Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 05-03-2017 Executado por USER (administrador) em USER-PC (07-03-2017 23:59:44) Executando a partir de C:\Users\USER\Downloads Perfis Carregados: USER (Perfis Disponíveis: USER) Platform: Windows 8 Single Language (X64) Idioma: Português (Brasil) Internet Explorer Versão 10 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Lenovo.) C:\Windows\System32\LPlatSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Lenovo.) C:\Windows\System32\LPlatSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Filseclab Corporation Limited) C:\Program Files (x86)\ScreenShot\SSSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (The Chromium Authors) C:\Users\USER\AppData\Local\chromium\Application\chrome.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ==================== Registro (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [373760 2012-07-20] (Alcor Micro Corp.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-05] (AVAST Software) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2013-03-12] (Vimicro) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [27308304 2017-03-06] (Dropbox, Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\Run: [Chromium] => c:\users\user\appdata\local\chromium\application\chrome.exe [828416 2017-01-20] (The Chromium Authors) HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545056 2017-02-14] (Skype Technologies S.A.) HKU\S-1-5-21-110062565-2361055857-3464527491-1001\...\MountPoints2: {0570204c-ff54-11e6-be65-806e6f6e6963} - "G:\SETUP.EXE" ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-05] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-05] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) Startup: C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar para o OneNote.lnk [2017-03-03] ShortcutTarget: Enviar para o OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation) GroupPolicy: Restrição <======= ATENÇÃO ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{27E68934-C235-4233-826B-9417E41B29DF}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage HKU\S-1-5-21-110062565-2361055857-3464527491-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com.br/ HKU\S-1-5-21-110062565-2361055857-3464527491-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} SearchScopes: HKU\S-1-5-21-110062565-2361055857-3464527491-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} SearchScopes: HKU\S-1-5-21-110062565-2361055857-3464527491-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage&p={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-03-03] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-03-05] (AVAST Software) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-03] (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-03-05] (AVAST Software) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Nenhum Arquivo Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Nenhum Arquivo Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF DefaultProfile: pgor8wai.default FF ProfilePath: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default [2017-03-06] FF NewTab: Mozilla\Firefox\Profiles\pgor8wai.default -> about:newtab FF DefaultSearchEngine: Mozilla\Firefox\Profiles\pgor8wai.default -> Yahoo! Powered FF SelectedSearchEngine: Mozilla\Firefox\Profiles\pgor8wai.default -> Yahoo! Powered FF Homepage: Mozilla\Firefox\Profiles\pgor8wai.default -> hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fs_17_10¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dbr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0F0AtB0F0Azz0FyDyDtBzyyDtDzyyE0BtN0D0Tzu0StCzzzytDtN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDyE0Fzy0AyEyC0AtGtD0FyCyEtGyBzyyD0FtGtAzz0FtBtGyCyD0AtCyDtBtB0FyEtBtByB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0F0EyBzz0D0DtAtGtDtD0B0FtGyEtCyC0DtG0ByCzyyDtGtA0EzytBtC0D0BzztAzzyE0C2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtBtAtDzy%26cr%3D2132471115%26a%3Dwbf_fs_17_10%26os_ver%3D6.2%26os%3DWindows%2B8%2BSingle%2BLanguage FF Keyword.URL: Mozilla\Firefox\Profiles\pgor8wai.default -> user_pref("keyword.URL", true); FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default\features\{a257fe29-3f85-494e-b576-da7338ddceeb}\disableSHA1rollout@mozilla.org.xpi [2017-03-06] FF SearchPlugin: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\pgor8wai.default\searchplugins\yahoo! powered.xml [2017-03-05] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-03-05] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-03-05] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-03-03] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-03-03] (Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-09-30] (Adobe Systems Inc.) StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR HomePage: Default -> mysearch.avg.com/?rvt=1 CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?hl=pt-BR" CHR Profile: C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default [2017-03-07] CHR Extension: (Google Apresentações) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-03-02] CHR Extension: (Duolingo na Web) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2017-03-03] CHR Extension: (Google Docs) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-03-02] CHR Extension: (Google Drive) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-03-02] CHR Extension: (Turn Off the Lights) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2017-03-07] CHR Extension: (YouTube) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-02] CHR Extension: (Mogicons) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2017-03-07] CHR Extension: (Freecell Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cabpjbpfakfhcfidnjahmdophhihafkh [2017-03-03] CHR Extension: (Advanced Font Settings) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\caclkomlalccbpcdllchkeecicepbmbm [2017-03-03] CHR Extension: (Webmail Ad Blocker) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp [2017-03-03] CHR Extension: (Adblock Plus) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-03] CHR Extension: (AVG Secure Search) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2017-03-03] CHR Extension: (Seen On Screen) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpfkbbikafoolgiblpbmdbajlnehicem [2017-03-03] CHR Extension: (Facebook Icon Pack) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgjnigeodbhfkikngfpbpaponldpnajj [2017-03-03] CHR Extension: (Christmas Solitiare) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhcbjomfajlnldboplncbdhmdaagcpln [2017-03-03] CHR Extension: (Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkelcbhdkpcdiiancfjhjcpdinbbfolp [2017-03-03] CHR Extension: (Legenda Fácil) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecmalcfodhbdonabbncapihcejmhaipp [2017-03-03] CHR Extension: (Solitaire games online ) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\efhllapldbojolojmbcmanmiiccfenmc [2017-03-03] CHR Extension: (Video Downloader professional) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2017-03-03] CHR Extension: (Avast SafePrice) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-05] CHR Extension: (Mahjong Solitaire) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogmadihniohlnmipdhchaoagjhfnohc [2017-03-03] CHR Extension: (Planilhas do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-03-02] CHR Extension: (Word Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2017-03-03] CHR Extension: (Picditor Photo Editor) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggdplhaiiohpkafnlhlfikiomnboacoi [2017-03-03] CHR Extension: (Documentos Google off-line) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-03] CHR Extension: (AdBlock) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-03-03] CHR Extension: (MyPlayCity Games) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjmohbdbnfkkjolmdfbhhdfjgjclomkd [2017-03-03] CHR Extension: (Mogicons.com) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2017-03-03] CHR Extension: (Tempo Agora) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmoienakigcjfnapajfcphlndjcjnjmd [2017-03-03] CHR Extension: (Vagalume) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipgcdnbeeiajinajlafjcdfhckglcopd [2017-03-03] CHR Extension: (Motitags) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jimekcmjahalpgniahhigkfichaihfkp [2017-03-03] CHR Extension: (Video Downloader All) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpaglkhbmbmhlnpnehlffkgaaapoicnk [2017-03-03] CHR Extension: (Search Manager) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmbmobjbcmjjfmempplcnojmgekgpalk [2017-03-05] CHR Extension: (MovixHub) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\knmaplknmljolhemkdmfahdfgddflgcd [2017-03-03] CHR Extension: (Pixeffect - Efeitos fotográficos) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\koekplodmdaalggcclajcecoomipnpca [2017-03-03] CHR Extension: (JDownloader Integration for Google Chrome™) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\laeghehalempfenbefbjbhccjcoakpmm [2017-03-03] CHR Extension: (Google Maps) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2017-03-03] CHR Extension: (Conversor de vídeo) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcjjnhgakghmggnimjkldjmmpabhnhne [2017-03-03] CHR Extension: (Ferramentas de inserção de texto do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2017-03-03] CHR Extension: (PowerPoint Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2017-03-03] CHR Extension: (Messenger (Unofficial)) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdapmeleikeppmfgadilffngabfpibok [2017-03-07] CHR Extension: (Banrisul Internet Banking) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgapcljibnhkigclmbmdhgehflhljbdd [2017-03-03] CHR Extension: (Verificador de mensagens do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2017-03-03] CHR Extension: (Office Online) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2017-03-03] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-02] CHR Extension: (piZap Photo Editor) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\occpjibghkbopohbefbejkklnfdkdmok [2017-03-03] CHR Extension: (Rolagem rápida do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2017-03-03] CHR Extension: (Synology Download Station) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\onhbegdkgonhlokobjefolhpoidcnida [2017-03-03] CHR Extension: (OpenSubtitles) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfbdkpjnibjpkebckajcinnjlkdeilej [2017-03-03] CHR Extension: (Gmail) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-03-02] CHR Extension: (Páginas semelhantes do Google) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjnfggphgdjblhfjaphkjhfpiiekbbej [2017-03-03] CHR Extension: (Chrome Media Router) - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-02] CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-110062565-2361055857-3464527491-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-05] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-05] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [278784 2017-03-05] (AVAST Software) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-05] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-05] (Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [46408 2017-01-20] (Dropbox, Inc.) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.) R2 LPlatSvc; C:\Windows\system32\LPlatSvc.exe [711256 2016-11-01] (Lenovo.) R2 SSSvc; C:\Program Files (x86)\ScreenShot\SSSvc.exe [139744 2016-11-02] (Filseclab Corporation Limited) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-28] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-05] (AVAST Software s.r.o.) R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-05] (AVAST Software s.r.o.) R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-03-05] (AVAST Software s.r.o.) R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-05] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-05] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-03-05] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126600 2017-03-05] (AVAST Software) R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [461640 2017-03-05] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-03-05] (AVAST Software) R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-05] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [993608 2017-03-05] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [547904 2017-03-05] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-03-05] (AVAST Software) R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337592 2017-03-05] (AVAST Software) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [6957744 2017-03-02] (Broadcom Corporation) R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1049984 2013-04-17] (Vimicro Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35232 2013-01-28] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [230904 2013-01-28] (Microsoft Corporation) S3 dbx; system32\DRIVERS\dbx.sys [X] ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-03-07 23:59 - 2017-03-08 00:00 - 00033613 _____ C:\Users\USER\Downloads\FRST.txt 2017-03-07 23:59 - 2017-03-07 23:59 - 00000000 ____D C:\FRST 2017-03-07 23:58 - 2017-03-07 23:58 - 02423808 _____ (Farbar) C:\Users\USER\Downloads\FRST64.exe 2017-03-07 23:56 - 2017-03-07 23:57 - 01765888 _____ (Farbar) C:\Users\USER\Downloads\FRST.exe 2017-03-07 23:53 - 2017-03-07 23:53 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-03-07 23:53 - 2017-03-07 23:53 - 00002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2017-03-07 23:53 - 2017-03-07 23:53 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-03-07 23:50 - 2017-03-07 23:50 - 00001125 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk 2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\DLL-files.com 2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\DFXCT 2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client 2017-03-07 23:50 - 2017-03-07 23:50 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client 2017-03-07 23:49 - 2017-03-07 23:50 - 02729024 _____ (DLL-Files.com Client ) C:\Users\USER\Downloads\clientsetup_fde-0.exe 2017-03-07 23:15 - 2017-03-07 23:15 - 00066110 _____ C:\Users\USER\Desktop\DxDiag.txt 2017-03-07 22:40 - 2017-03-07 23:30 - 00003790 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-03-07 22:40 - 2017-03-07 23:30 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2017-03-07 22:40 - 2017-03-07 23:29 - 00003924 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2017-03-07 22:40 - 2017-03-07 23:29 - 00000964 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job 2017-03-07 21:10 - 2017-03-07 21:10 - 00000000 ____D C:\Users\Todos os Usuários\SWCUTemp 2017-03-07 21:10 - 2017-03-07 21:10 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-03-07 21:08 - 2017-03-07 21:08 - 00000117 _____ C:\Windows\system32\netcfg-32968.txt 2017-03-07 20:58 - 2017-03-07 20:58 - 00000117 _____ C:\Windows\system32\netcfg-271906.txt 2017-03-07 20:37 - 2017-03-07 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-03-07 20:23 - 2017-03-07 20:23 - 00003102 _____ C:\Windows\System32\Tasks\{2FBF557C-919E-4649-AA6E-CE3F19725568} 2017-03-07 20:17 - 2017-03-07 20:17 - 00000117 _____ C:\Windows\system32\netcfg-127046.txt 2017-03-07 20:16 - 2017-03-07 20:16 - 00435376 _____ C:\Windows\system32\FNTCACHE.DAT 2017-03-07 20:15 - 2017-03-07 20:15 - 00000117 _____ C:\Windows\system32\netcfg-119875.txt 2017-03-07 20:15 - 2017-03-07 20:15 - 00000117 _____ C:\Windows\system32\netcfg-100828.txt 2017-03-07 20:15 - 2017-03-07 20:15 - 00000039 _____ C:\Windows\SysWOW64\Stats.ini 2017-03-07 20:13 - 2017-03-07 20:13 - 00000117 _____ C:\Windows\system32\netcfg-299109.txt 2017-03-07 12:33 - 2015-10-01 10:10 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2017-03-07 12:33 - 2015-10-01 10:09 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2017-03-07 11:12 - 2015-09-12 10:09 - 00414559 _____ C:\Windows\system32\ApnDatabase.xml 2017-03-07 11:00 - 2015-10-27 11:46 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2017-03-07 11:00 - 2015-10-27 11:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2017-03-07 11:00 - 2015-10-27 11:46 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2017-03-07 11:00 - 2015-10-27 10:55 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2017-03-07 11:00 - 2015-10-27 10:54 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2017-03-07 11:00 - 2015-10-27 10:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2017-03-07 11:00 - 2015-09-23 10:10 - 00377552 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2017-03-07 11:00 - 2015-09-23 10:10 - 00332576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2017-03-07 10:54 - 2015-10-13 10:16 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2017-03-07 10:54 - 2015-10-13 10:16 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-03-07 10:54 - 2013-07-01 22:41 - 00447320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2017-03-07 10:54 - 2013-07-01 22:41 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2017-03-07 10:54 - 2013-07-01 22:41 - 00213336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2017-03-07 10:54 - 2012-11-03 02:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2017-03-07 10:54 - 2012-11-03 02:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2017-03-07 10:54 - 2012-11-03 02:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2017-03-07 10:54 - 2012-11-03 02:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2017-03-07 10:54 - 2012-11-03 02:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2017-03-07 10:54 - 2012-11-03 02:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2017-03-07 10:54 - 2012-11-03 02:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2017-03-07 10:54 - 2012-11-03 02:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2017-03-07 10:53 - 2014-01-12 20:30 - 02238976 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2017-03-07 10:53 - 2014-01-12 20:30 - 02032640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2017-03-07 10:53 - 2013-11-19 21:15 - 03842560 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2017-03-07 10:53 - 2013-11-19 20:57 - 03288576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2017-03-07 10:47 - 2015-03-12 02:31 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2017-03-07 10:47 - 2015-03-12 02:31 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll 2017-03-07 10:47 - 2015-03-12 00:52 - 01933312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2017-03-07 10:36 - 2013-08-23 04:22 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2017-03-07 10:36 - 2013-08-22 22:44 - 01711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2017-03-07 10:29 - 2015-11-07 09:46 - 01341952 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2017-03-07 10:29 - 2015-11-07 09:44 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2017-03-07 10:29 - 2015-11-07 09:44 - 01280000 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2017-03-07 10:29 - 2015-11-07 06:32 - 01412608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2017-03-07 10:29 - 2015-11-07 04:52 - 04063232 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-03-07 10:29 - 2015-11-07 02:53 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2017-03-07 10:29 - 2015-11-07 02:52 - 01680384 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2017-03-07 10:29 - 2015-11-07 02:46 - 01426944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2017-03-07 10:29 - 2015-07-15 13:09 - 00095064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2017-03-07 10:29 - 2015-07-15 13:06 - 01824296 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2017-03-07 10:29 - 2015-07-15 10:49 - 01410000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2017-03-07 10:29 - 2015-07-15 10:29 - 01333248 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2017-03-07 10:29 - 2013-03-22 00:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2017-03-07 10:29 - 2013-03-21 19:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2017-03-07 10:16 - 2014-12-19 01:35 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2017-03-07 10:00 - 2015-07-09 18:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2017-03-07 10:00 - 2015-07-09 18:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2017-03-07 10:00 - 2015-07-09 17:18 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2017-03-07 10:00 - 2015-01-24 03:43 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2017-03-07 10:00 - 2015-01-24 02:00 - 00368640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2017-03-07 10:00 - 2013-04-02 20:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2017-03-07 10:00 - 2013-04-02 20:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2017-03-07 09:54 - 2014-04-03 08:22 - 02233176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-03-07 09:54 - 2013-03-02 06:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-03-07 09:53 - 2012-12-13 01:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2017-03-07 09:53 - 2012-12-13 00:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2017-03-07 09:50 - 2014-11-08 08:22 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2017-03-07 09:50 - 2014-11-08 03:57 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2017-03-07 09:49 - 2015-04-25 00:41 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2017-03-07 09:49 - 2015-04-24 20:13 - 00652288 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2017-03-07 09:48 - 2014-10-23 09:47 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2017-03-07 09:48 - 2014-10-23 08:04 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2017-03-07 09:39 - 2015-09-12 10:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2017-03-07 09:39 - 2015-09-12 10:29 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2017-03-07 09:39 - 2015-09-12 10:29 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll 2017-03-07 09:39 - 2015-09-12 10:29 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll 2017-03-07 09:39 - 2015-09-12 10:29 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll 2017-03-07 09:39 - 2013-01-28 22:57 - 