Resultado do exame da Farbar Recovery Scan Tool (FRST) (x86) Versão: 18-01-2017 Executado por Jorge (administrador) em JORGE-PC (18-01-2017 19:47:14) Executando a partir de C:\Users\Jorge\Downloads Perfis Carregados: Jorge (Perfis Disponíveis: Jorge) Platform: Microsoft Windows 7 Ultimate (X86) Idioma: Português (Brasil) Internet Explorer Versão 8 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (GAS Tecnologia) C:\Program Files\GbPlugin\GbpSv.exe (GAS Tecnologia) C:\Program Files\GbPlugin\GbpSv.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe () C:\Windows\System32\NMSAccess32.exe (Google Inc.) C:\Program Files\Google\Update\1.3.32.7\GoogleCrashHandler.exe (GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\ScanToPCActivationApp.exe (BitTorrent Inc.) C:\Users\Jorge\AppData\Roaming\uTorrent\uTorrent.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe (BitTorrent Inc.) C:\Users\Jorge\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe (BitTorrent Inc.) C:\Users\Jorge\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe (BitTorrent Inc.) C:\Users\Jorge\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe (HP Inc.) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Spacial Audio Solutions, LLC) C:\Program Files\SpacialAudio\SAMBC\SAMBC.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe ==================== Registro (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM\...\Run: [] => [X] HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [792112 2016-06-23] (GAS Tecnologia LTDA) Winlogon\Notify\ GbPluginCef: C:\Program Files\GbPlugin\gbiehCef.dll [2016-08-10] (Caixa Economica Federal) HKU\S-1-5-21-1544895119-1810989607-3242579501-1000\...\Run: [HP Deskjet 3050 J610 series (NET)] => C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\ScanToPCActivationApp.exe [1837672 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-1544895119-1810989607-3242579501-1000\...\Run: [uTorrent] => C:\Users\Jorge\AppData\Roaming\uTorrent\uTorrent.exe [1979072 2016-12-31] (BitTorrent Inc.) HKU\S-1-5-21-1544895119-1810989607-3242579501-1000\...\Run: [RadioBOSS_187539772] => "C:\Program Files\RadioBOSS\radioboss.exe" ShellExecuteHooks: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399003} - C:\Program Files\GbPlugin\gbiehcef.dll [1903328 2016-08-10] (Caixa Economica Federal) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-01-13] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe (McAfee, Inc.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.25.1 Tcpip\..\Interfaces\{2B4BD4ED-D0B4-4201-A9CE-BFD7D793B594}: [DhcpNameServer] 192.168.25.1 Internet Explorer: ================== HKU\S-1-5-21-1544895119-1810989607-3242579501-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset HKU\S-1-5-21-1544895119-1810989607-3242579501-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp SearchScopes: HKU\S-1-5-21-1544895119-1810989607-3242579501-1000 -> {0BD21689-3754-4842-ABC7-F1D33B0F6386} URL = hxxps://br.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2017-01-01] (Microsoft Corporation) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2017-01-01] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> C:\Program Files\GbPlugin\gbiehcef.dll [2016-08-10] (Caixa Economica Federal) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-01-01] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2017-01-01] (Oracle Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-01] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-01] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-01] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-01] (Microsoft Corporation) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2017-01-01] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2017-01-01] (Oracle Corporation) FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-01-01] (Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-01] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-01] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1544895119-1810989607-3242579501-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Jorge\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife, LLP) Chrome: ======= CHR DefaultProfile: Default CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR DefaultSearchURL: Default -> hxxps://br.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default CHR DefaultSearchKeyword: Default -> Yahoo CHR DefaultSuggestURL: Default -> hxxps://br.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Profile: C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default [2017-01-18] CHR Extension: (Google Apresentações) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-28] CHR Extension: (Google Docs) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-28] CHR Extension: (Google Drive) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-28] CHR Extension: (YouTube) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-28] CHR Extension: (Adobe Acrobat) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-01-16] CHR Extension: (Planilhas do Google) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-28] CHR Extension: (Documentos Google off-line) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-28] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-18] CHR Extension: (Gmail) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-28] CHR Extension: (Chrome Media Router) - C:\Users\Jorge\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-01-08] CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx StartMenuInternet: Google Chrome.RKJPBAHZIK7BWET2HY3QWTQBQA - C:\Windows.old\Program Files\Google\Chrome\Application\chrome.exe ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2104000 2016-12-04] (Microsoft Corporation) R2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2013-03-19] (Firebird Project) [Arquivo não assinado] R3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2013-03-19] (Firebird Project) [Arquivo não assinado] R2 GbpSv; C:\Program Files\GbPlugin\GbpSv.exe [631520 2016-08-10] (GAS Tecnologia) R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.474\McCHSvc.exe [272136 2016-12-14] (McAfee, Inc.) R2 NMSAccess32; C:\Windows\system32\NMSAccess32.exe [71096 2009-01-12] () R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [792112 2016-06-23] (GAS Tecnologia LTDA) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 EuMusDesignVirtualAudioCableWdm; C:\Windows\System32\DRIVERS\vrtaucbl.sys [50728 2017-01-14] (Eugene V. Muzychenko) R0 GbpKm; C:\Windows\System32\drivers\GbpKm.sys [49496 2016-08-10] (GAS Tecnologia) R1 ndisrd; C:\Windows\System32\DRIVERS\gbpndisrdn.sys [29400 2017-01-09] (GAS Tecnologia) R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [80728 2017-01-18] (GAS Tecnologia) R1 wsddntf; C:\Windows\System32\DRIVERS\wsddntf.sys [31864 2016-06-16] (GAS Tecnologia) R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [76384 2016-06-08] (GAS Tecnologia) S0 gbpddreg; system32\drivers\gbpddreg32.sys [X] ========================== MD5 dos Drivers ======================= C:\Windows\system32\DRIVERS\1394ohci.sys 6D2ACA41739BFE8CB86EE8E85F29697D C:\Windows\System32\DRIVERS\ACPI.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\acpipmi.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 é legítimo C:\Windows\system32\drivers\afd.sys DDC040FDB01EF1712A6B13E52AFB104C C:\Windows\system32\DRIVERS\agp440.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\djsvs.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\aliide.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\amdagp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\amdide.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\amdppm.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\amdsata.sys 2101A86C25C154F8314B24EF49D7FBC2 C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\amdxata.sys B81C2B5616F6420A9941EA093A92B150 C:\Windows\system32\drivers\appid.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\arc.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\atapi.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\bxvbdx.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\b57nd60x.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\Beep.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\bowser.sys FCAFAEF6798D7B51FF029F99A9898961 C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\Brserid.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\BthEnum.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\bthpan.