21 - 00127639 _____ C:\Users\User\Downloads\COMPROVANTE DE RENDIMENTOS JAQUELINE GREGORY.PDF 2016-12-17 20:22 - 2013-03-26 21:21 - 00127639 _____ C:\Users\User\Downloads\COMPROVANTE DE RENDIMENTOS JAQUELINE GREGORY (1).PDF 2016-12-17 20:22 - 2013-03-14 19:10 - 03424768 _____ C:\Users\User\Downloads\Bonus.pps 2016-12-17 20:22 - 2013-03-04 20:56 - 00943307 _____ C:\Users\User\Downloads\horarios2013.pdf 2016-12-17 20:22 - 2013-02-15 21:20 - 13750357 _____ C:\Users\User\Downloads\Fernandinha (1).wmv 2016-12-17 20:22 - 2013-02-05 20:20 - 04579328 _____ C:\Users\User\Downloads\FollowUp_MTZ_JANEIRO (2).xls 2016-12-17 20:22 - 2013-01-18 22:17 - 04411904 _____ C:\Users\User\Downloads\FollowUp_MTZ_JANEIRO (1).xls 2016-12-17 20:22 - 2013-01-15 19:56 - 04381696 _____ C:\Users\User\Downloads\FollowUp_MTZ_JANEIRO.xls 2016-12-17 20:22 - 2013-01-02 19:36 - 04233728 _____ C:\Users\User\Downloads\FollowUp_MTZ_DEZEMBRO (2).xls 2016-12-17 20:22 - 2012-12-29 23:09 - 01724416 _____ C:\Users\User\Downloads\Feliz Natal 2012.pps 2016-12-17 20:22 - 2012-12-29 23:06 - 03207533 _____ C:\Users\User\Downloads\Masaje-Tailandes-con-Final-Feliz.wmv 2016-12-17 20:22 - 2012-12-29 23:04 - 03427602 _____ C:\Users\User\Downloads\Na_Perfeição_!.wmv 2016-12-17 20:22 - 2012-12-29 22:58 - 07276527 _____ C:\Users\User\Downloads\oooh.wmv 2016-12-17 20:22 - 2012-12-26 20:55 - 04127232 _____ C:\Users\User\Downloads\FollowUp_MTZ_DEZEMBRO.xls 2016-12-17 20:22 - 2012-12-26 20:55 - 04127232 _____ C:\Users\User\Downloads\FollowUp_MTZ_DEZEMBRO (1).xls 2016-12-17 20:22 - 2012-11-20 21:07 - 03847168 _____ C:\Users\User\Downloads\FollowUp_MTZ_NOVEMBRO (2).xls 2016-12-17 20:22 - 2012-11-20 21:07 - 03847168 _____ C:\Users\User\Downloads\FollowUp_MTZ_NOVEMBRO (1).xls 2016-12-17 20:22 - 2012-11-09 19:56 - 04525568 _____ C:\Users\User\Downloads\Nossa_Meu.pps 2016-12-17 20:22 - 2012-11-08 22:57 - 03695616 _____ C:\Users\User\Downloads\FollowUp_MTZ_NOVEMBRO.xls 2016-12-17 20:22 - 2012-11-05 20:12 - 03580416 _____ C:\Users\User\Downloads\FollowUp_MTZ_OUTUBRO (2).xls 2016-12-17 20:22 - 2012-11-03 23:28 - 03011996 _____ C:\Users\User\Downloads\Kmarzo-St-Renan.pk3 2016-12-17 20:22 - 2012-11-03 23:14 - 07327744 _____ C:\Users\User\Downloads\Tamacho em BH Slides.pps 2016-12-17 20:22 - 2012-11-01 20:50 - 03543040 _____ C:\Users\User\Downloads\FollowUp_MTZ_OUTUBRO (1).xls 2016-12-17 20:22 - 2012-10-29 19:28 - 03489280 _____ C:\Users\User\Downloads\FollowUp_MTZ_OUTUBRO.xls 2016-12-17 20:22 - 2012-10-12 10:49 - 00894952 _____ (Oracle Corporation) C:\Users\User\Downloads\chromeinstall-7u7.exe 2016-12-17 20:22 - 2012-09-18 00:01 - 00000000 _____ C:\Users\User\Downloads\CoD4MW-1.6-1.7-PatchSetup.zip.aweoa4x.partial 2016-12-17 20:22 - 2012-09-11 21:55 - 00006687 _____ C:\Users\User\Downloads\maicon.txt 2016-12-17 20:22 - 2012-09-11 21:53 - 00004551 _____ C:\Users\User\Downloads\maicon1.txt 2016-12-17 20:22 - 2012-09-09 20:09 - 296333611 _____ C:\Users\User\Downloads\CoD4MW-1.6-PatchSetup.zip 2016-12-17 20:22 - 2012-08-29 20:42 - 04799211 _____ C:\Users\User\Downloads\Terracota.pdf 2016-12-17 20:22 - 2012-08-28 21:40 - 00760128 _____ (RealNetworks, Inc.) C:\Users\User\Downloads\RealPlayer_br.exe 2016-12-17 20:22 - 2012-08-16 21:39 - 00052938 _____ C:\Users\User\Downloads\Laudos2.pdf 2016-12-17 20:22 - 2012-08-16 21:39 - 00052938 _____ C:\Users\User\Downloads\Laudos2 (2).pdf 2016-12-17 20:22 - 2012-08-16 21:39 - 00052938 _____ C:\Users\User\Downloads\Laudos2 (1).pdf 2016-12-17 20:22 - 2012-08-09 23:33 - 13202160 _____ (DsNET Corp) C:\Users\User\Downloads\aTube_Catcher.exe 2016-12-17 20:22 - 2012-08-09 23:32 - 01090000 _____ C:\Users\User\Downloads\atube-catcher-291264-baixaki-32-bits.exe 2016-12-17 20:22 - 2012-07-29 23:07 - 30806440 _____ C:\Users\User\Downloads\R308434.exe 2016-12-17 20:22 - 2012-07-29 22:07 - 84704944 _____ C:\Users\User\Downloads\R302552.exe 2016-12-17 20:22 - 2012-07-29 21:47 - 00292184 _____ (Microsoft Corporation) C:\Users\User\Downloads\dxwebsetup.exe 2016-12-17 20:22 - 2012-07-26 23:04 - 14229744 _____ (DT Soft Ltd) C:\Users\User\Downloads\DAEMON-Tools-Lite-Baixaki-32bit.exe 2016-12-17 20:22 - 2012-07-17 23:08 - 02324992 _____ C:\Users\User\Downloads\raidcall.exe 2016-12-17 20:22 - 2012-06-24 19:24 - 00123698 _____ C:\Users\User\Downloads\Danfe25660.pdf 2016-12-17 20:22 - 