00035232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2017-03-07 09:39 - 2013-01-28 20:08 - 00230904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2017-03-07 09:39 - 2012-11-10 01:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2017-03-07 09:36 - 2015-12-08 12:43 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2017-03-07 09:36 - 2015-12-08 12:16 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2017-03-07 09:23 - 2015-12-30 20:29 - 06972760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-03-07 09:23 - 2015-11-16 11:29 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2017-03-07 09:23 - 2015-11-16 11:28 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2017-03-07 09:23 - 2015-11-16 11:27 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2017-03-07 09:23 - 2015-11-16 11:26 - 01282560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-03-07 09:23 - 2015-11-16 11:26 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2017-03-07 09:23 - 2015-11-16 11:26 - 00588800 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2017-03-07 09:23 - 2015-11-16 11:26 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-03-07 09:23 - 2015-09-23 10:10 - 00570256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2017-03-07 09:23 - 2015-09-22 14:53 - 01405408 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2017-03-07 09:23 - 2015-09-22 14:53 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2017-03-07 09:23 - 2015-06-25 15:29 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-03-07 09:23 - 2015-06-25 15:27 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-03-07 09:23 - 2015-01-07 01:25 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-03-07 09:23 - 2013-05-24 19:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2017-03-07 09:23 - 2013-05-24 19:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2017-03-07 09:22 - 2015-11-16 11:42 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2017-03-07 09:22 - 2015-11-16 11:29 - 00961536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2017-03-07 09:22 - 2015-11-16 11:29 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2017-03-07 09:22 - 2015-11-16 11:29 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2017-03-07 09:22 - 2015-11-16 11:29 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2017-03-07 09:22 - 2015-11-16 11:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 01043968 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2017-03-07 09:22 - 2015-11-16 11:26 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2017-03-07 09:22 - 2015-05-02 03:28 - 00100184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2017-03-07 09:22 - 2015-01-15 06:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-03-07 09:22 - 2015-01-15 06:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2017-03-07 09:22 - 2014-10-11 02:41 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2017-03-07 09:22 - 2014-10-11 02:05 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2017-03-07 09:22 - 2014-04-12 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll 2017-03-07 09:22 - 2014-03-10 21:39 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2017-03-07 09:22 - 2014-03-10 21:38 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2017-03-07 09:22 - 2014-03-09 22:27 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2017-03-07 09:21 - 2015-04-06 02:36 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2017-03-07 09:21 - 2015-04-06 01:08 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2017-03-07 09:07 - 2015-12-03 21:55 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2017-03-07 09:07 - 2015-12-03 18:47 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2017-03-07 09:01 - 2014-06-02 19:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2017-03-07 09:01 - 2013-11-01 02:38 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2017-03-07 09:01 - 2013-11-01 00:49 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2017-03-07 08:49 - 2014-10-30 04:20 - 01890816 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2017-03-07 08:49 - 2014-10-30 02:22 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2017-03-07 08:41 - 2017-03-07 08:41 - 00000117 _____ C:\Windows\system32\netcfg-102953.txt 2017-03-07 00:23 - 2017-03-07 00:23 - 00000117 _____ C:\Windows\system32\netcfg-17918828.txt 2017-03-06 19:38 - 2017-03-07 23:54 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2017-03-06 19:26 - 2017-03-06 19:26 - 00000117 _____ C:\Windows\system32\netcfg-80281.txt 2017-03-06 17:50 - 2017-03-06 17:50 - 00046184 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2017-03-05 23:48 - 2017-03-05 23:48 - 00000117 _____ C:\Windows\system32\netcfg-8208437.txt 2017-03-05 23:46 - 2017-03-05 23:47 - 00000000 ____D C:\Users\USER\Documents\Picosmos 2017-03-05 23:42 - 2017-03-05 23:42 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-03-05 23:42 - 2017-03-05 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-03-05 23:30 - 2017-03-05 23:30 - 01631200 _____ (Skype Technologies S.A.) C:\Users\USER\Desktop\SkypeSetup.exe 2017-03-05 23:12 - 2017-03-05 23:12 - 00000000 ____D C:\Users\USER\AppData\Local\WMTools Downloaded Files 2017-03-05 23:04 - 2017-03-05 23:42 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2017-03-05 23:04 - 2017-03-05 23:42 - 00000000 ____D C:\Users\Todos os Usuários\Skype 2017-03-05 23:04 - 2017-03-05 23:42 - 00000000 ____D C:\ProgramData\Skype 2017-03-05 23:04 - 2017-03-05 23:41 - 00000000 ____D C:\Users\USER\AppData\Roaming\Skype 2017-03-05 23:00 - 2017-03-05 23:00 - 00000000 ____D C:\Users\USER\Tracing 2017-03-05 22:55 - 2014-05-19 23:33 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-03-05 22:55 - 2014-05-19 20:45 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-03-05 22:55 - 2014-05-19 20:45 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 03286528 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 01623040 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 00773632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2017-03-05 22:55 - 2014-05-19 20:24 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-03-05 22:55 - 2014-05-14 19:43 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-03-05 22:55 - 2014-05-14 19:43 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-03-05 22:55 - 2014-05-14 19:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-03-05 22:55 - 2014-05-14 19:42 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-03-05 22:55 - 2013-08-16 02:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-03-05 22:55 - 2013-08-16 02:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-03-05 22:55 - 2013-08-15 19:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2017-03-05 22:55 - 2012-11-06 01:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll 2017-03-05 22:55 - 2012-11-06 01:00 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wushareduxresources.dll 2017-03-05 22:53 - 2017-03-05 22:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2017-03-05 22:52 - 2017-03-05 22:52 - 00001374 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2017-03-05 22:52 - 2017-03-05 22:52 - 00001305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2017-03-05 22:51 - 2017-03-05 22:51 - 00001458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2017-03-05 22:51 - 2017-03-05 22:51 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2017-03-05 22:45 - 2017-03-05 23:04 - 00000000 ____D C:\Program Files (x86)\Windows Live 2017-03-05 22:45 - 2017-03-05 22:45 - 00000000 ____D C:\Program Files\Windows Live 2017-03-05 22:45 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2017-03-05 22:45 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2017-03-05 22:45 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2017-03-05 22:45 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2017-03-05 22:45 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2017-03-05 22:45 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2017-03-05 22:45 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2017-03-05 22:45 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2017-03-05 22:45 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2017-03-05 22:45 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2017-03-05 22:44 - 2017-03-05 22:44 - 00002240 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-05 22:44 - 2017-03-05 22:44 - 00002207 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ___RD C:\Users\USER\OneDrive 2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-03-05 22:44 - 2017-03-05 22:44 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive 2017-03-05 22:44 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2017-03-05 22:44 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2017-03-05 22:41 - 2017-03-05 22:53 - 00000000 ____D C:\Users\USER\AppData\Local\Windows Live 2017-03-05 22:40 - 2017-03-05 22:40 - 00000000 ____D C:\Program Files (x86)\MSECache 2017-03-05 22:38 - 2017-03-05 22:38 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-03-05 22:38 - 2017-03-05 22:38 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer 2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Program Files\Reference Assemblies 2017-03-05 22:37 - 2017-03-05 22:37 - 00000000 ____D C:\Program Files\MSBuild 2017-03-05 22:28 - 2012-07-05 23:02 - 01166440 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2017-03-05 22:28 - 2012-07-05 23:02 - 00778856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2017-03-05 22:28 - 2012-07-05 23:02 - 00124040 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2017-03-05 22:28 - 2012-07-05 23:02 - 00102528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-03-05 22:28 - 2012-07-05 23:02 - 00035400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2017-03-05 22:28 - 2012-07-05 23:02 - 00035400 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2017-03-05 22:16 - 2017-03-05 22:35 - 39035640 _____ (Microsoft Corporation) C:\Users\USER\Desktop\FileFormatConverters.exe 2017-03-05 22:16 - 2017-03-05 22:17 - 02959376 _____ (Microsoft Corporation) C:\Users\USER\Desktop\dotnetfx35setup.exe 2017-03-05 22:06 - 2017-03-05 22:07 - 01543528 _____ (Microsoft Corporation) C:\Users\USER\Desktop\WindowsMovieMaker2.6-KB2424434.exe 2017-03-05 22:04 - 2017-03-05 22:08 - 12633944 _____ (Microsoft Corporation) C:\Users\USER\Desktop\mm20esn.exe 2017-03-05 21:56 - 2017-03-05 21:56 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker 2.6.lnk 2017-03-05 21:56 - 2017-03-05 21:56 - 00000000 ____D C:\Program Files (x86)\Movie Maker 2.6 2017-03-05 21:54 - 2017-03-05 21:56 - 07362048 _____ C:\Users\USER\Desktop\MM26_BR.msi 2017-03-05 21:33 - 2017-03-05 21:33 - 00003896 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1488760417 2017-03-05 21:33 - 2017-03-05 21:33 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk 2017-03-05 21:33 - 2017-03-05 21:33 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-03-05 20:24 - 2017-03-05 20:24 - 00002214 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium.lnk 2017-03-05 20:23 - 2017-03-05 20:24 - 00000000 ____D C:\Users\USER\AppData\Local\chromium 