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\BTHport.sys 4A34888E13224678DD062466AFEC4240 C:\Windows\System32\Drivers\BTHUSB.sys FA04C63916FA221DBB91FCE153D07A55 C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 é legítimo C:\Windows\System32\CLFS.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\CmBatt.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\cmdide.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\cng.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\compbatt.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\CompositeBus.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 é legítimo C:\Windows\System32\drivers\csc.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\dfsc.sys 8E09E52EE2E3CEB199EF3DD99CF9E3FB C:\Windows\System32\drivers\discache.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\disk.sys ==> MD5 é legítimo C:\Windows\System32\drivers\drmkaud.sys ==> MD5 é legítimo C:\Windows\System32\drivers\dxgkrnl.sys 39806CFEDDCC55E686A49BCCD2972F23 C:\Windows\system32\DRIVERS\evbdx.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\errdev.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\vrtaucbl.sys 6B93B103242C3C30F850F53DBE39ED88 C:\Windows\system32\Drivers\exfat.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\fastfat.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 é legítimo C:\Windows\System32\drivers\fileinfo.sys ==> MD5 é legítimo C:\Windows\System32\drivers\filetrace.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 é legítimoB C:\Windows\System32\drivers\fltmgr.sys ==> MD5 é legítimo C:\Windows\System32\drivers\FsDepends.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\Fs_Rec.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\fvevol.sys 5592F5DBA26282D24D2B080EB438A4D7 C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 é legítimo C:\Windows\System32\drivers\GbpKm.sys 4EC1CC0AB9AC26F0C25AB23829F404C1 C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 é legítimo C:\Windows\System32\drivers\HdAudio.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\HDAudBus.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\HpSAMD.sys ==> MD5 é legítimo C:\Windows\System32\drivers\HTTP.sys ==> MD5 é legítimo C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\i8042prt.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\iaStorV.sys 934AF4D7C5F457B9F0743F4299B77B67 C:\Windows\System32\DRIVERS\igdkmd32.sys 1008C685871F5D108CC8900D6C6A5708 C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\intelide.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\IPMIDrv.sys ==> MD5 é legítimo C:\Windows\System32\drivers\ipnat.sys ==> MD5 é legítimo C:\Windows\System32\drivers\irenum.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\isapnp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\msiscsi.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\ksecdd.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\ksecpkg.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 é legítimo C:\Windows\system32\drivers\luafv.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 é legítimo C:\Windows\System32\drivers\modem.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 é legítimo C:\Windows\System32\drivers\mountmgr.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\mpio.sys ==> MD5 é legítimo C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 é legítimo C:\Windows\system32\drivers\mrxdav.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\mrxsmb.sys F4A054BE78AF7F410129C4B64B07DC9B C:\Windows\System32\DRIVERS\mrxsmb10.sys DEFFA295BD1895C6ED8E3078412AC60B C:\Windows\System32\DRIVERS\mrxsmb20.sys 24D76ABE5DCAD22F19D105F76FDF0CE1 C:\Windows\system32\DRIVERS\msahci.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\msdsm.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\Msfs.sys ==> MD5 é legítimo C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\msisadrv.sys ==> MD5 é legítimo C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 é legítimo C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 é legítimo C:\Windows\System32\drivers\MSPQM.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\MsRPC.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\mssmbios.sys ==> MD5 é legítimo C:\Windows\System32\drivers\MSTEE.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\mup.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 é legítimo C:\Windows\System32\drivers\ndis.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\gbpndisrdn.sys A5C914C5CBCFF645434535234BFCEACA C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\NDProxy.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\Npfs.sys ==> MD5 é legítimo C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\Ntfs.sys 3795DCD21F740EE799FB7223234215AF C:\Windows\system32\Drivers\Null.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\nvraid.sys 3F3D04B1D08D43C16EA7963954EC768D C:\Windows\system32\DRIVERS\nvstor.sys C99F251A5DE63C6F129CF71933ACED0F C:\Windows\system32\DRIVERS\nv_agp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\ohci1394.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\parport.sys ==> MD5 é legítimo C:\Windows\System32\drivers\partmgr.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\parvdm.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\pci.sys C858CB77C577780ECC456A892E7E7D0F C:\Windows\system32\DRIVERS\pciide.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 é legítimo C:\Windows\System32\drivers\pcw.sys ==> MD5 é legítimo C:\Windows\System32\drivers\peauth.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\processr.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 é legítimo C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\rdbss.sys 835D7E81BF517A3B72384BDCC85E1CE6 C:\Windows\System32\DRIVERS\rdpbus.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\RDPCDD.sys 1E016846895B15A99F9A176A05029075 C:\Windows\System32\drivers\rdpdr.sys C5FF95883FFEF704D50C40D21CFB3AB5 C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 é legítimo C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\RDPWD.sys 801371BA9782282892D00AADB08EE367 C:\Windows\System32\drivers\rdyboost.sys 4EA225BF1CF05E158853F30A99CA29A7 C:\Windows\System32\DRIVERS\rfcomm.sys CB928D9E6DAF51879DD6BA8D02F01321 C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\Rt86win7.sys 7DFD48E24479B68B258D8770121155A0 C:\Windows\System32\DRIVERS\rtl8192se.sys 44B7739F2D623AD6FB46755BB60351A4 C:\Windows\system32\DRIVERS\vms3cap.sys 5423D8437051E89DD34749F242C98648 C:\Windows\system32\DRIVERS\sbp2port.sys 34EE0C44B724E3E4CE2EFF29126DE5B5 C:\Windows\System32\DRIVERS\scfilter.sys A95C54B2AC3CC9C73FCDF9E51A1D6B51 C:\Windows\system32\Drivers\secdrv.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\serenum.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\serial.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sffdisk.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sffp_mmc.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sffp_sd.sys 4F1E5B0FE7C8050668DBFADE8999AEFB C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sisagp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\smb.sys ==> MD5 é legítimo C:\Windows\system32\Drivers\spldr.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\srv.sys 2BA4EBC7DFBA845A1EDBE1F75913BE33 C:\Windows\System32\DRIVERS\srv2.sys DCE7E10FEAABD4CAE95948B3DE5340BB C:\Windows\System32\DRIVERS\srvnet.sys B5665BAA2120B8A54E22E9CD07C05106 C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\serscan.sys EDB05BD63148796F23EA78506404A538 C:\Windows\System32\DRIVERS\vmstorfl.sys 957E346CA948668F2496A6CCF6FF82CC C:\Windows\system32\DRIVERS\storvsc.sys D5751969DC3E4B88BF482AC8EC9FE019 C:\Windows\System32\DRIVERS\swenum.sys ==> MD5 é legítimo C:\Windows\System32\drivers\tcpip.sys 2CC3D75488ABD3EC628BBB9A4FC84EFC C:\Windows\System32\DRIVERS\tcpip.sys 2CC3D75488ABD3EC628BBB9A4FC84EFC C:\Windows\System32\drivers\tcpipreg.sys E64444523ADD154F86567C469BC0B17F C:\Windows\System32\drivers\tdpipe.sys 1875C1490D99E70E449E3AFAE9FCBADF C:\Windows\System32\drivers\tdtcp.sys 7551E91EA999EE9A8E9C331D5A9C31F3 C:\Windows\System32\DRIVERS\tdx.sys CB39E896A2A83702D1737BFD402B3542 C:\Windows\System32\DRIVERS\termdd.sys C36F41EE20E6999DBF4B0425963268A5 C:\Windows\System32\DRIVERS\tssecsrv.sys 98AE6FA07D12CB4EC5CF4A9BFA5F4242 C:\Windows\System32\DRIVERS\tunnel.sys 3E461D890A97F9D4C168F5FDA36E1D00 C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\udfs.sys 09CC3E16F8E5EE7168E01CF8FCBE061A C:\Windows\system32\DRIVERS\uliagpkx.