Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 15-02-2017 Executado por Robson (administrador) em ARTE (15-02-2017 01:03:38) Executando a partir de C:\Users\Robson\Downloads Perfis Carregados: Robson (Perfis Disponíveis: Robson) Platform: Windows 8.1 Pro (Update) (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: IE) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\Locator.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\D-Link\DWA-123\RtlService.exe (D-Link Corp.) C:\Program Files (x86)\D-Link\DWA-123\RtWlan.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe ==================== Registro (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-02-13] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) HKU\S-1-5-21-354422575-759729991-2597353769-1002\...\Run: [Google Update] => C:\Users\Robson\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2017-02-13] (Google Inc.) <===== ATENÇÃO ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-02-13] (AVAST Software) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) GroupPolicy: Restrição <======= ATENÇÃO ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 177.221.96.8 177.221.96.2 0.0.0.0 Tcpip\..\Interfaces\{47275F51-A984-41F0-A2DB-B5190F4D2002}: [DhcpNameServer] 177.221.96.8 177.221.96.2 0.0.0.0 Tcpip\..\Interfaces\{812202DD-8443-4BC2-97AE-ADC2F2C1F360}: [DhcpNameServer] 187.123.29.56 187.123.29.51 201.6.4.116 Internet Explorer: ================== HKU\S-1-5-21-354422575-759729991-2597353769-1002\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-02-13] (AVAST Software) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-13] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-02-13] (AVAST Software) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-13] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) FireFox: ======== FF DefaultProfile: zdk5l2nk.default FF ProfilePath: C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\zdk5l2nk.default [2017-02-15] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-02-13] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-02-13] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-13] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-02-15] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-354422575-759729991-2597353769-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Robson\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll [2017-02-13] (Google Inc.) FF Plugin HKU\S-1-5-21-354422575-759729991-2597353769-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Robson\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll [2017-02-13] (Google Inc.) Chrome: ======= CHR DefaultProfile: Default StartMenuInternet: Google Chrome - C:\Users\Robson\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7142136 2017-02-13] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-02-13] (AVAST Software) R2 RtlService; C:\Program Files (x86)\D-Link\DWA-123\RtlService.exe [36864 2012-05-10] (Realtek Semiconductor Corp.) [Arquivo não assinado] S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [Arquivo não assinado] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309784 2017-02-13] (AVAST Software s.r.o.) R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-02-13] (AVAST Software s.r.o.) R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-02-13] (AVAST Software s.r.o.) R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-02-13] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-02-13] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-02-13] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126088 2017-02-13] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-02-13] (AVAST Software) R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [74680 2017-02-13] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [991496 2017-02-13] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [547904 2017-02-13] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-02-13] (AVAST Software) R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337080 2017-02-13] (AVAST Software) R3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [3860224 2015-08-05] (Realtek Semiconductor Corporation ) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2014-03-23] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [257880 2014-03-23] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três Meses Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-02-15 01:00 - 2017-02-15 01:03 - 00012123 _____ C:\Users\Robson\Downloads\FRST.txt 2017-02-15 01:00 - 2017-02-15 01:00 - 00023981 _____ C:\Users\Robson\Downloads\Addition.txt 2017-02-15 00:58 - 2017-02-15 01:03 - 00000000 ____D C:\FRST 2017-02-15 00:58 - 2017-02-15 00:58 - 02729024 _____ (DLL-Files.com Client ) C:\Users\Robson\Downloads\clientsetup_d-0.exe 2017-02-15 00:58 - 2017-02-15 00:58 - 00001137 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Todos os Usuários\SWCUTemp 