Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 25-06-2017 01 Executado por DIONÍSIO (administrador) em DIONÍSIO-PC (25-06-2017 16:23:29) Executando a partir de C:\Users\DIONÍSIO\Downloads Perfis Carregados: DIONÍSIO (Perfis Disponíveis: DIONÍSIO) Platform: Windows 7 Professional (X64) Idioma: Português (Brasil) Internet Explorer Versão 8 (Navegador padrão: IE) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registro (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239592 2017-05-31] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [263232 2017-06-17] (AVG Technologies CZ, s.r.o.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrição <==== ATENÇÃO ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Nenhum Arquivo ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 10.128.128.128 Tcpip\..\Interfaces\{D471E83D-4BC9-4382-B045-771ED79C2FD3}: [DhcpNameServer] 10.128.128.128 Internet Explorer: ================== HKU\S-1-5-21-966817632-2830719173-3086311080-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-06-07] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-06-07] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-06-07] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-06-07] (Foxit Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-06-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-06-14] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default [2017-06-25] CHR Extension: (Google Apresentações) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-06-14] CHR Extension: (Google Docs) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-06-14] CHR Extension: (Google Drive) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-06-14] CHR Extension: (YouTube) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14] CHR Extension: (Planilhas do Google) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-06-14] CHR Extension: (Documentos Google off-line) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-06-14] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-06-14] CHR Extension: (Gmail) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-06-14] CHR Extension: (Chrome Media Router) - C:\Users\DIONÍSIO\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-14] ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [264432 2017-06-17] (AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7396872 2017-06-17] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428656 2017-05-31] (AVG Technologies CZ, s.r.o.) R2 FoxitReaderService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1647808 2016-06-21] (Foxit Software Inc.) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [5906704 2017-02-21] (AVG Technologies CZ, s.r.o.) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R1 avgbdisk; C:\Windows\system32\drivers\avgbdiska.sys [166624 2017-06-17] (AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\Windows\system32\drivers\avgbidsdrivera.sys [314128 2017-06-17] (AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\Windows\system32\drivers\avgbidsha.sys [192584 2017-06-17] (AVG Technologies CZ, s.r.o.) R0 avgblog; C:\Windows\system32\drivers\avgbloga.sys [336896 2017-06-17] (AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\Windows\system32\drivers\avgbuniva.sys [51336 2017-06-17] (AVG Technologies CZ, s.r.o.) S3 avgHwid; C:\Windows\system32\drivers\avgHwid.sys [39424 2017-06-17] (AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\Windows\system32\drivers\avgMonFlt.sys [129776 2017-06-17] (AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\Windows\system32\drivers\avgRdr2.sys [102280 2017-06-17] (AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\Windows\system32\drivers\avgRvrt.sys [76832 2017-06-17] (AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\Windows\system32\drivers\avgSnx.sys [1008288 2017-06-17] (AVG Technologies CZ, s.r.o.) R1 avgSP; C:\Windows\system32\drivers\avgSP.sys [570320 2017-06-17] (AVG Technologies CZ, s.r.o.) R2 avgStm; C:\Windows\system32\drivers\avgStm.sys [160008 2017-06-17] (AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\Windows\system32\drivers\avgVmm.sys [340824 2017-06-17] (AVG Technologies CZ, s.r.o.) R3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [416768 2009-06-10] (Realtek Semiconductor Corporation ) R3 smserial; C:\Windows\System32\DRIVERS\SmSerl64.sys [1227776 2009-06-10] (Motorola Inc.