2017-03-05 20:11 - 2017-03-05 20:11 - 00001441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HowToRemove.html.lnk 2017-03-05 20:09 - 2017-03-05 20:09 - 00001067 _____ C:\Users\USER\Desktop\Picosmos Tools.lnk 2017-03-05 20:09 - 2017-03-05 20:09 - 00001067 _____ C:\Users\USER\Desktop\Picosmos Shows.lnk 2017-03-05 20:09 - 2017-03-05 20:09 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools 2017-03-05 20:08 - 2017-03-05 20:08 - 00000000 ____D C:\Users\USER\AppData\Roaming\Picosmos 2017-03-05 20:07 - 2017-03-05 20:07 - 00000000 ____D C:\Users\USER\AppData\Local\ElevatedDiagnostics 2017-03-05 18:58 - 2017-03-05 18:58 - 00000000 ____D C:\Users\USER\AppData\Local\Hewlett-Packard 2017-03-05 18:48 - 2017-03-05 20:12 - 00000000 ____D C:\Users\USER\AppData\Roaming\Wise Disk Cleaner 2017-03-05 18:48 - 2017-03-05 18:48 - 00001204 _____ C:\Users\Public\Desktop\Wise Disk Cleaner.lnk 2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Windows\System32\Tasks\WiseCleaner 2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Users\USER\AppData\Roaming\Wise Euask 2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner 2017-03-05 18:48 - 2017-03-05 18:48 - 00000000 ____D C:\Program Files (x86)\Wise 2017-03-05 18:43 - 2017-03-05 20:09 - 00000000 ____D C:\Program Files (x86)\PicosmosTools 2017-03-05 18:31 - 2017-03-05 18:38 - 04060720 _____ (WiseCleaner.com ) C:\Users\USER\Desktop\WDC9Setup.exe 2017-03-05 18:28 - 2017-03-05 18:36 - 02040904 _____ (Free Time Co., Ltd.) C:\Users\USER\Desktop\PTInstOnline.exe 2017-03-05 18:14 - 2017-03-07 23:11 - 00000996 _____ C:\Windows\Tasks\Yahoo! Powered lonif.job 2017-03-05 18:14 - 2017-03-06 23:11 - 00000000 ____D C:\Users\Todos os Usuários\{3EA3FBC0-B4E1-7106-3227-EF44A865648A} 2017-03-05 18:14 - 2017-03-06 23:11 - 00000000 ____D C:\ProgramData\{3EA3FBC0-B4E1-7106-3227-EF44A865648A} 2017-03-05 18:14 - 2017-03-05 20:11 - 00003996 _____ C:\Windows\System32\Tasks\Yahoo! Powered lonif 2017-03-05 18:12 - 2017-03-05 21:32 - 00000000 ____D C:\Users\USER\AppData\Local\{57E161BD-7349-0D05-1ED1-28ED3AB9D475} 2017-03-05 18:12 - 2017-03-05 20:10 - 00000286 __RSH C:\Users\Todos os Usuários\ntuser.pol 2017-03-05 18:12 - 2017-03-05 20:10 - 00000286 __RSH C:\ProgramData\ntuser.pol 2017-03-05 18:08 - 2017-03-05 18:08 - 00001855 _____ C:\ProgramData\Microsoft\Windows\Start Menu\ScreenShot.lnk 2017-03-05 18:08 - 2017-03-05 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenShot 2017-03-05 18:08 - 2017-03-05 18:08 - 00000000 ____D C:\Program Files (x86)\ScreenShot 2017-03-05 18:07 - 2017-03-05 21:32 - 00000000 ____D C:\Users\USER\AppData\Roaming\ScreenShot 2017-03-05 18:05 - 2017-03-05 18:05 - 00001067 _____ C:\Users\USER\Desktop\Format Factory.lnk 2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\Program Files (x86)\FormatFactory 2017-03-05 18:05 - 2017-03-05 18:05 - 00000000 ____D C:\FFOutput 2017-03-05 18:02 - 2017-03-05 17:29 - 00000030 _____ C:\AVScanner.ini 2017-03-05 18:00 - 2017-03-05 18:00 - 00000000 ____D C:\Users\USER\AppData\Roaming\Hewlett-Packard 2017-03-05 17:51 - 2017-03-05 17:51 - 00002227 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk 2017-03-05 17:51 - 2017-03-05 17:51 - 00000000 ____D C:\System.sav 2017-03-05 17:51 - 2017-03-05 17:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2017-03-05 17:50 - 2017-03-05 17:51 - 00000000 ____D C:\Users\Todos os Usuários\Hewlett-Packard 2017-03-05 17:50 - 2017-03-05 17:51 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2017-03-05 17:50 - 2017-03-05 17:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\hpqLog 2017-03-05 17:39 - 2017-03-04 18:28 - 25077548 _____ C:\Users\USER\Desktop\VID_20170304_182725386.mp4 2017-03-05 17:29 - 2017-03-05 17:38 - 36337710 _____ C:\Users\USER\Desktop\Photos.zip 2017-03-05 17:19 - 2017-03-05 17:19 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard 2017-03-05 17:18 - 2017-03-05 17:51 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2017-03-05 16:59 - 2017-03-07 21:42 - 00000000 ___RD C:\Users\USER\Dropbox 2017-03-05 16:59 - 2017-03-05 16:59 - 00001226 _____ C:\Users\USER\Desktop\Dropbox.lnk 2017-03-05 16:52 - 2017-03-05 16:52 - 00000000 ____D C:\Users\USER\AppData\Roaming\Dropbox 2017-03-05 16:44 - 2017-03-05 17:55 - 47616432 _____ (Free Time Co., Ltd) C:\Users\USER\Desktop\FFSetup4.0.0.0.exe 2017-03-05 16:39 - 2017-03-05 16:39 - 00000000 ____D C:\Users\USER\AppData\Local\CEF 2017-03-05 16:36 - 2017-03-05 23:34 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2017-03-05 16:36 - 2017-03-05 23:34 - 00000000 ____D C:\ProgramData\Package Cache 2017-03-05 16:35 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files\Common Files\McAfee 2017-03-05 16:35 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files (x86)\McAfee 2017-03-05 16:25 - 2017-03-07 23:30 - 00001032 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2017-03-05 16:25 - 2017-03-07 21:40 - 00001028 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2017-03-05 16:25 - 2017-03-07 20:38 - 00000000 ____D C:\Program Files (x86)\Dropbox 2017-03-05 16:25 - 2017-03-05 16:59 - 00000000 ____D C:\Users\USER\AppData\Local\Dropbox 2017-03-05 16:25 - 2017-03-05 16:25 - 00004004 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA 2017-03-05 16:25 - 2017-03-05 16:25 - 00003768 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore 2017-03-05 16:25 - 2017-03-05 16:25 - 00000000 ____D C:\Users\Todos os Usuários\Dropbox 2017-03-05 16:25 - 2017-03-05 16:25 - 00000000 ____D C:\ProgramData\Dropbox 2017-03-05 16:14 - 2017-03-05 16:14 - 00001922 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk 2017-03-05 16:14 - 2017-03-05 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-03-05 16:13 - 2017-03-05 16:13 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2017-03-05 16:13 - 2017-03-05 16:13 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-03-05 16:13 - 2017-03-05 16:13 - 00003914 _____ C:\Windows\System32\Tasks\Avast Emergency Update 2017-03-05 16:13 - 2017-03-05 16:12 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-03-05 16:13 - 2017-03-05 16:12 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2017-03-05 16:13 - 2017-03-05 16:11 - 00461640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys 2017-03-05 16:13 - 2017-03-05 16:11 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys 2017-03-05 16:13 - 2017-03-05 16:11 - 00309272 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys 2017-03-05 16:13 - 2017-03-05 16:11 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys 2017-03-05 16:13 - 2017-03-05 16:11 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys 2017-03-05 15:42 - 2017-03-05 20:14 - 00000000 ____D C:\Users\Todos os Usuários\McAfee 2017-03-05 15:42 - 2017-03-05 20:14 - 00000000 ____D C:\ProgramData\McAfee 2017-03-05 15:08 - 2017-03-05 15:08 - 00000117 _____ C:\Windows\system32\netcfg-35546.txt 2017-03-05 14:30 - 2017-03-05 14:30 - 00000117 _____ C:\Windows\system32\netcfg-11162296.txt 2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-42953.txt 2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-39890.txt 2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-38656.txt 2017-03-05 11:24 - 2017-03-05 11:24 - 00000117 _____ C:\Windows\system32\netcfg-37515.txt 2017-03-04 22:43 - 2017-03-04 22:43 - 00000117 _____ C:\Windows\system32\netcfg-14634296.txt 2017-03-04 22:43 - 2017-03-04 22:43 - 00000117 _____ C:\Windows\system32\netcfg-14633562.txt 2017-03-04 18:40 - 2017-03-04 18:40 - 00000117 _____ C:\Windows\system32\netcfg-48203.txt 2017-03-04 18:40 - 2017-03-04 18:40 - 00000117 _____ C:\Windows\system32\netcfg-48062.txt 2017-03-04 10:10 - 2017-03-04 10:10 - 00000117 _____ C:\Windows\system32\netcfg-6775250.txt 2017-03-04 10:10 - 2017-03-04 10:10 - 00000117 _____ C:\Windows\system32\netcfg-6775109.txt 2017-03-03 22:53 - 2017-03-03 22:53 - 00000117 _____ C:\Windows\system32\netcfg-33328.txt 2017-03-03 21:56 - 2017-03-03 21:56 - 00000117 _____ C:\Windows\system32\netcfg-7851671.txt 2017-03-03 21:23 - 2017-03-03 21:23 - 00001935 _____ C:\Users\USER\Desktop\HP DeskJet 2130 series SIMONE - Atalho.lnk 2017-03-03 21:16 - 2017-03-03 21:16 - 00000117 _____ C:\Windows\system32\netcfg-5458437.txt 2017-03-03 21:11 - 2017-03-03 21:11 - 00000117 _____ C:\Windows\system32\netcfg-5158515.txt 2017-03-03 21:00 - 2017-03-03 21:00 - 00001139 _____ C:\Windows\system32\netcfg-4485250.txt 2017-03-03 21:00 - 2017-03-03 21:00 - 00000117 _____ C:\Windows\system32\netcfg-4526562.txt 2017-03-03 21:00 - 2017-03-03 21:00 - 00000117 _____ C:\Windows\system32\netcfg-4486421.txt 2017-03-03 20:55 - 2017-03-03 20:55 - 00000000 ____D C:\Users\Todos os Usuários\HP 2017-03-03 20:55 - 2017-03-03 20:55 - 00000000 ____D C:\ProgramData\HP 2017-03-03 19:53 - 2017-03-05 21:32 - 00000000 ____D C:\Program Files\Common Files\AV 2017-03-03 19:53 - 2017-03-03 19:53 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-03-03 19:46 - 2017-03-03 19:46 - 00000117 _____ C:\Windows\system32\netcfg-47890.txt 2017-03-03 19:46 - 2017-03-03 19:46 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-03-03 13:13 - 2017-03-03 13:13 - 00000117 _____ C:\Windows\system32\netcfg-70034953.txt 2017-03-03 12:51 - 2017-03-03 12:51 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome 2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498718.txt 2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498640.txt 2017-03-03 12:47 - 2017-03-03 12:47 - 00000117 _____ C:\Windows\system32\netcfg-68498515.txt 2017-03-03 12:36 - 2017-03-03 12:36 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-03-03 12:34 - 2017-03-03 12:34 - 00000117 _____ C:\Windows\system32\netcfg-67705156.txt 2017-03-03 10:31 - 2017-03-03 10:31 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\USER\AppData\Roaming\Sun 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Sun 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Users\Todos os Usuários\Oracle 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\ProgramData\Oracle 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-03-03 10:31 - 2017-03-03 10:31 - 00000000 ____D C:\Program Files\Java 2017-03-03 10:21 - 2017-03-03 10:26 - 64153152 _____ (Oracle Corporation) C:\Users\USER\Downloads\jre-8u121-windows-x64.exe 2017-03-03 10:16 - 2017-03-03 10:16 - 00000117 _____ C:\Windows\system32\netcfg-59426062.txt 2017-03-03 10:16 - 2017-03-03 10:16 - 00000117 _____ C:\Windows\system32\netcfg-59425968.txt 2017-03-03 10:15 - 2017-03-03 10:15 - 00001704 _____ C:\Users\USER\Desktop\MPC-HC x64.lnk 2017-03-03 10:15 - 2017-03-03 10:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 2017-03-03 10:15 - 2017-03-03 10:15 - 00000000 ____D C:\Program Files\MPC-HC 2017-03-03 10:13 - 2017-03-03 10:13 - 00000117 _____ C:\Windows\system32\netcfg-59222281.txt 2017-03-03 10:13 - 2017-03-03 10:13 - 00000117 _____ C:\Windows\system32\netcfg-59222046.txt 2017-03-03 09:40 - 2017-03-07 23:57 - 00000000 ____D C:\Users\USER\AppData\Local\Adobe 2017-03-03 09:40 - 2017-03-03 09:40 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Adobe 2017-03-03 09:39 - 2017-03-06 21:48 - 00000000 ____D C:\Users\USER\AppData\LocalLow\Mozilla 2017-03-03 09:38 - 2017-03-06 21:38 - 00000000 ____D C:\Users\USER\AppData\Local\Mozilla 2017-03-03 09:38 - 2017-03-03 09:39 - 00000000 ____D C:\Users\USER\AppData\Roaming\Mozilla 2017-03-03 09:38 - 2017-03-03 09:38 - 00000117 _____ C:\Windows\system32\netcfg-57128421.txt 2017-03-03 09:38 - 2017-03-03 09:38 - 00000117 _____ C:\Windows\system32\netcfg-57128296.txt 2017-03-03 08:22 - 2017-03-03 08:22 - 00000117 _____ C:\Windows\system32\netcfg-52573187.txt 2017-03-03 08:22 - 2017-03-03 08:22 - 00000117 _____ C:\Windows\system32\netcfg-52573078.txt 2017-03-02 22:13 - 2017-03-02 22:13 - 00000117 _____ C:\Windows\system32\netcfg-16068656.txt 2017-03-02 22:13 - 2017-03-02 22:13 - 00000117 _____ C:\Windows\system32\netcfg-16068203.txt 2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_tcwbf_01_09_00.Wdf 2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUSB_01009.Wdf 2017-03-02 19:12 - 2017-03-02 19:12 - 00000000 ____D C:\Program Files\AuthenTec 2017-03-02 18:10 - 2017-03-02 18:10 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-03-02 18:10 - 2017-03-02 18:10 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-03-02 18:00 - 2017-03-02 18:00 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-03-02 18:00 - 2017-03-02 18:00 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-03-02 17:59 - 2017-03-02 18:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-03-02 17:50 - 2017-03-02 18:02 - 00000000 ____D C:\Program Files (x86)\Google 2017-03-02 17:50 - 2017-03-02 17:50 - 00003500 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2017-03-02 17:50 - 2017-03-02 17:50 - 00003372 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2017-03-02 17:49 - 2017-03-02 18:19 - 00000000 ____D C:\Users\USER\AppData\Local\Google 2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-146703.txt 2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-143656.txt 2017-03-02 17:48 - 2017-03-02 17:48 - 00000117 _____ C:\Windows\system32\netcfg-141484.txt 2017-03-02 17:46 - 2017-03-02 17:46 - 00015846 _____ C:\Windows\system32\results.xml 2017-03-02 17:44 - 2017-03-02 17:44 - 00001235 _____ C:\Windows\system32\netcfg-336203.txt 2017-03-02 17:44 - 2017-03-02 17:44 - 00001139 _____ C:\Windows\system32\netcfg-340031.txt 2017-03-02 17:44 - 2017-03-02 17:44 - 00000296 _____ C:\Windows\system32\netcfg-337781.txt 2017-03-02 17:43 - 2017-03-02 17:43 - 06957744 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS 2017-03-02 17:43 - 2017-03-02 17:43 - 04395008 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll 2017-03-02 17:43 - 2017-03-02 17:43 - 03659264 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll 2017-03-02 17:43 - 2017-03-02 17:43 - 00000000 ____D C:\Program Files\Broadcom 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Users\Todos os Usuários\Intel 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Users\Todos os Usuários\AmUStor 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\ProgramData\Intel 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\ProgramData\AmUStor 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\USB Camera 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\Intel 2017-03-02 17:42 - 2017-03-02 17:42 - 00000000 ____D C:\Program Files (x86)\AmIcoSingLun 2017-03-02 17:42 - 2013-06-27 07:56 - 00056832 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2017-03-02 17:42 - 2013-06-27 07:56 - 00056320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2017-03-02 17:41 - 2017-03-05 17:51 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-03-02 17:41 - 2017-03-02 17:41 - 00000000 ____D C:\Intel 2017-03-02 17:41 - 2013-08-27 04:50 - 00515568 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2017-03-02 17:41 - 2013-08-27 04:50 - 00442352 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2017-03-02 17:41 - 2013-08-27 04:50 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2017-03-02 17:41 - 2013-08-27 04:50 - 00254960 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2017-03-02 17:41 - 2013-08-27 04:50 - 00172016 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2017-03-02 17:41 - 2013-07-01 13:51 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3223.dll 2017-03-02 17:41 - 2013-06-27 08:12 - 00017090 _____ C:\Windows\system32\iglhxs64.vp 2017-03-02 17:41 - 2013-06-27 08:09 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2017-03-02 17:41 - 2013-06-27 08:09 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2017-03-02 17:41 - 2013-06-27 08:07 - 12615680 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2017-03-02 17:41 - 2013-06-27 08:07 - 11049472 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2017-03-02 17:41 - 2013-06-27 08:07 - 05361920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2017-03-02 17:41 - 2013-06-27 08:07 - 00098304 _____ C:\Windows\system32\igdde64.dll 2017-03-02 17:41 - 2013-06-27 08:07 - 00077312 _____ C:\Windows\SysWOW64\igdde32.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00384512 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2017-03-02 17:41 - 2013-06-27 08:06 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2017-03-02 17:41 - 2013-06-27 08:06 - 00064000 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2017-03-02 17:41 - 2013-06-27 08:06 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2017-03-02 17:41 - 2013-06-27 08:05 - 29591552 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2017-03-02 17:41 - 2013-06-27 08:05 - 11175936 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2017-03-02 17:41 - 2013-06-27 08:05 - 03581440 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2017-03-02 17:41 - 2013-06-27 08:05 - 00241664 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2017-03-02 17:41 - 2013-06-27 08:04 - 29574144 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2017-03-02 17:41 - 2013-06-27 08:04 - 02898944 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2017-03-02 17:41 - 2013-06-27 08:04 - 00195584 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2017-03-02 17:41 - 2013-06-27 08:03 - 27457024 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2017-03-02 17:41 - 2013-06-27 08:01 - 21850112 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00754652 _____ C:\Windows\SysWOW64\igcodeckrng700.bin 2017-03-02 17:41 - 2013-06-27 07:56 - 00754652 _____ C:\Windows\system32\igcodeckrng700.bin 2017-03-02 17:41 - 2013-06-27 07:56 - 00598384 _____ C:\Windows\SysWOW64\igvpkrng700.bin 2017-03-02 17:41 - 2013-06-27 07:56 - 00598384 _____ C:\Windows\system32\igvpkrng700.bin 2017-03-02 17:41 - 2013-06-27 07:56 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00216064 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00180224 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00056832 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2017-03-02 17:41 - 2013-06-27 07:56 - 00056320 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2017-03-02 17:41 - 2013-04-17 11:01 - 01049984 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys 2017-03-02 17:41 - 2013-04-17 10:33 - 00001704 _____ C:\Windows\vm331Rmv.ini 2017-03-02 17:41 - 2013-04-17 10:33 - 00001704 _____ C:\Windows\SysWOW64\vm331Rmv.ini 2017-03-02 17:41 - 2013-04-15 16:24 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll 2017-03-02 17:41 - 2012-01-11 11:12 - 01073152 _____ C:\Windows\system32\331prx64.ax 2017-03-02 17:41 - 2012-01-11 11:12 - 00663552 _____ C:\Windows\SysWOW64\vmprp331.ax 2017-03-02 17:41 - 2010-06-30 17:38 - 00000356 _____ C:\Windows\system\vm331avs.rsf 2017-03-02 17:40 - 2013-08-27 04:50 - 05905904 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2017-03-02 17:40 - 2013-08-27 04:50 - 00399856 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2017-03-02 17:40 - 2013-08-27 04:50 - 00185840 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2017-03-02 17:40 - 2013-07-01 13:51 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2017-03-02 17:40 - 2013-07-01 13:51 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2017-03-02 17:40 - 2013-06-27 08:06 - 00223664 _____ C:\Windows\system32\Gfxres.th-TH.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00210106 _____ C:\Windows\system32\Gfxres.el-GR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00194245 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2017-03-02 17:40 - 2013-06-27 08:06 - 00166170 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00163421 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00159008 _____ C:\Windows\system32\Gfxres.he-IL.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00149682 _____ C:\Windows\system32\Gfxres.it-IT.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00148042 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00147393 _____ C:\Windows\system32\Gfxres.de-DE.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00147288 _____ C:\Windows\system32\Gfxres.es-ES.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00146004 _____ C:\Windows\system32\Gfxres.ro-RO.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00145491 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00144645 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00144260 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00144020 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00143932 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00142882 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00142877 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00142717 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00142289 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00142008 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00141838 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00141049 _____ C:\Windows\system32\Gfxres.hr-HR.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00137889 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00137784 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00137141 _____ C:\Windows\system32\Gfxres.da-DK.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00132623 _____ C:\Windows\system32\Gfxres.en-US.