Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 02-11-2017 Executado por lucas (administrador) em MARTINSX-LAPTOP (10-11-2017 19:41:15) Executando a partir de C:\Users\lucas\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads Perfis Carregados: lucas (Perfis Disponíveis: lucas) Platform: Windows 10 Home Single Language Versão 1709 16299.19 (X64) Idioma: Português (Brasil) Internet Explorer Versão 11 (Navegador padrão: Edge) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.66.478.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.66.478.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.66.478.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.66.478.0_x86__zpdnekdrzrea0\Spotify.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.66.478.0_x86__zpdnekdrzrea0\Spotify.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe () C:\Windows\System32\Windows.WARP.JITService.exe () C:\Windows\System32\Windows.WARP.JITService.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe () C:\Windows\System32\Windows.WARP.JITService.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40485.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40485.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe () C:\Program Files\WindowsApps\Facebook.InstagramBeta_10.1096.22724.0_x86__8xx8rvfyw5nnt\WinUAPEntry.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Corporation) C:\Windows\System32\findstr.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16408320 2015-12-17] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3951280 2016-01-08] (Synaptics Incorporated) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322120 2017-04-19] (Intel Corporation) HKU\S-1-5-21-2829206107-3583343063-751167377-1001\...\Run: [uTorrent] => C:\Users\lucas\AppData\Roaming\uTorrent\uTorrent.exe [1985984 2017-11-01] (BitTorrent Inc.) HKU\S-1-5-21-2829206107-3583343063-751167377-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe [368640 2017-09-30] (Microsoft Corporation) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 181.213.132.3 181.213.132.2 Tcpip\..\Interfaces\{45ac7678-d8cb-4e97-91e8-1a4b2b086362}: [DhcpNameServer] 192.168.15.1 Tcpip\..\Interfaces\{d5be9e10-3122-4820-a10b-697bf650c539}: [DhcpNameServer] 181.213.132.3 181.213.132.2 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-2829206107-3583343063-751167377-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FireFox: ======== FF DefaultProfile: vpxehido.default FF ProfilePath: C:\Users\lucas\AppData\Roaming\Mozilla\Firefox\Profiles\vpxehido.default [2017-11-07] FF Extension: (Safe Browsing Version 4 (temporary add-on)) - C:\Users\lucas\AppData\Roaming\Mozilla\Firefox\Profiles\vpxehido.default\Extensions\sbv4-gradual-rollout@mozilla.com.xpi [2017-11-03] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-04] ( Microsoft Corporation) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2017-10-31] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2017-10-31] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\autoconf_warsaw.js [2017-11-10] <==== ATENÇÃO (Aponta para arquivo *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\warsaw.cfg [2017-11-10] <==== ATENÇÃO ==================== Serviços (Whitelisted) ==================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18504 2017-04-19] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [356904 2017-07-31] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Arquivo não assinado] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2017-10-31] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2017-10-31] (Intel Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2123104 2017-11-03] (Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3002728 2017-11-03] (Electronic Arts) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246448 2016-01-08] (Synaptics Incorporated) R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [1056304 2017-08-30] (GAS Tecnologia LTDA) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) ===================== Drivers (Whitelisted) ====================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [100312 2017-10-31] (Intel Corporation) R1 MpKsl243d99d1; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{01EAEAFD-AEF1-47F3-8985-F2F6EAD8C838}\MpKsl243d99d1.sys [58120 2017-11-09] (Microsoft Corporation) R1 MpKsl91ad1e51; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{73CC898A-4678-4747-8850-E409C683AC4C}\MpKsl91ad1e51.sys [58120 2017-11-10] (Microsoft Corporation) R1 MpKslc1928515; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{659A622D-134D-4950-8EC8-1D9A466EB4B5}\MpKslc1928515.sys [58120 2017-11-08] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1010648 2017-10-20] (Realtek ) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [752856 2017-10-31] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\Windows\System32\drivers\rtwlane.sys [6320640 2017-09-29] (Realtek Semiconductor Corporation ) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 1999-12-31] (Synaptics Incorporated) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S3 SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [16056 2017-11-10] (SlimWare Utilities, Inc.) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [28376 2017-11-10] (GAS Tecnologia) R1 wsddntf; C:\Windows\system32\DRIVERS\wsddntf.sys [47176 2016-06-21] (GAS Tecnologia) R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [25184 2016-06-08] (GAS Tecnologia) R3 wsddprm; C:\Windows\system32\drivers\wsddprm.sys [25184 2016-11-07] (GAS Tecnologia) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-11-10 19:41 - 2017-11-10 19:41 - 000000000 ____D C:\FRST 2017-11-10 19:16 - 2017-11-10 19:26 - 001200708 _____ C:\Windows\Minidump\111017-31984-01.dmp 2017-11-10 19:16 - 2017-11-10 19:16 - 1663771885 _____ C:\Windows\MEMORY.DMP 2017-11-10 19:16 - 2017-11-10 19:16 - 000000000 ____D C:\Windows\Minidump 2017-11-09 22:38 - 2017-11-09 22:38 - 000000000 ___HD C:\OneDriveTemp 2017-11-09 22:32 - 2017-11-10 19:17 - 000028376 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddfac.sys 2017-11-09 22:32 - 2017-11-09 22:32 - 000003038 _____ C:\Windows\System32\Tasks\Rerun Warsaw's CoreFixer 2017-11-09 22:32 - 2017-11-09 22:32 - 000000000 ___HD C:\Program Files (x86)\GAS Tecnologia 2017-11-09 22:32 - 2017-11-09 22:32 - 000000000 ___HD C:\Program Files (x86)\Diebold 2017-11-09 22:32 - 2017-11-09 22:32 - 000000000 ____D C:\Program Files\Diebold 2017-11-09 22:32 - 2016-11-07 14:54 - 000025184 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddprm.sys 2017-11-09 22:32 - 2016-06-21 16:24 - 000047176 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddntf.sys 2017-11-09 22:32 - 2016-06-21 16:24 - 000010345 _____ C:\Windows\system32\Drivers\wsddntf.cat 2017-11-09 22:32 - 2016-06-08 18:43 - 000025184 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddpp.sys 2017-11-09 22:21 - 2017-11-09 22:33 - 000000000 ____D C:\Users\Todos os Usuários\Temp 2017-11-09 22:21 - 2017-11-09 22:33 - 000000000 ____D C:\ProgramData\Temp 2017-11-09 22:19 - 2017-11-09 22:19 - 000000000 _____ C:\Users\lucas\Downloads\DiagnosticoBB.exe.gfqqn3b.partial 2017-11-04 14:48 - 2017-09-28 20:04 - 005032448 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0816.dll 2017-11-04 14:48 - 2017-09-28 20:02 - 000164352 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll 2017-11-04 14:48 - 2017-09-28 19:44 - 005032448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsLexicons0816.dll 2017-11-04 14:48 - 2017-09-28 19:43 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0816.dll 2017-11-03 23:58 - 2017-11-03 23:58 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2017-11-03 23:57 - 2017-11-03 23:57 - 000000000 ____D C:\Program Files\Reference Assemblies 2017-11-03 23:57 - 2017-11-03 23:57 - 000000000 ____D C:\Program Files\MSBuild 2017-11-03 23:57 - 2017-11-03 23:57 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-11-03 23:57 - 2017-11-03 23:57 - 000000000 ____D C:\Program Files (x86)\MSBuild 2017-11-03 23:55 - 2017-09-28 16:50 - 001166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2017-11-03 23:55 - 2017-09-28 16:50 - 000124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2017-11-03 23:55 - 2017-09-28 16:50 - 000035456 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2017-11-03 23:55 - 2017-09-22 19:19 - 000778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2017-11-03 23:55 - 2017-09-22 19:19 - 000103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-11-03 23:55 - 2017-09-22 19:19 - 000035456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2017-11-03 23:45 - 2017-11-03 23:46 - 000000000 ____D C:\Users\Todos os Usuários\updater2 2017-11-03 23:45 - 2017-11-03 23:46 - 000000000 ____D C:\ProgramData\updater2 2017-11-03 23:45 - 2017-11-03 23:45 - 000000000 ____D C:\Users\Todos os Usuários\acer 2017-11-03 23:45 - 2017-11-03 23:45 - 000000000 ____D C:\ProgramData\acer 2017-11-03 23:45 - 2017-11-03 23:45 - 000000000 ____D C:\oem 2017-11-03 22:30 - 2017-11-03 22:30 - 000000000 ____D C:\Windows\oem 2017-11-03 22:27 - 2017-11-03 22:27 - 001865532 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-11-03 22:27 - 2017-11-03 22:27 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Intel Corporation 2017-11-03 22:26 - 2017-11-03 22:26 - 000000000 ____D C:\Users\lucas\Intel 2017-11-03 22:24 - 2017-11-03 22:24 - 000003756 _____ C:\Windows\System32\Tasks\ACC 2017-11-03 22:24 - 2017-11-03 22:24 - 000000000 ____D C:\Users\Todos os Usuários\DriverSetupUtility 2017-11-03 22:24 - 2017-11-03 22:24 - 000000000 ____D C:\ProgramData\DriverSetupUtility 2017-11-03 22:24 - 2017-11-03 22:24 - 000000000 ____D C:\Program Files\DriverSetupUtility 2017-11-03 22:08 - 2017-11-03 22:08 - 000000000 ____D C:\Users\Todos os Usuários\SlimWare Utilities, Inc 2017-11-03 22:08 - 2017-11-03 22:08 - 000000000 ____D C:\ProgramData\SlimWare Utilities, Inc 2017-11-03 22:06 - 2017-11-10 19:20 - 000000442 _____ C:\Windows\Tasks\SlimDrivers Startup.job 2017-11-03 22:06 - 2017-11-10 19:19 - 000016056 _____ (SlimWare Utilities, Inc.) C:\Windows\system32\Drivers\SWDUMon.sys 2017-11-03 22:06 - 2017-11-03 22:06 - 000002922 _____ C:\Windows\System32\Tasks\SlimDrivers Startup 2017-11-03 22:06 - 2017-11-03 22:06 - 000002499 _____ C:\Users\Public\Desktop\SlimDrivers.lnk 2017-11-03 22:06 - 2017-11-03 22:06 - 000000000 ____D C:\Users\Public\Documents\Downloaded Installers 2017-11-03 22:06 - 2017-11-03 22:06 - 000000000 ____D C:\Users\lucas\AppData\Local\SlimWare Utilities Inc 2017-11-03 22:06 - 2017-11-03 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SlimDrivers 2017-11-03 22:06 - 2017-11-03 22:06 - 000000000 ____D C:\Program Files (x86)\SlimDrivers 2017-11-03 22:03 - 2017-11-03 22:03 - 000000000 ____D C:\Users\lucas\Documents\Electronic Arts 2017-11-03 21:14 - 2017-11-03 21:14 - 000001419 _____ C:\Users\Public\Desktop\The Sims 4.lnk 2017-11-03 21:14 - 2017-11-03 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4 2017-11-03 21:13 - 2014-09-16 19:45 - 000447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2017-11-03 10:06 - 2017-11-03 10:06 - 000000000 ____D C:\Users\Public\Documents\EA Games 2017-11-03 10:06 - 2017-11-03 10:06 - 000000000 ____D C:\Users\lucas\Documents\EA Games 2017-11-03 09:47 - 2017-11-09 22:32 - 000000000 ____D C:\Program Files\Mozilla Firefox 2017-11-03 09:47 - 2017-11-07 23:27 - 000000000 ____D C:\Users\lucas\AppData\LocalLow\Mozilla 2017-11-03 09:47 - 2017-11-03 09:52 - 000000000 ____D C:\Users\lucas\AppData\Local\Mozilla 2017-11-03 09:47 - 2017-11-03 09:47 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-11-03 09:47 - 2017-11-03 09:47 - 000000993 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-11-03 09:47 - 2017-11-03 09:47 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Mozilla 2017-11-03 09:47 - 2017-11-03 09:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-11-03 05:42 - 2017-11-03 05:42 - 000001767 _____ C:\Users\Public\Desktop\The Sims 2 Ultimate Collection.lnk 2017-11-03 05:42 - 2017-11-03 05:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 2 Ultimate Collection 2017-11-03 