2012-06-20 08:41 - 13750357 _____ C:\Users\User\Downloads\Fernandinha.wmv 2016-12-17 20:22 - 2012-06-20 00:10 - 32112904 _____ (TeamSpeak Systems GmbH) C:\Users\User\Downloads\TeamSpeak3-Client-win64-3.0.6.exe 2016-12-17 20:22 - 2012-06-19 23:04 - 03559424 _____ (TeamViewer GmbH) C:\Users\User\Downloads\TeamViewer_Setup_pt.exe 2016-12-17 14:35 - 2016-12-17 21:01 - 00125680 _____ C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT 2016-12-17 14:34 - 2016-12-17 14:34 - 00001975 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Documentação de ajuda da Dell.lnk 2016-12-17 14:34 - 2016-12-17 14:34 - 00000020 ___SH C:\Users\User\ntuser.ini 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Usuário Padrão 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Modelos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Meus documentos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Menu Iniciar 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Documents\Minhas músicas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Documents\Minhas imagens 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Documents\Meus vídeos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Configurações locais 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\AppData\Local\Histórico 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\AppData\Local\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Ambiente de rede 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\User\Ambiente de impressão 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Todos os Usuários 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Modelos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Meus documentos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Configurações locais 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Ambiente de rede 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Modelos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Favoritos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Documentos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 _SHDL C:\Arquivos de Programas 2016-12-17 14:34 - 2016-12-17 14:34 - 00000000 ____D C:\Users\User\AppData\Local\SoftThinks 2016-12-17 14:28 - 2014-05-14 14:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-12-17 14:28 - 2014-05-14 14:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-12-17 14:28 - 2014-05-14 14:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-12-17 14:28 - 2014-05-14 14:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-12-17 14:28 - 2014-05-14 14:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-12-17 14:28 - 2014-05-14 14:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-12-17 14:28 - 2014-05-14 14:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-12-17 14:28 - 2014-05-14 14:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-12-17 14:28 - 2014-05-14 14:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-12-17 14:28 - 2014-05-14 14:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-12-17 14:28 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-12-17 14:28 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-12-17 14:28 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-12-17 14:28 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-12-17 14:24 - 2016-12-17 20:19 - 00000000 ____D C:\Users\User\Documents\Bluetooth Folder 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Roaming\Roxio 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Roaming\Fingertapps 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Roaming\Dell 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Roaming\Creative 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Local\Dell 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\User\AppData\Local\BMExplorer 2016-12-17 14:24 - 2016-12-17 14:24 - 00000000 ____D C:\Users\Public\Recorded TV 2016-12-17 14:23 - 2016-12-17 19:49 - 00000564 _____ C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job 2016-12-17 14:23 - 2016-12-17 19:49 - 00000422 _____ C:\Windows\Tasks\SystemToolsDailyTest.job 2016-12-17 14:23 - 2016-12-17 14:23 - 00003918 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask 2016-12-17 14:23 - 2016-12-17 14:23 - 00003098 _____ C:\Windows\System32\Tasks\SystemToolsDailyTest 