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00126300 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00124650 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2017-03-02 17:40 - 2013-06-27 08:06 - 00110592 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2017-03-02 17:40 - 2013-06-27 08:06 - 00000268 _____ C:\Windows\system32\GfxUI.exe.config 2017-03-02 17:40 - 2013-06-27 07:58 - 11633664 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2017-03-02 17:40 - 2013-06-27 07:58 - 08621568 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2017-03-02 17:40 - 2013-06-27 07:56 - 00094208 _____ C:\Windows\system32\IccLibDll_x64.dll 2017-03-02 16:12 - 2017-03-05 17:55 - 00000000 ____D C:\Users\USER\Downloads\PROGRAMAS DO DESKTOP 2017-03-02 16:12 - 2017-03-02 18:21 - 00000000 ___RD C:\Users\USER\Downloads\AttractorMobileSoftware.STARchiver_1a2j9j160p2gw!App 2017-03-02 16:12 - 2017-03-02 18:16 - 00000000 ____D C:\Users\USER\Downloads\runtime 2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\OpenOffice 4.1.2 Language Pack (Portuguese (Brazil)) Installation Files 2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Legendas35 2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Legendas.3.5.0 2017-03-02 16:12 - 2017-03-02 18:10 - 00000000 ____D C:\Users\USER\Downloads\Java 2017-03-02 16:12 - 2017-03-02 18:09 - 00000000 ____D C:\Users\USER\Downloads\HP Downloads 2017-03-02 16:12 - 2017-03-02 18:04 - 00000000 ____D C:\Users\USER\Downloads\50.tons.mais.escuro.HDCAM.XviD.DUBLADO-TOM 2017-03-02 16:12 - 2017-03-02 17:56 - 00000000 ____D C:\Users\USER\Downloads\[TorrentCounter.com]-Fifty.Shades.Darker.2017.HD-TS 2017-03-02 16:12 - 2017-02-19 11:17 - 01689469 _____ (LegendasBrasil.org ) C:\Users\USER\Downloads\Legendas.3.5.5.exe 2017-03-02 16:12 - 2017-02-18 17:34 - 07987644 ____R C:\Users\USER\Downloads\Legendas35.zip 2017-03-02 16:12 - 2017-02-11 21:36 - 00039275 _____ C:\Users\USER\Downloads\plpbtrom.exe 2017-03-02 16:12 - 2017-02-11 21:36 - 00037332 _____ C:\Users\USER\Downloads\plpcfgbt.exe 2017-03-02 16:12 - 2017-02-11 21:36 - 00032638 _____ C:\Users\USER\Downloads\plpmkboot.exe 2017-03-02 16:12 - 2017-02-11 21:35 - 00055436 _____ C:\Users\USER\Downloads\plpbt4win.exe 2017-03-02 16:12 - 2017-02-11 20:42 - 00137619 _____ C:\Users\USER\Downloads\Instalador.zip 2017-03-02 16:12 - 2017-02-07 23:02 - 00483824 _____ (IBM Corp.) C:\Users\USER\Downloads\RapportSetup (1).exe 2017-03-02 16:12 - 2017-02-07 22:55 - 00483824 _____ (IBM Corp.) C:\Users\USER\Downloads\RapportSetup.exe 2017-03-02 16:12 - 2017-02-06 17:12 - 00016264 _____ () C:\Users\USER\Downloads\TryMicrosoftEdge_MK12CD.exe 2017-03-02 16:12 - 2017-02-03 13:42 - 00043575 _____ C:\Users\USER\Downloads\plpbt.bin 2017-03-02 16:12 - 2017-02-03 13:42 - 00043447 _____ C:\Users\USER\Downloads\plpbtrom.bin 2017-03-02 16:12 - 2017-02-03 13:42 - 00039801 _____ C:\Users\USER\Downloads\plpinstc.bin 2017-03-02 16:12 - 2016-12-10 12:09 - 222531584 _____ C:\Users\USER\Downloads\LibreOffice_5.1.6_Win_x86.msi 2017-03-02 16:12 - 2016-12-02 21:19 - 00617475 _____ C:\Users\USER\Downloads\voucher(1).pdf 2017-03-02 16:12 - 2016-12-02 21:08 - 00617480 _____ C:\Users\USER\Downloads\voucher.pdf 2017-03-02 16:12 - 2016-10-16 21:27 - 00639945 _____ C:\Users\USER\Downloads\ingresso(4).pdf 2017-03-02 16:12 - 2016-10-16 21:27 - 00639929 _____ C:\Users\USER\Downloads\ingresso(2).pdf 2017-03-02 16:12 - 2016-10-16 21:27 - 00639888 _____ C:\Users\USER\Downloads\ingresso(3).pdf 2017-03-02 16:12 - 2016-10-16 21:26 - 00639968 _____ C:\Users\USER\Downloads\ingresso(1).pdf 2017-03-02 16:12 - 2016-10-09 10:49 - 03589050 _____ () C:\Users\USER\Downloads\Shiginima Launcher SE v3.000.exe 2017-03-02 16:12 - 2016-10-09 10:40 - 12903336 _____ (MEGA Limited) C:\Users\USER\Downloads\MEGAsyncSetup.exe 2017-03-02 16:12 - 2016-10-07 23:51 - 44082096 _____ C:\Users\USER\Downloads\sjtsetup_x86_gcc.exe 2017-03-02 16:12 - 2016-09-13 23:39 - 00603640 _____ (Visicom Media inc.) C:\Users\USER\Downloads\ManyCamWebInstaller.exe 2017-03-02 16:12 - 2016-07-30 01:57 - 92529544 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-ENU.exe 2017-03-02 16:12 - 2016-07-30 01:43 - 14254240 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-PTB.exe 2017-03-02 16:12 - 2016-07-30 01:19 - 49325376 _____ (Microsoft Corporation) C:\Users\USER\Downloads\NDP461-DevPack-KB3105179-ENU.exe.ybujf3b.partial 2017-03-02 16:12 - 2016-07-30 00:12 - 49301036 _____ C:\Users\USER\Downloads\SurfaceBook_Win10_161000_0.zip.3qyhx5d.partial 2017-03-02 16:12 - 2016-07-30 00:05 - 03342040 _____ C:\Users\USER\Downloads\wrar531br.exe 2017-03-02 16:12 - 2016-07-22 02:21 - 00639957 _____ C:\Users\USER\Downloads\ingresso.pdf 2017-03-02 16:12 - 2016-07-22 02:21 - 00639916 _____ C:\Users\USER\Downloads\ingresso (1).pdf 2017-03-02 16:12 - 2016-07-11 23:31 - 221675520 _____ C:\Users\USER\Downloads\LibreOffice_5.1.4_Win_x86.msi 2017-03-02 16:12 - 2016-07-06 00:50 - 07147520 _____ C:\Users\USER\Downloads\LibreOffice_5.1.4_Win_x86_helppack_pt-BR.msi 2017-03-02 16:12 - 2016-07-06 00:31 - 224260096 _____ C:\Users\USER\Downloads\LibreOffice_5.0.6_Win_x86.msi 2017-03-02 16:12 - 2016-07-05 17:11 - 28413775 _____ C:\Users\USER\Downloads\tse-executavel-candex-2012-v-1-0-1.zip 2017-03-02 16:12 - 2016-07-04 22:39 - 15673133 _____ C:\Users\USER\Downloads\steampunk theme.zip 2017-03-02 16:12 - 2016-07-04 12:29 - 01877027 _____ C:\Users\USER\Downloads\Photos (2).zip 2017-03-02 16:12 - 2016-06-20 20:49 - 22224014 _____ C:\Users\USER\Downloads\Photos (1).zip 2017-03-02 16:12 - 2016-06-18 17:11 - 00049976 _____ C:\Users\USER\Downloads\legendas_tv_20160618084654000000.rar 2017-03-02 16:12 - 2016-06-03 23:52 - 24245913 _____ C:\Users\USER\Downloads\world-flags-icons-by-studiotwentyeight.zip 2017-03-02 16:12 - 2016-06-03 22:14 - 09566093 _____ C:\Users\USER\Downloads\vector_country_flag_shields_146684.zip 2017-03-02 16:12 - 2016-06-03 22:12 - 11618225 _____ C:\Users\USER\Downloads\world_countries_flags_vector_288823.zip 2017-03-02 16:12 - 2016-06-03 22:12 - 03818693 _____ C:\Users\USER\Downloads\world_national_flag_vectors_147727 (1).zip 2017-03-02 16:12 - 2016-06-03 22:10 - 03818693 _____ C:\Users\USER\Downloads\world_national_flag_vectors_147727.zip 2017-03-02 16:12 - 2016-06-03 22:02 - 00053021 _____ C:\Users\USER\Downloads\world_flag_emotes_by_boffinbrain.zip 2017-03-02 16:12 - 2016-06-03 22:01 - 01784799 _____ C:\Users\USER\Downloads\world_cup_flag_balls_by_creativegeekdesigns.zip 2017-03-02 16:12 - 2016-05-08 14:37 - 43853022 _____ C:\Users\USER\Downloads\Photos.zip 2017-03-02 16:12 - 2016-05-06 00:03 - 01032576 _____ ( ) C:\Users\USER\Downloads\md5_hash.exe 2017-03-02 16:12 - 2016-05-05 23:25 - 02173104 _____ C:\Users\USER\Downloads\Setup_FileViewPro_2016.exe 2017-03-02 16:12 - 2016-04-17 15:59 - 01772544 _____ C:\Users\USER\Downloads\vagalume-letras-mediaplayer-plugin-v1-3.exe 2017-03-02 16:12 - 2016-04-13 12:29 - 47389312 _____ (Skype Technologies S.A.) C:\Users\USER\Downloads\SkypeSetupFull.exe 2017-03-02 16:12 - 2016-04-10 02:38 - 14596608 _____ C:\Users\USER\Downloads\uniconvertor-1.1.5-win32.msi 2017-03-02 16:12 - 2016-01-27 00:06 - 28690931 _____ (APOWERSOFT LIMITED ) C:\Users\USER\Downloads\video-converter-studio.exe 2017-03-02 16:12 - 2016-01-23 11:53 - 01504384 _____ (Skype Technologies S.A.) C:\Users\USER\Downloads\SkypeSetup.exe 2017-03-02 16:12 - 2016-01-06 22:24 - 11161105 _____ C:\Users\USER\Downloads\pfsx-setup-en-10.10.1.exe 2017-03-02 16:12 - 2016-01-03 18:47 - 20233712 _____ (APOWERSOFT LIMITED ) C:\Users\USER\Downloads\streaming-audio-recorder.exe 2017-03-02 16:11 - 2017-03-02 18:51 - 00000000 ____D C:\Users\USER\Documents\xwidget 2017-03-02 16:11 - 2017-03-02 18:51 - 00000000 ____D C:\Users\USER\Documents\Wondershare Video Editor 2017-03-02 16:11 - 2017-02-28 21:15 - 00107981 _____ C:\Users\USER\Downloads\fifty-shades-darker-pob-6900090.zip 2017-03-02 16:11 - 2017-02-18 20:18 - 00091922 _____ C:\Users\USER\Downloads\Fifty Shades Darker 2017 HD-TS x264-CPG.srt 2017-03-02 16:11 - 2017-02-18 17:12 - 3749445632 _____ C:\Users\USER\Downloads\CSGO v1.34.8.0.iso 2017-03-02 16:11 - 2017-02-11 20:49 - 00002045 _____ C:\Users\USER\Downloads\Abrir como Administrador.bat 2017-03-02 16:11 - 2017-02-09 14:39 - 08251904 _____ C:\Users\USER\Downloads\ComplementoChromeBanrisul_vrs001.msi 2017-03-02 16:11 - 2016-09-20 21:55 - 01065376 _____ (Google Inc.) C:\Users\USER\Downloads\ChromeSetup.exe 2017-03-02 16:11 - 2016-08-17 16:02 - 00690584 _____ (Dropbox, Inc.) C:\Users\USER\Downloads\DropboxInstaller (1).exe 2017-03-02 16:11 - 2016-08-16 15:29 - 22525224 _____ (Lenovo Group ) C:\Users\USER\Downloads\ID1CAM23WW5.exe 2017-03-02 16:11 - 2016-07-30 01:40 - 01005568 _____ (Microsoft Corporation) C:\Users\USER\Downloads\dotNetFx45_Full_setup.exe 2017-03-02 16:11 - 2016-07-22 01:10 - 00242320 _____ C:\Users\USER\Downloads\Firefox Setup Stub 47.0.1.exe 2017-03-02 16:11 - 2016-07-08 18:44 - 00066416 _____ C:\Users\USER\Downloads\data (3).pdf 2017-03-02 16:11 - 2016-07-06 02:19 - 140783556 _____ C:\Users\USER\Downloads\Apache_OpenOffice_4.1.2_Win_x86_install_en-US.exe 2017-03-02 16:11 - 2016-07-06 01:53 - 128620512 _____ C:\Users\USER\Downloads\Apache_OpenOffice_4.1.2_Win_x86_install_pt-BR.exe 2017-03-02 16:11 - 2016-07-04 22:28 - 00053391 _____ C:\Users\USER\Downloads\forma.ZIP 2017-03-02 16:11 - 2016-06-15 22:36 - 01986992 _____ C:\Users\USER\Downloads\hellas3_setup.exe 2017-03-02 16:11 - 2016-06-15 22:10 - 01986992 _____ C:\Users\USER\Downloads\callofatlantis_setup.exe 2017-03-02 16:11 - 2016-06-15 21:38 - 01986992 _____ C:\Users\USER\Downloads\cradleofrome_setup.exe 2017-03-02 16:11 - 2016-05-09 23:11 - 00165819 _____ C:\Users\USER\Downloads\041_PM910T3_0011827836_2015.10.05.PDF 2017-03-02 16:11 - 2016-05-05 23:43 - 01032576 _____ ( ) C:\Users\USER\Downloads\fsum.exe 2017-03-02 16:11 - 2016-05-05 23:43 - 00092359 _____ C:\Users\USER\Downloads\fsum.exe.ZIP 2017-03-02 16:11 - 2016-04-18 21:26 - 00054199 _____ C:\Users\USER\Downloads\data (2).pdf 2017-03-02 16:11 - 2016-04-18 21:25 - 00054199 _____ C:\Users\USER\Downloads\data (1).pdf 2017-03-02 16:11 - 2016-04-18 21:16 - 00054199 _____ C:\Users\USER\Downloads\data.pdf 2017-03-02 16:11 - 2016-04-17 00:34 - 03468053 _____ C:\Users\USER\Downloads\Herobrinemod1.7.10.21.jar 2017-03-02 16:11 - 2016-01-07 01:36 - 14039568 _____ C:\Users\USER\Downloads\CursorFX_free.exe 2017-03-02 16:11 - 2015-12-31 21:57 - 02045864 _____ C:\Users\USER\Downloads\Bundesliga1213Logo_Crystal_heru87.rar 2017-03-02 16:11 - 2012-10-17 14:08 - 00000000 ____D C:\Users\USER\Documents\Youtube Videos 2017-03-02 16:10 - 2017-03-02 18:48 - 00000000 ____D C:\Users\USER\Documents\Wondershare Video Converter Ultimate 2017-03-02 16:10 - 2017-03-02 18:48 - 00000000 ____D C:\Users\USER\Documents\Wondershare Filmora 2017-03-02 16:10 - 2014-06-29 13:35 - 00000000 ____D C:\Users\USER\Documents\Vuze Downloads 2017-03-02 16:09 - 2017-03-02 18:47 - 00000000 ____D C:\Users\USER\Documents\VSO Downloader 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ___RD C:\Users\USER\Documents\RocketLifeNetwork 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Video Download Capture 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\The KMPlayer 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Stardock 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Solitaire Kingdom Supreme Documents 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\SoftMaker 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Readon Player 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\RAD 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\PointBlank 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\PcSetup 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\Ovogame 2017-03-02 16:09 - 2017-03-02 18:25 - 00000000 ____D C:\Users\USER\Documents\NeroVision 2017-03-02 16:09 - 2017-03-02 18:24 - 00000000 ____D C:\Users\USER\Documents\Need for Speed World 2017-03-02 16:09 - 2017-03-02 18:24 - 00000000 ____D C:\Users\USER\Documents\My Games 2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\Meus arquivos recebidos 2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\League of Legends 2017-03-02 16:09 - 2017-03-02 18:23 - 00000000 ____D C:\Users\USER\Documents\Incomplete 