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\umbus.sys 049B3A50B3D646BAEEEE9EEC9B0668DC C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 é legítimo C:\Windows\System32\drivers\usbaudio.sys 2436A42AAB4AD48A9B714E5B0F344627 C:\Windows\System32\DRIVERS\usbccgp.sys 8455C4ED038EFD09E99327F9D2D48FFA C:\Windows\system32\DRIVERS\usbcir.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\usbehci.sys 1C333BFD60F2FED2C7AD5DAF533CB742 C:\Windows\System32\DRIVERS\usbhub.sys EE6EF93CCFA94FAE8C6AB298273D8AE2 C:\Windows\system32\DRIVERS\usbohci.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\usbscan.sys 576096CCBC07E7C4EA4F5E6686D6888F C:\Windows\System32\DRIVERS\USBSTOR.SYS D8889D56E0D27E57ED4591837FE71D27 C:\Windows\System32\DRIVERS\usbuhci.sys ==> MD5 é legítimo C:\Windows\System32\Drivers\usbvideo.sys F642A7E4BF78CFA359CCA0A3557C28D7 C:\Windows\System32\DRIVERS\vdrvroot.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 é legítimo C:\Windows\System32\drivers\vga.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\vhdmp.sys 3BE6E1F3A4F1AFEC8CEE0D7883F93583 C:\Windows\system32\DRIVERS\viaagp.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\viac7.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\viaide.sys ==> MD5 é legítimo C:\Windows\system32\DRIVERS\vmbus.sys 379B349F65F453D2A6E75EA6B7448E49 C:\Windows\system32\DRIVERS\VMBusHID.sys EC2BBAB4B84D0738C6C83D2234DC36FE C:\Windows\System32\DRIVERS\volmgr.sys 384E5A2AA49934295171E499F86BA6F3 C:\Windows\System32\drivers\volmgrx.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\volsnap.sys 58DF9D2481A56EDDE167E51B334D44FD C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\vwifibus.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\vwififlt.sys 7090D3436EEB4E7DA3373090A23448F7 C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\wanarp.sys 692A712062146E96D28BA0B7D75DE31B C:\Windows\System32\DRIVERS\wanarp.sys 692A712062146E96D28BA0B7D75DE31B C:\Windows\system32\DRIVERS\wd.sys ==> MD5 é legítimo C:\Windows\System32\drivers\Wdf01000.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 é legítimo C:\Windows\System32\drivers\wimmount.sys ==> MD5 é legítimo C:\Windows\System32\DRIVERS\WinUsb.sys 30FC6E5448D0CBAAA95280EEEF7FEDAE C:\Windows\System32\DRIVERS\wmiacpi.sys ==> MD5 é legítimo C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 é legítimo C:\Windows\System32\drivers\wsddfac.sys 659DDC0353243B4CB9194F6A531A8150 C:\Windows\System32\DRIVERS\wsddntf.sys 6B8AC0C154BA413B1DA389DBB6331E7B C:\Windows\system32\drivers\wsddpp.sys C97C830B2EFBA550C2851F7DEE3C8AE2 C:\Windows\System32\drivers\WudfPf.sys 6F9B6C0C93232CFF47D0F72D6DB1D21E C:\Windows\System32\DRIVERS\WUDFRd.sys F91FF1E51FCA30B3C3981DB7D5924252 ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três Meses Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-01-18 19:46 - 2017-01-18 19:46 - 00071062 _____ C:\Users\Jorge\Downloads\Shortcut.txt 2017-01-18 19:45 - 2017-01-18 19:46 - 00023424 _____ C:\Users\Jorge\Downloads\Addition.txt 2017-01-18 19:42 - 2017-01-18 19:47 - 00030576 _____ C:\Users\Jorge\Downloads\FRST.txt 2017-01-18 19:42 - 2017-01-18 19:47 - 00000000 ____D C:\FRST 2017-01-18 19:41 - 2017-01-18 19:42 - 01761792 _____ (Farbar) C:\Users\Jorge\Downloads\FRST.exe 2017-01-18 19:26 - 2017-01-18 19:19 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2017-01-18 19:16 - 2017-01-18 19:19 - 00016224 _____ (Microsoft Corporation) C:\Users\Jorge\Downloads\api-ms-win-crt-runtime-l1-1-0.dll 2017-01-17 03:03 - 2017-01-17 03:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyPHP DevServer 14.1 VC9 2017-01-17 03:01 - 2017-01-17 03:03 - 00000000 ____D C:\Program Files\EasyPHP-DevServer-14.1VC9 2017-01-17 01:44 - 2017-01-17 01:44 - 48037683 _____ (EasyPHP Team ) C:\Users\Jorge\Downloads\EasyPHP-DevServer-14.1VC9%2BPrestaShop-1.6.0.5-setup.exe 2017-01-17 01:26 - 2017-01-17 01:30 - 00000000 ____D C:\Loja virtual 2017-01-17 01:25 - 2017-01-17 01:26 - 55492501 _____ C:\Users\Jorge\Downloads\prestashop_1.7.0.4.zip 2017-01-16 13:25 - 2017-01-16 13:25 - 04614622 _____ C:\Users\Jorge\Downloads\prestacao de contas 11_16.pdf 2017-01-16 10:51 - 2017-01-16 10:51 - 10518064 _____ C:\Users\Jorge\Downloads\50-vinhetas-gratis.zip 2017-01-15 17:22 - 2017-01-18 18:58 - 00000436 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2017-01-15 16:56 - 2017-01-15 16:56 - 00027192 _____ C:\Users\Jorge\Downloads\config (2).bin 2017-01-15 16:45 - 2017-01-15 16:45 - 00027160 _____ C:\Users\Jorge\Downloads\config (1).bin 2017-01-15 15:38 - 2017-01-16 08:55 - 00000320 _____ C:\Windows\Tasks\HPCeeScheduleForJorge.job 2017-01-15 15:28 - 2017-01-15 15:28 - 00027120 _____ C:\Users\Jorge\Downloads\config.bin 2017-01-14 12:57 - 2017-01-14 12:57 - 00001978 _____ C:\Users\Jorge\Desktop\SAM Broadcaster PRO.lnk 2017-01-14 12:57 - 2017-01-14 12:57 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SAM Broadcaster 2017-01-14 12:30 - 2017-01-14 12:30 - 00004939 _____ C:\Users\Todos os Usuários\ubzyegls.kzt 2017-01-14 12:30 - 2017-01-14 12:30 - 00004939 _____ C:\ProgramData\ubzyegls.kzt 2017-01-14 12:28 - 2017-01-14 12:30 - 08941984 _____ C:\Users\Jorge\Downloads\samcast.exe 2017-01-14 11:09 - 2017-01-14 11:09 - 00004892 _____ C:\Users\Todos os Usuários\auqrgqib.ttw 2017-01-14 11:09 - 2017-01-14 11:09 - 00004892 _____ C:\ProgramData\auqrgqib.ttw 2017-01-14 11:06 - 2017-01-14 11:09 - 00000048 _____ C:\Users\Jorge\CurrentSong.txt 2017-01-14 11:03 - 2017-01-14 11:04 - 00000000 ____D C:\Users\Jorge\AppData\Local\ZaraRadio 2017-01-14 11:03 - 2017-01-14 11:03 - 00001040 _____ C:\Users\Jorge\Desktop\ZaraRadio.lnk 2017-01-14 11:03 - 2017-01-14 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZaraRadio 2017-01-14 11:03 - 2017-01-14 11:03 - 00000000 ____D C:\Program Files\ZaraSoft 2017-01-14 10:53 - 2017-01-14 10:53 - 00000000 ____D C:\Program Files\Orban 2017-01-14 10:23 - 2017-01-14 10:23 - 24415020 _____ C:\Users\Jorge\Downloads\ZARARÁDIO.rar 2017-01-14 10:18 - 2017-01-14 10:18 - 00000016 _____ C:\Users\Todos os Usuários\mntemp 2017-01-14 10:18 - 2017-01-14 10:18 - 00000016 _____ C:\ProgramData\mntemp 2017-01-14 10:09 - 2017-01-14 10:11 - 00000000 ____D C:\Program Files\Virtual Audio Cable 2017-01-14 10:09 - 2017-01-14 10:09 - 00050728 _____ (Eugene V. Muzychenko) C:\Windows\system32\Drivers\vrtaucbl.sys 2017-01-14 10:09 - 2017-01-14 10:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2017-01-14 10:05 - 2017-01-14 10:06 - 03193999 _____ C:\Users\Jorge\Downloads\Opticodec-PC.1010.LE.v2.1.Build.4.rar 2017-01-14 10:02 - 2017-01-14 10:03 - 00552417 _____ C:\Users\Jorge\Downloads\Virtual Audio Cable 4.10.rar 2017-01-14 09:55 - 2017-01-14 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32) 2017-01-14 09:55 - 2013-03-19 11:02 - 00552960 _____ (Firebird Project) C:\Windows\system32\GDS32.DLL 2017-01-14 09:53 - 2017-01-14 10:30 - 00000000 ____D C:\Users\Jorge\Desktop\Sambroadcaster2016.3 2017-01-14 09:53 - 2017-01-14 09:53 - 29085347 _____ C:\Users\Jorge\Downloads\Sambroadcaster2016.3.zip 2017-01-13 13:14 - 2017-01-13 13:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2017-01-13 12:50 - 2017-01-13 12:50 - 04612525 _____ C:\Users\Jorge\Desktop\prestação de contas.pdf 2017-01-13 12:45 - 2017-01-13 12:45 - 00013824 ___SH C:\Users\Jorge\Documents\Thumbs.db 2017-01-13 12:44 - 2017-01-13 12:44 - 00000000 ____D C:\Users\Jorge\AppData\Local\CEF 2017-01-13 12:43 - 2017-01-13 12:43 - 00000000 ____D C:\Users\Todos os Usuários\McAfee Security Scan 2017-01-13 12:43 - 2017-01-13 12:43 - 00000000 ____D C:\Users\Jorge\AppData\LocalLow\Adobe 2017-01-13 12:43 - 2017-01-13 12:43 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2017-01-13 12:42 - 2017-01-13 13:14 - 00002045 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2017-01-13 12:42 - 2017-01-13 13:14 - 00000000 ____D C:\Program Files\McAfee Security Scan 2017-01-13 12:42 - 2017-01-13 12:42 - 00000000 ____D C:\Users\Todos os Usuários\McAfee 2017-01-13 12:42 - 2017-01-13 12:42 - 00000000 ____D C:\ProgramData\McAfee 2017-01-13 12:41 - 2017-01-13 12:49 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-01-13 12:41 - 2017-01-13 12:41 - 00002017 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2017-01-13 12:41 - 2017-01-13 12:41 - 00000000 ____D C:\Program Files\Common Files\Adobe 2017-01-13 12:38 - 2017-01-13 12:44 - 00000000 ____D C:\Users\Jorge\AppData\Local\Adobe 2017-01-13 12:17 - 2017-01-13 12:17 - 