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2017-02-21] (AVG Netherlands B.V.) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três Meses Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-06-25 16:21 - 2017-06-25 16:23 - 00010767 _____ C:\Users\DIONÍSIO\Downloads\FRST.txt 2017-06-25 16:21 - 2017-06-25 16:22 - 00019715 _____ C:\Users\DIONÍSIO\Downloads\Addition.txt 2017-06-25 16:20 - 2017-06-25 16:23 - 00000000 ____D C:\FRST 2017-06-25 16:19 - 2017-06-25 16:20 - 02441216 _____ (Farbar) C:\Users\DIONÍSIO\Downloads\FRST64.exe 2017-06-25 16:17 - 2017-06-25 16:18 - 01780224 _____ (Farbar) C:\Users\DIONÍSIO\Downloads\FRST.exe 2017-06-25 16:17 - 2017-06-25 16:17 - 00002917 _____ C:\Users\DIONÍSIO\Downloads\FSS.txt 2017-06-25 16:16 - 2017-06-25 16:16 - 00899584 _____ (Farbar) C:\Users\DIONÍSIO\Downloads\FSS.exe 2017-06-25 14:38 - 2017-06-25 15:57 - 259195720 _____ (Apple Inc.) C:\Users\DIONÍSIO\Downloads\iTunes64Setup.exe 2017-06-25 00:11 - 2017-06-25 00:11 - 00000000 ____D C:\win32-loader 2017-06-25 00:11 - 2017-06-20 14:32 - 00183992 _____ C:\g2ldr 2017-06-25 00:11 - 2017-06-20 14:32 - 00008192 _____ C:\g2ldr.mbr 2017-06-24 18:43 - 2017-06-24 18:43 - 00003006 _____ C:\Windows\System32\Tasks\{E2979D29-89D1-4599-A763-32E0A651E79B} 2017-06-24 18:43 - 2017-06-24 18:43 - 00003006 _____ C:\Windows\System32\Tasks\{77E8F897-2F46-42CC-8A50-93608C32AF32} 2017-06-24 18:43 - 2017-06-24 18:43 - 00003006 _____ C:\Windows\System32\Tasks\{358F346C-139B-4820-98E7-07FA98221927} 2017-06-24 18:43 - 2017-06-24 18:43 - 00003006 _____ C:\Windows\System32\Tasks\{092491BA-7E8F-4F0D-871C-C7B6D8FCAE03} 2017-06-24 18:42 - 2017-06-24 18:42 - 00002761 _____ C:\Users\Public\Desktop\Sculptris Alpha 6.exe.lnk 2017-06-24 18:42 - 2017-06-24 18:42 - 00000000 ____D C:\Users\Public\Pixologic 2017-06-24 18:42 - 2017-06-24 18:42 - 00000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2017-06-24 03:38 - 2017-06-24 03:38 - 00000901 _____ C:\Users\DIONÍSIO\Desktop\Dreads.txt 2017-06-24 03:05 - 2017-06-24 03:05 - 00000071 _____ C:\Users\DIONÍSIO\Desktop\shellscript.txt 2017-06-23 22:54 - 2017-06-23 22:54 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2017-06-23 22:46 - 2012-06-02 19:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-06-23 22:46 - 2012-06-02 19:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-06-23 22:46 - 2012-06-02 19:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-06-23 22:46 - 2012-06-02 19:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-06-23 22:46 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-06-23 22:46 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-06-21 22:13 - 2017-06-21 22:13 - 00000034 _____ C:\Users\DIONÍSIO\Desktop\caixa+nota+fiscal=desbloqueio_Iphone5.txt 2017-06-20 08:41 - 2017-06-20 08:41 - 00000000 ____D C:\Users\DIONÍSIO\Documents\Nova pasta 2017-06-19 21:04 - 2017-06-19 21:04 - 00000800 _____ C:\Users\DIONÍSIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2017-06-19 21:04 - 2017-06-19 21:04 - 00000752 _____ C:\Users\DIONÍSIO\Desktop\Start Tor Browser.lnk 2017-06-19 21:04 - 2017-06-19 21:04 - 00000000 ____D C:\Users\DIONÍSIO\Desktop\Tor Browser 2017-06-19 20:45 - 2017-06-19 20:54 - 54270000 _____ C:\Users\DIONÍSIO\Downloads\torbrowser-install-7.0.1_en-US.exe 2017-06-19 17:09 - 2017-06-19 18:19 - 00001063 _____ C:\Users\Public\Desktop\Win32DiskImager.lnk 2017-06-19 17:09 - 2017-06-19 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2017-06-19 17:09 - 2017-06-19 