04:10 - 2017-11-04 16:22 - 000000000 ____D C:\Users\lucas\AppData\Roaming\WhatsApp 2017-11-03 04:10 - 2017-11-03 04:10 - 000002261 _____ C:\Users\lucas\Desktop\WhatsApp.lnk 2017-11-03 04:10 - 2017-11-03 04:10 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2017-11-03 04:10 - 2017-11-03 04:10 - 000000000 ____D C:\Users\lucas\AppData\Local\WhatsApp 2017-11-03 04:09 - 2017-11-03 04:10 - 000000000 ____D C:\Users\lucas\AppData\Local\SquirrelTemp 2017-11-03 03:50 - 2017-11-03 03:50 - 000000000 ____D C:\Users\lucas\AppData\Local\Google 2017-11-03 03:50 - 2017-11-03 03:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 2017-11-03 03:49 - 2017-11-03 03:49 - 000000000 ____D C:\Program Files (x86)\Google 2017-11-03 03:48 - 2017-11-03 03:48 - 013675184 _____ (Google) C:\Users\lucas\Downloads\Baixaki_picasa [1].exe 2017-11-03 03:34 - 2017-11-03 03:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-11-02 02:53 - 2017-11-02 02:53 - 000000000 ____D C:\Users\lucas\AppData\Local\DBG 2017-11-02 01:42 - 2017-11-02 01:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-11-02 01:42 - 2017-11-02 01:42 - 000000000 ____D C:\Program Files\Microsoft Silverlight 2017-11-02 01:42 - 2017-11-02 01:42 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-11-01 23:01 - 2017-11-01 23:01 - 000000000 ____D C:\Users\lucas\Documents\SimCity 2017-11-01 22:53 - 2017-11-01 22:53 - 000001349 _____ C:\Users\Public\Desktop\SimCity™.lnk 2017-11-01 22:53 - 2017-11-01 22:53 - 000000000 ____D C:\Users\Todos os Usuários\Electronic Arts 2017-11-01 22:53 - 2017-11-01 22:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimCity™ 2017-11-01 22:53 - 2017-11-01 22:53 - 000000000 ____D C:\ProgramData\Electronic Arts 2017-11-01 22:52 - 2010-05-26 12:41 - 002106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2017-11-01 22:52 - 2010-05-26 12:41 - 001998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2017-11-01 22:52 - 2009-09-04 18:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2017-11-01 22:52 - 2009-09-04 18:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2017-11-01 22:52 - 2009-03-09 16:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2017-11-01 22:52 - 2008-10-15 07:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2017-11-01 22:52 - 2008-07-10 12:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2017-11-01 22:52 - 2008-05-30 15:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2017-11-01 22:52 - 2008-03-05 16:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2017-11-01 22:52 - 2007-10-12 16:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2017-11-01 22:52 - 2007-07-19 19:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2017-11-01 22:52 - 2007-05-16 17:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2017-11-01 22:52 - 2007-04-04 19:53 - 000081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2017-11-01 22:52 - 2007-03-12 17:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2017-11-01 22:52 - 2006-11-29 14:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2017-11-01 22:52 - 2006-09-28 17:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2017-11-01 22:52 - 2006-07-28 10:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2017-11-01 22:52 - 2006-03-31 13:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2017-11-01 22:52 - 2006-03-31 13:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2017-11-01 22:52 - 2006-02-03 09:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2017-11-01 22:52 - 2005-12-05 19:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2017-11-01 22:52 - 2005-07-22 20:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2017-11-01 22:52 - 2005-05-26 16:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2017-11-01 22:52 - 2005-03-18 18:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2017-11-01 22:52 - 2005-02-05 20:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2017-11-01 22:16 - 2017-11-04 14:56 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Origin 2017-11-01 22:16 - 2017-11-03 10:19 - 000000000 ____D C:\Program Files (x86)\Origin Games 2017-11-01 22:15 - 2017-11-03 20:26 - 000000000 ____D C:\Program Files (x86)\Origin 2017-11-01 22:15 - 2017-11-01 22:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2017-11-01 22:12 - 2017-11-04 14:56 - 000000000 ____D C:\Users\Todos os Usuários\Origin 2017-11-01 22:12 - 2017-11-04 14:56 - 000000000 ____D C:\ProgramData\Origin 2017-11-01 22:12 - 2017-11-01 22:17 - 000000000 ____D C:\Users\lucas\AppData\Local\Origin 2017-11-01 22:12 - 2017-11-01 22:12 - 000000000 ____D C:\Users\lucas\.QtWebEngineProcess 2017-11-01 22:12 - 2017-11-01 22:12 - 000000000 ____D C:\Users\lucas\.Origin 2017-11-01 19:29 - 2017-11-01 19:29 - 000258965 _____ C:\Users\lucas\Documents\comprovante.pdf 2017-11-01 18:11 - 2017-10-10 14:33 - 017080832 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll 2017-11-01 18:11 - 2017-10-10 14:25 - 000336896 _____ (Microsoft Corporation) C:\Windows\system32\HolographicRuntimes.dll 2017-11-01 18:11 - 2017-10-10 14:22 - 021752832 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll 2017-11-01 18:11 - 2017-10-10 14:12 - 000664576 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll 2017-11-01 18:11 - 2017-10-10 05:14 - 000139672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2017-11-01 18:11 - 2017-10-10 05:11 - 000739696 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2017-11-01 18:11 - 2017-10-10 05:10 - 001200024 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe 2017-11-01 18:11 - 2017-10-10 05:07 - 008592280 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-11-01 18:11 - 2017-10-10 05:02 - 002400664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-11-01 18:11 - 2017-10-10 05:01 - 005906264 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll 2017-11-01 18:11 - 2017-10-10 05:01 - 001633744 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2017-11-01 18:11 - 2017-10-10 05:00 - 001053592 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe 2017-11-01 18:11 - 2017-10-10 05:00 - 