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DLL-files.com 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DFXCT 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client 2017-02-15 00:58 - 2017-02-15 00:58 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client 2017-02-15 00:56 - 2017-02-15 00:57 - 02422784 _____ (Farbar) C:\Users\Robson\Downloads\FRST64.exe 2017-02-15 00:51 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll 2017-02-15 00:50 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Windows\system\vcruntime140.dll 2017-02-15 00:45 - 2017-02-15 00:47 - 15068056 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\vc_redist.x64.exe 2017-02-15 00:25 - 2015-06-10 19:10 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2017-02-15 00:24 - 2017-02-15 00:28 - 00000000 ____D C:\Users\Robson\Downloads\__64-api-ms-win-crt-heap-l1-1-0.dll10.0.10137.0 2017-02-15 00:23 - 2017-02-15 00:23 - 00007392 _____ C:\Users\Robson\Downloads\__64-api-ms-win-crt-heap-l1-1-0.dll10.0.10137.0.zip 2017-02-15 00:18 - 2017-02-15 00:18 - 00003310 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore 2017-02-15 00:18 - 2017-02-15 00:18 - 00000000 ____D C:\Program Files (x86)\Corel 2017-02-15 00:18 - 2017-02-15 00:17 - 00003079 _____ C:\Users\Public\Desktop\Corel PHOTO-PAINT X8 (64-Bit).lnk 2017-02-15 00:18 - 2017-02-15 00:17 - 00003072 _____ C:\Users\Public\Desktop\Corel CAPTURE X8 (64-Bit).lnk 2017-02-15 00:18 - 2017-02-15 00:17 - 00003031 _____ C:\Users\Public\Desktop\CorelDRAW X8 (64-Bit).lnk 2017-02-15 00:18 - 2017-02-15 00:17 - 00002363 _____ C:\Users\Public\Desktop\Corel CONNECT X8 (64-Bit).lnk 2017-02-15 00:18 - 2017-02-15 00:17 - 00002276 _____ C:\Users\Public\Desktop\Corel Font Manager X8 (64-Bit).lnk 2017-02-15 00:17 - 2017-02-15 00:18 - 00000000 ____D C:\Program Files\Corel 2017-02-15 00:17 - 2017-02-15 00:17 - 00000000 ____D C:\Users\Public\Documents\Corel 2017-02-15 00:17 - 2017-02-15 00:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X8 (64-bit) 2017-02-15 00:08 - 2017-02-15 00:08 - 00001991 _____ C:\Users\Robson\Downloads\__32-api-ms-win-crt-heap-l1-1-0.dll10.0.10046.0.zip 2017-02-15 00:08 - 2015-08-25 22:12 - 00003584 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\api-ms-win-crt-heap-l1-1-0.dll 2017-02-15 00:08 - 2012-02-05 13:26 - 00000937 _____ C:\Users\Robson\Downloads\readme.txt 2017-02-15 00:07 - 2017-02-15 00:07 - 00000000 ____D C:\Windows\LastGood.Tmp 2017-02-15 00:04 - 2017-02-15 00:05 - 01005170 _____ C:\Users\Robson\Downloads\Windows8.1-KB2999226-x64.msu 2017-02-14 23:55 - 2015-06-23 15:00 - 00088248 _____ (Microsoft Corporation) C:\Users\Robson\Downloads\vcruntime140.dll 2017-02-14 23:51 - 2017-02-14 23:51 - 00047223 _____ C:\Users\Robson\Downloads\vcruntime140.zip 2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Macromedia 2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Corel 2017-02-14 23:42 - 2017-02-14 23:42 - 00000000 ____D C:\Program Files (x86)\gs 2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\Users\Todos os Usuários\VsTelemetry 2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\ProgramData\VsTelemetry 2017-02-14 23:41 - 2017-02-14 23:41 - 00000000 ____D C:\Program Files\Common Files\Corel 2017-02-14 23:40 - 2017-02-15 00:47 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2017-02-14 23:40 - 2017-02-15 00:47 - 00000000 ____D C:\ProgramData\Package Cache 2017-02-14 23:40 - 2017-02-15 00:18 - 00000000 ____D C:\Users\Todos os Usuários\Corel 2017-02-14 23:40 - 2017-02-15 00:18 - 00000000 ____D C:\ProgramData\Corel 2017-02-14 23:35 - 2017-02-14 23:35 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll 2017-02-14 23:35 - 2017-02-14 23:35 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll 2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ____D C:\Program Files (x86)\D-Link 2017-02-14 23:00 - 2017-02-14 23:00 - 00000000 ____D C:\Program Files (x86)\Cisco 2017-02-14 23:00 - 2014-03-24 12:37 - 00422400 _____ (Realtek) C:\Windows\SwUSB.exe 2017-02-14 23:00 - 2013-10-18 16:42 - 00048856 _____ () C:\Windows\runSW.exe 2017-02-14 23:00 - 2013-04-01 23:19 - 00574464 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll 2017-02-14 23:00 - 2013-04-01 23:19 - 00516608 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll 2017-02-14 23:00 - 2012-10-20 10:26 - 02961408 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlUI2.exe 2017-02-14 23:00 - 2012-10-20 10:26 - 00000084 _____ C:\Windows\RtlUI2.ini 2017-02-14 23:00 - 2010-12-01 09:31 - 00451072 _____ C:\Windows\SysWOW64\ISSRemoveSP.exe 2017-02-14 23:00 - 2009-01-05 20:31 - 00000901 _____ C:\Windows\RtlUI2.exe.manifest 2017-02-14 22:59 - 2015-11-09 14:14 - 00000000 ____D C:\Users\Robson\Downloads\(151105)DWA-123_D1_FW_4.03 2017-02-14 22:58 - 2017-02-14 22:58 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-02-13 16:54 - 2017-02-13 16:54 - 00000000 ____D C:\Windows\Minidump 2017-02-13 15:55 - 2017-02-13 15:55 - 00000817 _____ C:\Users\Robson\Desktop\Robson - Atalho.lnk 2017-02-13 15:30 - 2017-02-13 15:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2017-02-13 15:30 - 2017-02-13 15:30 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2017-02-13 15:23 - 2017-02-13 15:23 - 00000000 ___HD C:\$AV_ASW 2017-02-13 14:17 - 2017-02-13 14:17 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2017-02-13 14:17 - 2017-02-13 14:17 - 00003912 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1487006274 2017-02-13 14:17 - 2017-02-13 14:17 - 00001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-02-13 14:17 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Robson\AppData\Roaming\AVAST Software 2017-02-13 14:17 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Robson\AppData\Local\CEF 2017-02-13 14:16 - 2017-02-15 00:36 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update 2017-02-13 14:16 - 2017-02-13 14:16 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-02-13 14:16 - 2017-02-13 14:16 - 00991496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2017-02-13 14:16 - 2017-02-13 14:16 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-02-13 14:16 - 2017-02-13 14:16 - 00337080 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00309784 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00126088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2017-02-13 14:16 - 2017-02-13 14:16 - 00074680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Todos os Usuários\Oracle 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Sun 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Sun 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Oracle 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Program Files\Common Files\AV 2017-02-13 14:16 - 2017-02-13 14:16 - 00000000 ____D C:\Program Files (x86)\Java 2017-02-13 14:15 - 2017-02-14 23:41 - 00003930 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A997C51F-8B6D-4B8E-9F21-8CC38CF80B96} 2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software 2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\ProgramData\AVAST Software 2017-02-13 14:15 - 2017-02-13 14:17 - 00000000 ____D C:\Program Files\AVAST Software 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\LocalLow\EmieUserList 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\LocalLow\EmieSiteList 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\Local\EmieUserList 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 __SHD C:\Users\Robson\AppData\Local\EmieSiteList 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Adobe 2017-02-13 14:15 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\Local\Adobe 2017-02-13 14:14 - 2017-02-15 00:49 - 00002738 _____ C:\Windows\System32\Tasks\AutoKMSDaily 2017-02-13 14:14 - 2017-02-15 00:49 - 00000220 _____ C:\Windows\Tasks\AutoKMSDaily.job 2017-02-13 14:14 - 2017-02-15 00:49 - 00000212 _____ C:\Windows\Tasks\AutoKMS.job 2017-02-13 14:14 - 2017-02-15 00:01 - 00000000 ____D C:\Users\Robson\AppData\LocalLow\Mozilla 2017-02-13 14:14 - 2017-02-13 14:14 - 00650240 _____ C:\Windows\AutoKMS.exe 2017-02-13 14:14 - 2017-02-13 14:14 - 00003047 _____ C:\Users\Robson\Desktop\Microsoft Word 2010.lnk 2017-02-13 14:14 - 2017-02-13 14:14 - 00002927 _____ C:\Users\Robson\Desktop\Microsoft Excel 2010.lnk 2017-02-13 14:14 - 2017-02-13 14:14 - 00002424 _____ C:\Windows\System32\Tasks\AutoKMS 2017-02-13 14:14 - 2017-02-13 14:14 - 00000182 _____ C:\Windows\AutoKMS.ini 2017-02-13 14:13 - 2017-02-13 14:13 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA 2017-02-13 14:13 - 2017-02-13 14:13 - 00000000 ____D C:\ProgramData\NVIDIA 2017-02-13 14:13 - 2016-01-29 09:08 - 00082488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2017-02-13 14:13 - 2016-01-29 09:08 - 00067520 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2017-02-13 14:13 - 2016-01-29 07:49 - 06791736 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2017-02-13 14:13 - 2016-01-29 07:49 - 03529152 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2017-02-13 14:13 - 2016-01-29 07:49 - 02558328 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2017-02-13 14:13 - 2016-01-29 07:49 - 00932728 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2017-02-13 14:13 - 2016-01-29 07:49 - 00384888 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2017-02-13 14:13 - 2016-01-29 07:49 - 00062512 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2017-02-13 14:13 - 2016-01-28 13:29 - 06150607 _____ C:\Windows\system32\nvcoproc.bin 2017-02-13 14:12 - 2017-02-13 14:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA Corporation 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files\Reference Assemblies 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files\MSBuild 2017-02-13 14:12 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-02-13 14:12 - 2016-01-29 09:08 - 31523896 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 