18:19 - 00000000 ____D C:\Program Files (x86)\ImageWriter 2017-06-19 10:59 - 2017-06-19 11:22 - 00000000 ____D C:\Symbols 2017-06-18 22:26 - 2017-06-18 22:26 - 10486518 _____ C:\Users\DIONÍSIO\Downloads\Python_Cookbook_3rd_Edition.pdf 2017-06-18 22:19 - 2017-06-18 22:19 - 05344361 _____ C:\Users\DIONÍSIO\Downloads\python_para_desenvolvedores_2ed.pdf 2017-06-18 22:19 - 2017-06-18 22:19 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Notepad++ 2017-06-18 22:19 - 2017-06-18 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2017-06-18 22:19 - 2017-06-18 22:19 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2017-06-18 22:16 - 2017-06-19 00:07 - 308797952 _____ C:\Users\DIONÍSIO\Downloads\Windows_Win7SP1.7601.17514.101119-1850.X86CHK.Symbols.msi 2017-06-18 22:16 - 2017-06-19 00:02 - 253522944 _____ C:\Users\DIONÍSIO\Downloads\Windows_Win7SP1.7601.17514.101119-1850.IA64CHK.Symbols.msi 2017-06-18 22:16 - 2017-06-18 23:46 - 202747392 _____ C:\Users\DIONÍSIO\Downloads\Windows_Win7SP1.7601.17514.101119-1850.IA64FRE.Symbols.msi 2017-06-18 22:05 - 2017-06-18 22:06 - 03051288 _____ C:\Users\DIONÍSIO\Downloads\npp.7.4.2.Installer.exe 2017-06-18 21:45 - 2017-06-18 22:09 - 31392272 _____ (Python Software Foundation) C:\Users\DIONÍSIO\Downloads\python-3.6.1-amd64.exe 2017-06-18 15:41 - 2017-06-18 22:13 - 00000000 ___SD C:\Users\DIONÍSIO\AppData\LocalLow\Temp 2017-06-18 14:45 - 2017-06-18 14:45 - 04639093 _____ C:\Users\DIONÍSIO\Documents\Untitled-1.psd 2017-06-18 13:29 - 2017-06-18 13:29 - 00002760 _____ C:\Windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance 2017-06-17 20:35 - 2017-02-21 09:29 - 00053008 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe 2017-06-17 20:35 - 2017-02-21 09:25 - 00044304 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll 2017-06-17 20:35 - 2017-02-21 09:25 - 00042256 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll 2017-06-17 20:34 - 2017-06-17 20:34 - 00002600 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk 2017-06-17 20:34 - 2017-06-17 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2017-06-17 20:05 - 2017-06-17 20:05 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\AVG 2017-06-17 19:56 - 2017-06-25 14:03 - 00004178 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update 2017-06-17 19:56 - 2017-06-17 19:56 - 00160008 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgstm.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 01008288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00570320 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00340824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00336896 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbloga.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00314128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdrivera.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00192584 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsha.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00166624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbdiska.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00129776 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00102280 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00076832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00051336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniva.sys 2017-06-17 19:56 - 2017-06-17 19:55 - 00039424 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgHwid.sys 2017-06-17 19:55 - 2017-06-17 19:55 - 00401584 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe 2017-06-17 19:34 - 2017-06-17 19:34 - 00001008 _____ C:\Users\Public\Desktop\AVG.lnk 2017-06-17 19:34 - 2017-06-17 19:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2017-06-17 19:24 - 2017-06-21 23:29 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task 2017-06-17 19:24 - 2017-06-17 20:34 - 00000000 ____D C:\Program Files (x86)\AVG 