00274987 _____ C:\Users\Jorge\Documents\Scan0001.pdf 2017-01-13 12:10 - 2017-01-13 12:10 - 04614622 _____ C:\Users\Jorge\Downloads\prestacao de contas 11_16 2017-01-13 12:10 - 2017-01-13 12:10 - 00139740 _____ C:\Users\Jorge\Downloads\WhatsApp Image 2017-01-13 at 11.33.34 AM.jpeg 2017-01-13 05:07 - 2017-01-13 05:07 - 00000000 ____D C:\Users\Jorge\Documents\e-Sword 2017-01-13 02:07 - 2017-01-13 02:07 - 00095729 _____ C:\Users\Jorge\Desktop\PRA TER O SEU AMOR cifra - Jorge e Mateus _ CIFRAS.pdf 2017-01-12 23:33 - 2017-01-12 23:33 - 00034308 _____ C:\Windows\system32\bassmod.dll 2017-01-12 23:32 - 2015-07-20 15:36 - 00000000 ___RD C:\Users\Jorge\Desktop\Crack do FileViewPro 2017-01-12 23:11 - 2017-01-12 23:11 - 00001903 _____ C:\Users\Public\Desktop\e-Sword.lnk 2017-01-12 23:11 - 2017-01-12 23:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Sword 2017-01-12 23:11 - 2017-01-12 23:11 - 00000000 ____D C:\Program Files\e-Sword 2017-01-12 23:11 - 2017-01-12 23:11 - 00000000 ____D C:\Program Files\Common Files\EzTools 2017-01-12 23:07 - 2017-01-12 23:07 - 00000000 ____D C:\Users\Jorge\AppData\Local\Downloaded Installations 2017-01-12 23:06 - 2017-01-12 23:06 - 00001939 _____ C:\Users\Jorge\Desktop\BibliaTodo.com.lnk 2017-01-12 23:06 - 2017-01-12 23:06 - 00001886 _____ C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Bibliatodo.com.lnk 2017-01-12 23:06 - 2017-01-12 23:06 - 00000000 ____D C:\Program Files\Bibliatodo.com 2017-01-12 23:04 - 2017-01-12 23:05 - 52927159 _____ (BibliaTodo.com ) C:\Users\Jorge\Downloads\E_sword.exe 2017-01-12 22:12 - 2017-01-12 22:12 - 00000000 ____D C:\Users\Todos os Usuários\IsolatedStorage 2017-01-12 22:12 - 2017-01-12 22:12 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\IsolatedStorage 2017-01-12 22:12 - 2017-01-12 22:12 - 00000000 ____D C:\Users\Jorge\AppData\Local\FileViewPro 2017-01-12 22:12 - 2017-01-12 22:12 - 00000000 ____D C:\ProgramData\IsolatedStorage 2017-01-12 22:11 - 2017-01-13 00:08 - 00000000 ____D C:\Users\Jorge\AppData\Local\IIIQF 2017-01-12 22:04 - 2017-01-12 22:04 - 00000000 ____D C:\Spacekace 2017-01-10 22:37 - 2017-01-16 10:55 - 00000000 ____D C:\MP3 Radio 2017-01-10 13:50 - 2017-01-10 13:50 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\djsoft.net 2017-01-10 10:58 - 2017-01-10 10:58 - 00794302 _____ C:\Users\Jorge\Downloads\Fatura Net.pdf 2017-01-10 10:06 - 2014-09-27 12:03 - 00000000 ____D C:\Users\Jorge\Desktop\RadioBOSS Advanced (5.1.0.7) + Crack 2017-01-10 10:02 - 2016-12-07 00:39 - 00000323 ____N C:\Users\Jorge\Desktop\HPSupportSolutionsFramework.exe.config 2017-01-10 10:02 - 2014-03-05 09:21 - 06604375 _____ C:\Users\Jorge\Desktop\mensagem.mp4 2017-01-09 12:50 - 2017-01-09 12:50 - 00001024 _____ C:\.rnd 2017-01-09 12:49 - 2017-01-18 18:58 - 00080728 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddfac.sys 2017-01-09 12:49 - 2017-01-09 12:49 - 00000000 ___HD C:\Program Files\GAS Tecnologia 2017-01-09 12:49 - 2017-01-09 12:49 - 00000000 ____D C:\Program Files\Diebold 2017-01-09 12:49 - 2016-06-16 18:43 - 00031864 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddntf.sys 2017-01-09 12:49 - 2016-06-16 18:43 - 00008811 _____ C:\Windows\system32\Drivers\wsddntf.cat 2017-01-09 12:49 - 2016-06-08 18:43 - 00076384 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddpp.sys 2017-01-09 12:47 - 2017-01-09 12:47 - 00029400 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpndisrdn.sys 2017-01-09 12:47 - 2016-08-10 15:58 - 00049496 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpkm.sys 2017-01-09 12:46 - 2017-01-18 18:57 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin 2017-01-09 12:46 - 2017-01-18 18:57 - 00000000 ____D C:\ProgramData\GbPlugin 2017-01-09 12:46 - 2017-01-10 19:02 - 00000000 ____D C:\Program Files\GbPlugin 2017-01-09 12:46 - 2017-01-09 12:46 - 00000000 ____D C:\Users\Todos os Usuários\GAS Tecnologia 2017-01-09 12:46 - 2017-01-09 12:46 - 00000000 ____D C:\ProgramData\GAS Tecnologia 2017-01-09 12:45 - 2017-01-09 12:45 - 02891312 _____ (CAIXA) C:\Users\Jorge\Downloads\GBPCEF.exe 2017-01-09 11:34 - 2017-01-10 13:40 - 00000000 ____D C:\Users\Jorge\Documents\Casa Própria_files 2017-01-09 11:34 - 2017-01-09 11:34 - 00029269 _____ C:\Users\Jorge\Documents\Casa Própria.html 2017-01-09 03:04 - 2017-01-18 19:27 - 00000000 ____D C:\Users\Todos os Usuários\firebird 2017-01-09 03:04 - 2017-01-18 19:27 - 00000000 ____D C:\ProgramData\firebird 2017-01-09 03:04 - 2017-01-17 06:14 - 00000000 ____D C:\Users\Jorge\AppData\Local\SpacialAudio 2017-01-09 02:58 - 2017-01-09 02:58 - 00000000 ____D C:\Program Files\Firebird 2017-01-09 02:57 - 2017-01-17 06:14 - 00000000 ____D C:\Program Files\SpacialAudio 2017-01-09 02:56 - 2017-01-09 03:39 - 00000000 ____D C:\Radio 2017-01-08 22:25 - 2017-01-10 14:02 - 00000000 ____D C:\Users\Jorge\AppData\Local\Mixxx 2017-01-08 22:22 - 2017-01-08 22:22 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2017-01-08 22:22 - 2017-01-08 22:22 - 00000000 ____D C:\ProgramData\Package Cache 2017-01-08 20:30 - 2017-01-08 20:30 - 00000000 ____D C:\Users\Jorge\AppData\Local\Mixcraft 2017-01-08 15:26 - 2017-01-08 15:26 - 00000000 ____D C:\Users\Jorge\Documents\Mixcraft Projects 2017-01-08 15:22 - 2017-01-08 15:22 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Applied Acoustics Systems 2017-01-08 15:18 - 2017-01-08 15:18 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\SynthMaker 2017-01-08 15:13 - 2017-01-08 15:13 - 00000000 ____D C:\Users\Jorge\AppData\Local\HP_Development_Company,_L 2017-01-08 15:05 - 2017-01-08 15:06 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Acoustica Mixcraft 7 (32-bits) 2017-01-08 15:05 - 2017-01-08 15:05 - 00001974 _____ C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Mixcraft 7 (32-bits).lnk 2017-01-08 15:05 - 2017-01-08 15:05 - 00001950 _____ C:\Users\Jorge\Desktop\Mixcraft 7 (32-bits).lnk 2017-01-08 15:04 - 2017-01-08 15:04 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Acoustica 2017-01-08 15:04 - 2017-01-08 15:04 - 00000000 ____D C:\Program Files\Common Files\Propellerhead Software 2017-01-08 10:23 - 2017-01-08 13:22 - 00000000 ____D C:\Users\Jorge\Downloads\Acoustica Mixcraft v7.0.0 Build 251 ML Incl Keymaker-R2R [TorDigger] 2017-01-08 10:20 - 2017-01-08 10:21 - 00015103 _____ C:\Users\Jorge\Downloads\[limetorrents.cc]Acoustica.Mixcraft.v7.0.0.Build.251.ML.Incl.Keymaker-R2R.torrent 2017-01-08 10:15 - 2017-01-08 15:12 - 00000000 ____D C:\Program Files\Acoustica Mixcraft 7 2017-01-08 10:15 - 2017-01-08 15:00 - 00000000 ____D C:\Users\Todos os Usuários\Acoustica 2017-01-08 10:15 - 2017-01-08 15:00 - 00000000 ____D C:\ProgramData\Acoustica 2017-01-05 06:23 - 2017-01-05 06:23 - 00003501 _____ C:\Users\Jorge\Downloads\Bom dia.aup 2017-01-05 06:23 - 2017-01-05 06:23 - 00000000 ____D C:\Users\Jorge\Downloads\Bom dia_data 2017-01-03 00:13 - 2017-01-18 18:59 - 00000200 _____ C:\Windows\Tasks\AutoKMS.job 2017-01-03 00:13 - 2017-01-03 00:13 - 00614400 _____ C:\Windows\AutoKMS.exe 2017-01-03 00:13 - 2017-01-03 00:13 - 00000135 _____ C:\Windows\AutoKMS.ini 2017-01-02 15:07 - 2017-01-13 12:44 - 00000000 ____D C:\Users\Todos os Usuários\Adobe 2017-01-02 15:07 - 2017-01-13 12:44 - 00000000 ____D C:\ProgramData\Adobe 2017-01-02 14:52 - 2017-01-03 00:34 - 00000000 ____D C:\Users\Jorge\Documents\Mis Proyectos 2017-01-02 14:52 - 2017-01-02 14:52 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\FotoPrix 2017-01-02 14:32 - 2017-01-02 15:11 - 00002062 _____ C:\ProgramData\Microsoft\Windows\Start Menu\FotoLibro.lnk 2017-01-02 14:32 - 2017-01-02 15:11 - 00002046 _____ C:\Users\Public\Desktop\FotoLibro.lnk 2017-01-02 14:32 - 2017-01-02 14:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FotoPrix 2017-01-02 14:17 - 2017-01-13 12:43 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Adobe 2017-01-02 14:17 - 2017-01-13 12:40 - 00000000 ____D C:\Program Files\Adobe 2017-01-02 14:17 - 2017-01-02 14:17 - 00000000 ____D C:\Program Files\Fotoprix 2017-01-02 13:30 - 2017-01-02 14:18 - 00000000 ___RD C:\Users\Jorge\Documents\RocketLifeNetwork 2017-01-02 13:29 - 2017-01-02 14:18 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\HP Photo Creations 2017-01-02 13:29 - 2017-01-02 13:30 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Visan 2017-01-02 13:29 - 2017-01-02 13:29 - 00002096 _____ C:\Users\Jorge\Desktop\HP Photo Creations.lnk 2017-01-02 13:29 - 2017-01-02 13:29 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP 2017-01-02 13:29 - 2017-01-02 13:29 - 00000000 ____D C:\Users\Jorge\AppData\Local\RLPlatform 