24207296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 18634264 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 17559240 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 13916600 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 12911160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2017-02-13 14:12 - 2016-01-29 09:08 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 04252608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 03996216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 00952256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 00915392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 00911928 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 00878648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2017-02-13 14:12 - 2016-01-29 09:08 - 00026157 _____ C:\Windows\system32\nvinfo.pb 2017-02-13 14:11 - 2016-03-29 02:01 - 00186424 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys 2017-02-13 14:11 - 2016-01-29 09:08 - 23000000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 15302712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 11209376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 03210784 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 02825016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 01908272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434195.dll 2017-02-13 14:11 - 2016-01-29 09:08 - 01557552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434195.dll 2017-02-13 14:11 - 2013-08-03 01:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2017-02-13 14:11 - 2013-08-03 01:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2017-02-13 14:11 - 2013-08-03 01:48 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2017-02-13 14:11 - 2013-08-03 01:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2017-02-13 14:11 - 2013-08-03 01:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-02-13 14:11 - 2013-08-03 01:41 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2017-02-13 14:10 - 2017-02-13 14:14 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Mozilla 2017-02-13 14:10 - 2017-02-13 14:10 - 00001171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-02-13 14:10 - 2017-02-13 14:10 - 00001159 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Users\Robson\AppData\Roaming\DRPSu 2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Users\Robson\AppData\Local\Mozilla 2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-02-13 14:10 - 2017-02-13 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-02-13 14:09 - 2017-02-13 14:09 - 06654960 _____ (AVAST Software) C:\Users\Robson\Downloads\avast_free_antivirus_setup_online_cnet2.exe 2017-02-13 14:09 - 2017-02-13 14:09 - 00245584 _____ C:\Users\Robson\Downloads\Firefox Setup Stub 51.0.1.exe 2017-02-13 14:08 - 2017-02-13 14:08 - 00004426 __RSH C:\Users\Todos os Usuários\ntuser.pol 2017-02-13 14:08 - 2017-02-13 14:08 - 00004426 __RSH C:\ProgramData\ntuser.pol 2017-02-13 14:07 - 2017-02-15 00:48 - 00000000 ____D C:\Users\Robson\AppData\Roaming\ClassicShell 2017-02-13 13:04 - 2017-02-13 14:12 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Windows\PCHEALTH 2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2017-02-13 13:04 - 2017-02-13 13:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework 2017-02-13 13:03 - 2017-02-13 13:05 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2017-02-13 13:03 - 2017-02-13 13:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 __RHD C:\MSOCache 2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Users\Robson\AppData\Local\Microsoft Help 2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files\Microsoft Office 2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2017-02-13 13:03 - 2017-02-13 13:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2017-02-13 13:02 - 2017-02-13 13:02 - 00003706 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart 2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\Users\Robson\AppData\Roaming\WinRAR 2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico 2017-02-13 13:02 - 2017-02-13 13:02 - 00000000 ____D C:\Program Files\KMSpico 2017-02-13 13:01 - 2017-02-15 00:54 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-354422575-759729991-2597353769-1002 2017-02-13 13:01 - 2017-02-15 00:06 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002UA.job 2017-02-13 13:01 - 2017-02-13 13:06 - 00001040 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002Core.job 2017-02-13 13:01 - 2017-02-13 13:01 - 00003938 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002UA 2017-02-13 13:01 - 2017-02-13 13:01 - 00003558 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-354422575-759729991-2597353769-1002Core 2017-02-13 13:01 - 2017-02-13 13:01 - 00002333 _____ C:\Users\Robson\Desktop\Google Chrome.lnk 2017-02-13 13:01 - 2017-02-13 13:01 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2017-02-13 13:01 - 2017-02-13 13:01 - 00000000 ____D C:\Users\Robson\AppData\Local\Google 2017-02-13 13:00 - 2017-02-13 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 7 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Softland 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files\Softland 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files\Classic Shell 2017-02-13 13:00 - 2017-02-13 13:00 - 00000000 ____D C:\Program Files (x86)\WinRAR 2017-02-13 13:00 - 2010-12-14 09:51 - 00024392 _____ (Softland) C:\Windows\system32\dopdfmn7.dll 2017-02-13 13:00 - 2010-12-14 09:51 - 00020296 _____ (Softland) C:\Windows\system32\dopdfmi7.dll 2017-02-13 13:00 - 2010-11-25 10:17 - 00007549 _____ C:\Windows\system32\dopdf7.ctm 2017-02-13 12:59 - 2017-02-13 14:19 - 00000000 ____D C:\Users\Todos os Usuários\Adobe 2017-02-13 12:59 - 2017-02-13 14:19 - 00000000 ____D C:\ProgramData\Adobe 2017-02-13 12:59 - 2017-02-13 12:59 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2017-02-13 12:59 - 2017-02-13 12:59 - 00002039 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2017-02-13 12:59 - 2017-02-13 12:59 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-02-13 12:56 - 2017-02-13 14:15 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Adobe 2017-02-13 12:56 - 2017-02-13 12:57 - 00000000 ____D C:\Users\Robson\AppData\Local\Packages 2017-02-13 12:56 - 2017-02-13 12:56 - 00001418 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2017-02-13 12:56 - 2017-02-13 12:56 - 00000020 ___SH C:\Users\Robson\ntuser.ini 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Modelos 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Meus Documentos 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Menu Iniciar 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Minhas Músicas 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Minhas Imagens 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Documents\Meus Vídeos 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Dados de Aplicativos 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Configurações Locais 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Local\Histórico 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\AppData\Local\Dados de Aplicativos 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Ambiente de Rede 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 _SHDL C:\Users\Robson\Ambiente de Impressão 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Windows\CSC 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Users\Robson\AppData\Local\VirtualStore 2017-02-13 12:56 - 2017-02-13 12:56 - 00000000 ____D C:\Users\Robson 2017-02-13 12:56 - 2014-03-18 07:46 - 00000369 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2017-02-13 12:56 - 2014-03-18 07:46 - 00000369 _____ C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2017-02-13 12:55 - 2017-02-13 16:54 - 00081920 ____N C:\Windows\Minidump\021317-8312-01.dmp 2017-02-13 12:55 - 2017-02-13 12:55 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf ==================== Três Meses Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-02-15 01:03 - 2013-08-22 12:36 - 00000000 ___HD C:\Program Files\WindowsApps 2017-02-15 01:03 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\AppReadiness 2017-02-15 00:54 - 2014-03-18 07:33 - 01797166 _____ C:\Windows\system32\PerfStringBackup.INI 2017-02-15 00:54 - 2014-03-18 06:45 - 00774702 _____ C:\Windows\system32\prfh0416.dat 2017-02-15 00:54 - 2014-03-18 06:45 - 00158296 _____ C:\Windows\system32\prfc0416.dat 2017-02-15 00:54 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\Inf 2017-02-15 00:50 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\System 2017-02-15 00:49 - 2013-08-22 11:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-02-15 00:18 - 2013-08-22 12:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-02-15 00:00 - 2013-08-22 11:44 - 00552296 _____ C:\Windows\system32\FNTCACHE.DAT 2017-02-14 23:36 - 2013-08-22 12:20 - 00000000 ____D C:\Windows\CbsTemp 2017-02-13 14:20 - 2013-08-22 10:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-02-13 14:13 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\Help 2017-02-13 14:12 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\SysWOW64\MUI 2017-02-13 14:12 - 2013-08-22 12:36 - 00000000 ____D C:\Windows\system32\MUI 2017-02-13 14:07 - 2013-08-22 12:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2017-02-13 13:53 - 2013-08-22 12:36 - 00262144 _____ C:\Windows\system32\config\BCD-Template 2017-02-13 13:04 - 2014-03-18 07:03 - 00000000 ____D C:\Windows\ShellNew 2017-02-13 13:03 - 2013-08-22 10:25 - 00000167 _____ C:\Windows\win.ini 2017-02-13 12:56 - 2014-06-14 23:24 - 00000000 ____D C:\Windows\Panther Arquivos para serem movidos ou deletados: ==================== C:\Users\Robson\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2014-06-14 23:25 ==================== Fim de FRST.txt ============================