2017-06-17 19:24 - 2017-06-17 19:24 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\CEF 2017-06-17 19:16 - 2017-06-18 01:10 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\AvgSetupLog 2017-06-17 19:16 - 2017-06-17 21:20 - 00000000 ____D C:\Users\Todos os Usuários\Avg 2017-06-17 19:16 - 2017-06-17 21:20 - 00000000 ____D C:\ProgramData\Avg 2017-06-17 19:16 - 2017-06-17 20:34 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Avg 2017-06-17 19:16 - 2017-06-17 19:16 - 03620936 _____ (AVG Technologies CZ, s.r.o.) C:\Users\DIONÍSIO\Downloads\Antivirus_Free_2024.exe 2017-06-17 19:10 - 2017-06-17 19:10 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Downloaded Installations 2017-06-17 19:10 - 2011-06-22 17:29 - 20714876 _____ (Pixologic ) C:\Users\DIONÍSIO\Downloads\Sculptris Alpha 6.exe 2017-06-17 19:02 - 2017-06-17 19:10 - 20168505 _____ C:\Users\DIONÍSIO\Downloads\sculptris-alpha6-en-win.zip 2017-06-17 18:55 - 2017-06-17 19:01 - 03456725 _____ C:\Users\DIONÍSIO\Downloads\Não confirmado 681152.crdownload 2017-06-17 18:50 - 2017-06-17 18:50 - 00003006 _____ C:\Windows\System32\Tasks\{C720B2D3-C038-4B2E-B834-F73047DAAE4B} 2017-06-17 18:50 - 2017-06-17 18:50 - 00003006 _____ C:\Windows\System32\Tasks\{777C134A-A1A6-4FBF-AC45-E6441677C0C5} 2017-06-17 18:48 - 2017-06-24 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pixologic 2017-06-17 18:48 - 2017-06-24 18:42 - 00000000 ____D C:\Program Files (x86)\Pixologic 2017-06-17 18:36 - 2017-06-17 18:47 - 14080064 _____ (Pixologic) C:\Users\DIONÍSIO\Downloads\Sculptris_Installer_WIN.exe 2017-06-17 16:32 - 2017-06-17 16:32 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Adobe 2017-06-17 16:31 - 2017-06-17 16:32 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Adobe 2017-06-17 16:31 - 2017-06-17 16:31 - 00001220 _____ C:\Users\Public\Desktop\Adobe Photoshop CS5.lnk 2017-06-17 16:31 - 2017-06-17 16:31 - 00000000 ____D C:\Program Files (x86)\Foroozani Software 2017-06-17 16:29 - 2017-06-17 16:29 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\WinRAR 2017-06-17 16:29 - 2017-06-17 16:29 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-06-17 16:29 - 2017-06-17 16:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-06-17 16:29 - 2017-06-17 16:29 - 00000000 ____D C:\Program Files\WinRAR 2017-06-17 16:29 - 2011-08-09 17:12 - 66057341 ____R (Foroozani Software) C:\Users\DIONÍSIO\Downloads\Adobe Photoshop CS5 PORTABLE.exe 2017-06-17 16:28 - 2017-06-17 16:28 - 02213656 _____ C:\Users\DIONÍSIO\Downloads\winrar-x64-55b4.exe 2017-06-17 16:16 - 2017-06-17 16:28 - 66057432 _____ C:\Users\DIONÍSIO\Downloads\Adobe Photoshop CS5 PORTABLE.rar 2017-06-17 13:22 - 2017-06-17 13:22 - 00000028 _____ C:\Users\DIONÍSIO\Desktop\charles bukowvski - mulheres.txt 2017-06-16 23:02 - 2017-06-16 23:02 - 00002968 _____ C:\Windows\System32\Tasks\{5C43D578-59C0-49D4-938F-D3A3DD9F9F3E} 2017-06-16 19:28 - 2017-06-16 19:28 - 00198808 _____ C:\Users\DIONÍSIO\Desktop\271069146-36977315 (1).pdf 2017-06-16 12:17 - 2017-06-13 21:33 - 14376715 _____ C:\Users\DIONÍSIO\Documents\The Cure - Lullaby.mp4 2017-06-16 12:17 - 2017-06-13 21:32 - 09229999 _____ C:\Users\DIONÍSIO\Documents\Tyler The Creator - Bimmer ft. Frank Ocean.mp4 2017-06-16 11:55 - 2017-06-13 21:42 - 58122249 _____ C:\Users\DIONÍSIO\Documents\Joy Division - Unknown Pleasures (1979) Full Album.mp4 2017-06-16 11:55 - 2017-06-13 21:15 - 119727141 _____ C:\Users\DIONÍSIO\Documents\Nirvana - Bleach 1989 (FULL ALBUM HQ).mp4 2017-06-16 00:15 - 2017-06-16 00:15 - 00002968 _____ C:\Windows\System32\Tasks\{36847C9C-8FD6-41D5-A354-77C57D5B5628} 2017-06-16 00:15 - 2017-06-16 00:15 - 00002968 _____ C:\Windows\System32\Tasks\{063DD7F9-43C7-474A-B020-2E3051F1E500} 2017-06-15 23:59 - 2017-06-15 23:59 - 00002968 _____ C:\Windows\System32\Tasks\{FAC09FFA-1CBD-464D-B4A2-2B4FAFC22322} 2017-06-15 23:58 - 2017-06-15 23:58 - 00002968 _____ C:\Windows\System32\Tasks\{904378FF-F1BC-4656-86AC-C18AA626D63C} 