2017-01-02 12:06 - 2017-01-02 12:06 - 01889187 _____ C:\Users\Jorge\Downloads\tf90002051.dotx 2017-01-02 12:03 - 2017-01-02 12:04 - 00445511 _____ C:\Users\Jorge\Downloads\tf04243464.potx 2017-01-01 17:56 - 2012-06-02 20:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-01-01 17:56 - 2012-06-02 20:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-01-01 17:56 - 2012-06-02 20:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-01-01 17:56 - 2012-06-02 20:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-01-01 17:55 - 2012-06-02 20:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-01-01 17:55 - 2012-06-02 20:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-01-01 17:55 - 2012-06-02 20:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-01-01 17:55 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-01-01 17:55 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-01-01 17:22 - 2017-01-01 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2017-01-01 17:22 - 2017-01-01 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2017-01-01 17:19 - 2017-01-01 17:19 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services 2017-01-01 17:18 - 2017-01-01 17:18 - 00000000 ____D C:\Windows\PCHEALTH 2017-01-01 17:18 - 2017-01-01 17:18 - 00000000 ____D C:\Program Files\Microsoft Sync Framework 2017-01-01 17:18 - 2017-01-01 17:18 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2017-01-01 17:15 - 2017-01-01 17:15 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8 2017-01-01 17:14 - 2017-01-01 17:14 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2017-01-01 17:07 - 2017-01-01 17:07 - 00000000 ____D C:\Users\Jorge\AppData\Local\ElevatedDiagnostics 2017-01-01 16:47 - 2017-01-01 16:48 - 01017572 _____ C:\Users\Jorge\Downloads\o15-ctrremove (1).diagcab 2017-01-01 16:40 - 2017-01-01 16:40 - 00000000 ____D C:\Users\Jorge\Documents\Custom Office Templates 2017-01-01 16:20 - 2017-01-01 17:19 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2017-01-01 16:15 - 2017-01-01 16:15 - 01017572 _____ C:\Users\Jorge\Downloads\o15-ctrremove.diagcab 2017-01-01 13:02 - 2017-01-01 13:02 - 00000000 ____D C:\Program Files\Intel 2017-01-01 13:02 - 2016-12-28 20:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll 2017-01-01 13:01 - 2010-03-10 11:38 - 00000000 ____D C:\Users\Jorge\Downloads\x64 2017-01-01 13:01 - 2010-03-10 11:38 - 00000000 ____D C:\Users\Jorge\Downloads\WIN7 2017-01-01 13:01 - 2010-03-10 11:38 - 00000000 ____D C:\Users\Jorge\Downloads\Lang 2017-01-01 13:01 - 2010-03-10 11:38 - 00000000 ____D C:\Users\Jorge\Downloads\ia64 2017-01-01 13:01 - 2010-03-10 11:38 - 00000000 ____D C:\Users\Jorge\Downloads\All 2017-01-01 13:01 - 2009-12-14 12:33 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Users\Jorge\Downloads\CSVer.dll 2017-01-01 13:01 - 2009-12-14 12:32 - 00072206 _____ C:\Users\Jorge\Downloads\readme.txt 2017-01-01 13:01 - 2009-08-06 15:41 - 00050474 _____ C:\Users\Jorge\Downloads\IIF2v.ini 2017-01-01 13:01 - 2008-02-12 13:26 - 00000774 _____ C:\Users\Jorge\Downloads\IIF2.ini 2017-01-01 13:01 - 2006-11-10 08:25 - 00319456 _____ (Microsoft Corporation) C:\Users\Jorge\Downloads\difxapi.dll 2017-01-01 13:01 - 2006-09-15 10:10 - 00000727 _____ C:\Users\Jorge\Downloads\Help.txt 2017-01-01 11:45 - 2017-01-01 11:45 - 00000000 ____D C:\Program Files\Lame For Audacity 2017-01-01 11:44 - 2017-01-01 11:45 - 00527423 _____ ( ) C:\Users\Jorge\Downloads\Lame_v3.99.3_for_Windows.exe 2017-01-01 11:39 - 2017-01-14 11:19 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Audacity 2017-01-01 11:39 - 2017-01-01 11:39 - 00000000 ____D C:\Users\Jorge\AppData\Local\Audacity 2017-01-01 11:38 - 2017-01-01 11:39 - 00000000 ____D C:\Program Files\Audacity 2017-01-01 11:38 - 2017-01-01 11:38 - 00000981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2017-01-01 11:38 - 2017-01-01 11:38 - 00000969 _____ C:\Users\Public\Desktop\Audacity.lnk 2017-01-01 11:37 - 2017-01-01 11:37 - 26496761 _____ (Audacity Team ) C:\Users\Jorge\Downloads\audacity-win-2-1-2.exe 2017-01-01 06:42 - 2017-01-01 06:43 - 00000000 ____D C:\Users\Jorge\AppData\Local\MSfree Inc 2017-01-01 06:41 - 2017-01-01 06:41 - 00002166 _____ C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2017-01-01 06:41 - 2017-01-01 06:41 - 00002068 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2017-01-01 06:41 - 2017-01-01 06:41 - 00002068 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2017-01-01 06:41 - 2017-01-01 06:41 - 00002068 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2017-01-01 06:41 - 2017-01-01 06:41 - 00000000 ___RD C:\Users\Jorge\OneDrive 2017-01-01 06:41 - 2017-01-01 06:41 - 00000000 ____D C:\Program Files\Microsoft OneDrive 2017-01-01 06:40 - 2017-01-01 06:40 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2017-01-01 06:40 - 2017-01-01 06:40 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-01-01 06:30 - 2017-01-01 16:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools 2017-01-01 06:26 - 2017-01-01 16:22 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft 2017-01-01 06:26 - 2017-01-01 16:22 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-01-01 06:23 - 2017-01-01 06:23 - 01804512 _____ C:\WindowsGABRIOLA.tt2 2017-01-01 06:22 - 2017-01-01 17:18 - 00000000 ____D C:\Program Files\Microsoft Office 2017-01-01 06:22 - 2017-01-01 06:22 - 00000000 ____D C:\Program Files\Microsoft Office 15 2017-01-01 05:32 - 2017-01-01 06:11 - 00000000 ____D C:\Users\Jorge\.calme 2017-01-01 05:20 - 2017-01-01 05:20 - 00000000 ____D C:\Users\Jorge\AppData\Local\YSearchUtil 2017-01-01 05:18 - 2017-01-01 05:18 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Sun 2017-01-01 05:18 - 2017-01-01 05:18 - 00000000 ____D C:\Users\Jorge\AppData\LocalLow\Sun 2017-01-01 05:18 - 2017-01-01 05:18 - 00000000 ____D C:\Program Files\Common Files\Java 2017-01-01 05:17 - 2017-01-01 05:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-01-01 05:17 - 2017-01-01 05:16 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2017-01-01 05:16 - 2017-01-01 05:16 - 00000000 ____D C:\Users\Todos os Usuários\Oracle 2017-01-01 05:16 - 2017-01-01 05:16 - 00000000 ____D C:\ProgramData\Oracle 2017-01-01 05:16 - 2017-01-01 05:16 - 00000000 ____D C:\Program Files\Java 2017-01-01 05:04 - 2017-01-01 05:05 - 00737344 _____ (Oracle Corporation) C:\Users\Jorge\Downloads\chromeinstall-8u111.exe 2017-01-01 04:45 - 2017-01-01 04:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Calme 2017-01-01 04:45 - 2017-01-01 04:45 - 00000000 ____D C:\Program Files\Calme 2017-01-01 04:36 - 2017-01-01 04:37 - 02414866 _____ (Metin Elma ) C:\Users\Jorge\Downloads\CalmeSetup.exe 2017-01-01 04:31 - 2017-01-01 06:18 - 00000000 ____D C:\Users\Jorge\Downloads\MICROSOFT Office PRO Plus 2016 v16.0.4266.1003 RTM + Activator [TechTools.NET] 2017-01-01 04:12 - 2017-01-02 14:10 - 00002215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-01-01 04:12 - 2017-01-02 14:10 - 00002203 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-01-01 04:10 - 2017-01-01 04:12 - 00000000 ____D C:\Program Files\Google 2017-01-01 04:08 - 2017-01-01 04:08 - 01065376 _____ (Google Inc.) C:\Users\Jorge\Downloads\ChromeSetup.exe 2017-01-01 00:59 - 2017-01-01 01:02 - 00000000 ____D C:\Windows\system32\appmgmt 2017-01-01 00:45 - 2017-01-01 11:35 - 00002928 _____ C:\Users\Jorge\Documents\Register Sound Forge Audio Studio.htm 2017-01-01 00:30 - 2016-04-10 20:02 - 00000000 ____D C:\Users\Jorge\Downloads\SF10-CR4-K3Y 2017-01-01 00:28 - 2017-01-01 00:28 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\WinRAR 2016-12-31 23:51 - 2017-01-01 00:59 - 00000000 ____D C:\Users\Todos os Usuários\NETC 2016-12-31 23:51 - 2017-01-01 00:59 - 00000000 ____D C:\ProgramData\NETC 2016-12-31 23:51 - 2017-01-01 00:59 - 00000000 ____D C:\Program Files\UTILILAB 2016-12-31 23:51 - 2016-12-31 23:51 - 00000000 ____D C:\Users\Todos os Usuários\UTILILAB 2016-12-31 23:51 - 2016-12-31 23:51 - 00000000 ____D C:\Users\Todos os Usuários\clp 2016-12-31 23:51 - 2016-12-31 23:51 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\UTILILAB 2016-12-31 23:51 - 2016-12-31 23:51 - 00000000 ____D C:\ProgramData\UTILILAB 2016-12-31 23:51 - 2016-12-31 23:51 - 00000000 ____D C:\ProgramData\clp 2016-12-31 23:50 - 2016-12-31 23:50 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-12-31 23:50 - 2016-12-31 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-12-31 23:50 - 2016-12-31 23:50 - 00000000 ____D C:\Program Files\WinRAR 2016-12-31 23:49 - 2017-01-18 18:59 - 00000000 ___SD C:\Users\Jorge\AppData\LocalLow\Temp 2016-12-31 23:49 - 2016-12-31 23:49 - 01183584 _____ C:\Users\Jorge\Downloads\wrarulabinst1.exe 2016-12-31 23:49 - 2016-12-31 23:49 - 01183584 _____ C:\Users\Jorge\Downloads\wrarulabinst1 (1).exe 2016-12-31 23:48 - 2017-01-18 18:59 - 00000000 ____D C:\Users\Jorge\AppData\LocalLow\uTorrent 2016-12-31 23:48 - 2016-12-31 23:48 - 00002639 _____ C:\Users\Jorge\Desktop\µTorrent.lnk 2016-12-31 23:48 - 2016-12-31 23:48 - 00002639 _____ C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2016-12-31 23:46 - 2017-01-18 19:48 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\uTorrent 2016-12-31 23:32 - 2017-01-14 09:30 - 00000000 ____D C:\Program Files\Sony 2016-12-31 23:32 - 2017-01-01 06:44 - 00000000 ____D C:\Users\Jorge\AppData\Local\Sony 2016-12-31 23:31 - 2017-01-14 09:30 - 00000000 ____D C:\Users\Todos os Usuários\Sony 2016-12-31 23:31 - 2017-01-14 09:30 - 00000000 ____D C:\ProgramData\Sony 2016-12-31 23:30 - 2017-01-01 06:44 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Sony 2016-12-31 23:24 - 2016-12-31 23:25 - 01852464 _____ ( ) C:\Users\Jorge\Downloads\Baixaki_sound-forge-audio-studio.exe 2016-12-31 23:11 - 2016-12-31 23:13 - 00264073 _____ C:\Users\Jorge\Downloads\Baixaki_audacity [1].exe 2016-12-31 23:11 - 2016-12-31 23:11 - 00000000 __RSH C:\MSDOS.SYS 2016-12-31 23:11 - 2016-12-31 23:11 - 00000000 __RSH C:\IO.SYS 2016-12-31 23:08 - 2016-12-31 23:09 - 01852464 _____ ( ) C:\Users\Jorge\Downloads\Baixaki_audacity.exe 2016-12-31 17:23 - 2016-12-31 17:23 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Hewlett-Packard 2016-12-31 15:05 - 2016-12-31 15:05 - 00002177 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk 2016-12-31 15:05 - 2016-12-31 15:05 - 00000000 ____D C:\System.sav 2016-12-31 15:05 - 2016-12-31 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2016-12-31 15:04 - 2016-12-31 15:04 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\hpqLog 2016-12-31 14:40 - 2017-01-14 13:18 - 00016276 _____ C:\Windows\PFRO.log 2016-12-31 12:17 - 2016-12-31 12:41 - 00055531 _____ C:\Users\Jorge\Downloads\FALEI TANGO 2017.png 2016-12-31 12:03 - 2016-12-31 12:03 - 00247829 _____ C:\Users\Jorge\Downloads\Joia-Joinha.jpg 2016-12-31 12:02 - 2016-12-31 12:02 - 00028088 _____ C:\Users\Jorge\Downloads\alfabeto-fonetico-internacional.jpg 2016-12-31 11:47 - 2017-01-01 17:32 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2016-12-31 11:47 - 2017-01-01 17:32 - 00000000 ____D C:\ProgramData\Microsoft Help 2016-12-31 11:47 - 2016-12-31 11:47 - 00000000 ____D C:\Users\Jorge\AppData\Local\Microsoft Help 2016-12-31 11:38 - 2016-12-31 11:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2016-12-29 02:21 - 2016-12-29 02:21 - 00000000 __SHD C:\Boot 2016-12-29 02:21 - 2016-12-28 20:55 - 00000000 ____D C:\Windows\Panther 2016-12-29 02:21 - 2009-07-13 23:38 - 00383562 __RSH C:\bootmgr 2016-12-29 02:13 - 2016-12-29 02:13 - 00000000 ____D C:\Windows.old 2016-12-28 21:43 - 2017-01-01 16:18 - 00000000 ____D C:\Users\Todos os Usuários\Hewlett-Packard 2016-12-28 21:43 - 2017-01-01 16:18 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2016-12-28 21:41 - 2017-01-01 06:38 - 00000000 ____D C:\Program Files\Microsoft.NET 2016-12-28 21:40 - 2009-11-25 11:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2016-12-28 21:40 - 2009-11-25 11:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll 2016-12-28 21:40 - 2009-11-25 11:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe 2016-12-28 21:40 - 2009-11-25 11:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll 2016-12-28 21:40 - 2009-11-25 11:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll 2016-12-28 21:20 - 2017-01-09 01:22 - 00000000 ____D C:\Program Files\Microsoft 2016-12-28 21:20 - 2017-01-04 21:59 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\HpUpdate 2016-12-28 21:20 - 2017-01-02 13:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2016-12-28 21:20 - 2016-12-28 21:20 - 00002272 _____ C:\Users\Public\Desktop\HP Deskjet 3050 J610 series.lnk 2016-12-28 21:20 - 2016-12-28 21:20 - 00001194 _____ C:\Users\Public\Desktop\Comprar suprimentos - HP Deskjet 3050 J610 series.lnk 2016-12-28 21:20 - 2016-12-28 21:20 - 00000000 ____D C:\Users\Todos os Usuários\Visan 2016-12-28 21:20 - 2016-12-28 21:20 - 00000000 ____D C:\Users\Todos os Usuários\HP 2016-12-28 21:20 - 2016-12-28 21:20 - 00000000 ____D C:\ProgramData\Visan 2016-12-28 21:20 - 2016-12-28 21:20 - 00000000 ____D C:\ProgramData\HP 2016-12-28 21:20 - 2016-12-28 21:20 - 00000000 ____D C:\Program Files\HP 2016-12-28 21:20 - 2012-10-17 04:04 - 00580712 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM9311.dll 2016-12-28 21:19 - 2016-12-28 21:34 - 00000000 ____D C:\Users\Jorge\AppData\Local\HP 2016-12-28 21:19 - 2016-12-28 21:19 - 00000057 _____ C:\Users\Todos os Usuários\Ament.ini 2016-12-28 21:19 - 2016-12-28 21:19 - 00000057 _____ C:\ProgramData\Ament.ini 2016-12-28 21:18 - 2016-12-28 21:18 - 00000000 ____D C:\Users\Jorge\Downloads\HP Downloads 2016-12-28 21:17 - 2016-12-31 15:49 - 00000000 ____D C:\Users\Jorge\AppData\Local\Hewlett-Packard 2016-12-28 21:17 - 2016-12-31 15:05 - 00000000 ____D C:\Program Files\Hewlett-Packard 2016-12-28 21:15 - 2016-12-28 21:15 - 04057776 _____ (Oleg N. Scherbakov) C:\Users\Jorge\Downloads\HPSupportSolutionsFramework-12.5.32.203.exe 2016-12-28 21:07 - 2017-01-17 06:14 - 03133770 ____H C:\Users\Jorge\AppData\Local\IconCache.db 2016-12-28 21:06 - 2016-12-28 21:06 - 01002008 _____ (Intel Corporation) C:\Windows\system32\igxpun.exe 2016-12-28 21:06 - 2016-12-28 21:06 - 00000000 ____D C:\Windows\system32\Lang 2016-12-28 21:05 - 2016-12-28 21:06 - 00000000 ____D C:\Users\Jorge\Downloads\Video 2016-12-28 21:04 - 2017-01-14 13:00 - 00000000 __SHD C:\Windows\Installer 2016-12-28 21:04 - 2016-12-28 21:04 - 00000000 ____D C:\Program Files\Cisco 2016-12-28 21:03 - 2016-12-31 15:04 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2016-12-28 21:03 - 2016-12-28 21:04 - 00000000 ____D C:\Program Files\REALTEK PCIE Wireless LAN Driver 2016-12-28 21:03 - 2016-12-28 21:02 - 00862208 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192se.sys 2016-12-28 21:03 - 2016-12-28 21:02 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll 2016-12-28 21:03 - 2016-12-28 21:02 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\Rtlihvs.dll 2016-12-28 21:03 - 2016-12-28 21:02 - 00380928 _____ (Realtek) C:\Windows\system32\RtlUI2.exe 2016-12-28 21:03 - 2016-12-28 21:02 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe 2016-12-28 21:03 - 2016-12-28 21:02 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\RTLExtUI.dll 2016-12-28 21:03 - 2016-12-28 21:02 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\RTLExtUI.dll 2016-12-28 21:03 - 2009-02-05 02:49 - 00451072 _____ C:\Windows\system32\ISSRemoveSP.exe 2016-12-28 21:02 - 2016-12-28 21:02 - 00000000 ____D C:\Users\Jorge\Downloads\Wireless (1) 2016-12-28 20:59 - 2017-01-12 23:33 - 00195648 _____ C:\Users\Jorge\AppData\Local\GDIPFONTCACHEV1.DAT 2016-12-28 20:57 - 2016-10-26 16:29 - 00407720 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-12-28 20:56 - 2016-12-28 20:56 - 00001393 _____ C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-12-28 20:56 - 2016-12-28 20:56 - 00000402 ___SH C:\Users\Jorge\Documents\desktop.ini 2016-12-28 20:56 - 2016-12-28 20:56 - 00000338 ___SH C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini 2016-12-28 20:56 - 2016-12-28 20:56 - 00000282 ___SH C:\Users\Jorge\Downloads\desktop.ini 2016-12-28 20:56 - 2016-12-28 20:56 - 00000282 ___SH C:\Users\Jorge\Desktop\desktop.ini 2016-12-28 20:56 - 2016-12-28 20:56 - 00000174 ___SH C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini 2016-12-28 20:56 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\Searches 2016-12-28 20:56 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\Contacts 2016-12-28 20:56 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2016-12-28 20:56 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2016-12-28 20:56 - 2016-12-28 20:56 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Identities 2016-12-28 20:55 - 2017-01-18 19:48 - 00000000 ____D C:\Users\Jorge\AppData\Local\Temp 2016-12-28 20:55 - 2017-01-18 19:47 - 02359296 ___SH C:\Users\Jorge\NTUSER.DAT 2016-12-28 20:55 - 2017-01-18 19:47 - 00262144 ___SH C:\Users\Jorge\ntuser.dat.LOG1 2016-12-28 20:55 - 2017-01-18 19:46 - 00000000 ___RD C:\Users\Jorge\Downloads 2016-12-28 20:55 - 2017-01-18 18:58 - 00000000 ____D C:\Users\Jorge\AppData\Local 