000373656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2017-11-01 18:11 - 2017-10-10 04:59 - 001641536 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll 2017-11-01 18:11 - 2017-10-10 04:59 - 000778936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe 2017-11-01 18:11 - 2017-10-10 04:54 - 001463856 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2017-11-01 18:11 - 2017-10-10 04:53 - 000464416 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2017-11-01 18:11 - 2017-10-10 04:53 - 000232344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-11-01 18:11 - 2017-10-10 04:51 - 000184984 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2017-11-01 18:11 - 2017-10-10 04:50 - 002573208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-11-01 18:11 - 2017-10-10 04:49 - 001554216 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2017-11-01 18:11 - 2017-10-10 04:49 - 000060824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\urscx01000.sys 2017-11-01 18:11 - 2017-10-10 04:48 - 000677280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2017-11-01 18:11 - 2017-10-10 04:44 - 000246168 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll 2017-11-01 18:11 - 2017-10-10 04:43 - 000559000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2017-11-01 18:11 - 2017-10-10 04:43 - 000418712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-11-01 18:11 - 2017-10-10 04:43 - 000045976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys 2017-11-01 18:11 - 2017-10-10 04:36 - 001436432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll 2017-11-01 18:11 - 2017-10-10 04:31 - 001528912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2017-11-01 18:11 - 2017-10-10 04:31 - 001323840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2017-11-01 18:11 - 2017-10-10 04:30 - 000123520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2017-11-01 18:11 - 2017-10-10 04:26 - 000649304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe 2017-11-01 18:11 - 2017-10-10 04:11 - 000597160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2017-11-01 18:11 - 2017-10-10 04:07 - 001261864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2017-11-01 18:11 - 2017-10-10 04:06 - 000353688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2017-11-01 18:11 - 2017-10-10 03:53 - 025246208 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2017-11-01 18:11 - 2017-10-10 03:47 - 002905600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys 2017-11-01 18:11 - 2017-10-10 03:46 - 001470976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2017-11-01 18:11 - 2017-10-10 03:46 - 000136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2017-11-01 18:11 - 2017-10-10 03:44 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll 2017-11-01 18:11 - 2017-10-10 03:43 - 018913792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2017-11-01 18:11 - 2017-10-10 03:43 - 000566272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll 2017-11-01 18:11 - 2017-10-10 03:43 - 000070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll 2017-11-01 18:11 - 2017-10-10 03:42 - 000374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll 2017-11-01 18:11 - 2017-10-10 03:42 - 000326144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll 2017-11-01 18:11 - 2017-10-10 03:41 - 019343360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-11-01 18:11 - 2017-10-10 03:41 - 000591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll 2017-11-01 18:11 - 2017-10-10 03:39 - 006032896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2017-11-01 18:11 - 2017-10-10 03:39 - 003681280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-11-01 18:11 - 2017-10-10 03:39 - 000664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2017-11-01 18:11 - 2017-10-10 03:37 - 003672064 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2017-11-01 18:11 - 2017-10-10 03:37 - 002869248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2017-11-01 18:11 - 2017-10-10 03:37 - 001587200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-11-01 18:11 - 2017-10-10 03:37 - 001559552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2017-11-01 18:11 - 2017-10-10 03:36 - 001664000 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2017-11-01 18:11 - 2017-10-10 03:36 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2017-11-01 18:11 - 2017-10-10 03:34 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll 2017-11-01 18:11 - 2017-10-10 03:34 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys 2017-11-01 18:11 - 2017-10-10 03:34 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys 2017-11-01 18:11 - 2017-10-10 03:34 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2017-11-01 18:11 - 2017-10-10 03:33 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll 2017-11-01 18:11 - 2017-10-10 03:33 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll 2017-11-01 18:11 - 2017-10-10 03:32 - 000538624 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll 2017-11-01 18:11 - 2017-10-10 03:32 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2017-11-01 18:11 - 2017-10-10 03:32 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2017-11-01 18:11 - 2017-10-10 03:31 - 023664128 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-11-01 18:11 - 2017-10-10 03:31 - 000665088 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll 2017-11-01 18:11 - 2017-10-10 03:31 - 000478208 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll 2017-11-01 18:11 - 2017-10-10 03:30 - 000708096 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2017-11-01 18:11 - 2017-10-10 03:30 - 000542208 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2017-11-01 18:11 - 2017-10-10 03:30 - 000442880 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll 2017-11-01 18:11 - 2017-10-10 03:29 - 008097792 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2017-11-01 18:11 - 2017-10-10 03:29 - 000769024 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll 2017-11-01 18:11 - 2017-10-10 03:28 - 004744192 