2017-06-15 23:58 - 2017-06-15 23:58 - 00002968 _____ C:\Windows\System32\Tasks\{1C119F36-97C3-43E2-9FCF-2D3BB3E165BA} 2017-06-15 23:53 - 2017-06-15 23:53 - 00002968 _____ C:\Windows\System32\Tasks\{93683F43-5A0F-4B6F-829B-9EB408FFF1F2} 2017-06-15 23:52 - 2017-06-15 23:52 - 00002968 _____ C:\Windows\System32\Tasks\{7DA67B26-8718-4FB2-B917-0ACA5DA87C63} 2017-06-14 22:39 - 2017-06-14 22:39 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-06-14 22:39 - 2017-06-14 22:39 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-06-14 22:30 - 2017-06-14 22:30 - 00003500 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2017-06-14 22:30 - 2017-06-14 22:30 - 00003372 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2017-06-14 00:37 - 2017-06-14 00:37 - 00001351 _____ C:\Users\Public\Desktop\Foxit Reader.lnk 2017-06-14 00:37 - 2017-06-14 00:37 - 00000000 ____D C:\Users\Todos os Usuários\Foxit ContentPlatform 2017-06-14 00:37 - 2017-06-14 00:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2017-06-14 00:37 - 2017-06-14 00:37 - 00000000 ____D C:\ProgramData\Foxit ContentPlatform 2017-06-13 23:41 - 2017-06-25 00:09 - 00000000 ____D C:\Users\Todos os Usuários\Foxit Software 2017-06-13 23:41 - 2017-06-25 00:09 - 00000000 ____D C:\ProgramData\Foxit Software 2017-06-13 23:41 - 2017-06-13 23:41 - 00000000 ____D C:\Users\Public\Foxit Software 2017-06-13 23:41 - 2017-06-13 23:41 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Foxit Software 2017-06-13 23:41 - 2017-06-13 23:41 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Foxit AgentInformation 2017-06-13 23:40 - 2017-06-13 23:40 - 00000000 ____D C:\Program Files (x86)\Foxit Software 2017-06-12 18:37 - 2017-06-14 22:48 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Google 2017-06-12 18:37 - 2017-06-14 22:38 - 00000000 ____D C:\Program Files (x86)\Google 2017-06-12 18:35 - 2017-06-14 22:30 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Deployment 2017-06-12 18:35 - 2017-06-14 22:29 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Apps\2.0 2017-06-09 18:07 - 2017-06-09 18:08 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Steinberg 2017-06-09 11:14 - 2017-06-20 23:38 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\ElevatedDiagnostics 2017-06-09 09:44 - 2017-06-09 09:44 - 00108824 _____ C:\Users\DIONÍSIO\AppData\Local\GDIPFONTCACHEV1.DAT 2017-06-08 01:49 - 2017-06-07 21:00 - 00000000 ____D C:\Windows\Panther 2017-06-07 21:35 - 2017-06-07 21:35 - 00002911 _____ C:\Users\DIONÍSIO\Desktop\Microsoft PowerPoint 2010.lnk 2017-06-07 21:35 - 2017-06-07 21:35 - 00001304 _____ C:\Users\DIONÍSIO\Desktop\Notepad.lnk 2017-06-07 21:34 - 2017-06-07 21:34 - 00003031 _____ C:\Users\DIONÍSIO\Desktop\Microsoft Word 2010.lnk 2017-06-07 21:34 - 2017-06-07 21:34 - 00002911 _____ C:\Users\DIONÍSIO\Desktop\Microsoft Excel 2010.lnk 2017-06-07 21:25 - 2017-06-07 21:25 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2017-06-07 21:24 - 2017-06-07 21:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2017-06-07 21:24 - 2017-06-07 21:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2017-06-07 21:24 - 2017-06-07 21:24 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services 2017-06-07 21:24 - 2017-06-07 21:24 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2017-06-07 21:23 - 2017-06-07 21:23 - 00000000 ____D C:\Windows\PCHEALTH 2017-06-07 21:23 - 2017-06-07 21:23 - 00000000 ____D C:\Program Files\Microsoft Sync Framework 2017-06-07 21:23 - 2017-06-07 21:23 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2017-06-07 21:21 - 2017-06-07 21:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2017-06-07 21:20 - 2017-06-07 21:27 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2017-06-07 21:20 - 2017-06-07 21:23 - 00000000 ____D C:\Program Files\Microsoft Office 2017-06-07 21:20 - 2017-06-07 21:20 - 00000000 __RHD C:\MSOCache 2017-06-07 21:20 - 2017-06-07 21:20 