2016-12-28 20:55 - 2017-01-17 06:14 - 00000000 ___RD C:\Users\Jorge\Desktop 2016-12-28 20:55 - 2017-01-17 06:14 - 00000000 ___RD C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs 2016-12-28 20:55 - 2017-01-15 17:10 - 00000000 ____D C:\Users\Jorge 2016-12-28 20:55 - 2017-01-15 17:08 - 00000000 ___SD C:\Users\Jorge\AppData\Roaming\Microsoft 2016-12-28 20:55 - 2017-01-14 12:26 - 00000000 ___RD C:\Users\Jorge\Documents 2016-12-28 20:55 - 2017-01-13 13:53 - 00000000 ____D C:\Users\Jorge\AppData\Local\Microsoft 2016-12-28 20:55 - 2017-01-13 12:43 - 00000000 ____D C:\Users\Jorge\AppData\LocalLow 2016-12-28 20:55 - 2017-01-13 00:11 - 00000000 ____D C:\Users\Jorge\AppData\Roaming 2016-12-28 20:55 - 2017-01-12 23:30 - 00000000 ___RD C:\Users\Jorge\Pictures 2016-12-28 20:55 - 2017-01-12 08:28 - 00000000 ___RD C:\Users\Jorge\Music 2016-12-28 20:55 - 2017-01-08 15:19 - 00000000 ____D C:\Users\Jorge\AppData\Local\VirtualStore 2016-12-28 20:55 - 2017-01-01 06:41 - 00000000 ___RD C:\Users\Jorge\Links 2016-12-28 20:55 - 2016-12-28 21:07 - 00524288 ___SH C:\Users\Jorge\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms 2016-12-28 20:55 - 2016-12-28 21:07 - 00524288 ___SH C:\Users\Jorge\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms 2016-12-28 20:55 - 2016-12-28 21:07 - 00065536 ___SH C:\Users\Jorge\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf 2016-12-28 20:55 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\Videos 2016-12-28 20:55 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\Saved Games 2016-12-28 20:55 - 2016-12-28 20:56 - 00000000 ___RD C:\Users\Jorge\Favorites 2016-12-28 20:55 - 2016-12-28 20:55 - 00000020 ___SH C:\Users\Jorge\ntuser.ini 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Usuário Padrão 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Todos os Usuários 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\SendTo 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Recent 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Modelos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Meus documentos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Menu Iniciar 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Documents\Minhas músicas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Documents\Minhas imagens 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Documents\Meus vídeos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Cookies 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Configurações locais 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\AppData\Local\Temporary Internet Files 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\AppData\Local\Histórico 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\AppData\Local\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Ambiente de rede 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Jorge\Ambiente de impressão 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Modelos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Meus documentos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Configurações locais 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Ambiente de rede 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Modelos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Favoritos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Documentos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 _SHDL C:\Arquivos de Programas 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 __SHD C:\Recovery 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 ___SH C:\Users\Jorge\ntuser.dat.LOG2 2016-12-28 20:55 - 2016-12-28 20:55 - 00000000 ___HD C:\Users\Jorge\AppData 2016-12-28 20:55 - 2009-07-14 05:48 - 00000000 ____D C:\Users\Jorge\AppData\Roaming\Media Center Programs 2016-12-28 20:55 - 2009-07-14 02:42 - 00000000 ___RD C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2016-12-28 20:55 - 2009-07-14 02:37 - 00000000 ___RD C:\Users\Jorge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2016-12-28 20:50 - 2016-12-28 20:50 - 00000000 ____D C:\Users\Jorge\Downloads\Chipset (2) 2016-12-28 20:46 - 2017-01-01 11:43 - 00000000 ____D C:\Users\Jorge\AppData\Local\Google 2016-12-28 20:46 - 2016-12-28 20:46 - 00001648 _____ C:\Users\Jorge\Desktop\chrome - Atalho.lnk 2016-12-28 20:45 - 2016-12-28 20:46 - 00000000 __SHD C:\Users\Jorge\AppData\LocalLow\Microsoft 2016-12-28 20:44 - 2017-01-18 19:04 - 01633534 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-28 20:42 - 2016-12-28 20:42 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2016-12-28 20:42 - 2016-12-28 20:42 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2016-12-28 20:39 - 2017-01-18 19:01 - 01997813 _____ C:\Windows\WindowsUpdate.log 2016-12-28 20:39 - 2016-12-28 21:40 - 00000000 ____D C:\Windows\SoftwareDistribution 2016-12-28 20:39 - 2016-12-28 20:39 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2016-12-28 20:37 - 2016-12-28 20:41 - 00001313 _____ C:\Windows\TSSysprep.log 2016-12-28 20:36 - 2017-01-18 19:47 - 00000000 ____D C:\Windows\Prefetch 2016-12-28 20:36 - 2017-01-18 18:56 - 1601327104 ___SH C:\hiberfil.sys 2016-12-24 22:10 - 2016-12-24 22:12 - 00000000 ____D C:\Mix 2016-12-13 13:49 - 2017-01-14 13:00 - 00000000 ___HD C:\Config.Msi 2016-11-29 16:42 - 2016-11-29 16:42 - 00000000 __RHD C:\MSOCache 2016-11-18 20:09 - 2016-12-28 19:49 - 00000351 _____ C:\prefs.js 2016-11-02 16:59 - 2016-09-15 15:17 - 00000210 ____H C:\Boot.BAK 2016-11-02 15:38 - 2016-12-29 02:21 - 00008192 __RSH C:\BOOTSECT.BAK 2016-11-01 12:53 - 2017-01-04 13:30 - 00000000 ____D C:\win7 2016-11-01 11:44 - 2016-11-20 23:45 - 00000000 ____D C:\Pen driver ==================== Três Meses Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-01-18 19:04 - 2009-07-29 16:46 - 00705268 _____ C:\Windows\system32\prfh0416.dat 2017-01-18 19:04 - 2009-07-29 16:46 - 00147108 _____ C:\Windows\system32\prfc0416.dat 2017-01-18 19:04 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\inf 2017-01-18 18:57 - 2009-07-14 02:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-01-17 06:15 - 2009-07-14 02:34 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-01-17 06:15 - 2009-07-14 02:34 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-01-15 17:27 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\NDF 2017-01-13 11:55 - 2009-07-14 02:33 - 00753072 _____ C:\Windows\system32\FNTCACHE.DAT 2017-01-02 22:31 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\rescache 2017-01-02 14:57 - 2009-07-14 00:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-01-01 17:20 - 2009-07-14 05:49 - 00000000 ____D C:\Windows\ShellNew 2017-01-01 17:20 - 2009-07-14 02:52 - 00000000 ____D C:\Program Files\MSBuild 2017-01-01 17:15 - 2009-07-14 00:37 - 00000000 ____D C:\Program Files\Common Files\System 2017-01-01 17:15 - 2009-07-14 00:04 - 00000478 _____ C:\Windows\win.ini 2016-12-31 11:38 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\Drivers\UMDF 2016-12-29 02:21 - 2016-09-15 15:17 - 00000354 __RSH C:\Boot.ini.saved 2016-12-29 02:21 - 2009-07-14 02:57 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG 2016-12-29 02:21 - 2009-07-14 02:52 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2016-12-28 22:06 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\Logs 2016-12-28 21:20 - 2009-07-14 02:52 - 00000000 ____D C:\Windows\twain_32 2016-12-28 21:20 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\LogFiles 2016-12-28 21:05 - 2010-03-08 13:31 - 05702656 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 04804608 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd32.sys 2016-12-28 21:05 - 2010-03-08 13:31 - 04104192 _____ (Intel Corporation) C:\Windows\system32\ig4icd32.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 03829760 _____ (Intel Corporation) C:\Windows\system32\igdumd32.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 02686976 _____ (Intel Corporation) C:\Windows\system32\ig4dev32.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 01921265 _____ C:\Windows\system32\iglhxa32.cpa 2016-12-28 21:05 - 2010-03-08 13:31 - 00672792 _____ (Intel Corporation) C:\Windows\system32\igfxcfg.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00536576 _____ (Intel Corporation) C:\Windows\system32\igdumdx32.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00310784 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00304640 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00303616 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00303616 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00303104 _____ (Intel Corporation) C:\Windows\system32\igfxresp.