2016-12-17 14:23 - 2016-12-17 14:23 - 00001421 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-12-17 14:23 - 2016-12-17 14:23 - 00001387 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2016-12-17 14:23 - 2016-12-17 14:23 - 00000000 ____D C:\Users\User\AppData\Local\VirtualStore 2016-12-17 14:16 - 2016-12-17 14:16 - 00000000 ____D C:\Windows\SMINST 2016-12-17 13:51 - 2016-12-17 20:16 - 00000000 ____D C:\Users\User\Desktop\Videoclipes 2016-12-17 13:51 - 2016-12-17 20:16 - 00000000 ____D C:\Users\User\Desktop\Imagens 2016-12-17 13:51 - 2016-12-17 20:16 - 00000000 ____D C:\Users\User\Desktop\Gravações 2016-12-17 13:51 - 2016-04-20 09:29 - 197602751 _____ C:\Users\User\Desktop\DANIELA_DE_FRAGA_WAGNER_22_124807_125906.Wmv 2016-12-17 13:51 - 2012-08-23 23:23 - 06877147 _____ C:\Users\User\Desktop\Bluetooth Folder.rar 2016-12-17 13:51 - 2012-07-31 22:06 - 00000745 _____ C:\Users\User\Desktop\CURRICULUM VITAE - MAICON LOPES ALVES.lnk 2016-12-17 13:36 - 2014-06-30 00:29 - 00000721 _____ C:\Users\User\Documents\CURRICULUM VITAE - MAICON LOPES ALVES.lnk 2016-12-17 13:36 - 2014-05-12 00:39 - 00227455 _____ C:\Users\User\Documents\Checkout.pdf 2016-12-17 13:36 - 2014-03-19 21:56 - 00053646 _____ C:\Users\User\Documents\Boleto_Março_2014_1216credicard.pdf 2016-12-17 13:32 - 2016-12-17 20:19 - 00000000 ____D C:\Users\User\Documents\Material Concursos 2016-12-17 13:32 - 2016-12-17 20:19 - 00000000 ____D C:\Users\User\Documents\EXAMES DANI 2016-12-17 13:32 - 2016-12-17 20:19 - 00000000 ____D C:\Users\User\Documents\CASA 2016-12-17 13:32 - 2016-12-17 20:19 - 00000000 ____D C:\Users\User\Documents\BANCOS ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-12-17 21:03 - 2012-06-13 10:34 - 00003840 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-12-17 21:03 - 2012-06-13 10:34 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-17 21:02 - 2012-06-13 10:53 - 00000000 ____D C:\Program Files (x86)\Dell DataSafe Local Backup 2016-12-17 21:01 - 2012-06-13 11:03 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local\SoftThinks 2016-12-17 21:01 - 2012-06-13 11:03 - 00000000 ____D C:\Users\Default\AppData\Local\SoftThinks 2016-12-17 21:01 - 2012-06-13 11:03 - 00000000 ____D C:\Users\Default User\AppData\Local\SoftThinks 2016-12-17 20:53 - 2012-06-13 11:08 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2016-12-17 20:53 - 2012-06-13 10:57 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-12-17 20:53 - 2009-07-14 03:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-12-17 20:53 - 2009-07-14 02:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-17 20:53 - 2009-07-14 02:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-17 20:52 - 2009-07-14 01:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-12-17 20:51 - 2009-07-14 00:34 - 00000510 _____ C:\Windows\win.ini 2016-12-17 20:45 - 2012-06-13 11:16 - 00000000 ____D C:\Users\Todos os Usuários\McAfee 2016-12-17 20:45 - 2012-06-13 11:16 - 00000000 ____D C:\ProgramData\McAfee 2016-12-17 20:45 - 2009-07-14 03:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-17 20:43 - 2010-11-21 07:37 - 00703534 _____ C:\Windows\system32\prfh0416.dat 2016-12-17 20:43 - 2010-11-21 07:37 - 00146320 _____ C:\Windows\system32\prfc0416.dat 2016-12-17 20:43 - 2009-07-14 03:13 - 01628028 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-17 20:43 - 2009-07-14 01:20 - 00000000 ____D C:\Windows\inf 2016-12-17 19:48 - 2011-02-12 13:42 - 00000000 ____D C:\dell 2016-12-17 14:34 - 2009-07-14 01:20 - 00000000 ____D C:\Program Files\Windows NT 2016-12-17 14:33 - 2009-07-14 01:20 - 00000000 ____D C:\Windows\rescache 2016-12-17 14:32 - 2011-02-12 13:43 - 00000000 ____D C:\Windows\panther 2016-12-17 14:24 - 2012-06-13 11:29 - 00000000 ____D C:\Users\Todos os Usuários\Atheros 2016-12-17 14:24 - 2012-06-13 11:29 - 00000000 ____D C:\ProgramData\Atheros 2016-12-17 14:24 - 2012-06-13 11:15 - 00000000 ____D C:\Users\Todos os Usuários\Sonic 2016-12-17 14:24 - 2012-06-13 11:15 - 00000000 ____D C:\ProgramData\Sonic Alguns arquivos em TEMP: ==================== C:\Users\User\AppData\Local\Temp\0317741482014561mcinst.exe C:\Users\User\AppData\Local\Temp\ose00000.exe ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2011-02-12 09:43 ==================== Fim de FRST.txt ============================