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\Microsoft Help 2017-06-07 21:20 - 2017-06-07 21:20 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2017-06-07 21:20 - 2017-06-07 21:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-06-07 21:20 - 2017-06-07 21:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2017-06-07 21:01 - 2017-06-07 21:01 - 00001385 _____ C:\Users\DIONÍSIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2017-06-07 21:00 - 2017-06-13 23:59 - 00000000 ____D C:\Users\DIONÍSIO 2017-06-07 21:00 - 2017-06-07 21:01 - 00001419 _____ C:\Users\DIONÍSIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2017-06-07 21:00 - 2017-06-07 21:00 - 00000020 ___SH C:\Users\DIONÍSIO\ntuser.ini 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Modelos 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Meus documentos 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Menu Iniciar 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Documents\Minhas músicas 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Documents\Minhas imagens 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Documents\Meus vídeos 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Dados de aplicativos 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Configurações locais 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\AppData\Local\Histórico 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\AppData\Local\Dados de aplicativos 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Ambiente de rede 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 _SHDL C:\Users\DIONÍSIO\Ambiente de impressão 2017-06-07 21:00 - 2017-06-07 21:00 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Local\VirtualStore 2017-06-07 21:00 - 2009-07-14 04:45 - 00000000 ____D C:\Users\DIONÍSIO\AppData\Roaming\Media Center Programs 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas músicas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas imagens 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus vídeos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Usuário Padrão 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários\Modelos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários\Favoritos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários\Documentos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Todos os Usuários 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Public\Documents\Minhas músicas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Public\Documents\Minhas imagens 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Public\Documents\Meus vídeos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Modelos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Meus documentos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Menu Iniciar 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Documents\Minhas músicas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Documents\Minhas imagens 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Documents\Meus vídeos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Configurações locais 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Ambiente de rede 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default\Ambiente de impressão 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas músicas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\Documents\Minhas imagens 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\Documents\Meus vídeos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Modelos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Menu Iniciar 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Favoritos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Documentos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\ProgramData\Dados de aplicativos 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Program Files\Common Files\Sistema 