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-11-01 18:11 - 2017-10-10 03:27 - 001547264 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-11-01 18:11 - 2017-10-10 03:27 - 001165824 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll 2017-11-01 18:11 - 2017-10-10 03:26 - 003334144 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-11-01 18:11 - 2017-10-10 03:26 - 002106880 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2017-11-01 18:11 - 2017-10-10 03:26 - 001856000 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-11-01 18:11 - 2017-10-10 03:26 - 000812032 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-11-01 18:11 - 2017-10-10 03:25 - 001822208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-11-01 18:11 - 2017-10-10 03:25 - 000925184 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2017-11-01 18:11 - 2017-10-10 03:24 - 000726016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-11-01 18:11 - 2017-10-10 03:24 - 000285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-11-01 18:11 - 2017-10-04 13:21 - 002474080 _____ C:\Windows\SysWOW64\Windows.Mirage.dll 2017-11-01 18:11 - 2017-10-04 12:37 - 003312432 _____ C:\Windows\system32\Windows.Mirage.dll 2017-11-01 18:11 - 2017-10-03 20:42 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll 2017-11-01 18:11 - 2017-10-03 20:42 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll 2017-11-01 18:11 - 2017-10-03 20:42 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll 2017-11-01 09:43 - 2017-11-01 09:43 - 000000000 ____D C:\Users\lucas\AppData\LocalLow\Nvizzio Creations 2017-11-01 07:49 - 2017-11-01 09:38 - 000000000 ____D C:\Users\lucas\Downloads\3DMGAME-RollerCoaster.Tycoon.World.Deluxe.Edition.Early.Access.With.Update.5.Cracked-3DM 2017-11-01 07:48 - 2017-11-01 07:48 - 000030404 _____ C:\Users\lucas\Downloads\RollerCoaster.Tycoon.World.Deluxe.Edition.Early.Access.With.Update.5.Cracked-3DM.torrent 2017-11-01 07:45 - 2017-11-01 10:23 - 000000000 ____D C:\Users\lucas\AppData\Roaming\uTorrent 2017-11-01 07:45 - 2017-11-01 07:45 - 000000896 _____ C:\Users\lucas\Desktop\µTorrent.lnk 2017-11-01 07:45 - 2017-11-01 07:45 - 000000876 _____ C:\Users\lucas\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2017-11-01 07:26 - 2017-11-01 07:26 - 000001044 _____ C:\Users\Public\Desktop\DriversCloud.com - Iniciar a análise.lnk 2017-11-01 07:26 - 2017-11-01 07:26 - 000000000 ____D C:\Users\Todos os Usuários\DriversCloud.com 2017-11-01 07:26 - 2017-11-01 07:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com 2017-11-01 07:26 - 2017-11-01 07:26 - 000000000 ____D C:\ProgramData\DriversCloud.com 2017-11-01 07:26 - 2017-11-01 07:26 - 000000000 ____D C:\Program Files\DriversCloud.com 2017-11-01 06:55 - 2017-11-01 06:55 - 000000000 ____D C:\Users\lucas\Evernote 2017-10-31 20:58 - 2017-10-31 20:58 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Macromedia 2017-10-31 18:53 - 2017-10-31 18:53 - 000000000 ____D C:\Users\lucas\AppData\Roaming\WinRAR 2017-10-31 18:51 - 2017-10-31 18:52 - 000000000 ____D C:\Program Files\WinRAR 2017-10-31 18:40 - 2017-11-03 22:30 - 000000000 ____D C:\Users\lucas\AppData\Local\PlaceholderTileLogoFolder 2017-10-31 18:35 - 2017-10-31 18:34 - 000091272 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2017-10-31 18:35 - 2017-10-20 01:32 - 001010648 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys 2017-10-31 18:33 - 2017-11-03 22:26 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2017-10-31 18:33 - 2017-11-03 22:26 - 000000000 ____D C:\Users\Todos os Usuários\Intel 2017-10-31 18:33 - 2017-11-03 22:26 - 000000000 ____D C:\ProgramData\Intel 2017-10-31 18:33 - 2017-10-31 18:33 - 000004080 _____ C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d 2017-10-31 18:33 - 2017-10-31 18:33 - 000003846 _____ C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon 2017-10-31 18:33 - 2017-10-31 18:31 - 000016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2017-10-31 18:32 - 2017-10-31 18:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2017-10-31 18:26 - 2017-11-01 07:31 - 000000000 ____D C:\Program Files (x86)\Realtek 2017-10-31 18:26 - 2017-10-31 18:35 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-10-31 18:26 - 2017-10-31 18:26 - 009890008 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll 2017-10-31 18:26 - 2017-10-31 18:26 - 000313048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsBaStor.sys 2017-10-31 18:26 - 2017-10-31 18:26 - 000301784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsP2Stor.sys 2017-10-31 18:24 - 2017-11-01 22:15 - 000000000 ____D C:\Users\Todos os Usuários\Package Cache 2017-10-31 18:24 - 2017-11-01 22:15 - 000000000 ____D C:\ProgramData\Package Cache 2017-10-31 18:07 - 2017-10-31 18:07 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2017-10-31 18:07 - 2017-10-31 18:07 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2017-10-31 18:06 - 2017-10-31 18:06 - 000000000 ____D C:\Users\Todos os Usuários\Synaptics 2017-10-31 18:06 - 2017-10-31 18:06 - 000000000 ____D C:\ProgramData\Synaptics 2017-10-31 18:06 - 2017-10-31 18:06 - 000000000 ____D C:\Program Files\Synaptics 2017-10-31 16:48 - 2017-10-31 16:49 - 000000000 ____D C:\Windows\system32\MRT 2017-10-31 16:48 - 2017-10-31 16:48 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe 2017-10-31 16:48 - 2017-10-31 16:48 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-10-31 16:46 - 2017-10-31 16:09 - 000544424 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2017-10-31 16:25 - 2017-10-31 16:25 - 000000752 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____H C:\Users\Todos os Usuários\DP45977C.lfl 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____H C:\ProgramData\DP45977C.lfl 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____D C:\Windows\system32\DAX2 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____D C:\Program Files\Realtek 2017-10-31 16:24 - 2017-10-31 18:27 - 000000000 ____D C:\Windows\SysWOW64\sda 2017-10-31 16:18 - 2017-11-10 19:19 - 000000000 __SHD C:\Users\lucas\IntelGraphicsProfiles 2017-10-31 