2017-03-02 16:09 - 2017-03-02 18:22 - 00000000 ____D C:\Users\USER\Documents\HpReg_Backup 2017-03-02 16:09 - 2017-03-02 18:22 - 00000000 ____D C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense_files 2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense pgto_files 2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Funny Photo Maker 2017-03-02 16:09 - 2017-03-02 18:21 - 00000000 ____D C:\Users\USER\Documents\Freemake 2017-03-02 16:09 - 2017-03-02 18:20 - 00000000 ____D C:\Users\USER\Documents\Free YouTube Download Manager 2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\Foto-Mosaik-Edda 2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FormatFactory 2017-03-02 16:09 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FlashIntegro 2017-03-02 16:09 - 2017-03-02 17:51 - 00000000 ___RD C:\Users\USER\Documents\Scanned Documents 2017-03-02 16:09 - 2016-07-27 23:30 - 00000000 ____D C:\Users\USER\Documents\My Photo Collage 2017-03-02 16:08 - 2017-03-02 18:13 - 00000000 ____D C:\Users\USER\Documents\FFOutput 2017-03-02 16:08 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Fax 2017-03-02 16:08 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\DESPERTAR DO AMOR 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\CyberLink 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\cheque._files 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Blocos de Anotações do OneNote 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Begeweled 4 Elements_files 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Arquivos do Outlook 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\Add-in Express 2017-03-02 16:07 - 2017-03-02 17:51 - 00000000 ____D C:\Users\USER\Documents\.android_secure 2017-03-02 16:07 - 2017-02-19 21:38 - 00012781 _____ C:\Users\USER\Documents\starburn.txt 2017-03-02 16:07 - 2017-02-14 16:59 - 00041895 _____ C:\Users\USER\Documents\PROCESSO.pdf 2017-03-02 16:07 - 2017-01-06 20:01 - 00067374 _____ C:\Users\USER\Documents\SKY.pdf 2017-03-02 16:07 - 2017-01-02 21:43 - 00489033 _____ C:\Users\USER\Documents\VIAGEM VIVI.odt 2017-03-02 16:07 - 2016-10-06 22:21 - 00026418 _____ C:\Users\USER\Documents\Sem título 1.odt 2017-03-02 16:07 - 2016-09-26 13:35 - 00012937 _____ C:\Users\USER\Documents\REQUERIMENTO DE RETORNO AO TRABALHO.odt 2017-03-02 16:07 - 2016-09-22 20:40 - 00972745 _____ C:\Users\USER\Documents\Trabalho Diego.odt 2017-03-02 16:07 - 2016-05-05 22:56 - 577734288 _____ C:\Users\USER\Documents\S5310BVJANA1_S5310BZTOANA1_ZTO.zip 2017-03-02 16:07 - 2016-05-05 20:28 - 26551126 _____ C:\Users\USER\Documents\SAMSUNG_USB_Driver_for_Mobile_Phones.zip 2017-03-02 16:07 - 2014-08-22 21:39 - 00067875 _____ C:\Users\USER\Documents\simonehilgert_ficha-financeira_2014082208470028.pdf 2017-03-02 16:07 - 2014-06-03 22:35 - 00152576 _____ C:\Users\USER\Documents\sócios alma tricolor12.xls 2017-03-02 16:07 - 2014-05-28 12:44 - 00000382 _____ C:\Users\USER\Documents\resume.xlw 2017-03-02 16:07 - 2014-05-28 12:43 - 00080925 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xlsx 2017-03-02 16:07 - 2014-05-28 12:36 - 00109056 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xls 2017-03-02 16:07 - 2014-05-28 12:28 - 00080708 _____ C:\Users\USER\Documents\SOCIOS ALMA TRICOLOR ABRIL 2014-2015.xlsm 2017-03-02 16:07 - 2014-04-25 19:56 - 08879093 _____ C:\Users\USER\Documents\Recomendacoes DESPERTAR DO AMOR.pdf 2017-03-02 16:07 - 2014-04-25 19:51 - 08879093 _____ C:\Users\USER\Documents\Recomendacoes.pdf 2017-03-02 16:07 - 2014-02-24 15:47 - 993938515 _____ C:\Users\USER\Documents\S5310BVJANA1_S5310BZTOANA1_S5310BVJANA1_HOME.tar.md5 2017-03-02 16:07 - 2012-11-14 22:28 - 00001487 _____ C:\Users\USER\Documents\VG140,D715 VG130,D710 VG120,D705 Manual de Instruções.lnk 2017-03-02 16:07 - 2012-10-13 12:52 - 01785951 _____ (P2PHood LLC) C:\Users\USER\Documents\update195.exe 2017-03-02 16:07 - 2011-07-13 21:43 - 00000134 _____ C:\Users\USER\Documents\Solução de Problemas do Internet Explorer.url 2017-03-02 16:07 - 2011-06-01 19:23 - 00318904 _____ (Microsoft Corporation) C:\Users\USER\Documents\wmpfirefoxplugin.exe 2017-03-02 16:06 - 2017-02-24 14:32 - 00636088 _____ C:\Users\USER\Desktop\ingresso naty.pdf 2017-03-02 16:06 - 2017-02-24 14:28 - 00636093 _____ C:\Users\USER\Desktop\meu ingresso.pdf 2017-03-02 16:06 - 2017-02-22 23:40 - 00044437 _____ C:\Users\USER\Documents\Autorização-para-Menores-1.docx.pdf 2017-03-02 16:06 - 2017-02-04 18:25 - 00030631 _____ C:\Users\USER\Documents\ALIEXPRESS.pdf 2017-03-02 16:06 - 2017-01-11 23:39 - 00257047 _____ C:\Users\USER\Desktop\Gols Do Fantástico - 11ª RODADA BRASILEIRÃO - 26-06-16 (1).mp4 2017-03-02 16:06 - 2016-10-01 18:54 - 00012482 _____ C:\Users\USER\Documents\LISTA DE VOTOS.odt 2017-03-02 16:06 - 2016-09-10 15:45 - 00001016 _____ C:\Users\USER\Documents\Bonus1_meditacao_shaking.mp4.lvix 2017-03-02 16:06 - 2016-08-31 14:54 - 00082284 _____ C:\Users\USER\Documents\NOTA FISCAL ADEMIRdanfe.pdf 2017-03-02 16:06 - 2016-08-30 16:25 - 00011264 _____ C:\Users\USER\Documents\Extrato Cartão.xls 2017-03-02 16:06 - 2016-08-24 22:06 - 00138388 _____ C:\Users\USER\Documents\''PROJETOS DE LEI''.odt 2017-03-02 16:06 - 2016-08-20 02:03 - 13395440 _____ (MPC-HC Team ) C:\Users\USER\Desktop\MPC-HC.1.7.10.x64.exe 2017-03-02 16:06 - 2016-08-02 16:01 - 00374864 ____T C:\Users\USER\Documents\DOCUMENTOS ADEMIR.pdf 2017-03-02 16:06 - 2016-07-26 13:31 - 00014965 _____ C:\Users\USER\Documents\Declaração de Bens.odt 2017-03-02 16:06 - 2016-04-06 21:22 - 00066526 _____ C:\Users\USER\Documents\data.pdf 2017-03-02 16:06 - 2016-03-22 12:51 - 00001811 _____ C:\Users\USER\Documents\boleto_54D5C967-3B00-487B-8F3C-5E11C13066C6.pdf - Atalho.lnk 2017-03-02 16:06 - 2016-03-19 18:26 - 00031703 _____ C:\Users\USER\Documents\fevereiro - março, 2016.wlmp 2017-03-02 16:06 - 2016-02-09 20:26 - 00038144 _____ C:\Users\USER\Documents\FATURA SKY data.pdf 2017-03-02 16:06 - 2015-10-23 23:53 - 00018633 _____ C:\Users\USER\Documents\DOCUMENTOS_2.pdf 2017-03-02 16:06 - 2015-10-23 18:57 - 00096492 _____ C:\Users\USER\Documents\Materiais-Proibidos-Arena.pdf 2017-03-02 16:06 - 2015-10-17 20:37 - 00039246 _____ C:\Users\USER\Desktop\Aplicativos Removidos.html 2017-03-02 16:06 - 2015-08-17 20:48 - 00189527 _____ C:\Users\USER\Documents\Autorização de troca (aquariustore.com.br) (1).pdf 2017-03-02 16:06 - 2015-01-26 10:59 - 00045574 _____ C:\Users\USER\Documents\NF Note Igor.pdf 2017-03-02 16:06 - 2015-01-17 15:49 - 184963016 _____ C:\Users\USER\Documents\PowerDVD_14.0.3917.58_DVD140415-03.exe 2017-03-02 16:06 - 2014-08-02 13:45 - 00157168 _____ C:\Users\USER\Documents\https___mup.comercioeletronico.com.br_paymethods_boleto_model5_prepara_pagto.pdf 2017-03-02 16:06 - 2014-05-28 12:29 - 00010274 _____ C:\Users\USER\Documents\alma tri.dotx 2017-03-02 16:06 - 2014-05-28 12:25 - 00160885 _____ C:\Users\USER\Documents\ALMA TRICOLOR.zip 2017-03-02 16:06 - 2014-04-25 20:14 - 111932951 _____ C:\Users\USER\Documents\Bonus1_meditacao_shaking.mp4 2017-03-02 16:06 - 2014-04-25 20:00 - 01678470 _____ C:\Users\USER\Documents\Bonus4_100_Crencas_Possibilitadoras DESPERTAR DO AMOR.pdf 2017-03-02 16:06 - 2014-04-25 19:59 - 02658757 _____ C:\Users\USER\Documents\Bonus3_Como_Criar_Mensagens_Subliminares DESPERTAR DO AMOR.pdf 2017-03-02 16:06 - 2014-04-25 19:57 - 02166406 _____ C:\Users\USER\Documents\Bonus2_14_Dicas_Para_Acabar_Ansiedade_Depressao DESPERTAR DO AMOR.pdf 2017-03-02 16:06 - 2014-04-25 19:49 - 01678470 _____ C:\Users\USER\Documents\Bonus4_100_Crencas_Possibilitadoras.pdf 2017-03-02 16:06 - 2014-04-25 19:47 - 02658757 _____ C:\Users\USER\Documents\Bonus3_Como_Criar_Mensagens_Subliminares.pdf 2017-03-02 16:06 - 2014-04-25 19:39 - 02166406 _____ C:\Users\USER\Documents\Bonus2_14_Dicas_Para_Acabar_Ansiedade_Depressao.pdf 2017-03-02 16:06 - 2014-03-02 14:34 - 00139223 _____ C:\Users\USER\Documents\Documento sem título.pdf 2017-03-02 16:06 - 2013-10-04 18:50 - 00509872 _____ (Ask Partner Network) C:\Users\USER\Documents\APNSetup1.exe 2017-03-02 16:06 - 2013-10-04 18:50 - 00509872 _____ (Ask Partner Network) C:\Users\USER\Documents\APNSetup.exe 2017-03-02 16:06 - 2012-11-23 23:01 - 00240292 _____ C:\Users\USER\Documents\cc_20121124_000106.reg 2017-03-02 16:06 - 2012-11-16 13:09 - 00001919 _____ C:\Users\USER\Documents\ib.lnk 2017-03-02 16:06 - 2012-11-14 22:06 - 00001113 _____ C:\Users\USER\Documents\Atualizador de Câmera Digital OLYMPUS.lnk 2017-03-02 16:06 - 2012-10-29 22:53 - 22529422 _____ C:\Users\USER\Documents\firefox-16.0.1.complete.mar 2017-03-02 16:06 - 2012-09-24 21:34 - 00083351 _____ C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense.htm 2017-03-02 16:06 - 2012-09-24 21:26 - 00084547 _____ C:\Users\USER\Documents\Gremio Foot-Ball Porto Alegrense pgto.htm 2017-03-02 16:06 - 2012-09-17 21:01 - 00000000 _____ C:\Users\USER\Documents\dujtktut.flv 2017-03-02 16:06 - 2012-09-16 18:02 - 00006226 _____ C:\Users\USER\Documents\135120526657710.xml 2017-03-02 16:06 - 2012-08-11 14:40 - 00122475 _____ C:\Users\USER\Documents\Manual Câmera Olympus.txt 2017-03-02 16:06 - 2011-07-15 00:44 - 00015873 _____ C:\Users\USER\Documents\Begeweled 4 Elements.htm 2017-03-02 16:06 - 2011-07-12 21:51 - 00030619 _____ C:\Users\USER\Documents\cheque..htm 2017-03-02 16:06 - 2011-07-12 21:48 - 00018020 _____ C:\Users\USER\Documents\cheque!!.aspx 2017-03-02 16:06 - 2011-07-12 21:45 - 00029589 _____ C:\Users\USER\Documents\cheque!.aspx 2017-03-02 16:06 - 2011-07-11 21:02 - 02141504 _____ C:\Users\USER\Documents\Papel de Parede Abelha,animado!.zip 2017-03-02 16:06 - 2011-07-11 21:00 - 04832649 _____ C:\Users\USER\Documents\101_Dalmatians.exe 2017-03-02 16:06 - 2011-07-11 20:33 - 05241307 _____ (7Screensavers.com ) C:\Users\USER\Documents\papel de Parede Relógio das Estações!.exe 2017-03-02 16:06 - 2011-07-09 19:06 - 00000309 _____ C:\Users\USER\Documents\Bem-Vindo(a) Revendedor(a).url 2017-03-02 16:06 - 2011-05-29 21:31 - 00823808 _____ C:\Users\USER\Documents\71967-Aosamigosestressados-1.pps 2017-03-02 16:06 - 2010-12-24 11:19 - 02790607 _____ C:\Users\USER\Documents\Camera Olympus.pdf 2017-03-02 16:02 - 2017-03-07 21:42 - 00003758 _____ C:\Windows\System32\Tasks\AutoKMS 2017-03-02 16:02 - 2017-03-02 17:40 - 00000000 ____D C:\Windows\AutoKMS 2017-03-02 16:02 - 2017-03-02 16:02 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Toolkit 2017-03-02 16:02 - 2017-03-02 16:02 - 00000000 ____D C:\ProgramData\Microsoft Toolkit 2017-03-02 16:01 - 2017-03-05 16:13 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00337592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00126600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-03-02 16:01 - 2017-03-05 16:13 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-03-02 16:01 - 2017-03-05 16:12 - 00993608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2017-03-02 16:01 - 2017-03-05 16:12 - 00000000 ____D C:\Program Files\AVAST Software 2017-03-02 16:01 - 2017-03-02 16:01 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2017-03-02 16:01 - 2017-03-02 16:01 - 00000000 ____D C:\Users\USER\AppData\Roaming\AVAST Software 2017-03-02 16:00 - 2017-03-05 22:26 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software 