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00299520 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00294912 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00291328 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00289280 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00288256 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00287744 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00281088 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00280576 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00280064 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00277504 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00275968 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00262656 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00257536 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00252952 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00252416 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00249856 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00218112 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00206848 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00205312 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00199680 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00179712 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00178176 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2016-12-28 21:05 - 2010-03-08 13:31 - 00173592 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00173080 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00155648 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2023.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00150552 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00141848 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2016-12-28 21:05 - 2010-03-08 13:31 - 00130048 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00119296 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2016-12-28 21:05 - 2010-03-08 13:31 - 00094208 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00060254 _____ C:\Windows\system32\iglhxg32.vp 2016-12-28 21:05 - 2010-03-08 13:31 - 00060226 _____ C:\Windows\system32\iglhxc32.vp 2016-12-28 21:05 - 2010-03-08 13:31 - 00060015 _____ C:\Windows\system32\iglhxo32.vp 2016-12-28 21:05 - 2010-03-08 13:31 - 00059392 _____ (Intel Corporation) C:\Windows\system32\oemdspif.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00051712 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00039336 _____ C:\Windows\system32\iglhxs32.vp 2016-12-28 21:05 - 2010-03-08 13:31 - 00023552 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2016-12-28 21:05 - 2010-03-08 13:31 - 00001090 _____ C:\Windows\system32\iglhxa32.vp 2016-12-28 20:56 - 2009-07-14 02:52 - 00000000 ____D C:\Windows\system32\restore 2016-12-28 20:56 - 2009-07-14 00:36 - 00000000 __SHD C:\$Recycle.Bin 2016-12-28 20:55 - 2009-07-14 02:34 - 00000000 ____D C:\Windows\debug 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 __RHD C:\Users\Default 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ___RD C:\Users\Public\Documents 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ___RD C:\Users\Default\Documents 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ___RD C:\Users 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\Recovery 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ____D C:\Users\Default\AppData\Local 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ____D C:\Users\Default User\AppData\Local 2016-12-28 20:55 - 2009-07-14 00:37 - 00000000 ____D C:\Program Files\Windows NT 2016-12-28 20:45 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\CodeIntegrity 2016-12-28 20:44 - 2009-07-14 00:37 - 00000000 __RHD C:\Users\Public\Libraries 2016-12-28 20:43 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\wbem 2016-12-28 20:42 - 2009-07-14 02:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2016-12-28 20:42 - 2009-07-14 02:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2016-12-28 20:42 - 2009-07-14 02:46 - 00051953 _____ C:\Windows\system32\license.rtf 2016-12-28 20:42 - 2009-07-14 02:41 - 00000964 ___SH C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini 2016-12-28 20:42 - 2009-07-14 00:37 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2016-12-28 20:41 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\sysprep 2016-12-28 20:40 - 2009-07-14 00:37 - 00000000 ____D C:\Windows\system32\config\TxR 2016-12-28 20:37 - 2009-07-14 05:49 - 00000000 ____D C:\Windows\CSC 2016-12-28 20:37 - 2009-07-14 02:34 - 00001774 _____ C:\Windows\DtcInstall.log 2016-12-28 20:36 - 2009-07-14 00:03 - 00262144 ___SH C:\Users\Default\NTUSER.DAT 2016-12-28 20:36 - 2009-07-14 00:03 - 00197632 ____H C:\Users\Default\NTUSER.DAT.LOG1 ==================== Arquivos na raiz de alguns diretórios ======= 2016-12-28 21:19 - 2016-12-28 21:19 - 0000057 _____ () C:\ProgramData\Ament.ini 2017-01-14 11:09 - 2017-01-14 11:09 - 0004892 _____ () C:\ProgramData\auqrgqib.ttw 2017-01-14 10:18 - 2017-01-14 10:18 - 0000016 _____ () C:\ProgramData\mntemp 2017-01-14 12:30 - 2017-01-14 12:30 - 0004939 _____ () C:\ProgramData\ubzyegls.kzt Alguns arquivos em TEMP: ==================== C:\Users\Jorge\AppData\Local\Temp\mixcraft7-b316-setup.exe C:\Users\Jorge\AppData\Local\Temp\NetFramework45.exe C:\Users\Jorge\AppData\Local\Temp\patch-Mix7-32-to-7.0.7.316.exe C:\Users\Jorge\AppData\Local\Temp\Update 4.9.48.284.exe C:\Users\Jorge\AppData\Local\Temp\vcredist_x86.exe C:\Users\Jorge\AppData\Local\Temp\wrar54br.exe ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente ==================== BCD ================================ Gerenciador de Inicializa‡Æo do Windows -------------------- identificador {bootmgr} device partition=C: description Windows Boot Manager locale pt-BR inherit {globalsettings} default {current} resumeobject {3a4a4d53-cd7e-11e6-be44-fc72863cd4b5} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Carregador de Inicializa‡Æo do Windows ------------------- identificador {current} device partition=C: path \Windows\system32\winload.exe description Windows 7 locale pt-BR inherit {bootloadersettings} recoverysequence {3a4a4d55-cd7e-11e6-be44-fc72863cd4b5} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {3a4a4d53-cd7e-11e6-be44-fc72863cd4b5} nx OptIn Carregador de Inicializa‡Æo do Windows ------------------- identificador {3a4a4d55-cd7e-11e6-be44-fc72863cd4b5} device ramdisk=[C:]\Recovery\3a4a4d55-cd7e-11e6-be44-fc72863cd4b5\Winre.wim,{3a4a4d56-cd7e-11e6-be44-fc72863cd4b5} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\3a4a4d55-cd7e-11e6-be44-fc72863cd4b5\Winre.wim,{3a4a4d56-cd7e-11e6-be44-fc72863cd4b5} systemroot \windows nx OptIn winpe Yes Continuar da Hiberna‡Æo --------------------- identificador {3a4a4d53-cd7e-11e6-be44-fc72863cd4b5} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale pt-BR inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys pae Yes debugoptionenabled No Testador de Mem¢ria do Windows --------------------- identificador {memdiag} device partition=C: path \boot\memtest.exe description Diagn¢stico de Mem¢ria do Windows locale pt-BR inherit {globalsettings} badmemoryaccess Yes Carregador de Sistema Operacional Herdado do Windows ------------------------ identificador {ntldr} device partition=C: path \ntldr description VersÆo anterior do Windows Configura‡äes de EMS ------------ identificador {emssettings} bootems Yes Configura‡äes do Depurador ----------------- identificador {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Defeitos de RAM ----------- identificador {badmemory} Configura‡äes Globais --------------- identificador {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Configura‡äes do Carregador de Inicializa‡Æo -------------------- identificador {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Configura‡äes do Hypervisor ------------------- identificador {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Configura‡äes do Carregador de Retorno ---------------------- identificador {resumeloadersettings} inherit {globalsettings} Op‡äes de dispositivo -------------- identificador {3a4a4d56-cd7e-11e6-be44-fc72863cd4b5} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\3a4a4d55-cd7e-11e6-be44-fc72863cd4b5\boot.sdi LastRegBack: 2017-01-13 03:27 ==================== Fim de FRST.txt ============================