16:18 - 2017-10-31 18:33 - 000000000 ____D C:\Program Files (x86)\Intel 2017-10-31 16:18 - 2017-10-31 16:18 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin 2017-10-31 16:18 - 2017-07-31 18:02 - 000103912 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2017-10-31 16:18 - 2017-07-31 18:02 - 000099816 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2017-10-31 16:17 - 2017-11-10 19:18 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-10-31 16:17 - 2017-11-03 22:26 - 000000000 ____D C:\Program Files\Intel 2017-10-31 16:17 - 2017-11-03 22:16 - 000000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2017-10-31 16:17 - 2017-11-03 22:13 - 000000000 ____D C:\Intel 2017-10-31 16:07 - 2017-10-31 18:44 - 000000000 ____D C:\Users\lucas\AppData\Local\PackageStaging 2017-10-31 15:58 - 2017-11-01 15:59 - 000003376 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2829206107-3583343063-751167377-1001 2017-10-31 15:56 - 2017-11-10 19:20 - 000000000 __RDL C:\Users\lucas\OneDrive 2017-10-31 15:56 - 2017-11-01 15:59 - 000002369 _____ C:\Users\lucas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-10-31 15:54 - 2017-10-31 16:28 - 000000000 ____D C:\Users\lucas\AppData\Local\Comms 2017-10-31 15:54 - 2017-10-31 15:54 - 000000000 ____D C:\Users\Todos os Usuários\Microsoft OneDrive 2017-10-31 15:54 - 2017-10-31 15:54 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2017-10-31 15:53 - 2017-10-31 15:53 - 000000000 ___HD C:\Users\lucas\MicrosoftEdgeBackups 2017-10-31 15:53 - 2017-10-31 15:53 - 000000000 ____D C:\Users\lucas\AppData\Local\Publishers 2017-10-31 15:53 - 2017-10-31 15:53 - 000000000 ____D C:\Users\lucas\AppData\Local\MicrosoftEdge 2017-10-31 15:52 - 2017-11-03 20:01 - 000000000 ____D C:\Users\lucas\AppData\Local\Packages 2017-10-31 15:52 - 2017-10-31 15:54 - 000000000 __RHD C:\Users\Public\AccountPictures 2017-10-31 15:52 - 2017-10-31 15:54 - 000000000 ____D C:\Users\lucas\AppData\Local\ConnectedDevicesPlatform 2017-10-31 15:52 - 2017-10-31 15:52 - 000000000 ___RD C:\Users\lucas\3D Objects 2017-10-31 15:52 - 2017-10-31 15:52 - 000000000 ____D C:\Users\lucas\AppData\Roaming\Adobe 2017-10-31 15:52 - 2017-10-31 15:52 - 000000000 ____D C:\Users\lucas\AppData\Local\VirtualStore 2017-10-31 15:48 - 2017-11-10 19:17 - 000000000 ____D C:\Users\lucas 2017-10-31 15:48 - 2017-10-31 15:48 - 000000020 ___SH C:\Users\lucas\ntuser.ini 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Modelos 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Meus Documentos 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Menu Iniciar 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Documents\Minhas Músicas 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Documents\Minhas Imagens 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Documents\Meus Vídeos 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Dados de Aplicativos 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Configurações Locais 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\AppData\Local\Histórico 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\AppData\Local\Dados de Aplicativos 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Ambiente de Rede 2017-10-31 15:48 - 2017-10-31 15:48 - 000000000 _SHDL C:\Users\lucas\Ambiente de Impressão 2017-10-31 15:44 - 2017-10-31 15:44 - 000000000 ____D C:\Users\Todos os Usuários\USOShared 2017-10-31 15:44 - 2017-10-31 15:44 - 000000000 ____D C:\ProgramData\USOShared 2017-10-31 15:31 - 2017-10-31 14:37 - 000000000 ____D C:\Windows\Panther 2017-10-31 14:43 - 2017-11-10 19:22 - 002013326 _____ C:\Windows\system32\PerfStringBackup.INI 2017-10-31 14:41 - 2017-09-29 11:41 - 002241024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Músicas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\Documents\Minhas Imagens 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\Documents\Meus Vídeos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Histórico 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão\AppData\Local\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Usuário Padrão 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Todos os Usuários\Modelos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Todos os Usuários\Menu Iniciar 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Todos os Usuários\Documentos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Todos os Usuários\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Todos os Usuários 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Public\Documents\Minhas Músicas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Public\Documents\Minhas Imagens 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Public\Documents\Meus Vídeos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Modelos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Meus Documentos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Menu Iniciar 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Documents\Minhas Músicas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Documents\Minhas Imagens 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Documents\Meus Vídeos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Configurações Locais 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Ambiente de Rede 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default\Ambiente de Impressão 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\Documents\Minhas Músicas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\Documents\Minhas Imagens 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\Documents\Meus Vídeos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Histórico 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\ProgramData\Modelos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\ProgramData\Menu Iniciar 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\ProgramData\Documentos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\ProgramData\Dados de Aplicativos 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Program Files\Common