2017-03-02 16:00 - 2017-03-05 22:26 - 00000000 ____D C:\ProgramData\AVAST Software 2017-03-02 16:00 - 2017-03-02 16:00 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2017-03-02 15:40 - 2017-03-07 23:53 - 00000000 ____D C:\Users\Todos os Usuários\Adobe 2017-03-02 15:40 - 2017-03-07 23:53 - 00000000 ____D C:\ProgramData\Adobe 2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-03-02 15:38 - 2017-03-05 22:44 - 00000000 ____D C:\Program Files\WinRAR 2017-03-02 15:38 - 2017-03-02 16:01 - 00000000 ____D C:\Users\USER\AppData\Roaming\WinRAR 2017-03-02 15:38 - 2017-03-02 15:38 - 00002901 _____ C:\Users\USER\Desktop\Word 2013.lnk 2017-03-02 15:38 - 2017-03-02 15:38 - 00002821 _____ C:\Users\USER\Desktop\Excel 2013.lnk 2017-03-02 15:38 - 2017-03-02 15:38 - 00002769 _____ C:\Users\USER\Desktop\PowerPoint 2013.lnk 2017-03-02 11:54 - 2017-03-02 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2017-03-02 11:53 - 2017-03-02 18:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Windows\PCHEALTH 2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2017-03-02 11:53 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-03-02 11:49 - 2017-03-07 12:32 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2017-03-02 11:49 - 2017-03-05 22:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-03-02 11:49 - 2017-03-02 11:53 - 00000000 ____D C:\Program Files\Microsoft Office 2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Users\USER\AppData\Local\Microsoft Help 2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2017-03-02 11:49 - 2017-03-02 11:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2017-03-02 11:48 - 2017-03-02 11:48 - 00000000 __RHD C:\MSOCache 2017-03-02 11:36 - 2017-03-06 21:30 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-110062565-2361055857-3464527491-1001 2017-03-02 11:30 - 2017-03-03 09:40 - 00000000 ____D C:\Users\USER\AppData\Roaming\Adobe 2017-03-02 11:30 - 2017-03-02 11:30 - 00001406 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\USER\AppData\Local\VirtualStore 2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\USER\AppData\Local\Packages 2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\Users\Todos os Usuários\PRICache 2017-03-02 11:30 - 2017-03-02 11:30 - 00000000 ____D C:\ProgramData\PRICache 2017-03-02 11:29 - 2017-03-02 11:29 - 00000020 ___SH C:\Users\USER\ntuser.ini 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Modelos 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Meus Documentos 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Menu Iniciar 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Minhas Músicas 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Minhas Imagens 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Documents\Meus Vídeos 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Dados de Aplicativos 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Configurações Locais 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Local\Histórico 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\AppData\Local\Dados de Aplicativos 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Ambiente de Rede 2017-03-02 11:29 - 2017-03-02 11:29 - 00000000 _SHDL C:\Users\USER\Ambiente de Impressão 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Músicas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Imagens 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus Vídeos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Usuário Padrão 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Todos os Usuários 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas Músicas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Minhas Imagens 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Public\Documents\Meus Vídeos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Modelos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Meus Documentos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Músicas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Minhas Imagens 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Documents\Meus Vídeos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Configurações Locais 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Ambiente de Rede 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default\Ambiente de Impressão 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Músicas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas Imagens 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\Documents\Meus Vídeos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Modelos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Documentos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\ProgramData\Dados de Aplicativos 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2017-03-02 11:28 - 2017-03-02 11:28 - 00000000 _SHDL C:\Arquivos de Programas 2017-03-02 11:26 - 2017-03-02 11:26 - 00001136 _____ C:\Windows\system32\netcfg-60968.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000185 _____ C:\Windows\system32\netcfg-52265.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000164 _____ C:\Windows\system32\netcfg-48421.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000161 _____ C:\Windows\system32\netcfg-51921.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-51625.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-50953.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000160 _____ C:\Windows\system32\netcfg-48781.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000159 _____ C:\Windows\system32\netcfg-50734.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000157 _____ C:\Windows\system32\netcfg-51375.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000157 _____ C:\Windows\system32\netcfg-49203.txt 2017-03-02 11:25 - 2017-03-02 11:25 - 00000150 _____ C:\Windows\system32\netcfg-50484.txt 2017-03-02 07:24 - 2017-03-02 11:29 - 00000000 ____D C:\Windows\Panther 2017-03-02 07:24 - 2012-08-08 16:06 - 00000013 ____R C:\Windows\csup.txt 2017-03-02 07:23 - 2017-03-07 21:13 - 00762816 _____ C:\Windows\system32\prfh0416.dat 2017-03-02 07:23 - 2017-03-07 21:13 - 00154608 _____ C:\Windows\system32\prfc0416.dat 2017-03-02 07:23 - 2017-03-02 07:23 - 00328358 _____ C:\Windows\system32\prfi0416.dat 2017-03-02 07:23 - 2017-03-02 07:23 - 00040752 _____ C:\Windows\system32\prfd0416.dat 2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\Windows\SysWOW64\0409 2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\Windows\system32\0409 2017-03-02 07:23 - 2017-03-02 07:23 - 00000000 ____D C:\sources 2017-02-10 15:42 - 2017-02-10 15:42 - 00045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2017-02-10 15:42 - 2017-02-10 15:42 - 00045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-03-07 23:55 - 2012-07-26 04:59 - 00000000 ____D C:\Windows\CbsTemp 2017-03-07 23:29 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-03-07 23:29 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\Macromed 2017-03-07 21:40 - 2012-07-26 04:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-03-07 21:13 - 2012-07-26 04:28 - 01765682 _____ C:\Windows\system32\PerfStringBackup.INI 2017-03-07 21:13 - 2012-07-26 02:37 - 00000000 ____D C:\Windows\Inf 2017-03-07 20:15 - 2012-07-26 02:37 - 00000000 ____D C:\Windows\servicing 2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\WinStore 2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows Defender 2017-03-07 20:11 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-03-07 20:10 - 2012-07-26 08:22 - 00000000 ____D C:\Program Files\Windows Journal 2017-03-07 20:10 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\oobe 2017-03-07 10:42 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\rescache 2017-03-05 22:37 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\MUI 2017-03-05 22:37 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\MUI 2017-03-05 21:00 - 2012-07-26 05:12 - 00000000 ___HD C:\Program Files\WindowsApps 2017-03-05 21:00 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\AUInstallAgent 2017-03-05 19:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\NDF 2017-03-05 18:12 - 2012-07-26 05:12 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2017-03-05 18:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2017-03-03 21:34 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\WinBioDatabase 2017-03-02 19:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\WinBioPlugIns 2017-03-02 17:45 - 2012-07-26 02:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-03-02 17:42 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\System 2017-03-02 12:15 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-03-02 12:15 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\winrm 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\WCN 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\sysprep 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\slmgr 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\winrm 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\WCN 2017-03-02 12:14 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\slmgr 2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\migwiz 2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\SysWOW64\Com 2017-03-02 12:14 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\migwiz 2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\SysWOW64\oobe 2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\SysWOW64\Dism 2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\Sysprep 2017-03-02 12:14 - 2012-07-26 02:38 - 00000000 ____D C:\Windows\system32\Dism 2017-03-02 12:13 - 2012-07-26 08:20 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2017-03-02 12:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\SystemResetPlatform 2017-03-02 12:12 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\system32\Com 2017-03-02 11:54 - 2012-07-26 08:22 - 00000000 ____D C:\Windows\ShellNew 2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft 2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-03-02 11:53 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-03-02 11:50 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Common Files\System 2017-03-02 11:50 - 2012-07-26 02:26 - 00000167 _____ C:\Windows\win.ini 2017-03-02 11:28 - 2012-07-26 05:12 - 00000000 ____D C:\Program Files\Windows NT 2017-03-02 07:24 - 2012-07-26 05:13 - 00262144 _____ C:\Windows\system32\config\BCD-Template 2017-03-02 07:23 - 2012-07-26 05:12 - 00000000 ____D C:\Windows\PolicyDefinitions Alguns arquivos em TEMP: ==================== 2017-03-02 11:48 - 2012-10-01 21:44 - 0178824 ____R (Microsoft Corporation) C:\Users\USER\AppData\Local\Temp\ose00000.exe 2017-03-05 23:32 - 2017-03-05 23:34 - 14456872 _____ (Microsoft Corporation) C:\Users\USER\AppData\Local\Temp\vc_redist.x86.exe 2017-03-07 20:52 - 2017-03-07 20:52 - 4037721 _____ (Dropbox, Inc.) C:\Users\USER\AppData\Local\Temp\{9BE17F6F-798B-4792-BFBC-2752873D6FA6}-DropboxClient_21.4.25.exe ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2017-03-02 11:25 ==================== Fim de FRST.txt ============================