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Program Files\Arquivos Comuns 2017-06-07 20:59 - 2017-06-07 20:59 - 00000000 _SHDL C:\Arquivos de Programas 2017-06-07 20:54 - 2017-06-07 20:54 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2017-06-07 20:54 - 2017-06-07 20:54 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2017-06-07 20:52 - 2017-06-07 20:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf ==================== Três Meses Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-06-25 16:20 - 2009-07-14 01:45 - 00009792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-06-25 16:20 - 2009-07-14 01:45 - 00009792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-06-25 16:02 - 2009-07-14 04:45 - 00000000 ___RD C:\Users\Public\Recorded TV 2017-06-25 15:27 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF 2017-06-25 00:18 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-06-24 08:21 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache 2017-06-23 23:01 - 2009-07-29 12:58 - 00718700 _____ C:\Windows\system32\prfh0416.dat 2017-06-23 23:01 - 2009-07-29 12:58 - 00186272 _____ C:\Windows\system32\prfc0416.dat 2017-06-23 23:01 - 2009-07-14 02:13 - 00004566 _____ C:\Windows\system32\PerfStringBackup.INI 2017-06-18 01:59 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf 2017-06-15 12:06 - 2009-07-14 04:47 - 00000000 ____D C:\Program Files\Windows Journal 2017-06-15 12:06 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\SysWOW64\winrm 2017-06-15 12:06 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\SysWOW64\WCN 2017-06-15 12:06 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\SysWOW64\slmgr 2017-06-15 12:06 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files\Windows Defender 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files\DVD Maker 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-06-15 12:06 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-06-15 12:06 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz 2017-06-15 12:06 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\SysWOW64\Dism 2017-06-15 12:06 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\servicing 2017-06-15 12:05 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\system32\winrm 2017-06-15 12:05 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\system32\WCN 2017-06-15 12:05 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\system32\slmgr 2017-06-15 12:05 - 2009-07-14 02:37 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2017-06-15 12:05 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\migwiz 2017-06-15 12:05 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\Dism 2017-06-14 04:56 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\registration 2017-06-14 04:56 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\AppCompat 2017-06-08 01:48 - 2009-07-14 02:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2017-06-07 21:37 - 2009-07-14 02:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2017-06-07 21:36 - 2009-07-14 01:45 - 00415600 _____ C:\Windows\system32\FNTCACHE.DAT 2017-06-07 21:24 - 2009-07-14 04:46 - 00000000 ____D C:\Windows\ShellNew 2017-06-07 21:24 - 2009-07-14 02:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-06-07 21:24 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2017-06-07 21:22 - 2009-07-14 00:20 - 00000000 __RHD C:\Users\Public\Libraries 2017-06-07 20:59 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Windows NT 2017-06-07 20:54 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\sysprep 2017-06-07 20:50 - 2009-07-14 04:46 - 00000000 ____D C:\Windows\CSC Alguns arquivos em TEMP: ==================== 2010-03-17 07:28 - 2010-03-17 07:28 - 0174440 ____R (Microsoft Corporation) C:\Users\DIONÍSIO\AppData\Local\Temp\ose00000.exe ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2017-06-22 06:14 ==================== Fim de FRST.txt ============================