Files\Sistema 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Program Files\Arquivos Comuns 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Documents and Settings 2017-10-31 14:39 - 2017-10-31 14:39 - 000000000 _SHDL C:\Arquivos de Programas 2017-10-31 14:32 - 2017-11-10 19:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2017-10-31 14:32 - 2017-11-10 19:16 - 000000000 ____D C:\Windows\system32\SleepStudy 2017-10-31 14:32 - 2017-10-31 14:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2017-10-31 14:32 - 2017-10-31 14:32 - 000000000 ____D C:\Windows\ServiceProfiles 2017-10-31 14:31 - 2017-11-10 19:17 - 000231472 _____ C:\Windows\system32\FNTCACHE.DAT ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2017-11-10 19:33 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\DeliveryOptimization 2017-11-10 19:32 - 2017-09-29 11:46 - 000000000 ___HD C:\Program Files\WindowsApps 2017-11-10 19:32 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\AppReadiness 2017-11-10 19:27 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\LiveKernelReports 2017-11-10 19:27 - 2017-09-29 11:44 - 000000000 ____D C:\Windows\INF 2017-11-10 19:22 - 2017-09-30 12:35 - 000835192 _____ C:\Windows\system32\prfh0416.dat 2017-11-10 19:22 - 2017-09-30 12:35 - 000198016 _____ C:\Windows\system32\prfc0416.dat 2017-11-09 22:34 - 2017-09-29 06:45 - 000524288 _____ C:\Windows\system32\config\BBI 2017-11-07 20:43 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\OCR 2017-11-07 15:24 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\rescache 2017-11-04 15:08 - 2017-09-29 11:37 - 000000000 ____D C:\Windows\CbsTemp 2017-11-03 23:58 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\SysWOW64\MUI 2017-11-03 23:58 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\MUI 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\zu-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\yo-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\xh-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\wo-SN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\vi-VN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\uz-Latn-UZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ur-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ug-CN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\tt-RU 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\tn-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\tk-TM 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ti-ET 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\tg-Cyrl-TJ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\te-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ta-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\sw-KE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\sr-Cyrl-RS 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\sr-Cyrl-BA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\sq-AL 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\si-LK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\sd-Arab-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\rw-RW 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\quz-PE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\quc-Latn-GT 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\prs-AF 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\pa-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\pa-Arab-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\or-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\nso-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\nn-NO 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ne-NP 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\mt-MT 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\mr-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\mn-MN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ml-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\mk-MK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\mi-NZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\lo-LA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\lb-LU 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ky-KG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ku-Arab-IQ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\kok-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\kn-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\km-KH 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\kk-KZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ka-GE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\is-IS 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ig-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\id-ID 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\hy-AM 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ha-Latn-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\gu-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\gd-GB 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ga-IE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\fil-PH 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\fa-IR 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\cy-GB 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\chr-CHER-US 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\ca-ES-valencia 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\bs-Latn-BA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\bn-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\bn-BD 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\be-BY 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\az-Latn-AZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\as-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\am-ET 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\SysWOW64\af-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\zu-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\yo-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\xh-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\wo-SN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\vi-VN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\uz-Latn-UZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ur-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ug-CN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\tt-RU 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\tn-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\tk-TM 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ti-ET 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\tg-Cyrl-TJ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\te-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ta-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\sw-KE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\sr-Cyrl-RS 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\sr-Cyrl-BA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\sq-AL 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\si-LK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\sd-Arab-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\rw-RW 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\quz-PE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\quc-Latn-GT 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\prs-AF 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\pa-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\pa-Arab-PK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\or-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\nso-ZA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\nn-NO 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ne-NP 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\mt-MT 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\mr-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\mn-MN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ml-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\mk-MK 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\mi-NZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\lo-LA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\lb-LU 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ky-KG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ku-Arab-IQ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\kok-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\kn-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\km-KH 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\kk-KZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ka-GE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\is-IS 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ig-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\id-ID 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\hy-AM 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ha-Latn-NG 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\gu-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\gd-GB 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ga-IE 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\fil-PH 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\fa-IR 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\cy-GB 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\chr-CHER-US 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\ca-ES-valencia 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\bs-Latn-BA 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\bn-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\bn-BD 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\be-BY 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\az-Latn-AZ 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\as-IN 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\am-ET 2017-11-03 11:35 - 2017-09-30 12:36 - 000000000 ____D C:\Windows\system32\af-ZA 2017-11-03 11:35 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\appraiser 2017-11-01 06:56 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\appcompat 2017-10-31 21:04 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\NDF 2017-10-31 18:33 - 2017-09-29 11:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2017-10-31 18:31 - 2013-12-09 16:27 - 000100312 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2017-10-31 18:26 - 2016-04-06 23:53 - 000752856 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys 2017-10-31 18:26 - 2016-04-06 23:53 - 000083160 _____ (Realtek Semiconductor.) C:\Windows\system32\RtCRX64.dll 2017-10-31 18:04 - 2015-04-23 23:07 - 000240296 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo27.dll 2017-10-31 15:49 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2017-10-31 15:44 - 2017-09-29 11:46 - 000000000 ____D C:\Users\Todos os Usuários\USOPrivate 2017-10-31 15:44 - 2017-09-29 11:46 - 000000000 ____D C:\ProgramData\USOPrivate 2017-10-31 15:30 - 2017-09-29 11:46 - 000028672 _____ C:\Windows\system32\config\BCD-Template 2017-10-31 14:41 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\spool 2017-10-31 14:41 - 2017-09-29 11:46 - 000000000 ____D C:\Windows\system32\FxsTmp 2017-10-31 14:39 - 2017-09-29 11:46 - 000000000 ____D C:\Program Files\windows nt 2017-10-31 14:37 - 2017-09-29 06:45 - 000000000 ____D C:\Windows\system32\Sysprep 2017-10-31 14:33 - 2017-09-29 11:46 - 000000000 ___RD C:\Windows\PrintDialog 2017-10-31 14:33 - 2017-09-29 11:46 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2017-10-31 14:33 - 2017-09-29 06:45 - 000032768 _____ C:\Windows\system32\config\ELAM 2017-10-20 01:41 - 2017-10-03 07:08 - 000000000 ____D C:\Users\lucas\Desktop\Install_Win10_10023_10202017 2017-10-13 16:08 - 2017-09-29 11:49 - 000835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-10-13 16:08 - 2017-09-29 11:49 - 000177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl ==================== Arquivos na raiz de alguns diretórios ======= 2017-10-31 16:25 - 2017-10-31 16:25 - 000000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ====================== (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2017-10-31 14:31 ==================== Fim de FRST.txt ============================